What is SP Blank ARIK/SE Blank ARIK? And what's the differences between SP and SE?

cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 

What is SP Blank ARIK/SE Blank ARIK? And what's the differences between SP and SE?

1,981 Views
john_li2
Contributor I

Fail to download image to MCIMX6D6AVT08AD, as checked, the failures are all recognize as SP Blank ARIK device. And for SE Blank ARIK all, are OK to download. Could anyone can tell me what's SE/SP blank ARIK means? And what's the differences between SE and SP?

Issue descripe as below:

Picture 1: Downloading are pending in "Jumping to OS image" status

 Picture 1 Burning failure_pending in jumping to OS image status.jpg

Picture 2: Fail IC are all recognized as SP Blank ARIK

Picture 2 SP Blank ARIK device.jpg

Picture 3: SE Blank ARIK device are all OK.

Picture 3 SE Blank ARIK device.jpg

For SP Blank ARIK devices, it also fail in NXP DDR matching test, and for SE Blank ARIK devices are OK to download, show as below:

Picture 4 NXP TEST TOOL Test result for SP Blank ARIK.jpg

Labels (1)
0 Kudos
Reply
3 Replies

1,957 Views
john_li2
Contributor I

Hi Igor,

Do you mean we need authentication for the "SP" version before download? Is there anyway to download the image without authentication?

If not, which tool can be used for the authentication? IMX_CST_TOOL or other?

0 Kudos
Reply

1,946 Views
igorpadykov
NXP Employee
NXP Employee

Hi john_li2

 

>Do you mean we need authentication for the "SP" version before download?

 

yes

 

>Is there anyway to download the image without authentication?

 

no

 

>If not, which tool can be used for the authentication? IMX_CST_TOOL or other?

 

yes IMX_CST_TOOL is used for creating security image. For details please refer

to  Encrypted Boot on HABv4 and CAAM Enabled Devices

 https://boundarydevices.com/high-assurance-boot-hab-dummies/

 

Best regards
igor

0 Kudos
Reply

1,971 Views
igorpadykov
NXP Employee
NXP Employee

Hi john_li2

 

" SP' - Security Production, the same as HYBE_TYPE_PDODUCT:
fuse SEC_CONFIG[1:0] - 1x—Closed (The program image executes
only if authenticated)

"SE" Security Engineering
SEC_CONFIG[1:0] - 01—Open (allows any program image,
even if the authentication fails)

described in Table 8-2. Boot eFUSE descriptions

i.MX 6Dual/6Quad Applications Processor Reference Manual

 

Best regards
igor

0 Kudos
Reply