<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Secure boot failed on t2080qds in T-Series</title>
    <link>https://community.nxp.com/t5/T-Series/Secure-boot-failed-on-t2080qds/m-p/1965001#M5040</link>
    <description>&lt;P&gt;I am facing with same issue. I do not want to implement confidentiality, so I ignore OTPMK registers. I am in prototype stage, so I think I can also ignore PROG_SFP for now. Just powerin-up my custom board in SB_EN=1, BO_HO=1, then by connecting with ccs, I write SRKH registers, then release core 0. Blank screen in console and 0x101 error code in SCRATCHRW2 register.&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;How can I solve this issue with no confidentiality in prototype stage?&lt;/P&gt;</description>
    <pubDate>Tue, 01 Oct 2024 07:19:25 GMT</pubDate>
    <dc:creator>mertsalar137</dc:creator>
    <dc:date>2024-10-01T07:19:25Z</dc:date>
    <item>
      <title>Secure boot failed on t2080qds</title>
      <link>https://community.nxp.com/t5/T-Series/Secure-boot-failed-on-t2080qds/m-p/581426#M1282</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I'm working on secure boot for T2080QDS.I walked the steps,but I failed.All files come from SDK, and signed header by cst.&lt;/P&gt;&lt;P&gt;Steps like that:&lt;/P&gt;&lt;P&gt;set SW#6[OFF,OFF,OFF,OFF]&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;1.download u-boot,the file come from sdk2.0&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;=&amp;gt;tftp 1000000 u-boot-secure-boot-2016.01+fslgit-r0.bin&lt;/P&gt;&lt;P&gt;=&amp;gt;erase 0xEBF40000 +c0000&lt;/P&gt;&lt;P&gt;=&amp;gt;cp.b 1000000 0xEBF40000 c0000&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;2.download rcw,the file come from sdk2.0&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;=&amp;gt;tftp 1000000 rcw_66_15_1800MHz_sb.bin&lt;/P&gt;&lt;P&gt;=&amp;gt;erase 0xEC000000 +b0&lt;/P&gt;&lt;P&gt;=&amp;gt;cp.b 1000000 0xEC000000 b0&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;3.download uboot_header,the file come from uni_sign&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;=&amp;gt;tftp 1000000 hdr_uboot.out&lt;/P&gt;&lt;P&gt;=&amp;gt;erase ECB00000 +700&lt;/P&gt;&lt;P&gt;=&amp;gt;cp.b 1000000 ECB00000 700&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;4.write SRK Hash Value,the value come from uni_sign,the hign bit set low address.&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;mm 0xfe0e823c&lt;/P&gt;&lt;P&gt;fe0e823c: 00000000 ? e814394d&lt;/P&gt;&lt;P&gt;fe0e8240: 00000000 ? eb4b3c5e&lt;/P&gt;&lt;P&gt;fe0e8244: 00000000 ? a74d8688&lt;/P&gt;&lt;P&gt;fe0e8248: 00000000 ? 0c92fa19&lt;/P&gt;&lt;P&gt;fe0e824c: 00000000 ? 58173dfa&lt;/P&gt;&lt;P&gt;fe0e8250: 00000000 ? 67a8f87b&lt;/P&gt;&lt;P&gt;fe0e8254: 00000000 ? 89750515&lt;/P&gt;&lt;P&gt;fe0e8258: 00000000 ? 34487261&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;5.write OTPMKR, the value come from gen_otpmk_drbg,the hign bit set low address.&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;mm 0xfe0e821c&lt;/P&gt;&lt;P&gt;fe0e821c: 00000000 ? e814394d&lt;/P&gt;&lt;P&gt;fe0e8220: FFFFFFFF? eb4b3c5e&lt;/P&gt;&lt;P&gt;fe0e8224: FFFFFFFF? a74d8688&lt;/P&gt;&lt;P&gt;fe0e8228: FFFFFFFF? 0c92fa19&lt;/P&gt;&lt;P&gt;fe0e822c: FFFFFFFF? 58173dfa&lt;/P&gt;&lt;P&gt;fe0e8230: FFFFFFFF ? 67a8f87b&lt;/P&gt;&lt;P&gt;fe0e8234: FFFFFFFF? 89750515&lt;/P&gt;&lt;P&gt;fe0e8238: FFFFFFFF? 34487261&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;6.write FSL_UID and OEM_UID&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;mm 0xfe0e825c&lt;/P&gt;&lt;P&gt;fe0e825c: 00000000 ? 99999999&lt;/P&gt;&lt;P&gt;mm 0xfe0e8270&lt;/P&gt;&lt;P&gt;fe0e8270: 00000000 ? 00000001&lt;/P&gt;&lt;P style="min-height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;shutdown device,and set SW#6[OFF,ON,OFF,OFF],boot this device,no message output.