Hm, a co takhle si tu specifikaci precist? Fanaticky vlezdoprdelismus vuci M$ ti zatemnuje oci...
Strana 122
18. MANDATORY. Enable/Disable Secure Boot. On non-ARM systems, it is required to implement the ability to disable Secure Boot via firmware setup. A physically present user must be allowed to disable Secure Boot via firmware setup without possession of PKpriv.