VeraCrypt
aboutsummaryrefslogtreecommitdiff
path: root/SecureBoot
diff options
context:
space:
mode:
Diffstat (limited to 'SecureBoot')
-rw-r--r--SecureBoot/certs/Acer_LINPUS_2018-04-19.crtbin0 -> 1021 bytes
-rw-r--r--SecureBoot/certs/Acer_Wistron_Secure_Flash_2013-05-17.crtbin0 -> 816 bytes
-rw-r--r--SecureBoot/certs/Dell_CompalA31CSMB_2012-07-17.crtbin0 -> 812 bytes
-rw-r--r--SecureBoot/certs/Intel_CISD_FW_Update_2017-08-30.crtbin0 -> 840 bytes
-rw-r--r--SecureBoot/certs/OriginPC_OWN_CA_2018-01-09.crtbin0 -> 1051 bytes
-rw-r--r--SecureBoot/certs/Panasonic_Corporation_db_CA_2013-03-31.crtbin0 -> 1073 bytes
-rw-r--r--SecureBoot/certs/Samsung_SEC_PRODUCTION_KeyUEFI_2012-07-05.crtbin0 -> 886 bytes
-rw-r--r--SecureBoot/sb_set_siglists.ps181
-rw-r--r--SecureBoot/siglists/Acer_LINPUS_2018-04-19_SigList.binbin0 -> 1049 bytes
-rw-r--r--SecureBoot/siglists/Acer_LINPUS_2018-04-19_SigList_Serialization.binbin0 -> 1089 bytes
-rw-r--r--SecureBoot/siglists/Acer_LINPUS_2018-04-19_SigList_Serialization.bin.p7bin0 -> 1492 bytes
-rw-r--r--SecureBoot/siglists/Acer_Wistron_Secure_Flash_2013-05-17_SigList.binbin0 -> 844 bytes
-rw-r--r--SecureBoot/siglists/Acer_Wistron_Secure_Flash_2013-05-17_SigList_Serialization.binbin0 -> 884 bytes
-rw-r--r--SecureBoot/siglists/Acer_Wistron_Secure_Flash_2013-05-17_SigList_Serialization.bin.p7bin0 -> 1492 bytes
-rw-r--r--SecureBoot/siglists/Dell_CompalA31CSMB_2012-07-17_SigList.binbin0 -> 840 bytes
-rw-r--r--SecureBoot/siglists/Dell_CompalA31CSMB_2012-07-17_SigList_Serialization.binbin0 -> 880 bytes
-rw-r--r--SecureBoot/siglists/Dell_CompalA31CSMB_2012-07-17_SigList_Serialization.bin.p7bin0 -> 1492 bytes
-rw-r--r--SecureBoot/siglists/Intel_CISD_FW_Update_2017-08-30_SigList.binbin0 -> 868 bytes
-rw-r--r--SecureBoot/siglists/Intel_CISD_FW_Update_2017-08-30_SigList_Serialization.binbin0 -> 908 bytes
-rw-r--r--SecureBoot/siglists/Intel_CISD_FW_Update_2017-08-30_SigList_Serialization.bin.p7bin0 -> 1492 bytes
-rw-r--r--SecureBoot/siglists/OriginPC_OWN_CA_2018-01-09_SigList.binbin0 -> 1079 bytes
-rw-r--r--SecureBoot/siglists/OriginPC_OWN_CA_2018-01-09_SigList_Serialization.binbin0 -> 1119 bytes
-rw-r--r--SecureBoot/siglists/OriginPC_OWN_CA_2018-01-09_SigList_Serialization.bin.p7bin0 -> 1492 bytes
-rw-r--r--SecureBoot/siglists/Panasonic_Corporation_db_CA_2013-03-31_SigList.binbin0 -> 1101 bytes
-rw-r--r--SecureBoot/siglists/Panasonic_Corporation_db_CA_2013-03-31_SigList_Serialization.binbin0 -> 1141 bytes
-rw-r--r--SecureBoot/siglists/Panasonic_Corporation_db_CA_2013-03-31_SigList_Serialization.bin.p7bin0 -> 1492 bytes
-rw-r--r--SecureBoot/siglists/Samsung_SEC_PRODUCTION_KeyUEFI_2012-07-05_SigList.binbin0 -> 914 bytes
-rw-r--r--SecureBoot/siglists/Samsung_SEC_PRODUCTION_KeyUEFI_2012-07-05_SigList_Serialization.binbin0 -> 954 bytes
-rw-r--r--SecureBoot/siglists/Samsung_SEC_PRODUCTION_KeyUEFI_2012-07-05_SigList_Serialization.bin.p7bin0 -> 1492 bytes
29 files changed, 50 insertions, 31 deletions
diff --git a/SecureBoot/certs/Acer_LINPUS_2018-04-19.crt b/SecureBoot/certs/Acer_LINPUS_2018-04-19.crt
new file mode 100644
index 0000000..0ea2204
--- /dev/null
+++ b/SecureBoot/certs/Acer_LINPUS_2018-04-19.crt
Binary files differ
diff --git a/SecureBoot/certs/Acer_Wistron_Secure_Flash_2013-05-17.crt b/SecureBoot/certs/Acer_Wistron_Secure_Flash_2013-05-17.crt
