<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: S32K144 CSEc Secure Boot - Device Stuck in Secure State, Cannot Unsecure in S32K</title>
    <link>https://community.nxp.com/t5/S32K/S32K144-CSEc-Secure-Boot-Device-Stuck-in-Secure-State-Cannot/m-p/2250277#M54870</link>
    <description>&lt;P&gt;Do you have Segger J-Link probe or Lauterbach debugger to read MDM-AP? Unfortunately that's not possible with Pemicro.&lt;/P&gt;
&lt;P&gt;There's a rare scenario when the device can be locked. Please check this thread:&lt;/P&gt;
&lt;P&gt;&lt;A href="https://community.nxp.com/t5/S32K/Unbricking-S32K146/m-p/937227" target="_blank"&gt;https://community.nxp.com/t5/S32K/Unbricking-S32K146/m-p/937227&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;To confirm it, it's necessary to read MDM-AP.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Thu, 27 Nov 2025 09:00:03 GMT</pubDate>
    <dc:creator>lukaszadrapa</dc:creator>
    <dc:date>2025-11-27T09:00:03Z</dc:date>
    <item>
      <title>S32K144 CSEc Secure Boot - Device Stuck in Secure State, Cannot Unsecure</title>
      <link>https://community.nxp.com/t5/S32K/S32K144-CSEc-Secure-Boot-Device-Stuck-in-Secure-State-Cannot/m-p/2247427#M54773</link>
      <description>&lt;P&gt;&lt;STRONG&gt;Hardware&lt;/STRONG&gt;&lt;SPAN&gt;: S32K144 Development Board&lt;/SPAN&gt;&lt;BR /&gt;&lt;STRONG&gt;IDE&lt;/STRONG&gt;&lt;SPAN&gt;: S32 Design Studio&lt;/SPAN&gt;&lt;BR /&gt;&lt;STRONG&gt;Programming&lt;/STRONG&gt;&lt;SPAN&gt;: Direct via S32DS&lt;BR /&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;Issue Description&lt;/STRONG&gt;:&lt;/P&gt;&lt;P&gt;I successfully implemented CSEc secure boot on S32K144 with the following steps:&lt;/P&gt;&lt;OL&gt;&lt;LI&gt;&lt;STRONG&gt;Configure keys&lt;/STRONG&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;- Set up MASTER_ECU_KEY and BOOT_MAC_KEY&lt;/LI&gt;&lt;LI&gt;&lt;STRONG&gt;Flash application in flash region&lt;/STRONG&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;- Used Debug_FLASH configuration via S32DS&lt;/LI&gt;&lt;LI&gt;&lt;STRONG&gt;Set up secure boot&lt;/STRONG&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;- Used Debug_RAM configuration via S32DS to store BOOT_MAC&lt;/LI&gt;&lt;LI&gt;&lt;STRONG&gt;After reset&lt;/STRONG&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;- Secure boot working properly&lt;/LI&gt;&lt;LI&gt;&lt;STRONG&gt;Application working&lt;/STRONG&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;- Confirmed with LED indication, BOK=1&lt;/LI&gt;&lt;/OL&gt;&lt;P&gt;&lt;STRONG&gt;Problem&lt;/STRONG&gt;:&lt;BR /&gt;When testing negative case (failure scenario):&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;Try to flash different application in flash region →&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;STRONG&gt;"Device is secure. Erase to unsecure?"&lt;/STRONG&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;dialog appears&lt;/LI&gt;&lt;LI&gt;Click "Yes" to erase →&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;STRONG&gt;Same dialog keeps appearing repeatedly&lt;/STRONG&gt;&lt;/LI&gt;&lt;LI&gt;Tried factory reset →&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;STRONG&gt;Still same error&lt;/STRONG&gt;&lt;/LI&gt;&lt;LI&gt;Cannot flash any new application&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;&lt;STRONG&gt;Questions&lt;/STRONG&gt;:&lt;/P&gt;&lt;OL&gt;&lt;LI&gt;&lt;STRONG&gt;Is clicking "Yes" supposed to perform mass erase automatically?&lt;/STRONG&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;Why does dialog keep reappearing?&lt;/LI&gt;&lt;LI&gt;&lt;STRONG&gt;How to properly unsecure the device using S32DS only?