<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic i.MX 8M Secure Boot Procedure and OTP customization in i.MX Processors</title>
    <link>https://community.nxp.com/t5/i-MX-Processors/i-MX-8M-Secure-Boot-Procedure-and-OTP-customization/m-p/999060#M148168</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Experts,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I am currently working in i.MX 8M based SOM and built a BSP for the same using Yocto Project.&amp;nbsp; Now I want to add Secure Booting feature but most of the documents are confusing and misleading.&amp;nbsp; Please provide step by step procedure or document to enable Secure Boot feature in both SOM and U-Boot.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;And also in one forum I have read that certificates in SOM are stored in One Time Programmable (OTP) memory location of SOM. If its the case, it will not be helpful for my requirement because, in the development stage I may have to change the certificates multiple times. Is there any way that certificates in SOM can be flashed multiple time.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks and Regards,&lt;/P&gt;&lt;P&gt;Ashok&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Thu, 23 Jan 2020 16:48:04 GMT</pubDate>
    <dc:creator>ashoksowndar</dc:creator>
    <dc:date>2020-01-23T16:48:04Z</dc:date>
    <item>
      <title>i.MX 8M Secure Boot Procedure and OTP customization</title>
      <link>https://community.nxp.com/t5/i-MX-Processors/i-MX-8M-Secure-Boot-Procedure-and-OTP-customization/m-p/999060#M148168</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Experts,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I am currently working in i.MX 8M based SOM and built a BSP for the same using Yocto Project.&amp;nbsp; Now I want to add Secure Booting feature but most of the documents are confusing and misleading.&amp;nbsp; Please provide step by step procedure or document to enable Secure Boot feature in both SOM and U-Boot.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;And also in one forum I have read that certificates in SOM are stored in One Time Programmable (OTP) memory location of SOM. If its the case, it will not be helpful for my requirement because, in the development stage I may have to change the certificates multiple times. Is there any way that certificates in SOM can be flashed multiple time.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks and Regards,&lt;/P&gt;&lt;P&gt;Ashok&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 23 Jan 2020 16:48:04 GMT</pubDate>
      <guid>https://community.nxp.com/t5/i-MX-Processors/i-MX-8M-Secure-Boot-Procedure-and-OTP-customization/m-p/999060#M148168</guid>
      <dc:creator>ashoksowndar</dc:creator>
      <dc:date>2020-01-23T16:48:04Z</dc:date>
    </item>
    <item>
      <title>Re: i.MX 8M Secure Boot Procedure and OTP customization</title>
      <link>https://community.nxp.com/t5/i-MX-Processors/i-MX-8M-Secure-Boot-Procedure-and-OTP-customization/m-p/999061#M148169</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P class=""&gt;&lt;SPAN class=""&gt;Hello,&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN class=""&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN class=""&gt;&amp;nbsp; The base documents regarding HAB4 and i.MX8M secure boot are as following:&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN class=""&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN class=""&gt;&amp;nbsp; App Note “Secure Boot on i.MX 50, i.MX 53, i.MX 6 and i.MX 7Series using HABv4 (AN4581)” &lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN class=""&gt;in general is applied for i.MX 8M too.&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN class=""&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN class=""&gt;&amp;lt; &lt;A href="https://www.nxp.com/files-static/32bit/doc/app_note/AN4581.pdf" target="test_blank"&gt;https://www.nxp.com/files-static/32bit/doc/app_note/AN4581.pdf&lt;/A&gt; &amp;gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN class=""&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN class=""&gt;“Security Reference Manual for i.MX 8M Dual/8M QuadLite/8M Quad”&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN class=""&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN class=""&gt;&amp;lt; &lt;A href="https://www.nxp.com/webapp/sps/download/mod_download.jsp?colCode=IMX8MDQLQSRM&amp;amp;appType=moderated" target="test_blank"&gt;https://www.nxp.com/webapp/sps/download/mod_download.jsp?colCode=IMX8MDQLQSRM&amp;amp;appType=moderated&lt;/A&gt; &amp;gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN class=""&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN class=""&gt;&amp;nbsp;U-boot documentation.&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN class=""&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN class=""&gt;&amp;lt;&lt;SPAN style="font-size: 13px;"&gt; &lt;A href="https://source.codeaurora.org/external/imx/uboot-imx/tree/doc/imx/habv4/introduction_habv4.txt?h=imx_v2018.03_4.14.98_2.0.0_ga" target="test_blank"&gt;https://source.codeaurora.org/external/imx/uboot-imx/tree/doc/imx/habv4/introduction_habv4.txt?h=imx_v2018.03_4.14.98_2.0.0_ga&lt;/A&gt;&lt;/SPAN&gt; &amp;gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN class=""&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN class=""&gt;&amp;nbsp; Note, under HAB4 only the SRK hash is burned to fuses. The keys (include CSF and IMG keys, which are&amp;nbsp; used to validate their respective data) are provided via CSF. So, it is possible to use different keys with different images, assuming, that &lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN class=""&gt;all keys are signed by SRK.&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN class=""&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN class=""&gt;Have a great day,&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN class=""&gt;Yuri.&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN class=""&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN class=""&gt;-------------------------------------------------------------------------------&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN class=""&gt;Note:&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN class=""&gt;- If this post answers your question, please click the "Mark Correct" button. Thank you!&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN class=""&gt;- We are following threads for 7 weeks after the last post, later replies are ignored&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN class=""&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN class=""&gt;Please open a new thread and refer to the closed one, if you have a related question at a later point in time.&lt;/SPAN&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 27 Jan 2020 06:55:54 GMT</pubDate>
      <guid>https://community.nxp.com/t5/i-MX-Processors/i-MX-8M-Secure-Boot-Procedure-and-OTP-customization/m-p/999061#M148169</guid>
      <dc:creator>Yuri</dc:creator>
      <dc:date>2020-01-27T06:55:54Z</dc:date>
    </item>
  </channel>
</rss>

