grub2: distrust

 
 16.3.22 distrust
 ----------------
 
  -- Command: distrust pubkey_id
      Remove public key PUBKEY_ID from GRUB's keyring of trusted keys.
      PUBKEY_ID is the last four bytes (eight hexadecimal digits) of the
      GPG v4 key id, which is also the output of 'list_trusted' (See
      list_trusted).  Outside of GRUB, the key id can be obtained using
      'gpg --fingerprint').  These keys are used to validate signatures
      when environment variable 'check_signatures' is set to 'enforce'
      (Seecheck_signatures), and by some invocations of
DONTPRINTYET       'verify_detached' (Seeverify_detached).  *NoteUsing digital
DONTPRINTYET       'verify_detached' (Seeverify_detached).  SeeUsing digital

      signatures, for more information.