How to Enable Secure Boot Msi Click Bios 5
If you’re trying to get Secure Boot working on an MSI system and Click BIOS 5 isn’t matching what tutorials say, you’re not alone. The usual menu path is Settings → Security → Secure Boot, but on some systems the option is hidden, greyed out, or blocked by other settings like UEFI mode, Platform Keys, or “Setup Mode.” This guide shows you where to look—and the most common reasons you can’t turn it on.
Before changing Secure Boot: check the current BIOS mode and understand the UEFI concern
Secure Boot works only in UEFI mode. So before you change anything, confirm your firmware is running in UEFI, not Legacy/CSM.
In Click BIOS 5, look for options like:
- Boot mode (often shown as UEFI/Legacy or similar)
- UEFI as the active selection
- CSM set to disabled (if CSM is listed separately)
If your system is in Legacy mode, you’ll often see one of these:
- Secure Boot doesn’t show up
- It shows up but stays greyed out
- You get a message about keys/mode (for example, Platform Key or Setup/User Mode)
Also, pay attention when you save. Changing UEFI/boot settings can change how your drives boot. If the BIOS shows warnings, read them and follow what it asks.
Open MSI Click BIOS 5 and switch to the relevant settings view
- Restart your MSI PC/laptop.
- Press the BIOS key to enter Click BIOS 5 (commonly Del on desktops, F2 on many laptops—use the prompt for your model).
- Once inside, open the system settings area (usually from the left-side menu).
You’re looking for the security-related screens. Even if the layout differs by model, the controls you need should be in the same general area:
- Settings
- then Security
If you’re not sure you’re in the right place, start with Settings first, then go into Security. Don’t hunt around randomly.
Enable Secure Boot through Settings → Security
In MSI Click BIOS 5, Secure Boot is usually controlled here:
Settings → Security → Secure Boot
Do this:
- Open Settings.
- Go to Security.
- Find Secure Boot.
- Set it to Enabled (or On, depending on the label).
- If the BIOS asks you to confirm, confirm it.
Some systems also show messages like User Mode and indicate a Platform Key is required. If you see that, don’t keep flipping switches on Secure Boot—go to the Platform Key/User Mode section below.
Enable TPM 2.0 or fTPM through Trusted Computing
Many “Secure Boot + Windows 11” setups require TPM as well. On MSI systems, TPM options are typically under Trusted Computing, not inside the Secure Boot toggle itself.
A common path looks like this:
- Settings → Security → Trusted Computing
- then enable Security Device Support
So:
- Open Settings.
- Go to Security.
- Find Trusted Computing.
- Look for Security Device Support and enable it.
- Then check for TPM 2.0 or fTPM (the naming varies by system).
Simple way to think about it:
- Secure Boot is a firmware boot trust check.
- TPM 2.0 / fTPM is used by security/OS requirements, including key storage and modern checks.
Because of that, TPM changes won’t automatically fix Secure Boot. Treat them as separate checks, even if they’re related in practice.
What to do when Secure Boot is missing or greyed out
If you can’t enable Secure Boot, use this order. This is the part people skip, and it’s usually why the option won’t cooperate.
Step 1: Confirm UEFI mode
- If the BIOS is in Legacy/CSM mode, switch it to UEFI mode (the exact wording varies).
- After switching, go back to Settings → Security → Secure Boot and check again.
Step 2: Look for a “User Mode” / key requirement message
Sometimes the BIOS won’t activate Secure Boot until a Platform Key is set. If you see that kind of note:
- Don’t just toggle Secure Boot.
- Move to the Platform Key, User Mode, and Setup Mode section.
Step 3: Check whether Setup Mode is involved
If your BIOS is in Setup Mode, Secure Boot activation can behave differently than in locked-down operation.
What to do:
- Find the screen that mentions Setup Mode and User Mode.
- If it isn’t near Secure Boot on your system, check the security/key area.
Step 4: Re-check after updating the settings view
On some systems, Secure Boot appears only in a certain view, or after you enable specific security settings. If you enabled something like Trusted Computing / Security Device Support, go back and check Secure Boot again.
Step 5: Don’t save until you understand the keys note
If you see key-related text, assume the BIOS is warning you about firmware trust state. Saving might put you into a state that requires extra steps to undo.
Rule of thumb: if the BIOS message mentions keys or modes, read it first, then act.
How Platform Key, User Mode, and Setup Mode affect activation
This is where a lot of Secure Boot frustration comes from.
- User Mode usually means the system is in the normal locked-down state.
- Setup Mode is more like “key setup allowed.”
- A Platform Key (PK) is part of how firmware decides what to trust.
When the BIOS mentions Platform Key, you may need to:
- set the keys first before Secure Boot can fully enable
- accept that Secure Boot may show disabled or greyed out until the key state is correct
Next steps:
- Find the part of Click BIOS 5 that mentions Platform Key, User Mode, or Setup Mode.
- If the BIOS says a Platform Key is required, follow the on-screen prompts to set the key state it requests.
- Re-check Settings → Security → Secure Boot after the key state changes.
One practical warning: the exact steps for keys can vary by MSI model and BIOS version. Follow the BIOS messages on your system rather than guessing based on a screenshot from a different board.
How to disable Secure Boot in MSI Click BIOS 5
To turn it off, do the reverse in the same area.
- Enter Click BIOS 5.
- Go to Settings → Security.
- Find Secure Boot.
- Set it to Disabled (or Off).
- Save and reboot.
If Secure Boot can’t be changed on your system:
- check whether the BIOS is blocking changes due to keys/modes
- if you see Setup Mode / User Mode / Platform Key messages, follow what your BIOS says before saving
Save the changes and verify the result in Windows
Once you’ve enabled Secure Boot (and TPM 2.0 or fTPM if needed):
- Press F10 (or use Save & Exit if it’s shown).
- Let the system reboot normally.
- In Windows, verify:
- Secure Boot is actually enabled
- TPM is available and active (the TPM area can show whether it’s ready)
If Windows still says Secure Boot isn’t enabled, don’t assume the BIOS change failed. Re-check in BIOS first:
- you’re in UEFI mode
- Secure Boot under Settings → Security is truly Enabled
- any key/mode message didn’t leave the firmware in a restricted state
Also, if you changed boot mode (Legacy ↔ UEFI), Windows boot behavior can change. In that case, go back to boot settings and make sure the system is set to boot how you intended.
Before you hit save, compare the exact menu path from this guide—Settings → Security → Secure Boot—with what you see on your MSI model and how Click BIOS 5 labels it. If the wording looks different, follow your MSI manual’s naming for your specific motherboard or laptop.