<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Imx6ull secure boot uboot failed to start in i.MX Processors</title>
    <link>https://community.nxp.com/t5/i-MX-Processors/Imx6ull-secure-boot-uboot-failed-to-start/m-p/2122952#M238716</link>
    <description>&lt;P&gt;I have two imx6ull core boards.The u-boot version is 2016.3&lt;/P&gt;&lt;P&gt;1.Generate relevant keys using CST tools&lt;BR /&gt;Core board A was burned &lt;STRONG&gt;band 3&lt;/STRONG&gt; using the contents of the fuse.bin file,and &lt;STRONG&gt;band 0 6 0x2&lt;/STRONG&gt; was alsoburned&lt;BR /&gt;Core board B is not treated as the control group.&lt;BR /&gt;2.mx6ullevk.h&lt;BR /&gt;-&amp;gt;add #define CONFIG_SECURE_BOOT #define CONFIG_CSF_SIZE 0x4000&lt;BR /&gt;3.make uboot&lt;BR /&gt;&amp;nbsp; ....................&lt;BR /&gt;./tools/mkimage -n board/freescale/mx6ullevk/imximage-ddr256.cfg.cfgtmp -T imximage -e 0x87800000 -d u-boot.bin u-boot.imx&lt;BR /&gt;Image Type: Freescale IMX Boot Image&lt;BR /&gt;Image Ver: 2 (i.MX53/6/7 compatible)&lt;BR /&gt;Mode: DCD&lt;BR /&gt;Data Size: 438272 Bytes = 428.00 kB = 0.42 MB&lt;BR /&gt;Load Address: 877ff420&lt;BR /&gt;Entry Point: 87800000&lt;BR /&gt;&lt;STRONG&gt;HAB Blocks: 877ff400 00000000 00066c00&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;xxx$ ll u-boot.imx&lt;BR /&gt;-rw-rw-r-- 1 xxx xxx 420864 Jun 1 15:38 u-boot.imx&lt;/P&gt;&lt;P&gt;4.cst_uboot.txt：&lt;BR /&gt;[Authenticate Data]&lt;BR /&gt;Verification index = 2&lt;BR /&gt;&lt;STRONG&gt;Blocks = 0x877FF400 0x00000000 0x00066C00 "u-boot.imx"&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;5.Execute Command&lt;BR /&gt;./cst -i csf_uboot.txt -o csf_uboot.bin&lt;BR /&gt;cat u-boot.imx csf_uboot.bin &amp;gt; u-boot-signed.imx&lt;/P&gt;&lt;P&gt;6.&lt;BR /&gt;Set the board to USB mode&lt;BR /&gt;./uuu.exe -b sd .\u-boot-signed.imx&lt;/P&gt;&lt;P&gt;7.&lt;BR /&gt;board A(burned fuse):&lt;BR /&gt;The serial port has no output&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;board B (Unburned fuse):&lt;/P&gt;&lt;P&gt;=&amp;gt; hab_status&lt;/P&gt;&lt;P&gt;Secure boot disabled&lt;/P&gt;&lt;P&gt;HAB Configuration: 0xf0, HAB State: 0x66&lt;/P&gt;&lt;P&gt;--------- HAB Event 1 -----------------&lt;BR /&gt;event data:&lt;BR /&gt;0xdb 0x00 0x14 0x42 0x33 0x0c 0xa0 0x00&lt;BR /&gt;0x00 0x00 0x00 0x00 0x00 0x91 0x00 0x00&lt;BR /&gt;0x00 0x00 0x01 0xe8&lt;/P&gt;&lt;P&gt;STS = HAB_FAILURE (0x33)&lt;BR /&gt;RSN = HAB_INV_ASSERTION (0x0C)&lt;BR /&gt;CTX = HAB_CTX_ASSERT (0xA0)&lt;BR /&gt;ENG = HAB_ENG_ANY (0x00)&lt;/P&gt;</description>
    <pubDate>Wed, 25 Jun 2025 08:21:32 GMT</pubDate>
    <dc:creator>LoongX</dc:creator>
    <dc:date>2025-06-25T08:21:32Z</dc:date>
    <item>
      <title>Imx6ull secure boot uboot failed to start</title>
      <link>https://community.nxp.com/t5/i-MX-Processors/Imx6ull-secure-boot-uboot-failed-to-start/m-p/2122952#M238716</link>
      <description>&lt;P&gt;I have two imx6ull core boards.The u-boot version is 2016.3&lt;/P&gt;&lt;P&gt;1.Generate relevant keys using CST tools&lt;BR /&gt;Core board A was burned &lt;STRONG&gt;band 3&lt;/STRONG&gt; using the contents of the fuse.bin file,and &lt;STRONG&gt;band 0 6 0x2&lt;/STRONG&gt; was alsoburned&lt;BR /&gt;Core board B is not treated as the control group.&lt;BR /&gt;2.mx6ullevk.h&lt;BR /&gt;-&amp;gt;add #define CONFIG_SECURE_BOOT #define CONFIG_CSF_SIZE 0x4000&lt;BR /&gt;3.make uboot&lt;BR /&gt;&amp;nbsp; ....................&lt;BR /&gt;./tools/mkimage -n board/freescale/mx6ullevk/imximage-ddr256.cfg.cfgtmp -T imximage -e 0x87800000 -d u-boot.bin u-boot.imx&lt;BR /&gt;Image Type: Freescale IMX Boot Image&lt;BR /&gt;Image Ver: 2 (i.MX53/6/7 compatible)&lt;BR /&gt;Mode: DCD&lt;BR /&gt;Data Size: 438272 Bytes = 428.00 kB = 0.42 MB&lt;BR /&gt;Load Address: 877ff420&lt;BR /&gt;Entry Point: 87800000&lt;BR /&gt;&lt;STRONG&gt;HAB Blocks: 877ff400 00000000 00066c00&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;xxx$ ll u-boot.imx&lt;BR /&gt;-rw-rw-r-- 1 xxx xxx 420864 Jun 1 15:38 u-boot.imx&lt;/P&gt;&lt;P&gt;4.cst_uboot.txt：&lt;BR /&gt;[Authenticate Data]&lt;BR /&gt;Verification index = 2&lt;BR /&gt;&lt;STRONG&gt;Blocks = 0x877FF400 0x00000000 0x00066C00 "u-boot.imx"&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;5.Execute Command&lt;BR /&gt;./cst -i csf_uboot.txt -o csf_uboot.bin&lt;BR /&gt;cat u-boot.imx csf_uboot.bin &amp;gt; u-boot-signed.imx&lt;/P&gt;&lt;P&gt;6.