This thread has been locked.

If you have a related question, please click the "Ask a related question" button in the top right corner. The newly created question will be automatically linked to this question.

PROCESSOR-SDK-AM64X: AM64x tiboot3.bin rebuild without encryption

Part Number: PROCESSOR-SDK-AM64X

Hello,

I am using AM64x RTOS SDK 09.01.

It comes with prebuild tiboot3.bin which is actually sbl_null.release.hs_fs.tiimage.

The build step includes -

$(BOOTIMAGE_CERT_GEN_CMD) --swrv 1 --sbl-bin $(BOOTIMAGE_PATH)/$(BOOTIMAGE_BIN_NAME) --sysfw-bin $(SYSFW_PATH)/sysfw-hs-fs-enc.bin --sysfw-inner-cert $(SYSFW_PATH)/sysfw-hs-fs-enc-cert.bin --boardcfg-blob $(BOARDCFG_BLOB) --sbl-loadaddr $(SBL_RUN_ADDRESS) --sysfw-loadaddr $(SYSFW_LOAD_ADDR) --bcfg-loadaddr $(BOARDCFG_LOAD_ADDR) --key $(BOOTIMAGE_CERT_KEY) --rom-image $(BOOTIMAGE_PATH)/$(BOOTIMAGE_NAME)
Few of ingredients are sysfw-hs-fs-enc.bin, sysfw-hs-fs-enc-cert.bin and $(BOOTIMAGE_CERT_KEY)

How can I build the same without any encryption ?

Best regards,

Nandan Chaturbhuj

  • Hi Nandan,

    Few of ingredients are sysfw-hs-fs-enc.bin, sysfw-hs-fs-enc-cert.bin and $(BOOTIMAGE_CERT_KEY)

    These are System Firmware binaries which are provided as blobs in the SDK and are consumed as it is. So, it is not possible to change these.

    In tiboot3.bin, the only user controlled binary is SBL binary (--sbl-bin). For HSFS device builds, which you are using here, the SBL binary is not encrypted.

    Regards,

    Prashant