Security feature on imx6

cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 

Security feature on imx6

2,012 Views
dhanunjay
Contributor III

Hi All,

I have some queries below on imx6 security feature :

1. Does NXP has  burned keys in to the IMX.6 the processor for Secure state or  Trusted state?can you please explain states and key management?

2. Is secure boot using HAB comes under any of above two modes.

0 Kudos
3 Replies

911 Views
igorpadykov
NXP Employee
NXP Employee

Hi DHANUNJAY

yes keys are burned, for usage one can look at

http://cache.freescale.com/files/32bit/doc/app_note/AN4581.pdf

https://community.freescale.com/docs/DOC-96451

iMX6 (CAAM, TrustZone) Hardware Security Blocks Use.

Best regards

igor

-----------------------------------------------------------------------------------------------------------------------

Note: If this post answers your question, please click the Correct Answer button. Thank you!

-----------------------------------------------------------------------------------------------------------------------

0 Kudos

911 Views
dhanunjay
Contributor III

Hi Igor,

Thanks for quick reply,

I have gone through the above links and imx6 security reference manual.

From imx6 DL ref manual section: 8.3.1

    

          FUSE                         Configuration                    Definition                                          Shipped value                         settings

DIE-XCORDINATE[                  Freescale                         Device Unique Id, 64-bit UID                   NA Unique ID                  Settings vary - used by HAB

7:0]                                                                                                                      

DIE-YCORDINATE[

7:0]

WAFER_NO[4:0]

LOT_NO_ENC[42:40]

LOT_NO_ENC[39:32]

LOT_NO_ENC[31:24]

LOT_NO_ENC[23:16]

LOT_NO_ENC[15:8]

LOT_NO_ENC[7:0]

The above keys burned to chip.

  •      Can i know about why UNIQUE_ID burned,how Unique_ID keep the board to secure state?
  •     Becaue of Uniue id system in secure state. so will be in the same state remain, if we start without additional checks for HAB secure boot in the same state?

can you please confirm above points.

Thanks,

Dhanunjay.

0 Kudos

911 Views
igorpadykov
NXP Employee
NXP Employee

Hi DHANUNJAY

please create new thread for these questions

Best regards

igor

0 Kudos