&lt;BR /&gt;Set the board to USB mode&lt;BR /&gt;./uuu.exe -b sd .\u-boot-signed.imx&lt;/P&gt;&lt;P&gt;7.&lt;BR /&gt;board A(burned fuse):&lt;BR /&gt;The serial port has no output&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;board B (Unburned fuse):&lt;/P&gt;&lt;P&gt;=&amp;gt; hab_status&lt;/P&gt;&lt;P&gt;Secure boot disabled&lt;/P&gt;&lt;P&gt;HAB Configuration: 0xf0, HAB State: 0x66&lt;/P&gt;&lt;P&gt;--------- HAB Event 1 -----------------&lt;BR /&gt;event data:&lt;BR /&gt;0xdb 0x00 0x14 0x42 0x33 0x0c 0xa0 0x00&lt;BR /&gt;0x00 0x00 0x00 0x00 0x00 0x91 0x00 0x00&lt;BR /&gt;0x00 0x00 0x01 0xe8&lt;/P&gt;&lt;P&gt;STS = HAB_FAILURE (0x33)&lt;BR /&gt;RSN = HAB_INV_ASSERTION (0x0C)&lt;BR /&gt;CTX = HAB_CTX_ASSERT (0xA0)&lt;BR /&gt;ENG = HAB_ENG_ANY (0x00)&lt;/P&gt;</description>
      <pubDate>Wed, 25 Jun 2025 08:21:32 GMT</pubDate>
      <guid>https://community.nxp.com/t5/i-MX-Processors/Imx6ull-secure-boot-uboot-failed-to-start/m-p/2122952#M238716</guid>
      <dc:creator>LoongX</dc:creator>
      <dc:date>2025-06-25T08:21:32Z</dc:date>
    </item>
    <item>
      <title>Re: Imx6ull secure boot uboot failed to start</title>
      <link>https://community.nxp.com/t5/i-MX-Processors/Imx6ull-secure-boot-uboot-failed-to-start/m-p/2123572#M238742</link>
      <description>&lt;P&gt;The&amp;nbsp;assertion event means that one of the following required areas is not signed as documented in the "Operations" subsection for authenticate_image() API:&lt;BR /&gt;– IVT&lt;BR /&gt;– DCD (if provided)&lt;BR /&gt;– Boot Data (initial byte, if provided)&lt;BR /&gt;– Entry point (initial word)&lt;BR /&gt;&lt;SPAN&gt;The 0x00 0x91 0x00 0x00, here the data block that doesn't have a required valid signature.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Regards&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Harvey&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 26 Jun 2025 03:07:27 GMT</pubDate>
      <guid>https://community.nxp.com/t5/i-MX-Processors/Imx6ull-secure-boot-uboot-failed-to-start/m-p/2123572#M238742</guid>
      <dc:creator>Harvey021</dc:creator>
      <dc:date>2025-06-26T03:07:27Z</dc:date>
    </item>
    <item>
      <title>Re: Imx6ull secure boot uboot failed to start</title>
      <link>https://community.nxp.com/t5/i-MX-Processors/Imx6ull-secure-boot-uboot-failed-to-start/m-p/2123677#M238751</link>
      <description>Hi，&lt;BR /&gt;I don't quite understand. How should I investigate this, or do you need me to provide data?&lt;BR /&gt;&lt;BR /&gt;Regards&lt;BR /&gt;LoongX</description>
      <pubDate>Thu, 26 Jun 2025 06:38:31 GMT</pubDate>
      <guid>https://community.nxp.com/t5/i-MX-Processors/Imx6ull-secure-boot-uboot-failed-to-start/m-p/2123677#M238751</guid>
      <dc:creator>LoongX</dc:creator>
      <dc:date>2025-06-26T06:38:31Z</dc:date>
    </item>
    <item>
      <title>Re: Imx6ull secure boot uboot failed to start</title>
      <link>https://community.nxp.com/t5/i-MX-Processors/Imx6ull-secure-boot-uboot-failed-to-start/m-p/2124479#M238788</link>
      <description>&lt;P&gt;&lt;SPAN&gt;It should be that you did not sign the DCD, which caused the HAB events and boot failure.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Regards&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Harvey&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 27 Jun 2025 06:52:14 GMT</pubDate>
      <guid>https://community.nxp.com/t5/i-MX-Processors/Imx6ull-secure-boot-uboot-failed-to-start/m-p/2124479#M238788</guid>
      <dc:creator>Harvey021</dc:creator>
      <dc:date>2025-06-27T06:52:14Z</dc:date>
    </item>
  </channel>
</rss>

