mokutil - tools for manipulating machine owner keys

This program provides the means to enroll and erase the machine owner
keys (MOK) stored in the database of shim.


Install Howto

  1. Update the package index:
    # sudo apt-get update
  2. Install mokutil deb package:
    # sudo apt-get install mokutil




2016-03-25 - Mario Limonciello <>
mokutil (0.3.0-0ubuntu3) xenial; urgency=medium
* Fix toggles working inconsistently by backporting 2 more commits
from upstream.
2016-03-26 - Mario Limonciello <>
mokutil (0.3.0-0ubuntu2) xenial; urgency=medium
* Backport buffer overflow patch from upstream (LP: #1562006)
* update debian/changelog for OpenSSL exception upstream.
2016-03-22 - Mario Limonciello <>
mokutil (0.3.0-0ubuntu1) xenial; urgency=medium
* New upstream version.
- Now uses efivar which supports immutable attributes (LP: #1560764)
* B-D on libefivar-dev, dh-autoreconf
* debian/rules: use autoreconf
* Backport cdb4b6f3 from upstream to fix i386 builds.
2016-03-15 - Mathieu Trudel-Lapierre <>
mokutil (0.2.0-1ubuntu1) xenial; urgency=medium
* debian/control: Build on i386, ia64, arm, and arm64 too.
2013-09-20 - Steve Langasek <>
mokutil (0.2.0-1) unstable; urgency=low
* Upload to Debian.
2013-09-19 - Steve Langasek <>
mokutil (0.2.0-0ubuntu2) saucy; urgency=low
* Add missing build-dependency on pkg-config.
2013-09-19 - Steve Langasek <>
mokutil (0.2.0-0ubuntu1) saucy; urgency=low
* Initial packaging.

