> ## Knowledge Base Index
> Fetch the complete knowledge base index at: https://helpdesk.ggcircuit.com/sitemap.xml
> Use this file to discover available pages before exploring further.
> Pure-Markdown content can be obtained by appending a '.md' suffix to the content URLs listed in the sitemap (without the trailing slash).

# VIII. - 🖧 Configure Client Machines for Network/Diskless (PXE) Boot

| This guide walks you through BIOS configuration of your machines.

### Table of Contents

* [**I. -📥 How to Download Debian and Rufus**](https://helpdesk.ggcircuit.com/en/article/i-how-to-download-debian-and-rufus-1mctc5r/)
* [**II. - 💾 Create a Bootable Debian Installer**](https://helpdesk.ggcircuit.com/en/article/ii-create-a-bootable-debian-installer-1kxab79/)
* [**III. - 🐧 Install Debian Linux**](https://helpdesk.ggcircuit.com/en/article/iii-install-debian-linux-13-14qgozu/)
* [**IV. - 🖥 Install the ggRock Server Application**](https://helpdesk.ggcircuit.com/en/article/iv-install-the-ggrock-server-application-1r0g9sn/)
* [**V. - 🚀 First-time Setup and Accessing the ggRock Server Application**](https://helpdesk.ggcircuit.com/en/article/v-first-time-setup-and-accessing-the-ggrock-server-application-1pudbnd/)
* [**VI. - ⚙️ Configure the ggRock Array**](https://helpdesk.ggcircuit.com/en/article/vi-configure-the-ggrock-array-mkgkfy/)
* [**VII. - 🖼️ Create, Configure, and Test ggRock Images**](https://helpdesk.ggcircuit.com/en/article/vii-create-configure-and-test-ggrock-images-11jl7lm/)
* [**VIII. - 🖧 Configure Client Machines for Network/Diskless (PXE) Boot**](https://helpdesk.ggcircuit.com/en/article/viii-configure-client-machines-for-networkdiskless-pxe-boot-ey4vsf/) 🎯 You Are Here

---

## 🛠️ BIOS Configuration


> 💡 This guide uses the **ASRock X570 Taichi BIOS** for example purposes. Menus and names may differ depending on your motherboard.

|| Want a tl;dr version of bios configuration? → Try this new FAQ-style rundown on BIOS config:
|| 🔧 BIOS Configuration for PXE Boot FAQ

---

## 🪟 Windows 11 Users – Important Notes

> ⚠️ If you're using **Windows 11**, you *must* boot in **UEFI mode**, and eventually have **Secure Boot** and **TPM** enabled for compatibility.  
> However, to boot ggRock for the first time and enroll Secure Boot certificates, you **must temporarily disable Secure Boot (put the platform in setup mode)**.

---

### ✅ Windows 11 Boot Requirements Summary

| Requirement | Status During Initial Setup | Final Status for Windows 11 |
| ---- |
| UEFI Boot Mode | ✅ Enabled | ✅ Enabled |
| TPM | ✅ Enabled | ✅ Enabled |
| Secure Boot | ❌ Disabled *(initially)* | ✅ Enabled *(after certs enrolled)* |

---

### 🔐 Enroll Secure Boot Certificates

After successfully booting into ggRock:

👉 Follow this guide to enroll your secure boot keys:  
🔗 [https://ggcircuit.atlassian.net/wiki/spaces/GKB/pages/15861979/Configuring+Secure+Boot+BIOS+Settings+for+ggRock?atlOrigin=eyJpIjoiYTg2NTk5OTJmNTRjNDA2NDkyMzEyZDYzY2I5MGRiMjgiLCJwIjoiYyJ9](https://app.crisp.chat/website/574ccbdb-fedc-4721-8ca2-1639892b6db8/helpdesk/articles/en/c43beab4-9157-4ca7-b9b7-63e3abe7a719/)

Once complete:

* Re-enter BIOS
* Set **Secure Boot = Enabled**
* Save changes and reboot into Windows 11 via PXE

---

## 🔧 Step-by-Step BIOS Configuration

### 1. Access the System BIOS

* Turn on the machine
* Press the correct key (`F2`, `DEL`, `ESC`, etc.) during startup to enter BIOS/UEFI

![](https://ggcircuit.atlassian.net/wiki/download/attachments/15861795/image-20250404-001641.png?version=1&modificationDate=1743725804094&cacheVersion=1&api=v2)

---

### 2. Disable Secure Boot

* Navigate to **Security** or **Boot** tab
* Set **Secure Boot = Disabled**

![](https://ggcircuit.atlassian.net/wiki/download/attachments/15861795/image-20250404-001654.png?version=1&modificationDate=1743725817426&cacheVersion=1&api=v2)

---

### 3. Disable Fast Boot

* In the **Boot** tab
* Set **Fast Boot = Disabled**

![](https://ggcircuit.atlassian.net/wiki/download/attachments/15861795/image-20250404-001702.png?version=1&modificationDate=1743725825492&cacheVersion=1&api=v2)

---

### 4. Enable Boot from Onboard LAN

* Find **Onboard LAN Boot ROM** or similar under Boot or Advanced settings
* Set to **Enabled**

![](https://ggcircuit.atlassian.net/wiki/download/attachments/15861795/image-20250404-001710.png?version=1&modificationDate=1743725834334&cacheVersion=1&api=v2)
> 🔁 Some systems may require a reboot after enabling to unlock PXE boot options.

---

### 5. Enable PXE Boot Over IPv4

* Enable PXE boot only over **IPv4**, not IPv6
* Ensure this applies to the **wired LAN port**
* Disable unnecessary boot devices to simplify boot order

![](https://ggcircuit.atlassian.net/wiki/download/attachments/15861795/image-20250404-001720.png?version=1&modificationDate=1743725843094&cacheVersion=1&api=v2)

---

### 6. Set Boot Mode to UEFI

* Go to **Boot** or **CSM (Compatibility Support Module)** section
* Ensure **Network Boot Mode = UEFI**
* Avoid Legacy mode for PXE — it's not compatible with ggRock

![](https://ggcircuit.atlassian.net/wiki/download/attachments/15861795/image-20250404-001729.png?version=1&modificationDate=1743725852073&cacheVersion=1&api=v2)

---

### 7. Save and Exit

* Save changes
* Confirm reboot

![](https://ggcircuit.atlassian.net/wiki/download/attachments/15861795/image-20250404-001737.png?version=1&modificationDate=1743725860562&cacheVersion=1&api=v2)

---

## 🌀 Repeat for Each Client Machine

You'll need to configure each system in your environment this way. We recommend configuring **at least one system first** to:

* Capture the initial system image
* Test the PXE boot functionality
* Use it as a reference point for others

---