IBM Support

QRadar: Host is unable to determine the Secure Boot status

Troubleshooting


Problem

During the QRadar upgrade receive warning:
"[precheck] The system is unable to determine the Secure Boot status or verify the enrolled public key certificate on the following hosts: The X.X.X.X host is unable to determine the Secure Boot status."

Symptom

When running:
media/updates/installer -t
During the upgrade precheck you will see the following warning:
WARNING: Applying this upgrade to a UEFI Secure Boot enabled system without enrolling the supplied IBM public key certificate on the SFS, causes the host to become unresponsive. For information on enrolling the IBM public key certificate from the SFS, see https://ibm.biz/BdMFRj For more details on affected hosts, see the patch log file /var/log/setup-2021.6.3.20220829221022/patches.log. 
[precheck] The following hosts have Secure Boot enabled and do not have the IBM public key certificate enrolled on the system keyring: 
[precheck] The system is unable to determine the Secure Boot status or verify the enrolled public key certificate on the following hosts: The X.X.x.X host is unable to determine the Secure Boot status.

Document Location

Worldwide

[{"Type":"MASTER","Line of Business":{"code":"LOB77","label":"Automation Platform"},"Business Unit":{"code":"BU048","label":"IBM Software"},"Product":{"code":"SSBQAC","label":"IBM Security QRadar SIEM"},"ARM Category":[{"code":"a8m0z000000cwtdAAA","label":"Upgrade"}],"ARM Case Number":"TS015518102","Platform":[{"code":"PF016","label":"Linux"}],"Version":"7.5.0"}]

Log InLog in to view more of this document

This document has the abstract of a technical article that is available to authorized users once you have logged on. Please use Log in button above to access the full document. After log in, if you do not have the right authorization for this document, there will be instructions on what to do next.

Document Information

Modified date:
22 February 2024

UID

ibm17122757