• CAAM HASH algorithm performance Question

    Dear NXP engineers:   G'Day. I am working on caam hash performance test on i.MX8 board. and there is weird result that sha1 performance is lower than sha256's. As far as i know, the computation of sha256 algorith...
    Li Zhongyue
    created by Li Zhongyue
  • CAAM HASH algorithm performance Question

    Dear NXP engineers:   G'Day. I am working on caam hash performance test on i.MX8 board. and there is weird result that sha1 performance is lower than sha256's. As far as i know, the computation of sha256 algo...
    Li Zhongyue
    last modified by Li Zhongyue
  • 移植开源的密码工具箱GmSSL到i.MX平台

    GmSSL是一个开源的密码工具箱,支持SM2/SM3/SM4/SM9/ZUC等国密(国家商用密码)算法、SM2国密数字证书及基于SM2证书的SSL/TLS安全通信协议,提供符合国密规范的编程接口与命令行工具,可以用于构建PKI/CA、安全通信、数据加密等符合国密标准的安全应用。GmSSL项目是OpenSSL项目的分支,并与OpenSSL保持接口兼容。因此GmSSL可以替代应用中的OpenSSL组件,并使应用自动具备基于国密的安全能...
    Xiaodong Zhang
    last modified by Xiaodong Zhang
  • How to run CVE checker on yocto image for iM6SX

    Hi Guys We are using customized yocto linux kernel and running some C++ code for industrial application.   Where i can find CVE (Common Vulnurabilites and Exposures) tools to check for my custom-ed yocto i...
    Pranav Mondhe
    last modified by Pranav Mondhe
  • iMX6S Sabre - Frequency stop was detected, probably due to a supply voltage drop

    Hi Guys I am running iMX6 Sabre board with latest yocto image running our C++ software on top of it. While testing, i understand that we are getting frequency stop messages on dmesg   Can you please go through...
    Pranav Mondhe
    last modified by Pranav Mondhe
  • SARBE - iMXS6X-SDB: ethernet - Link is Down

    Hi Team, i am working on iMXS6X-SDB board with our custom linux kernel image version 3.14.28. I have some python reboot tests which gives the reboot command via ssh, waits for some time and this cycle repeats. &...
    Pranav Mondhe
    last modified by Pranav Mondhe
  • iMX8M Mini EVK, HAB and extending root of trust

    I'm attempting to extend the root of trust for HAB on the iMX8M Mini.  I can create a signed flash.bin file with SPL, ATF, OpTEE, and UBoot whose signature is checked and loaded successfully.  hab_status sho...
    Neil Shipp
    last modified by Neil Shipp
  • Trusty TEE support in iMX8 Mini

    Hi Sir, I am planning to use iMX 8 Mini for my project. On security and Trusted Execution Environment (TEE) pdf document of NXP it is mentioned that iMX8 Mini comes with Trusted Execution Environment (TEE). and...
    Maneesh Singh
    last modified by Maneesh Singh
  • OEM SRK table

    Dear NXP engineer,   i am trying to enable secure boot now, when i am trying to generate AHAB SRK tables as below command: $ ../linux64/bin/srktool -a -s sha384 -t SRK_1_2_3_4_table.bin \ -e SRK_1_2_...
    Li Zhongyue
    last modified by Li Zhongyue
  • PUBLIC AND PRIVATE KEY IN HAB

    Daer Team ,   I have all the work regarding CST tool uboot and zImage authentication is completed but there is no public and private key concept . How can we generate the public and private key , to ensure about...
    PRAMOD KUMAR
    last modified by PRAMOD KUMAR
  • SNVS secure storage

    Dear NXP engineer:   May i know "what kinds of content will be stored in SNVS secure storage?". Thanks a lot.
    Li Zhongyue
    last modified by Li Zhongyue
  • Programming the attestation key

    Dear NXP engineer:   I am trying to read document named "I.MX_Android_Security_User_Guide.pdf" Following is the content mentioned in the doc. 3.3.6 Programming the attestation key Attestation key is programmed...
    Li Zhongyue
    last modified by Li Zhongyue
  • RPMB Key Blob Boot1 storage

    Dear NXP engineer,   I am trying to set RPMB key blob into boot1 keyslot partition, and when i tried to set RPMB key blob into boot1 keyslot partition for second time,  there is no any error prompt, howev...
    Li Zhongyue
    last modified by Li Zhongyue
  • MX8 CAAM TRNG feature difference against MX6

    Hi i.MX Security team,   Custom who is developing application based on MX8QXP and also they have former experence with MX6 asked below two questions realted to CAAM TRNG. They are running QNX OS, not Linux. ...
    cliffkong
    last modified by cliffkong
  • HAB_SELF_KEY_ISSUE

    Dear Team,   We need to generate our own key and after done the below steps I am facing some issue . please check it and do needful for me . Please check the full process .   ./hab4_pki_tree.sh   +++...
    PRAMOD KUMAR
    last modified by PRAMOD KUMAR
  • i.MX6ULL, where does U-Boot end up in RAM?

    I am working with a i.MX6ULL based board. The U-Boot image that I am using has the following IVT table:   00000000 d1 00 20 40 00 00 80 87 00 00 00 00 2c f4 7f 87 |.. @........,...| 00000010 20 f4 7f 87 00 f4 7f...
  • imx6q SNVS 256-bit Master Key

    In Imx6q Security Reference Manual Chapter 6, see following: If the SNVS determines the chip is in a trustworthy state, it allows CAAM to use a secret 256-bit value that CAAM uses to derive cryptographic keys during ...
    Yiling Xu
    last modified by Yiling Xu
  • i.MX7D failed to boot from encrypted u-boot image

    I've follow the document AN4581/AN12056 try to build a encrypted and signed u-boot image for i.MX7D board. The signed image (AN4581) is completed and work fine, but encrypted image (AN12056) don't work. The device...
    Bobby Chen
    last modified by Bobby Chen
  • HAB_IMX6UL

    Hii Team , I am trying to do secure boot with hab and i have done all the steps from Encrypted boot loader on SabreSD i.MX6q board  but I stucked at := gcc -o cst -I ../hdr -L ../../../linux64/lib *.c -lfron...
    PRAMOD KUMAR
    last modified by PRAMOD KUMAR
  • Eyption rfs

    Hii Team,   I need to encrypt the imx6ul root file system i studied about this from the below reference but it is not makes me understandable can anybody provide me clear document to work on it from scratch on-w...
    PRAMOD KUMAR
    last modified by PRAMOD KUMAR