NXP i.MX6/7/8 Secure Boot Yocto integration

3800,00  (ex. VAT)

This product will implement the Secure Boot on your target NXP i.MX hardware through the specially crafted Yocto meta layer. The signing process will be integrated and automated as part of your standard Yocto build process.

Note that this service does not cover U-Boot hardening. If U-Boot shell is available, one may still bypass the signature verification process. If you are interested in the full boot chain protection, please consider the U-Boot hardening service as well.

Please contact us for more details or for different type of Secure Boot integration (different build system or different hardware).

Discover more related products through our trusted partners! Explore more at Nitrokey online store.

x
Category:

Description

The HAB (High Assurance Boot) and AHAB (Advanced High Assurance Boot) are Secure Boot features of the NXP i.MX SoCs. This feature relies on the digital signature to prevent unauthorized firmware to run on your device.

This product will implement the Secure Boot on your target NXP i.MX hardware through the specially crafted Yocto meta layer. The signing process will be integrated and automated as part of your standard Yocto build process. You will also receive extensive documentation containing:

  • usage documentation and veriifcation procedures,
  • procedures how to generate keys and sign firmware binaries.

Features:

  • verification of U-Boot and the rest of the firmware binaries (Arm Trusted Firmware etc.) using the HAB/AHAB
  • verification of the devicetree and Linux kernel using the HAB/AHAB