<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>EdgeLock 2GO Secure ServiceのトピックFRDM-RW612 EL2GO Provisioning Fails with STATUS_ATTR_RKTH_DEVICE_LCS_FAIL</title>
    <link>https://community.nxp.com/t5/EdgeLock-2GO-Secure-Service/FRDM-RW612-EL2GO-Provisioning-Fails-with-STATUS-ATTR-RKTH-DEVICE/m-p/2363134#M33</link>
    <description>&lt;P&gt;I am working with the FRDM-RW612 board and trying to test EdgeLock 2GO provisioning using SEC Provisioning Tool v26.03 by following the procedure from AN14624 (EdgeLock 2GO Provisioning via SEC for MCUs).&lt;/P&gt;&lt;P&gt;I am using the following commands successfully:&lt;/P&gt;&lt;OL&gt;&lt;LI&gt;&lt;P&gt;get-secure-objects&lt;/P&gt;&lt;/LI&gt;&lt;LI&gt;&lt;P&gt;prepare-device&lt;/P&gt;&lt;/LI&gt;&lt;/OL&gt;&lt;P&gt;However, during the run-provisioning step (even with --dry-run), I get the following error:&lt;/P&gt;&lt;PRE&gt;SPSDKError: SPSDK: Provisioning failed with status:
0xa50ab900 STATUS_ATTR_RKTH_DEVICE_LCS_FAIL:
Invalid OEM FW Authentication Key Hash Secure Object's device lifecycle value.&lt;/PRE&gt;&lt;P&gt;Commands used:&lt;/P&gt;&lt;PRE&gt;el2go-host.exe dev get-secure-objects -p COM24,57600 -c el2go_config.yaml --output secure_objects.bin --force

el2go-host.exe dev prepare-device -p COM24,57600 -c el2go_config.yaml --secure-objects-file secure_objects.bin -w el2go_tmp

el2go-host.exe dev run-provisioning -p COM24,57600 -c el2go_config.yaml --dry-run&lt;/PRE&gt;&lt;P&gt;The secure object being provisioned is:&lt;/P&gt;&lt;PRE&gt;"type": "OEM_FW_AUTH_KEY_HASH",
"name": "FRDM_RTKH"&lt;/PRE&gt;&lt;P&gt;Additional details:&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;&lt;P&gt;I do not want to permanently burn fuses at this stage.&lt;/P&gt;&lt;/LI&gt;&lt;LI&gt;&lt;P&gt;I only want to understand and test the provisioning flow on the FRDM-RW612.&lt;/P&gt;&lt;/LI&gt;&lt;LI&gt;&lt;P&gt;The board is currently accessible through ISP mode and UART communication works correctly.&lt;/P&gt;&lt;/LI&gt;&lt;LI&gt;&lt;P&gt;get-secure-objects and prepare-device complete successfully.&lt;/P&gt;&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;I also noticed that:&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;&lt;P&gt;In the SEC Provisioning Tool, there are 5 lifecycle options:&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;&lt;P&gt;InField, shadow regs&lt;/P&gt;&lt;/LI&gt;&lt;LI&gt;&lt;P&gt;InFieldLocked, shadow regs&lt;/P&gt;&lt;/LI&gt;&lt;LI&gt;&lt;P&gt;Develop, OTP&lt;/P&gt;&lt;/LI&gt;&lt;LI&gt;&lt;P&gt;InField, OTP&lt;/P&gt;&lt;/LI&gt;&lt;LI&gt;&lt;P&gt;InFieldLocked, OTP&lt;/P&gt;&lt;/LI&gt;&lt;/UL&gt;&lt;/LI&gt;&lt;LI&gt;&lt;P&gt;In EdgeLock 2GO cloud, there are only 3 lifecycle options:&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;&lt;P&gt;OPEN&lt;/P&gt;&lt;/LI&gt;&lt;LI&gt;&lt;P&gt;CLOSED&lt;/P&gt;&lt;/LI&gt;&lt;LI&gt;&lt;P&gt;CLOSED/LOCKED&lt;/P&gt;&lt;/LI&gt;&lt;/UL&gt;&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;I selected OPEN for all secure objects in EL2GO cloud. I also tried both OPEN and CLOSED lifecycle settings, but then I started getting correlation errors.&lt;/P&gt;&lt;P&gt;Currently, in SEC tool, I am using:&lt;/P&gt;&lt;PRE&gt;Develop, OTP&lt;/PRE&gt;&lt;P&gt;I would like to understand:&lt;/P&gt;&lt;OL&gt;&lt;LI&gt;&lt;P&gt;Which lifecycle state is expected for provisioning OEM_FW_AUTH_KEY_HASH on RW612?&lt;/P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Rajan10_0-1778478691853.png" style="width: 400px;"&gt;&lt;img src="https://community.nxp.com/t5/image/serverpage/image-id/384923i7C4B506D799701D2/image-size/medium?v=v2&amp;amp;px=400" role="button" title="Rajan10_0-1778478691853.png" alt="Rajan10_0-1778478691853.png" /&gt;&lt;/span&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;/LI&gt;&lt;LI&gt;&lt;P&gt;What is the mapping between SEC tool lifecycle states and EL2GO cloud lifecycle states?&lt;/P&gt;&lt;/LI&gt;&lt;LI&gt;&lt;P&gt;Is Develop, OTP expected to correspond to OPEN lifecycle in EL2GO?&lt;/P&gt;&lt;/LI&gt;&lt;LI&gt;&lt;P&gt;Is there a recommended EL2GO provisioning profile for development/testing without secure boot or permanent lifecycle transition?&lt;/P&gt;&lt;/LI&gt;&lt;LI&gt;&lt;P&gt;Can this error occur if the board is still in OPEN lifecycle state?&lt;/P&gt;&lt;/LI&gt;&lt;/OL&gt;&lt;P&gt;Any guidance regarding the correct provisioning flow for development boards would be very helpful.&lt;/P&gt;</description>
    <pubDate>Mon, 11 May 2026 05:55:02 GMT</pubDate>
    <dc:creator>Rajan10</dc:creator>
    <dc:date>2026-05-11T05:55:02Z</dc:date>
    <item>
      <title>FRDM-RW612 EL2GO Provisioning Fails with STATUS_ATTR_RKTH_DEVICE_LCS_FAIL</title>
      <link>https://community.nxp.com/t5/EdgeLock-2GO-Secure-Service/FRDM-RW612-EL2GO-Provisioning-Fails-with-STATUS-ATTR-RKTH-DEVICE/m-p/2363134#M33</link>
      <description>&lt;P&gt;I am working with the FRDM-RW612 board and trying to test EdgeLock 2GO provisioning using SEC Provisioning Tool v26.03 by following the procedure from AN14624 (EdgeLock 2GO Provisioning via SEC for MCUs).&lt;/P&gt;&lt;P&gt;I am using the following commands successfully:&lt;/P&gt;&lt;OL&gt;&lt;LI&gt;&lt;P&gt;get-secure-objects&lt;/P&gt;&lt;/LI&gt;&lt;LI&gt;&lt;P&gt;prepare-device&lt;/P&gt;&lt;/LI&gt;&lt;/OL&gt;&lt;P&gt;However, during the run-provisioning step (even with --dry-run), I get the following error:&lt;/P&gt;&lt;PRE&gt;SPSDKError: SPSDK: Provisioning failed with status:
0xa50ab900 STATUS_ATTR_RKTH_DEVICE_LCS_FAIL:
Invalid OEM FW Authentication Key Hash Secure Object's device lifecycle value.&lt;/PRE&gt;&lt;P&gt;Commands used:&lt;/P&gt;&lt;PRE&gt;el2go-host.exe dev get-secure-objects -p COM24,57600 -c el2go_config.yaml --output secure_objects.bin --force

el2go-host.exe dev prepare-device -p COM24,57600 -c el2go_config.yaml --secure-objects-file secure_objects.bin -w el2go_tmp

el2go-host.exe dev run-provisioning -p COM24,57600 -c el2go_config.yaml --dry-run&lt;/PRE&gt;&lt;P&gt;The secure object being provisioned is:&lt;/P&gt;&lt;PRE&gt;"type": "OEM_FW_AUTH_KEY_HASH",
