SHE-key attribute flags

取消
显示结果 
显示  仅  | 搜索替代 
您的意思是: 
已解决

SHE-key attribute flags

跳至解决方案
1,702 次查看
ale_di_vi
Contributor I

Hi,

I'm working in a project having the CSEc module (microcontroller S32K144). I know that, in order to update SHE-keys, 5 flags must be configured in order to generate the key in the M-format (Write Protection, Boot Protection, Debugger Usage Protection, Wildcard Protection and Key Usage Flag).

In some documents, I read also about Verify Only flag: if set when the key is used for CMAC, it can be used only to verify CMAC, otherwise the key can be used for verification and generation.

The question is: the flags are actually 5? what about the Verify Only flag?

Thank you in advance

0 项奖励
回复
1 解答
1,671 次查看
lukaszadrapa
NXP TechSupport
NXP TechSupport

Hi @ale_di_vi 

This is an extension to SHE specification. Search for "SFE" keyword (Security Flag Extension) in the reference manual and in the application note AN5401. This is a screenshot from the reference manual, description of Program Partition command:

lukaszadrapa_0-1696930974908.png

 

If you don't want to use this extension, just keep SFE as 0 when running Program Partition command.

Regards,

Lukas

在原帖中查看解决方案

0 项奖励
回复
2 回复数
1,672 次查看
lukaszadrapa
NXP TechSupport
NXP TechSupport

Hi @ale_di_vi 

This is an extension to SHE specification. Search for "SFE" keyword (Security Flag Extension) in the reference manual and in the application note AN5401. This is a screenshot from the reference manual, description of Program Partition command:

lukaszadrapa_0-1696930974908.png

 

If you don't want to use this extension, just keep SFE as 0 when running Program Partition command.

Regards,

Lukas

0 项奖励
回复
1,638 次查看
ale_di_vi
Contributor I
Ok, now it is clear.
Many thanks!
0 项奖励
回复