Signed-off-by: Peter Jones <pjones@redhat.com>
- basically we need to be able to set a UEFI variable and get debug
output.
Db key mokutil config:
-- I've completely forgotten what I meant by this. It was something
- Vojtêch was going to do/have done, so I'm sure he'll be able to
- refresh my memory.
+- Asked for by Mimi Zohar: An (on/off) option that would prevent the shim
+ and the kernel from trusting keys listed in 'db' and only use those coming
+ from the MOK List.