blob: febafcc7a013857dc3a9d34f8c209354d3b16645 [file] [log] [blame]
Gustavo Henrique Nihei523ef3f2021-11-12 17:53:18 -03001# SPDX-FileCopyrightText: 2021 Espressif Systems (Shanghai) CO LTD
Almir Okatoeb6b7bf2021-09-07 17:06:35 -03002#
3# SPDX-License-Identifier: Apache-2.0
4
Almir Okatofa173df2022-04-19 01:10:30 -03005CONFIG_ESP_FLASH_SIZE=4MB
Shubham Kulkarni052561d2021-07-20 11:42:44 +05306CONFIG_ESP_BOOTLOADER_SIZE=0xF000
Almir Okatofa173df2022-04-19 01:10:30 -03007CONFIG_ESP_BOOTLOADER_OFFSET=0x1000
Almir Okatoa1d641d2022-02-21 19:31:46 -03008CONFIG_ESP_IMAGE0_PRIMARY_START_ADDRESS=0x10000
Shubham Kulkarni052561d2021-07-20 11:42:44 +05309CONFIG_ESP_APPLICATION_SIZE=0x100000
Almir Okatoa1d641d2022-02-21 19:31:46 -030010CONFIG_ESP_IMAGE0_SECONDARY_START_ADDRESS=0x110000
Shubham Kulkarni052561d2021-07-20 11:42:44 +053011CONFIG_ESP_MCUBOOT_WDT_ENABLE=y
12CONFIG_ESP_SCRATCH_OFFSET=0x210000
13CONFIG_ESP_SCRATCH_SIZE=0x40000
Almir Okatoeb6b7bf2021-09-07 17:06:35 -030014
15# CONFIG_ESP_SIGN_EC256=y
16# CONFIG_ESP_SIGN_ED25519=n
17# CONFIG_ESP_SIGN_RSA=n
18# CONFIG_ESP_SIGN_RSA_LEN=2048
19
20# Use Tinycrypt lib for EC256 or ED25519 signing
21# CONFIG_ESP_USE_TINYCRYPT=y
22# Use Mbed TLS lib for RSA image signing
23# CONFIG_ESP_USE_MBEDTLS=n
24
25# It is strongly recommended to generate a new signing key
26# using imgtool instead of use the existent sample
27# CONFIG_ESP_SIGN_KEY_FILE=root-ec-p256.pem
Gustavo Henrique Nihei523ef3f2021-11-12 17:53:18 -030028
29# Hardware Secure Boot related options
30# CONFIG_SECURE_SIGNED_ON_BOOT=1
31# CONFIG_SECURE_SIGNED_APPS_RSA_SCHEME=1
32# CONFIG_SECURE_BOOT=1
33# CONFIG_SECURE_BOOT_V2_ENABLED=1
34# CONFIG_SECURE_BOOT_SUPPORTS_RSA=1
35
Almir Okato14763b12021-11-25 00:45:26 -030036# Hardware Flash Encryption related options
37# CONFIG_SECURE_FLASH_ENC_ENABLED=1
38# CONFIG_SECURE_FLASH_UART_BOOTLOADER_ALLOW_ENC=1
39# CONFIG_SECURE_FLASH_UART_BOOTLOADER_ALLOW_DEC=1
40# CONFIG_SECURE_FLASH_UART_BOOTLOADER_ALLOW_CACHE=1
41# CONFIG_SECURE_FLASH_ENCRYPTION_MODE_DEVELOPMENT=1
42# CONFIG_SECURE_BOOT_ALLOW_JTAG=1
43# CONFIG_SECURE_BOOT_ALLOW_ROM_BASIC=1
44
Gustavo Henrique Nihei523ef3f2021-11-12 17:53:18 -030045# Options for enabling eFuse emulation in Flash
46# CONFIG_EFUSE_VIRTUAL=1
47# CONFIG_EFUSE_VIRTUAL_KEEP_IN_FLASH=1