Microsoft UEFI CA 2023 Boot Manager Signature Database (DB) fails to retain certificates after system restart
- After the Scheduled Task runs and prior to a reboot, the Signature Database (DB) shows the Microsoft UEFI CA 2023 certificates, but the entries do not exist after a reboot.
- Under
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SecureBoot\Servicing- BootMgrLastUpdateError = 0x80004005 (2147500037)
- BootMgrLastUpdateErrorReason = PCA2023NotFoundInDB
- The Key-Exchange (KEK) does contain the Microsoft UEFI CA 2023 certificate changes.