The OTA firmware update keys ideally shouldn't be the same as the secure boot keys.
…how do the updates get booted then?
…how do the updates get booted then?