&lt;/P&gt;&lt;P&gt;error code at address 0xfe314014 is 8800AB00&lt;/P&gt;&lt;P&gt;SECMON_HPSR field descriptions&lt;/P&gt;&lt;DIV class="j-rte-table"&gt;&lt;TABLE border="1" class="jiveBorder" style="border: 1px solid #c6c6c6; width: 100%;"&gt;&lt;THEAD&gt;&lt;TR&gt;&lt;TH style="border:1px solid black;border: 1px solid #c6c6c6;padding: 6px;color: #505050;background-color: #f2f2f2;text-align: left;" valign="middle"&gt;&lt;STRONG&gt;Field&lt;/STRONG&gt;&lt;/TH&gt;&lt;TH style="border:1px solid black;border: 1px solid #c6c6c6;padding: 6px;color: #505050;background-color: #f2f2f2;text-align: left;" valign="middle"&gt;&lt;STRONG&gt;Description&lt;/STRONG&gt;&lt;/TH&gt;&lt;/TR&gt;&lt;/THEAD&gt;&lt;TBODY&gt;&lt;TR&gt;&lt;TD style="border:1px solid black;border: 1px solid #c6c6c6;padding: 6px;"&gt;&lt;P&gt;0&lt;/P&gt;&lt;P&gt;ZMK_ZERO&lt;/P&gt;&lt;/TD&gt;&lt;TD style="border:1px solid black;border: 1px solid #c6c6c6;padding: 6px;"&gt;&lt;P&gt;Zeroizable Master Key is Equal to Zero. When set, this bit triggers “bad key” violation if theZMKis selected&lt;/P&gt;&lt;P&gt;for use&lt;/P&gt;&lt;P&gt;NOTE: The reset value of this bit depends on the value in the LPZMKR.&lt;/P&gt;&lt;P&gt;0 The ZMK is not zero&lt;/P&gt;&lt;P&gt;1 The ZMK is zero&lt;/P&gt;&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD style="border:1px solid black;border: 1px solid #c6c6c6;padding: 6px;"&gt;&lt;P&gt;1–3&lt;/P&gt;&lt;P&gt;-&lt;/P&gt;&lt;/TD&gt;&lt;TD style="border:1px solid black;border: 1px solid #c6c6c6;padding: 6px;"&gt;&lt;P&gt;This field is reserved.&lt;/P&gt;&lt;P&gt;Reserved&lt;/P&gt;&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD style="border:1px solid black;border: 1px solid #c6c6c6;padding: 6px;"&gt;&lt;P&gt;4&lt;/P&gt;&lt;P&gt;OTPMK_ZERO&lt;/P&gt;&lt;/TD&gt;&lt;TD style="border:1px solid black;border: 1px solid #c6c6c6;padding: 6px;"&gt;&lt;P&gt;One Time Programmable Master Key = 0 Error&lt;/P&gt;&lt;P&gt;0 The OTPMK is not zero&lt;/P&gt;&lt;P&gt;1 The OTPMK is zero&lt;/P&gt;&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD style="border:1px solid black;border: 1px solid #c6c6c6;padding: 6px;"&gt;&lt;P&gt;5–6&lt;/P&gt;&lt;P&gt;-&lt;/P&gt;&lt;/TD&gt;&lt;TD style="border:1px solid black;border: 1px solid #c6c6c6;padding: 6px;"&gt;&lt;P&gt;This field is reserved.&lt;/P&gt;&lt;P&gt;Reserved&lt;/P&gt;&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD style="border:1px solid black;border: 1px solid #c6c6c6;padding: 6px;"&gt;&lt;P&gt;7&lt;/P&gt;&lt;P&gt;PE&lt;/P&gt;&lt;/TD&gt;&lt;TD style="border:1px solid black;border: 1px solid #c6c6c6;padding: 6px;"&gt;&lt;P&gt;OTPMK Parity Error. This bit is set to '1' for any odd number of errors in the OTPMK, including errors in&lt;/P&gt;&lt;P&gt;the error detection bits themselves. If any of the OTPMK_SYNDROME bits are set, and the OTRMK Parity&lt;/P&gt;&lt;P&gt;Error = 0, then the OTPMK has 2 or more errors and the failing bit position cannot be determined.&lt;/P&gt;&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD style="border:1px solid black;border: 1px solid #c6c6c6;padding: 6px;"&gt;&lt;P&gt;8–15&lt;/P&gt;&lt;P&gt;OTPMK_&lt;/P&gt;&lt;P&gt;SYNDROME&lt;/P&gt;&lt;/TD&gt;&lt;TD style="border:1px solid black;border: 1px solid #c6c6c6;padding: 6px;"&gt;&lt;P&gt;This value indicates the error location in case of a single-bit error in the OTPMK. For example, syndrome&lt;/P&gt;&lt;P&gt;word 10010110 indicates that key bit 150 has an error.&lt;/P&gt;&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD style="border:1px solid black;border: 1px solid #c6c6c6;padding: 6px;"&gt;&lt;P&gt;16–19&lt;/P&gt;&lt;P&gt;-&lt;/P&gt;&lt;/TD&gt;&lt;TD style="border:1px solid black;border: 1px solid #c6c6c6;padding: 6px;"&gt;&lt;P&gt;This field is reserved.&lt;/P&gt;&lt;P&gt;Reserved&lt;/P&gt;&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD style="border:1px solid black;border: 1px solid #c6c6c6;padding: 6px;"&gt;&lt;P&gt;20–23&lt;/P&gt;&lt;P&gt;SSM_ST&lt;/P&gt;&lt;/TD&gt;&lt;TD style="border:1px solid black;border: 1px solid #c6c6c6;padding: 6px;"&gt;&lt;P&gt;Security monitor state. This field contains the encoded state of the security monitor's internal state&lt;/P&gt;&lt;P&gt;machine. The encoding of the possible states are:&lt;/P&gt;&lt;P&gt;0000 Init&lt;/P&gt;&lt;P&gt;1001 Check&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;1011 Non-Secure&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;1101 Trusted&lt;/P&gt;&lt;P&gt;1111 Secure&lt;/P&gt;&lt;P&gt;0011 Soft Fail&lt;/P&gt;&lt;P&gt;0001 Hard Fail&lt;/P&gt;&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD style="border:1px solid black;border: 1px solid #c6c6c6;padding: 6px;"&gt;&lt;P&gt;24–31&lt;/P&gt;&lt;P&gt;-&lt;/P&gt;&lt;/TD&gt;&lt;TD style="border:1px solid black;border: 1px solid #c6c6c6;padding: 6px;"&gt;&lt;P&gt;This field is reserved.