############### shimx64-cs9.efi ##################### fs0:\EFI\centos> dir Directory of: fs0:\EFI\centos 09/22/25 10:47p 4,096 . 09/22/25 10:47p 4,096 .. 09/25/25 05:01a 949,424 mshim-f41.efi 09/25/25 05:01a 949,424 shimx64-f41.efi 09/25/25 06:26p 946,056 shimx64-cs9.efi 09/25/25 06:29p 946,056 shimx64.efi 09/22/25 10:58p 144 grub.cfg 09/09/25 05:31p 2,565,672 grubx64.efi 6 File(s) 6,356,776 bytes 2 Dir(s) fs0:\EFI\centos> shimx64.efi shim.c:1890:efi_main() vendor_authorized:0x7971B010 vendor_authorized_size:0 shim.c:1892:efi_main() vendor_deauthorized:0x7971B010 vendor_deauthorized_size:0 sbat.c:492:set_sbat_uefi_variable() Default sbat policy: automatic -------------------------------------------------------------------------------------------------- Secure boot not enabled -------------------------------------------------------------------------------------------------- Press any key to continue Booting in 5 seconds Booting in 4 seconds Booting in 3 seconds Booting in 2 seconds Booting in 1 second sbat.c:553:set_sbat_uefi_variable() shim SBAT reparse before application sbat.c:339:parse_sbat_var() SBAT variable entries: sbat.c:344:parse_sbat_var() sbat, 1, 2021030218 pe.c:376:verify_sbat_section() SBAT section data pe.c:378:verify_sbat_section() sbat, 1, SBAT Version, sbat, 1, https://github.com/rhboot/shim/blob/main/SBAT.md pe.c:378:verify_sbat_section() shim, 4, UEFI shim, shim, 1, https://github.com/rhboot/shim sbat.c:138:verify_single_entry() component sbat has a matching SBAT variable entry, verifying sbat.c:204:verify_sbat_helper() finished verifying SBAT data: Success sbat.c:573:set_sbat_uefi_variable() SbatLevel variable is 18 bytes, attributes are 0x00000003 sbat.c:575:set_sbat_uefi_variable() Deleting SbatLevel variable. sbat.c:609:set_sbat_uefi_variable() SbatLevel variable initialization succeeded sbat.c:696:set_ssp_uefi_variable() Default SSP policy: automatic sbat.c:731:set_ssp_uefi_variable() No supplied SSP data, not setting variables shim.c:1914:efi_main() SkuSiPolicyVersion variable initialization done mok.c:965:import_mok_state() importing minimal mok state variables mok.c:871:import_one_mok_state() importing mok state for "MokList" mok.c:927:import_one_mok_state() maybe mirroring "MokList". original data: mok.c:837:maybe_mirror_one_mok_variable() deleting "MokListRT" mok.c:839:maybe_mirror_one_mok_variable() LibDeleteVariable("MokListRT",...) => Not Found mok.c:589:mirror_one_mok_variable() FullDataSize:0 FullData:0x0 mok.c:620:mirror_one_mok_variable() v->name:"MokList" v->rtname:"MokListRT" mok.c:621:mirror_one_mok_variable() v->data_size:0 v->data:0x0 mok.c:622:mirror_one_mok_variable() FullDataSize:0 FullData:0x0 mok.c:668:mirror_one_mok_variable() FullDataSize:0 FullData:0x0 p:0x0 pos:0 mok.c:702:mirror_one_mok_variable() FullDataSize:0 FullData:0x0 p:0x0 pos:0 mok.c:710:mirror_one_mok_variable() FullDataSize:0 FullData:0x0 p:0x0 pos:0 variables.c:28:fill_esl() fill_esl: first_sig=0x0, data_len=48 variables.c:28:fill_esl() fill_esl: first_sig=0x79740E18, data_len=48 mok.c:763:mirror_one_mok_variable() FullDataSize:76 FullData:0x79740B98 p:0x79740BE4 pos:76 mok.c:767:mirror_one_mok_variable() FullDataSize:76 FullData:0x79740B98 p:0x79740BE4 pos:76 mok.c:770:mirror_one_mok_variable() calling mirror_mok_db("MokListRT", datasz=76) ... mok.c:1064:import_mok_state() returning Success shim.c:1705:shim_init() UEFI SHIM $Version: 15.8 $ $BuildMachine: Linux x86_64 x86_64 x86_64 GNU/Linux $ $Commit: 5914984a1ffeab841f482c791426d7ca9935a5e6 $ ... ... ... grub loaded, kernel loaded ################ shimx64-f42.efi ############### fs0:\EFI\centos> dir Directory of: fs0:\EFI\centos 09/22/25 10:47p 4,096 . 