Secure Boot State Unsupported [Windows 10 & 11 Fix]

Explore ways to fix this issue on Windows 11

Reading time icon 4 min. read


Readers help support Windows Report. We may get a commission if you buy through our links. Tooltip Icon

Read our disclosure page to find out how can you help Windows Report sustain the editorial team Read more

Key notes

  • If Secure boot is enabled, it prevents malicious software from loading on system startup.
  • The error occurs if your computer doesnโ€™t meet the requirements for Secure Boot.
  • In this guide, we will discuss the available fixes for the problem.
Secure Boot State Unsupported on Windows (Fixed)

If you see Secure Boot State unsupported on the System Information page on Windows 11, but it is enabled in BIOS, there could be a problem with Secure boot.

This guide will discuss the common reasons for the issue and potential fixes. Letโ€™s start! 

What is the reason for Secure Boot State unsupported on Windows?

There can be various reasons for the secure boot to be unsupported. However, some of the common reasons for the issue occurrence are: 

  • Features like TPM and Secure boot are disabled – If features, including Secure boot TPM 2.0, are not enabled, you might see Unsupported beside Secure Boot State on the System Information page. You need to enable these features to resolve the issue.
  • Incompatibility hardware – If your Windows system requirements are not apt for device encryption, you might see the issue. 
  • BIOS mode set to Legacy – If BIOS mode is set to Legacy instead of UEFI, you get this error.

How do I fix the Secure Boot State unsupported error on Windows?

Before proceeding to advanced fixes, check out if your device supports the following features: 

Now, let us perform detailed troubleshooting steps to fix Secure Boot State unsupported on Windows 11:

 1. Enable Secure Boot in BIOS

  1. Press Windows + R key to open the Run window.
  2. Type msinfo32.exe and press Shift + Ctrl + Enter to open System Information with administrator rights.
  3. Click on System Summary from the left side pane.secure boot state unsupported
  4. Navigate and check if Secure Boot State is On. If it is not enabled, press Windows + I to open Settings.
  5. Click System, then RecoverySystem-Recovery-Windows-11
  6. Now go to Advanced startup, and click Restart Now.Recovery Advanced Startup
  7. On Choose an option screen, select Troubleshoot.Choose an option - Troubleshoot
  8. On Troubleshoot, click Advanced Options.Troubleshoot WITH AO selected
  9. Now click UEFI firmware settings and then click Restart.UEFI
  10. From the next screen, select the appropriate option to enter BIOS.
  11. Go to the System Configuration tab, and enable the Secure Boot option.

2. Change BIOS mode to UEFI

  1. Press Windows + R to open the Run window.
  2. Type msinfo32.exe and press Shift + Ctrl + Enter to open System Information.
  3. Click on System Summary, locate BIOS Mode and check if it is Legacy or UEFI. If it is Legacy, we need to change it to UEFI. legacy UEFI
  4. Press Windows + I to open Settings. Click System, then Recovery.
  5. Go to Advanced Startup, and click Restart Now.
  6. On Choose an option, select Troubleshoot.
  7. Now, on Troubleshoot, click Advanced Options.
  8. Click UEFI firmware settings and select Restart.
  9. From the next screen, select the appropriate option to enter BIOS.
  10. Go to the Boot tab, click the Boot configuration option, and set it to UEFI.
  11. Now, go to the Exit tab, choose Save changes and Exit, and restart your PC.

3. Convert MBR to GPT partition style

  1. Press Windows + X and choose Disk Management.Disk Management
  2. Right-click the hard disk, and select Delete Volume from the context menu.Secure boot Disk management
  3. The whole disk will be displayed as unallocated space; right-click on it and select convert to GPT.

4. Enable TPM support

  1. Press Windows + R to open the Run window.
  2. Type tpm.msc and press Enter.TPM Run command
  3. On the TPM management window, click Action.
  4. Select Prepare the TPM.TPMmsc
  5. Restart your PC.

5. Perform a Clean Boot

  1. Press Windows + R to open the Run console.
  2. Type msconfig and press Enter to System Configuration.CLEAN BOOT 1
  3. Go to the Services tab, and select Hide all Microsoft services. Click Disable all.Clean BOOT 2
  4. Now go to Startup, and click Open Task Manager.CLEAN BOOT 3
  5. For every Enabled item, right-click on it and select Disable.Clean BOOT 4
  6. Now close Task Manager, click Apply, and OK on System Configuration.CLEAN BOOT 5
  7. Click on Restart on the prompt.

6. Perform an in-place upgrade

  1. Go to Windows 11 software download website.
  2. Under Download Windows 11 Disk Image  (ISO), select Windows 11 (multi-edition ISO) from the dropdown.Download Windows 11
  3. Click Download. Select the product language and click Confirm.Windows 11 download 2
  4. Now click on 64-bit Download.
  5. Right-click on the ISO file ad click Mount, then click Setup.exe
  6. Click Yes on the UAC prompt.
  7. Now on Install Windows 11 window, click Next.
  8. Click Accept and click on Keep personal files and apps on the Ready to install page.
  9. Click Install, and the process will take some time.

So, these are methods to follow to resolve secure boot unsupported on Windows 11. However, if nothing worked for you, it’s possible that Secure Boot is grayed out on Windows 11 and can’t be enabled.

If you are stuck in between the process anywhere, feel free to let us know in the comments section below. We will be happy to help.