I use ubuntu on a Lenovo Ideapad. A mysterious certificate is listed in the Firmware Manager: “Joe’s Software Emporium”. It seems it is some incorrectly signed certificate using a Microsoft signing tool.
But what is even stranger is that there are 2 settings in the Bios: Restore Setup Mode and Restore Factory Keys.
One of them gets rid of most of the signing keys and incidentally, also turns off secure boot. The other one enables it and makes it come back. What are those settings and what are they for?
Also is that normal that laptop ORMS keep sloppy certificates on devices?