System Grab Bag

View all TLDR pages from Linux (or from all pages)

mokutil

Configure Secure Boot Machine Owner Keys (MOK). Some operations, such as enabling and disabling Secure Boot or enrolling keys require a reboot. More information: https://github.com/lcp/mokutil.
  • Show if Secure Boot is enabled:
    mokutil --sb-state
  • Enable Secure Boot:
    mokutil --enable-validation
  • Disable Secure Boot:
    mokutil --disable-validation
  • List enrolled keys:
    mokutil --list-enrolled
  • Enroll a new key:
    mokutil --import {{path/to/key.der}}
  • List the keys to be enrolled:
    mokutil --list-new
  • Set shim verbosity:
    mokutil --set-verbosity true

License and Disclaimer

The content on this page is copyright © 2014—present the tldr-pages team and contributors.
This page is used with permission under Creative Commons Attribution 4.0 International License.

While we do attempt to make sure content is accurate, there isn't a warranty of any kind.