&lt;/STRONG&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;What's the correct procedure?&lt;/LI&gt;&lt;LI&gt;&lt;STRONG&gt;Can I use mass erase command in S32DS?&lt;/STRONG&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;If yes, what's the exact procedure?&lt;/LI&gt;&lt;LI&gt;&lt;STRONG&gt;Is device permanently locked?&lt;/STRONG&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;Or is there a recovery method via S32DS?&lt;/LI&gt;&lt;/OL&gt;&lt;P&gt;&lt;SPAN&gt;&lt;STRONG&gt;Current Status&lt;/STRONG&gt;:&lt;BR /&gt;Device appears stuck in secure state. Cannot flash any applications using S32DS. Need step-by-step recovery procedure to unsecure the device.&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 24 Nov 2025 13:23:43 GMT</pubDate>
      <guid>https://community.nxp.com/t5/S32K/S32K144-CSEc-Secure-Boot-Device-Stuck-in-Secure-State-Cannot/m-p/2247427#M54773</guid>
      <dc:creator>Kishore_14</dc:creator>
      <dc:date>2025-11-24T13:23:43Z</dc:date>
    </item>
    <item>
      <title>Re: S32K144 CSEc Secure Boot - Device Stuck in Secure State, Cannot Unsecure</title>
      <link>https://community.nxp.com/t5/S32K/S32K144-CSEc-Secure-Boot-Device-Stuck-in-Secure-State-Cannot/m-p/2248105#M54790</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.nxp.com/t5/user/viewprofilepage/user-id/257154"&gt;@Kishore_14&lt;/a&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Which secure boot mode did you configured? There's sequential mode, parallel mode or strict sequential mode.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;If sequential or parallel boot mode fails, the only consequence is that boot protected keys cannot be used. That's the only effect, it does not affect your application, it's still executed.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;If strict sequential boot mode fails, the device stays in reset forever and there's no way to recover.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Did you check the reset signal? Is it released after power-on?&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Also once CSEc is enabled, mass erase (Erase All Blocks command) is locked:&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="lukaszadrapa_0-1764055246465.png" style="width: 400px;"&gt;&lt;img src="https://community.nxp.com/t5/image/serverpage/image-id/367095i4923B07EC823DAEE/image-size/medium?v=v2&amp;amp;px=400" role="button" title="lukaszadrapa_0-1764055246465.png" alt="lukaszadrapa_0-1764055246465.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;To enable mass erase, it is necessary to erase all keys by CMD_DBG_CHAL and CMD_DBG_AUTH commands with knowledge of MASTER_ECU_KEY.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Regards,&lt;/P&gt;
&lt;P&gt;Lukas&lt;/P&gt;</description>
      <pubDate>Tue, 25 Nov 2025 07:22:38 GMT</pubDate>
      <guid>https://community.nxp.com/t5/S32K/S32K144-CSEc-Secure-Boot-Device-Stuck-in-Secure-State-Cannot/m-p/2248105#M54790</guid>
      <dc:creator>lukaszadrapa</dc:creator>
      <dc:date>2025-11-25T07:22:38Z</dc:date>
    </item>
    <item>
      <title>Re: S32K144 CSEc Secure Boot - Device Stuck in Secure State, Cannot Unsecure</title>
      <link>https://community.nxp.com/t5/S32K/S32K144-CSEc-Secure-Boot-Device-Stuck-in-Secure-State-Cannot/m-p/2248346#M54803</link>
