<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: zImage signing error on Yocto built image in i.MX Processors</title>
    <link>https://community.nxp.com/t5/i-MX-Processors/zImage-signing-error-on-Yocto-built-image/m-p/1048447#M154369</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;&lt;EM&gt;&lt;STRONG&gt;Thanks&lt;/STRONG&gt;&lt;/EM&gt; &lt;A class="jx-jive-macro-user" href="https://community.nxp.com/people/Yuri"&gt;Yuri&lt;/A&gt;‌ for your reply but now the i&lt;STRONG&gt;ssue has been resolved&lt;/STRONG&gt;. The error caused by invoking unsigned kernel in &lt;SPAN style="font-size: 13px; font-family: 'andale mono', monospace;"&gt;boot&lt;/SPAN&gt; partition. We've integrated mender here, and that has changed the boot location causing the error in conventional method and it's resolved as signing the kernel in correct location.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;REF:&amp;nbsp;&lt;A class="link-titled" href="https://hub.mender.io/t/kernel-signing-error-after-mender-integration-in-imx-6ul/2002" title="https://hub.mender.io/t/kernel-signing-error-after-mender-integration-in-imx-6ul/2002"&gt;Kernel signing error after mender integration in iMX 6UL - General Discussions - Mender Hub&lt;/A&gt;&amp;nbsp;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Mon, 08 Jun 2020 11:20:28 GMT</pubDate>
    <dc:creator>kanimozhi_t</dc:creator>
    <dc:date>2020-06-08T11:20:28Z</dc:date>
    <item>
      <title>zImage signing error on Yocto built image</title>
      <link>https://community.nxp.com/t5/i-MX-Processors/zImage-signing-error-on-Yocto-built-image/m-p/1048445#M154367</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;&lt;SPAN style="color: #000000;"&gt;Hello all,&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #000000;"&gt;We've built Yocto image based on&lt;/SPAN&gt;&amp;nbsp;&lt;A class="link-titled" href="https://source.codeaurora.org/external/imx/imx-manifest/tree/imx-4.19.35-1.1.0.xml?h=imx-linux-warrior" title="https://source.codeaurora.org/external/imx/imx-manifest/tree/imx-4.19.35-1.1.0.xml?h=imx-linux-warrior"&gt;imx-4.19.35-1.1.0.xml - imx-manifest - i.MX Release Manifest&lt;/A&gt;&amp;nbsp; &lt;SPAN style="color: #000000;"&gt;for i.MX 6UL EVK. And we've successfully signed the prodeces U-boot but when we tried signing the kernel(&lt;/SPAN&gt;&lt;SPAN style="font-size: 13px; font-family: 'andale mono', monospace;"&gt;zImage&lt;/SPAN&gt;&lt;SPAN style="color: #000000;"&gt;)&lt;/SPAN&gt; &lt;SPAN style="color: #000000;"&gt;we're receiving the following error.&lt;/SPAN&gt;&lt;/P&gt;&lt;P style="padding-left: 30px;"&gt;&lt;SPAN style="font-size: 13px; font-family: 'andale mono', monospace;"&gt;Hit any key to stop autoboot: 0&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-size: 13px; font-family: 'andale mono', monospace;"&gt;37183 bytes read in 127 ms (285.2 KiB/s)&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-size: 13px; font-family: 'andale mono', monospace;"&gt;7738296 bytes read in 525 ms (14.1 MiB/s)&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-size: 13px; font-family: 'andale mono', monospace;"&gt;Kernel image @ 0x80800000 [ 0x000000 - 0x7613b8 ]&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-size: 13px; font-family: 'andale mono', monospace;"&gt;## Flattened Device Tree blob at 83000000&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-size: 13px; font-family: 'andale mono', monospace;"&gt; Booting using the fdt blob at 0x83000000&lt;/SPAN&gt;&lt;/P&gt;&lt;P style="padding-left: 30px;"&gt;&lt;SPAN style="font-size: 13px; font-family: 'andale mono', monospace;"&gt;Authenticate image from DDR location 0x80800000...