How to Enable Safe Boot for VALORANT and FACEIT CS2

Are you unable to join a VALORANT or Counter-Strike queue because you need to enable secure boot? Here’s a quick guide on how to enable UEFI secure boot, along with some useful information about TPM 2.0.
What is Secure Boot, and why do I need it for VALORANT and CS2?
If you’re a true FPS fan, you should play VALORANT and CS2 at a competitive level. The best way to prevent hacking attacks in these games is a kernel-level anti-cheat that accesses the deepest parts of your PC and flags suspicious activity.
VALORANT requires this kernel-level method, and all players must download the Vanguard anti-cheat application from Riot Games. This is a separate piece of software that works alongside the studio’s games and launches every time you play.
Does Counter-Strike require Secure Boot?
Valve’s base Counter-Strike platform, including Premier, does not require Secure Boot. However, many competitive players rely on third-party platforms, such as FACEIT, to avoid encountering cheaters. FACEIT requires identity verification as part of the registration process, and the program also has its own anti-cheat system (which just received a major update to its Human Input Detection against AI). FACEIT requires Secure Boot to function properly.
Why is VALORANT/FACEIT asking me to enable Secure Boot?
To grant these programs the kernel-level access they need to function, you must put your PC into a state called “UEFI Secure Boot.” You can do this through your PC’s BIOS or UEFI. (Essentially, UEFI is an enhanced version of BIOS.) This unassuming little program on your motherboard controls how your PC boots up and what permissions programs have during the “boot” process. That’s why VALORANT or FACEIT might display a pop-up window before you can join a queue, prompting you to “Enable UEFI Secure Boot.”

Human input recognition adds another layer to FACEIT’s anti-cheat system. Image: @FACEIT via YouTube
Does VALORANT Vanguard collect my data?
It can be scary to grant a program this level of access to your PC. However, right now, it’s also the most effective way to prevent cheating. It’s simply a trade-off you’ll have to make to ensure higher-quality matches and a safer experience in ranked games. Vanguard collects certain data, such as in-match actions, voice and text communication, and more.
If you’re concerned about how your data is used, you can read the Riot Games Privacy Notice here. Riot states that Vanguard (VALORANT’s anti-cheat system) is not intended to collect data beyond what is necessary for the game to function and to ensure fair competition.
Does FACEIT CS2 Anti-Cheat collect my data?
FACEIT’s kernel-level anti-cheat also collects some data from your computer. Primarily, it tracks your behavior in Counter-Strike, keystrokes, and IP addresses. This is primarily done to prevent ban evasion and hacking. FACEIT does not access your personal files on your PC and does not track what you do when the program is inactive.
To play at certain FACEIT competition levels, you’ll need to complete identity verification. To do this, you can use personal documents such as a driver’s license or ID card. The process takes place on a third-party platform called DAON, and none of this data is stored directly on FACEIT. You can also review FACEIT’s Privacy Policy here.
How do I know if Secure Boot is enabled?
Secure Boot may already be enabled on your PC, and there’s an easy way to check. Follow these steps:
Press Windows + R.
Type msinfo32. Press Enter.
Use the search bar at the bottom of the screen to find the BIOS mode.
It should say “UEFI.” If the BIOS mode is not UEFI, Secure Boot is not enabled.
Next, locate “Secure Boot Status.”
It should say “Enabled.” If the “Secure Boot Status” setting is not set to “Enabled,” Secure Boot is not enabled.
How to Enable UEFI Secure Boot
Okay, now that we’ve covered the basics, let’s move on to the guide. To enable Secure Boot, you’ll need to access your PC’s BIOS/UEFI settings. It’s important to note that if you mess around too much with the BIOS settings, you could fry your little computer’s brain and accidentally cause it to stop working. But no pressure!
Just in case things go wrong (especially if you’re doing this for the first time), you should back up all your current files. Also, grab a USB flash drive and download the latest BIOS/UEFI version for your specific model. If you accidentally delete something, you can easily restore what you’ve lost. Also, if your computer gets damaged, you can simply reset the BIOS to its default settings.
