<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>LayerscapeのトピックRe: Secure Boot - ROM  Details</title>
    <link>https://community.nxp.com/t5/Layerscape/Secure-Boot-ROM-Details/m-p/882589#M4081</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I am sorry it seems I put obsoleted link. You can start from link in the error message&lt;/P&gt;&lt;UL class="" style="color: #51626f; background-color: #ffffff; border: 0px; padding: 0px 0px 0px 30px;"&gt;&lt;LI style="border: 0px; font-weight: inherit; margin: 0.5ex 0px;"&gt;&lt;SPAN style="border: 0px; font-weight: inherit;"&gt;&lt;EM&gt;If you cannot find a product or page and need technical assistance&lt;/EM&gt;&lt;/SPAN&gt;, please enter a&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;A data-content-finding="Community" href="https://community.nxp.com/external-link.jspa?url=https%3A%2F%2Fwww.nxp.com%2Fwebapp%2Fsps%2Fsite%2Fservicerequest.clr_AddDetails.framework%3FFORM_CATEGORY%3DWeb%26FORM_TOPIC%3DBrokenLink" rel="nofollow" style="color: #3d9ce7; border: 0px; font-weight: inherit; text-decoration: none; padding: 0px calc(12px + 0.35ex) 0px 0px;" target="_blank"&gt;service request&lt;/A&gt;.&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;It opens page where you can start create services request for the details of the ROM.&amp;nbsp;On this page click on "New Service Request". On the next page click on "Go to tickets" and at last you open page where you can create techical case using button "Add a new case"&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Wed, 27 Feb 2019 10:46:52 GMT</pubDate>
    <dc:creator>r8070z</dc:creator>
    <dc:date>2019-02-27T10:46:52Z</dc:date>
    <item>
      <title>Secure Boot - ROM  Details</title>
      <link>https://community.nxp.com/t5/Layerscape/Secure-Boot-ROM-Details/m-p/882586#M4078</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I am using ls2088ardb, i was referring to documentation of the secure boot, in&amp;nbsp; QORIQ-SDK-2.0-IC-REV0.pdf&amp;nbsp; Section 10.3.3 gives the details of Service processor Rom and Gpp Boot Rom,&lt;/P&gt;&lt;P&gt;1. Where can i get the details of Service processor Rom and GPP ROM what is size of it ??&lt;/P&gt;&lt;P&gt;2. How public keys/private keys are programmed??&amp;nbsp;&lt;/P&gt;&lt;P&gt;Can you please provide details regarding it?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 22 Feb 2019 19:51:30 GMT</pubDate>
      <guid>https://community.nxp.com/t5/Layerscape/Secure-Boot-ROM-Details/m-p/882586#M4078</guid>
      <dc:creator>nagarajupoliset</dc:creator>
      <dc:date>2019-02-22T19:51:30Z</dc:date>
    </item>
    <item>
      <title>Re: Secure Boot - ROM  Details</title>
      <link>https://community.nxp.com/t5/Layerscape/Secure-Boot-ROM-Details/m-p/882587#M4079</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;&lt;BR /&gt;Have a great day,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;1&amp;nbsp; I am sure that details of Service processor Rom and GPP ROM are not public. To obtain additional available information you can create a Technical Case (see &lt;A href="https://community.freescale.com/thread/381898"&gt;https://community.freescale.com/thread/381898&lt;/A&gt; )&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;2 &amp;nbsp;The SDK provides utility to generate public /private keys. Private key is used to sign firmaware. If firmware updates are a system requirement, the private key must be maintained in the secure database for the life of the product. The public key included into the CSF header.&lt;/P&gt;&lt;P&gt;-------------------------------------------------------------------------------&lt;BR /&gt;Note:&lt;BR /&gt;- If this post answers your question, please click the "Mark Correct" button. Thank you!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;- We are following threads for 7 weeks after the last post, later replies are ignored&lt;BR /&gt; Please open a new thread and refer to the closed one, if you have a related question at a later point in time.&lt;BR /&gt;-------------------------------------------------------------------------------&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 26 Feb 2019 15:09:24 GMT</pubDate>
      <guid>https://community.nxp.com/t5/Layerscape/Secure-Boot-ROM-Details/m-p/882587#M4079</guid>
