UEFISIGN(8) | MidnightBSD System Manager's Manual | UEFISIGN(8) |
uefisign
— UEFI
Secure Boot signing utility
uefisign |
-k key
-c certificate
-o output
[-v ] file |
uefisign |
-V [-v ]
file |
The uefisign
utility signs PE binary files
using Authenticode scheme, as required by UEFI Secure Boot specification.
Alternatively, it can be used to view and verify existing signatures. These
options are available:
-V
-k
-c
-o
-v
The uefisign
utility exits 0 on success,
and >0 if an error occurs.
Generate self-signed certificate and use it to sign a binary:
/usr/share/examples/uefisign/uefikeys
testcert
uefisign -c testcert.pem -k
testcert.key -o signed-binary binary
View signature:
uefisign -Vv binary
The uefisign
command appeared in
FreeBSD 10.2.
The uefisign
utility was developed by
Edward Tomasz Napierala
<trasz@FreeBSD.org>
under sponsorship from the FreeBSD Foundation.
July 11, 2015 | midnightbsd-3.1 |