Hi TI experts,
I am working on TI secure boot feature on TI-TDA4VH board.
, and have 2 questions about how to change the HS-FS type into HS-SE type.
1. In the link guide, 4.14.5.1. Generating x509 certificate from customer HSM, I found the a random 256-bit number AES encryption key is signed by SMPK and the X509 config is also sigend by SMPK.
But I don't find out where is the SMPK-PUB key saved? Because when running the keywriter app on board, the SMPK-PUB key will be used to verify the signatures, so I think it should be saved in a certain place.
Could you please help to explain where the SMPK-PUB key is saved?
2. In the link guide 4.14.5.4. Running on SoC, using a boot mode of choice, it says to select a boot mode. Can I use the SD boot mode directly? Or must I use the USB-DFU or UART boot mode?
Or is there any doc to show the detailed steps about how to run the keywriter to burn the eFuse on TI-TDA4VH board?
Thanks,
Limeng