I am currently trying to implmement Secure Boot for an LS1017A. I discovered that the SoC is labeled as "without encryption". In the LS1028A Security Reference Manual section 3.2 it says that the CHA (Cryptographic hardware acceleration) module still supports some basic algortihms also on SoCs without encryption.
I am a bit unsure now if this module is necessary for Secure Boot or what the difference to the CAAM module is.
In any case, I would like to know: Is Secure boot is still possible on devices labeled as "without encryption"?