tis-verif-secureboot-uefi-ca-2023 icon

tis-verif-secureboot-uefi-ca-2023

Silent install package for tis-verif-secureboot-uefi-ca-2023

10-1

  • package: tis-verif-secureboot-uefi-ca-2023
  • name: tis-verif-secureboot-uefi-ca-2023
  • version: 10-1
  • maintainer: Simon Fonteneau, Kevin Cherel
  • licence: ©
  • target_os: windows
  • architecture: all
  • signature_date:
  • size: 6.10 Ko

package           : tis-verif-secureboot-uefi-ca-2023
version           : 10-1
architecture      : all
section           : base
priority          : optional
name              : tis-verif-secureboot-uefi-ca-2023
categories        : 
maintainer        : Simon Fonteneau, Kevin Cherel
description       : Ce script permet de contrôler que le démarrage sécurisé est activé et que le certificat Windows UEFI CA 2023 est bien présent dans la base UEFI.
depends           : 
conflicts         : 
maturity          : PROD
locale            : 
target_os         : windows
min_wapt_version  : 
sources           : 
installed_size    : 
impacted_process  : 
description_fr    : 
description_pl    : Ten skrypt sprawdza, czy funkcja Secure Boot jest włączona oraz czy certyfikat Windows UEFI CA 2023 jest obecny w bazie UEFI.
description_de    : Dieses Skript überprüft, ob Secure Boot aktiviert ist und ob das Zertifikat Windows UEFI CA 2023 in der UEFI-Datenbank vorhanden ist.
description_es    : Este script verifica que Secure Boot esté habilitado y que el certificado Windows UEFI CA 2023 esté presente en la base de datos UEFI.
description_pt    : Este script verifica se o Secure Boot está ativado e se o certificado Windows UEFI CA 2023 está presente na base de dados UEFI.
description_it    : Questo script verifica che Secure Boot sia abilitato e che il certificato Windows UEFI CA 2023 sia presente nel database UEFI.
description_nl    : Dit script controleert of Secure Boot is ingeschakeld en of het certificaat Windows UEFI CA 2023 aanwezig is in de UEFI-database.
description_ru    : Этот скрипт проверяет, включена ли функция Secure Boot и присутствует ли сертификат Windows UEFI CA 2023 в базе данных UEFI.
audit_schedule    : 
editor            : 
keywords          : 
licence           : ©
homepage          : 
package_uuid      : 40f53090-14fd-4eb6-be82-47f08f0b6ce7
valid_from        : 
valid_until       : 
forced_install_on : 
changelog         : 
min_os_version    : 
max_os_version    : 
icon_sha256sum    : 03c0491e556f63f98f6ca32ec6beb1894fac54fb804d53e6086e4a26c0ac7491
signer            : Tranquil IT
signer_fingerprint: 8c5127a75392be9cc9afd0dbae1222a673072c308c14d88ab246e23832e8c6bb
signature_date    : 2026-02-27T10:05:38.000000
signed_attributes : package,version,architecture,section,priority,name,categories,maintainer,description,depends,conflicts,maturity,locale,target_os,min_wapt_version,sources,installed_size,impacted_process,description_fr,description_pl,description_de,description_es,description_pt,description_it,description_nl,description_ru,audit_schedule,editor,keywords,licence,homepage,package_uuid,valid_from,valid_until,forced_install_on,changelog,min_os_version,max_os_version,icon_sha256sum,signer,signer_fingerprint,signature_date,signed_attributes
signature         : J35Eqv91S8cu17WQDJsxPHdQ7VZKWGgWqCCYTSadEJLye2UOUjUhc1MzlzBbrlmTXXhfG3ESUSg/CLaElwxvOvJOajTLqVVjZrAn/WL4hOShSe+Nz8cAkg294ejZb8Mzj40m74t5mgiQOIBkS4Ht7Ng+Bilj/+8F0Oa+Wx5hdFEeYTtmO9JUK0FxBW3fxbqVibbw4vgXn3ww08xreX4nwlNqJq5GNkMxDbymK/sJ4CPPTdYbnNUleXATmdsPVLlMDmciYewi//IQLvFInmNeGKGmhfIzT5NdcqOmqpBR86VWM6Hi0kcbYyJ8vfjqR9V2HXvBoejcikp5fs2C8udVlQ==

# -*- coding: utf-8 -*-
from setuphelpers import *

def install():
    registry_set(HKEY_LOCAL_MACHINE,r'SYSTEM\CurrentControlSet\Control\SecureBoot','AvailableUpdates',64)
    #registry_set(HKEY_LOCAL_MACHINE,r'SYSTEM\CurrentControlSet\Control\SecureBoot\Servicing','WindowsUEFICA2023Capable', 1, type=REG_DWORD)
    run_task(r'\Microsoft\Windows\PI\Secure-Boot-Update')

def audit():

    result={}

    list_key = ["UEFICA2023Status","WindowsUEFICA2023Capable","UEFICA2023Error","ConfidenceLevel","AvailableUpdates"]

    for u in list_key :
        result[u] =  registry_readstring(HKEY_LOCAL_MACHINE, r"SYSTEM\CurrentControlSet\Control\SecureBoot\Servicing", u)

    WAPT.write_audit_data_if_changed("verif-secureboot-uefi-ca-2023", "verif-secureboot-uefi-ca-2023", result)

    if registry_readstring(HKEY_LOCAL_MACHINE, r"SYSTEM\CurrentControlSet\Control\SecureBoot\Servicing", "WindowsUEFICA2023Capable") == '2':
        print("The certificate is present and the PC is already booting with the new 2023-signed boot manager.")
        return "OK"

    elif registry_readstring(HKEY_LOCAL_MACHINE, r"SYSTEM\CurrentControlSet\Control\SecureBoot\Servicing", "WindowsUEFICA2023Capable") == '1':
        print("The certificate is present in the Secure Boot database.")
        return "WARNING"

    else:
        print("The registry key is missing or incorrect.")
        return "ERROR"

38d056ab130f7bf7c481c12636a4e9959de36561d3dfcbe54c6e3571bc0c1dc3 : WAPT/certificate.crt
e96adb3eebb61957ba605c7f1f447b77e6ca854b17d53c9bee3de8590b816a07 : WAPT/control
03c0491e556f63f98f6ca32ec6beb1894fac54fb804d53e6086e4a26c0ac7491 : WAPT/icon.png
7f20b0b5cf2785da8520c42e134ddd471dd22636ed3db1178bcb9544f73ee128 : luti.json
ad0367c5afccaf0ac92030e572e113c82ef959699232e238e32d1b921f41a03d : setup.py