[PATCH v3] imx8: Add ahab_commit command

Fabio Estevam festevam at gmail.com
Mon Sep 22 16:20:12 CEST 2025


On Mon, Sep 8, 2025 at 6:18 PM John Ripple <john.ripple at keysight.com> wrote:
>
> The ahab_commit command allows the user to commit into the SECO fuses
> that control the SRK key revocation information. This is used to Revoke
> compromised SRK keys.
>
> To use ahab_commit, the boot container must be built with an SRK
> revocation bit mask that is not 0x0. For the SPSDK provided by NXP, this
> means setting the 'srk_revoke_mask' option in the config file used to
> sign the boot container. The 'ahab_commit 0x10' can then be used to commit
> the SRK revocation information into the SECO fuses.
>
> Signed-off-by: John Ripple <john.ripple at keysight.com>

Applied to next, thanks.


More information about the U-Boot mailing list