From 7b6d5db1b2d2ca477c57c905507ca4a4ef0a8f49 Mon Sep 17 00:00:00 2001 From: Alexandre CATTEAU Date: Fri, 30 Jun 2023 13:20:16 +0200 Subject: [PATCH] Add UKI signing to build script --- build-uki.sh | 4 +++- 1 file changed, 3 insertions(+), 1 deletion(-) diff --git a/build-uki.sh b/build-uki.sh index 148c99b..8a57505 100755 --- a/build-uki.sh +++ b/build-uki.sh @@ -17,6 +17,8 @@ $sudo objcopy \ --add-section .initrd="$path_to_vmlinuz_link/initrd.img" --change-section-vma .initrd=0x3000000 \ /usr/lib/systemd/boot/efi/linuxx64.efi.stub $path_to_uki -# TODO Sign UKI +# Sign UKI +$sudo sbsign --key /etc/secureboot/keys/db/db.key --cert /etc/secureboot/keys/db/db.crt --output $path_to_uki \ + $path_to_uki exit 0