Fuse Burning Responsibilities

Applications can program a fuse by applying voltage using fuse burning routines found in the boot loader and the kernel APIs. The fuses and ownership required for Secure Boot are as follows:

NVIDIA Programmed

  • 128-bit Unique ID (UID), no two Tegra chips have the same UID.
  • NVIDIA production mode

Customer Programmed and Owned

  • FUSE_BOOT_SECURITY_INFO
  • 3 OEM Public keys hashed as SHA-512 in fuses with 2 revocable.
  • ODM fuse keys, stored in PSC fuse region.
  • ODM Production Mode (FUSE_SECURITY_MODE)
CAUTION:

ODM Production Mode fuse disables further fuse burning except reserved ODM fuses. Therefore, burn the ODM Production Mode fuse last.