Bare Metal Restore Of 8.1 In UEFI Secure Boot Mode
Dec 20, 2013
I built a new PC running 8.1, GPT, UEFI secure boot mode, everything. I'm now at the point where I'm ready to start migrating my data to it, but before I do that, I need to get some backup software that offers me the option to boot from a recovery CD and restore from an image file backup stored elsewhere. Until I've wiped this install & restored successfully, I don't consider it a usable machine. I already have this setup working on my Win7, but for some reason that software is not working with 8.1.
So I'm looking around for something new, and I'm on a trial of Paragon Backup and Recovery Home 12. It says I can create a WinPE disk (and I must use this, since I'm using Intel firmware-based RAID) that will allow me to do a bare-metal restore. The takes me to a link on their website for something called the "Paragon Boot Media Builder." And there's documentation on it, but I can't find out how to download it. If I Google downloading that, a bunch of pirate websites show up & not much else.
I have a paid for version of Acronis True Image Home 2010 that I have used for years with my Windows 7 box and it's been good.
I've also used Macrium Reflect Free, and today I tend to use AOMEI ddata backuper as it's free for personal and commercial use.
I have a new Dell laptop (with Windows 8), and thus far I have disabled the UEFI boot options and Secure Boot and use a classic setup. However, if I wanted to have a play with these other options to see what impact they would have on system performance, which of these drive imaging software packages would work?
I also have a desktop at work with all of these options (and that's likely where I will experiment). On that box, it's simple to drop in a test hard drive and whack away until I get it working. My laptop has an msata drive and I don't have any spares of these drives lying around.
I was finally able to install windows 8 in uefi mode using a usb and was wondering how i could install ubuntu 13.04 to dual boot with windows 8 uefi? basically i dont want to disable secure boot nor any other feature in bios. If can go into youtube and search for "Dual-Boot Windows 8 and Ubuntu 12.10 by AvoidErrors" and tell me if that video is the way to install it.
So I've searched, and I've tested, and now I'm about to turn my laptop into a frisbee and never buy a Samsung PC again. In short, I bought an ATIV 7 whose previous owner had downgraded to Win7. I wanted to put Win 8 on and I have a volume license as well as the OEM key so I burned the ISO (actually 2 different ones) using every method I could find (ImgBurn, Rufus, Iso2Disc, Win7 Download tool, etc.) It became clear that the USB needed to be formatted FAT32 with GPT filesystem, however in UEFI mode it shows the USB but won't allow me to select it - it just flashes. If I set it back to CSM and UEFI I can make a USB boot, but even if I use diskpart to clean the drive and convert to GPT it will fail to install because it detects I didn't boot in UEFI mode.
Here's the deal. When I'd installed it earlier this week in CSM and MBR mode, and then converted to UEFI it worked fine. So....I tested several recovery programs we use at work to make sure they'd restore it okay via bootable media. Paragon, Aomei, Macrium, Lazesoft - all boot media failed. ONLY True Image 2014 DOES ACTUALLY BOOT in UEFI mode on my laptop. The only thing I can figure is that the way WinPE 5 or 5.1 (whatever it uses) is set up on it agrees with my laptop. So how I can modify the Acronis recovery media or create similar WinPE media that might actually boot on my laptop.
I'm finding that I am unable to disable secure boot. I can change the boot mode from UEFI to Legacy BIOS and that disables secure boot, but in Legacy mode I can't do what I'm trying to. I can't select the Secure Boot menu in the BIOS options--it's always greyed out. I've done some research and some sources said to hold shift while shutting down "to ensure you're really stopping Windows before trying to enter the BIOS" and hitting F2 on startup. I tried that but it made no difference. I've tried fiddling around with getting to the BIOS in other ways (forgotten how, now) and of course that made no difference.
I'm running Windows 8.1 on a Acer Aspire V-3551 that came with Windows 8 preinstalled.
I did the Upgrade Assistant from Win7 pro to 8 pro and this is what I was told:
Secure Boot isn't compatible with your PC
Your PC's firmware doesn't support Secure Boot so you won't be able to use it in Windows 8.
