Windows 11 Update: Users report unexpected outlog problems!

Windows 11 Update: Users report unexpected outlog problems!

keine Adresse angegeben - The recently published April update for Windows 11 causes significant problems for users who have activated the "System Guard Secure Launch" or "Dynamic Root of Trust for Measurement" functions. Affected people report massive difficulties when logging in, especially when using Windows Hello. Many users are suddenly locked up by their devices, since both facial recognition and PIN input no longer work. Error messages such as "Face recognition could not be set up" and "Something went wrong, your PIN is not available" are piling up, which leads to a blockade of the access to the system. In such cases, there is often only the possibility to reset the PIN to regain access.

Microsoft recognized the incidents, but describes the problems as individual cases. The difficulties appear particularly after a reset process with the "Keep my files" option, which ensures frustration among users. Such incidents shed light on the fragility of security -critical systems, especially if they work with advanced functions such as the Guard system.

background to System Guard Secure Launch

The technologies of Microsoft, including the "System Guard Secure Launch", offer extensive security measures, especially for secured core PCs. These PCs are specially designed to prevent malware attacks and minimize firmware weak spots via a clean, trustworthy starting condition. Since virtualization-based security is activated by default, users benefit from a high level of protection that is supplemented by Hypervisor Protected Code Integrity (HVCI). This mechanism protects the system memory and ensure that all executable files come from known and approved sources.

A basic requirement for the effective operation of "System Guard Secure Launch" is the use of the Dynamic Root of Trust for Measurement (DRTM), which works in accordance with the UEFI Secure Boot process. This forces the system into a hardware -controlled trustworthy state and thus minimizes the attack options on the firmware. Administrator rights are necessary to activate or deactivate this safety function if necessary. Microsoft offers instructions that can be carried out via Windows security or the registration editor.

activation and deactivation of System Guard

The activation or deactivation of the Microsoft Defender System Guard Secure Launch can be activated by both Windows Security and via the registration editor. The steps include:

    Open
  1. Windows security.
  2. click on "device safety".
  3. Call up the details of the core insulation and activate or deactivate firmware protection.
  4. If firmware protection is blocked, corresponding DWord values must be adjusted in the registration editor.
  5. then restart the Computer.
  6. To ensure that these functions are configured correctly, users can also access the system information on their device and check the virtualization-based security services. Such information is essential to manage the security settings and to avoid possible difficulties, such as currently in the April update.

    For more information about the security architecture and the protection by "System Guard Secure Launch", users can consult the official resources of Microsoft. These offer deeper insights into the functioning and configuration of the security features.

    Details
    Ortkeine Adresse angegeben
    Quellen