Event details
If a Device is new i.e a Surface Pro 10. should we expect it has a certificate then no need to update? what value should we except?
if availableupdates is set to 0x0
UEFICA2023Status - notstarted
- prabhv1982Dec 11, 2025
Microsoft
Surface Pro 10 for business and Surface Pro 10 with 5G come default with the updated certificates. You can refer to Surface Secure Boot Certificates - Microsoft Support for details on surface devices that come with updated certificates pre-installed in UEFI. You can review the TPM-WMI event 1808 (This event means device has all certificates) or 1801 (Means device is missing certs and need to be updated) in System event log. Refer to Secure Boot Certificate updates: Guidance for IT professionals and organizations - Microsoft Support for details on how to monitor if device has updated certificates.