198cb0efdSgaurav rana /* 298cb0efdSgaurav rana * Copyright 2015 Freescale Semiconductor, Inc. 398cb0efdSgaurav rana * 498cb0efdSgaurav rana * SPDX-License-Identifier: GPL-2.0+ 598cb0efdSgaurav rana */ 698cb0efdSgaurav rana 798cb0efdSgaurav rana #ifndef __FSL_SECURE_BOOT_H 898cb0efdSgaurav rana #define __FSL_SECURE_BOOT_H 998cb0efdSgaurav rana 1098cb0efdSgaurav rana #ifdef CONFIG_SECURE_BOOT 112ed948f4SAneesh Bansal #define CONFIG_CMD_ESBC_VALIDATE 122ed948f4SAneesh Bansal #define CONFIG_FSL_SEC_MON 132ed948f4SAneesh Bansal #define CONFIG_SHA_PROG_HW_ACCEL 142ed948f4SAneesh Bansal #define CONFIG_RSA 152ed948f4SAneesh Bansal #define CONFIG_RSA_FREESCALE_EXP 16*9711f528SAneesh Bansal 172ed948f4SAneesh Bansal #ifndef CONFIG_FSL_CAAM 182ed948f4SAneesh Bansal #define CONFIG_FSL_CAAM 192ed948f4SAneesh Bansal #endif 202ed948f4SAneesh Bansal 21*9711f528SAneesh Bansal #ifndef CONFIG_DM 22*9711f528SAneesh Bansal #define CONFIG_DM 23*9711f528SAneesh Bansal #endif 24*9711f528SAneesh Bansal 252ed948f4SAneesh Bansal #define CONFIG_KEY_REVOCATION 262ed948f4SAneesh Bansal #ifndef CONFIG_SYS_RAMBOOT 272ed948f4SAneesh Bansal /* The key used for verification of next level images 282ed948f4SAneesh Bansal * is picked up from an Extension Table which has 292ed948f4SAneesh Bansal * been verified by the ISBC (Internal Secure boot Code) 302ed948f4SAneesh Bansal * in boot ROM of the SoC. 312ed948f4SAneesh Bansal * The feature is only applicable in case of NOR boot and is 322ed948f4SAneesh Bansal * not applicable in case of RAMBOOT (NAND, SD, SPI). 332ed948f4SAneesh Bansal */ 342ed948f4SAneesh Bansal #define CONFIG_FSL_ISBC_KEY_EXT 352ed948f4SAneesh Bansal #endif 362ed948f4SAneesh Bansal 3798cb0efdSgaurav rana #ifndef CONFIG_FIT_SIGNATURE 3898cb0efdSgaurav rana 3998cb0efdSgaurav rana #define CONFIG_EXTRA_ENV \ 4098cb0efdSgaurav rana "setenv fdt_high 0xcfffffff;" \ 4198cb0efdSgaurav rana "setenv initrd_high 0xcfffffff;" \ 4298cb0efdSgaurav rana "setenv hwconfig \'fsl_ddr:ctlr_intlv=null,bank_intlv=null\';" 4398cb0efdSgaurav rana 4498cb0efdSgaurav rana /* The address needs to be modified according to NOR memory map */ 4598cb0efdSgaurav rana #define CONFIG_BOOTSCRIPT_HDR_ADDR 0x600a0000 4698cb0efdSgaurav rana 4798cb0efdSgaurav rana #include <config_fsl_secboot.h> 4898cb0efdSgaurav rana #endif 4998cb0efdSgaurav rana #endif 5098cb0efdSgaurav rana 5198cb0efdSgaurav rana #endif 52