Forum Discussion
Hello,
Thank you very much for your answer.
We are starting to understand that we misunderstood the process…
We indeed want to only use *authentication* (without encryption).
We succeeded in signing our SPL, and booting it. For this, we use the 'sign' and '-user' options.
This validates the fact that our SPL is correctly signed with our key, but as expected, does NOT check that the key is trusted (because its hash is not verified).
We thought that the EKP file could be used to inject the SHA256 hash of the signing key into *volatile* memory, so that we could validate the whole process before flashing in OTP. In fact, your explanation seems to confirm that the EKP file is only useful to inject key used when encrypted SPL is selected. In our case, the EKP file seems useless.
Question 1: Can you confirm this understanding?
If this is the case, we understand that the next step in our case is to flash the OTP fuses for authentication only:
- Flashing the SHA256 hash of the signing key (i.e., the KAK key hash?)
- Flashing the fuses that says that the signature must be check (bit authen_en_f, kak_len_f, kak_src_f, ...)
Question 2 : Can you confirm that? How can we do that?
Best regards,
Christian & Baptiste & Théo
Hi Christian & Baptiste & Théo
Thank you for your response.
Your understanding with respect to Question 1 is correct.
Regarding your further questions related to flashing hash and fuse bits, I have already informed the concerned people at Altera. I am waiting for their response, once I have I will share it at the earliest.
Kind Regards
Naresh
- ThFo3 months ago
New Contributor
Hi @SueC_Altera
We can confirm that a representative from Altera France has contacted us regarding our request.
We will continue to provide updates on the situation on this post.Thank you very much!
Best regards,
Christian & Baptiste & Théo
- nareshrkumar4 months ago
New Contributor
Hi Christian & Baptiste & Théo
I got information saying, we need NDA to share the secure fuse flashing information. If you don't mind, can you please share your company name and whether it has NDA with Altera?
Meanwhile, I have asked for a contact at Altera to connect with your team on email and help you with the NDA and sharing of fuse information.
Thank you for your patience
Naresh
- nareshrkumar4 months ago
New Contributor
Hi Christian & Baptiste & Théo
I have got confirmation from my team that they have initiated communication via email to help you with NDA and sharing the relevant fuse flashing information accordingly. I believe you should have received the email by now.
Hope this helps!
Kind Regards
Naresh
- ThFo4 months ago
New Contributor
Hello
Sorry for the delay, we were on vacation.
We sent a response to the email regarding the NDA on the 19th (Tuesday) and are now waiting for the document.Best regards,
Christian & Baptiste & Théo
- ThFo4 months ago
New Contributor
Hello @nareshrkumar , @Jeet14,
We haven’t received much information about the NDA since the email sent on the 19th. Do you have any updates regarding the NDA document?
Best regards,
Christian & Baptiste & Théo
- nareshrkumar4 months ago
New Contributor
Hi Christian & Baptiste & Théo
I will check with the respective team and get back to you.
Kind Regards
Naresh
- nareshrkumar3 months ago
New Contributor
Hi Christian & Baptiste & Théo
I have got a response from the team that they received your NDA and currently, it is being validated. The team has been notified about the urgency and I have been informed, they will respond to you at the earliest; it could be as early as this week.
Thank you for your patience
Naresh
- ThFo3 months ago
New Contributor
Hello @nareshrkumar ,
For your information, we have not received any additional information.
Furthermore, we have not received an NDA to sign; we have only provided the requested information. Is this normal?
Best regards,
Christian & Baptiste & Théo
- ThFo3 months ago
New Contributor
For your information, we received an email 1hour ago from Intel customer support requesting our contact number to assist for better NDA searchability. Unfortunately, we have not received any contact number or NDA document.
Therefore, we have sent the company details and are awaiting further instructions if additional information is needed.
Best regards,
Christian & Baptiste & Théo
- SueC_Altera3 months ago
Contributor
Hi Christina, Baptiste, and Theo,
It appears you don't have an NDA in place, so we are in the process of working with legal to set that up. We'll get back to you as soon as we can.
Sue
- ThFo3 months ago
New Contributor
Hi @SueC_Altera
Thank you for the information.
Do you have a rough estimate of how long this might take?Best regards,
Christian & Baptiste & Théo
- SueC_Altera3 months ago
Contributor
Hi Guys,
You should have gotten an email update on the situation. Please let me know if that did not arrive.
Thanks,
Sue
- ThFo3 months ago
New Contributor
Hi @SueC_Altera ,
We haven't received any emails. Christian and Théo checked their spam folders and they didn't find anything in there.
Best regards,
Christian & Baptiste & Théo
- ThFo3 months ago
New Contributor
Hi @SueC_Altera @nareshrkumar ,
Since your last message, we have not received any further information by email.
Could you please confirm whether the details we previously provided by email are sufficient to prepare the NDA document?Best regards,
Christian & Baptiste & Théo
- SueC_Altera3 months ago
Contributor
Hi All,
I'm sorry for your frustration. Unfortunately, NDAs are not my area. I've asked for an update and expressed your frustration to them. Keep bugging me if you don't hear back and I'll keep bugging them.
Sue
- SueC_Altera3 months ago
Contributor
Hi All,
Just wanted to update you that we connected with a person in France and you should be hearing from them soon. I'm sorry for the delay.
Sue
- ThFo3 months ago
New Contributor
Hi @SueC_Altera
For information, we have received all the requested documentation and are currently testing the implementation.
Thank you very much!
Best regards,
Christian & Baptiste & Théo
- SueC_Altera3 months ago
Contributor
Thanks for letting me know. I hope all goes well for you.
Sue