extern EFI_GUID gEfiSecureBootEnableDisableGuid;\r
\r
///\r
-/// "SecureBootEnable" variable for the Secure boot feature enable/disable.\r
+/// "SecureBootEnable" variable for the Secure Boot feature enable/disable.\r
+/// This variable is used for allowing a physically present user to disable\r
+/// Secure Boot via firmware setup without the possession of PKpriv.\r
///\r
#define EFI_SECURE_BOOT_ENABLE_NAME L"SecureBootEnable"\r
#define SECURE_BOOT_ENABLE 1\r