Event details
Navigating Secure Boot certificate updates in virtualized environments? Drop in to Secure Boot Office Hours and ask your questions live in the comments. For one hour, experts will be available to discuss Hyper-V, Azure offerings, Windows 365, VMware, and other virtualization scenarios. Whether you're still planning for certificate updates, validating your rollout, or troubleshooting an issue, come get the answers you need from the people closest to the technology.
There is no on-camera or meeting component to this event. All Q&A will take place in the comments on this page.
How do I participate?
Select Add to Calendar to save the date, then click the Attend button to save your spot, receive event reminders, and participate in the Q&A. Feel free to submit your questions ahead of time, and we encourage you to post early to help ensure they're seen by our experts. The Q&A will wrap up at 9:00 AM PDT, after which comments and replies will be closed.
Post your questions now for tomorrow's Office Hours. We'll have members of the Windows 365 and Azure Virtual Desktop teams "in the office" as well as members of Broadcom to answer your questions about updating Secure Boot certificates for Cloud PCs and virtual machines, including VMware environments.
Don't see Attend or Add to Calendar? Sign in to the Tech Community to join the conversation.
39 Comments
- wrootSilver Contributor
I see comments here to follow the Broadcom KB to update KEK and so on. But in the previous AMA i have posted that i already get 1808 event that my certs and boot manager are updated and MS confirmed there i should be all setup. So, i am a bit puzzled. I didn't do anything special. Just updated VMs compatibility to latest and updated the registry/run the scheduled task. My VM is not with vTPM or Bitlocker. It is a Windows Server 2025. Our ESXi is also 8.0.3 U3b, not U3j yet.
- Grace_VMWCopper Contributor
VMs created on ESXi 8.0U2+ hosts already have the 2023 KEK and the 2023 DB certificates (though the PK is NULL if ESXi version is not 9.x).
The "Impacted VMs"https://knowledge.broadcom.com/external/article/423893/secure-boot-certificate-expirations-and.html#remediation_impacted_vmssection in https://knowledge.broadcom.com/external/article/423893/secure-boot-certificate-expirations-and.html has more details.