<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>i.MX ProcessorsのトピックRe: CST reports &amp;quot;Encryption not enabled&amp;quot;</title>
    <link>https://community.nxp.com/t5/i-MX-Processors/CST-reports-quot-Encryption-not-enabled-quot/m-p/1531490#M195891</link>
    <description>&lt;P&gt;Hello Team,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I am trying to execute steps mention in nxp documentation for secure boot.&lt;/P&gt;&lt;P&gt;Steps I followed:&lt;/P&gt;&lt;P&gt;1) Downloaded cst-3.1.0.tgz tool from nxp site.&lt;/P&gt;&lt;P&gt;2) untar it on my Linux machine. Following /Docs &amp;gt; CST_UG.pdf and Release_Notes.txt.&lt;/P&gt;&lt;P&gt;Also tried To&lt;STRONG&gt; relink on 64/32 bit&lt;/STRONG&gt; Linux machines with steps mentioned in this discussion. But still getting &lt;STRONG&gt;error while running&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;sub@developer:~/Downloads/release/keys$ ./hab4_pki_tree.sh&lt;/P&gt;&lt;P&gt;+++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++&lt;BR /&gt;This script is a part of the Code signing tools for Freescale's&lt;BR /&gt;High Assurance Boot. It generates a basic PKI tree. The PKI&lt;BR /&gt;tree consists of one or more Super Root Keys (SRK), with each&lt;BR /&gt;SRK having two subordinate keys:&lt;BR /&gt;+ a Command Sequence File (CSF) key&lt;BR /&gt;+ Image key.&lt;BR /&gt;Additional keys can be added to the PKI tree but a separate&lt;BR /&gt;script is available for this. This this script assumes openssl&lt;BR /&gt;is installed on your system and is included in your search&lt;BR /&gt;path. Finally, the private keys generated are password&lt;BR /&gt;protectedwith the password provided by the file key_pass.txt.&lt;BR /&gt;The format of the file is the password repeated twice:&lt;BR /&gt;my_password&lt;BR /&gt;my_password&lt;BR /&gt;All private keys in the PKI tree are in PKCS #8 format will be&lt;BR /&gt;protected by the same password.&lt;/P&gt;&lt;P&gt;+++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++&lt;BR /&gt;Do you want to use an existing CA key (y/n)?: n&lt;BR /&gt;Do you want to use Elliptic Curve Cryptography (y/n)?: n&lt;BR /&gt;Enter key length in bits for PKI tree: 4096&lt;BR /&gt;Enter PKI tree duration (years): 5&lt;BR /&gt;How many Super Root Keys should be generated? 4&lt;BR /&gt;Do you want the SRK certificates to have the CA flag set? (y/n)?: y&lt;/P&gt;&lt;P&gt;+++++++++++++++++++++++++++++++++++++&lt;BR /&gt;+ Generating CA key and certificate +&lt;BR /&gt;+++++++++++++++++++++++++++++++++++++&lt;/P&gt;&lt;P&gt;Generating a RSA private key&lt;BR /&gt;..................................++++&lt;BR /&gt;.......++++&lt;BR /&gt;writing new private key to 'temp_ca.pem'&lt;BR /&gt;-----&lt;/P&gt;&lt;P&gt;++++++++++++++++++++++++++++++++++++++++&lt;BR /&gt;+ Generating SRK key and certificate 1 +&lt;BR /&gt;++++++++++++++++++++++++++++++++++++++++&lt;/P&gt;&lt;P&gt;Generating RSA private key, 4096 bit long modulus (2 primes)&lt;BR /&gt;........................................++++&lt;BR /&gt;.......................................++++&lt;BR /&gt;e is 65537 (0x010001)&lt;BR /&gt;Using configuration from ../ca/openssl.cnf&lt;BR /&gt;unable to load CA private key&lt;BR /&gt;140185369613632:error:06065064:digital envelope routines:EVP_DecryptFinal_ex:bad decrypt:../crypto/evp/evp_enc.c:610:&lt;BR /&gt;140185369613632:error:23077074:PKCS12 routines:PKCS12_pbe_crypt:pkcs12 cipherfinal error:../crypto/pkcs12/p12_decr.c:62:&lt;BR /&gt;140185369613632:error:2306A075:PKCS12 routines:PKCS12_item_decrypt_d2i:pkcs12 pbe crypt error:../crypto/pkcs12/p12_decr.c:93:&lt;BR /&gt;140185369613632:error:0907B00D:PEM routines:PEM_read_bio_PrivateKey:ASN1 lib:../crypto/pem/pem_pkey.c:88:&lt;BR /&gt;Can't open ../crts/SRK1_sha256_4096_65537_v3_ca_crt.pem for reading, No such file or directory&lt;BR /&gt;140361417344320:error:02001002:system library:fopen:No such file or directory:../crypto/bio/bss_file.c:69:fopen('../crts/SRK1_sha256_4096_65537_v3_ca_crt.pem','r')&lt;BR /&gt;140361417344320:error:2006D080:BIO routines:BIO_new_file:no such file:../crypto/bio/bss_file.c:76:&lt;BR /&gt;unable to load certificate&lt;/P&gt;&lt;P&gt;++++++++++++++++++++++++++++++++++++++++&lt;BR /&gt;+ Generating CSF key and certificate 1 +&lt;BR /&gt;++++++++++++++++++++++++++++++++++++++++&lt;/P&gt;&lt;P&gt;Generating RSA private key, 4096 bit long modulus (2 primes)&lt;BR /&gt;......................................................++++&lt;BR /&gt;...................................................................................................................................................................................................................................................................++++&lt;BR /&gt;e is 65537 (0x010001)&lt;BR /&gt;Using configuration from ../ca/openssl.cnf&lt;BR /&gt;unable to load CA private key&lt;BR /&gt;139771215324480:error:06065064:digital envelope routines:EVP_DecryptFinal_ex:bad decrypt:../crypto/evp/evp_enc.c:610:&lt;BR /&gt;139771215324480:error:23077074:PKCS12 routines:PKCS12_pbe_crypt:pkcs12 cipherfinal error:../crypto/pkcs12/p12_decr.c:62:&lt;BR /&gt;139771215324480:error:2306A075:PKCS12 routines:PKCS12_item_decrypt_d2i:pkcs12 pbe crypt error:../crypto/pkcs12/p12_decr.c:93:&lt;BR /&gt;139771215324480:error:0907B00D:PEM routines:PEM_read_bio_PrivateKey:ASN1 lib:../crypto/pem/pem_pkey.c:88:&lt;BR /&gt;Can't open ../crts/CSF1_1_sha256_4096_65537_v3_usr_crt.pem for reading, No such file or directory&lt;BR /&gt;139804323910976:error:02001002:system library:fopen:No such file or directory:../crypto/bio/bss_file.c:69:fopen('../crts/CSF1_1_sha256_4096_65537_v3_usr_crt.pem','r')&lt;BR /&gt;139804323910976:error:2006D080:BIO routines:BIO_new_file:no such file:../crypto/bio/bss_file.c:76:&lt;BR /&gt;unable to load certificate&lt;/P&gt;&lt;P&gt;++++++++++++++++++++++++++++++++++++++++&lt;BR /&gt;+ Generating IMG key and certificate 1 +&lt;BR /&gt;++++++++++++++++++++++++++++++++++++++++&lt;/P&gt;&lt;P&gt;Generating RSA private key, 4096 bit long modulus (2 primes)&lt;BR /&gt;..............................................++++&lt;BR /&gt;..