Question about security boot?

hello garretzou,

  1. you should also refer to Jetson TX2 Boot Flow for the detail booting process.
    there’re loading and authentication flow for MB1, and copies MB1 into SysRAM. MB2 also had similar flows for authentication, but MB1 copy it into DRAM. after that, BPMP-FW own the controls.

  2. there’s hardware crypto security engine key slot for storing SBK, KEK, SSK…etc.

  3. correct, the ODM production fuse is a global lock of all the manufacturing fuses.
    please also refer to Jetson TX2 Series Fuse Specification App Note for reference.

  4. please refer to Preparing the SBK Key chapter for the details to prepare the SBK fuse bits. you may also check the key descriptions for the formats.