      <description>&lt;P&gt;Which secure boot mode did you configured? There's sequential mode, parallel mode or strict sequential mode.&amp;nbsp;&lt;/P&gt;&lt;P&gt;If sequential or parallel boot mode fails, the only consequence is that boot protected keys cannot be used. That's the only effect, it does not affect your application, it's still executed.&amp;nbsp;&lt;/P&gt;&lt;P&gt;If strict sequential boot mode fails, the device stays in reset forever and there's no way to recover.&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;&lt;STRONG&gt;ANS: &lt;SPAN&gt;Using the&amp;nbsp;&lt;/SPAN&gt;S32K144_CSEc_Secure_boot_add_boot_MAC_Manual&lt;SPAN&gt;&amp;nbsp;example from AN5401sw, we configured&amp;nbsp;&lt;/SPAN&gt;serial secure boot&lt;SPAN&gt;&amp;nbsp;with boot mode&amp;nbsp;&lt;/SPAN&gt;1&lt;SPAN&gt;&amp;nbsp;in the&amp;nbsp;&lt;/SPAN&gt;BOOT_DEFINE()&lt;SPAN&gt;&amp;nbsp;function. if boot mode&amp;nbsp;&lt;/SPAN&gt;1&lt;SPAN&gt;&amp;nbsp;corresponds to strict sequential boot mode, this would explain the permanent reset behavior we're experiencing.&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;STRONG&gt;"&lt;/STRONG&gt;&lt;/P&gt;&lt;DIV&gt;&lt;DIV&gt;&lt;STRONG&gt;&amp;nbsp; /* Step-3 Define the secure boot flavor and the BOOT_SIZE*/&lt;/STRONG&gt;&lt;/DIV&gt;&lt;DIV&gt;&lt;STRONG&gt;&amp;nbsp; &amp;nbsp; csec_error = BOOT_DEFINE(128*1024*8, 1);&lt;/STRONG&gt;&lt;/DIV&gt;&lt;/DIV&gt;&lt;P&gt;&lt;STRONG&gt;"&lt;BR /&gt;&lt;BR /&gt;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;Did you check the reset signal? Is it released after power-on?&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;&lt;STRONG&gt;ANS: &lt;SPAN&gt;Yes, I have checked the reset signal. The reset signal remains active (reset LED stays on) after power-on, indicating the device is still in resetting state&amp;nbsp;&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;Also once CSEc is enabled, mass erase (Erase All Blocks command) is locked:&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Kishore_14_0-1764067663149.png" style="width: 400px;"&gt;&lt;img src="https://community.nxp.com/t5/image/serverpage/image-id/367157iFAD3BBA65A540495/image-size/medium?v=v2&amp;amp;px=400" role="button" title="Kishore_14_0-1764067663149.png" alt="Kishore_14_0-1764067663149.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;To enable mass erase, it is necessary to erase all keys by CMD_DBG_CHAL and CMD_DBG_AUTH commands with knowledge of MASTER_ECU_KEY.&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;&lt;STRONG&gt;ANS: &lt;SPAN&gt;When attempting to flash&amp;nbsp;&lt;/SPAN&gt;AN5401_S32K144_CSEc_Resetting_Flash_to_Factory_State&lt;SPAN&gt;, I receive "Device is secure. Erase to unsecure?" dialog. Even after clicking "Yes", the same dialog keeps appearing repeatedly&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;&lt;SPAN&gt;S32DS has "Emergency Kinetis Device Recovery by Full Chip Erase" option. Should we use this to recover the device?&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Kishore_14_2-1764069429876.png" style="width: 400px;"&gt;&lt;img src="https://community.nxp.com/t5/image/serverpage/image-id/367161i8967AF28C82F6BC8/image-size/medium?v=v2&amp;amp;px=400" role="button" title="Kishore_14_2-1764069429876.png" alt="Kishore_14_2-1764069429876.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;Note:&lt;BR /&gt;We don't have the debugger setup for flashing and erasing. We are using S32DS for flashing and debugging. Hence need assistance on mass erase.&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;&amp;nbsp;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 25 Nov 2025 11:26:28 GMT</pubDate>
      <guid>https://community.nxp.com/t5/S32K/S32K144-CSEc-Secure-Boot-Device-Stuck-in-Secure-State-Cannot/m-p/2248346#M54803</guid>
      <dc:creator>Kishore_14</dc:creator>
      <dc:date>2025-11-25T11:26:28Z</dc:date>
    </item>
    <item>
      <title>Re: S32K144 CSEc Secure Boot - Device Stuck in Secure State, Cannot Unsecure</title>
      <link>https://community.nxp.com/t5/S32K/S32K144-CSEc-Secure-Boot-Device-Stuck-in-Secure-State-Cannot/m-p/2248970#M54821</link>
