Source: shim-helpers-amd64-signed Section: admin Priority: optional Maintainer: Debian EFI team Standards-Version: 4.3.0 Build-Depends: debhelper (>= 10.1~), sbsigntool [amd64 arm64 i386], shim-unsigned (= 15.8-1~deb10u1), Package: shim-helpers-amd64-signed Architecture: amd64 Conflicts: shim (<< 15+1533136590.3beb971-3~), Replaces: shim (<< 15+1533136590.3beb971-3~), shim-signed (<< 1.29), Breaks: shim-signed (<< 1.29), Depends: shim-unsigned (>= 15.8-1~deb10u1), ${misc:Depends}, Built-Using: shim (= 15.8-1~deb10u1) Description: boot loader to chain-load signed boot loaders (signed by Debian) This package provides a minimalist boot loader which allows verifying signatures of other UEFI binaries against either the Secure Boot DB/DBX or against a built-in signature database. Its purpose is to allow a small, infrequently-changing binary to be signed by the UEFI CA, while allowing an OS distributor to revision their main bootloader independently of the CA. . This package contains the MOK manager and fall-back manager signed by the Debian UEFI CA to be used by shim-signed.