New F&S Secure Boot Release 2019.02

  • F&S Secure Boot Release 2019.02


    we have uploaded a new F&S Secure Boot version for all supported boards with an i.MX6 CPU to our server, i.e. i.MX6S/DL/D/Q, i.MX6SX, i.MX6UL/ULL.


    This is a major release. The release consists of one file:


    fs-secure-boot.2019.02.tar.bz2

    This is the main release itself containing all sources, the binary images and the documentation.


    This tar archiv is compressed with bzip2. So to see the files, you first have to unpack the archives


    Code
    1. tar xvf fs-secure-boot.2019.02.tar.bz2


    This will create a directory fs-secure-boot.2019.02 that contains all the files of the release.


    Please read the file doc/FS_Secure_Boot.pdf. It lists the meaning of all files and shows how to install and use everything.


    The release consists of the following files and directories:


    • Readme.txt (Release notes)
    • setup-fs-secure-boot.sh (Script to unpack fs-secure-boot release)
    • binaries/ (Precompiled secure images)
    • doc/ (software manual)
    • sources/ (source code packages)


    Release Notes for F&S Secure Boot 2019.02


    Here are some highlights of this release.


    1. Support new CPU i.MX6ULL


    This is the first regular release that supports i.MX6ULL CPUs.



    2. Support new CPU revisions


    Through a security vulnerability in the NXP i.MX6 they have changed something in the ROM code. Thereby we can´t use the old User Tool and NBoot for the new revisions so we have to change something in the code to support the new revisions.



    3. Improve encryption


    For the encryption it was necessary that you have to download nboot_for_key.bin on the board to create keys. This is fixed in the new CST >= 2.3.2. So we have removed this and now it is easier to create encrypted keys. We also have removed the encryption with ZMK. We are now only support OTPMK encryption till we have implemented a secure way to use ZMK.



    Your F&S Support Team



    Note:

    You are only able to purchase our F&S Secure Boot release, if you have ordered it. For further information, see https://www.fs-net.de/en/support/secureboot/

    F&S Elektronik Systeme GmbH
    As this is an international forum, please try to post in English.
    Da dies ein internationales Forum ist, bitten wir darum, Beiträge möglichst in Englisch zu verfassen.