4 Secure Boot Mode Configuration

In addition to the Boot Configuration Packet content, which is used to configure boot media, the secure boot sequence flow is controlled by data stored in the Secure Boot Configuration Packet.

The Secure Boot Configuration, stored in the Secure Boot Configuration Packet in the OTP user area, contains all the information required to successfully switch to Secure Boot mode and boot the device:

  • Secure Boot mode enable
  • Authentication mode (AES-CMAC or RSA)
  • Addresses of OTP key packets for storing secret keys
  • Address of the OTP key packet for storing IV data
  • Root certificate hash