Renesas RA Family Injecting and Updating Secure User Keys
■Cryptography is important because it provides the tools to implement solutions for authenticity, confidentiality, and integrity, which are vital aspects of any security solution. In modern cryptographic systems, the security of the system no longer depends on the secrecy of the algorithm used but rather on the secrecy of the keys.
■Renesas MCU security revolves around integrated security engines. The most advanced security engine used in the Renesas RA Family is the SCE9 Secure Crypto Engine. The SCE9 can operate in two different modes, called Compatibility Mode and Protected Mode. The application note Renesas SCE Operational Modes (R11AN0498) explains the definition of the two modes and their use cases. In Compatibility Mode, SCE9 can inject secure keys as well as plaintext keys. In Protected Mode, SCE9 can inject only secure keys.
■Other available security engines used in RA Family MCUs are the SCE7, SCE5, and SCE5_B. These Secure Crypto Engines can only operate in Compatibility Mode and can inject secure keys as well as plaintext keys.
■This application project demonstrates SCE9 Protected Mode and SCE7 Compatibility Mode secure key injection. Compatibility Mode secure key injection for SCE5 and SCE5_B uses identical APIs to SCE7 secure key injection.
■This release contains AES-256 and ECC public key injection and update examples on an RA6M4 with the SCE9 in Protected Mode, and an AES-128 secure key injection and update example on an RA6M3 with the SCE7 (Compatibility Mode). Example keys are provided with the projects. This application note describes how to modify the projects to use custom keys.
|
|
Application note & Design Guide |
|
|
|
Please see the document for details |
|
|
|
|
|
|
|
English Chinese Chinese and English Japanese |
|
Oct.25.22 |
|
Rev.1.30 |
|
R11AN0496EU0130 |
|
5.4 MB |
- +1 Like
- Add to Favorites
Recommend
All reproduced articles on this site are for the purpose of conveying more information and clearly indicate the source. If media or individuals who do not want to be reproduced can contact us, which will be deleted.