Hi rajasekarselva,
I get the info from the software security team as below:
Firstly you would need to create the certificate to cancel the root key hash. This is detailed in section 4.5 “Canceling Root Keys” of the Agilex Device Security UG.
To create the certificate, you would send the Certificate Command (0x0B) through the mailbox (HPS/FPGA)
This command is not currently documented, but will be soon in the Security Methodology UG.
The Security Methodology UG will be out in at least one month time.
Do let me know if you have further questions or concern from the info above.
Thanks.
Regards,
Aik Eu