fast authentication tree ( Ca flag set ) iMx8m mini

取消
显示结果 
显示  仅  | 搜索替代 
您的意思是: 

fast authentication tree ( Ca flag set ) iMx8m mini

1,241 次查看
antonio_santagi
Contributor IV

Hello,

I am following the CST Code Signing Tool guide paragraph 3.1.2.1 : running the hab4_pki_tree. script to create the Keys efuses bin data.

I don't know what I should answer to the question : 

– Do you want the SRK certificates to have the CA Flag set?
– Answer ‘y’ for a standard tree, ‘n’ for fast authentication tree.

Is fast authentication tree supported by iMX8m mini processor ?

Is there a place where they explain what this fast authentication for PKI tree is ?

Can I answer yes even if at the beginning I answered no to the question "Do you want to use an existing CA key ?"

thank you

标签 (1)
0 项奖励
回复
2 回复数

1,190 次查看
antonio_santagi
Contributor IV

I think I found explanation here : 

https://www.nxp.com/docs/en/application-note/AN4581.pdf  at Appendix C.

It is a document not supposed to cover iMX8m mini but I seee it refers anyway to HABv4 so I guess the fast authentication explanation at Appendix C applies anyway.

0 项奖励
回复

1,190 次查看
Yuri
NXP Employee
NXP Employee

Hello,

  Yes, the fast authentication is described in  the Appendix C and i.MX8Mm supports

this feature.

Regards,

Yuri.