> Source: [sk95086](https://support.checkpoint.com/results/sk/sk95086)

# sk95086 - Microsoft Surface Pro with Secure Boot enabled does not allow signed binaries

| Property | Value |
|----------|-------|
| Solution ID | sk95086 |
| Date Created | 2013-10-08 |
| Last Modified | 2015-09-17 |
| Technical Level | Advanced |
| Products | Endpoint Security |
| Versions | Cloud, E89.X, E88.X |
| OS | Windows |

## Symptoms

- * After installing FDE with Secure Boot enabled on Microsoft Surface Pro and Surface Pro 2, you will get a error message stating that an invalid signature is detected.
* Note: The SK applies to Surface Pro and Surface Pro 2.

## Cause

The reason for the invalid signature is that Microsoft does not allow any other UEFI binaries other than the Windows ones to boot on Surface Pro and Surface Pro 2.

## Solution

This solution requires authentication. Please log in to view the full solution.

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
