Cmep Key Ring Base

Physical address:.

Flags: See here

= Keyring information =

0x0~0xFF: Slave keyrings
Initial state: Empty keyrings. 0x000-0x007: Empty group0 slave keyrings, for AES decryption only. 0x008-0x00F: Empty group1 slave keyrings, any algorithm. 0x010-0x01F: Empty group2 slave keyrings, for AES decryption only. 0x020-0x02F: Empty group3 slave keyrings, any algorithm. 0x030-0x07F: Empty normal keyrings, any algorithm.

0x100~0x1FF: Slave keyrings (Reserved)
Initial state: Empty keyrings. 0x100-0x17F: Empty normal keyrings, any algorithm.

0x200~0x2FF: Master keyrings
Initial state: Filled in, key material. 0x200-0x203: AES decryption-only keys (for memory buffers). 0x204-0x205: Master keys (for group0), any algorithm. 0x206-0x20D: Master keys (for group1), any algorithm. 0x20E-0x20F: Emmc keys, fully protected. 0x210-0x217: General purpose keys (for memory buffers).

0x300~0x3FF: Master keyrings 2
Initial state: Filled in, key material. 0x300-0x33F: AES decryption-only keys (for memory buffers). 0x340-0x343: Master keys (for group2), any algorithm. 0x344-0x353: Master keys (for group3), any algorithm. 0x354-0x3FF: General purpose keys (for memory buffers).

0x400~0x4FF: RW storage keyrings (Reserved)
Initial state: Empty data storage, read-write from keyring.

0x500~0x5FF: RW storage keyrings
Initial state: Empty data storage, read-write from keyring.

0x600~0x6FF: OTP keyrings
Initial state: Filled in data, read-only. Keyring only. 0x603: DWORD BootromFlags. Bit 0~15: HasRsaRevocationKey. This is set to 0xFFFF. Bit  16: UseAlternativeEmmcClock Bit  17: Maybe eMMC clock speed option.

0x700~0x7FF: SLSK RSA Public keyrings
Initial state: Filled in data, read-only. Keyring only.