AM623: How to enable encrypted boot from Yocto build

Part Number: AM623

Tool/software:

Hi,

I have programmed the SMPK + SMEK and BMPK + BMEK into the OTP eFuse. I was able to successfully boot the signed image without encrypting the boot binaries.

Now, I would like to enable encrypted boot on my device. I am using Yocto to build the image with the meta-ti and meta-arm layers. How can I enable encrypted boot images in u-boot-ti-staging and linux-ti-staging from the meta-ti layers?

Thanks.

Regards,

Yoong Chean