Image confidentiality is discussed in the Boot Image Confidentiality and DPA section. In this
section you will modify the BIF file from the authentication section by adding the attributes required to enable image confidentiality, using the AES-256-GCM encryption algorithm. At the end, a bootgen
command will be used to create all of the required AES-256 keys.