i.MX 8X Encrypted Boot

取消
显示结果 
显示  仅  | 搜索替代 
您的意思是: 

i.MX 8X Encrypted Boot

965 次查看
jmcdowell
Contributor II

I just read in the IMX8DQXPRM the note at the end of section 5.9.6 that says "The booting of encrypted images is not currently available. Please contact your local NXP representative for more details."

Earlier in the reference manual in the System Security chapter, "Encrypted Boot" is listed as a feature of the CAAM within the list of SECO supported features.

Please clarify this conflicting information so we can proceed with our system design concept accordingly.

Justin

0 项奖励
6 回复数

946 次查看
Yuri
NXP Employee
NXP Employee

@jmcdowell 
Hello,

   please refer to i.MX8X Security Reference Manual, section "Booting Encrypted Images".

https://www.nxp.com/webapp/sps/download/mod_download.jsp?colCode=IMX8QXPSRM&appType=moderatedWithout...

 

Regards,
Yuri.

0 项奖励

917 次查看
jmcdowell
Contributor II

Yuri,

My company has completed the NDA and so I now have access to the i.MX8X Security Reference Manual.  Specifically IMX8QXPSRM Rev. B, 03/2019.

I have referenced the section "Booting Encrypted Images" as you directed and I find the same note: "The booting of encrypted images is not currently available.  Please contact your local NXP representative for more details".

How do I access the "more details" referenced in the note here?  Is this a SECO FW feature that NXP intends to support according to a roadmap that I could compare against my project's needs?  Is it a mkimage limitation that can be resolved?  Is it something that has already been resolved since the documentation publication 2 years ago? Or is it actually not supported in the SECO ROM and/or hardware, in which case I'm confused as to why it is described elsewhere in the documentation.

Thanks,

Justin

910 次查看
Yuri
NXP Employee
NXP Employee

@jmcdowell 
Hello,

  I've sent You some considerations. Hope it helps.

Regards,
Yuri.

0 项奖励

906 次查看
jmcdowell
Contributor II

Thanks, I'll take a look.

0 项奖励

901 次查看
Yuri
NXP Employee
NXP Employee
0 项奖励

930 次查看
jmcdowell
Contributor II

Thank you for your quick response.  I will continue to work with my company in order to establish an NDA in order to get access to the security reference manual.

 

Justin