From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: X-Spam-Checker-Version: SpamAssassin 3.4.0 (2014-02-07) on aws-us-west-2-korg-lkml-1.web.codeaurora.org Received: from mail.kernel.org (mail.kernel.org [198.145.29.99]) by smtp.lore.kernel.org (Postfix) with ESMTP id 1C477C433F5 for ; Sun, 10 Oct 2021 17:51:43 +0000 (UTC) Received: from phobos.denx.de (phobos.denx.de [85.214.62.61]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by mail.kernel.org (Postfix) with ESMTPS id 4D2E760F22 for ; Sun, 10 Oct 2021 17:51:42 +0000 (UTC) DMARC-Filter: OpenDMARC Filter v1.4.1 mail.kernel.org 4D2E760F22 Authentication-Results: mail.kernel.org; dmarc=none (p=none dis=none) header.from=public-files.de Authentication-Results: mail.kernel.org; spf=pass smtp.mailfrom=lists.denx.de Received: from h2850616.stratoserver.net (localhost [IPv6:::1]) by phobos.denx.de (Postfix) with ESMTP id 714DA832DE; Sun, 10 Oct 2021 19:51:39 +0200 (CEST) Authentication-Results: phobos.denx.de; dmarc=none (p=none dis=none) header.from=public-files.de Authentication-Results: phobos.denx.de; spf=pass smtp.mailfrom=u-boot-bounces@lists.denx.de Authentication-Results: phobos.denx.de; dkim=pass (1024-bit key; secure) header.d=gmx.net header.i=@gmx.net header.b="Kt5zaEDv"; dkim-atps=neutral Received: by phobos.denx.de (Postfix, from userid 109) id 3249883475; Sun, 10 Oct 2021 19:51:37 +0200 (CEST) Received: from mout.gmx.net (mout.gmx.net [212.227.15.19]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits)) (No client certificate requested) by phobos.denx.de (Postfix) with ESMTPS id 8CC96832C3 for ; Sun, 10 Oct 2021 19:51:33 +0200 (CEST) Authentication-Results: phobos.denx.de; dmarc=none (p=none dis=none) header.from=public-files.de Authentication-Results: phobos.denx.de; spf=pass smtp.mailfrom=frank-w@public-files.de DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=gmx.net; s=badeba3b8450; t=1633888288; bh=Sc8YPIGPRpUwmD7l2JsV3dOXtfoSiT1nao33kY9o784=; h=X-UI-Sender-Class:From:To:Cc:Subject:Date; b=Kt5zaEDvtn76WZFqoW3yW5yeSK3LRRehMGEgeDBbhbAgNq8pwpurzHGF9f5yuTU5M ca5ok4pRoO/g1UCoj1LDoUgBmCX8Igxpmm5KFxRKZr2Xu9vjGo77Ag+5/eJEZ+IAsM tubA2G/6wvVbqjHXKj9ZKmDTI6kr/JLZwNAOqgvQ= X-UI-Sender-Class: 01bb95c1-4bf8-414a-932a-4f6e2808ef9c Received: from [157.180.227.129] ([157.180.227.129]) by web-mail.gmx.net (3c-app-gmx-bs02.server.lan [172.19.170.51]) (via HTTP); Sun, 10 Oct 2021 19:51:28 +0200 MIME-Version: 1.0 Message-ID: From: Frank Wunderlich To: Simon Glass , Philipp Tomsich , Kever Yang Cc: u-boot@lists.denx.de Subject: uboot FIT signature difference Content-Type: text/plain; charset=UTF-8 Date: Sun, 10 Oct 2021 19:51:28 +0200 Importance: normal Sensitivity: Normal X-Priority: 3 X-Provags-ID: V03:K1:tVA8LsWXCxat1AxJfn9GU18arZQR9voGhnpTX6YC4yCqJa4FAD0BIO1a6hZj5aRo3vNQV mvQj3w6Dh+TPxRPdNzaMFe29CQA/GA4v7qHM1E/nJLR/4L9WZUoiaW/3ZGyEBFTVfW3RMd+E0uuY