FIT image: load secure FPGA

Adrian Fiergolski adrian.fiergolski at
Wed Feb 9 13:20:13 CET 2022


On 09.02.2022 08:51, Jorge Ramirez-Ortiz, Foundries wrote:
>> I have also shared with the community a patch, on top of your changes,
>> adding encrypted bitfile support in u-boot.
> awesome. btw how is the bitstream decrypted? I didnt look into that, I
> suppose there is probably a doc somewhere?
It uses ZynqMP's CSU, AES-GCM and device keys (stored either in BBRAM or 
eFuses). It's described in UG1085 under the Loading bitstream (in 
encrypt only secure boot mode) subchapter.



More information about the U-Boot mailing list