<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Keys creation with CAAM and OP-TEE in i.MX Processors</title>
    <link>https://community.nxp.com/t5/i-MX-Processors/Keys-creation-with-CAAM-and-OP-TEE/m-p/1363769#M182311</link>
    <description>&lt;P&gt;We need to verify your NDA and then send you the information. It is better to create a ticket for this.&lt;/P&gt;
&lt;P&gt;&lt;A href="https://support.nxp.com/s/" target="_blank"&gt;https://support.nxp.com/s/&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks.&lt;/P&gt;</description>
    <pubDate>Fri, 29 Oct 2021 08:36:47 GMT</pubDate>
    <dc:creator>jimmychan</dc:creator>
    <dc:date>2021-10-29T08:36:47Z</dc:date>
    <item>
      <title>Keys creation with CAAM and OP-TEE</title>
      <link>https://community.nxp.com/t5/i-MX-Processors/Keys-creation-with-CAAM-and-OP-TEE/m-p/1362469#M182211</link>
      <description>&lt;DIV&gt;We want to perform authentication with CAAM and OP-TEE without revealing private key (just keep it in CAAM). We are using i.MX8MM and branch 5.4.70_2.3.0 with corresponding kernel and u-boot.&lt;/DIV&gt;&lt;DIV&gt;This is typical scenario:&lt;BR /&gt;&lt;UL&gt;&lt;LI&gt;generate public key to corresponding private key (without revealing it at any step, the best is to use secure world) and send it to backend&lt;/LI&gt;&lt;LI&gt;pass data to TA (trusted application), decrypt data encrypted by public key, solve challenge, encrypt it and send back to backend&amp;nbsp;&lt;/LI&gt;&lt;/UL&gt;&lt;DIV&gt;We have troubles in understanding, some details:&lt;/DIV&gt;&lt;DIV&gt;&lt;UL&gt;&lt;LI&gt;Is the proposed scenario possible? We considered options like creating black key blobs (AN12838) in OP-TEE or using manufacturing protection (AN13222) - are we on the right track?&lt;/LI&gt;&lt;LI&gt;We have seen a repository &lt;A href="https://source.codeaurora.org/external/imxsupport/imx_sec_apps/" target="_blank" rel="noopener"&gt;https://source.codeaurora.org/external/imxsupport/imx_sec_apps/&lt;/A&gt;, however it is hard to figure out whether our idea is possible or not. Do you have more detailed examples or documentation?&lt;/LI&gt;&lt;LI&gt;Is it possible to simultaneously use CAAM from OP-TEE and from kernel?&lt;/LI&gt;&lt;LI&gt;We have seen support mostly for 4.14, is 5.4 supported as well?&lt;/LI&gt;&lt;/UL&gt;&lt;DIV&gt;We would appreciate any feedback and/or suggestions. It would be extremely helpful to receive relevant documentation and/or examples.&lt;BR /&gt;&lt;BR /&gt;Moreover we would like to have access to document &lt;FONT size="2"&gt;&lt;SPAN&gt;&lt;SPAN&gt;&lt;SPAN&gt;&lt;SPAN&gt;&lt;A href="https://community.nxp.com/docs/DOC-343388" target="_blank" rel="noopener"&gt;&lt;FONT size="3"&gt;https://community.nxp.com/docs/DOC-343388&lt;/FONT&gt;&lt;/A&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;FONT size="2"&gt;&lt;SPAN&gt;&lt;SPAN&gt;&lt;SPAN&gt;&lt;SPAN&gt;&lt;FONT size="3"&gt;,&lt;/FONT&gt;&lt;/SPAN&gt;&lt;FONT size="3" color="#333333"&gt; however from my account access is denied. We have signed NDA with NXP, could you grant me access to mentioned document?&lt;/FONT&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/DIV&gt;&lt;/DIV&gt;&lt;/DIV&gt;</description>
      <pubDate>Wed, 27 Oct 2021 13:25:55 GMT</pubDate>
      <guid>https://community.nxp.com/t5/i-MX-Processors/Keys-creation-with-CAAM-and-OP-TEE/m-p/1362469#M182211</guid>
      <dc:creator>M_J</dc:creator>
      <dc:date>2021-10-27T13:25:55Z</dc:date>
    </item>
    <item>
      <title>Re: Keys creation with CAAM and OP-TEE</title>
      <link>https://community.nxp.com/t5/i-MX-Processors/Keys-creation-with-CAAM-and-OP-TEE/m-p/1363769#M182311</link>
      <description>&lt;P&gt;We need to verify your NDA and then send you the information. It is better to create a ticket for this.&lt;/P&gt;
&lt;P&gt;&lt;A href="https://support.nxp.com/s/" target="_blank"&gt;https://support.nxp.com/s/&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks.&lt;/P&gt;</description>
      <pubDate>Fri, 29 Oct 2021 08:36:47 GMT</pubDate>
      <guid>https://community.nxp.com/t5/i-MX-Processors/Keys-creation-with-CAAM-and-OP-TEE/m-p/1363769#M182311</guid>
      <dc:creator>jimmychan</dc:creator>
      <dc:date>2021-10-29T08:36:47Z</dc:date>
    </item>
    <item>
      <title>Re: Keys creation with CAAM and OP-TEE</title>
      <link>https://community.nxp.com/t5/i-MX-Processors/Keys-creation-with-CAAM-and-OP-TEE/m-p/1364485#M182409</link>
      <description>&lt;P&gt;Hi &lt;a href="https://community.nxp.com/t5/user/viewprofilepage/user-id/1422"&gt;@jimmychan&lt;/a&gt;&amp;nbsp;&lt;BR /&gt;I have created ticket as you requested.&lt;BR /&gt;Is it enough to proceed with the issue?&lt;/P&gt;</description>
      <pubDate>Mon, 01 Nov 2021 10:01:00 GMT</pubDate>
      <guid>https://community.nxp.com/t5/i-MX-Processors/Keys-creation-with-CAAM-and-OP-TEE/m-p/1364485#M182409</guid>
      <dc:creator>M_J</dc:creator>
      <dc:date>2021-11-01T10:01:00Z</dc:date>
    </item>
  </channel>
</rss>

