RMC should be able to generate MD5 hash over the contents of the data store and store it in the last field of the data directory in the RMC.efi PE header. https://upload.wikimedia.org/wikipedia/commons/1/1b/Portable_Executable_32_bit_Structure_in_SVG_fixed.svg Example: ./rmc -d data_store_dir -f RMC.efi This MD5 hash will then be used to verify the integrity of the data store when the system is booted in secure boot mode.
This should be something like (-b for bless): ./rmc -b -d data_store_dir -f RMC.efi
Work on RMC has been discontinued and it is no longer supported.