This thread has been locked.

If you have a related question, please click the "Ask a related question" button in the top right corner. The newly created question will be automatically linked to this question.

TMS320F28388D: Issues with sector security configuration during F2838x secure boot

Part Number: TMS320F28388D
Other Parts Discussed in Thread: C2000WARE

Hi Team,

These issues comes from my customer:

spract3_Secure BOOT On C2000 Device

Chapter 4 says that the sector selected for safe boot must be Zone1 EXEONLY.

However, on the TMS320F28388D board, I configured the selected sector for secure boot as Zone1 secure, but not EXEONLY, and then selected the boot mode as secure boot, and it can boot normally. This means that when secure boot is started, the CPU1BROM_calculateCMAC function can be verified successfully.

Moreover, I also selected sectors for secure boot without configuring DCSM protection, and then selected the boot mode as secure boot, and it could boot normally.

issues:

1. Is the document description correct? The selected boot sector must be Z1 EXEONLY?

2. In the case of secure boot, how to configure the selected boot sector?


The following is a test case where the selected boot sector is configured as Zone1 secure:

1. Configure DCSM sectors, sector 0 is Zone1 secure:

2. demo: C2000Ware_5_01_00_00\driverlib\f2838x\examples\c28x\boot\boot_ex1_cpu1_cpu2_cm_secure_flash_cpu1

3. Select secure boot, boot from sector 0, reset, and it can start normally.

--

Thanks & Regards