Event details
Get answers to your questions about adopting Windows 11 and managing Windows devices across your organization. Find out how to proactively implement and monitor Zero Trust practices. Get tips on keep...
Heather_Poulsen
Updated Dec 18, 2025
HeyHey16K
Jan 14, 2026Iron Contributor
Hi Guys, and happy new year everyone 🎉,
In the Secure Boot AMA (https://techcommunity.microsoft.com/event/windowsevents/ama-secure-boot/4472784) someone asked about the UEFICA2025Status Reg Key showing an unexpected status of "NotStarted". The Microsoft team advised they would investigate and advise what to do in this situation. We have this in our environment. When will we be told what to do/who can we speak to about this please?
- EricMoeJan 15, 2026
Microsoft
I reached out to the Secure Boot Certificate team and they shared the following:
"Not Started" means that nothing has triggered the certificate updates. Possible triggers are:
- We determine the device is high confidence - this will be ramping up over the next several months.
- Customers have opted in to Controlled Feature Rollout and are providing telemetry
- Customers trigger it themselves through Intune, GPO, registry key change