More info, I really want Secure boot, however. I have a UEFI BIOS. I am willing to upgrade or clean install, as I will never use the previous windows 7 version again. Is there a way to get Secure boot with my computer [when I upgrade to 8]?
Secure boot requires firmware that supports UEFI v2.3.1 Errata B and has the Microsoft Windows Certification Authority in the UEFI signature database. How do I get this?
I have a new laptop (HP G7-2292NR) with Windows 8 and today I turned on the laptop for the 3rd time and I see in the bottom right corner Windows 8.1 Secure boot isn't configured correctly build 9600, what does that mean? I am so new to Window 8 that I cannot find a thing, I need specific instructions. This is a huge change given I went from XP to Windows 8.
For those of us who have a PC capable of SecureBoot, but where we have chosen knowingly and intentionally to enable Legacy Boot, there has to be a way to get rid of the watermark. So, how to do it? Using the Group Policy editor to enable/disable "Use enhanced Boot Configuration Data validation profile" had no effect on my Samsung laptop.
I have been playing around with the Secure Boot feature to see if I could tell what properties it might show. Currently, to enable the full Secure Boot feature, I have to use the on board graphics, since my Graphics card does not have a UEFI Op Rom.
So far, I know Windows 7 will not boot on my machine when the Windows 8 Secure Boot bios settings are enabled, which means disabling the CSM (Compatibility Support Module). When the Windows 8 Secure Boot is on and I try to Boot Windows 7, I am returned to the Bios with a notification that some settings have been reset for compatibility. Windows 7 boots fine after that.
Because many systems will have devices that will not meet the Windows 8 standards, like Graphic Cards, the secure boot may really only be fully available on new systems.
But the CSM seems to be a way to bridge the gap by ignoring certain non-UEFI Op Rom devices during boot. Msinfo32.exe shows Secure Boot ON with the module enabled and certain options being set. I am thinking that would stop Root Kits, but have not found anything to confirm that it would.
I suppose I need to go find a really bad Root Kit somewhere to test !!
I am running Windows 8 x64 without secure boot enabled. According to the screen shot
secure boot is "Unsupported" but my motherboard has secure boot features in it. Its just that I didn't have secure boot enabled when I installed Windows 8 so Windows is unable to use secure boot now. What are the steps for setting up my computer for installing windows in secure boot mode ?
Pc Specs-: Motherboard: Gigabyte H77m-D3H (rev 1.1)GIGABYTE - Motherboard - Socket 1155 - GA-H77M-D3H (rev. 1.1) BIOS ver: F11 (Latest) Ram:8 Gb DDR3 Corsair HardDisk-: 1) Western Digital 160 GB (boot) 2) Western Digital 1 TB.
I had mailed Gigabyte support on how to enable secure boot they told me the following-:
"We suggest you can first back up data, reset BIOS items we mentioned in first mail, format your HDD into GPT partition and then reinstall Genuine Windows 8 to test again."
So I am asking how can I format my HDD into a GPT ? Is there anything else I need to before I install Windows 8 again ?? What are the exact steps to follow.
Also, there are two things is there any app available via which I can backup my entire C drive including Program Files, all my installed apps, and all of my hotfixes and Windows updates ?? Because I don't want to reinstall everything again and again update my Windows 8.
I had an image of my disk and I tried to boot it up from my VM workstation but it failed. I added in the line firmware = "efi". I used to be able to boot up without a problem in VM with my disk images before I changed to a new Win 8 laptop. So I was wondering does the secure boot somehow affects it?
i have a Lenovo Ideapad Z585 running Windows 8, secure boot, gpt paritioning and UEFI bios.The laptop comes with a factory shipped 1TB Sata drive which i want to replace with a Kingston V300 SDD 120GB drive.
I have followed this guide How to Migrate OS to new Hard disk.Ive run this in another desktop, it completes and i shut down, remove the destination and insert it into the laptop - power up and it blue screens with There has been an unexpected error message. Trying to access the recovery partition says it is damaged but looks like its almost going to load. Looking at the drive in EaseUS paritition master the paritions look a perfect copy apart from the proportional sizing.