&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-size: 13px; font-family: 'andale mono', monospace;"&gt;bad magic magic=0x0 length=0x00 version=0x0&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-size: 13px; font-family: 'andale mono', monospace;"&gt;bad length magic=0x0 length=0x00 version=0x0&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-size: 13px; font-family: 'andale mono', monospace;"&gt;bad version magic=0x0 length=0x00 version=0x0&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-size: 13px; font-family: 'andale mono', monospace;"&gt;Error: Invalid IVT structure&lt;/SPAN&gt;&lt;/P&gt;&lt;P style="padding-left: 30px;"&gt;&lt;SPAN style="font-size: 13px; font-family: 'andale mono', monospace;"&gt;Allowed IVT structure:&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-size: 13px; font-family: 'andale mono', monospace;"&gt;IVT HDR = 0x4X2000D1&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-size: 13px; font-family: 'andale mono', monospace;"&gt;IVT ENTRY = 0xXXXXXXXX&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-size: 13px; font-family: 'andale mono', monospace;"&gt;IVT RSV1 = 0x0&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-size: 13px; font-family: 'andale mono', monospace;"&gt;IVT DCD = 0x0&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-size: 13px; font-family: 'andale mono', monospace;"&gt;IVT BOOT_DATA = 0xXXXXXXXX&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-size: 13px; font-family: 'andale mono', monospace;"&gt;IVT SELF = 0xXXXXXXXX&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-size: 13px; font-family: 'andale mono', monospace;"&gt;IVT CSF = 0xXXXXXXXX&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-size: 13px; font-family: 'andale mono', monospace;"&gt;IVT RSV2 = 0x0&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-size: 13px; font-family: 'andale mono', monospace;"&gt;Authenticate zImage Fail, Please check&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-size: 13px; font-family: 'andale mono', monospace;"&gt;=&amp;gt; hab_auth_img 80800000 7c000 0&lt;/SPAN&gt;&lt;/P&gt;&lt;P style="padding-left: 30px;"&gt;&lt;SPAN style="font-size: 13px; font-family: 'andale mono', monospace;"&gt;Authenticate image from DDR location 0x80800000...&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-size: 13px; font-family: 'andale mono', monospace;"&gt;bad magic magic=0x0 length=0xa000 version=0xe1&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-size: 13px; font-family: 'andale mono', monospace;"&gt;bad length magic=0x0 length=0xa000 version=0xe1&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-size: 13px; font-family: 'andale mono', monospace;"&gt;bad version magic=0x0 length=0xa000 version=0xe1&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-size: 13px; font-family: 'andale mono', monospace;"&gt;Error: Invalid IVT structure&lt;/SPAN&gt;&lt;/P&gt;&lt;P style="padding-left: 30px;"&gt;&lt;SPAN style="font-size: 13px; font-family: 'andale mono', monospace;"&gt;Allowed IVT structure:&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-size: 13px; font-family: 'andale mono', monospace;"&gt;IVT HDR = 0x4X2000D1&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-size: 13px; font-family: 'andale mono', monospace;"&gt;IVT ENTRY = 0xXXXXXXXX&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-size: 13px; font-family: 'andale mono', monospace;"&gt;IVT RSV1 = 0x0&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-size: 13px; font-family: 'andale mono', monospace;"&gt;IVT DCD = 0x0&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-size: 13px; font-family: 'andale mono', monospace;"&gt;IVT BOOT_DATA = 0xXXXXXXXX&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-size: 13px; font-family: 'andale mono', monospace;"&gt;IVT SELF = 0xXXXXXXXX&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-size: 13px; font-family: 'andale mono', monospace;"&gt;IVT CSF = 0xXXXXXXXX&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-size: 13px; font-family: 'andale mono', monospace;"&gt;IVT RSV2 = 0x0&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #000000;"&gt;&lt;STRONG&gt;NOTE:&lt;/STRONG&gt; We tried signing the NXP reference BSP zImage (from&amp;nbsp;&lt;EM&gt;L4.19.35_1.1.0_images_MX6UL7D&lt;/EM&gt;) and it succeed. The difference as far as we could tell now is the size of zImage. Though we've adjusted the signing steps as per size no improvements.