09/22/25 10:47p 4,096 .. 09/25/25 05:01a 949,424 mshim-f41.efi 09/25/25 05:01a 949,424 shimx64-f41.efi 09/25/25 06:26p 946,056 shimx64-cs9.efi 09/25/25 06:49p 935,089 shimx64.efi 09/22/25 10:58p 144 grub.cfg 09/09/25 05:31p 2,565,672 grubx64.efi 09/25/25 06:49p 935,089 shimx64-f42.efi 7 File(s) 7,280,898 bytes 2 Dir(s) fs0:\EFI\centos> shimx64.efi shim.c:1890:efi_main() vendor_authorized:0x7971B010 vendor_authorized_size:0 shim.c:1892:efi_main() vendor_deauthorized:0x7971B010 vendor_deauthorized_size:0 sbat.c:492:set_sbat_uefi_variable() Default sbat policy: automatic -------------------------------------------------------------------------------------------------- Secure boot not enabled |ESC[3;1H| -------------------------------------------------------------------------------------------------- Press any key to continue Booting in 5 seconds Booting in 4 seconds sbat.c:553:set_sbat_uefi_variable() shim SBAT reparse before application sbat.c:339:parse_sbat_var() SBAT variable entries: sbat.c:344:parse_sbat_var() sbat, 1, 2021030218 pe.c:376:verify_sbat_section() SBAT section data pe.c:378:verify_sbat_section() sbat, 1, SBAT Version, sbat, 1, https://github.com/rhboot/shim/blob/main/SBAT.md pe.c:378:verify_sbat_section() shim, 4, UEFI shim, shim, 1, https://github.com/rhboot/shim sbat.c:138:verify_single_entry() component sbat has a matching SBAT variable entry, verifying sbat.c:204:verify_sbat_helper() finished verifying SBAT data: Success sbat.c:573:set_sbat_uefi_variable() SbatLevel variable is 18 bytes, attributes are 0x00000003 sbat.c:575:set_sbat_uefi_variable() Deleting SbatLevel variable. sbat.c:609:set_sbat_uefi_variable() SbatLevel variable initialization succeeded sbat.c:696:set_ssp_uefi_variable() Default SSP policy: automatic ... mok.c:1064:import_mok_state() returning Success shim.c:1705:shim_init() UEFI SHIM $Version: 15.8 $ $BuildMachine: Linux x86_64 unknown unknown GNU/Linux $ $Commit: 5914984a1ffeab841f482c791426d7ca9935a5e6 $ load-options.c:312:parse_load_options() full load options: load-options.c:313:parse_load_options() 00000000 XX XX XX XX XX XX XX XX 73 00 68 00 69 00 6d 00 XXXXXXXX|s.h.i.m.| load-options.c:313:parse_load_options() 00000008 78 00 36 00 34 00 2e 00 65 00 66 00 69 00 20 00 |x.6.4...e.f.i. .| load-options.c:313:parse_load_options() 00000018 00 00 66 00 73 00 30 00 3a 00 5c 00 45 00 46 00 |..f.s.0.:.\.E.F.| load-options.c:313:parse_load_options() 00000028 49 00 5c 00 63 00 65 00 6e 00 74 00 6f 00 73 00 |I.\.c.e.n.t.o.s.| load-options.c:313:parse_load_options() 00000038 00 00 XX XX XX XX XX XX XX XX XX XX XX XX XX XX |..| load-options.c:239:is_our_path() dppath: \EFI\centos/shimx64.efi load-options.c:240:is_our_path() path: shimx64.efi shim.c:886:load_image() attempting to load \EFI\centos\shimx64.efi ... ... ... grub and kernel loaded ##### sanity check of original c9s 15.2-8 problem shim ### [root@raptor shim]# rpm2cpio /mnt/iso/BaseOS/Packages/shim-x64-15.8-2.el9.x86_64.rpm | cpio -idmv ./boot/efi/EFI/BOOT/BOOTX64.EFI ./boot/efi/EFI/BOOT/fbx64.efi ./boot/efi/EFI/centos/BOOTX64.CSV ./boot/efi/EFI/centos/mmx64.efi ./boot/efi/EFI/centos/shim.efi ./boot/efi/EFI/centos/shimx64-centos.efi ./boot/efi/EFI/centos/shimx64.efi 9261 blocks [root@raptor shim]# cksum boot/efi/EFI/centos/shimx64.efi 4127861862 947880 boot/efi/EFI/centos/shimx64.efi [root@basic02 15.8-2]# cksum shimx64.efi 4127861862 947880 shimx64.efi