AHCI is enabled in bios - i've tried EaseUS Backup clone, task was successfull but again blue screens but this time with a attached device cant be found.
One thing i wasnt sure about, the PC i done the cloning in has a RAID stripe setup but not sure if this effects it.Any one had success in cloning a GPT drive over to a SSD?
I cant do a fresh installation of windows 8 as i dont have recovery discs, nor does the onekey recovery software allow me to do so and id like to keep the recovery parition in tact really.
I want to disable secure boot so i can use my new gpu but I've heard that you must disable secure boot and enable legacy boot. If I do this, can i still boot Windows 8 or do you have to reinstall windows 8?
I had a bit of a problem with Malware which led me to reinstall windows 8. I had also at the time been trying to install Linux to dual boot beside it. However, upon reinstalling I got the annoying watermark saying "Secureboot isn't configured correctly." Having decided I would rather remove the watermark and having gone back into the BIOS (with a reinstall) and trying to enable secure boot I get a message - "CSM is Loaded! Disable the CSM via Setup and repeat operation after Restart".
However there is, as far a I can see no option to disable the CSM in my bios - I've tried disabling anything related to Legacy and reinstalling both Ubuntu and Windows 8 as well as wiping the drive and jumping the CMOS as well as updating the BIOS.
I've tried every permutation in the BIOS. Could possibly be an incompatibility with graphics card, but wouldn't know where to start on that end if it is.
1. Does secure boot need to be disabled to boot to the Macrium Reflect Free boot disk? I've got a friend I am working remotely and she has been unable to get the disk to boot in order to restore an image I made for her a while back. I assume secure boot is enabled on her Win 8 machine.
2. From what I've read, the pay version of Macrium Reflect seems able to allow you to open the application in Windows, set up the restore, and then it reboots automatically into the Macrium recovery environment. Would secure boot interfere with that operation?
I am using Windows 8.1, now I have a problem because i wanted do dual boot it with ubuntu and it didnt work on UEFI mode, but then when I installed ubuntu windows 8 wouldn't start... then I formated it with a downloaded windows 8 torrent... but now I can't start it on UEFI mode
It says something "media not found" or "failed" ... so if I want to start it I have to change to legacy mode......
Is there anyway to get it back to start it with UEFI? It ain't activated yet.. Windows 8.1 pro... is there any activatior or something too???
Or if I downgrade it to Windows 7? would it be any more the UEFI problem?
I had a problem where I was running UEFI with secure boot disabled and dual booting with Linux Mint which is UEFI compliant. Mint had installed Grub, Mint's boot manager but I don't like Grub so i installed rEFInd. Unlike Grub rEFInd has support for UEFI and should have worked better as a boot manager. But it gave me problems too. So I had Grub and rEFInd both installed. I could boot to both Mint and Windows but the boot managers, both Grub or rEFInd, would not show at startup like they are supposed to.
I had to boot the PC, then hit Escape getting into my options menu built into the system, hit F9 to get a list of boot options where i could then choose to boot from hard drive, cd rom, usb etc. rEFInd was in this list. Only after choosing rEFInd from here, was I able to open rEFInd and choose Windows or Mint. This is way too many steps to boot into an OS, so i thought i'd try to use the system repair disk to repair my master boot record or the EFI data that the system uses at boot under UEFI. I forgot that i had to run some additional commands under command prompt and just ran automatic repair from Advanced instead.
At this time Windows had no trouble working at all with secure boot enabled if I really needed windows to use secure boot.
It said it found but could not fix the errors. Suddenly, Windows would not boot even with secure boot enabled. I reran the tool 3 times and it didn't work so i wiped the drive and reinstalled Windows from a clean state. I really did not have errors on the system to begin with accept that the system was trying to access my boot managers in an odd manner.. although i could get everything to work.
The automatic repair option should not have made things worse, even breaking my secure boot but it did.
