Skip to content

Add support for PQC secure boot with MCXA 5xx family of MCUs#36

Draft
alamfarjadf wants to merge 5 commits intoOpenDevicePartnership:mainfrom
alamfarjadf:mcxa-577-bootloader
Draft

Add support for PQC secure boot with MCXA 5xx family of MCUs#36
alamfarjadf wants to merge 5 commits intoOpenDevicePartnership:mainfrom
alamfarjadf:mcxa-577-bootloader

Conversation

@alamfarjadf
Copy link
Copy Markdown

@alamfarjadf alamfarjadf commented Apr 2, 2026

Adding ROM API support for MCXA 5xx family with Post-Quantum Cryptography hybrid secure boot (ML-DSA-87 and EC-DSA P384).

Added ec-slimloader-mcxa under libs and mcxa-577 examples (bootloader and blinky).

Validated on MCXA577 eval kit with hybrid signed AHAB MBI images which successfully authenticate and boot up.

Not yet added to PR: Imaging tools and secure boot provisioning library for MCXA.

BSD-3 license is acceptable (e.g. NXP-PAC), need to update deny.toml.

Clippy currently fails because SGI hashing PR waiting to be merged in embassy-mcxa

@jerrysxie jerrysxie assigned jerrysxie and unassigned jerrysxie Apr 7, 2026
Copy link
Copy Markdown
Author

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

@JamesHuard This particular file maybe of interest to you.

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Let me connect with you offline, I'm currently building out the requirements for the SBL boot flow here and want to make sure we're aligned at that level (also there's a LOT of code here for me to review 😆 )

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants