############### shimx64-cs9.efi #####################
fs0:\EFI\centos> dir
Directory of: fs0:\EFI\centos
09/22/25 10:47p
4,096 .
09/22/25 10:47p 4,096 ..
09/25/25 05:01a 949,424 mshim-f41.efi
09/25/25 05:01a 949,424 shimx64-f41.efi
09/25/25 06:26p 946,056 shimx64-cs9.efi
09/25/25 06:29p 946,056 shimx64.efi
09/22/25 10:58p 144 grub.cfg
09/09/25 05:31p 2,565,672 grubx64.efi
6 File(s) 6,356,776 bytes
2 Dir(s)
fs0:\EFI\centos> shimx64.efi
shim.c:1890:efi_main() vendor_authorized:0x7971B010 vendor_authorized_size:0
shim.c:1892:efi_main() vendor_deauthorized:0x7971B010 vendor_deauthorized_size:0
sbat.c:492:set_sbat_uefi_variable() Default sbat policy: automatic
--------------------------------------------------------------------------------------------------
Secure boot not enabled
--------------------------------------------------------------------------------------------------
Press any key to continue
Booting in 5 seconds
Booting in 4 seconds
Booting in 3 seconds
Booting in 2 seconds
Booting in 1 second
sbat.c:553:set_sbat_uefi_variable() shim SBAT reparse before application
sbat.c:339:parse_sbat_var() SBAT variable entries:
sbat.c:344:parse_sbat_var() sbat, 1, 2021030218
pe.c:376:verify_sbat_section() SBAT section data
pe.c:378:verify_sbat_section() sbat, 1, SBAT Version, sbat, 1, https://github.com/rhboot/shim/blob/main/SBAT.md
pe.c:378:verify_sbat_section() shim, 4, UEFI shim, shim, 1, https://github.com/rhboot/shim
sbat.c:138:verify_single_entry() component sbat has a matching SBAT variable entry, verifying
sbat.c:204:verify_sbat_helper() finished verifying SBAT data: Success
sbat.c:573:set_sbat_uefi_variable() SbatLevel variable is 18 bytes, attributes are 0x00000003
sbat.c:575:set_sbat_uefi_variable() Deleting SbatLevel variable.
sbat.c:609:set_sbat_uefi_variable() SbatLevel variable initialization succeeded
sbat.c:696:set_ssp_uefi_variable() Default SSP policy: automatic
sbat.c:731:set_ssp_uefi_variable() No supplied SSP data, not setting variables
shim.c:1914:efi_main() SkuSiPolicyVersion variable initialization done
mok.c:965:import_mok_state() importing minimal mok state variables
mok.c:871:import_one_mok_state() importing mok state for "MokList"
mok.c:927:import_one_mok_state() maybe mirroring "MokList". original data:
mok.c:837:maybe_mirror_one_mok_variable() deleting "MokListRT"
mok.c:839:maybe_mirror_one_mok_variable() LibDeleteVariable("MokListRT",...) => Not Found
mok.c:589:mirror_one_mok_variable() FullDataSize:0 FullData:0x0
mok.c:620:mirror_one_mok_variable() v->name:"MokList" v->rtname:"MokListRT"
mok.c:621:mirror_one_mok_variable() v->data_size:0 v->data:0x0
mok.c:622:mirror_one_mok_variable() FullDataSize:0 FullData:0x0
mok.c:668:mirror_one_mok_variable() FullDataSize:0 FullData:0x0 p:0x0 pos:0
mok.c:702:mirror_one_mok_variable() FullDataSize:0 FullData:0x0 p:0x0 pos:0
mok.c:710:mirror_one_mok_variable() FullDataSize:0 FullData:0x0 p:0x0 pos:0
variables.c:28:fill_esl() fill_esl: first_sig=0x0, data_len=48
variables.c:28:fill_esl() fill_esl: first_sig=0x79740E18, data_len=48
mok.c:763:mirror_one_mok_variable() FullDataSize:76 FullData:0x79740B98 p:0x79740BE4 pos:76
mok.c:767:mirror_one_mok_variable() FullDataSize:76 FullData:0x79740B98 p:0x79740BE4 pos:76
mok.c:770:mirror_one_mok_variable() calling mirror_mok_db("MokListRT", datasz=76)
...
mok.c:1064:import_mok_state() returning Success
shim.c:1705:shim_init() UEFI SHIM
$Version: 15.8 $
$BuildMachine: Linux x86_64 x86_64 x86_64 GNU/Linux $
$Commit: 5914984a1ffeab841f482c791426d7ca9935a5e6 $
...
...
... grub loaded, kernel loaded
################ shimx64-f42.efi ###############
fs0:\EFI\centos> dir
Directory of: fs0:\EFI\centos
09/22/25 10:47p 4,096 .
09/22/25 10:47p 4,096 ..
09/25/25 05:01a 949,424 mshim-f41.efi
09/25/25 05:01a 949,424 shimx64-f41.efi
09/25/25 06:26p 946,056 shimx64-cs9.efi
09/25/25 06:49p 935,089 shimx64.efi
09/22/25 10:58p 144 grub.cfg
09/09/25 05:31p 2,565,672 grubx64.efi
09/25/25 06:49p 935,089 shimx64-f42.efi
7 File(s) 7,280,898 bytes
2 Dir(s)
fs0:\EFI\centos> shimx64.efi
shim.c:1890:efi_main() vendor_authorized:0x7971B010 vendor_authorized_size:0
shim.c:1892:efi_main() vendor_deauthorized:0x7971B010 vendor_deauthorized_size:0
sbat.c:492:set_sbat_uefi_variable() Default sbat policy: automatic
--------------------------------------------------------------------------------------------------
Secure boot not enabled |ESC[3;1H|
--------------------------------------------------------------------------------------------------
Press any key to continue
Booting in 5 seconds
Booting in 4 seconds
sbat.c:553:set_sbat_uefi_variable() shim SBAT reparse before application
sbat.c:339:parse_sbat_var() SBAT variable entries:
sbat.c:344:parse_sbat_var() sbat, 1, 2021030218
pe.c:376:verify_sbat_section() SBAT section data
pe.c:378:verify_sbat_section() sbat, 1, SBAT Version, sbat, 1, https://github.com/rhboot/shim/blob/main/SBAT.md
pe.c:378:verify_sbat_section() shim, 4, UEFI shim, shim, 1, https://github.com/rhboot/shim
sbat.c:138:verify_single_entry() component sbat has a matching SBAT variable entry, verifying
sbat.c:204:verify_sbat_helper() finished verifying SBAT data: Success
sbat.c:573:set_sbat_uefi_variable() SbatLevel variable is 18 bytes, attributes are 0x00000003
sbat.c:575:set_sbat_uefi_variable() Deleting SbatLevel variable.
sbat.c:609:set_sbat_uefi_variable() SbatLevel variable initialization succeeded
sbat.c:696:set_ssp_uefi_variable() Default SSP policy: automatic
...
mok.c:1064:import_mok_state() returning Success
shim.c:1705:shim_init() UEFI SHIM
$Version: 15.8 $
$BuildMachine: Linux x86_64 unknown unknown GNU/Linux $
$Commit: 5914984a1ffeab841f482c791426d7ca9935a5e6 $
load-options.c:312:parse_load_options() full load options:
load-options.c:313:parse_load_options() 00000000 XX XX XX XX XX XX XX XX 73 00 68 00 69 00 6d 00 XXXXXXXX|s.h.i.m.|
load-options.c:313:parse_load_options() 00000008 78 00 36 00 34 00 2e 00 65 00 66 00 69 00 20 00 |x.6.4...e.f.i. .|
load-options.c:313:parse_load_options() 00000018 00 00 66 00 73 00 30 00 3a 00 5c 00 45 00 46 00 |..f.s.0.:.\.E.F.|
load-options.c:313:parse_load_options() 00000028 49 00 5c 00 63 00 65 00 6e 00 74 00 6f 00 73 00 |I.\.c.e.n.t.o.s.|
load-options.c:313:parse_load_options() 00000038 00 00 XX XX XX XX XX XX XX XX XX XX XX XX XX XX |..|
load-options.c:239:is_our_path() dppath: \EFI\centos/shimx64.efi
load-options.c:240:is_our_path() path: shimx64.efi
shim.c:886:load_image() attempting to load \EFI\centos\shimx64.efi
...
...
... grub and kernel loaded
##### sanity check of original c9s 15.2-8 problem shim ###
[root@raptor shim]# rpm2cpio /mnt/iso/BaseOS/Packages/shim-x64-15.8-2.el9.x86_64.rpm | cpio -idmv
./boot/efi/EFI/BOOT/BOOTX64.EFI
./boot/efi/EFI/BOOT/fbx64.efi
./boot/efi/EFI/centos/BOOTX64.CSV
./boot/efi/EFI/centos/mmx64.efi
./boot/efi/EFI/centos/shim.efi
./boot/efi/EFI/centos/shimx64-centos.efi
./boot/efi/EFI/centos/shimx64.efi
9261 blocks
[root@raptor shim]# cksum boot/efi/EFI/centos/shimx64.efi
4127861862 947880 boot/efi/EFI/centos/shimx64.efi
[root@basic02 15.8-2]# cksum shimx64.efi
4127861862 947880 shimx64.efi