Pop_OS! boot error: invalid signature

Kaman

Member
May 23, 2022
10
3
8
Hi,

I am trying to install Pop_OS! in a VM. The ISO image is attached as a CD-ROM in the VM. When it boots, it gets:
error: /casper_pop-os_22.04_amd64_nvidia_debug_87/vmlinuz.efi has invalid signature
error: you need to load the kernel first


All google searches on this error indicates the secure boot should be disabled in the host bios. And it is! To prove it, I replaced the proxmox OS disk with a blank disk and install using the same ISO (on a USB stick) and it works.

I have installed a Fedora VM on the same host already without issue. I looked for a secure boot setting in the VM and wasn't able to find it. Is there one? Can somebody help me?

Thanks,

Kaman
 
Hey,

a bit of a wild guess, but make sure "Pre-Enroll keys" is not enabled.
1653287258658.png
 
  • Like
Reactions: Tubbymurra
Thank you!!! That is it.

Maybe there is a better way, but I ended up dropping the VM and recreate with that flag unchecked. Initially I update the vm_id.conf and changed the flag from 1 to 0 but it didn't work. Hence the drop and recreate of the VM.
 
I think it should be possible to clear the keys from somewhere in the BIOS menu, anyway, glad I could help. :D