4 Secure Boot Mode Configuration

In addition to the Boot Configuration Packet content, which is used to configure boot media, the secure boot sequence flow is controlled by data stored in the Secure Boot Configuration Packet.

The Secure Boot Configuration, stored in the Secure Boot Configuration Packet in the OTP user area, contains all the information required to successfully switch to Secure Boot mode and boot the device:

  • Secure Boot mode enable
  • Authentication mode (AES-CMAC or RSA)
  • Addresses of OTP key packets for storing secret keys wrapped with the PUF key
  • Address of the OTP key packet for storing initialization vector (IV) data
  • Address of the OTP packet used for storing the data hash