
9 Feb
2022
9 Feb
'22
1:20 p.m.
Hi,
On 09.02.2022 08:51, Jorge Ramirez-Ortiz, Foundries wrote:
I have also shared with the community a patch, on top of your changes, adding encrypted bitfile support in u-boot.
awesome. btw how is the bitstream decrypted? I didnt look into that, I suppose there is probably a doc somewhere?
It uses ZynqMP's CSU, AES-GCM and device keys (stored either in BBRAM or eFuses). It's described in UG1085 under the Loading bitstream (in encrypt only secure boot mode) subchapter.
Regards,
Adrian