++++&lt;BR /&gt;e is 65537 (0x010001)&lt;BR /&gt;Using configuration from ../ca/openssl.cnf&lt;BR /&gt;unable to load CA private key&lt;BR /&gt;139632623789376:error:06065064:digital envelope routines:EVP_DecryptFinal_ex:bad decrypt:../crypto/evp/evp_enc.c:610:&lt;BR /&gt;139632623789376:error:23077074:PKCS12 routines:PKCS12_pbe_crypt:pkcs12 cipherfinal error:../crypto/pkcs12/p12_decr.c:62:&lt;BR /&gt;139632623789376:error:2306A075:PKCS12 routines:PKCS12_item_decrypt_d2i:pkcs12 pbe crypt error:../crypto/pkcs12/p12_decr.c:93:&lt;BR /&gt;139632623789376:error:0907B00D:PEM routines:PEM_read_bio_PrivateKey:ASN1 lib:../crypto/pem/pem_pkey.c:88:&lt;BR /&gt;Can't open ../crts/IMG1_1_sha256_4096_65537_v3_usr_crt.pem for reading, No such file or directory&lt;BR /&gt;139856162575680:error:02001002:system library:fopen:No such file or directory:../crypto/bio/bss_file.c:69:fopen('../crts/IMG1_1_sha256_4096_65537_v3_usr_crt.pem','r')&lt;BR /&gt;139856162575680:error:2006D080:BIO routines:BIO_new_file:no such file:../crypto/bio/bss_file.c:76:&lt;BR /&gt;unable to load certificate&lt;/P&gt;&lt;P&gt;++++++++++++++++++++++++++++++++++++++++&lt;BR /&gt;+ Generating SRK key and certificate 2 +&lt;BR /&gt;++++++++++++++++++++++++++++++++++++++++&lt;/P&gt;&lt;P&gt;Generating RSA private key, 4096 bit long modulus (2 primes)&lt;BR /&gt;.......................................................++++&lt;BR /&gt;.............................++++&lt;BR /&gt;e is 65537 (0x010001)&lt;BR /&gt;Using configuration from ../ca/openssl.cnf&lt;BR /&gt;unable to load CA private key&lt;BR /&gt;140050200614208:error:06065064:digital envelope routines:EVP_DecryptFinal_ex:bad decrypt:../crypto/evp/evp_enc.c:610:&lt;BR /&gt;140050200614208:error:23077074:PKCS12 routines:PKCS12_pbe_crypt:pkcs12 cipherfinal error:../crypto/pkcs12/p12_decr.c:62:&lt;BR /&gt;140050200614208:error:2306A075:PKCS12 routines:PKCS12_item_decrypt_d2i:pkcs12 pbe crypt error:../crypto/pkcs12/p12_decr.c:93:&lt;BR /&gt;140050200614208:error:0907B00D:PEM routines:PEM_read_bio_PrivateKey:ASN1 lib:../crypto/pem/pem_pkey.c:88:&lt;BR /&gt;Can't open ../crts/SRK2_sha256_4096_65537_v3_ca_crt.pem for reading, No such file or directory&lt;BR /&gt;139690429662528:error:02001002:system library:fopen:No such file or directory:../crypto/bio/bss_file.c:69:fopen('../crts/SRK2_sha256_4096_65537_v3_ca_crt.pem','r')&lt;BR /&gt;139690429662528:error:2006D080:BIO routines:BIO_new_file:no such file:../crypto/bio/bss_file.c:76:&lt;BR /&gt;unable to load certificate&lt;/P&gt;&lt;P&gt;++++++++++++++++++++++++++++++++++++++++&lt;BR /&gt;+ Generating CSF key and certificate 2 +&lt;BR /&gt;++++++++++++++++++++++++++++++++++++++++&lt;/P&gt;&lt;P&gt;Generating RSA private key, 4096 bit long modulus (2 primes)&lt;BR /&gt;..................................................................................++++&lt;BR /&gt;....++++&lt;BR /&gt;e is 65537 (0x010001)&lt;BR /&gt;Using configuration from ../ca/openssl.cnf&lt;BR /&gt;unable to load CA private key&lt;BR /&gt;139673382860096:error:06065064:digital envelope routines:EVP_DecryptFinal_ex:bad decrypt:../crypto/evp/evp_enc.c:610:&lt;BR /&gt;139673382860096:error:23077074:PKCS12 routines:PKCS12_pbe_crypt:pkcs12 cipherfinal error:../crypto/pkcs12/p12_decr.c:62:&lt;BR /&gt;139673382860096:error:2306A075:PKCS12 routines:PKCS12_item_decrypt_d2i:pkcs12 pbe crypt error:../crypto/pkcs12/p12_decr.c:93:&lt;BR /&gt;139673382860096:error:0907B00D:PEM routines:PEM_read_bio_PrivateKey:ASN1 lib:../crypto/pem/pem_pkey.c:88:&lt;BR /&gt;Can't open ../crts/CSF2_1_sha256_4096_65537_v3_usr_crt.pem for reading, No such file or directory&lt;BR /&gt;139701180155200:error:02001002:system library:fopen:No such file or directory:../crypto/bio/bss_file.c:69:fopen('../crts/CSF2_1_sha256_4096_65537_v3_usr_crt.pem','r')&lt;BR /&gt;139701180155200:error:2006D080:BIO routines:BIO_new_file:no such file:../crypto/bio/bss_file.c:76:&lt;BR /&gt;unable to load certificate&lt;/P&gt;&lt;P&gt;++++++++++++++++++++++++++++++++++++++++&lt;BR /&gt;+ Generating IMG key and certificate 2 +&lt;BR /&gt;++++++++++++++++++++++++++++++++++++++++&lt;/P&gt;&lt;P&gt;Generating RSA private key, 4096 bit long modulus (2 primes)&lt;BR /&gt;.............................................................................................................................................++++&lt;BR /&gt;..............................................................................................................................................................................................++++&lt;BR /&gt;e is 65537 (0x010001)&lt;BR /&gt;Using configuration from ../ca/openssl.cnf&lt;BR /&gt;unable to load CA private key&lt;BR /&gt;140613882578240:error:06065064:digital envelope routines:EVP_DecryptFinal_ex:bad decrypt:../crypto/evp/evp_enc.c:610:&lt;BR /&gt;140613882578240:error:23077074:PKCS12 routines:PKCS12_pbe_crypt:pkcs12 cipherfinal error:../crypto/pkcs12/p12_decr.c:62:&lt;BR /&gt;140613882578240:error:2306A075:PKCS12 routines:PKCS12_item_decrypt_d2i:pkcs12 pbe crypt error:../crypto/pkcs12/p12_decr.c:93:&lt;BR /&gt;140613882578240:error:0907B00D:PEM routines:PEM_read_bio_PrivateKey:ASN1 lib:../crypto/pem/pem_pkey.c:88:&lt;BR /&gt;Can't open ../crts/IMG2_1_sha256_4096_65537_v3_usr_crt.pem for reading, No such file or directory&lt;BR /&gt;140061171594560:error:02001002:system library:fopen:No such file or directory:../crypto/bio/bss_file.c:69:fopen('../crts/IMG2_1_sha256_4096_65537_v3_usr_crt.pem','r')&lt;BR /&gt;140061171594560:error:2006D080:BIO routines:BIO_new_file:no such file:../crypto/bio/bss_file.c:76:&lt;BR /&gt;unable to load certificate&lt;/P&gt;&lt;P&gt;++++++++++++++++++++++++++++++++++++++++&lt;BR /&gt;+ Generating SRK key and certificate 3 +&lt;BR /&gt;++++++++++++++++++++++++++++++++++++++++&lt;/P&gt;&lt;P&gt;Generating RSA private key, 4096 bit long modulus (2 primes)&lt;BR /&gt;....................................................................++++&lt;BR /&gt;.................................................................