Tool/software:
Hi,
I was working with secure boot using sha256 and ECDSA in am6231 processor,
How can I Flash/Program the key into the processor, need a brief idea on
The complete procedure to do so.
This thread has been locked.
If you have a related question, please click the "Ask a related question" button in the top right corner. The newly created question will be automatically linked to this question.
Tool/software:
Hi,
I was working with secure boot using sha256 and ECDSA in am6231 processor,
How can I Flash/Program the key into the processor, need a brief idea on
The complete procedure to do so.
We have AM62x security resource download portal, where security collaterals/links/tools... are hosted
https://software-dl.ti.com/secure/software/sitara-sec/AM62X-RESTRICTED-SECURITY/sw_doc/AM62x_OTP_Keywriter_1Q23_v1.pdf
https://software-dl.ti.com/secure/software/sitara-sec/AM62X-RESTRICTED-SECURITY/OTP_writer/9.0/am62x/AM62X_OTP_Keywriter_User_Guide_09_00_00.pdf
User may request access to AM62x security resource download portal
https://www.ti.com/licreg/docs/swlicexportcontrol.tsp?form_id=337827&prod_no=AM62X-RESTRICTED-SECURITY&ref_url=ep_processors_Sitara-MPU
Please note that ECDSA is supported by ROM, but only RSA key is currently supported in TIFS and OTP keywriter tool.
Best,
-Hong
from your reply,
Please note that ECDSA is supported by ROM, but only RSA key is currently supported in TIFS and OTP keywriter tool.
can you confirm it.
In my implementation I'm using ECDSA, is there any way to flash the ECDSA key to the processor.
what procedures should I follow.
https://software-dl.ti.com/secure/software/sitara-sec/AM62X-RESTRICTED-SECURITY/OTP_writer/9.0/am62ax/AM62AX_OTP_Keywriter_User_Guide_09_00_00.pdf
From the table on P4
BMPK is 4096-bit customer RSA signing
SMPK is 4096-bit customer RSA signing
Best,
-Hong
Hi,
As the customer key is one time programable and irreversible, can we use dummy customer MPKs and MEKs as an alternate for customer generated keys for developer testing purposes.
1) where is this dummy key stored?
2) Explain the procedure for flashing the dummy customer MPKs and MEKs with OTP key writer?
3) Is this dummy key is flashed into the OTP memory or in separate location.
Please provide documents support and TI assistance to this.
Regards,
Binson
1/. TI testing key is included in AM62x OTP keywriter package
https://software-dl.ti.com/secure/software/sitara-sec/AM62X-RESTRICTED-SECURITY/OTP_writer/9.0/am62x/otp_keywriter_am62x-linux-installer.run
2/. Refer to AM62x OTP keywriter user guide
https://software-dl.ti.com/secure/software/sitara-sec/AM62X-RESTRICTED-SECURITY/OTP_writer/9.0/am62x/AM62X_OTP_Keywriter_User_Guide_09_00_00.pdf
3/. TI testing key is flashed to the OTP efuse.
Best,
-Hong