IMX8 OPTEE

From Variscite Wiki
DART-MX8M-PLUS OPTEE

OP-TEE Introduction

NXP Platforms are enabled with Open Portable TEE (OP-TEE), which is an open source project which contains a full implementation to make up a complete Trusted Execution Environment.

For more information, please see the following resources from NXP:

Enable OP-TEE with Yocto

To enable OP-TEE, add the following to conf/local.conf:

MACHINE_FEATURES:append += " optee"
DISTRO_FEATURES:append += " optee"
IMAGE_INSTALL:append += " optee-os optee-test"

Then, rebuild the Yocto image and test OP-TEE using the xtest utility.

For more information about how to rebuild the Yocto, follow the steps here: Build Yocto from source code.

OP-TEE Memory Configuration

The DRAM memory size is hardcoded in optee-os and needs to be updated according to the memory configuration of your SoM.

The DRAM size is configured by TEE_CFG_DDR_SIZE, which is initialized in https://github.com/varigit/meta-variscite-bsp/blob/kirkstone/conf/machine/imx8mq-var-dart.conf and may be updated directly or overidden in conf/local.conf.

For example, override TEE_CFG_DDR_SIZE to 2GB:

TEE_CFG_DDR_SIZE = "0x80000000"