Question about secure boot 2023 certificate on Zorin 17 not installing

Yesterday and today, finally helped a Zorin user get back on line (in part thanks to Proton Meet).

However, one of the programs that refuses to install is the Microsoft Certificate for 2023. Now here is the strange part. When I was doing something remotely, I saw that somewhere along the line that Zorin was not using UEFI.

However, using this command:

[ -d /sys/firmware/efi/ ] && echo "UEFI" | | echo "BIOS"

The result was "UEFI".

The install uses Plasma 5.24 and the Microsoft Certificate keeps showing in Discover.
The user cannot get into the BIOS as the user has an HP All-in-One out of warranty and they don't have the unique key that will have been originally included with the device at time of purchase. Apparently, HP have this present for their All-in-One's and is the only way to access the BIOS - this is separate from Administrator and User setup passwords. HP refused to help in the past, they aren't going to change their tactic of "You need to buy a new All-in-One"!!!!!

Thoughts anyone?

No Access to the BIOS ... Depending what the User wants, I would normally suggest to disabled Secure Boot but when no Access to the BIOS is possible, it falls out. Also a BIOS Update.

And when You donwload the Packages from the Ubuntu Repos manually and then install them?

I did a full upgrade so they are now on kernel 6.18. Managed to get network connection sorted. Guess they will just have to live with it keep coming up in Discover. I would not know where to look to stop the package from reappearing. I think if they changed updates to manual they would struggle to keep on top of things as they are not tech savvy.

Have you tried
systemctl reboot --firmware-setup

No, I wouldn't think for a minute this would cause an issue on a 'normal computer'. The last thing I want to do is to leave someone with a non-working desktop. As they are in the middle of preparing legat papers for an AG that would be unforgivable. :wink: