AN 556: Using the Design Security Features in Intel FPGAs
                    
                        ID
                        683269
                    
                
                
                    Date
                    5/21/2021
                
                
                    Public
                
            
                        
                        
                            
                                Overview of the Design Security Feature
                            
                            
                        
                            
                                Hardware and Software Requirements
                            
                            
                        
                            
                                Steps for Implementing a Secure Configuration Flow
                            
                            
                        
                            
                            
                                Steps to Enable Tamper-Protection Bit Programming
                            
                        
                            
                            
                                Supported Configuration Schemes
                            
                        
                            
                                Security Mode Verification
                            
                            
                        
                            
                            
                                Serial Flash Loader Support with Encryption Enabled
                            
                        
                            
                            
                                Serial Flash Loader Support with Encryption Enabled for Single FPGA Device Chain
                            
                        
                            
                                JTAG Secure Mode for 28-nm and 20-nm FPGAs
                            
                            
                        
                            
                            
                                Document Revision History for AN 556: Using the Design Security Features in Intel® FPGAs
                            
                        
                    
                
                                                
                                                
                                                    
                                                    
                                                        Generating Single-Device .ekp File and Encrypting Configuration File using Intel® Quartus® Prime Software
                                                    
                                                    
                                                
                                                    
                                                    
                                                        Generating Single-Device .ekp File and Encrypting Configuration File using Command-Line Interface in Intel® Quartus® Prime Software
                                                    
                                                    
                                                
                                                    
                                                    
                                                        Generating Multi-Device .ekp File and Encrypting Configuration File using Intel® Quartus® Prime Software
                                                    
                                                    
                                                
                                            
                                        
                                                
                                                
                                                    
                                                    
                                                        Programming Volatile or Non-Volatile Key using Intel® FPGA Ethernet Cable and Intel® Quartus® Prime Software
                                                    
                                                    
                                                
                                                    
                                                    
                                                        Programming Single-Device Volatile or Non-Volatile Key using Intel® Quartus® Prime Software
                                                    
                                                    
                                                
                                                    
                                                    
                                                        Programming Single-Device Volatile or Non-Volatile Key using the Command-Line Interface in Intel® Quartus® Prime Software
                                                    
                                                    
                                                
                                                    
                                                    
                                                        Programming Multi-Device Volatile or Non-Volatile Key using Intel® Quartus® Prime Software
                                                    
                                                    
                                                
                                                    
                                                    
                                                        Programming Multi-Device Volatile or Non-Volatile Key using the Command-Line Interface in Intel® Quartus® Prime Software
                                                    
                                                    
                                                
                                                    
                                                    
                                                        Programming Key using JTAG Technologies
                                                    
                                                    
                                                
                                            
                                        Using Qcrypt Tool
You can use the following command to encrypt and decrypt .rbf files. This command is the only way to set the advanced security options.
qcrypt [options] <input_file.rbf> <output_file.rbf>