&lt;/P&gt;&lt;P&gt;Reserved&lt;/P&gt;&lt;/TD&gt;&lt;/TR&gt;&lt;/TBODY&gt;&lt;/TABLE&gt;&lt;/DIV&gt;&lt;P&gt;Looks like security monitor state is "&lt;STRONG&gt;1011 Non-Secure&lt;/STRONG&gt;".&lt;/P&gt;&lt;P&gt;error code at address 0xfe0e0200 is 00000101&lt;/P&gt;&lt;DIV class="j-rte-table"&gt;&lt;TABLE border="1" cellpadding="4" cellspacing="0" data-id="AA1003308_2" frame="border" rules="all" style="font-size: 14px; color: #646464; font-family: Arial, sans-serif;" summary=""&gt;&lt;TBODY data-cid="1kt6U6"&gt;&lt;TR data-cid="1dIFMd"&gt;&lt;TD class="cellrowborder" data-cid="2C9xQk" headers="d2920e578 " style="border:1px solid black;border-bottom-width: 1px;border-right-width: 1px;border-style: none solid solid none;" valign="top" width="11.99%"&gt;0x101&lt;/TD&gt;&lt;TD class="cellrowborder" data-cid="1ohRyA" headers="d2920e581 " style="border:1px solid black;border-bottom-width: 1px;border-right-width: 1px;border-style: none solid solid none;" valign="top" width="36.19%"&gt;ERROR_STATE_NOT_CHECK&lt;/TD&gt;&lt;TD class="cellrowborder" data-cid="4ZRvp" headers="d2920e584 " style="border:1px solid black;border-bottom-width: 1px;border-right-width: 1px;border-style: none solid solid none;" valign="top" width="51.82%"&gt;SEC_MON State Machine not in CHECK state at start of ISBC. Some Security violation could have occurred.&lt;/TD&gt;&lt;/TR&gt;&lt;/TBODY&gt;&lt;/TABLE&gt;&lt;/DIV&gt;&lt;P style="min-height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The RCW that I used&amp;nbsp; comes from SDK, and it truly enable secure boot.&lt;/P&gt;&lt;P&gt;When I rebooted the device,All "mm" values was gone.&lt;/P&gt;&lt;P style="min-height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Please give me some advice,Or point some error.&lt;/P&gt;&lt;P style="min-height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thank you very much.&lt;/P&gt;&lt;P&gt;Yi.&lt;/P&gt;&lt;P style="min-height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/P&gt;&lt;P style="min-height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 14pt;"&gt;&lt;STRONG&gt;input_uboot_nor_secure like that:&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P style="min-height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;/* Copyright (c) 2013 Freescale Semiconductor, Inc.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt; * All rights reserved.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt; */&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;---------------------------------------------------&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;# Specify the platform. [Mandatory]&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;# Choose Platform - 1010/1040/2041/3041/4080/5020/5040/9131/9132/9164/4240/C290&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;PLATFORM=4240&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;# ESBC Flag. Specify ESBC=0 to sign u-boot and ESBC=1 to sign ESBC images.(default is 0)&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;ESBC=0&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;---------------------------------------------------&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;# Entry Point/Image start address field in the header.[Mandatory]&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;# (default=ADDRESS of first file specified in images)&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;ENTRY_POINT=cffffffc&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;---------------------------------------------------&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;# Specify the file name of the keys seperated by comma.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;# The number of files and key select should lie between 1 and 4 for 1040 and C290.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;# For rest of the platforms only one key is required and key select should not be provided.