<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>LayerscapeのトピックRe: LS1046ARDB Alternate Image SEC Initialization during Secure boot</title>
    <link>https://community.nxp.com/t5/Layerscape/LS1046ARDB-Alternate-Image-SEC-Initialization-during-Secure-boot/m-p/1360464#M9167</link>
    <description>&lt;P&gt;&lt;SPAN&gt;What version of LSDK you are using?&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Can you share your&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;input_files/uni_sign/ls1/nor/input_uboot_secure&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;input_files/uni_sign/ls1/sd_nand/input_uboot_secure&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;input_files/uni_sign/ls1/sd_nand/input_spl_uboot_secure&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;In the input files you use to sign the image, depends on your situation,&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;there should be a &lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;SEC_IMAGE Flag for Secondary Image. Required for TA 2.x platforms only&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;that you can specify the secondary image information.&lt;/SPAN&gt;&lt;/P&gt;</description>
    <pubDate>Mon, 25 Oct 2021 03:09:07 GMT</pubDate>
    <dc:creator>yipingwang</dc:creator>
    <dc:date>2021-10-25T03:09:07Z</dc:date>
    <item>
      <title>LS1046ARDB Alternate Image SEC Initialization during Secure boot</title>
      <link>https://community.nxp.com/t5/Layerscape/LS1046ARDB-Alternate-Image-SEC-Initialization-during-Secure-boot/m-p/1359231#M9149</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;We are trying to provide an alternate boot image in case authentication of first boot image fails during secure boot. As per LS1046ARM_Reference_Manual,&amp;nbsp;DCFG ScratchRW3 should be written with the CSF header address for alternate boot image.&amp;nbsp;When we test&amp;nbsp;authentication fail for the first image, we get no error in DCFG ScratchRW4 and&amp;nbsp; the alternate boot image is authenticated successfully. But our SEC Initialization is failing when we try to initialise it using alternate boot image .&lt;BR /&gt;Are we missing any additional steps in achieving this?&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Any suggestions regarding this would be appreciated.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Thanks,&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Faizanbaig Inamdar&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 22 Oct 2021 10:17:20 GMT</pubDate>
      <guid>https://community.nxp.com/t5/Layerscape/LS1046ARDB-Alternate-Image-SEC-Initialization-during-Secure-boot/m-p/1359231#M9149</guid>
      <dc:creator>Faizanbaig</dc:creator>
      <dc:date>2021-10-22T10:17:20Z</dc:date>
    </item>
    <item>
      <title>Re: LS1046ARDB Alternate Image SEC Initialization during Secure boot</title>
      <link>https://community.nxp.com/t5/Layerscape/LS1046ARDB-Alternate-Image-SEC-Initialization-during-Secure-boot/m-p/1360464#M9167</link>
      <description>&lt;P&gt;&lt;SPAN&gt;What version of LSDK you are using?&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Can you share your&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;input_files/uni_sign/ls1/nor/input_uboot_secure&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;input_files/uni_sign/ls1/sd_nand/input_uboot_secure&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;input_files/uni_sign/ls1/sd_nand/input_spl_uboot_secure&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;In the input files you use to sign the image, depends on your situation,&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;there should be a &lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;SEC_IMAGE Flag for Secondary Image. Required for TA 2.x platforms only&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;that you can specify the secondary image information.&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 25 Oct 2021 03:09:07 GMT</pubDate>
      <guid>https://community.nxp.com/t5/Layerscape/LS1046ARDB-Alternate-Image-SEC-Initialization-during-Secure-boot/m-p/1360464#M9167</guid>
      <dc:creator>yipingwang</dc:creator>
      <dc:date>2021-10-25T03:09:07Z</dc:date>
    </item>
    <item>
      <title>Re: LS1046ARDB Alternate Image SEC Initialization during Secure boot</title>
      <link>https://community.nxp.com/t5/Layerscape/LS1046ARDB-Alternate-Image-SEC-Initialization-during-Secure-boot/m-p/1360495#M9170</link>
      <description>Hi, Thanks for your response, I have set SEC_FLAG to 1 and ISBC is authenticating the alternate image successfully but SEC(Security Engine) initialization module is failing when we execute it through alternate boot image. However,When we flash the same image as primary Image it is successfully initializing the SEC(Security Engine). Could you please provide any help on this? Thanks</description>
      <pubDate>Mon, 25 Oct 2021 04:52:16 GMT</pubDate>
      <guid>https://community.nxp.com/t5/Layerscape/LS1046ARDB-Alternate-Image-SEC-Initialization-during-Secure-boot/m-p/1360495#M9170</guid>
      <dc:creator>Faizanbaig</dc:creator>
      <dc:date>2021-10-25T04:52:16Z</dc:date>
    </item>
    <item>
      <title>Re: LS1046ARDB Alternate Image SEC Initialization during Secure boot</title>
      <link>https://community.nxp.com/t5/Layerscape/LS1046ARDB-Alternate-Image-SEC-Initialization-during-Secure-boot/m-p/1362023#M9189</link>
      <description>&lt;P&gt;&lt;SPAN&gt;Where is the SEC_FLAG-=1 flag is set?&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;I check the Code Signing Tool (CST) input file and there is no such flag. Is it a flag for linux kernel built?&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;It sounds like this is not secure boot (ISBC/ESBC) related issue. If customer has a console log, a capture of the log of the message leading to "initializing the SEC" will be helpful. i.e. is the error from uboot init or linux init?&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 27 Oct 2021 03:06:07 GMT</pubDate>
      <guid>https://community.nxp.com/t5/Layerscape/LS1046ARDB-Alternate-Image-SEC-Initialization-during-Secure-boot/m-p/1362023#M9189</guid>
      <dc:creator>yipingwang</dc:creator>
      <dc:date>2021-10-27T03:06:07Z</dc:date>
    </item>
    <item>
      <title>Re: LS1046ARDB Alternate Image SEC Initialization during Secure boot</title>
      <link>https://community.nxp.com/t5/Layerscape/LS1046ARDB-Alternate-Image-SEC-Initialization-during-Secure-boot/m-p/1362147#M9191</link>
      <description>&lt;P&gt;Thanks for the response, Issue&amp;nbsp; was with our binary boot image file .&amp;nbsp;&lt;BR /&gt;Now it successfully performs chain of trust from alternate image.&lt;/P&gt;</description>
      <pubDate>Wed, 27 Oct 2021 06:36:15 GMT</pubDate>
      <guid>https://community.nxp.com/t5/Layerscape/LS1046ARDB-Alternate-Image-SEC-Initialization-during-Secure-boot/m-p/1362147#M9191</guid>
      <dc:creator>Faizanbaig</dc:creator>
      <dc:date>2021-10-27T06:36:15Z</dc:date>
    </item>
  </channel>
</rss>