++++&lt;BR /&gt;e is 65537 (0x010001)&lt;BR /&gt;Using configuration from ../ca/openssl.cnf&lt;BR /&gt;unable to load CA private key&lt;BR /&gt;140132909233472:error:06065064:digital envelope routines:EVP_DecryptFinal_ex:bad decrypt:../crypto/evp/evp_enc.c:610:&lt;BR /&gt;140132909233472:error:23077074:PKCS12 routines:PKCS12_pbe_crypt:pkcs12 cipherfinal error:../crypto/pkcs12/p12_decr.c:62:&lt;BR /&gt;140132909233472:error:2306A075:PKCS12 routines:PKCS12_item_decrypt_d2i:pkcs12 pbe crypt error:../crypto/pkcs12/p12_decr.c:93:&lt;BR /&gt;140132909233472:error:0907B00D:PEM routines:PEM_read_bio_PrivateKey:ASN1 lib:../crypto/pem/pem_pkey.c:88:&lt;BR /&gt;Can't open ../crts/SRK3_sha256_4096_65537_v3_ca_crt.pem for reading, No such file or directory&lt;BR /&gt;140685257864512:error:02001002:system library:fopen:No such file or directory:../crypto/bio/bss_file.c:69:fopen('../crts/SRK3_sha256_4096_65537_v3_ca_crt.pem','r')&lt;BR /&gt;140685257864512:error:2006D080:BIO routines:BIO_new_file:no such file:../crypto/bio/bss_file.c:76:&lt;BR /&gt;unable to load certificate&lt;/P&gt;&lt;P&gt;++++++++++++++++++++++++++++++++++++++++&lt;BR /&gt;+ Generating CSF key and certificate 3 +&lt;BR /&gt;++++++++++++++++++++++++++++++++++++++++&lt;/P&gt;&lt;P&gt;Generating RSA private key, 4096 bit long modulus (2 primes)&lt;BR /&gt;..........................................................................................++++&lt;BR /&gt;..............................................................................................................................................................................................++++&lt;BR /&gt;e is 65537 (0x010001)&lt;BR /&gt;Using configuration from ../ca/openssl.cnf&lt;BR /&gt;unable to load CA private key&lt;BR /&gt;139952155837760:error:06065064:digital envelope routines:EVP_DecryptFinal_ex:bad decrypt:../crypto/evp/evp_enc.c:610:&lt;BR /&gt;139952155837760:error:23077074:PKCS12 routines:PKCS12_pbe_crypt:pkcs12 cipherfinal error:../crypto/pkcs12/p12_decr.c:62:&lt;BR /&gt;139952155837760:error:2306A075:PKCS12 routines:PKCS12_item_decrypt_d2i:pkcs12 pbe crypt error:../crypto/pkcs12/p12_decr.c:93:&lt;BR /&gt;139952155837760:error:0907B00D:PEM routines:PEM_read_bio_PrivateKey:ASN1 lib:../crypto/pem/pem_pkey.c:88:&lt;BR /&gt;Can't open ../crts/CSF3_1_sha256_4096_65537_v3_usr_crt.pem for reading, No such file or directory&lt;BR /&gt;140588125467968:error:02001002:system library:fopen:No such file or directory:../crypto/bio/bss_file.c:69:fopen('../crts/CSF3_1_sha256_4096_65537_v3_usr_crt.pem','r')&lt;BR /&gt;140588125467968:error:2006D080:BIO routines:BIO_new_file:no such file:../crypto/bio/bss_file.c:76:&lt;BR /&gt;unable to load certificate&lt;/P&gt;&lt;P&gt;++++++++++++++++++++++++++++++++++++++++&lt;BR /&gt;+ Generating IMG key and certificate 3 +&lt;BR /&gt;++++++++++++++++++++++++++++++++++++++++&lt;/P&gt;&lt;P&gt;Generating RSA private key, 4096 bit long modulus (2 primes)&lt;BR /&gt;........................................................................................................++++&lt;BR /&gt;..........................................................++++&lt;BR /&gt;e is 65537 (0x010001)&lt;BR /&gt;Using configuration from ../ca/openssl.cnf&lt;BR /&gt;unable to load CA private key&lt;BR /&gt;140422078956864:error:06065064:digital envelope routines:EVP_DecryptFinal_ex:bad decrypt:../crypto/evp/evp_enc.c:610:&lt;BR /&gt;140422078956864:error:23077074:PKCS12 routines:PKCS12_pbe_crypt:pkcs12 cipherfinal error:../crypto/pkcs12/p12_decr.c:62:&lt;BR /&gt;140422078956864:error:2306A075:PKCS12 routines:PKCS12_item_decrypt_d2i:pkcs12 pbe crypt error:../crypto/pkcs12/p12_decr.c:93:&lt;BR /&gt;140422078956864:error:0907B00D:PEM routines:PEM_read_bio_PrivateKey:ASN1 lib:../crypto/pem/pem_pkey.c:88:&lt;BR /&gt;Can't open ../crts/IMG3_1_sha256_4096_65537_v3_usr_crt.pem for reading, No such file or directory&lt;BR /&gt;139812568921408:error:02001002:system library:fopen:No such file or directory:../crypto/bio/bss_file.c:69:fopen('../crts/IMG3_1_sha256_4096_65537_v3_usr_crt.pem','r')&lt;BR /&gt;139812568921408:error:2006D080:BIO routines:BIO_new_file:no such file:../crypto/bio/bss_file.c:76:&lt;BR /&gt;unable to load certificate&lt;/P&gt;&lt;P&gt;++++++++++++++++++++++++++++++++++++++++&lt;BR /&gt;+ Generating SRK key and certificate 4 +&lt;BR /&gt;++++++++++++++++++++++++++++++++++++++++&lt;/P&gt;&lt;P&gt;Generating RSA private key, 4096 bit long modulus (2 primes)&lt;BR /&gt;...................++++&lt;BR /&gt;.......................................................++++&lt;BR /&gt;e is 65537 (0x010001)&lt;BR /&gt;Using configuration from ../ca/openssl.cnf&lt;BR /&gt;unable to load CA private key&lt;BR /&gt;140247327753536:error:06065064:digital envelope routines:EVP_DecryptFinal_ex:bad decrypt:../crypto/evp/evp_enc.c:610:&lt;BR /&gt;140247327753536:error:23077074:PKCS12 routines:PKCS12_pbe_crypt:pkcs12 cipherfinal error:../crypto/pkcs12/p12_decr.c:62:&lt;BR /&gt;140247327753536:error:2306A075:PKCS12 routines:PKCS12_item_decrypt_d2i:pkcs12 pbe crypt error:../crypto/pkcs12/p12_decr.c:93:&lt;BR /&gt;140247327753536:error:0907B00D:PEM routines:PEM_read_bio_PrivateKey:ASN1 lib:../crypto/pem/pem_pkey.c:88:&lt;BR /&gt;Can't open ../crts/SRK4_sha256_4096_65537_v3_ca_crt.pem for reading, No such file or directory&lt;BR /&gt;140431590266176:error:02001002:system library:fopen:No such file or directory:../crypto/bio/bss_file.c:69:fopen('../crts/SRK4_sha256_4096_65537_v3_ca_crt.pem','r')&lt;BR /&gt;140431590266176:error:2006D080:BIO routines:BIO_new_file:no such file:../crypto/bio/bss_file.c:76:&lt;BR /&gt;unable to load certificate&lt;/P&gt;&lt;P&gt;++++++++++++++++++++++++++++++++++++++++&lt;BR /&gt;+ Generating CSF key and certificate 4 +&lt;BR /&gt;++++++++++++++++++++++++++++++++++++++++&lt;/P&gt;&lt;P&gt;Generating RSA private key, 4096 bit long modulus (2 primes)&lt;BR /&gt;.....................................................................................................................++++&lt;BR /&gt;...................................................................................