2.1. eFuse Overview

processingdeviceinternalsetbecomeeFusespace, can provideSecure Boot and a 448-bit user-defined area.

For specific eFuse partitions, see eFuse User-Writable Areas and eFuse Security Configuration Fields .

Table 2.1 eFuse User-Writable Areas

Name

Size

Comment

USER

40 Bytes

User-defined area

DEVICE_ID

8 Bytes

Device serial number

HASH0_PUBLIC

32 Bytes

Secure Boot RSA public-key hash

LOADER_EK

16 Bytes

Secure Boot AES encryption key

DEVICE_EK

16 Bytes

User-defined area, which can be locked

SECUREBOOT

4 Bytes

Enable Secure Boot

Table 2.2 eFuse Security Configuration Fields

Name

Comment

LOCK_HASH0_PUBLIC

Lock the Secure Boot RSA public-key hash area so that it cannot be read or written

LOCK_LOADER_EK

Lock the Secure Boot AES encryption key area so that it cannot be read or written

LOCK_DEVICE_EK

Lock DEVICE_EK so that this area cannot be read or written

SECUREBOOT

Enable Secure Boot