<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Signing encrypted section using i.MX HAB in i.MX Processors</title>
    <link>https://community.nxp.com/t5/i-MX-Processors/Signing-encrypted-section-using-i-MX-HAB/m-p/743706#M115725</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Please refer an example of encrypted u-boot:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A _jive_internal="true" href="https://community.nxp.com/docs/DOC-332147"&gt;https://community.nxp.com/docs/DOC-332147&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Have a great day,&lt;BR /&gt;Victor&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;-----------------------------------------------------------------------------------------------------------------------&lt;BR /&gt;Note: If this post answers your question, please click the Correct Answer button. Thank you!&lt;BR /&gt;-----------------------------------------------------------------------------------------------------------------------&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Mon, 06 Nov 2017 03:32:52 GMT</pubDate>
    <dc:creator>b36401</dc:creator>
    <dc:date>2017-11-06T03:32:52Z</dc:date>
    <item>
      <title>Signing encrypted section using i.MX HAB</title>
      <link>https://community.nxp.com/t5/i-MX-Processors/Signing-encrypted-section-using-i-MX-HAB/m-p/743705#M115724</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;I'm using imx6q and trying to boot u-boot image (with IVT, DCD and CSF) with encrypted and signed u-boot.bin section. Separately signing and encryption works perfectly. But if I try to sign encrypted section boot fails.&lt;/P&gt;&lt;P&gt;Here is fragment the csf file I'm using:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;...&lt;/P&gt;&lt;P style="border: 0px;"&gt;[Authenticate Data]&lt;/P&gt;&lt;P style="border: 0px;"&gt;...&lt;BR /&gt;Blocks = 0x00907400 0x00000C00 0x00008c00 "u-boot"&lt;/P&gt;&lt;P style="border: 0px;"&gt;...&lt;/P&gt;&lt;P style="border: 0px;"&gt;[Decrypt Data]&lt;BR /&gt;...&lt;BR /&gt;Blocks = 0x00907400 0x00000C00 0x00008c00 "u-boot"&lt;/P&gt;&lt;P style="border: 0px;"&gt;&lt;/P&gt;&lt;P&gt;Does anybody knows if it is&amp;nbsp; possible to sign encrypted u-boot.bin section using CSF ?&amp;nbsp;&amp;nbsp;&lt;/P&gt;&lt;P style="border: 0px;"&gt;&lt;/P&gt;&lt;P style="border: 0px;"&gt;Thanks&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 03 Nov 2017 13:27:20 GMT</pubDate>
      <guid>https://community.nxp.com/t5/i-MX-Processors/Signing-encrypted-section-using-i-MX-HAB/m-p/743705#M115724</guid>
      <dc:creator>maximsyrchin</dc:creator>
      <dc:date>2017-11-03T13:27:20Z</dc:date>
    </item>
    <item>
      <title>Re: Signing encrypted section using i.MX HAB</title>
      <link>https://community.nxp.com/t5/i-MX-Processors/Signing-encrypted-section-using-i-MX-HAB/m-p/743706#M115725</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Please refer an example of encrypted u-boot:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A _jive_internal="true" href="https://community.nxp.com/docs/DOC-332147"&gt;https://community.nxp.com/docs/DOC-332147&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Have a great day,&lt;BR /&gt;Victor&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;-----------------------------------------------------------------------------------------------------------------------&lt;BR /&gt;Note: If this post answers your question, please click the Correct Answer button. Thank you!&lt;BR /&gt;-----------------------------------------------------------------------------------------------------------------------&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 06 Nov 2017 03:32:52 GMT</pubDate>
      <guid>https://community.nxp.com/t5/i-MX-Processors/Signing-encrypted-section-using-i-MX-HAB/m-p/743706#M115725</guid>
      <dc:creator>b36401</dc:creator>
      <dc:date>2017-11-06T03:32:52Z</dc:date>
    </item>
    <item>
      <title>Re: Signing encrypted section using i.MX HAB</title>
      <link>https://community.nxp.com/t5/i-MX-Processors/Signing-encrypted-section-using-i-MX-HAB/m-p/743707#M115726</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The link you've&amp;nbsp; sent doesn't contain answer to the question:&amp;nbsp;is it possible to sign &lt;STRONG&gt;and&lt;/STRONG&gt; encrypt whole u-boot.bin.&lt;/P&gt;&lt;P&gt;All examples and Figure "Chosen memory layout of the encrypted u-boot" on page&amp;nbsp;&lt;A href="https://community.nxp.com/docs/DOC-332147"&gt;Encrypted U-boot Example&lt;/A&gt;&amp;nbsp;use signature only for unencrypted data, while encrypted part stays unsigned. Like this :&lt;/P&gt;&lt;P&gt;&lt;EM&gt;[Authenticate Data]&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;Blocks = 0x177ff400 0x00000000 &lt;STRONG&gt;0x00000C10 &lt;/STRONG&gt;"./u-boot.imx"&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;[Decrypt Data]&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;Blocks = 0x17800010 &lt;STRONG&gt;0x00000C10&lt;/STRONG&gt; 0x0007AFF0 "./u-boot.imx"&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Is it possible to add extra "&lt;SPAN&gt;Authenticate Data&lt;/SPAN&gt;" with the same block as in "&lt;SPAN&gt;Decrypt Data&lt;/SPAN&gt;" ?&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;[Authenticate Data]&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;Blocks = 0x177ff400 0x00000000&amp;nbsp;&lt;STRONG&gt;0x00000C10&amp;nbsp;&lt;/STRONG&gt;"./u-boot.imx"&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;[Authenticate Data]&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;Blocks = 0x17800010&amp;nbsp;&lt;STRONG&gt;0x00000C10&lt;/STRONG&gt;&amp;nbsp;0x0007AFF0 "./u-boot.imx"&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;[Decrypt Data]&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;Blocks = 0x17800010&amp;nbsp;&lt;STRONG&gt;0x00000C10&lt;/STRONG&gt;&amp;nbsp;0x0007AFF0 "./u-boot.imx"&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I've tried such config already. CSF was generated and u-boot.bin was encrypted without errors. But final image failed to boot.&amp;nbsp;need to figure out:&lt;BR /&gt;- am I doing something wrong ?&lt;BR /&gt;- or simultaneous encryption and signing doesn't supported&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 07 Nov 2017 08:26:09 GMT</pubDate>
      <guid>https://community.nxp.com/t5/i-MX-Processors/Signing-encrypted-section-using-i-MX-HAB/m-p/743707#M115726</guid>
      <dc:creator>maximsyrchin</dc:creator>
      <dc:date>2017-11-07T08:26:09Z</dc:date>
    </item>
  </channel>
</rss>

