+ //\r
+ // Final sanity check:\r
+ //\r
+ // [SetupMode]\r
+ // (read-only, standardized by UEFI)\r
+ // / \_\r
+ // 0 1, default\r
+ // / \_\r
+ // PK enrolled no PK enrolled yet,\r
+ // (this is called "User Mode") PK enrollment possible\r
+ // |\r
+ // |\r
+ // [SecureBootEnable]\r
+ // (read-write, edk2-specific, boot service only)\r
+ // / \_\r
+ // 0 1, default\r
+ // / \_\r
+ // [SecureBoot]=0 [SecureBoot]=1\r
+ // (read-only, standardized by UEFI) (read-only, standardized by UEFI)\r
+ // images are not verified images are verified, platform is\r
+ // operating in Secure Boot mode\r
+ // |\r
+ // |\r
+ // [CustomMode]\r
+ // (read-write, edk2-specific, boot service only)\r
+ // / \_\r
+ // 0, default 1\r
+ // / \_\r
+ // PK, KEK, db, dbx PK, KEK, db, dbx\r
+ // updates are verified updates are not verified\r
+ //\r