mirror of
https://github.com/Dasharo/sbctl.git
synced 2026-03-06 15:04:14 -08:00
If enrolling the Microsoft db keys, also enroll their KEK. This allows applying the official dbx updates, which are important for security, as they allow blocking binaries with known vulnerabilities which Microsoft has signed in the past.