[Header] Target = AHAB Version = 1.0 [Install SRK] # SRK table generated by srktool File = "../crts/SRK_1_2_3_4_table.bin" # Public key certificate in PEM format on this example only using SRK key Source = "../crts/SRK1_sha384_secp384r1_v3_usr_crt.pem" # Index of the public key certificate within the SRK table (0 .. 3) Source index = 0 # Type of SRK set (NXP or OEM) Source set = OEM # bitmask of the revoked SRKs Revocations = 0x0 [Authenticate Data] # Binary to be signed generated by mkimage File = "u-boot-atf-container.img" # Offsets = Container header Signature block (printed out by mkimage) Offsets = 0x0 0x110