diff options
Diffstat (limited to 'doc')
-rw-r--r-- | doc/imx/habv4/guides/mx6_mx7_secure_boot.txt | 17 |
1 files changed, 17 insertions, 0 deletions
diff --git a/doc/imx/habv4/guides/mx6_mx7_secure_boot.txt b/doc/imx/habv4/guides/mx6_mx7_secure_boot.txt index 69ef244dea..8c8eb8dd42 100644 --- a/doc/imx/habv4/guides/mx6_mx7_secure_boot.txt +++ b/doc/imx/habv4/guides/mx6_mx7_secure_boot.txt @@ -110,6 +110,23 @@ the U-Boot build, the example below is a log for mx7dsabresd_defconfig target: Block = 0x877ff400 0x00000000 0x0009ec00 "u-boot-dtb.imx" +1.3.1 Avoiding Kernel crash when OP-TEE is enabled +--------------------------------------------------- + +For devices prior to HAB v4.4.0, the HAB code locks the Job Ring and DECO +master ID registers in HAB closed configuration. In case the user specific +application requires any changes in CAAM MID registers it's necessary to +add the "Unlock CAAM MID" command in CSF file. + +The current NXP OP-TEE implementation expects the CAAM registers to be unlocked +when configuring CAAM to operate in non-secure TrustZone world. + +- Add Unlock MID command in CSF: + + [Unlock] + Engine = CAAM + Features = MID + 1.4 Signing the U-Boot binary ------------------------------ |