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;# USAGE (for 4080/5020/5040/3041/2041/1010/913x): PRI_KEY = &amp;lt;key1.pri&amp;gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;# USAGE (for 1040/C290/9164/4240): PRI_KEY = &amp;lt;key1.pri&amp;gt;, &amp;lt;key2.pri&amp;gt;, &amp;lt;key3.pri&amp;gt;, &amp;lt;key4.pri&amp;gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;# PRI_KEY (Default private key :srk.pri) - [Optional]&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;PRI_KEY=srk.pri&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;# PUB_KEY (Default public key :srk.pub) - [Optional]&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;PUB_KEY=srk.pub&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;# Please provide KEY_SELECT(between 1 to 4) (Required for 1040/C290/9164/4240 only) - [Optional]&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;KEY_SELECT=&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;---------------------------------------------------&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;# Specify SG table address, only for (2041/3041/4080/5020/5040) with ESBC=0 - [Optional]&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;SG_TABLE_ADDR=&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;---------------------------------------------------&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;# Specify the target where image will be loaded. (Default is NOR_16B) - [Optional]&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;# Only required for Non-PBL Devices (1010/1040/9131/9132i/C290)&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;# Select from - NOR_8B/NOR_16B/NAND_8B_512/NAND_8B_2K/NAND_8B_4K/NAND_16B_512/NAND_16B_2K/NAND_16B_4K/SD/MMC/SPI&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;IMAGE_TARGET=&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;---------------------------------------------------&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;# Specify IMAGE, Max 8 images are possible. DST_ADDR is required only for Non-PBL Platform. [Mandatory]&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;# USAGE : IMAGE_NO = {IMAGE_NAME, SRC_ADDR, DST_ADDR}&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;IMAGE_1={u-boot.bin,cff40000,ffffffff}&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;IMAGE_2={,,}&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;IMAGE_3={,,}&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;IMAGE_4={,,}&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;IMAGE_5={,,}&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;IMAGE_6={,,}&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;IMAGE_7={,,}&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;IMAGE_8={,,}&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;---------------------------------------------------&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;# Specify OEM AND FSL ID to be populated in header. [Optional]&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;# e.g FSL_UID=11111111&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;FSL_UID=&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;OEM_UID=&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;---------------------------------------------------&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;# Specify the file names of csf header and sg table. (Default :hdr.out) [Optional]&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;OUTPUT_HDR_FILENAME=hdr_uboot.out&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;# Specify the file names of hash file and sign file.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;HASH_FILENAME=img_hash.out&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;INPUT_SIGN_FILENAME=sign.out&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;# Specify the signature size.It is mandatory when neither public key nor private key is specified.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;# Signature size would be [0x80 for 1k key, 0x100 for 2k key, and 0x200 for 4k key].&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;SIGN_SIZE=0x100&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;---------------------------------------------------&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;# Specify the output file name of sg table. (Default :sg_table.out). [Optional]&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;# Please note that OUTPUT SG BIN is only required for 2041/3041/4080/5020/5040 when ESBC flag is not set.