++++&lt;BR /&gt;e is 65537 (0x010001)&lt;BR /&gt;Using configuration from ../ca/openssl.cnf&lt;BR /&gt;unable to load CA private key&lt;BR /&gt;139958490457408:error:06065064:digital envelope routines:EVP_DecryptFinal_ex:bad decrypt:../crypto/evp/evp_enc.c:610:&lt;BR /&gt;139958490457408:error:23077074:PKCS12 routines:PKCS12_pbe_crypt:pkcs12 cipherfinal error:../crypto/pkcs12/p12_decr.c:62:&lt;BR /&gt;139958490457408:error:2306A075:PKCS12 routines:PKCS12_item_decrypt_d2i:pkcs12 pbe crypt error:../crypto/pkcs12/p12_decr.c:93:&lt;BR /&gt;139958490457408:error:0907B00D:PEM routines:PEM_read_bio_PrivateKey:ASN1 lib:../crypto/pem/pem_pkey.c:88:&lt;BR /&gt;Can't open ../crts/CSF4_1_sha256_4096_65537_v3_usr_crt.pem for reading, No such file or directory&lt;BR /&gt;140578246976832:error:02001002:system library:fopen:No such file or directory:../crypto/bio/bss_file.c:69:fopen('../crts/CSF4_1_sha256_4096_65537_v3_usr_crt.pem','r')&lt;BR /&gt;140578246976832:error:2006D080:BIO routines:BIO_new_file:no such file:../crypto/bio/bss_file.c:76:&lt;BR /&gt;unable to load certificate&lt;/P&gt;&lt;P&gt;++++++++++++++++++++++++++++++++++++++++&lt;BR /&gt;+ Generating IMG key and certificate 4 +&lt;BR /&gt;++++++++++++++++++++++++++++++++++++++++&lt;/P&gt;&lt;P&gt;Generating RSA private key, 4096 bit long modulus (2 primes)&lt;BR /&gt;..................++++&lt;BR /&gt;......................................................................................++++&lt;BR /&gt;e is 65537 (0x010001)&lt;BR /&gt;Using configuration from ../ca/openssl.cnf&lt;BR /&gt;unable to load CA private key&lt;BR /&gt;139702410077504:error:06065064:digital envelope routines:EVP_DecryptFinal_ex:bad decrypt:../crypto/evp/evp_enc.c:610:&lt;BR /&gt;139702410077504:error:23077074:PKCS12 routines:PKCS12_pbe_crypt:pkcs12 cipherfinal error:../crypto/pkcs12/p12_decr.c:62:&lt;BR /&gt;139702410077504:error:2306A075:PKCS12 routines:PKCS12_item_decrypt_d2i:pkcs12 pbe crypt error:../crypto/pkcs12/p12_decr.c:93:&lt;BR /&gt;139702410077504:error:0907B00D:PEM routines:PEM_read_bio_PrivateKey:ASN1 lib:../crypto/pem/pem_pkey.c:88:&lt;BR /&gt;Can't open ../crts/IMG4_1_sha256_4096_65537_v3_usr_crt.pem for reading, No such file or directory&lt;BR /&gt;140613383144768:error:02001002:system library:fopen:No such file or directory:../crypto/bio/bss_file.c:69:fopen('../crts/IMG4_1_sha256_4096_65537_v3_usr_crt.pem','r')&lt;BR /&gt;140613383144768:error:2006D080:BIO routines:BIO_new_file:no such file:../crypto/bio/bss_file.c:76:&lt;BR /&gt;unable to load certificate&lt;/P&gt;</description>
    <pubDate>Mon, 03 Oct 2022 07:17:47 GMT</pubDate>
    <dc:creator>VishalRana</dc:creator>
    <dc:date>2022-10-03T07:17:47Z</dc:date>
    <item>
      <title>CST reports "Encryption not enabled"</title>
      <link>https://community.nxp.com/t5/i-MX-Processors/CST-reports-quot-Encryption-not-enabled-quot/m-p/469628#M74213</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello All&lt;/P&gt;&lt;P&gt;I am trying to get Encrypted Boot to work on an i.MX6. From the few available sources I have put together the attached CSF script. When I try to sign my image with the following command (I have a work directory outside the CST, thus the funny paths):&lt;/P&gt;&lt;BLOCKQUOTE class="jive-quote"&gt;&lt;P&gt;$ ../cst-2.3.1/cst --o barebox-testing.enc.csf -c ../cst-2.3.1/crts/IMG1_1_sha256_2048_65537_v3_usr_crt.pem &amp;lt; encrypt.csfcfg&lt;/P&gt;&lt;/BLOCKQUOTE&gt;&lt;P&gt;The computer hangs for a twenty minutes and then reports:&lt;/P&gt;&lt;BLOCKQUOTE class="jive-quote"&gt;&lt;P&gt;Encryption not enabled&lt;/P&gt;&lt;/BLOCKQUOTE&gt;&lt;P&gt;The file dek.bin is written with an odd size of 439 bytes.&lt;/P&gt;&lt;P&gt;I have openssl version 1.0.1f installed and run CST 2.3.1. Any ideas what could be the problem here?&lt;/P&gt;&lt;P style="min-height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;Florian&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;Original Attachment has been moved to: &lt;A _jive_internal="true" href="https://community.nxp.com/docs/DOC-336040"&gt;encrypt.csfsfg.zip&lt;/A&gt;&lt;/STRONG&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 10 Mar 2016 20:21:27 GMT</pubDate>
      <guid>https://community.nxp.com/t5/i-MX-Processors/CST-reports-quot-Encryption-not-enabled-quot/m-p/469628#M74213</guid>
      <dc:creator>floriandoerfler</dc:creator>
      <dc:date>2016-03-10T20:21:27Z</dc:date>
    </item>
    <item>
      <title>Re: CST reports "Encryption not enabled"</title>
      <link>https://community.nxp.com/t5/i-MX-Processors/CST-reports-quot-Encryption-not-enabled-quot/m-p/469629#M74214</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello, &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp; According to "HAB CodeSigning Tool User’s Guide" :&lt;/P&gt;&lt;P&gt; &lt;BR /&gt;"Due to limitation in current cst implementation the cst must be run&lt;/P&gt;&lt;P&gt;from a directory at the same level as &amp;lt;HAB Installation path&amp;gt;/keys. &lt;BR /&gt;For example &amp;lt;HAB Installation path&amp;gt;/product_code, where the product code &lt;BR /&gt;to be signed is located."&lt;/P&gt;&lt;P&gt;&lt;BR /&gt; &lt;A class="jive-link-external-small" href="https://community.nxp.com/external-link.jspa?url=http%3A%2F%2Fwww.nxp.com%2Fwebapp%2Fsps%2Fdownload%2Fview_license.jsp%3FcolCode%3DIMX_CST_TOOL" rel="nofollow" target="_blank"&gt;NXP Code Signing Tool for the High Assurance Boot library. Provides software code signing support designed for use with &lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Have a great day,&lt;BR /&gt;Yuri&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;-----------------------------------------------------------------------------------------------------------------------&lt;BR /&gt;Note: If this post answers your question, please click the Correct Answer button. Thank you!&lt;BR /&gt;-----------------------------------------------------------------------------------------------------------------------&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 11 Mar 2016 04:04:31 GMT</pubDate>
      <guid>https://community.nxp.com/t5/i-MX-Processors/CST-reports-quot-Encryption-not-enabled-quot/m-p/469629#M74214</guid>
      <dc:creator>Yuri</dc:creator>
      <dc:date>2016-03-11T04:04:31Z</dc:date>
    </item>
    <item>
      <title>Re: CST reports "Encryption not enabled"</title>
