AR# 68396

2016.3/2016.4 SDK - Secure Boot Image fails to boot on Zynq UltraScale+ ES2 Silicon

Description

When I create a secure boot image using 2016.3/2016.4 SDK and then boot from QSPI or an SD card, the CSU ROM fails to load the FSBL and reports an SPK signature verification failure (CSU_BR_ERR = 0x45).

Solution

The Secure Authentication of the image is done differently on ES1 and ES2 Silicon.

2016.3/2016.4 bootgen always creates an authentication image for ES1 unless otherwise specified.

In order to create a valid authenticated image for ES2, follow the below steps:

  1. Set the environment variable BOOTGEN_ZYNQMPSOC_REV to 2.0
  2. Restart SDK
  3. Create the boot-image again
AR# 68396
Date 02/15/2017
Status Active
Type General Article
Devices
Tools