Before we begin, there are a few things to keep in mind:
Windows 11 must be installed on your PC to run the necessary settings.
For Secure Boot to work, your PC must be configured to use the GPT (GUID Partition Table) partition style. You can check which partition style your PC uses by going to “Disk Management” in the Windows search bar. In the pop-up window, right-click the disk where Windows is installed. Select "Properties," go to the "Volume" tab, and select "Partition Style." Some drives use MBR (Master Boot Record). If your drive uses this style, you’ll need to convert it.
Accessing BIOS/UEFI Settings
You can usually access the BIOS on a Windows PC by following these steps:
Restart
Restart your PC.
While the screen is still black, press the access key. This involves rapidly tapping the key. This depends on your PC model, but it’s usually F2, Delete, F10, or F12. For more information, search for your specific PC brand (Asus, HP, MSI, Acer, Lenovo, Dell, etc.).
The BIOS/UEFI settings should open. This will look completely different from your PC’s normal boot process.
Using the Windows key
Open the Windows Start menu.
Go to Settings.
Click “Update & Security” or “System/Windows Update.”
Click "Advanced options" and "Restart now."
Click the "Troubleshoot" button.
Click the "Advanced options" button.
Click "UEFI Firmware Settings" and select "Restart."
Enabling UEFI Secure Boot
Congratulations. You’ve hacked into the mainframe and are now a top-secret hacker. The BIOS contains the deepest, most secret mechanisms of your PC: it’s like peering into its brain.
The BIOS/UEFI of every PC will look different. If possible, find a step-by-step guide to help you navigate yours. It might be helpful to find the BIOS for your specific PC model, or for your specific motherboard or processor.
Typically, the UEFI secure boot setting is located on a tab labeled “Boot,” “Security,” or “Authentication.” In some cases, you’ll need to change the boot mode. Find the “Boot Options” setting and make sure it’s changed from “Legacy” or “CSM” to UEFI.
Next, you’ll need to find the “Secure Boot” setting. Sometimes it appears right below it when you set the boot mode to UEFI. There should be a toggle or a tab that enables it. Switch Secure Boot from “Off” to “On.”
Don’t go just yet! After that, you’ll still need to save your changes. Otherwise, your BIOS will revert to its previous state, and you still won’t be able to play. That would be a shame.
Click the “Save” button in the BIOS or use the “Save” key. This is usually F10. Next, restart your computer and boot it up in normal mode. This should apply all the changes, and everything will be fine.
Enabling the TPM 2.0 module (required in some cases)
If you’re still having issues or have a finicky BIOS model, you may need to enable the TPM 2.0 module for VALORANT or FACEIT CS2 to work. TPM 2.0 helps block malware and stores encrypted data, so it can potentially interfere with your anti-cheat software. Essentially, it adds advanced security measures.
You can check if TPM 2.0 is enabled by following these steps:
Press Windows + R.
Type tpm.msc. Press Enter.
The status message should read: “TPM is ready for use.” You can check the specification version to make sure it’s TPM 2.0.
If your TPM isn’t working or won’t update, boot into the BIOS as described in the previous guide. You should see a tab labeled “Advanced,” “Security,” or “Trusted Computing.”
On an Intel processor, go to Intel PTT. Set this option to “Enabled.”
On an AMD processor, go to the AMD fTPM or AMD CPU fTPM toggle. Set it to “Enabled” or “TPM Firmware.”
Your PC may vary, so again, don’t hesitate to look for specific guides for your processor model.
Be sure to save this setting using F10 or the “Save” button before rebooting again!
After making this change, you’re all set to dive into VALORANT or FACEIT Counter-Strike.
I hope this guide has cleared up any questions you had about safely booting into UEFI for VALORANT and Counter-Strike! Good luck in your matches, and stay tuned for esports and gaming news.
Відповіді