      <link>https://community.nxp.com/t5/i-MX-Processors/CST-reports-quot-Encryption-not-enabled-quot/m-p/469630#M74215</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Yuri&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thank you for your reply. Meanwhile, I have tried to run the tool from the "keys" directory in the CST (with the paths adapted) with the same result:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-family: courier new,courier;"&gt;cst-2.3.1/keys$ ../linux32/cst --o barebox-testing.enc.csf -c ../crts/IMG1_1_sha256_2048_65537_v3_usr_crt.pem &amp;lt; encrypt.csfcfg&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-family: courier new,courier;"&gt;Encryption not enabled&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The CSF File is not created, so I'm pretty sure that the operation failed.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Do you have more input?&lt;/P&gt;&lt;P&gt;Any libraries that I might be missing?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Just out of curiosity: Do you have first hand experience of generating a working encrypted boot with the CST?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards Florian&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 14 Mar 2016 08:25:01 GMT</pubDate>
      <guid>https://community.nxp.com/t5/i-MX-Processors/CST-reports-quot-Encryption-not-enabled-quot/m-p/469630#M74215</guid>
      <dc:creator>floriandoerfler</dc:creator>
      <dc:date>2016-03-14T08:25:01Z</dc:date>
    </item>
    <item>
      <title>Re: CST reports "Encryption not enabled"</title>
      <link>https://community.nxp.com/t5/i-MX-Processors/CST-reports-quot-Encryption-not-enabled-quot/m-p/469631#M74216</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;When installing cst , encryption is not enabled by default; &lt;/P&gt;&lt;P&gt;There were some release notes in the 2.3.0 version that are missing from the 2.3.1 release which explain the requirement for enabling.&amp;nbsp;&amp;nbsp; This worked for me.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;2.1 Encrypted Boot support&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; This version of CST allows the user to relink the executable&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; to include support for generating encrypted boot images.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; To relink on 32 bit machines:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; cd &amp;lt;CST install directory&amp;gt;/code/back_end/src&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; gcc -o cst -I ../hdr -L ../../../linux32/lib *.c \&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; -lfrontend -lcrypto&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; cp cst ../../../linux32&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; To relink on 64 bit machines:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; cd &amp;lt;CST install directory/code/back_end/src&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; gcc -o cst -I ../hdr -L ../../../linux64/lib *.c -lfrontend -lcrypto&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; cp cst ../../../linux6&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 14 Mar 2016 18:59:32 GMT</pubDate>
      <guid>https://community.nxp.com/t5/i-MX-Processors/CST-reports-quot-Encryption-not-enabled-quot/m-p/469631#M74216</guid>
      <dc:creator>foosechek</dc:creator>
      <dc:date>2016-03-14T18:59:32Z</dc:date>
    </item>
    <item>
      <title>Re: CST reports "Encryption not enabled"</title>
      <link>https://community.nxp.com/t5/i-MX-Processors/CST-reports-quot-Encryption-not-enabled-quot/m-p/469632#M74217</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Yuri&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;After recompiling the CST, the call even worked from outside of the CST directory. But now that you mention it, I'm moving the signed code into the CST tree, just to be sure. Thank you for pointing this out!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards Florian&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 15 Mar 2016 08:07:27 GMT</pubDate>
      <guid>https://community.nxp.com/t5/i-MX-Processors/CST-reports-quot-Encryption-not-enabled-quot/m-p/469632#M74217</guid>
      <dc:creator>floriandoerfler</dc:creator>
      <dc:date>2016-03-15T08:07:27Z</dc:date>
    </item>
    <item>
      <title>Re: CST reports "Encryption not enabled"</title>
      <link>https://community.nxp.com/t5/i-MX-Processors/CST-reports-quot-Encryption-not-enabled-quot/m-p/1531490#M195891</link>
      <description>&lt;P&gt;Hello Team,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I am trying to execute steps mention in nxp documentation for secure boot.&lt;/P&gt;&lt;P&gt;Steps I followed:&lt;/P&gt;&lt;P&gt;1) Downloaded cst-3.1.0.tgz tool from nxp site.&lt;/P&gt;&lt;P&gt;2) untar it on my Linux machine. Following /Docs &amp;gt; CST_UG.pdf and Release_Notes.txt.&lt;/P&gt;&lt;P&gt;Also tried To&lt;STRONG&gt; relink on 64/32 bit&lt;/STRONG&gt; Linux machines with steps mentioned in this discussion. But still getting &lt;STRONG&gt;error while running&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;sub@developer:~/Downloads/release/keys$ ./hab4_pki_tree.sh&lt;/P&gt;&lt;P&gt;+++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++&lt;BR /&gt;This script is a part of the Code signing tools for Freescale's&lt;BR /&gt;High Assurance Boot. It generates a basic PKI tree. The PKI&lt;BR /&gt;tree consists of one or more Super Root Keys (SRK), with each&lt;BR /&gt;SRK having two subordinate keys:&lt;BR /&gt;+ a Command Sequence File (CSF) key&lt;BR /&gt;+ Image key.&lt;BR /&gt;Additional keys can be added to the PKI tree but a separate&lt;BR /&gt;script is available for this. This this script assumes openssl&lt;BR /&gt;is installed on your system and is included in your search&lt;BR /&gt;path. Finally, the private keys generated are password&lt;BR /&gt;protectedwith the password provided by the file key_pass.txt.&lt;BR /&gt;The format of the file is the password repeated twice:&lt;BR /&gt;my_password&lt;BR /&gt;my_password&lt;BR /&gt;All private keys in the PKI tree are in PKCS #8 format will be&lt;BR /&gt;protected by the same password.&lt;/P&gt;&lt;P&gt;+++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++&lt;BR /&gt;Do you want to use an existing CA key (y/n)?: n&lt;BR /&gt;Do you want to use Elliptic Curve Cryptography (y/n)?: n&lt;BR /&gt;Enter key length in bits for PKI tree: 4096&lt;BR /&gt;Enter PKI tree duration (years): 5&lt;BR /&gt;How many Super Root Keys should be generated? 