"name": "FRDM_RTKH"&lt;/PRE&gt;&lt;P&gt;Additional details:&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;&lt;P&gt;I do not want to permanently burn fuses at this stage.&lt;/P&gt;&lt;/LI&gt;&lt;LI&gt;&lt;P&gt;I only want to understand and test the provisioning flow on the FRDM-RW612.&lt;/P&gt;&lt;/LI&gt;&lt;LI&gt;&lt;P&gt;The board is currently accessible through ISP mode and UART communication works correctly.&lt;/P&gt;&lt;/LI&gt;&lt;LI&gt;&lt;P&gt;get-secure-objects and prepare-device complete successfully.&lt;/P&gt;&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;I also noticed that:&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;&lt;P&gt;In the SEC Provisioning Tool, there are 5 lifecycle options:&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;&lt;P&gt;InField, shadow regs&lt;/P&gt;&lt;/LI&gt;&lt;LI&gt;&lt;P&gt;InFieldLocked, shadow regs&lt;/P&gt;&lt;/LI&gt;&lt;LI&gt;&lt;P&gt;Develop, OTP&lt;/P&gt;&lt;/LI&gt;&lt;LI&gt;&lt;P&gt;InField, OTP&lt;/P&gt;&lt;/LI&gt;&lt;LI&gt;&lt;P&gt;InFieldLocked, OTP&lt;/P&gt;&lt;/LI&gt;&lt;/UL&gt;&lt;/LI&gt;&lt;LI&gt;&lt;P&gt;In EdgeLock 2GO cloud, there are only 3 lifecycle options:&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;&lt;P&gt;OPEN&lt;/P&gt;&lt;/LI&gt;&lt;LI&gt;&lt;P&gt;CLOSED&lt;/P&gt;&lt;/LI&gt;&lt;LI&gt;&lt;P&gt;CLOSED/LOCKED&lt;/P&gt;&lt;/LI&gt;&lt;/UL&gt;&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;I selected OPEN for all secure objects in EL2GO cloud. I also tried both OPEN and CLOSED lifecycle settings, but then I started getting correlation errors.&lt;/P&gt;&lt;P&gt;Currently, in SEC tool, I am using:&lt;/P&gt;&lt;PRE&gt;Develop, OTP&lt;/PRE&gt;&lt;P&gt;I would like to understand:&lt;/P&gt;&lt;OL&gt;&lt;LI&gt;&lt;P&gt;Which lifecycle state is expected for provisioning OEM_FW_AUTH_KEY_HASH on RW612?&lt;/P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Rajan10_0-1778478691853.png" style="width: 400px;"&gt;&lt;img src="https://community.nxp.com/t5/image/serverpage/image-id/384923i7C4B506D799701D2/image-size/medium?v=v2&amp;amp;px=400" role="button" title="Rajan10_0-1778478691853.png" alt="Rajan10_0-1778478691853.png" /&gt;&lt;/span&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;/LI&gt;&lt;LI&gt;&lt;P&gt;What is the mapping between SEC tool lifecycle states and EL2GO cloud lifecycle states?&lt;/P&gt;&lt;/LI&gt;&lt;LI&gt;&lt;P&gt;Is Develop, OTP expected to correspond to OPEN lifecycle in EL2GO?&lt;/P&gt;&lt;/LI&gt;&lt;LI&gt;&lt;P&gt;Is there a recommended EL2GO provisioning profile for development/testing without secure boot or permanent lifecycle transition?&lt;/P&gt;&lt;/LI&gt;&lt;LI&gt;&lt;P&gt;Can this error occur if the board is still in OPEN lifecycle state?&lt;/P&gt;&lt;/LI&gt;&lt;/OL&gt;&lt;P&gt;Any guidance regarding the correct provisioning flow for development boards would be very helpful.&lt;/P&gt;</description>
      <pubDate>Mon, 11 May 2026 05:55:02 GMT</pubDate>
      <guid>https://community.nxp.com/t5/EdgeLock-2GO-Secure-Service/FRDM-RW612-EL2GO-Provisioning-Fails-with-STATUS-ATTR-RKTH-DEVICE/m-p/2363134#M33</guid>
      <dc:creator>Rajan10</dc:creator>
      <dc:date>2026-05-11T05:55:02Z</dc:date>
    </item>
  </channel>
</rss>

