Secure Boot Introduction

Zynq UltraScale+ Device Technical Reference Manual (UG1085)

Document ID
UG1085
Release Date
2023-12-21
Revision
2.4 English

The Zynq UltraScale+ device supports two secure boot modes: hardware root of trust or encrypt only. The hardware root of trust uses asymmetric authentication with optional encryption to provide confidentiality, integrity, and authentication of the boot and configuration files. An alternative to the hardware root of trust is the encrypt only secure boot, which is a boot mechanism that does not utilize asymmetric authentication but requires that all configuration loaded must be encrypted and authenticated using AES-GCM.