Clarification on Secure Boot Flow for LX2160A

取消
显示结果 
显示  仅  | 搜索替代 
您的意思是: 

Clarification on Secure Boot Flow for LX2160A

5,177 次查看
harisankar2001
Contributor I

Dear NXP Team,

I am writing to seek clarification regarding the secure boot process for the LX2160A. Based on my understanding, I have outlined the secure boot flow in the attached diagram. I would like to confirm if my interpretation aligns with the expected procedure.

harisankar2001_0-1724046609414.png

 

I have attached the flowchart for your reference. Could you please review this flowchart and confirm if this is the correct process for implementing secure boot on the LX2160A?

Additionally, if there are any steps or details that I might have missed or misinterpreted, I would greatly appreciate your guidance.

Thank you for your support and assistance.

 

 

标记 (1)
0 项奖励
回复
4 回复数

5,149 次查看
yipingwang
NXP TechSupport
NXP TechSupport

During development stage, we recommend customer use CCS provided in CodeWarrior to connect to the target to write values to SRKH shadow registers.

The user needs to program image to the target board before writing SRKH.

0 项奖励
回复

5,128 次查看
harisankar2001
Contributor I

Hi  yipingwang,

Thank you for your prompt response. We are currently working on a custom board based on the LX2160A.

I have one additional question regarding the secure boot process. In my previous message, I attached a flowchart detailing the process. Could you please clarify whether the fusing process for the public and private keys follows the same procedure, or if there are different steps involved for fusing the private key? If they differ, I would greatly appreciate it if you could share the specific steps required for private key fusing.

Thank you for your support.

0 项奖励
回复

5,115 次查看
yipingwang
NXP TechSupport
NXP TechSupport

Do you mean fuse OPTMK?

For development stage, please do secure boot with the following process.

  1. Enabling POVDD and only blow OTPMK to fuse array following below_OTPMK.txt.
  2. Build secure boot firmware image and deploy it to the target board.
  3. Use CCS to put the LX2160A in RSP and write SRKH in SFP mirror registers following ccs_secureboot.txt.

 

0 项奖励
回复

3,639 次查看
harisankar2001
Contributor I

Hi yipingwang,

Thank you for your response.

We are currently conducting a demo on the LA1224RDB board. Could you please clarify whether it is feasible to implement secure boot on the LA1224RDB board? Alternatively, if full secure boot implementation is not supported on this board, would it be possible to only boot the secure boot process?

Looking forward to your guidance.

0 项奖励
回复