Security User Guide: Intel® Programmable Acceleration Card with Intel® Arria® 10 GX FPGA
ID
683453
Date
3/06/2020
Public
3.1. Installing PACSign
3.2. PACSign Tool
3.3. Creating Unsigned Images
3.4. Using an HSM Manager
3.5. Creating Keys
3.6. Root Entry Hash Bitstream Creation
3.7. Signing Images
3.8. Creating a CSK ID Cancellation Bitstream
3.9. PACSign PKCS11 Manager *.json Reference
3.10. Creating a Custom HSM Manager
3.11. PACSign Man Page
3.10.1.3. PUBLIC_KEY.get_ID()
Intel® FPGA PACs have a laddering key mechanism that allows for cancellation of code signing keys. This method returns the integer key ID of the specified key. The root key ID must be the constant 0xFFFFFFFF. Root keys cannot be canceled.
Intel® PAC with Intel® Arria® 10 GX FPGA AFU code signing key IDs must be in the range 0 to 127 (7-bit unsigned).