OHuA/PnOJ2CQZhDJuDpOVmFxU1j11Nwgs7RAbp0Wv9sofizi6o2ZtzHsCixSAnh3D9l118j6VCrN zSqjdLNMMjVJphchsYrrmINUnoM21VbxD3XAU17UZL6mXJd4jpfeG8/RGZEf2hrrhtj7ycg0GeWm OA= X-UI-Out-Filterresults: notjunk:1;V03:K0:DUCVtlD/E8w=:hmKPZYsQ+czk/8DKAtTHkb jZ7KFlr78t6/+bCYPLUZrirdQSvGdDrfb9uiuHg+mBlKewdg9PUP/Tg+vGHNoDWY8PgiR+NSo 9/WbHimXaI1044w9zoIR1NRZC1dnM+MjFUb78vxeqPodnZunZfwbI32m2frUK0QAr9f38W9Eh WEeBAlEa7cxRsxC2efep0Er+2vzg+MeENbL0oPM4ayhveICvbqXleBOrnh/TWyhK5/mcLH3HF xJ+xYfzQ91IQKkNf0OgurBJs31GRq5uw6DR0SfFSsZ8wCSTw/Gwprh6aTLVdOTL6AMCJY+JLe 7EfPW9H9F2FgDA3HlMpHT2CpPNSVxItwwFwISYZS8LS94WiiN0bx0yv81Os3Trxa6Qz8wrTMO Q0XvOs/6Vn/omQ6CH4u+y+tmj5/ozhnHfG+5Ftp4pKy3HvF0FHI0t2hW34me4X3kKO66eJHyb w0EbmLH1T+gdsdzpp083wfl/z9H/aInI4xNuqC+vkphWBJLiOtctLzlEP+HjVOtmMqbSfIfm5 LWx8Et3SXGWJicNoausZ2hO1TpabmgRYbqeWgpx64rkxhqK0cJstUcO9btdwtjGtLbMFLOc20 cGathkmoelxcsEbiS3kx7nYQIx35PnKrwvcok2vPAoJ4JIvkV8EwBcoWEQlxUgHJuFKs27sNr CTjdwjD9pOVX9DELrCxQYsoYs8CDFgmliwPExdjYJ54GlgSmrJCiwdKNaeUn1H0YiqyCwdL7n 5Vj2d73UEAxePv5AeKvd5KJzU4AhuS848fD1fq/SWGCUnI9UrVjc8k7J03rsC42ku1utUGpQ+ BIrbNP/ X-BeenThere: u-boot@lists.denx.de X-Mailman-Version: 2.1.34 Precedence: list List-Id: U-Boot discussion List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Errors-To: u-boot-bounces@lists.denx.de Sender: "U-Boot" X-Virus-Scanned: clamav-milter 0.103.2 at phobos.denx.de X-Virus-Status: Clean Hi, i try to create a upstream uboot binary for use with rockchip rk3568 (bananapi r2 pro). Currently i'm on preparation phase as i don't have the hardware yet (so i cannot test it). First thanks to everybody upstreamed support for this SOC in uboot and linux. i found a compiled uboot.img with this signature: FIT Image with ATF/OP-TEE/U-Boot my created itb (make u-boot.itb) has this signature: FIT image for U-Boot with bl31 (TF-A) can anybody give me a hint how to create same signature as above? or where i have to look... i guess the uboot.img is created using this source: https://github.com/rockchip-linux/u-boot as far as i see the itb gets generated from the dtb OBJCOPY u-boot-nodtb.bin ./"arch/arm/mach-rockchip/make_fit_atf.py" \ arch/arm/dts/rk3568-evb.dtb > u-boot.its RELOC u-boot-nodtb.bin MKIMAGE u-boot.itb op-tee seems to be a lib only in rockchip repo, not upstream https://github.com/rockchip-linux/u-boot/tree/next-dev/lib/optee_clientApi seems to be some kind of secure boot, idk if this is needed to boot the device i wonder why uboot differentiate between ATF and BL31...imho BL31 is part of ATF, do i need all parts of ATF (at least BL2) to get same signature? i have some rk3568_ddr_xxxxMHz_v1.08.bin which can be BL2 (did not found any signature and Rockchip ATF source is afaik not yet released, at least not for rk35xx which is new). "my" source is this: https://github.com/frank-w/u-boot/tree/2021-10-bpi-r2-pro regards Frank