4&lt;BR /&gt;Do you want the SRK certificates to have the CA flag set? (y/n)?: y&lt;/P&gt;&lt;P&gt;+++++++++++++++++++++++++++++++++++++&lt;BR /&gt;+ Generating CA key and certificate +&lt;BR /&gt;+++++++++++++++++++++++++++++++++++++&lt;/P&gt;&lt;P&gt;Generating a RSA private key&lt;BR /&gt;..................................++++&lt;BR /&gt;.......++++&lt;BR /&gt;writing new private key to 'temp_ca.pem'&lt;BR /&gt;-----&lt;/P&gt;&lt;P&gt;++++++++++++++++++++++++++++++++++++++++&lt;BR /&gt;+ Generating SRK key and certificate 1 +&lt;BR /&gt;++++++++++++++++++++++++++++++++++++++++&lt;/P&gt;&lt;P&gt;Generating RSA private key, 4096 bit long modulus (2 primes)&lt;BR /&gt;........................................++++&lt;BR /&gt;.......................................++++&lt;BR /&gt;e is 65537 (0x010001)&lt;BR /&gt;Using configuration from ../ca/openssl.cnf&lt;BR /&gt;unable to load CA private key&lt;BR /&gt;140185369613632:error:06065064:digital envelope routines:EVP_DecryptFinal_ex:bad decrypt:../crypto/evp/evp_enc.c:610:&lt;BR /&gt;140185369613632:error:23077074:PKCS12 routines:PKCS12_pbe_crypt:pkcs12 cipherfinal error:../crypto/pkcs12/p12_decr.c:62:&lt;BR /&gt;140185369613632:error:2306A075:PKCS12 routines:PKCS12_item_decrypt_d2i:pkcs12 pbe crypt error:../crypto/pkcs12/p12_decr.c:93:&lt;BR /&gt;140185369613632:error:0907B00D:PEM routines:PEM_read_bio_PrivateKey:ASN1 lib:../crypto/pem/pem_pkey.c:88:&lt;BR /&gt;Can't open ../crts/SRK1_sha256_4096_65537_v3_ca_crt.pem for reading, No such file or directory&lt;BR /&gt;140361417344320:error:02001002:system library:fopen:No such file or directory:../crypto/bio/bss_file.c:69:fopen('../crts/SRK1_sha256_4096_65537_v3_ca_crt.pem','r')&lt;BR /&gt;140361417344320:error:2006D080:BIO routines:BIO_new_file:no such file:../crypto/bio/bss_file.c:76:&lt;BR /&gt;unable to load certificate&lt;/P&gt;&lt;P&gt;++++++++++++++++++++++++++++++++++++++++&lt;BR /&gt;+ Generating CSF key and certificate 1 +&lt;BR /&gt;++++++++++++++++++++++++++++++++++++++++&lt;/P&gt;&lt;P&gt;Generating RSA private key, 4096 bit long modulus (2 primes)&lt;BR /&gt;......................................................++++&lt;BR /&gt;...................................................................................................................................................................................................................................................................++++&lt;BR /&gt;e is 65537 (0x010001)&lt;BR /&gt;Using configuration from ../ca/openssl.cnf&lt;BR /&gt;unable to load CA private key&lt;BR /&gt;139771215324480:error:06065064:digital envelope routines:EVP_DecryptFinal_ex:bad decrypt:../crypto/evp/evp_enc.c:610:&lt;BR /&gt;139771215324480:error:23077074:PKCS12 routines:PKCS12_pbe_crypt:pkcs12 cipherfinal error:../crypto/pkcs12/p12_decr.c:62:&lt;BR /&gt;139771215324480:error:2306A075:PKCS12 routines:PKCS12_item_decrypt_d2i:pkcs12 pbe crypt error:../crypto/pkcs12/p12_decr.c:93:&lt;BR /&gt;139771215324480:error:0907B00D:PEM routines:PEM_read_bio_PrivateKey:ASN1 lib:../crypto/pem/pem_pkey.c:88:&lt;BR /&gt;Can't open ../crts/CSF1_1_sha256_4096_65537_v3_usr_crt.pem for reading, No such file or directory&lt;BR /&gt;139804323910976:error:02001002:system library:fopen:No such file or directory:../crypto/bio/bss_file.c:69:fopen('../crts/CSF1_1_sha256_4096_65537_v3_usr_crt.pem','r')&lt;BR /&gt;139804323910976:error:2006D080:BIO routines:BIO_new_file:no such file:../crypto/bio/bss_file.c:76:&lt;BR /&gt;unable to load certificate&lt;/P&gt;&lt;P&gt;++++++++++++++++++++++++++++++++++++++++&lt;BR /&gt;+ Generating IMG key and certificate 1 +&lt;BR /&gt;++++++++++++++++++++++++++++++++++++++++&lt;/P&gt;&lt;P&gt;Generating RSA private key, 4096 bit long modulus (2 primes)&lt;BR /&gt;..............................................++++&lt;BR /&gt;..++++&lt;BR /&gt;e is 65537 (0x010001)&lt;BR /&gt;Using configuration from ../ca/openssl.cnf&lt;BR /&gt;unable to load CA private key&lt;BR /&gt;139632623789376:error:06065064:digital envelope routines:EVP_DecryptFinal_ex:bad decrypt:../crypto/evp/evp_enc.c:610:&lt;BR /&gt;139632623789376:error:23077074:PKCS12 routines:PKCS12_pbe_crypt:pkcs12 cipherfinal error:../crypto/pkcs12/p12_decr.c:62:&lt;BR /&gt;139632623789376:error:2306A075:PKCS12 routines:PKCS12_item_decrypt_d2i:pkcs12 pbe crypt error:../crypto/pkcs12/p12_decr.c:93:&lt;BR /&gt;139632623789376:error:0907B00D:PEM routines:PEM_read_bio_PrivateKey:ASN1 lib:../crypto/pem/pem_pkey.c:88:&lt;BR /&gt;Can't open ../crts/IMG1_1_sha256_4096_65537_v3_usr_crt.pem for reading, No such file or directory&lt;BR /&gt;139856162575680:error:02001002:system library:fopen:No such file or directory:../crypto/bio/bss_file.c:69:fopen('../crts/IMG1_1_sha256_4096_65537_v3_usr_crt.pem','r')&lt;BR /&gt;139856162575680:error:2006D080:BIO routines:BIO_new_file:no such file:../crypto/bio/bss_file.c:76:&lt;BR /&gt;unable to load certificate&lt;/P&gt;&lt;P&gt;++++++++++++++++++++++++++++++++++++++++&lt;BR /&gt;+ Generating SRK key and certificate 2 +&lt;BR /&gt;++++++++++++++++++++++++++++++++++++++++&lt;/P&gt;&lt;P&gt;Generating RSA private key, 4096 bit long modulus (2 primes)&lt;BR /&gt;.......................................................++++&lt;BR /&gt;.............................++++&lt;BR /&gt;e is 65537 (0x010001)&lt;BR /&gt;Using configuration from ../ca/openssl.cnf&lt;BR /&gt;unable to load CA private key&lt;BR /&gt;140050200614208:error:06065064:digital envelope routines:EVP_DecryptFinal_ex:bad decrypt:../crypto/evp/evp_enc.c:610:&lt;BR /&gt;140050200614208:error:23077074:PKCS12 routines:PKCS12_pbe_crypt:pkcs12 cipherfinal error:../crypto/pkcs12/p12_decr.c:62:&lt;BR /&gt;140050200614208:error:2306A075:PKCS12 routines:PKCS12_item_decrypt_d2i:pkcs12 pbe crypt error:../crypto/pkcs12/p12_decr.c:93:&lt;BR /&gt;140050200614208:error:0907B00D:PEM routines:PEM_read_bio_PrivateKey:ASN1 lib:../crypto/pem/pem_pkey.c:88:&lt;BR /&gt;Can't open ../crts/SRK2_sha256_4096_65537_v3_ca_crt.pem for reading, No such file or directory&lt;BR /&gt;139690429662528:error:02001002:system library:fopen:No such file or directory:../crypto/bio/bss_file.c:69:fopen('../crts/SRK2_sha256_4096_65537_v3_ca_crt.pem','r')&lt;BR /&gt;139690429662528:error:2006D080:BIO routines:BIO_new_file:no such file:../crypto/bio/bss_file.c:76:&lt;BR /&gt;unable to load certificate&lt;/P&gt;&lt;P&gt;++++++++++++++++++++++++++++++++++++++++&lt;BR /&gt;+ Generating CSF key and certificate 2 +&lt;BR /&gt;++++++++++++++++++++++++++++++++++++++++&lt;/P&gt;&lt;P&gt;Generating RSA private key, 4096 bit long modulus (2 primes)&lt;BR /&gt;..................................................................................