<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>i.MX ProcessorsのトピックRe: Unable to open OP-TEE session (err=-5)</title>
    <link>https://community.nxp.com/t5/i-MX-Processors/Unable-to-open-OP-TEE-session-err-5/m-p/1854059#M222937</link>
    <description>&lt;P&gt;Correct. No special settings. When can you report on your EVK test?&lt;/P&gt;</description>
    <pubDate>Wed, 24 Apr 2024 22:52:49 GMT</pubDate>
    <dc:creator>moose</dc:creator>
    <dc:date>2024-04-24T22:52:49Z</dc:date>
    <item>
      <title>Unable to open OP-TEE session (err=-5)</title>
      <link>https://community.nxp.com/t5/i-MX-Processors/Unable-to-open-OP-TEE-session-err-5/m-p/1845693#M222421</link>
      <description>&lt;P&gt;Hello, I am getting this error when booting a custom board based on the imx8mn_evk machine using LF6.1.55-2.2.0 bsp. Uboot and Linux boot OK, but we would like to address this error to confirm we don't have a security issue. Thank you.&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="moose_0-1712890564115.png" style="width: 400px;"&gt;&lt;img src="https://community.nxp.com/t5/image/serverpage/image-id/273326i0958B987AF52AFEC/image-size/medium?v=v2&amp;amp;px=400" role="button" title="moose_0-1712890564115.png" alt="moose_0-1712890564115.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 12 Apr 2024 02:56:36 GMT</pubDate>
      <guid>https://community.nxp.com/t5/i-MX-Processors/Unable-to-open-OP-TEE-session-err-5/m-p/1845693#M222421</guid>
      <dc:creator>moose</dc:creator>
      <dc:date>2024-04-12T02:56:36Z</dc:date>
    </item>
    <item>
      <title>Re: Unable to open OP-TEE session (err=-5)</title>
      <link>https://community.nxp.com/t5/i-MX-Processors/Unable-to-open-OP-TEE-session-err-5/m-p/1847103#M222517</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;I am also facing this same error. I there any resolution for this?&lt;/P&gt;</description>
      <pubDate>Mon, 15 Apr 2024 11:49:33 GMT</pubDate>
      <guid>https://community.nxp.com/t5/i-MX-Processors/Unable-to-open-OP-TEE-session-err-5/m-p/1847103#M222517</guid>
      <dc:creator>naveenprasath_0</dc:creator>
      <dc:date>2024-04-15T11:49:33Z</dc:date>
    </item>
    <item>
      <title>Re: Unable to open OP-TEE session (err=-5)</title>
      <link>https://community.nxp.com/t5/i-MX-Processors/Unable-to-open-OP-TEE-session-err-5/m-p/1847550#M222548</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;
&lt;P&gt;Y&lt;SPAN&gt;ou may be using the wrong OP-TEE flavor, to run UEFI secure boot, you need OP-TEE that supports STMM.&lt;BR /&gt;&lt;BR /&gt;Please refer to the i.MX Porting Guide, section&amp;nbsp;5 Configuring OP-TEE.&lt;BR /&gt;&lt;BR /&gt;Best regards/Saludos,&lt;BR /&gt;Aldo.&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 16 Apr 2024 01:30:17 GMT</pubDate>
      <guid>https://community.nxp.com/t5/i-MX-Processors/Unable-to-open-OP-TEE-session-err-5/m-p/1847550#M222548</guid>
      <dc:creator>AldoG</dc:creator>
      <dc:date>2024-04-16T01:30:17Z</dc:date>
    </item>
    <item>
      <title>Re: Unable to open OP-TEE session (err=-5)</title>
      <link>https://community.nxp.com/t5/i-MX-Processors/Unable-to-open-OP-TEE-session-err-5/m-p/1848521#M222618</link>
      <description>&lt;P&gt;What do you mean by "OPTEE flavor"?&lt;/P&gt;&lt;P&gt;I have already looked up the porting guide.&lt;/P&gt;&lt;P&gt;As mentioned in the post, I am using the same board files as imx8mn_evk machine, including the &lt;A href="https://github.com/nxp-imx/uboot-imx/blob/lf_v2023.04/configs/imx8mn_evk_defconfig" target="_self"&gt;defconfig&lt;/A&gt; file and flash target (&lt;A href="https://github.com/nxp-imx/imx-mkimage/blob/5cfd218012e080fb907d9cc301fbb4ece9bc17a9/iMX8M/soc.mak#L230" target="_self"&gt;flash_evk&lt;/A&gt;). Most of the information in the porting guide discussed is detailed in &lt;A href="https://github.com/nxp-imx/imx-mkimage/blob/lf-6.1.22_2.0.0/iMX8M/soc.mak" target="_self"&gt;soc.mak&lt;/A&gt; within imx-mkimage tool and the defconfig file configures uboot with the appropriate configurations. Not sure what we are missing...&lt;/P&gt;</description>
