<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>i.MX Processors中的主题 Fuses for a really secure boot</title>
    <link>https://community.nxp.com/t5/i-MX-Processors/Fuses-for-a-really-secure-boot/m-p/718987#M111735</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have a i.MX6 Quad Core device and I installed a complete chain of trust secure boot solution in the eMMC. The bootloader is in SPI flash.&lt;BR /&gt;The device is closed and the SRK is burned in.&lt;BR /&gt;Which fuses I need to set additionally that's not possible to access the system without permission ?&lt;/P&gt;&lt;P&gt;I think about JTAG and some other fuses that I don't know at the moment...&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Wed, 13 Dec 2017 06:28:02 GMT</pubDate>
    <dc:creator>andreasschuler</dc:creator>
    <dc:date>2017-12-13T06:28:02Z</dc:date>
    <item>
      <title>Fuses for a really secure boot</title>
      <link>https://community.nxp.com/t5/i-MX-Processors/Fuses-for-a-really-secure-boot/m-p/718987#M111735</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have a i.MX6 Quad Core device and I installed a complete chain of trust secure boot solution in the eMMC. The bootloader is in SPI flash.&lt;BR /&gt;The device is closed and the SRK is burned in.&lt;BR /&gt;Which fuses I need to set additionally that's not possible to access the system without permission ?&lt;/P&gt;&lt;P&gt;I think about JTAG and some other fuses that I don't know at the moment...&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 13 Dec 2017 06:28:02 GMT</pubDate>
      <guid>https://community.nxp.com/t5/i-MX-Processors/Fuses-for-a-really-secure-boot/m-p/718987#M111735</guid>
      <dc:creator>andreasschuler</dc:creator>
      <dc:date>2017-12-13T06:28:02Z</dc:date>
    </item>
    <item>
      <title>Re: Fuses for a really secure boot</title>
      <link>https://community.nxp.com/t5/i-MX-Processors/Fuses-for-a-really-secure-boot/m-p/718988#M111736</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Additionally, the following fuses must be programmed to completely secure your device. Note that this operation is irreversible and some features used for development may not be available after the following commands.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;• SRK_LOCK: Lock SRK_HASH[255:0]&lt;/P&gt;&lt;P&gt;On i.MX6 Series 0x400[14]:&lt;/P&gt;&lt;P&gt;fuse prog 0 0 0x4000&lt;BR /&gt;On i.MX7S and i.MX7D 0x400[9]:&lt;/P&gt;&lt;P&gt;fuse prog 0 0 0x200&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;• DIR_BT_DIS: Disable Direct External Memory Boot&lt;/P&gt;&lt;P&gt;On i.MX6 Series 0x460[3]:&lt;/P&gt;&lt;P&gt;fuse prog 0 6 0x8&lt;/P&gt;&lt;P&gt;On i.MX7S and i.MX7D 0x470[27]:&lt;/P&gt;&lt;P&gt;fuse prog 1 3 0x8000000&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;• SJC_DISABLE: Disable the Secure JTAG Controller module&lt;/P&gt;&lt;P&gt;On i.MX6 Series 0x460[20]:&lt;/P&gt;&lt;P&gt;fuse prog 0 6 0x100000&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Best regards,&lt;/P&gt;&lt;P&gt;Marius&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 13 Dec 2017 08:00:32 GMT</pubDate>
      <guid>https://community.nxp.com/t5/i-MX-Processors/Fuses-for-a-really-secure-boot/m-p/718988#M111736</guid>
      <dc:creator>marius_grigoras</dc:creator>
      <dc:date>2017-12-13T08:00:32Z</dc:date>
    </item>
  </channel>
</rss>

