IMX8M YOCTO how to sign image to secure boot

Question asked by Clement Name on Jul 2, 2019
Latest reply on Jun 26, 2020



I have a question about implementing the secure boot on the imx8m mini evaluation kit (on eMMC).


I'm using the YOCTO BSP imx-4.14.98-2.0.0_ga and I'm able to build an image for the eMMC.
In my deploy folder I can see the bootloader file "imx-boot-imx8mmevk-emmc.bin".


I looked at the documentation to implement secure boot on the imx8:

mx8m_mx8mm_secure_boot.txt\guides\habv4\imx\doc - uboot-imx - i.MX U-Boot 


To sign my bootloader, I have to edit a CSF file and add the addresses/sizes of the different blocks of my bootloader.
The documentation uses the imx-mkimage build log to get these addresses/sizes. In my case I don't have this build log.


Do you know where to find this bootloader build log ?


Also, do I have to manually sign the bootloader image manually every time or can YOCTO do it for me ?


Thank you