Just for feedback, I have created one user for PVE and another one for PBS.
I disabled root in PVE and PBS, and I can login with respected token in PVE and PBS authentication server.
Now PBS is connected to PVE with a token.
No more log
I played a little with API token, but I want to "full reset" this to recreate neatly.
I understood I can connect PBS to PVE with API token and secret, but after removed all token and user, and connect PBS with root@pam, I cant backup some VM anymore.
I explored some files in PVE and PBS case...
Ok, After remove and create another EFI disk with pre enrolled keys, i was able to had secure boot activated, but i had to disable signature vérification for storage controller. I will try later to change this driver.
I have broken all :/
I have added pvetest repo and upgrade the 3 paquets: pve-manager qemu-server pve-edk2-firmware
I had another version of trousers because of mortar framework installed:
root@pve:/mnt/temp/backup_ext# dpkg -l | grep trousers
I came from PVE 6.4 and PBS 1.X, installed on top on Debian 10 on the same host, with secure boot from Mortar Framework.
I use principally a Windows 10 VM with GPU (WX 3100), NIC (Intel i210) and M2 PCIe Renesas USB3 (for USB front) passed trough.
This is my daily "computer", used with a KVM...
I had same issues with Asus P10S-i, it was a bugged BIOS.
The two lasts BIOS for this motherboard has same issues (4602 and 4503)
It works with this, but it's not clean, so i stuck to 4401.
You can try to upgrade or downgrade