DELL/EMC + UEFI: System refuses to boot when TPM 1.2 is activated with option "On without Pre-Boot Measurements", printing "Something has gone seriously wrong: import_mok_state() failed: Unsupported" message

Solution Verified - Updated -

Issue

  • On DELL/EMC system configured to boot in UEFI mode, after enabling TPM 1.2 in the UEFI firmware with option On without Pre-Boot Measurements, the system doesn't pass Shim state and stops after printing the following messages on the console

    Could not create MokListRT: Unsupported
    Could not create MokListXRT: Unsupported
    Could not create SbatLevelRT: Unsupported
    Something has gone seriously wrong: import_mok_state() failed: Unsupported
    
  • When changing the option to On with Pre-Boot Measurements the system boots fine

Environment

  • Red Hat Enterprise Linux 6 and later (RHEL)
    • UEFI (shim-x64)
  • DELL/EMC systems with TPM 1.2 devices

Subscriber exclusive content

A Red Hat subscription provides unlimited access to our knowledgebase, tools, and much more.

Current Customers and Partners

Log in for full access

Log In

New to Red Hat?

Learn more about Red Hat subscriptions

Using a Red Hat product through a public cloud?

How to access this content