&lt;/SPAN&gt;&lt;/P&gt;&lt;P style="padding-left: 30px;"&gt;&lt;EM&gt;reference BSP zIMage -&amp;nbsp;0x7613c0 - padded to 0x762000 - working&lt;/EM&gt;&lt;/P&gt;&lt;P style="padding-left: 30px;"&gt;&lt;EM&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;built zImage -&amp;nbsp;0x7613b8 - padded to 0x762000 - Not working&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;BLOCKQUOTE class="jive_macro_quote jive-quote jive_text_macro"&gt;&lt;P&gt;&lt;SPAN style="color: #000000; font-size: 22px;"&gt;I've following questions,&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;OL&gt;&lt;LI&gt;&lt;SPAN style="color: #000000; font-size: 15px;"&gt;Do we need to change the kernel configuration to be signed? If yes, how?&lt;/SPAN&gt;&lt;/LI&gt;&lt;LI&gt;&lt;SPAN style="color: #000000; font-size: 15px;"&gt;What is the meaning of the errors above? What does it mean by bad magic?&lt;/SPAN&gt;&lt;/LI&gt;&lt;LI&gt;&lt;SPAN style="color: #000000; font-size: 15px;"&gt;Why it doesn't show any hab events as supposed to be shown on signing error?&lt;/SPAN&gt;&lt;/LI&gt;&lt;/OL&gt;&lt;/BLOCKQUOTE&gt;&lt;P&gt;&lt;SPAN style="color: #000000;"&gt;Looking forward foe your reply. Thanks in advance.&lt;/SPAN&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 03 Jun 2020 10:17:26 GMT</pubDate>
      <guid>https://community.nxp.com/t5/i-MX-Processors/zImage-signing-error-on-Yocto-built-image/m-p/1048445#M154367</guid>
      <dc:creator>kanimozhi_t</dc:creator>
      <dc:date>2020-06-03T10:17:26Z</dc:date>
    </item>
    <item>
      <title>Re: zImage signing error on Yocto built image</title>
      <link>https://community.nxp.com/t5/i-MX-Processors/zImage-signing-error-on-Yocto-built-image/m-p/1048446#M154368</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp; please try the following patch:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="link-titled" href="https://gitlab.denx.de/u-boot/u-boot/commit/0633e134784aba58ee664e9fbcee4afe1588d2be" title="https://gitlab.denx.de/u-boot/u-boot/commit/0633e134784aba58ee664e9fbcee4afe1588d2be"&gt;imx: hab: Increase CSF_SIZE for i.MX6 and i.MX7 devices (0633e134) · Commits · U-Boot / U-Boot · GitLab&lt;/A&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Yuri.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 08 Jun 2020 11:05:47 GMT</pubDate>
      <guid>https://community.nxp.com/t5/i-MX-Processors/zImage-signing-error-on-Yocto-built-image/m-p/1048446#M154368</guid>
      <dc:creator>Yuri</dc:creator>
      <dc:date>2020-06-08T11:05:47Z</dc:date>
    </item>
    <item>
      <title>Re: zImage signing error on Yocto built image</title>
      <link>https://community.nxp.com/t5/i-MX-Processors/zImage-signing-error-on-Yocto-built-image/m-p/1048447#M154369</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;&lt;EM&gt;&lt;STRONG&gt;Thanks&lt;/STRONG&gt;&lt;/EM&gt; &lt;A class="jx-jive-macro-user" href="https://community.nxp.com/people/Yuri"&gt;Yuri&lt;/A&gt;‌ for your reply but now the i&lt;STRONG&gt;ssue has been resolved&lt;/STRONG&gt;. The error caused by invoking unsigned kernel in &lt;SPAN style="font-size: 13px; font-family: 'andale mono', monospace;"&gt;boot&lt;/SPAN&gt; partition. We've integrated mender here, and that has changed the boot location causing the error in conventional method and it's resolved as signing the kernel in correct location.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;REF:&amp;nbsp;&lt;A class="link-titled" href="https://hub.mender.io/t/kernel-signing-error-after-mender-integration-in-imx-6ul/2002" title="https://hub.mender.io/t/kernel-signing-error-after-mender-integration-in-imx-6ul/2002"&gt;Kernel signing error after mender integration in iMX 6UL - General Discussions - Mender Hub&lt;/A&gt;&amp;nbsp;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 08 Jun 2020 11:20:28 GMT</pubDate>
      <guid>https://community.nxp.com/t5/i-MX-Processors/zImage-signing-error-on-Yocto-built-image/m-p/1048447#M154369</guid>
      <dc:creator>kanimozhi_t</dc:creator>
      <dc:date>2020-06-08T11:20:28Z</dc:date>
    </item>
  </channel>
</rss>

