Secure boot imx6sx

キャンセル
次の結果を表示 
表示  限定  | 次の代わりに検索 
もしかして: 

Secure boot imx6sx

1,006件の閲覧回数
naveenprasath_0
Contributor I
 
We are implementing secure boot in imx6sx . We have signed the uboot image with csf file and hab blocks have been mentioned properly as per uboot image log file and the uboot image has been booting properly.
 
But the hab_status command produces the following event,
 

=> hab_status

Secure boot disabled

HAB Configuration: 0xf0, HAB State: 0x66

--------- HAB Event 1 -----------------
event data:
0xdb 0x00 0x24 0x42 0x69 0x30 0xe1 0x1d
0x00 0x08 0x00 0x02 0x40 0x00 0x36 0x06
0x55 0x55 0x00 0x03 0x00 0x00 0x00 0x00
0x00 0x00 0x00 0x00 0x00 0x00 0x00 0x00
0x00 0x00 0x00 0x01

STS = HAB_WARNING (0x69)
RSN = HAB_ENG_FAIL (0x30)
CTX = HAB_CTX_ENTRY (0xE1)
ENG = HAB_ENG_CAAM (0x1D)

=>

 

Can you please help to resolve this event?
ラベル(1)
0 件の賞賛
返信
2 返答(返信)

995件の閲覧回数
igorpadykov
NXP Employee
NXP Employee

Hi naveenprasath_0

 

events are related to issue with the RNG self test in HAB, details can be found

in sect.5.6.3 RNG AN4581 i.MX Secure Boot on HABv4 Supported Devices

https://www.nxp.com/docs/en/application-note/AN4581.pdf

 

Best regards
igor

0 件の賞賛
返信

967件の閲覧回数
naveenprasath_0
Contributor I

As per the document we have added 

[Unlock]

Engine = CAAM

Features = RNG

in the uboot CSF file and signed the uboot image

now also we are getting this event 

=> hab_status

Secure boot disabled

HAB Configuration: 0xf0, HAB State: 0x66

--------- HAB Event 1 ----------------- event data:

0xdb 0x00 0x24 0x42 0x69 0x30 0xe1 0x1d 0x00 0x08 0x00 0x02 0x40 0x00 0x36 0x06 0x55 0x55 0x00 0x03 0x00 0x00 0x00 0x00 0x00 0x00 0x00 0x00 0x00 0x00 0x00 0x00 0x00 0x00 0x00 0x01 STS = HAB_WARNING (0x69) RSN

= HAB_ENG_FAIL (0x30)

CTX = HAB_CTX_ENTRY (0xE1)

ENG = HAB_ENG_CAAM (0x1D) =>

0 件の賞賛
返信