I got newer versions to work by adding the "--no-uefi-secure-boot" switch, so apparently uefi-secure-boot is not working for me. older versions might have defaulted to not using it, or I did not have the shim packages installed.