Use SRK fuses to validate user-space application(s) on i.MX8QM and i.MX8MP processors

cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 

Use SRK fuses to validate user-space application(s) on i.MX8QM and i.MX8MP processors

171 Views
Mihajlo
Contributor I

Hi,

I've seen numerous descriptions and examples of secure boot process and all of them end up with checking kernel signature. IMHO that makes sense as that's the end of a boot process

I'm interested if it is possible to use same SRK fuses to validate user application(s) before starting them in running Linux OS.

Is there any kind of support (kernel driver/module, library, etc.) for using HAB/AHAB to validate user-space applications  ?

0 Kudos
Reply
2 Replies

89 Views
Mihajlo
Contributor I

Thank you @AldoG !

I'll have a look.

0 Kudos
Reply

127 Views
AldoG
NXP TechSupport
NXP TechSupport

Hello,

I do not think this may be possible as HAB/AHAB are used mainly for boot process, even so you may take a look to all security features we have available in our Linux BSP
https://www.nxp.com/docs/en/user-guide/IMX_LINUX_USERS_GUIDE.pdf

 

Chapter 10 security.

Best regards/Saludos,
Aldo.