wolfBoot for CNSA 2.0 Secure Boot on Zynq UltraScale+ MPSoC
wolfSSL Embedded SSL/TLS Library - wolfSSL
June 5, 2026
Executive Summary Problem: Zynq UltraScale+ MPSoC secure boot authenticates the FSBL with RSA-4096 in immutable BootROM. CNSA 2.0 requires post-quantum algorithms for long-term software and firmware verification. RSA-4096 is not quantum-resistant, so the BootROM cannot be the final CNSA 2.0 firmware-authentication answer. Solution: Use wolfBoot as the system-level post-quantum authorization layer. Keep AMD secure boot […]
Discussion in the ATmosphere