Update Secure Boot variables

It may be necessary to invalidate and update Secure Boot UEFI keys in case they have been compromised or have expired. Keys can be invalidated and updated using the revoke-key and update-key commands in the admin>system>security>secure-boot context.

As with Secure Boot activation, the card serial number and confirmation code are required to avoid invalidating or updating variables by mistake. The confirmation code is secure-boot-permanent. After submitting the serial number and code, the system then prompts to proceed and reboots the CSM.