me
Superdanby
2017/07/23 @ Fedora

Managing Signed Keys with Machine Owner Key

Introduction

With MOK we can sign, manage, and delete keys for installed kernel modules.

Usage

Enrolling a key

The guide can be found here.

List all the enrolled keys:

`mokutil -l`

Deleting a key

First, you have to export the keys: mokutil --export

Delete the key: mokutil -dTheFile, E.g. mokutil -d MOK-0001.der