Secure Boot Certificate for TeraByte Products

TeraByte DB Certificate Installer

Version 1.00 made available on June 8, 2026

OEMs and system builders who need to include the TeraByte DB certificate can download it here:

The TeraByte DB Certificate Installer provides an easy-to-use wizard for installing the TeraByte Secure Boot certificate into your computer’s UEFI Secure Boot database.

Installing this certificate is completely optional. It is only needed if you want to use TeraByte-signed startup boot files with Secure Boot enabled. If you do not need that option, you do not need to install the certificate.

When Secure Boot is enabled, the boot files used to start an operating system must be digitally signed and trusted by the computer’s UEFI firmware. Trusted certificates are stored in the firmware’s allowed signature database, commonly called db.

Updating Secure Boot certificates while Secure Boot is enabled normally requires the update to be authorized by a certificate in the firmware’s Key Exchange Key database, or KEK. These keys are usually configured by the PC manufacturer.

If the required authorization key is not already present, the system must be placed into Secure Boot Setup Mode before the allowed certificate database can be changed. This typically requires temporarily disabling or clearing Secure Boot keys in the firmware setup utility.

The TeraByte DB Certificate Installer does not bypass these UEFI Secure Boot requirements. It simply guides the user through the process and makes the certificate installation much easier.

Once the TeraByte certificate is installed, you will have an additional startup option: using TeraByte-signed boot files. This does not replace the standard Secure Boot choices; it simply adds another trusted option that you can choose when needed.