Secure boot on Milk V duo 256

Yixun Lan dlan at gentoo.org
Fri Jan 3 06:40:49 CET 2025


Hi Waldo

On 13:28 Thu 02 Jan     , Waldo Alvarez wrote:
> Hello:
> 
> I am figuring out how to proceed on secure booting the Milk V DUO 256. Likely in this list I can get some help. It is ARM/Risc-V board with an SG2002 SOC. The SOC has OTP memory and some bootrom.
> 
> The current distribution uses u-boot and linux buildroot but doesn't do secure boot.
> 
> Therefore I am trying to start at the first part. Verify digital dignature of u-boot and have u-boot verify digital signature of the kernel.
> 
> Can someone point me here in the right direction no how to proceed.
> 
I'm no expert of secure boot area.. but you can search first,
there are quite a lot docs/articles about secure boot of uboot/linux

for the initial bootchain: from bootrom to bootloader, there is indeed
secure boot feature which documented in vendor datasheet, see chapter 14

https://github.com/milkv-duo/duo-files/blob/main/duo/datasheet/CV1800B-CV1801B-Preliminary-Datasheet-full-en.pdf

> Regards
> 
> Waldo Alvarez
> Desarrollo de Software / Software Development
> https://pipflow.com
> https://tradingfuturo.com
> 
> Sent with [Proton Mail](https://proton.me/mail/home) secure email.

-- 
Yixun Lan (dlan)
Gentoo Linux Developer
GPG Key ID AABEFD55


More information about the U-Boot mailing list