
On 21/01/2018 18:57, Fabio Estevam wrote:
From: Fabio Estevam fabio.estevam@nxp.com
The original text is from the time that the config options were not converted to Kconfig.
After the conversion to Kconfig only CONFIG_SECURE_BOOT and CONFIG_CMD_DEKBLOB need to be selected by the user.
The other config options are automatically selected by the Kconfig logic.
Signed-off-by: Fabio Estevam fabio.estevam@nxp.com
doc/README.mxc_hab | 9 +++------ 1 file changed, 3 insertions(+), 6 deletions(-)
diff --git a/doc/README.mxc_hab b/doc/README.mxc_hab index c1f8ded..4bd07d3 100644 --- a/doc/README.mxc_hab +++ b/doc/README.mxc_hab @@ -68,13 +68,10 @@ the CSF file.
The DEK blob is generated by an authenticated U-Boot image with the dek_blob cmd enabled. The image used for DEK blob generation -needs to have the following configurations enabled: +needs to have the following configurations enabled in Kconfig:
-CONFIG_SECURE_BOOT -CONFIG_SYS_FSL_SEC_COMPAT 4 /* HAB version */ -CONFIG_FSL_CAAM -CONFIG_CMD_DEKBLOB -CONFIG_SYS_FSL_SEC_LE +CONFIG_SECURE_BOOT=y +CONFIG_CMD_DEKBLOB=y
Note: The encrypted boot feature is only supported by HABv4 or greater.
Applied to u-boot-imx, thanks !
Best regards, Stefano Babic