SPRUJ79 November 2024 F29H850TU , F29H859TU-Q1
In addition to the global C29x debug enable control, each ZONE has a separate enable setting, for more granular debug access control. ZONEs can span one or more CPUs, and are orthogonal to individual CPU TAP enables. ZONEs can be used to separate debug authorization across different parts of the device between different users, with different authentication credentials established for each user. When a user performs a debug access to a memory region, the SSU checks to see if at least one LINK with the requested access to the region belongs a ZONE that has been enabled for full debug. If no LINKs match this condition, then the SSU blocks the debug access, and notifies the C29x SEC-AP handler that a debug read or write error occurred, depending on the type of access attempted.