sbverify - UEFI secure boot verification tool
sbverify [options] --cert <certfile> <efi-boot-image>
Verify a UEFI secure boot image.
certificate (x509 certificate)
list all signatures (but don't verify)
read signature from <file>, instead of looking for an embedded signature