TDA4VH-Q1: Some Questions for Security Boot

Part Number: TDA4VH-Q1
Other Parts Discussed in Thread: TDA4VH

Tool/software:

Hi TI Experts,

Customer is working on TDA4VH SDK9.2.

They have some questions related to security boot below.

After customer key is programmed into the eFuse of HS-FS chip, the chip will turn to HS-SE chip.

  1. HS-SE chip can only boot with the uboot image signed with customer key. My question is: Can the signed uboot image be used both for eMMC boot and for DFU boot?
  2. Does all the r5f firmware also need to be signed with customer keys?

Could you help provide some comments for customer please?

Many Thanks,

Kevin

  • Kevin,

       My understanding is the PBL (primary boot) stage binary must be sign. The default setting of SBL (secondary boot) binary is also signed, the requirement is depend on customer. I do not aware the difference required between DFU BOOT and EMMC boot.

    If with the default setting, the R5F firmware is also needed to sign.

       Thanks.

    Linjun