Deploying the HPM Package and Configuring the Server
The Kunpeng SCCM must run on a server that supports the TrustZone feature.
Obtain BoostKit-boostcc-ccos-1.4.RC1.zip as instructed in Table 2. Decompress the ZIP package to obtain the HPM firmware, kunpeng_sec_drv.sec, and sdf-utils*.rpm.
Deploying the HPM Package
- Log in to the iBMC WebUI, choose , select the HPM file in the preceding package, and click Upgrade.Figure 1 Firmware upload and upgrade
Figure 2 Firmware upgrade in progress
Figure 3 Firmware upgrade completed
- After the upgrade is successful, click the power icon and choose Power Off. Wait for several seconds until the icon turns gray, and then click Power On.


Configuring the Server
For details about the hardware environments, see TrustZone Kit Feature Guide.
The TEE is incompatible with some features and is disabled by default. To enable the TEE, perform the following operations in the BIOS:
- Restart the server to access the BIOS screen. For details, see "Accessing the BIOS" in TaiShan Server BIOS Parameter Reference (Kunpeng 920 Processor).
- Disable three-channel interleaving.
- On the BIOS screen, choose and press Enter. The Memory Configuration screen is displayed.
- On the Memory Configuration screen, set Channel Interleaving 3Way to Disabled.

- Enable the TEE.
- On the BIOS screen, choose . The TEE Configuration screen is displayed.
- On the TEE Configuration screen, set Support TEE to Enabled.

- Save the modification and restart the server.

Parent topic: Environment Preparation