      <description>&lt;P&gt;Strict sequential boot mode is configured when Boot Flavor parameter is set to 0:&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="image.png" style="width: 866px;"&gt;&lt;img src="https://community.nxp.com/t5/image/serverpage/image-id/367266iD539E6340C3D0AD7/image-size/large?v=v2&amp;amp;px=999" role="button" title="image.png" alt="image.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;But it does not make sense if you kept original sequential boot:&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;/* Step-3 Define the secure boot flavor and the BOOT_SIZE*/&lt;BR /&gt;csec_error = BOOT_DEFINE(128*1024*8, 1);&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Even if sequential boot fails, this should definitely not cause permanent reset. Did you try to check the signal by an oscilloscope or did you watch the LED only? Isn't the reset signal toggling?&lt;/P&gt;
&lt;P&gt;If the reset signal is asserted permanently, I'm afraid there's no way to recover.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 26 Nov 2025 06:12:00 GMT</pubDate>
      <guid>https://community.nxp.com/t5/S32K/S32K144-CSEc-Secure-Boot-Device-Stuck-in-Secure-State-Cannot/m-p/2248970#M54821</guid>
      <dc:creator>lukaszadrapa</dc:creator>
      <dc:date>2025-11-26T06:12:00Z</dc:date>
    </item>
    <item>
      <title>Re: S32K144 CSEc Secure Boot - Device Stuck in Secure State, Cannot Unsecure</title>
      <link>https://community.nxp.com/t5/S32K/S32K144-CSEc-Secure-Boot-Device-Stuck-in-Secure-State-Cannot/m-p/2249004#M54825</link>
      <description>&lt;P&gt;As observed directly, LED is not toggling,, It is permanently on.&lt;/P&gt;&lt;P&gt;If it is Sequential boot mode, What could be the possibility that the device is on continuous reset when a new application is flashed?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;How will the device get Secured when all the Flashconfig settings in the examples are as below:&lt;/P&gt;&lt;P&gt;/* Flash Configuration */&lt;BR /&gt;.section .FlashConfig, "a"&lt;BR /&gt;.long 0xFFFFFFFF /* 8 bytes backdoor comparison key */&lt;BR /&gt;.long 0xFFFFFFFF /* */&lt;BR /&gt;.long 0xFFFFFFFF /* 4 bytes program flash protection bytes */&lt;BR /&gt;.long 0xFFFF7FFE /* FDPROT:FEPROT:FOPT:FSEC(0xFE = unsecured) */&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;Can i try Kinetis option for mass erase since no direct debugger flashing possible due to unavailablity.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Note: We also observe this case for another board and posted in below link:&lt;BR /&gt;&lt;A href="https://community.nxp.com/t5/S32K/error-Device-is-secure-Erase-to-unsecure/m-p/2248896#M54820" target="_blank" rel="noopener"&gt;error: Device is secure. Erase to unsecure - NXP Community&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 26 Nov 2025 06:51:59 GMT</pubDate>
      <guid>https://community.nxp.com/t5/S32K/S32K144-CSEc-Secure-Boot-Device-Stuck-in-Secure-State-Cannot/m-p/2249004#M54825</guid>
      <dc:creator>Kishore_14</dc:creator>
      <dc:date>2025-11-26T06:51:59Z</dc:date>
    </item>
    <item>
      <title>Re: S32K144 CSEc Secure Boot - Device Stuck in Secure State, Cannot Unsecure</title>
      <link>https://community.nxp.com/t5/S32K/S32K144-CSEc-Secure-Boot-Device-Stuck-in-Secure-State-Cannot/m-p/2249364#M54844</link>
      <description>&lt;P&gt;Toggling on the reset pin can be so fast that it might not be visible to the naked eye. And that’s why I asked if you tried it with an oscilloscope.&lt;/P&gt;
