(yes its named after the xbox 360 board)
A set of tools for assisting in signing Exynos BL1 and generating keys needed to sign it, primarily targetting Exynos9830 and above.
This tool will create a private key for signing BL1 and a corresponding efuse file to fuse the devices OTP with or to be used in a payload to allow own-signed BL1s to boot in EUB.
Usage:
-h, --help show this help message and exit
-o, --output-prefix OUTPUT_PREFIX
Output file prefix
Sign's BL1s, it must have pre-existing space for the header and no footer.
Usage:
-h, --help show this help message and exit
-i, --input INPUT Path to unsigned BL1 input
-o, --output OUTPUT Path to signed BL1 output
-k, --key-file KEY_FILE
Path to the private key to sign BL1 with
-H, --hmac HMAC Path to the HMAC file to put into BL1
-s, --size SIZE Size of the BL1 output (has to be divisible by 512), for example 0x3000
-e, --evt EVT Two digit EVT Version for SoC, e.g. 11 for EVT1.1
-r, --rp-cnt RP_CNT Rollback counter for BL1
-t, --tee-pub-key TEE_PUB_KEY
Path to the Stage2 TEE public key blob
-re, --ree-pub-key REE_PUB_KEY
Path to the Stage2 REE public key blob
-m, --model-id MODEL_ID
Model ID (e.g. 0x13D for Samsung Galaxy S20 5G)
-ma, --machine-id MACHINE_ID
Machine ID, (e.g 0x9830 for Exynos9830)