      <pubDate>Tue, 16 Apr 2024 23:49:21 GMT</pubDate>
      <guid>https://community.nxp.com/t5/i-MX-Processors/Unable-to-open-OP-TEE-session-err-5/m-p/1848521#M222618</guid>
      <dc:creator>moose</dc:creator>
      <dc:date>2024-04-16T23:49:21Z</dc:date>
    </item>
    <item>
      <title>Re: Unable to open OP-TEE session (err=-5)</title>
      <link>https://community.nxp.com/t5/i-MX-Processors/Unable-to-open-OP-TEE-session-err-5/m-p/1848522#M222619</link>
      <description>Haven't solved it yet.</description>
      <pubDate>Tue, 16 Apr 2024 23:49:57 GMT</pubDate>
      <guid>https://community.nxp.com/t5/i-MX-Processors/Unable-to-open-OP-TEE-session-err-5/m-p/1848522#M222619</guid>
      <dc:creator>moose</dc:creator>
      <dc:date>2024-04-16T23:49:57Z</dc:date>
    </item>
    <item>
      <title>Re: Unable to open OP-TEE session (err=-5)</title>
      <link>https://community.nxp.com/t5/i-MX-Processors/Unable-to-open-OP-TEE-session-err-5/m-p/1850868#M222771</link>
      <description>&lt;P&gt;&lt;a href="https://community.nxp.com/t5/user/viewprofilepage/user-id/171173"&gt;@AldoG&lt;/a&gt;&amp;nbsp;any update on this?&lt;/P&gt;</description>
      <pubDate>Fri, 19 Apr 2024 16:40:51 GMT</pubDate>
      <guid>https://community.nxp.com/t5/i-MX-Processors/Unable-to-open-OP-TEE-session-err-5/m-p/1850868#M222771</guid>
      <dc:creator>moose</dc:creator>
      <dc:date>2024-04-19T16:40:51Z</dc:date>
    </item>
    <item>
      <title>Re: Unable to open OP-TEE session (err=-5)</title>
      <link>https://community.nxp.com/t5/i-MX-Processors/Unable-to-open-OP-TEE-session-err-5/m-p/1850973#M222777</link>
      <description>&lt;P&gt;Hello,&lt;BR /&gt;&lt;BR /&gt;Sorry for the delayed response, could you provide more information, like which configuration are you using?&lt;BR /&gt;&lt;BR /&gt;Best regards/Saludos,&lt;BR /&gt;Aldo.&lt;/P&gt;</description>
      <pubDate>Sat, 20 Apr 2024 01:40:56 GMT</pubDate>
      <guid>https://community.nxp.com/t5/i-MX-Processors/Unable-to-open-OP-TEE-session-err-5/m-p/1850973#M222777</guid>
      <dc:creator>AldoG</dc:creator>
      <dc:date>2024-04-20T01:40:56Z</dc:date>
    </item>
    <item>
      <title>Re: Unable to open OP-TEE session (err=-5)</title>
      <link>https://community.nxp.com/t5/i-MX-Processors/Unable-to-open-OP-TEE-session-err-5/m-p/1851040#M222789</link>
      <description>&lt;P&gt;&lt;a href="https://community.nxp.com/t5/user/viewprofilepage/user-id/171173"&gt;@AldoG&lt;/a&gt;, can you be more specific about what extra information you need? I mentioned the yocto machine, flash target, and uboot configuration we are using. All this is part of the nxp bsp release. The imx8mn_evk machine selects the optee platform flavor "mx8mnevk". Please review this &lt;A href="https://github.com/nxp-imx/meta-imx/blob/mickledore-6.1.55-2.2.0/meta-bsp/recipes-security/optee/optee-os-common-imx.inc" target="_self"&gt;optee-os receipt&lt;/A&gt; if you are not familiar with it. I'm not sure what else I can provide. Have you tried booting an&amp;nbsp;imnx8mn_evk board? Do you see the same error?&lt;/P&gt;&lt;P&gt;Also, not sure why you are saying we need to select stmm? I'm not familiar with stmm, but it sounds to me like something different, and the imx8mn_evk did not select it. You need to specifically include 'stem' in MACHINE_FEATURES, which the imx8mn_evk did not do, and it was tested against the security reference design. Can you elaborate on stmm?&lt;/P&gt;</description>
