-
Notifications
You must be signed in to change notification settings - Fork 7
Description
Hi cjee21,
I've just run your Check UEFI PK, KEK, DB and DBX.cmd , and although I get a similar output (screenshot below) to your example, I'm not clear exactly what some of it means.
Specifically...
-
I note the "SUCCESS..." results in 2 DBX's - but what do they mean?
-
I've not knowingly attempted any 2011 certificates revocation yet. So all the "revoked: False" against these entries confirm that fact - Correct Y/N?
-
Will this script show "revoked: True" against all the 2011 entries once I've done a proper revocation of them, in due course.
-
Can this, or any other of your scripts, allow confirmation that all the 2011 certificates have moved to the DBX upon completion of revocation?
(Apologies in advance if I've posted in the wrong place - let me know if so).
Thanks in advance for any help,
A