My point of this is to show that the repair disk tools and how they play with the EFI boot tools is buggy and it can break your system even if there is nothing wrong with Windows and it's ability to boot under secure boot. Don't trust the Repair Disk tool folks. Don't trust UEFI. Don't trust Secure Boot. Be smart. Install a clean system under Legacy Bios mode with UEFI and secure boot disabled.
I can't seem to get Secure Boot enabled on my laptop, the secure boot option is greyed out and I can't change it to enabled, my computer came with windows 8 on it automatically so I thought it would've been enabled by default.
I own an Asus laptop with pre-installed Windows 8.1 and, after downloading & installing recent Windows updates (20th of September 2014, if memory serves me correctly), I am unable to access desktop because system freezes at boot sequence returning me this error: "Secure Boot Violation. Invalid signature detected. Check Secure Boot Policy in Setup" printed inside a small red box.
After googling around, someone suggested to disable "Secure Boot" from BIOS and enable "Launch CSM". I performed such operations but I got no results (BIOS menu automatically appears after every reboot). Someone else suggested to change boot sequence and start system from a Recovery CD but I got no CD supplied with my laptop as Asus stopped providing CDs from very long time AFAIK.
I am quite sure problem relies on Windows Updates because I used this Laptop very little times and no p2p or hacked programs are installed. In addition to that, as far as I read, it seems other Win users experienced the same issue after installing WinUpdates but they have different BIOS so is not easy for me to understand my BIOS accordingly to what they do in their own BIOS in order to solve issue.
What annoys me most is that I bought this Laptop in July 2014 and, just three months later, it got freezes because of official Windows Updates and not because of bad behaviour of user.
I am having an issue with downgrading to Windows 7 and It's not nearly as easy as normally installing an OS. I get to the expanding files screen, and once the system reboots it goes back to the Windows 7 install screen. This is an issue, because it should continue with the installation.
Windows 8.1 64 bit pc48 GB RamIntel i7 - 3960X CPUBoxxTech ComputerDrive C: SSD - 446 GB
When I first got my new personal computer in January, I created a System Image using Microsoft's utility. I typically use Acronis for my backups, but after major changes, I use both Microsoft and Acronis.
Now, I am attempting to complete a System Image Backup using Microsoft's utility so that I can fix my SecureBoot concern, knowing that I have a safety net in place. Unfortunately, I am unable to complete a backup. BoxxTech suggests that I use Microsoft's utility.
I begin with the File History in the Control Panel as shown below. Note, that I have plenty of room on my FreeAgent F Drive (standalone USB drive). Yet, Microsoft's utility believes otherwise.
Only the three items that shown to be selected are selected. In other words, there are no other drives or partitions off-screen that are selected.
Thinking that it might be a problem with my external USB hard drive, I look at using one of my internal drives, T.
I get the same error message as shown earlier.
why I am unable to back-up my personal computer using Windows 8.1?
not sure if this has been posted but download this update from the Ms site if your watermark with this message doesn't disappear after you've activated your Windows 8.1 installation.
Download Update for Windows 8.1 for x64-based Systems (KB2902864) from Official Microsoft Download Center
I got the message after updating an HP sleekbook 4 laptop to Windows 8.1 enterprise (TechNet version from ISO) from the Windows 8 pro that was pre-installed with the laptop (plus all the other zillion bits of bloat /ad / crapware).-- I disabled protected boot -- more trouble than it's worth - especially if you are testing OS'es -- but KEPT the UEFI .
I would like to reinstall Win 8 on my ASRock UEFI motherboard in the UEFI mode. I have Win 7 OEM and the downloaded Win 8 Pro upgrade. I have the Win 8 Pro upgrade burned to an ISO disc. I also have the hard drive backed up to Acronis 2013 and have an Acronis WinPE rescue disc to boot with to restore.
Several questions. (1) If I convert to UEFI and format the drive to GPT, will Acronis restore to the GPT (from MBR)? (2) If Acronis won't restore, will converting to UEFI/GPT affect installing or activating the Win 7 OEM and/or the Win 8 Pro upgrade (I assume I'll have to install Win 7 and then upgrade to Win 8). (3) Will a UEFI system read other hard drives that are MBR formatted?
I have original ISO file from MSDN website - it is Windows 8.1 Update 1 Enterprise (x64) MSDN version with Slovak language interface. I create a bootable DVD (Verbatim DVD-R 4,7GB) in program ISO2Disc. This ISO I would like to install on to my system , more details about my pc - see my system specification. My motherboard is MSI Z77 Mpower with latest version UEFI - BIOS 17.12
I have a few question about installation a new windows 8.1 in uefi mode:
-what a bootable media is better ? I think USB stick or DVD disc -what the function in the BIOS I must turn on or off, I mean the fast boot or memory fast boot -UEFI mode is better then LEGACY mode ?
I have a bootable DVD Parted Magic , it is good Partition Manager. I must change MBR format to GPT - only GPT is supported format for UEFI , is it rue ? So , now i should format all disc inside my pc (secure erase for ssd disc and wipe for hhd). I can create NTFS partition with GPT format and aligned to 1204MB for all solid state discs and HDD. I can do this ?
it's getting boot and install only in EFI mode. after trying to reinstall it won't allow me to select the disk partition, as it gave me the error "
Windows 8 cannot be installed to this disk. The selected disk has an MBR partition table. On EFI systems, Windows can only be installed to GPT disks." i tried all the given solutions on GOogle. even i cannot recover or refresh using windows 8 environment. many times it gives me BSOD. cannot vonvert to MBR as it says it cannot be done on virtual HDD.
tried many things nothing works, need to install windows 8 after every 1 or 2weeks, many a times my BCD data gets corrupt, and windows wont start. Also tried many things to repair this, but only thing that works is reinstalling windows 8. That gpt or MBR error was solved by selecting UEFI:CD drive. in boot options by pressing F12 after inserting the disk.
My system configuration: System Info Utility version 126.96.36.199 OS Version: Microsoft Windows 8 Pro, 64 bit Processor: Intel(R) Pentium(R) CPU G645 @ 2.90GHz, Intel64 Family 6 Model 42 Stepping 7 Processor Count: 2 RAM: 3029 Mb Graphics Card: Intel(R) HD Graphics, -1813 Mb Hard Drives: C: Total - 102399 MB, Free - 33011 MB; D: Total - 374009 MB, Free - 51233 MB; Motherboard: Gigabyte Technology Co., Ltd., H61M-DS2 Antivirus: Windows Defender, Disabled
First, some context: I have a Dell Inspiron 15R SE that came with Windows 8.
I've managed to get a working dual-boot system with Ubuntu 12.10. I can't remember exactly how I done that, but I remember that I had to disable secure boot. I think that the boot configuration those days was:
Secure boot: DisabledLoad legacy option rom: EnabledBoot list option: Legacy
This "configuration" worked perfectly for 6-7 months.
Then, one day (last week, can't remember the exact day), when I was using Windows 8 the computer crashed. I hard-rebooted and got this screen:
After executed boot-repair from a Ubuntu LiveCD dozens of times I've decided to eliminate Ubuntu temporarily and focus to get a system with Windows 8 working nice.
Then I used my recovery DVDs to recover the system. Yup, Windows has booted. But when I restarted first time I got the same error. Then I, digging a solution, pressed F12 after a reboot and got here:
The highlighted option allows me to boot into Windows 8. So I went to boot options (F2) and changed the following configuration:
Load legacy option rom: DisabledBoot list option: UEFI
Now I can boot directly to Windows without need to press F12.
But my objective isn't complete. I want to erase all Ubuntu entries from the seconds image and restore the legacy boot from the first imagem (because they worked before).
I did two things:
I erased all partitions related to Ubuntu (root partition and home partition).I created a Windows recovery disk (not a system recovery disk).
I used the recovery disk to run the automatic recovery procedure (I forgot the exactly name). I've runned it at least 10 times with no success. Then I went to command prompt to try the famous triad: bootrec /fixmbr, bootrec /fixboot and bootrec /rebuildbcd. Still, no solution.