查看: 4781|回复: 5
收起左侧

[分享] 关于win10 周年版不能安装毛豆的官方临时解决方案

[复制链接]
mxf147
发表于 2016-8-3 20:36:04 | 显示全部楼层 |阅读模式
本帖最后由 mxf147 于 2016-8-3 20:37 编辑

A clean install of the Aniversary build of Windows 10 also known as build 1607 or Inisder build 14393 will not allow the drivers of CIS to be installed because they are not digitally signed. People upgrading from a previous build of Windows 10 are not affected.

I am quoting an article on ghacks Windows 10 Version 1607 driver signing changes:
Microsoft announced recently that the upcoming version 1607 of Windows 10, known as the Anniversary Update, will only load kernel mode drivers that are digitally signed by Microsoft.

The change won't affect all systems however the company notes, as only new installations are affected in the beginning.
[quote]Starting with new installations of Windows 10, version 1607, the previously defined driver signing rules will be enforced by the Operating System, and Windows 10, version 1607 will not load any new kernel mode drivers which are not signed by the Dev Portal.

The list of exceptions to the new policy is long. Below is the most important information in regards to the new kernel mode drivers policy:
PCs upgraded to Windows 10 Build 1607 from a previous version of Windows (for instance Windows 10 version 1511) are not affected by the change.
PCs without Secure Boot functionality, or Secure Boot off, are not affected either.
All drivers signed with cross-signing certificates that were issued prior to July 29, 2015 will continue to work.
Boot drivers won't be blocked to prevent systems from failing to boot. They will be removed by the Program Compatibility Assistant however.
The change affects only Windows 10 Version 1607. All previous versions of Windows are not affected.

[/quote]
In short, people doing an upgrade installation are not affected but people doing a clean install will be.

For now I see only two workarounds until Comodo gets the drivers digitally signed by Microsoft:
Disable Secure Boot in BIOS or UEFI. I don't know what the security implications of this
Disable Signed Driver Enforcement. This needs to be done each time the computer boots. That's a serious disadvantage. There is a security risk when you would get infected by a malware that uses a driver. Then disabling will activate the malware.

简单翻译一下:
1、在BIOS或者UEFI中禁用Secure Boot;
2、禁用驱动签名认证(比较麻烦每次重启电脑都要重新执行);
諾言敵不過時間
发表于 2016-8-3 21:59:23 | 显示全部楼层
好麻煩....直接等新版,先換AVG了...
taichow
发表于 2016-8-4 08:38:00 | 显示全部楼层
确实麻烦,还是等毛豆早日加入微软签名吧。不然只能换了
yeweiyutu
发表于 2016-8-4 12:34:56 | 显示全部楼层
卸载COMODO了才能完成系统升级更新
闪电战
发表于 2016-8-6 12:38:41 | 显示全部楼层
yeweiyutu 发表于 2016-8-4 12:34
卸载COMODO了才能完成系统升级更新

没有啊,我这里红伞+COMODO
没关COMODO直接升到RS1了
tg123321
发表于 2016-8-6 14:27:12 | 显示全部楼层
I don't know what the security implications of this

官人好犀利
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-2-7 12:06 , Processed in 0.128303 second(s), 16 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表