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;OUTPUT_SG_BIN=&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;---------------------------------------------------&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;# Following fields are Required for 4240/9164/1040/C290 only&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;# Specify House keeping Area&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;# Required for 4240/9164/1040/C290 only when ESBC flag is not set. [Mandatory]&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;HK_AREA_POINTER=bff00000&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;HK_AREA_SIZE=00010000&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;---------------------------------------------------&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;# Following field Required for 4240/9164/1040/C290 only&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;# Specify Secondary Image Flag. (0 or 1) - [Optional]&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;# (Default is 0)&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;SEC_IMAGE=&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;---------------------------------------------------&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;Original Attachment has been moved to: &lt;A _jive_internal="true" href="https://community.nxp.com/docs/DOC-337227"&gt;uboot_secure_boot.zip&lt;/A&gt;&lt;/STRONG&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 28 Jun 2016 09:10:08 GMT</pubDate>
      <guid>https://community.nxp.com/t5/T-Series/Secure-boot-failed-on-t2080qds/m-p/581426#M1282</guid>
      <dc:creator>yi_li</dc:creator>
      <dc:date>2016-06-28T09:10:08Z</dc:date>
    </item>
    <item>
      <title>Re: Secure boot failed on t2080qds</title>
      <link>https://community.nxp.com/t5/T-Series/Secure-boot-failed-on-t2080qds/m-p/581427#M1283</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Is any feedback ? thank you.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 29 Jun 2016 08:55:51 GMT</pubDate>
      <guid>https://community.nxp.com/t5/T-Series/Secure-boot-failed-on-t2080qds/m-p/581427#M1283</guid>
      <dc:creator>yi_li</dc:creator>
      <dc:date>2016-06-29T08:55:51Z</dc:date>
    </item>
    <item>
      <title>Re: Secure boot failed on t2080qds</title>
      <link>https://community.nxp.com/t5/T-Series/Secure-boot-failed-on-t2080qds/m-p/581428#M1284</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello Li Yi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Let's continue to discuss your T2080 secure boot problem.&lt;/P&gt;&lt;P&gt;Would you please provide your PBL(RCW) file used for secure boot?&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;Have a great day,&lt;BR /&gt;Yiping&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;-----------------------------------------------------------------------------------------------------------------------&lt;BR /&gt;Note: If this post answers your question, please click the Correct Answer button. Thank you!&lt;BR /&gt;-----------------------------------------------------------------------------------------------------------------------&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 08 Jul 2016 05:11:56 GMT</pubDate>
      <guid>https://community.nxp.com/t5/T-Series/Secure-boot-failed-on-t2080qds/m-p/581428#M1284</guid>
      <dc:creator>yipingwang</dc:creator>
      <dc:date>2016-07-08T05:11:56Z</dc:date>
    </item>
    <item>
      <title>Re: Secure boot failed on t2080qds</title>
      <link>https://community.nxp.com/t5/T-Series/Secure-boot-failed-on-t2080qds/m-p/581429#M1285</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Now ,the SRK hash and &lt;SPAN style="color: #51626f; font-family: arial, helvetica, 'helvetica neue', verdana, sans-serif;"&gt;OTPMK are burned into fuse array, and &lt;SPAN style="color: #51626f; font-family: arial, helvetica, 'helvetica neue', verdana, sans-serif;"&gt;error code &lt;SPAN style="color: #51626f; font-family: arial, helvetica, 'helvetica neue', verdana, sans-serif;"&gt;at address 0xfe314014 is 8000AD00. The &lt;SPAN style="font-size: 11.0pt; font-family: 'Calibri','sans-serif';"&gt;SCRATCHRW2 is &lt;SPAN style="font-size: 11.0pt; font-family: 'Calibri','sans-serif';"&gt;00000000.but no print on u-boot console.The RCW comes from SDK2.0.&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 08 Jul 2016 06:19:03 GMT</pubDate>
