@LanBui
Hello,
The container signature, shown on the picture, is verified against the SGK key
certificate, which is then verified against the SRK table. Images are not checked
at this stage. But the images are checked / authenticated, using the SGK, later,
as shown on Figure 2 (Secure boot flow overview) of the app note.
Regards,
Yuri.