Issue while using the meta-toradex-security layer for secureboot

In our case, we are using Colibri iMX6ULL 512MB IT (044).

Okay, so you are using another variant other than the 1GB eMMC. Unfortunately then this meta-layer will probably not work for this hardware. The signing process for raw NAND versus eMMC does differ I believe.

Is there any tweak that can make ‘meta-toradex-security’ layer work for our module?

Support would need to be added to the meta-layer, which is something we don’t have planned in the near-future. I’m not sure if it would be a simple tweak or not, it would require further investigation and testing.

We basically need to get the U-Boot signed, either using the layer or the tool externally. What can be the solution?

This thread is probably the most comprehensive discussion regarding HAB on the raw NAND imx6ull: HAB u-boot cannot boot

It’s a bit old, but there hasn’t been much more recent efforts since the raw NAND imx6ull is not often used for such use-cases.

Best Regards,
Jeremias