Hi,
We are using i.MX8mini & trying to understand the CST tool to sign the images. Below are my questions,
- Does CST(cst-3.3.1 or 3.3.2) tool have inbuilt support to connect to API based HSM to get the image signed?
CST tool ------> API server -----> Digicert HSM
2. Does pre-built cst-3.3.2 have default built in support to communicate with HSM? or do we need to rebuild again the cst-3.3.2 for CST-HSM?
3. Can we build the cst-3.3.2 tool natively without using the docker file? What are the steps or guidelines?
4. Can we use the CST tool to access the remote HSM which is not in our network? Like DigiCert HSM?
5. We have proven signing PKI structure for i.MX6, can we use the same PKI key's & cert for i.MX8(i.e. CA, SRK, IMG & CSF)?
Thanks