[U-Boot] nxp: HABv4 secure boot on iMX7 NAND broken

Bryan O'Donoghue bryan.odonoghue at linaro.org
Tue Jul 30 14:08:56 UTC 2019



On 30/07/2019 15:02, Bryan O'Donoghue wrote:
> 
> 
> On 30/07/2019 14:56, Igor Opaniuk wrote:
>>> Does that happen ?
>> Yes, it does.
> 
> And the board is closed ?

Obviously yes it is.

You have to sign the binary differently for serial download versus boot 
from eMMC - I guess this holds for NAND too.

https://boundarydevices.com/high-assurance-boot-hab-dummies/

I have a serial download version of u-boot and an eMMC version for 
signed boards for that reason i.e. you can't use the same image.

HAB for dummies explains it.

---
bod


More information about the U-Boot mailing list