STM32U585 - Secure boot loader
Hello Everyone,
We are currently working with STM32U585 microcontroller for one of our IoT project.
In this project we are planning to implement secure boot.
In this regard we want some clarification on the below points,
1. After doing secure firmware install(SFI) & setting the RDP to level 2, if the JTAG is compromised is it possible to load any hex file without following SFI process as RDP regression would have taken place and the microcontroller flash would have been mass erased and RDP level = 0 which gives full access to the controller.
2. How does the immutable boot loader in RSS checks the integrity of the software bootloader loaded in the flash?
3. Is it possible to add custom key checks to the immutable bootloader in the RSS section?
4. Is it possible to load custom bootloader or modify the immutable bootloader in the RSS section?
Thanks in Advance.
Surya S
