AnsweredAssumed Answered

[URGENT] What prints could possibly come when HAB closed mode is triggered?

Question asked by ajithpv on Nov 17, 2015
Latest reply on Nov 18, 2015 by ajithpv

Hi all,

As part of my current task, I have enabled HAB(OPEN mode) and make my images signed. I have followed the below document.

1) i.MX 6 Linux High Assurance Boot (HAB) User's Guide, Rev L3.10.17_1.0.0-ga, 05/2014

 

NOTE: The steps and reference that I have followed is mentioned earlier in the following thread.

Need to know how to implement HAB with Yocto BSP (Kernel 3.10.17)

I have followed all the steps that are given in the document till 18th step and in 18th step, I fused the SRK values. I didn't perform OTPMK, RNG_TRIM and SEC_CONFIG settings here.

 

In OPEN mode configuration I can able to get the below prints while booting.

HAB Configuration: 0xf0, HAB State: 0x66

No HAB Events Found!

Once, I got the above message (this means no error), I started proceeding with the further pending steps in 18th. Since, OTPMK is factory burned, I didn't do this one.

I have Turn on RNG_TRIM by echo 0x00040000 > HW_OCOTP_MEM0 and Put SEC_CONFIG to close (turn on chip security) by echo 0x2 > HW_OCOTP_CFG5.

 

After that, when I reboot my system, nothing(no prints) is coming on the console! As from the document if something happened, then HAB events should come. Then why I'm not getting nothing on the console (is my processor bricked)? According to the document, these 2 steps can be done once we get "No HAB Events Found!" message in OPEN mode.

 

Could anyone help me to understand what exactly happened here from OPEN mode working case to CLOSE mode non working?

 

Thank you in advance,
Ajith P V

Outcomes