Add signing for unified uefi binary

Hi - This patch adds an option to automatically sign the generated uefi binary for use with SecureBoot. I've tested it for quiet a while now, but if there is a better solution, I am happy to adapt the PR.