      <pubDate>Sun, 21 Apr 2024 23:26:00 GMT</pubDate>
      <guid>https://community.nxp.com/t5/i-MX-Processors/Unable-to-open-OP-TEE-session-err-5/m-p/1851040#M222789</guid>
      <dc:creator>moose</dc:creator>
      <dc:date>2024-04-21T23:26:00Z</dc:date>
    </item>
    <item>
      <title>Re: Unable to open OP-TEE session (err=-5)</title>
      <link>https://community.nxp.com/t5/i-MX-Processors/Unable-to-open-OP-TEE-session-err-5/m-p/1852859#M222877</link>
      <description>&lt;P&gt;Hello,&lt;BR /&gt;&lt;BR /&gt;Sorry for the confusion, so in short you're using the normal build and trying to boot with this , same as on the EVK, correct?&lt;BR /&gt;I will try on my side, any other secure boot configuration that you're using?&lt;BR /&gt;&lt;BR /&gt;Best regards/Saludos,&lt;BR /&gt;Aldo.&lt;/P&gt;</description>
      <pubDate>Wed, 24 Apr 2024 00:13:41 GMT</pubDate>
      <guid>https://community.nxp.com/t5/i-MX-Processors/Unable-to-open-OP-TEE-session-err-5/m-p/1852859#M222877</guid>
      <dc:creator>AldoG</dc:creator>
      <dc:date>2024-04-24T00:13:41Z</dc:date>
    </item>
    <item>
      <title>Re: Unable to open OP-TEE session (err=-5)</title>
      <link>https://community.nxp.com/t5/i-MX-Processors/Unable-to-open-OP-TEE-session-err-5/m-p/1854059#M222937</link>
      <description>&lt;P&gt;Correct. No special settings. When can you report on your EVK test?&lt;/P&gt;</description>
      <pubDate>Wed, 24 Apr 2024 22:52:49 GMT</pubDate>
      <guid>https://community.nxp.com/t5/i-MX-Processors/Unable-to-open-OP-TEE-session-err-5/m-p/1854059#M222937</guid>
      <dc:creator>moose</dc:creator>
      <dc:date>2024-04-24T22:52:49Z</dc:date>
    </item>
    <item>
      <title>Re: Unable to open OP-TEE session (err=-5)</title>
      <link>https://community.nxp.com/t5/i-MX-Processors/Unable-to-open-OP-TEE-session-err-5/m-p/1855168#M223004</link>
      <description>&lt;P&gt;Hello,&lt;BR /&gt;&lt;BR /&gt;I just finished the test on my side using i.MX8MN LPDDR4 EVK, I see the same error message, but I said this this is because it expect UEFI secure boot, since for default settings this is not the case it shows the error message.&lt;BR /&gt;&lt;BR /&gt;From your comments I understand that you're not interested in this kind of feature, correct?&lt;BR /&gt;Then if not used it can be disabled when building on yocto and the error will dissapear.&lt;BR /&gt;&lt;BR /&gt;Best regards/Saludos,&lt;BR /&gt;Aldo.&lt;/P&gt;</description>
      <pubDate>Fri, 26 Apr 2024 00:31:59 GMT</pubDate>
      <guid>https://community.nxp.com/t5/i-MX-Processors/Unable-to-open-OP-TEE-session-err-5/m-p/1855168#M223004</guid>
      <dc:creator>AldoG</dc:creator>
      <dc:date>2024-04-26T00:31:59Z</dc:date>
    </item>
    <item>
      <title>Re: Unable to open OP-TEE session (err=-5)</title>
      <link>https://community.nxp.com/t5/i-MX-Processors/Unable-to-open-OP-TEE-session-err-5/m-p/1855977#M223062</link>
      <description>&lt;P&gt;&lt;a href="https://community.nxp.com/t5/user/viewprofilepage/user-id/171173"&gt;@AldoG&lt;/a&gt;, we are using secure boot. Our image is signed, and the secure boot fuse is blown. The hardware does authenticate the image and boot fine, but we are still getting this error. If secure UEFI is a separate feature not related to secure boot, please clarify how to disable it. If it is the secure boot feature, then please troubleshoot how we can address the error.&lt;/P&gt;&lt;P&gt;In either case, please clarify what needs&amp;nbsp;to be done to boot without this error message.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 26 Apr 2024 21:34:40 GMT</pubDate>
      <guid>https://community.nxp.com/t5/i-MX-Processors/Unable-to-open-OP-TEE-session-err-5/m-p/1855977#M223062</guid>
      <dc:creator>moose</dc:creator>