new file mode 100644
index 0000000..ef90358
--- /dev/null
+++ b/SecureBoot/certs/Acer_Wistron_Secure_Flash_2013-05-17.crt
Binary files differ
diff --git a/SecureBoot/certs/Dell_CompalA31CSMB_2012-07-17.crt b/SecureBoot/certs/Dell_CompalA31CSMB_2012-07-17.crt
new file mode 100644
index 0000000..cd79bf3
--- /dev/null
+++ b/SecureBoot/certs/Dell_CompalA31CSMB_2012-07-17.crt
Binary files differ
diff --git a/SecureBoot/certs/Intel_CISD_FW_Update_2017-08-30.crt b/SecureBoot/certs/Intel_CISD_FW_Update_2017-08-30.crt
new file mode 100644
index 0000000..020b6f9
--- /dev/null
+++ b/SecureBoot/certs/Intel_CISD_FW_Update_2017-08-30.crt
Binary files differ
diff --git a/SecureBoot/certs/OriginPC_OWN_CA_2018-01-09.crt b/SecureBoot/certs/OriginPC_OWN_CA_2018-01-09.crt
new file mode 100644
index 0000000..7f84964
--- /dev/null
+++ b/SecureBoot/certs/OriginPC_OWN_CA_2018-01-09.crt
Binary files differ
diff --git a/SecureBoot/certs/Panasonic_Corporation_db_CA_2013-03-31.crt b/SecureBoot/certs/Panasonic_Corporation_db_CA_2013-03-31.crt
new file mode 100644
index 0000000..d839ce2
--- /dev/null
+++ b/SecureBoot/certs/Panasonic_Corporation_db_CA_2013-03-31.crt
Binary files differ
diff --git a/SecureBoot/certs/Samsung_SEC_PRODUCTION_KeyUEFI_2012-07-05.crt b/SecureBoot/certs/Samsung_SEC_PRODUCTION_KeyUEFI_2012-07-05.crt
new file mode 100644
index 0000000..ca4ebf0
--- /dev/null
+++ b/SecureBoot/certs/Samsung_SEC_PRODUCTION_KeyUEFI_2012-07-05.crt
Binary files differ
diff --git a/SecureBoot/sb_set_siglists.ps1 b/SecureBoot/sb_set_siglists.ps1
index e4b66de..ccb25ab 100644
--- a/SecureBoot/sb_set_siglists.ps1
+++ b/SecureBoot/sb_set_siglists.ps1
@@ -1,6 +1,8 @@
Set-ExecutionPolicy Bypass -Force
Import-Module secureboot
+$scriptPath = split-path -parent $MyInvocation.MyCommand.Definition
+
try
{
Set-SecureBootUEFI -Name dbx -Time 2018-07-05T00:00:00Z -Content $null
@@ -13,16 +15,16 @@ catch
}
Write-Host "Setting KEK-signed content of dbx..."
-Set-SecureBootUEFI -Time 2018-07-05T00:00:00Z -ContentFilePath siglists\dbx_list_SigList.bin -SignedFilePath siglists\dbx_list_SigList_Serialization.bin.p7 -Name dbx
+Set-SecureBootUEFI -Time 2018-07-05T00:00:00Z -ContentFilePath $scriptPath\siglists\dbx_list_SigList.bin -SignedFilePath $scriptPath\siglists\dbx_list_SigList_Serialization.bin.p7 -Name dbx
Write-Host "Setting KEK-signed DCS cert in db..."
-Set-SecureBootUEFI -Time 2018-07-05T00:00:00Z -ContentFilePath siglists\DCS_sign_SigList.bin -SignedFilePath siglists\DCS_sign_SigList_Serialization.bin.p7 -Name db
+Set-SecureBootUEFI -Time 2018-07-05T00:00:00Z -ContentFilePath $scriptPath\siglists\DCS_sign_SigList.bin -SignedFilePath $scriptPath\siglists\DCS_sign_SigList_Serialization.bin.p7 -Name db
Write-Host "Setting KEK-signed MS cert in db..."
-Set-SecureBootUEFI -Time 2018-07-05T00:00:00Z -ContentFilePath siglists\MicWinProPCA2011_2011-10-19_SigList.bin -SignedFilePath siglists\MicWinProPCA2011_2011-10-19_SigList_Serialization.bin.p7 -Name db -AppendWrite:$true
+Set-SecureBootUEFI -Time 2018-07-05T00:00:00Z -ContentFilePath $scriptPath\siglists\MicWinProPCA2011_2011-10-19_SigList.bin -SignedFilePath $scriptPath\siglists\MicWinProPCA2011_2011-10-19_SigList_Serialization.bin.p7 -Name db -AppendWrite:$true
Write-Host "Setting KEK-signed MS UEFI cert in db..."
-Set-SecureBootUEFI -Time 2018-07-05T00:00:00Z -ContentFilePath siglists\MicCorUEFCA2011_2011-06-27_SigList.bin -SignedFilePath siglists\MicCorUEFCA2011_2011-06-27_SigList_Serialization.bin.p7 -Name db -AppendWrite:$true
+Set-SecureBootUEFI -Time 2018-07-05T00:00:00Z -ContentFilePath $scriptPath\siglists\MicCorUEFCA2011_2011-06-27_SigList.bin -SignedFilePath $scriptPath\siglists\MicCorUEFCA2011_2011-06-27_SigList_Serialization.bin.p7 -Name db -AppendWrite:$true
# Add any additional certificate that already existed in your original db variable (see output of dumpEfiVars tool)
# Below is a list of commands for each manufacturer. Uncommand only the lines that correspond to your configuration
@@ -30,53 +32,70 @@ Set-SecureBootUEFI -Time 2018-07-05T00:00:00Z -ContentFilePath siglists\MicCorUE
############### Acer ###############
# Write-Host "Setting KEK-signed Acer certs in db..."
-# Set-SecureBootUEFI -Time 2018-07-05T00:00:00Z -ContentFilePath siglists\Acer_2012-05-31_SigList.bin -SignedFilePath siglists\Acer_2012-05-31_SigList_Serialization.bin.p7 -Name db -AppendWrite:$true
-# Set-SecureBootUEFI -Time 2018-07-05T00:00:00Z -ContentFilePath siglists\Acer_Database_2013-07-10_SigList.bin -SignedFilePath siglists\Acer_Database_2013-07-10_SigList_Serialization.bin.p7 -Name db -AppendWrite:$true
-# Set-SecureBootUEFI -Time 2018-07-05T00:00:00Z -ContentFilePath siglists\Acer_db_Manufacture_2015-06-17_SigList.bin -SignedFilePath siglists\Acer_db_Manufacture_2015-06-17_SigList_Serialization.bin.p7 -Name db -AppendWrite:$true
-# Set-SecureBootUEFI -Time 2018-07-05T00:00:00Z -ContentFilePath siglists\Acer_LINPUS_2012-10-09_SigList.bin -SignedFilePath siglists\Acer_LINPUS_2012-10-09_SigList_Serialization.bin.p7 -Name db -AppendWrite:$true
-# Set-SecureBootUEFI -Time 2018-07-05T00:00:00Z -ContentFilePath siglists\Acer_Quanta_NB4_2012-07-18_SigList.bin -SignedFilePath siglists\Acer_Quanta_NB4_2012-07-18_SigList_Serialization.bin.p7 -Name db -AppendWrite:$true
-# Set-SecureBootUEFI -Time 2018-07-05T00:00:00Z -ContentFilePath siglists\Acer_ABO_2010-12-31_SigList.bin -SignedFilePath siglists\Acer_ABO_2010-12-31_SigList_Serialization.bin.p7 -Name db -AppendWrite:$true
-# Set-SecureBootUEFI -Time 2018-07-05T00:00:00Z -ContentFilePath siglists\Acer_DisablePW_2012-12-31_SigList.bin -SignedFilePath siglists\Acer_DisablePW_2012-12-31_SigList_Serialization.bin.p7 -Name db -AppendWrite:$true
+# Set-SecureBootUEFI -Time 2018-07-05T00:00:00Z -ContentFilePath $scriptPath\siglists\Acer_2012-05-31_SigList.bin -SignedFilePath $scriptPath\siglists\Acer_2012-05-31_SigList_Serialization.bin.p7 -Name db -AppendWrite:$true
+# Set-SecureBootUEFI -Time 2018-07-05T00:00:00Z -ContentFilePath $scriptPath\siglists\Acer_Database_2013-07-10_SigList.bin -SignedFilePath $scriptPath\siglists\Acer_Database_2013-07-10_SigList_Serialization.bin.p7 -Name db -AppendWrite:$true
+# Set-SecureBootUEFI -Time 2018-07-05T00:00:00Z -ContentFilePath $scriptPath\siglists\Acer_db_Manufacture_2015-06-17_SigList.bin -SignedFilePath $scriptPath\siglists\Acer_db_Manufacture_2015-06-17_SigList_Serialization.bin.p7 -Name db -AppendWrite:$true
+# Set-SecureBootUEFI -Time 2018-07-05T00:00:00Z -ContentFilePath $scriptPath\siglists\Acer_LINPUS_2012-10-09_SigList.bin -SignedFilePath $scriptPath\siglists\Acer_LINPUS_2012-10-09_SigList_Serialization.bin.p7 -Name db -AppendWrite:$true
+# Set-SecureBootUEFI -Time 2018-07-05T00:00:00Z -ContentFilePath $scriptPath\siglists\Acer_LINPUS_2018-04-19_SigList.bin -SignedFilePath $scriptPath\siglists\Acer_LINPUS_2018-04-19_SigList_Serialization.bin.p7 -Name db -AppendWrite:$true
+# Set-SecureBootUEFI -Time 2018-07-05T00:00:00Z -ContentFilePath $scriptPath\siglists\Acer_Quanta_NB4_2012-07-18_SigList.bin -SignedFilePath $scriptPath\siglists\Acer_Quanta_NB4_2012-07-18_SigList_Serialization.bin.p7 -Name db -AppendWrite:$true
+# Set-SecureBootUEFI -Time 2018-07-05T00:00:00Z -ContentFilePath $scriptPath\siglists\Acer_ABO_2010-12-31_SigList.bin -SignedFilePath $scriptPath\siglists\Acer_ABO_2010-12-31_SigList_Serialization.bin.p7 -Name db -AppendWrite:$true
+# Set-SecureBootUEFI -Time 2018-07-05T00:00:00Z -ContentFilePath $scriptPath\siglists\Acer_DisablePW_2012-12-31_SigList.bin -SignedFilePath $scriptPath\siglists\Acer_DisablePW_2012-12-31_SigList_Serialization.bin.p7 -Name db -AppendWrite:$true
+# Set-SecureBootUEFI -Time 2018-07-05T00:00:00Z -ContentFilePath $scriptPath\siglists\Acer_Wistron_Secure_Flash_2013-05-17_SigList.bin -SignedFilePath $scriptPath\siglists\Acer_Wistron_Secure_Flash_2013-05-17_SigList_Serialization.bin.p7 -Name db -AppendWrite:$true
+# Set-SecureBootUEFI -Time 2018-07-05T00:00:00Z -ContentFilePath $scriptPath\siglists\Acer_LINPUS_2012-10-09-standalone_SigList.bin -SignedFilePath $scriptPath\siglists\Acer_LINPUS_2012-10-09-standalone_SigList_Serialization.bin.p7 -Name db -AppendWrite:$true
############### ASUS ###############
# Write-Host "Setting KEK-signed ASUS certs in db..."
-# Set-SecureBootUEFI -Time 2018-07-05T00:00:00Z -ContentFilePath siglists\ASUSTeK_MotherBoard_SW_Key_Certificate_2011-12_27_SigList.bin -SignedFilePath siglists\ASUSTeK_MotherBoard_SW_Key_Certificate_2011-12_27_SigList_Serialization.bin.p7 -Name db -AppendWrite:$true
-# Set-SecureBootUEFI -Time 2018-07-05T00:00:00Z -ContentFilePath siglists\ASUSTeK_Notebook_SW_Key_Certificate_2011-12_27_SigList.bin -SignedFilePath siglists\ASUSTeK_Notebook_SW_Key_Certificate_2011-12_27_SigList_Serialization.bin.p7 -Name db -AppendWrite:$true
-# Set-SecureBootUEFI -Time 2018-07-05T00:00:00Z -ContentFilePath siglists\Canonical_Master_CA_2012_04_12_SigList.bin -SignedFilePath siglists\Canonical_Master_CA_2012_04_12_SigList_Serialization.bin.p7 -Name db -AppendWrite:$true
+# Set-SecureBootUEFI -Time 2018-07-05T00:00:00Z -ContentFilePath $scriptPath\siglists\ASUSTeK_MotherBoard_SW_Key_Certificate_2011-12_27_SigList.bin -SignedFilePath $scriptPath\siglists\ASUSTeK_MotherBoard_SW_Key_Certificate_2011-12_27_SigList_Serialization.bin.p7 -Name db -AppendWrite:$true
+# Set-SecureBootUEFI -Time 2018-07-05T00:00:00Z -ContentFilePath $scriptPath\siglists\ASUSTeK_Notebook_SW_Key_Certificate_2011-12_27_SigList.bin -SignedFilePath $scriptPath\siglists\ASUSTeK_Notebook_SW_Key_Certificate_2011-12_27_SigList_Serialization.bin.p7 -Name db -AppendWrite:$true
+# Set-SecureBootUEFI -Time 2018-07-05T00:00:00Z -ContentFilePath $scriptPath\siglists\Canonical_Master_CA_2012_04_12_SigList.bin -SignedFilePath $scriptPath\siglists\Canonical_Master_CA_2012_04_12_SigList_Serialization.bin.p7 -Name db -AppendWrite:$true
############### DELL ###############
# Write-Host "Setting KEK-signed Dell cert in db..."
-# Set-SecureBootUEFI -Time 2018-07-05T00:00:00Z -ContentFilePath siglists\Dell_UEFI_DB_2016_06_03_SigList.bin -SignedFilePath siglists\Dell_UEFI_DB_2016_06_03_SigList_Serialization.bin.p7 -Name db -AppendWrite:$true
+# Set-SecureBootUEFI -Time 2018-07-05T00:00:00Z -ContentFilePath $scriptPath\siglists\Dell_UEFI_DB_2016_06_03_SigList.bin -SignedFilePath $scriptPath\siglists\Dell_UEFI_DB_2016_06_03_SigList_Serialization.bin.p7 -Name db -AppendWrite:$true
+# Set-SecureBootUEFI -Time 2018-07-05T00:00:00Z -ContentFilePath $scriptPath\siglists\Dell_CompalA31CSMB_2012-07-17_SigList.bin -SignedFilePath $scriptPath\siglists\Dell_CompalA31CSMB_2012-07-17_SigList_Serialization.bin.p7 -Name db -AppendWrite:$true
############### HP ###############
# Write-Host "Setting KEK-signed HP cert in db..."
-# Set-SecureBootUEFI -Time 2018-07-05T00:00:00Z -ContentFilePath siglists\HP_UEFI_Secure_Boot_2013_DB_key_2013_08_23_SigList.bin -SignedFilePath siglists\HP_UEFI_Secure_Boot_2013_DB_key_2013_08_23_SigList_Serialization.bin.p7 -Name db -AppendWrite:$true
-# Set-SecureBootUEFI -Time 2018-07-05T00:00:00Z -ContentFilePath siglists\HP_UEFI_Secure_Boot_DB_2017_2017-01-20_SigList.bin -SignedFilePath siglists\HP_UEFI_Secure_Boot_DB_2017_2017-01-20_SigList_Serialization.bin.p7 -Name db -AppendWrite:$true
+# Set-SecureBootUEFI -Time 2018-07-05T00:00:00Z -ContentFilePath $scriptPath\siglists\HP_UEFI_Secure_Boot_2013_DB_key_2013_08_23_SigList.bin -SignedFilePath $scriptPath\siglists\HP_UEFI_Secure_Boot_2013_DB_key_2013_08_23_SigList_Serialization.bin.p7 -Name db -AppendWrite:$true
+# Set-SecureBootUEFI -Time 2018-07-05T00:00:00Z -ContentFilePath $scriptPath\siglists\HP_UEFI_Secure_Boot_DB_2017_2017-01-20_SigList.bin -SignedFilePath $scriptPath\siglists\HP_UEFI_Secure_Boot_DB_2017_2017-01-20_SigList_Serialization.bin.p7 -Name db -AppendWrite:$true
+
+############### Intel ###############
+# Write-Host "Setting KEK-signed Intel cert in db..."
+# Set-SecureBootUEFI -Time 2018-07-05T00:00:00Z -ContentFilePath $scriptPath\siglists\Intel_CISD_FW_Update_2017-08-30_SigList.bin -SignedFilePath $scriptPath\siglists\Intel_CISD_FW_Update_2017-08-30_SigList_Serialization.bin.p7 -Name db -AppendWrite:$true
+
############### Lenovo ###############
# Write-Host "Setting KEK-signed Lenovo certs in db..."
-# Set-SecureBootUEFI -Time 2018-07-05T00:00:00Z -ContentFilePath siglists\Lenovo_1T110-1415ISK-2016-02-17_SigList.bin -SignedFilePath siglists\Lenovo_1T110-1415ISK-2016-02-17_SigList_Serialization.bin.p7 -Name db -AppendWrite:$true
-# Set-SecureBootUEFI -Time 2018-07-05T00:00:00Z -ContentFilePath siglists\Lenovo_DCU31-80E31-80_2015-03-03_SigList.bin -SignedFilePath siglists\Lenovo_DCU31-80E31-80_2015-03-03_SigList_Serialization.bin.p7 -Name db -AppendWrite:$true
-# Set-SecureBootUEFI -Time 2018-07-05T00:00:00Z -ContentFilePath siglists\Lenovo_ThinkPad_Product_CA_2012-06-29_SigList.bin -SignedFilePath siglists\Lenovo_ThinkPad_Product_CA_2012-06-29_SigList_Serialization.bin.p7 -Name db -AppendWrite:$true
-# Set-SecureBootUEFI -Time 2018-07-05T00:00:00Z -ContentFilePath siglists\Lenovo_UEFI_CA_2014-01-24_SigList.bin -SignedFilePath siglists\Lenovo_UEFI_CA_2014-01-24_SigList_Serialization.bin.p7 -Name db -AppendWrite:$true
-# Set-SecureBootUEFI -Time 2018-07-05T00:00:00Z -ContentFilePath siglists\Lenovo_2JYoga910_2015-12-02_SigList.bin -SignedFilePath siglists\Lenovo_2JYoga910_2015-12-02_SigList_Serialization.bin.p7 -Name db -AppendWrite:$true
-# Set-SecureBootUEFI -Time 2018-07-05T00:00:00Z -ContentFilePath siglists\Lenovo_LCFC_2015-05-29_SigList.bin -SignedFilePath siglists\Lenovo_LCFC_2015-05-29_SigList_Serialization.bin.p7 -Name db -AppendWrite:$true
-# Set-SecureBootUEFI -Time 2018-07-05T00:00:00Z -ContentFilePath siglists\Lenovo_Mocca_2012-06-20_SigList.bin -SignedFilePath siglists\Lenovo_Mocca_2012-06-20_SigList_Serialization.bin.p7 -Name db -AppendWrite:$true
-# Set-SecureBootUEFI -Time 2018-07-05T00:00:00Z -ContentFilePath siglists\Lenovo_4MYoga720-15IKB_2016-11-09_SigList.bin -SignedFilePath siglists\Lenovo_4MYoga720-15IKB_2016-11-09_SigList_Serialization.bin.p7 -Name db -AppendWrite:$true
+# Set-SecureBootUEFI -Time 2018-07-05T00:00:00Z -ContentFilePath $scriptPath\siglists\Lenovo_1T110-1415ISK-2016-02-17_SigList.bin -SignedFilePath $scriptPath\siglists\Lenovo_1T110-1415ISK-2016-02-17_SigList_Serialization.bin.p7 -Name db -AppendWrite:$true
+# Set-SecureBootUEFI -Time 2018-07-05T00:00:00Z -ContentFilePath $scriptPath\siglists\Lenovo_DCU31-80E31-80_2015-03-03_SigList.bin -SignedFilePath $scriptPath\siglists\Lenovo_DCU31-80E31-80_2015-03-03_SigList_Serialization.bin.p7 -Name db -AppendWrite:$true
+# Set-SecureBootUEFI -Time 2018-07-05T00:00:00Z -ContentFilePath $scriptPath\siglists\Lenovo_ThinkPad_Product_CA_2012-06-29_SigList.bin -SignedFilePath $scriptPath\siglists\Lenovo_ThinkPad_Product_CA_2012-06-29_SigList_Serialization.bin.p7 -Name db -AppendWrite:$true
+# Set-SecureBootUEFI -Time 2018-07-05T00:00:00Z -ContentFilePath $scriptPath\siglists\Lenovo_UEFI_CA_2014-01-24_SigList.bin -SignedFilePath $scriptPath\siglists\Lenovo_UEFI_CA_2014-01-24_SigList_Serialization.bin.p7 -Name db -AppendWrite:$true
+# Set-SecureBootUEFI -Time 2018-07-05T00:00:00Z -ContentFilePath $scriptPath\siglists\Lenovo_2JYoga910_2015-12-02_SigList.bin -SignedFilePath $scriptPath\siglists\Lenovo_2JYoga910_2015-12-02_SigList_Serialization.bin.p7 -Name db -AppendWrite:$true
+# Set-SecureBootUEFI -Time 2018-07-05T00:00:00Z -ContentFilePath $scriptPath\siglists\Lenovo_LCFC_2015-05-29_SigList.bin -SignedFilePath $scriptPath\siglists\Lenovo_LCFC_2015-05-29_SigList_Serialization.bin.p7 -Name db -AppendWrite:$true
+# Set-SecureBootUEFI -Time 2018-07-05T00:00:00Z -ContentFilePath $scriptPath\siglists\Lenovo_Mocca_2012-06-20_SigList.bin -SignedFilePath $scriptPath\siglists\Lenovo_Mocca_2012-06-20_SigList_Serialization.bin.p7 -Name db -AppendWrite:$true
+# Set-SecureBootUEFI -Time 2018-07-05T00:00:00Z -ContentFilePath $scriptPath\siglists\Lenovo_4MYoga720-15IKB_2016-11-09_SigList.bin -SignedFilePath $scriptPath\siglists\Lenovo_4MYoga720-15IKB_2016-11-09_SigList_Serialization.bin.p7 -Name db -AppendWrite:$true
############### MSI ###############
# Write-Host "Setting KEK-signed MSI certs in db..."
-# Set-SecureBootUEFI -Time 2018-07-05T00:00:00Z -ContentFilePath siglists\MSI_SHIP_OWN_CA_2012-06-09_SigList.bin -SignedFilePath siglists\MSI_SHIP_OWN_CA_2012-06-09_SigList_Serialization.bin.p7 -Name db -AppendWrite:$true
+# Set-SecureBootUEFI -Time 2018-07-05T00:00:00Z -ContentFilePath $scriptPath\siglists\MSI_SHIP_OWN_CA_2012-06-09_SigList.bin -SignedFilePath $scriptPath\siglists\MSI_SHIP_OWN_CA_2012-06-09_SigList_Serialization.bin.p7 -Name db -AppendWrite:$true
+
+############### OriginPC ###############
+# Write-Host "Setting KEK-signed OriginPC certs in db..."
+# Set-SecureBootUEFI -Time 2018-07-05T00:00:00Z -ContentFilePath $scriptPath\siglists\OriginPC_OWN_CA_2018-01-09_SigList.bin -SignedFilePath $scriptPath\siglists\OriginPC_OWN_CA_2018-01-09_SigList_Serialization.bin.p7 -Name db -AppendWrite:$true
+
+############### Panasonic ###############
+# Write-Host "Setting KEK-signed Panasonic certs in db..."
+# Set-SecureBootUEFI -Time 2018-07-05T00:00:00Z -ContentFilePath $scriptPath\siglists\Panasonic_Corporation_db_CA_2013-03-31_SigList.bin -SignedFilePath $scriptPath\siglists\Panasonic_Corporation_db_CA_2013-03-31_SigList_Serialization.bin.p7 -Name db -AppendWrite:$true
############### Toshiba ###############
# Write-Host "Setting KEK-signed Toshiba certs in db..."
-# Set-SecureBootUEFI -Time 2018-07-05T00:00:00Z -ContentFilePath siglists\Toshiba_Corporation_Utility_CA_2012-08-10_SigList.bin -SignedFilePath siglists\Toshiba_Corporation_Utility_CA_2012-08-10_SigList_Serialization.bin.p7 -Name db -AppendWrite:$true
-# Set-SecureBootUEFI -Time 2018-07-05T00:00:00Z -ContentFilePath siglists\Toshiba_QCI_2012-07-24_SigList.bin -SignedFilePath siglists\Toshiba_QCI_2012-07-24_SigList_Serialization.bin.p7 -Name db -AppendWrite:$true
-# Set-SecureBootUEFI -Time 2018-07-05T00:00:00Z -ContentFilePath siglists\Toshiba_QCI_Shell_2012-07-24_SigList.bin -SignedFilePath siglists\Toshiba_QCI_Shell_2012-07-24_SigList_Serialization.bin.p7 -Name db -AppendWrite:$true
+# Set-SecureBootUEFI -Time 2018-07-05T00:00:00Z -ContentFilePath $scriptPath\siglists\Toshiba_Corporation_Utility_CA_2012-08-10_SigList.bin -SignedFilePath $scriptPath\siglists\Toshiba_Corporation_Utility_CA_2012-08-10_SigList_Serialization.bin.p7 -Name db -AppendWrite:$true
+# Set-SecureBootUEFI -Time 2018-07-05T00:00:00Z -ContentFilePath $scriptPath\siglists\Toshiba_QCI_2012-07-24_SigList.bin -SignedFilePath $scriptPath\siglists\Toshiba_QCI_2012-07-24_SigList_Serialization.bin.p7 -Name db -AppendWrite:$true
+# Set-SecureBootUEFI -Time 2018-07-05T00:00:00Z -ContentFilePath $scriptPath\siglists\Toshiba_QCI_Shell_2012-07-24_SigList.bin -SignedFilePath $scriptPath\siglists\Toshiba_QCI_Shell_2012-07-24_SigList_Serialization.bin.p7 -Name db -AppendWrite:$true
Write-Host "Setting PK-signed KEK..."
-Set-SecureBootUEFI -Time 2018-07-05T00:00:00Z -ContentFilePath siglists\DCS_key_exchange_SigList.bin -SignedFilePath siglists\DCS_key_exchange_SigList_Serialization.bin.p7 -Name KEK
+Set-SecureBootUEFI -Time 2018-07-05T00:00:00Z -ContentFilePath $scriptPath\siglists\DCS_key_exchange_SigList.bin -SignedFilePath $scriptPath\siglists\DCS_key_exchange_SigList_Serialization.bin.p7 -Name KEK
Write-Host "Setting self-signed PK..."
-Set-SecureBootUEFI -Time 2018-07-05T00:00:00Z -ContentFilePath siglists\DCS_platform_SigList.bin -SignedFilePath siglists\DCS_platform_SigList_Serialization.bin.p7 -Name PK
+Set-SecureBootUEFI -Time 2018-07-05T00:00:00Z -ContentFilePath $scriptPath\siglists\DCS_platform_SigList.bin -SignedFilePath $scriptPath\siglists\DCS_platform_SigList_Serialization.bin.p7 -Name PK
diff --git a/SecureBoot/siglists/Acer_LINPUS_2018-04-19_SigList.bin b/SecureBoot/siglists/Acer_LINPUS_2018-04-19_SigList.bin
new file mode 100644
index 0000000..c69e029
--- /dev/null
+++ b/SecureBoot/siglists/Acer_LINPUS_2018-04-19_SigList.bin
Binary files differ
diff --git a/SecureBoot/siglists/Acer_LINPUS_2018-04-19_SigList_Serialization.bin b/SecureBoot/siglists/Acer_LINPUS_2018-04-19_SigList_Serialization.bin
new file mode 100644
index 0000000..b8b6aa8
--- /dev/null
+++ b/SecureBoot/siglists/Acer_LINPUS_2018-04-19_SigList_Serialization.bin
Binary files differ
diff --git a/SecureBoot/siglists/Acer_LINPUS_2018-04-19_SigList_Serialization.bin.p7 b/SecureBoot/siglists/Acer_LINPUS_2018-04-19_SigList_Serialization.bin.p7
new file mode 100644
index 0000000..60247bf
--- /dev/null
+++ b/SecureBoot/siglists/Acer_LINPUS_2018-04-19_SigList_Serialization.bin.p7
Binary files differ
diff --git a/SecureBoot/siglists/Acer_Wistron_Secure_Flash_2013-05-17_SigList.bin b/SecureBoot/siglists/Acer_Wistron_Secure_Flash_2013-05-17_SigList.bin
new file mode 100644
index 0000000..8b315e7
--- /dev/null
+++ b/SecureBoot/siglists/Acer_Wistron_Secure_Flash_2013-05-17_SigList.bin
Binary files differ
diff --git a/SecureBoot/siglists/Acer_Wistron_Secure_Flash_2013-05-17_SigList_Serialization.bin b/SecureBoot/siglists/Acer_Wistron_Secure_Flash_2013-05-17_SigList_Serialization.bin
new file mode 100644
index 0000000..f6ad491
--- /dev/null
+++ b/SecureBoot/siglists/Acer_Wistron_Secure_Flash_2013-05-17_SigList_Serialization.bin
Binary files differ
diff --git a/SecureBoot/siglists/Acer_Wistron_Secure_Flash_2013-05-17_SigList_Serialization.bin.p7 b/SecureBoot/siglists/Acer_Wistron_Secure_Flash_2013-05-17_SigList_Serialization.bin.p7
new file mode 100644
index 0000000..19e3455
--- /dev/null
+++ b/SecureBoot/siglists/Acer_Wistron_Secure_Flash_2013-05-17_SigList_Serialization.bin.p7
Binary files differ
diff --git a/SecureBoot/siglists/Dell_CompalA31CSMB_2012-07-17_SigList.bin b/SecureBoot/siglists/Dell_CompalA31CSMB_2012-07-17_SigList.bin
new file mode 100644
index 0000000..59fbcce
--- /dev/null
+++ b/SecureBoot/siglists/Dell_CompalA31CSMB_2012-07-17_SigList.bin
Binary files differ
diff --git a/SecureBoot/siglists/Dell_CompalA31CSMB_2012-07-17_SigList_Serialization.bin b/SecureBoot/siglists/Dell_CompalA31CSMB_2012-07-17_SigList_Serialization.bin
new file mode 100644
index 0000000..0c74499
--- /dev/null
+++ b/SecureBoot/siglists/Dell_CompalA31CSMB_2012-07-17_SigList_Serialization.bin
Binary files differ
diff --git a/SecureBoot/siglists/Dell_CompalA31CSMB_2012-07-17_SigList_Serialization.bin.p7 b/SecureBoot/siglists/Dell_CompalA31CSMB_2012-07-17_SigList_Serialization.bin.p7
new file mode 100644
index 0000000..c0b0378
--- /dev/null
+++ b/SecureBoot/siglists/Dell_CompalA31CSMB_2012-07-17_SigList_Serialization.bin.p7
Binary files differ
diff --git a/SecureBoot/siglists/Intel_CISD_FW_Update_2017-08-30_SigList.bin b/SecureBoot/siglists/Intel_CISD_FW_Update_2017-08-30_SigList.bin
new file mode 100644