      <dc:creator>r8070z</dc:creator>
      <dc:date>2019-02-26T15:09:24Z</dc:date>
    </item>
    <item>
      <title>Re: Secure Boot - ROM  Details</title>
      <link>https://community.nxp.com/t5/Layerscape/Secure-Boot-ROM-Details/m-p/882588#M4080</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;i am not able to access the link provided by you. i am getting the&amp;nbsp; following text&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Can&amp;nbsp; you please confirm me whether the link is correct?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;DIV class=""&gt;&lt;DIV class=""&gt;&lt;DIV class=""&gt;&lt;H1&gt;Page Not Found&lt;/H1&gt;&lt;/DIV&gt;&lt;/DIV&gt;&lt;/DIV&gt;&lt;DIV class=""&gt;&lt;DIV class=""&gt;&lt;P class=""&gt;The page you requested cannot be found.&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;Possible reasons for missing pages, and what you can do:&lt;/STRONG&gt;&lt;/P&gt;&lt;UL class=""&gt;&lt;LI&gt;&lt;EM&gt;If you typed a URL in the Address bar&lt;/EM&gt;, make sure the URL was spelled correctly.&lt;/LI&gt;&lt;LI&gt;&lt;EM&gt;If you used a bookmark&lt;/EM&gt;, please delete it and navigate from the &lt;A href="http://www.nxp.com/"&gt;homepage&lt;/A&gt;.&lt;/LI&gt;&lt;LI&gt;&lt;EM&gt;If you cannot find a product or page and need technical assistance&lt;/EM&gt;, please enter a &lt;A href="https://www.nxp.com/webapp/sps/site/servicerequest.clr_AddDetails.framework?FORM_CATEGORY=Web&amp;amp;FORM_TOPIC=BrokenLink"&gt;service request&lt;/A&gt;.&lt;/LI&gt;&lt;LI&gt;&lt;EM&gt;This page may not be available in the language you selected&lt;/EM&gt;&lt;/LI&gt;&lt;/UL&gt;&lt;/DIV&gt;&lt;/DIV&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 26 Feb 2019 17:31:39 GMT</pubDate>
      <guid>https://community.nxp.com/t5/Layerscape/Secure-Boot-ROM-Details/m-p/882588#M4080</guid>
      <dc:creator>nagarajupoliset</dc:creator>
      <dc:date>2019-02-26T17:31:39Z</dc:date>
    </item>
    <item>
      <title>Re: Secure Boot - ROM  Details</title>
      <link>https://community.nxp.com/t5/Layerscape/Secure-Boot-ROM-Details/m-p/882589#M4081</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I am sorry it seems I put obsoleted link. You can start from link in the error message&lt;/P&gt;&lt;UL class="" style="color: #51626f; background-color: #ffffff; border: 0px; padding: 0px 0px 0px 30px;"&gt;&lt;LI style="border: 0px; font-weight: inherit; margin: 0.5ex 0px;"&gt;&lt;SPAN style="border: 0px; font-weight: inherit;"&gt;&lt;EM&gt;If you cannot find a product or page and need technical assistance&lt;/EM&gt;&lt;/SPAN&gt;, please enter a&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;A data-content-finding="Community" href="https://community.nxp.com/external-link.jspa?url=https%3A%2F%2Fwww.nxp.com%2Fwebapp%2Fsps%2Fsite%2Fservicerequest.clr_AddDetails.framework%3FFORM_CATEGORY%3DWeb%26FORM_TOPIC%3DBrokenLink" rel="nofollow" style="color: #3d9ce7; border: 0px; font-weight: inherit; text-decoration: none; padding: 0px calc(12px + 0.35ex) 0px 0px;" target="_blank"&gt;service request&lt;/A&gt;.&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;It opens page where you can start create services request for the details of the ROM.&amp;nbsp;On this page click on "New Service Request". On the next page click on "Go to tickets" and at last you open page where you can create techical case using button "Add a new case"&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 27 Feb 2019 10:46:52 GMT</pubDate>
      <guid>https://community.nxp.com/t5/Layerscape/Secure-Boot-ROM-Details/m-p/882589#M4081</guid>
      <dc:creator>r8070z</dc:creator>
      <dc:date>2019-02-27T10:46:52Z</dc:date>
    </item>
    <item>
      <title>Re: Secure Boot - ROM  Details</title>
