HAB on Nitrogen_6X IMX6Q board

cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 

HAB on Nitrogen_6X IMX6Q board

4,447 Views
veezhi
Contributor II

I am trying to get HAB configured on Nitrogen_6X IMX6Q SOM board from boundary devices.

The board allows u-boot through NOR-Flash or USB. We use the freescale u-boot code as that has HAB features enabled.

The IMX6q allows secure boot only in "Closed" state.

The fusing of SRK key has happened fine. The signed image is not getting authenticated.

The examples for saberlite use the SD card as the boot media from which it reads the u-boot image.

Just to know if any one of you have configured secure boot through NOR Flash or USB.

Labels (1)
8 Replies

2,473 Views
admin
Specialist II

TroyKisky, pejmankalkhoran, EricNelson at Boundary Devices - can you help with this question?  Thanks.

0 Kudos
Reply

2,473 Views
EricNelson
Senior Contributor II

Hi Grant,

While we haven't walked through this process, I believe veezhi has been successful in getting this to work.

Kamakoti, can you confirm?

0 Kudos
Reply

2,473 Views
veezhi
Contributor II

Yes, we have been successful in getting HAB TO work on nitrogen 6x SOM. I

have created a documentation which I shall forward to eric for uploading in

relevant forums.

Regards

Kamakoti

On 20 Apr 2013 05:08, "Eric Nelson" <eric.nelson@boundarydevices.com>

2,473 Views
EricNelson
Senior Contributor II

Thanks for sharing this Kamakoti.

Nicely done!

2,473 Views
dhanunjaykatta
Contributor II

Hi Eric,

I have a doubt on IMX6 secure boot flow, Can we able to authenticate bare-metal application flow (BootROM--->Bootloader--->RTOS-->APP)in this flow how can i create signed images?

Is there any way without burn the key to efuse, while in development?

2,473 Views
admin
Specialist II

Eric and Kamakoti - thanks much for your quick response and valuable input!

0 Kudos
Reply

2,473 Views
MickeyI
Contributor III

Great document, thanks!

I have a question in regard to what's been written about using u-boot 2013. The document says there's no support for secure boot on u-boot 2013. I can see the binary looks very different from the 2009-08 that comes with freescale's BSP.

(For example, I can't find an IVT like struct at offset 0x400 in the binary file).

Has anything changed recently in that regard? Is it possible to do Secure Boot on 2013? From what I looked up, there are many changes that boundary devices did in their u-boot branch, but I couldn't find any reference to HAB.

I'd appreciate any comments on that.

0 Kudos
Reply

2,473 Views
AlbertT
Contributor V

Hello Mickey,

That's just my theory, but I guess the u-boot 2013 will be merged with freescale u-boot that implements HAB, it should happen in the next release in August. If someone from Freescale could confirm that.

0 Kudos
Reply