IMX8MP returns No HAB Events Found for unsigned Kernel image.

cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 

IMX8MP returns No HAB Events Found for unsigned Kernel image.

751 Views
kartheek
Contributor III

Hi,

I'm working on Secure Boot using the UG10163 (10.9 Security Reference Design). I generated a wic image that includes signed bootloader and signed kernel images.

After flashing this image to an SD card, I manually replaced the signed kernel image in the /boot folder with an unsigned kernel image.

Then, on the target device, I executed the following command in U-Boot:

hab_auth_img ${loadaddr} ${filesize} 0x1a90000

I expected HAB events to be triggered due to the unsigned kernel image, but the output showed:

No HAB Events Found!

Why is no HAB event being reported even though the kernel image is unsigned?
I've attached the log below for reference.

Thanks,

Kartheek

Labels (1)
0 Kudos
Reply
1 Reply

709 Views
Harvey021
NXP TechSupport
NXP TechSupport

Hi,

Are these steps tested after board reboot? and make sure if that the singed image was replaced.

 

Regards

Harvey

0 Kudos
Reply
%3CLINGO-SUB%20id%3D%22lingo-sub-2182799%22%20slang%3D%22en-US%22%20mode%3D%22CREATE%22%3EIMX8MP%20returns%20No%20HAB%20Events%20Found%20for%20unsigned%20Kernel%20image.%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-2182799%22%20slang%3D%22en-US%22%20mode%3D%22CREATE%22%3E%3CP%3EHi%2C%3C%2FP%3E%3CP%3E%3CSTRONG%3EI'm%20working%20on%20Secure%20Boot%20using%20the%20UG10163%20(10.9%20Security%20Reference%20Design).%20I%20generated%20a%20wic%20image%20that%20includes%20signed%20bootloader%20and%20signed%20kernel%20images.%3C%2FSTRONG%3E%3C%2FP%3E%3CP%3EAfter%20flashing%20this%20image%20to%20an%20SD%20card%2C%20I%20manually%20replaced%20the%20signed%20kernel%20image%20in%20the%20%2Fboot%20folder%20with%20an%20%3CSTRONG%3Eunsigned%20kernel%20image%3C%2FSTRONG%3E.%3C%2FP%3E%3CP%3EThen%2C%20on%20the%20target%20device%2C%20I%20executed%20the%20following%20command%20in%20U-Boot%3A%3C%2FP%3E%3CP%3Ehab_auth_img%20%24%7Bloadaddr%7D%20%24%7Bfilesize%7D%200x1a90000%3C%2FP%3E%3CP%3EI%20expected%20HAB%20events%20to%20be%20triggered%20due%20to%20the%20unsigned%20kernel%20image%2C%20but%20the%20output%20showed%3A%3C%2FP%3E%3CPRE%3ENo%20HAB%20Events%20Found!%3C%2FPRE%3E%3CP%3E%3CSTRONG%3EWhy%20is%20no%20HAB%20event%20being%20reported%20even%20though%20the%20kernel%20image%20is%20unsigned%3F%3C%2FSTRONG%3E%3CBR%20%2F%3EI've%20attached%20the%20log%20below%20for%20reference.%3C%2FP%3E%3CP%3EThanks%2C%3C%2FP%3E%3CP%3EKartheek%3C%2FP%3E%3C%2FLINGO-BODY%3E%3CLINGO-LABS%20id%3D%22lingo-labs-2182799%22%20slang%3D%22en-US%22%20mode%3D%22CREATE%22%3E%3CLINGO-LABEL%3Ei.MX%208M%20%7C%20i.MX%208M%20Mini%20%7C%20i.MX%208M%20Nano%3C%2FLINGO-LABEL%3E%3C%2FLINGO-LABS%3E%3CLINGO-SUB%20id%3D%22lingo-sub-2183726%22%20slang%3D%22en-US%22%20mode%3D%22CREATE%22%20translate%3D%22no%22%3ERe%3A%20IMX8MP%20returns%20No%20HAB%20Events%20Found%20for%20unsigned%20Kernel%20image.%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-2183726%22%20slang%3D%22en-US%22%20mode%3D%22CREATE%22%3E%3CP%3EHi%2C%3C%2FP%3E%0A%3CP%3EAre%20these%20steps%20tested%20after%20board%20reboot%3F%20and%20make%20sure%20if%20that%20the%20singed%20image%20was%20replaced.%3C%2FP%3E%0A%3CBR%20%2F%3E%0A%3CP%3ERegards%3C%2FP%3E%0A%3CP%3EHarvey%3C%2FP%3E%3C%2FLINGO-BODY%3E