      <guid>https://community.nxp.com/t5/T-Series/Secure-boot-failed-on-t2080qds/m-p/581429#M1285</guid>
      <dc:creator>yi_li</dc:creator>
      <dc:date>2016-07-08T06:19:03Z</dc:date>
    </item>
    <item>
      <title>Re: Secure boot failed on t2080qds</title>
      <link>https://community.nxp.com/t5/T-Series/Secure-boot-failed-on-t2080qds/m-p/581430#M1286</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;&lt;SPAN style="color: #51626f; font-family: arial, helvetica, 'helvetica neue', verdana, sans-serif;"&gt;RCW please see attachment.&lt;/SPAN&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 08 Jul 2016 06:24:36 GMT</pubDate>
      <guid>https://community.nxp.com/t5/T-Series/Secure-boot-failed-on-t2080qds/m-p/581430#M1286</guid>
      <dc:creator>yi_li</dc:creator>
      <dc:date>2016-07-08T06:24:36Z</dc:date>
    </item>
    <item>
      <title>Re: Secure boot failed on t2080qds</title>
      <link>https://community.nxp.com/t5/T-Series/Secure-boot-failed-on-t2080qds/m-p/581431#M1287</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello &lt;SPAN class="replyToName"&gt;Yi Li&lt;/SPAN&gt;&lt;STRONG class="font-color-meta replyTo"&gt;&lt;SPAN class="replyToName"&gt;,&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please make sure the u-boot image is used for secure boot.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please try to use the attached configuration file to sign your u-boot image again.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;Have a great day,&lt;BR /&gt;Yiping&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;-----------------------------------------------------------------------------------------------------------------------&lt;BR /&gt;Note: If this post answers your question, please click the Correct Answer button. Thank you!&lt;BR /&gt;-----------------------------------------------------------------------------------------------------------------------&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 08 Jul 2016 07:19:36 GMT</pubDate>
      <guid>https://community.nxp.com/t5/T-Series/Secure-boot-failed-on-t2080qds/m-p/581431#M1287</guid>
      <dc:creator>yipingwang</dc:creator>
      <dc:date>2016-07-08T07:19:36Z</dc:date>
    </item>
    <item>
      <title>Re: Secure boot failed on t2080qds</title>
      <link>https://community.nxp.com/t5/T-Series/Secure-boot-failed-on-t2080qds/m-p/581432#M1288</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;My u-boot file comes from &amp;lt;SDK folder&amp;gt;/QorIQ-SDK-V2.0-20160527-yocto/build_t2080qds/tmp/deploy/images/t2080qds, And name is u-boot-secure-boot-2016.01+fslgit-r0.bin.&lt;/P&gt;&lt;P&gt;My input_uboot_nor_secure file is same with yours. It is comes from &amp;lt;SDK folder&amp;gt;/QorIQ-SDK-V2.0-20160527-yocto/build_t2080qds/tmp/sysroots/x86_64-linux/usr/bin/cst/input_files/uni_sign/t1_t2_t4, and I do not modify it.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 08 Jul 2016 07:36:14 GMT</pubDate>
      <guid>https://community.nxp.com/t5/T-Series/Secure-boot-failed-on-t2080qds/m-p/581432#M1288</guid>
      <dc:creator>yi_li</dc:creator>
      <dc:date>2016-07-08T07:36:14Z</dc:date>
    </item>
    <item>
      <title>Re: Secure boot failed on t2080qds</title>
      <link>https://community.nxp.com/t5/T-Series/Secure-boot-failed-on-t2080qds/m-p/581433#M1289</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Yiping ,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; We have contact the NXP china site&amp;nbsp; , Because our project is urgent , so we want to carry our board into NXP china site to ask help . Could you please help to send a request to china site ? If you need PO number ,I can send it to you ,thank you very much. &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 08 Jul 2016 07:52:33 GMT</pubDate>
      <guid>https://community.nxp.com/t5/T-Series/Secure-boot-failed-on-t2080qds/m-p/581433#M1289</guid>
      <dc:creator>yi_li</dc:creator>
      <dc:date>2016-07-08T07:52:33Z</dc:date>
    </item>
    <item>
      <title>Re: Secure boot failed on t2080qds</title>