      <dc:date>2024-04-26T21:34:40Z</dc:date>
    </item>
    <item>
      <title>Re: Unable to open OP-TEE session (err=-5)</title>
      <link>https://community.nxp.com/t5/i-MX-Processors/Unable-to-open-OP-TEE-session-err-5/m-p/1860049#M223361</link>
      <description>&lt;P&gt;Hello,&lt;BR /&gt;&lt;BR /&gt;Sorry for the delayed response, if you're not interested in having op-tee enabled, it is not related to secure boot, you may disable in yocto by writing in your local.conf:&lt;BR /&gt;MACHINE_FEATURES_remove += "optee"&lt;BR /&gt;IMAGE_INSTALL_remove += "optee-test optee-os optee-client optee-examples"&lt;BR /&gt;&lt;BR /&gt;Or by uncommenting at meta-imx/meta-bsp/conf/layer.conf the line:&lt;BR /&gt;MACHINE_FEATURES:remove = "optee"&lt;BR /&gt;&lt;BR /&gt;Any of the above should be enough and have the same effect.&lt;BR /&gt;&lt;BR /&gt;Best regards/Saludos,&lt;BR /&gt;Aldo.&lt;/P&gt;</description>
      <pubDate>Tue, 07 May 2024 01:25:24 GMT</pubDate>
      <guid>https://community.nxp.com/t5/i-MX-Processors/Unable-to-open-OP-TEE-session-err-5/m-p/1860049#M223361</guid>
      <dc:creator>AldoG</dc:creator>
      <dc:date>2024-05-07T01:25:24Z</dc:date>
    </item>
    <item>
      <title>Re: Unable to open OP-TEE session (err=-5)</title>
      <link>https://community.nxp.com/t5/i-MX-Processors/Unable-to-open-OP-TEE-session-err-5/m-p/1860743#M223417</link>
      <description>&lt;P&gt;&lt;a href="https://community.nxp.com/t5/user/viewprofilepage/user-id/171173"&gt;@AldoG&lt;/a&gt;&amp;nbsp;I never said we are not interested in optee! We use Optee to support encryption for a couple of run-time applications, so we need Optee regardless of secure boot.&lt;/P&gt;&lt;P&gt;Can you tell us how we address this issue without disabling optee?&lt;/P&gt;</description>
      <pubDate>Tue, 07 May 2024 17:59:05 GMT</pubDate>
      <guid>https://community.nxp.com/t5/i-MX-Processors/Unable-to-open-OP-TEE-session-err-5/m-p/1860743#M223417</guid>
      <dc:creator>moose</dc:creator>
      <dc:date>2024-05-07T17:59:05Z</dc:date>
    </item>
    <item>
      <title>Re: Unable to open OP-TEE session (err=-5)</title>
      <link>https://community.nxp.com/t5/i-MX-Processors/Unable-to-open-OP-TEE-session-err-5/m-p/1861945#M223483</link>
      <description>&lt;P&gt;Hello,&lt;BR /&gt;&lt;BR /&gt;This is what I meant when asked if there was any special configuration you where using, if optee is needed I would say that this error does not impact on your secure boot environment, since the this error is shown when tee_open_session() tries to open a session to a Trusted Application and fails, unfortunately I do not have enough information on how this should be handled, I would suggest to reach the optee project mail list for assitance if you want to get rid of this "issue".&lt;BR /&gt;&lt;BR /&gt;For your reference:&lt;BR /&gt;&lt;A href="https://github.com/nxp-imx/uboot-imx/blob/lf_v2022.04/lib/efi_loader/efi_variable_tee.c#L33" target="_blank"&gt;https://github.com/nxp-imx/uboot-imx/blob/lf_v2022.04/lib/efi_loader/efi_variable_tee.c#L33&lt;/A&gt;&lt;BR /&gt;&lt;A href="https://github.com/nxp-imx/uboot-imx/blob/lf_v2022.04/include/tee.h#L355" target="_blank"&gt;https://github.com/nxp-imx/uboot-imx/blob/lf_v2022.04/include/tee.h#L355&lt;/A&gt;&lt;BR /&gt;&lt;A href="https://github.com/OP-TEE/optee_os" target="_blank"&gt;https://github.com/OP-TEE/optee_os&lt;/A&gt;&lt;BR /&gt;&lt;BR /&gt;Best regards/Saludos,&lt;BR /&gt;Aldo.&lt;/P&gt;</description>
      <pubDate>Wed, 08 May 2024 22:09:07 GMT</pubDate>
      <guid>https://community.nxp.com/t5/i-MX-Processors/Unable-to-open-OP-TEE-session-err-5/m-p/1861945#M223483</guid>
      <dc:creator>AldoG</dc:creator>
      <dc:date>2024-05-08T22:09:07Z</dc:date>
    </item>
  </channel>
</rss>

