sbsigntool and shim were also tested separately after rebuild; I used the code being built for vivid, installed on xenial, used sbsigntool to sign the shim image (and an EFI shell image), after adding my local key I was able to boot both images successfully with SecureBoot enabled. The shim image obviously also works if SecureBoot isn't enabled.
sbsigntool and shim were also tested separately after rebuild; I used the code being built for vivid, installed on xenial, used sbsigntool to sign the shim image (and an EFI shell image), after adding my local key I was able to boot both images successfully with SecureBoot enabled. The shim image obviously also works if SecureBoot isn't enabled.