      <link>https://community.nxp.com/t5/T-Series/Secure-boot-failed-on-t2080qds/m-p/581434#M1290</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello Yi Li,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You could submit a Service Request following &lt;A href="https://community.nxp.com/thread/381898"&gt;How I could create a Service Request?&lt;/A&gt; .&lt;/P&gt;&lt;P&gt;Please provide all your images and SRK hash key, we will do verification for you on our target boards.&lt;/P&gt;&lt;P&gt;If you are urgent, you could send your images and SRK hash key to me through email directly, I will verify for you.&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;Have a great day,&lt;BR /&gt;Yiping&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;-----------------------------------------------------------------------------------------------------------------------&lt;BR /&gt;Note: If this post answers your question, please click the Correct Answer button. Thank you!&lt;BR /&gt;-----------------------------------------------------------------------------------------------------------------------&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 08 Jul 2016 08:02:12 GMT</pubDate>
      <guid>https://community.nxp.com/t5/T-Series/Secure-boot-failed-on-t2080qds/m-p/581434#M1290</guid>
      <dc:creator>yipingwang</dc:creator>
      <dc:date>2016-07-08T08:02:12Z</dc:date>
    </item>
    <item>
      <title>Re: Secure boot failed on t2080qds</title>
      <link>https://community.nxp.com/t5/T-Series/Secure-boot-failed-on-t2080qds/m-p/581435#M1291</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Yiping,&lt;/P&gt;&lt;P&gt;Please help me to verify it,I will send them by email.&lt;/P&gt;&lt;P&gt;Yi.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 08 Jul 2016 08:29:08 GMT</pubDate>
      <guid>https://community.nxp.com/t5/T-Series/Secure-boot-failed-on-t2080qds/m-p/581435#M1291</guid>
      <dc:creator>yi_li</dc:creator>
      <dc:date>2016-07-08T08:29:08Z</dc:date>
    </item>
    <item>
      <title>Re: Secure boot failed on t2080qds</title>
      <link>https://community.nxp.com/t5/T-Series/Secure-boot-failed-on-t2080qds/m-p/581436#M1292</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I added the attachment,if you don't receive it by email,you can download this.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 08 Jul 2016 08:54:23 GMT</pubDate>
      <guid>https://community.nxp.com/t5/T-Series/Secure-boot-failed-on-t2080qds/m-p/581436#M1292</guid>
      <dc:creator>yi_li</dc:creator>
      <dc:date>2016-07-08T08:54:23Z</dc:date>
    </item>
    <item>
      <title>Re: Secure boot failed on t2080qds</title>
      <link>https://community.nxp.com/t5/T-Series/Secure-boot-failed-on-t2080qds/m-p/581437#M1293</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello &lt;SPAN class="replyToName"&gt;Yi Li,&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class="replyToName"&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class="replyToName"&gt;I found you used "&lt;SPAN class="replyToName"&gt;ESBC_HDRADDR=c0b00000" in the file input_uboot_nor_secure, did you use ie_keys(generate keys with --key_ext option)? If not, please only use files in cst/input_files/uni_sign/t1_t2_t4.&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class="replyToName"&gt;&lt;SPAN class="replyToName"&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class="replyToName"&gt;&lt;SPAN class="replyToName"&gt;&lt;/SPAN&gt;&lt;SPAN class="replyToName"&gt;Thanks,&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class="replyToName"&gt;&lt;SPAN class="replyToName"&gt;Yiping&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 08 Jul 2016 09:58:39 GMT</pubDate>
      <guid>https://community.nxp.com/t5/T-Series/Secure-boot-failed-on-t2080qds/m-p/581437#M1293</guid>
      <dc:creator>yipingwang</dc:creator>
      <dc:date>2016-07-08T09:58:39Z</dc:date>
    </item>
    <item>
      <title>Re: Secure boot failed on t2080qds</title>
      <link>https://community.nxp.com/t5/T-Series/Secure-boot-failed-on-t2080qds/m-p/581438#M1294</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello Yi Li,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I know that this was some time ago but do you remember how you got rid of the ERROR_STATE_NOT_CHECK, any clues would be helpful.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Best regards,&lt;/P&gt;&lt;P&gt;Andrew&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 22 Feb 2018 11:13:43 GMT</pubDate>