index 0000000..426dec3
--- /dev/null
+++ b/SecureBoot/siglists/Intel_CISD_FW_Update_2017-08-30_SigList.bin
Binary files differ
diff --git a/SecureBoot/siglists/Intel_CISD_FW_Update_2017-08-30_SigList_Serialization.bin b/SecureBoot/siglists/Intel_CISD_FW_Update_2017-08-30_SigList_Serialization.bin
new file mode 100644
index 0000000..3ca95db
--- /dev/null
+++ b/SecureBoot/siglists/Intel_CISD_FW_Update_2017-08-30_SigList_Serialization.bin
Binary files differ
diff --git a/SecureBoot/siglists/Intel_CISD_FW_Update_2017-08-30_SigList_Serialization.bin.p7 b/SecureBoot/siglists/Intel_CISD_FW_Update_2017-08-30_SigList_Serialization.bin.p7
new file mode 100644
index 0000000..80b2c69
--- /dev/null
+++ b/SecureBoot/siglists/Intel_CISD_FW_Update_2017-08-30_SigList_Serialization.bin.p7
Binary files differ
diff --git a/SecureBoot/siglists/OriginPC_OWN_CA_2018-01-09_SigList.bin b/SecureBoot/siglists/OriginPC_OWN_CA_2018-01-09_SigList.bin
new file mode 100644
index 0000000..81a82ad
--- /dev/null
+++ b/SecureBoot/siglists/OriginPC_OWN_CA_2018-01-09_SigList.bin
Binary files differ
diff --git a/SecureBoot/siglists/OriginPC_OWN_CA_2018-01-09_SigList_Serialization.bin b/SecureBoot/siglists/OriginPC_OWN_CA_2018-01-09_SigList_Serialization.bin
new file mode 100644
index 0000000..8294bfc
--- /dev/null
+++ b/SecureBoot/siglists/OriginPC_OWN_CA_2018-01-09_SigList_Serialization.bin
Binary files differ
diff --git a/SecureBoot/siglists/OriginPC_OWN_CA_2018-01-09_SigList_Serialization.bin.p7 b/SecureBoot/siglists/OriginPC_OWN_CA_2018-01-09_SigList_Serialization.bin.p7
new file mode 100644
index 0000000..1632b02
--- /dev/null
+++ b/SecureBoot/siglists/OriginPC_OWN_CA_2018-01-09_SigList_Serialization.bin.p7
Binary files differ
diff --git a/SecureBoot/siglists/Panasonic_Corporation_db_CA_2013-03-31_SigList.bin b/SecureBoot/siglists/Panasonic_Corporation_db_CA_2013-03-31_SigList.bin
new file mode 100644
index 0000000..70a3321
--- /dev/null
+++ b/SecureBoot/siglists/Panasonic_Corporation_db_CA_2013-03-31_SigList.bin
Binary files differ
diff --git a/SecureBoot/siglists/Panasonic_Corporation_db_CA_2013-03-31_SigList_Serialization.bin b/SecureBoot/siglists/Panasonic_Corporation_db_CA_2013-03-31_SigList_Serialization.bin
new file mode 100644
index 0000000..64c1cc7
--- /dev/null
+++ b/SecureBoot/siglists/Panasonic_Corporation_db_CA_2013-03-31_SigList_Serialization.bin
Binary files differ
diff --git a/SecureBoot/siglists/Panasonic_Corporation_db_CA_2013-03-31_SigList_Serialization.bin.p7 b/SecureBoot/siglists/Panasonic_Corporation_db_CA_2013-03-31_SigList_Serialization.bin.p7
new file mode 100644
index 0000000..6527a83
--- /dev/null
+++ b/SecureBoot/siglists/Panasonic_Corporation_db_CA_2013-03-31_SigList_Serialization.bin.p7
Binary files differ
diff --git a/SecureBoot/siglists/Samsung_SEC_PRODUCTION_KeyUEFI_2012-07-05_SigList.bin b/SecureBoot/siglists/Samsung_SEC_PRODUCTION_KeyUEFI_2012-07-05_SigList.bin
new file mode 100644
index 0000000..f5ebfab
--- /dev/null
+++ b/SecureBoot/siglists/Samsung_SEC_PRODUCTION_KeyUEFI_2012-07-05_SigList.bin
Binary files differ
diff --git a/SecureBoot/siglists/Samsung_SEC_PRODUCTION_KeyUEFI_2012-07-05_SigList_Serialization.bin b/SecureBoot/siglists/Samsung_SEC_PRODUCTION_KeyUEFI_2012-07-05_SigList_Serialization.bin
new file mode 100644
index 0000000..802ea0d
--- /dev/null
+++ b/SecureBoot/siglists/Samsung_SEC_PRODUCTION_KeyUEFI_2012-07-05_SigList_Serialization.bin
Binary files differ
diff --git a/SecureBoot/siglists/Samsung_SEC_PRODUCTION_KeyUEFI_2012-07-05_SigList_Serialization.bin.p7 b/SecureBoot/siglists/Samsung_SEC_PRODUCTION_KeyUEFI_2012-07-05_SigList_Serialization.bin.p7
new file mode 100644
index 0000000..b6a7d17
--- /dev/null
+++ b/SecureBoot/siglists/Samsung_SEC_PRODUCTION_KeyUEFI_2012-07-05_SigList_Serialization.bin.p7
Binary files differ