++++&lt;BR /&gt;....++++&lt;BR /&gt;e is 65537 (0x010001)&lt;BR /&gt;Using configuration from ../ca/openssl.cnf&lt;BR /&gt;unable to load CA private key&lt;BR /&gt;139673382860096:error:06065064:digital envelope routines:EVP_DecryptFinal_ex:bad decrypt:../crypto/evp/evp_enc.c:610:&lt;BR /&gt;139673382860096:error:23077074:PKCS12 routines:PKCS12_pbe_crypt:pkcs12 cipherfinal error:../crypto/pkcs12/p12_decr.c:62:&lt;BR /&gt;139673382860096:error:2306A075:PKCS12 routines:PKCS12_item_decrypt_d2i:pkcs12 pbe crypt error:../crypto/pkcs12/p12_decr.c:93:&lt;BR /&gt;139673382860096:error:0907B00D:PEM routines:PEM_read_bio_PrivateKey:ASN1 lib:../crypto/pem/pem_pkey.c:88:&lt;BR /&gt;Can't open ../crts/CSF2_1_sha256_4096_65537_v3_usr_crt.pem for reading, No such file or directory&lt;BR /&gt;139701180155200:error:02001002:system library:fopen:No such file or directory:../crypto/bio/bss_file.c:69:fopen('../crts/CSF2_1_sha256_4096_65537_v3_usr_crt.pem','r')&lt;BR /&gt;139701180155200:error:2006D080:BIO routines:BIO_new_file:no such file:../crypto/bio/bss_file.c:76:&lt;BR /&gt;unable to load certificate&lt;/P&gt;&lt;P&gt;++++++++++++++++++++++++++++++++++++++++&lt;BR /&gt;+ Generating IMG key and certificate 2 +&lt;BR /&gt;++++++++++++++++++++++++++++++++++++++++&lt;/P&gt;&lt;P&gt;Generating RSA private key, 4096 bit long modulus (2 primes)&lt;BR /&gt;.............................................................................................................................................++++&lt;BR /&gt;..............................................................................................................................................................................................++++&lt;BR /&gt;e is 65537 (0x010001)&lt;BR /&gt;Using configuration from ../ca/openssl.cnf&lt;BR /&gt;unable to load CA private key&lt;BR /&gt;140613882578240:error:06065064:digital envelope routines:EVP_DecryptFinal_ex:bad decrypt:../crypto/evp/evp_enc.c:610:&lt;BR /&gt;140613882578240:error:23077074:PKCS12 routines:PKCS12_pbe_crypt:pkcs12 cipherfinal error:../crypto/pkcs12/p12_decr.c:62:&lt;BR /&gt;140613882578240:error:2306A075:PKCS12 routines:PKCS12_item_decrypt_d2i:pkcs12 pbe crypt error:../crypto/pkcs12/p12_decr.c:93:&lt;BR /&gt;140613882578240:error:0907B00D:PEM routines:PEM_read_bio_PrivateKey:ASN1 lib:../crypto/pem/pem_pkey.c:88:&lt;BR /&gt;Can't open ../crts/IMG2_1_sha256_4096_65537_v3_usr_crt.pem for reading, No such file or directory&lt;BR /&gt;140061171594560:error:02001002:system library:fopen:No such file or directory:../crypto/bio/bss_file.c:69:fopen('../crts/IMG2_1_sha256_4096_65537_v3_usr_crt.pem','r')&lt;BR /&gt;140061171594560:error:2006D080:BIO routines:BIO_new_file:no such file:../crypto/bio/bss_file.c:76:&lt;BR /&gt;unable to load certificate&lt;/P&gt;&lt;P&gt;++++++++++++++++++++++++++++++++++++++++&lt;BR /&gt;+ Generating SRK key and certificate 3 +&lt;BR /&gt;++++++++++++++++++++++++++++++++++++++++&lt;/P&gt;&lt;P&gt;Generating RSA private key, 4096 bit long modulus (2 primes)&lt;BR /&gt;....................................................................++++&lt;BR /&gt;.................................................................++++&lt;BR /&gt;e is 65537 (0x010001)&lt;BR /&gt;Using configuration from ../ca/openssl.cnf&lt;BR /&gt;unable to load CA private key&lt;BR /&gt;140132909233472:error:06065064:digital envelope routines:EVP_DecryptFinal_ex:bad decrypt:../crypto/evp/evp_enc.c:610:&lt;BR /&gt;140132909233472:error:23077074:PKCS12 routines:PKCS12_pbe_crypt:pkcs12 cipherfinal error:../crypto/pkcs12/p12_decr.c:62:&lt;BR /&gt;140132909233472:error:2306A075:PKCS12 routines:PKCS12_item_decrypt_d2i:pkcs12 pbe crypt error:../crypto/pkcs12/p12_decr.c:93:&lt;BR /&gt;140132909233472:error:0907B00D:PEM routines:PEM_read_bio_PrivateKey:ASN1 lib:../crypto/pem/pem_pkey.c:88:&lt;BR /&gt;Can't open ../crts/SRK3_sha256_4096_65537_v3_ca_crt.pem for reading, No such file or directory&lt;BR /&gt;140685257864512:error:02001002:system library:fopen:No such file or directory:../crypto/bio/bss_file.c:69:fopen('../crts/SRK3_sha256_4096_65537_v3_ca_crt.pem','r')&lt;BR /&gt;140685257864512:error:2006D080:BIO routines:BIO_new_file:no such file:../crypto/bio/bss_file.c:76:&lt;BR /&gt;unable to load certificate&lt;/P&gt;&lt;P&gt;++++++++++++++++++++++++++++++++++++++++&lt;BR /&gt;+ Generating CSF key and certificate 3 +&lt;BR /&gt;++++++++++++++++++++++++++++++++++++++++&lt;/P&gt;&lt;P&gt;Generating RSA private key, 4096 bit long modulus (2 primes)&lt;BR /&gt;..........................................................................................++++&lt;BR /&gt;..............................................................................................................................................................................................++++&lt;BR /&gt;e is 65537 (0x010001)&lt;BR /&gt;Using configuration from ../ca/openssl.cnf&lt;BR /&gt;unable to load CA private key&lt;BR /&gt;139952155837760:error:06065064:digital envelope routines:EVP_DecryptFinal_ex:bad decrypt:../crypto/evp/evp_enc.c:610:&lt;BR /&gt;139952155837760:error:23077074:PKCS12 routines:PKCS12_pbe_crypt:pkcs12 cipherfinal error:../crypto/pkcs12/p12_decr.c:62:&lt;BR /&gt;139952155837760:error:2306A075:PKCS12 routines:PKCS12_item_decrypt_d2i:pkcs12 pbe crypt error:../crypto/pkcs12/p12_decr.c:93:&lt;BR /&gt;139952155837760:error:0907B00D:PEM routines:PEM_read_bio_PrivateKey:ASN1 lib:../crypto/pem/pem_pkey.c:88:&lt;BR /&gt;Can't open ../crts/CSF3_1_sha256_4096_65537_v3_usr_crt.pem for reading, No such file or directory&lt;BR /&gt;140588125467968:error:02001002:system library:fopen:No such file or directory:../crypto/bio/bss_file.c:69:fopen('../crts/CSF3_1_sha256_4096_65537_v3_usr_crt.pem','r')&lt;BR /&gt;140588125467968:error:2006D080:BIO routines:BIO_new_file:no such file:../crypto/bio/bss_file.c:76:&lt;BR /&gt;unable to load certificate&lt;/P&gt;&lt;P&gt;++++++++++++++++++++++++++++++++++++++++&lt;BR /&gt;+ Generating IMG key and certificate 3 +&lt;BR /&gt;++++++++++++++++++++++++++++++++++++++++&lt;/P&gt;&lt;P&gt;Generating RSA private key, 4096 bit long modulus (2 primes)&lt;BR /&gt;........................................................................................................