Versal AI Edge Series Gen 2 and Versal Prime Series Gen 2 Authentication Header - 2025.1 English - UG1283

Bootgen User Guide (UG1283)

Document ID
UG1283
Release Date
2025-05-29
Version
2025.1 English

This header defines details of boot Authentication scheme for Versal AI Edge Series Gen 2 and Versal Prime Series Gen 2 PDI.

Table 1. Versal AI Edge Series Gen 2 and Versal Prime Series Gen 2 Authentication Header
Bits Size Field Description
[31:18] 14 Reserved Reserved
[17:16] 2 PPK Key Sel
  • 0: PPK 0 Selection in Efuse
  • 1: PPK 1 Selection in Efuse
  • 2: PPK 2 Selection in Efuse
  • 3: Rsvd
[15:14] 2 Authentication Certificate Format Reserved
[13:12] 2 Authentication Certificate Version 00: Current AC
[11] 1 PPK KeyType 0: Hash Key
[10:9] 2 PPK Key Src 0: eFUSE
[8] 1 SPK Enable 1: SPK Enabled
[7:4] 4 HASH Algorithm
  • 0: SHA2-384 (not supported)
  • 1: SHA3/384
  • 2 to 16: Reserved for future use
[3:0] 4 Public Algorithm
  • 0: Non-Secure
  • 1: RSA4096
  • 2: ECDSAp384
  • 3: ECDSAp521 (only for PLM loadable partitions)
  • 4: LMS with HSS
  • 5: LMS
  • 6 to 16: Reserved for future