This example shows how to create a boot image with encryption enabled for FSBL and application with the RED key stored in eFUSE.
the_ROM_image:
{
[keysrc_encryption] efuse_red_key
[
bootloader,
encryption=aes,
aeskeyfile=aes0.nky,
destination_cpu=a53-0
] ZynqMP_Fsbl.elf
[
destination_cpu = a53-0,
encryption=aes,
aeskeyfile=aes1.nky
] App_A53_0.elf
}