&lt;P&gt;I can see only two reasons for permanent reset:&lt;BR /&gt;1. Failed strict sequential boot mode. &lt;BR /&gt;2. Hardware issue - typically insufficient voltage, so voltage monitors does not allow to start the device...&lt;/P&gt;
&lt;P&gt;There's no way how to force the device to permanent reset by (wrong) application. This could only be done in some kind of self-destructive way, for example by setting a GPIO to short-circuit or something similar.&lt;/P&gt;
&lt;P&gt;The message "Device is secure. Erase to unsecure?" is just general one. Most of the time, this usually means that the debugger was not able to establish the connection ever. And in this case, even if the device is secured, it would not be possible to unsecure it because mass erase operation is blocked by enabled CSEc module.&lt;/P&gt;</description>
      <pubDate>Wed, 26 Nov 2025 12:12:12 GMT</pubDate>
      <guid>https://community.nxp.com/t5/S32K/S32K144-CSEc-Secure-Boot-Device-Stuck-in-Secure-State-Cannot/m-p/2249364#M54844</guid>
      <dc:creator>lukaszadrapa</dc:creator>
      <dc:date>2025-11-26T12:12:12Z</dc:date>
    </item>
    <item>
      <title>Re: S32K144 CSEc Secure Boot - Device Stuck in Secure State, Cannot Unsecure</title>
      <link>https://community.nxp.com/t5/S32K/S32K144-CSEc-Secure-Boot-Device-Stuck-in-Secure-State-Cannot/m-p/2250175#M54862</link>
      <description>&lt;P&gt;&lt;SPAN&gt;hi,&lt;BR /&gt;Toggling on the reset pin can be so fast that it might not be visible to the naked eye. And that’s why I asked if you tried it with an oscilloscope.&lt;BR /&gt;Did you check the reset signal? Is it released after power-on?&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Ans: we observed that reset pin is toggling.&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Kishore_14_2-1764229793234.png" style="width: 400px;"&gt;&lt;img src="https://community.nxp.com/t5/image/serverpage/image-id/367543i92E4EBDA71C197E3/image-size/medium?v=v2&amp;amp;px=400" role="button" title="Kishore_14_2-1764229793234.png" alt="Kishore_14_2-1764229793234.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;&lt;BR /&gt;Does it mean that the previous application flashed is stuck in any SW /WDG reset?&amp;nbsp;&lt;BR /&gt;can it be recovered via SWD debugger flashing?&lt;/SPAN&gt;&lt;/P&gt;&lt;DIV class=""&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV class=""&gt;&amp;nbsp;&lt;/DIV&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 27 Nov 2025 07:52:00 GMT</pubDate>
      <guid>https://community.nxp.com/t5/S32K/S32K144-CSEc-Secure-Boot-Device-Stuck-in-Secure-State-Cannot/m-p/2250175#M54862</guid>
      <dc:creator>Kishore_14</dc:creator>
      <dc:date>2025-11-27T07:52:00Z</dc:date>
    </item>
    <item>
      <title>Re: S32K144 CSEc Secure Boot - Device Stuck in Secure State, Cannot Unsecure</title>
      <link>https://community.nxp.com/t5/S32K/S32K144-CSEc-Secure-Boot-Device-Stuck-in-Secure-State-Cannot/m-p/2250277#M54870</link>
      <description>&lt;P&gt;Do you have Segger J-Link probe or Lauterbach debugger to read MDM-AP? Unfortunately that's not possible with Pemicro.&lt;/P&gt;
&lt;P&gt;There's a rare scenario when the device can be locked. Please check this thread:&lt;/P&gt;
&lt;P&gt;&lt;A href="https://community.nxp.com/t5/S32K/Unbricking-S32K146/m-p/937227" target="_blank"&gt;https://community.nxp.com/t5/S32K/Unbricking-S32K146/m-p/937227&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;To confirm it, it's necessary to read MDM-AP.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 27 Nov 2025 09:00:03 GMT</pubDate>
      <guid>https://community.nxp.com/t5/S32K/S32K144-CSEc-Secure-Boot-Device-Stuck-in-Secure-State-Cannot/m-p/2250277#M54870</guid>
      <dc:creator>lukaszadrapa</dc:creator>
      <dc:date>2025-11-27T09:00:03Z</dc:date>