++++&lt;BR /&gt;..........................................................++++&lt;BR /&gt;e is 65537 (0x010001)&lt;BR /&gt;Using configuration from ../ca/openssl.cnf&lt;BR /&gt;unable to load CA private key&lt;BR /&gt;140422078956864:error:06065064:digital envelope routines:EVP_DecryptFinal_ex:bad decrypt:../crypto/evp/evp_enc.c:610:&lt;BR /&gt;140422078956864:error:23077074:PKCS12 routines:PKCS12_pbe_crypt:pkcs12 cipherfinal error:../crypto/pkcs12/p12_decr.c:62:&lt;BR /&gt;140422078956864:error:2306A075:PKCS12 routines:PKCS12_item_decrypt_d2i:pkcs12 pbe crypt error:../crypto/pkcs12/p12_decr.c:93:&lt;BR /&gt;140422078956864:error:0907B00D:PEM routines:PEM_read_bio_PrivateKey:ASN1 lib:../crypto/pem/pem_pkey.c:88:&lt;BR /&gt;Can't open ../crts/IMG3_1_sha256_4096_65537_v3_usr_crt.pem for reading, No such file or directory&lt;BR /&gt;139812568921408:error:02001002:system library:fopen:No such file or directory:../crypto/bio/bss_file.c:69:fopen('../crts/IMG3_1_sha256_4096_65537_v3_usr_crt.pem','r')&lt;BR /&gt;139812568921408:error:2006D080:BIO routines:BIO_new_file:no such file:../crypto/bio/bss_file.c:76:&lt;BR /&gt;unable to load certificate&lt;/P&gt;&lt;P&gt;++++++++++++++++++++++++++++++++++++++++&lt;BR /&gt;+ Generating SRK key and certificate 4 +&lt;BR /&gt;++++++++++++++++++++++++++++++++++++++++&lt;/P&gt;&lt;P&gt;Generating RSA private key, 4096 bit long modulus (2 primes)&lt;BR /&gt;...................++++&lt;BR /&gt;.......................................................++++&lt;BR /&gt;e is 65537 (0x010001)&lt;BR /&gt;Using configuration from ../ca/openssl.cnf&lt;BR /&gt;unable to load CA private key&lt;BR /&gt;140247327753536:error:06065064:digital envelope routines:EVP_DecryptFinal_ex:bad decrypt:../crypto/evp/evp_enc.c:610:&lt;BR /&gt;140247327753536:error:23077074:PKCS12 routines:PKCS12_pbe_crypt:pkcs12 cipherfinal error:../crypto/pkcs12/p12_decr.c:62:&lt;BR /&gt;140247327753536:error:2306A075:PKCS12 routines:PKCS12_item_decrypt_d2i:pkcs12 pbe crypt error:../crypto/pkcs12/p12_decr.c:93:&lt;BR /&gt;140247327753536:error:0907B00D:PEM routines:PEM_read_bio_PrivateKey:ASN1 lib:../crypto/pem/pem_pkey.c:88:&lt;BR /&gt;Can't open ../crts/SRK4_sha256_4096_65537_v3_ca_crt.pem for reading, No such file or directory&lt;BR /&gt;140431590266176:error:02001002:system library:fopen:No such file or directory:../crypto/bio/bss_file.c:69:fopen('../crts/SRK4_sha256_4096_65537_v3_ca_crt.pem','r')&lt;BR /&gt;140431590266176:error:2006D080:BIO routines:BIO_new_file:no such file:../crypto/bio/bss_file.c:76:&lt;BR /&gt;unable to load certificate&lt;/P&gt;&lt;P&gt;++++++++++++++++++++++++++++++++++++++++&lt;BR /&gt;+ Generating CSF key and certificate 4 +&lt;BR /&gt;++++++++++++++++++++++++++++++++++++++++&lt;/P&gt;&lt;P&gt;Generating RSA private key, 4096 bit long modulus (2 primes)&lt;BR /&gt;.....................................................................................................................++++&lt;BR /&gt;...................................................................................++++&lt;BR /&gt;e is 65537 (0x010001)&lt;BR /&gt;Using configuration from ../ca/openssl.cnf&lt;BR /&gt;unable to load CA private key&lt;BR /&gt;139958490457408:error:06065064:digital envelope routines:EVP_DecryptFinal_ex:bad decrypt:../crypto/evp/evp_enc.c:610:&lt;BR /&gt;139958490457408:error:23077074:PKCS12 routines:PKCS12_pbe_crypt:pkcs12 cipherfinal error:../crypto/pkcs12/p12_decr.c:62:&lt;BR /&gt;139958490457408:error:2306A075:PKCS12 routines:PKCS12_item_decrypt_d2i:pkcs12 pbe crypt error:../crypto/pkcs12/p12_decr.c:93:&lt;BR /&gt;139958490457408:error:0907B00D:PEM routines:PEM_read_bio_PrivateKey:ASN1 lib:../crypto/pem/pem_pkey.c:88:&lt;BR /&gt;Can't open ../crts/CSF4_1_sha256_4096_65537_v3_usr_crt.pem for reading, No such file or directory&lt;BR /&gt;140578246976832:error:02001002:system library:fopen:No such file or directory:../crypto/bio/bss_file.c:69:fopen('../crts/CSF4_1_sha256_4096_65537_v3_usr_crt.pem','r')&lt;BR /&gt;140578246976832:error:2006D080:BIO routines:BIO_new_file:no such file:../crypto/bio/bss_file.c:76:&lt;BR /&gt;unable to load certificate&lt;/P&gt;&lt;P&gt;++++++++++++++++++++++++++++++++++++++++&lt;BR /&gt;+ Generating IMG key and certificate 4 +&lt;BR /&gt;++++++++++++++++++++++++++++++++++++++++&lt;/P&gt;&lt;P&gt;Generating RSA private key, 4096 bit long modulus (2 primes)&lt;BR /&gt;..................++++&lt;BR /&gt;......................................................................................++++&lt;BR /&gt;e is 65537 (0x010001)&lt;BR /&gt;Using configuration from ../ca/openssl.cnf&lt;BR /&gt;unable to load CA private key&lt;BR /&gt;139702410077504:error:06065064:digital envelope routines:EVP_DecryptFinal_ex:bad decrypt:../crypto/evp/evp_enc.c:610:&lt;BR /&gt;139702410077504:error:23077074:PKCS12 routines:PKCS12_pbe_crypt:pkcs12 cipherfinal error:../crypto/pkcs12/p12_decr.c:62:&lt;BR /&gt;139702410077504:error:2306A075:PKCS12 routines:PKCS12_item_decrypt_d2i:pkcs12 pbe crypt error:../crypto/pkcs12/p12_decr.c:93:&lt;BR /&gt;139702410077504:error:0907B00D:PEM routines:PEM_read_bio_PrivateKey:ASN1 lib:../crypto/pem/pem_pkey.c:88:&lt;BR /&gt;Can't open ../crts/IMG4_1_sha256_4096_65537_v3_usr_crt.pem for reading, No such file or directory&lt;BR /&gt;140613383144768:error:02001002:system library:fopen:No such file or directory:../crypto/bio/bss_file.c:69:fopen('../crts/IMG4_1_sha256_4096_65537_v3_usr_crt.pem','r')&lt;BR /&gt;140613383144768:error:2006D080:BIO routines:BIO_new_file:no such file:../crypto/bio/bss_file.c:76:&lt;BR /&gt;unable to load certificate&lt;/P&gt;</description>
      <pubDate>Mon, 03 Oct 2022 07:17:47 GMT</pubDate>
      <guid>https://community.nxp.com/t5/i-MX-Processors/CST-reports-quot-Encryption-not-enabled-quot/m-p/1531490#M195891</guid>
      <dc:creator>VishalRana</dc:creator>
      <dc:date>2022-10-03T07:17:47Z</dc:date>
    </item>
  </channel>
</rss>

