<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>i.MX Processors中的主题 Update the image in secure boot</title>
    <link>https://community.nxp.com/t5/i-MX-Processors/Update-the-image-in-secure-boot/m-p/1227401#M169050</link>
    <description>&lt;P&gt;Dear NXP,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I know &lt;STRONG&gt;secure boot (Signed U-boot and Kernel-FitImage with HAB authenticate&amp;nbsp;)&lt;/STRONG&gt; is one time program as per my knowledge. But, I needs to update the image once secure boot was enabled in IMX8MNano board.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Is it possible to do update the image once secure boot enabled ?&lt;/P&gt;&lt;P&gt;Do we have any special configuration to update the image in secure boot ?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I feel this is the blocker to update the image if it in secure boot, maybe I am wrong. I would like ask your ideas to proceed.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Currently we have primary and secondary partition which is have images (kernel+fitImage, rootfs, user). I have to switch primary to secondary and secondary to primary in secure boot.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="vinothkumars_0-1612591539491.png" style="width: 400px;"&gt;&lt;img src="https://community.nxp.com/t5/image/serverpage/image-id/136678i64C4B828EBF2B4A2/image-size/medium?v=v2&amp;amp;px=400" role="button" title="vinothkumars_0-1612591539491.png" alt="vinothkumars_0-1612591539491.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Sat, 06 Feb 2021 07:42:41 GMT</pubDate>
    <dc:creator>vinothkumars</dc:creator>
    <dc:date>2021-02-06T07:42:41Z</dc:date>
    <item>
      <title>Update the image in secure boot</title>
      <link>https://community.nxp.com/t5/i-MX-Processors/Update-the-image-in-secure-boot/m-p/1227401#M169050</link>
      <description>&lt;P&gt;Dear NXP,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I know &lt;STRONG&gt;secure boot (Signed U-boot and Kernel-FitImage with HAB authenticate&amp;nbsp;)&lt;/STRONG&gt; is one time program as per my knowledge. But, I needs to update the image once secure boot was enabled in IMX8MNano board.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Is it possible to do update the image once secure boot enabled ?&lt;/P&gt;&lt;P&gt;Do we have any special configuration to update the image in secure boot ?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I feel this is the blocker to update the image if it in secure boot, maybe I am wrong. I would like ask your ideas to proceed.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Currently we have primary and secondary partition which is have images (kernel+fitImage, rootfs, user). I have to switch primary to secondary and secondary to primary in secure boot.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="vinothkumars_0-1612591539491.png" style="width: 400px;"&gt;&lt;img src="https://community.nxp.com/t5/image/serverpage/image-id/136678i64C4B828EBF2B4A2/image-size/medium?v=v2&amp;amp;px=400" role="button" title="vinothkumars_0-1612591539491.png" alt="vinothkumars_0-1612591539491.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sat, 06 Feb 2021 07:42:41 GMT</pubDate>
      <guid>https://community.nxp.com/t5/i-MX-Processors/Update-the-image-in-secure-boot/m-p/1227401#M169050</guid>
      <dc:creator>vinothkumars</dc:creator>
      <dc:date>2021-02-06T07:42:41Z</dc:date>
    </item>
    <item>
      <title>Re: Update the image in secure boot</title>
      <link>https://community.nxp.com/t5/i-MX-Processors/Update-the-image-in-secure-boot/m-p/1227440#M169063</link>
      <description>&lt;P&gt;Hi&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;We don't have any document or application related to your idea.&lt;/P&gt;
&lt;P&gt;The idea needs to change the secure implementation mechanism&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;BR&lt;/P&gt;
&lt;P&gt;Zhiming&lt;/P&gt;</description>
      <pubDate>Sun, 07 Feb 2021 01:14:35 GMT</pubDate>
      <guid>https://community.nxp.com/t5/i-MX-Processors/Update-the-image-in-secure-boot/m-p/1227440#M169063</guid>
      <dc:creator>Zhiming_Liu</dc:creator>
      <dc:date>2021-02-07T01:14:35Z</dc:date>
    </item>
    <item>
      <title>Re: Update the image in secure boot</title>
      <link>https://community.nxp.com/t5/i-MX-Processors/Update-the-image-in-secure-boot/m-p/1227576#M169089</link>
      <description>&lt;P&gt;Thank you&amp;nbsp;&lt;a href="https://community.nxp.com/t5/user/viewprofilepage/user-id/151788"&gt;@Zhiming_Liu&lt;/a&gt;&amp;nbsp;quick reply.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;If it possible please share some ideas.&lt;/P&gt;</description>
      <pubDate>Sun, 07 Feb 2021 14:23:22 GMT</pubDate>
      <guid>https://community.nxp.com/t5/i-MX-Processors/Update-the-image-in-secure-boot/m-p/1227576#M169089</guid>
      <dc:creator>vinothkumars</dc:creator>
      <dc:date>2021-02-07T14:23:22Z</dc:date>
    </item>
    <item>
      <title>Re: Update the image in secure boot</title>
      <link>https://community.nxp.com/t5/i-MX-Processors/Update-the-image-in-secure-boot/m-p/1228567#M169208</link>
      <description>&lt;P&gt;I think you can boot any image will it be primary or secondary with secure boot enabled, if it is properly signed I don't think there will be an issue, all HAB cares about is the SRK keys(efuses), and signing keys/cert must be from the same PKI.&lt;/P&gt;</description>
      <pubDate>Tue, 09 Feb 2021 06:48:54 GMT</pubDate>
      <guid>https://community.nxp.com/t5/i-MX-Processors/Update-the-image-in-secure-boot/m-p/1228567#M169208</guid>
      <dc:creator>sajjadahmed</dc:creator>
      <dc:date>2021-02-09T06:48:54Z</dc:date>
    </item>
    <item>
      <title>Re: Update the image in secure boot</title>
      <link>https://community.nxp.com/t5/i-MX-Processors/Update-the-image-in-secure-boot/m-p/1228739#M169225</link>
      <description>&lt;P&gt;Thank you&amp;nbsp;&lt;a href="https://community.nxp.com/t5/user/viewprofilepage/user-id/117848"&gt;@sajjadahmed&lt;/a&gt;&amp;nbsp; for the reply.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Do you have any proper document to sign and encrypt. If it possible please share to me.&lt;/P&gt;</description>
      <pubDate>Tue, 09 Feb 2021 11:41:27 GMT</pubDate>
      <guid>https://community.nxp.com/t5/i-MX-Processors/Update-the-image-in-secure-boot/m-p/1228739#M169225</guid>
      <dc:creator>vinothkumars</dc:creator>
      <dc:date>2021-02-09T11:41:27Z</dc:date>
    </item>
  </channel>
</rss>