      <link>https://community.nxp.com/t5/Layerscape/Secure-Boot-ROM-Details/m-p/882590#M4082</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;&lt;A class="jx-jive-macro-user" href="https://community.nxp.com/people/r8070z"&gt;r8070z&lt;/A&gt;‌: thanks for your response.&lt;/P&gt;&lt;P&gt;For the question number 2.&lt;/P&gt;&lt;P&gt;How public keys/private keys are programmed? i still have some questions.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Following are the sequence of steps performed for secure boot and programming the fuse&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I am using evaluation platform for development&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;1. Signed image generation.&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; secure boot can be enabled by RCW with SB_EN = 1. with the help of QCVS i have set the SB_EN=1, i have generated&amp;nbsp; the bin file.&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; I have generated the LSDK secure boot image using the below command.&lt;/P&gt;&lt;P&gt;&lt;EM&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; $flex-builder -i mkfw -m ls2088ardb -b nor -s&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; firmware_ls2088ardb_uboot_norboot_secure.img will be generated for secure boot.&lt;/P&gt;&lt;P&gt;by running the above command&amp;nbsp; CSF Header, S/G table, Public Key and Encrypted Signature is added to image,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have flashed the image duing u-boot with the help of tftp.&lt;/P&gt;&lt;P&gt;=&amp;gt; &lt;EM&gt;tftp a0000000 firmware_ls2088ardb_uboot_norboot_secure.img&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;=&amp;gt; &lt;EM&gt;protect off 584000000 +$filesize &amp;amp;&amp;amp; erase 584000000 +&amp;nbsp; $filesize &amp;amp;&amp;amp; cp.b a0000000 584000000 $filesize&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;=&amp;gt; qixis_reset altbank&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;2.&amp;nbsp; Preparing Evaluation platform&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 2.1 LS2088A RDB Board&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; -&amp;nbsp; Put J12 to enable PWR_PROG_SFP&lt;/P&gt;&lt;P&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;&amp;nbsp; -&amp;nbsp; SW9[3:5] to 100&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 2.2 Blowing OTPMK&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 2.2.1 Generated&amp;nbsp; OTPM&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; ./gen_otpmk_drbg 2&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 2.2.2 During u-boot write the values&amp;nbsp; using "mw.1 address &amp;lt;OTPMK1..8&amp;gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; verify the write md 1e90014, check the value after reset md 1e90014.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 2.3&amp;nbsp; Putting the SOC to RSP&lt;/P&gt;&lt;P&gt;Q1. Can you please let me know how to put the RSP&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp; &amp;nbsp; 2.4 Write the SRKH to SFP mirror registers and get the system out of Reset Pause via CCS.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Q2. i don't have emulator with me, Can you please let me know how&amp;nbsp; to update the mirror register SRKH&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Q3.&amp;nbsp; Can you please let me know list of keys to fused&amp;nbsp; in the fuse box to run secure-boot. Please provide the procedure as well.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 03 Mar 2019 00:18:18 GMT</pubDate>
      <guid>https://community.nxp.com/t5/Layerscape/Secure-Boot-ROM-Details/m-p/882590#M4082</guid>
      <dc:creator>nagarajupoliset</dc:creator>
      <dc:date>2019-03-03T00:18:18Z</dc:date>
    </item>
    <item>
      <title>Re: Secure Boot - ROM  Details</title>
      <link>https://community.nxp.com/t5/Layerscape/Secure-Boot-ROM-Details/m-p/882591#M4083</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;&lt;SPAN style="color: #51626f; background-color: #ffffff;"&gt;I am sorry I did generated the LSDK&amp;nbsp;&lt;SPAN&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;secure boot image&lt;SPAN&gt;&amp;nbsp;yet. In original question you&amp;nbsp;refer to the&amp;nbsp;&lt;SPAN style="background-color: #ffffff;"&gt;QORIQ-SDK-2.0. Please create new question for the LSDK procedure. It can be answered by LSDK expert.&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 11 Mar 2019 06:12:30 GMT</pubDate>
      <guid>https://community.nxp.com/t5/Layerscape/Secure-Boot-ROM-Details/m-p/882591#M4083</guid>
      <dc:creator>r8070z</dc:creator>
      <dc:date>2019-03-11T06:12:30Z</dc:date>
    </item>
  </channel>
</rss>

