How to configure CSF to sign uboot with a different key

cancel
Showing results for 
Search instead for 
Did you mean: 

How to configure CSF to sign uboot with a different key

163 Views
rohininarasipur
Contributor II

Hi,

 

Even though I generated 4 different key sets using hab4_pki_tree.sh script, I am able to use only the first pair of keys for signing and verification. If I specify second, third or fourth certificate in the configuration file, HAB events (HAB_INV_SIGNATURE and HAB_INV_KEY) are generated during boot. If I choose second CSF and IMG certificate, then should I also change the source index in Install SRK section? How will HAB know which SRK to use for verifying root of trust? And what other changes should I do in my config file to use any certificate pair other than the first CSF and IMG pair?

 

Regards,

Rohini 

0 Kudos
1 Reply

35 Views
Yuri
NXP TechSupport
NXP TechSupport

Hello,

  Sorry, but the information you are requesting is treated as confidential info at this time and requires a signed NDA

(Non-Disclosure Agreement). Naturally, we cannot discuss this with you in public anyway, this requires to be handled

as a Service Request (SR).

Support|NXP 

Have a great day,
Yuri

-------------------------------------------------------------------------------
Note: If this post answers your question, please click the Correct Answer button. Thank you!
-------------------------------------------------------------------------------

0 Kudos