    </item>
    <item>
      <title>Re: S32K144 CSEc Secure Boot - Device Stuck in Secure State, Cannot Unsecure</title>
      <link>https://community.nxp.com/t5/S32K/S32K144-CSEc-Secure-Boot-Device-Stuck-in-Secure-State-Cannot/m-p/2250338#M54875</link>
      <description>&lt;P&gt;&lt;SPAN&gt;Unfortunately, we dont have JLink or PE Micro for flashing.&lt;BR /&gt;We use S32DS OpenSDA for Debugging.&lt;BR /&gt;&lt;BR /&gt;Below was mentioned from AN12130,&lt;BR /&gt;When launching program partition command (PGMPART), be sure to allocate CSEc key size to value different than zero.&lt;BR /&gt;• Program CSEc keys, at least the MASTER_ECU_KEY.&lt;BR /&gt;• Erase Keys by issuing CMD_DBG_CHAL and CMD_DBG_AUTH commands. The CMD_DBG_AUTH command will erase&lt;BR /&gt;the data IFR thus erasing the partition code and allow mass erase to work again.&lt;BR /&gt;If any CSEc key is ‘write-protected’ the above procedure will not work thus mass erase cannot be launched.&lt;BR /&gt;&lt;BR /&gt;QUestion: When we flashed a different application, it flashed successfully in the first attempt.&lt;BR /&gt;Since the above said sequence is not followed,&amp;nbsp; upon next reset, new application might got into continuous resets? IS this right ?&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 27 Nov 2025 10:12:19 GMT</pubDate>
      <guid>https://community.nxp.com/t5/S32K/S32K144-CSEc-Secure-Boot-Device-Stuck-in-Secure-State-Cannot/m-p/2250338#M54875</guid>
      <dc:creator>Kishore_14</dc:creator>
      <dc:date>2025-11-27T10:12:19Z</dc:date>
    </item>
    <item>
      <title>Re: S32K144 CSEc Secure Boot - Device Stuck in Secure State, Cannot Unsecure</title>
      <link>https://community.nxp.com/t5/S32K/S32K144-CSEc-Secure-Boot-Device-Stuck-in-Secure-State-Cannot/m-p/2252172#M54953</link>
      <description>&lt;P&gt;OpenSDA is also from Pemicro.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Normally it is possible to program new application by OpenSDA even if CSEc is enabled, even if some keys are write protected etc. That's because it erases the flash block by block, not via mass erase. I meant that AN12130 talks about issues like this:&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="lukaszadrapa_0-1764582832674.png" style="width: 400px;"&gt;&lt;img src="https://community.nxp.com/t5/image/serverpage/image-id/367969iA2CD61CD14A5A43D/image-size/medium?v=v2&amp;amp;px=400" role="button" title="lukaszadrapa_0-1764582832674.png" alt="lukaszadrapa_0-1764582832674.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="lukaszadrapa_1-1764582841459.png" style="width: 400px;"&gt;&lt;img src="https://community.nxp.com/t5/image/serverpage/image-id/367970iE68105652F6A7E2F/image-size/medium?v=v2&amp;amp;px=400" role="button" title="lukaszadrapa_1-1764582841459.png" alt="lukaszadrapa_1-1764582841459.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;So, these are rather issues when something goes wrong during the programming - unexpected reset or something like that.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Unfortunately the only way to confirm such state is to read mentioned MDM_AP register. Then we could say if the device is locked permanently or not. But the register cannot be read by OpenSDA.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Regards,&lt;/P&gt;
&lt;P&gt;Lukas&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 01 Dec 2025 09:57:13 GMT</pubDate>
      <guid>https://community.nxp.com/t5/S32K/S32K144-CSEc-Secure-Boot-Device-Stuck-in-Secure-State-Cannot/m-p/2252172#M54953</guid>
      <dc:creator>lukaszadrapa</dc:creator>
      <dc:date>2025-12-01T09:57:13Z</dc:date>
    </item>
  </channel>
</rss>

