Skip to content

Clarification Regarding the Script Output #8

@algymc

Description

@algymc

Hi cjee21,

I've just run your Check UEFI PK, KEK, DB and DBX.cmd , and although I get a similar output (screenshot below) to your example, I'm not clear exactly what some of it means.

Specifically...

  1. I note the "SUCCESS..." results in 2 DBX's - but what do they mean?

  2. I've not knowingly attempted any 2011 certificates revocation yet. So all the "revoked: False" against these entries confirm that fact - Correct Y/N?

  3. Will this script show "revoked: True" against all the 2011 entries once I've done a proper revocation of them, in due course.

  4. Can this, or any other of your scripts, allow confirmation that all the 2011 certificates have moved to the DBX upon completion of revocation?

(Apologies in advance if I've posted in the wrong place - let me know if so).

Thanks in advance for any help,

A

Image

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions