halal-beef/tonasket

A set of tools for assisting in signing Exynos BL1 and generating keys needed to sign it, primarily targetting Exynos9830 and above.

★ 3Forks 0PythonGitHub ↗Compare

README

Tonasket

(yes its named after the xbox 360 board)

A set of tools for assisting in signing Exynos BL1 and generating keys needed to sign it, primarily targetting Exynos9830 and above.

gen_key

This tool will create a private key for signing BL1 and a corresponding efuse file to fuse the devices OTP with or to be used in a payload to allow own-signed BL1s to boot in EUB.

Usage:

  -h, --help            show this help message and exit
  -o, --output-prefix OUTPUT_PREFIX
                        Output file prefix

sign_tool

Sign's BL1s, it must have pre-existing space for the header and no footer.

Usage:

  -h, --help            show this help message and exit
  -i, --input INPUT     Path to unsigned BL1 input
  -o, --output OUTPUT   Path to signed BL1 output
  -k, --key-file KEY_FILE
                        Path to the private key to sign BL1 with
  -H, --hmac HMAC       Path to the HMAC file to put into BL1
  -s, --size SIZE       Size of the BL1 output (has to be divisible by 512), for example 0x3000
  -e, --evt EVT         Two digit EVT Version for SoC, e.g. 11 for EVT1.1
  -r, --rp-cnt RP_CNT   Rollback counter for BL1
  -t, --tee-pub-key TEE_PUB_KEY
                        Path to the Stage2 TEE public key blob
  -re, --ree-pub-key REE_PUB_KEY
                        Path to the Stage2 REE public key blob
  -m, --model-id MODEL_ID
                        Model ID (e.g. 0x13D for Samsung Galaxy S20 5G)
  -ma, --machine-id MACHINE_ID
                        Machine ID, (e.g 0x9830 for Exynos9830)

Contributors

halal-beef

Issues