      <guid>https://community.nxp.com/t5/T-Series/Secure-boot-failed-on-t2080qds/m-p/581438#M1294</guid>
      <dc:creator>andrewbanda</dc:creator>
      <dc:date>2018-02-22T11:13:43Z</dc:date>
    </item>
    <item>
      <title>Re: Secure boot failed on t2080qds</title>
      <link>https://community.nxp.com/t5/T-Series/Secure-boot-failed-on-t2080qds/m-p/581439#M1295</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I didn't see that this problem was resolved. I am experiencing the same symptoms on my T2080QDS and using the U-Boot (u-boot-secure-boot-2016.01+fslgit-r0.bin) and RCW (rcw_66_15_1800MHz_sb.bin) from QorIQ Linux SDK v2.0-1703 yocto project. I'm using the same input file mentioned in this thread to sign and generate the CSF. The files are programmed to the altbank (vbank4) in NOR Flash. I have no output on the serial output. When I attach the CW TAP Probe and view the&amp;nbsp;SCRATCHRW2 value, it is 0x00000000. The SECMON_HPSR value is 0x8000ad00. Any suggestions?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;Larry&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 18 Feb 2020 18:10:56 GMT</pubDate>
      <guid>https://community.nxp.com/t5/T-Series/Secure-boot-failed-on-t2080qds/m-p/581439#M1295</guid>
      <dc:creator>lawrence_d_lamb</dc:creator>
      <dc:date>2020-02-18T18:10:56Z</dc:date>
    </item>
    <item>
      <title>Re: Secure boot failed on t2080qds</title>
      <link>https://community.nxp.com/t5/T-Series/Secure-boot-failed-on-t2080qds/m-p/1965001#M5040</link>
      <description>&lt;P&gt;I am facing with same issue. I do not want to implement confidentiality, so I ignore OTPMK registers. I am in prototype stage, so I think I can also ignore PROG_SFP for now. Just powerin-up my custom board in SB_EN=1, BO_HO=1, then by connecting with ccs, I write SRKH registers, then release core 0. Blank screen in console and 0x101 error code in SCRATCHRW2 register.&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;How can I solve this issue with no confidentiality in prototype stage?&lt;/P&gt;</description>
      <pubDate>Tue, 01 Oct 2024 07:19:25 GMT</pubDate>
      <guid>https://community.nxp.com/t5/T-Series/Secure-boot-failed-on-t2080qds/m-p/1965001#M5040</guid>
      <dc:creator>mertsalar137</dc:creator>
      <dc:date>2024-10-01T07:19:25Z</dc:date>
    </item>
    <item>
      <title>Re: Secure boot failed on t2080qds</title>
      <link>https://community.nxp.com/t5/T-Series/Secure-boot-failed-on-t2080qds/m-p/1995431#M5082</link>
      <description>&lt;P&gt;To resolve the "Secure Boot failed on T2080QDS" issue:&lt;/P&gt;&lt;OL&gt;&lt;LI&gt;&lt;STRONG&gt;Verify Boot Code&lt;/STRONG&gt;: Ensure the boot firmware and code are signed with valid keys.&lt;/LI&gt;&lt;LI&gt;&lt;STRONG&gt;Check Configuration&lt;/STRONG&gt;: Confirm secure boot settings in the configuration align with your key setup.&lt;/LI&gt;&lt;LI&gt;&lt;STRONG&gt;Debug Mode&lt;/STRONG&gt;: Use diagnostic tools to pinpoint the failure stage.&lt;/LI&gt;&lt;LI&gt;&lt;STRONG&gt;Hardware Reset&lt;/STRONG&gt;: Perform a hardware reset and reflash firmware if needed.&lt;/LI&gt;&lt;/OL&gt;&lt;P&gt;Here's an image depicting a professional troubleshooting setup for secure boot issues on T2080QDS hardware. | &lt;A href="https://community.nxp.com/" target="_self"&gt;NXP&lt;/A&gt;&amp;nbsp; -&amp;nbsp; &lt;A href="https://makpietravels.com/" target="_self"&gt;MakPie&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screenshot 2024-11-15 172114.png" style="width: 600px;"&gt;&lt;img src="https://community.nxp.com/t5/image/serverpage/image-id/310808iB375193511E7F855/image-size/large?v=v2&amp;amp;px=999" role="button" title="Screenshot 2024-11-15 172114.png" alt="Screenshot 2024-11-15 172114.png" /&gt;&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 15 Nov 2024 11:53:15 GMT</pubDate>
      <guid>https://community.nxp.com/t5/T-Series/Secure-boot-failed-on-t2080qds/m-p/1995431#M5082</guid>
      <dc:creator>williamson1</dc:creator>
      <dc:date>2024-11-15T11:53:15Z</dc:date>
    </item>
  </channel>
</rss>

