diff --git a/build_library/sbsign_util.sh b/build_library/sbsign_util.sh index 66ebe9c2b6..8b084238a1 100644 --- a/build_library/sbsign_util.sh +++ b/build_library/sbsign_util.sh @@ -6,7 +6,7 @@ if [[ ${COREOS_OFFICIAL:-0} -ne 1 ]]; then SBSIGN_KEY="/usr/share/sb_keys/shim.key" SBSIGN_CERT="/usr/share/sb_keys/shim.pem" else - SBSIGN_KEY="pkcs11:token=flatcar-sb-dev-hsm-sign-2025" + SBSIGN_KEY="pkcs11:token=flatcar-secure-boot-prod-2026-04" unset SBSIGN_CERT fi