ex_ecc with -DPTMW_SE05X_Auth=ECKey_PlatfSCP03

取消
显示结果 
显示  仅  | 搜索替代 
您的意思是: 
已解决

ex_ecc with -DPTMW_SE05X_Auth=ECKey_PlatfSCP03

跳至解决方案
2,569 次查看
KiteJLKo
Contributor II

I'm using Plug & Trust middleware (v04.05.03) from  github plug-and-trust.
Built ex_ecc with CMake flags: -DPTMW_Applet=SE05X_C -DPTMW_HostCrypto=OPENSSL -DPTMW_SE05X_Auth=ECKey_PlatfSCP03

Configured /tmp/SE05X/plain_scp.txt:

 


Running ./ex_ecc /dev/i2c-0 fails with: SE ECDSA Public Key is not Provisioned!!! and sss_session_open failed.

Full log:

App :INFO :PlugAndTrust_v04.05.03_20240502
App :INFO :Running //tmp/ex_ecc
App :INFO :Using PortName='/dev/i2c-0' (CLI)
...
App :WARN :Using SCP03 keys from:'/tmp/SE05X/plain_scp.txt'
App :ERROR:Unknown key type
...
sss :INFO :atr (Len=35) ...
sss :INFO :Newer version of Applet Found
sss :INFO :Compiled for 0x70200. Got newer 0x70216
...
sss :ERROR:SE ECDSA Public Key is not Provisioned!!!
App :ERROR:sss_session_open failed
...

How do I provision the ECDSA public key for ECKey_PlatfSCP03 auth?

 

标签 (1)
标记 (1)
0 项奖励
回复
1 解答
2,274 次查看
KiteJLKo
Contributor II

Hi @carlos_o 

Thanks for the previous guidance. I resolved the "SE ECDSA Public Key is not Provisioned" issue with the following steps on SE052F:

  1. Set default session login to SSS_HAVE_SE05X_AUTH_PLATFSCP03.
  2. Run the se05x_Delete_and_test_provision example to perform AddAttestationKeys and ReInitializeTestSample (all succeeded with kSE05x_Result_SUCCESS).
  3. Switch default session login to SSS_HAVE_SE05X_AUTH_ECKEY_PLATFSCP03.

After this, ex_sss_boot_open succeeds, and ./ex_ecc /dev/i2c-0 runs without errors.

Can you confirm if this workflow:SSS_HAVE_SE05X_AUTH_PLATFSCP03 -->provision --> SSS_HAVE_SE05X_AUTH_ECKEY_PLATFSCP03
is correct and recommended?

在原帖中查看解决方案

0 项奖励
回复
6 回复数
2,225 次查看
KiteJLKo
Contributor II

Hi @carlos_o ,

Thank you for your confirmation.

 

0 项奖励
回复
2,540 次查看
carlos_o
NXP TechSupport
NXP TechSupport

Hi @KiteJLKo 

Could you please provide in which environment are you building the code? (Windows, linux, specific microcontroller)

 

2,492 次查看
KiteJLKo
Contributor II
0 项奖励
回复
2,399 次查看
carlos_o
NXP TechSupport
NXP TechSupport

Hi @KiteJLKo 

Could you try to update to SE-PLUG-TRUST-MW_04.07.01? 

0 项奖励
回复
2,275 次查看
KiteJLKo
Contributor II

Hi @carlos_o 

Thanks for the previous guidance. I resolved the "SE ECDSA Public Key is not Provisioned" issue with the following steps on SE052F:

  1. Set default session login to SSS_HAVE_SE05X_AUTH_PLATFSCP03.
  2. Run the se05x_Delete_and_test_provision example to perform AddAttestationKeys and ReInitializeTestSample (all succeeded with kSE05x_Result_SUCCESS).
  3. Switch default session login to SSS_HAVE_SE05X_AUTH_ECKEY_PLATFSCP03.

After this, ex_sss_boot_open succeeds, and ./ex_ecc /dev/i2c-0 runs without errors.

Can you confirm if this workflow:SSS_HAVE_SE05X_AUTH_PLATFSCP03 -->provision --> SSS_HAVE_SE05X_AUTH_ECKEY_PLATFSCP03
is correct and recommended?

0 项奖励
回复
2,230 次查看
carlos_o
NXP TechSupport
NXP TechSupport

Hi @KiteJLKo 

Yes, that is a good approach to provision the key.  

0 项奖励
回复
%3CLINGO-SUB%20id%3D%22lingo-sub-2196484%22%20slang%3D%22en-US%22%20mode%3D%22CREATE%22%3Eex_ecc%20%E5%90%AB%20-DPTMW_SE05X_Auth%3DECKey_PlatfSCP03%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-2196484%22%20slang%3D%22en-US%22%20mode%3D%22CREATE%22%3E%3CP%3E%E6%88%91%E6%AD%A3%E5%9C%A8%E4%BD%BF%E7%94%A8%20github%20%E6%8F%92%E4%BB%B6%E4%B8%8E%E4%BF%A1%E4%BB%BB%E7%9A%84%20Plug%20%26amp%3B%20Trust%20%E4%B8%AD%E9%97%B4%E4%BB%B6%20(v04.05.03)%E3%80%82%3CBR%20%2F%3E%E4%BD%BF%E7%94%A8%20CMake%20%E6%A0%87%E5%BF%97%E7%89%88%E6%9C%AC%20ex_ecc%EF%BC%9A-dptmw_applet%3Dse05x_c-dptmw_hostcrypto%3DopenSSL-dptmw_se05x_auth%3Deckey_platfscp03%3C%2FP%3E%3CP%3E%E9%85%8D%E7%BD%AE%E4%BA%86%20%2Ftmp%2FSE05X%2Fplain_scp.txt%EF%BC%9A%3C%2FP%3E%3CBR%20%2F%3E%3CP%3E%3CBR%20%2F%3E%E8%BF%90%E8%A1%8C%20.%2Fex_ecc%2Fdev%2Fi2c-0%20%E5%A4%B1%E8%B4%A5%E5%B9%B6%E6%98%BE%E7%A4%BA%EF%BC%9ASE%20ECDSA%20%E5%85%AC%E9%92%A5%E6%9C%AA%E9%85%8D%E7%BD%AE%EF%BC%81%EF%BC%81%EF%BC%81%E8%80%8C%E4%B8%94%20ss_session_open%20%E5%A4%B1%E8%B4%A5%E3%80%82%3C%2FP%3E%3CP%3E%E5%AE%8C%E6%95%B4%E6%97%A5%E5%BF%97%EF%BC%9A%3C%2FP%3E%3CP%3E%E5%BA%94%E7%94%A8%E7%A8%8B%E5%BA%8F%20%3AINFO%20%3APlugAndTrust_v04.05.03_20240502%3CBR%20%2F%3EApp%20%3AINFO%20%3ARunning%20%2F%2Ftmp%2Fex_ecc%3CBR%20%2F%3EApp%20%3AINFO%20%3AUsing%20PortName%3D'%2Fdev%2Fi2c-0'%20(CLI)%3CBR%20%2F%3E...%3CBR%20%2F%3EApp%20%3AWARN%20%3AUsing%20SCP03%20keys%20from%3A'%2Ftmp%2FSE05X%2Fplain_scp.txt'%20...%3CBR%20%2F%3EApp%20%3AERROR%3AUnknown%20key%20type%3CBR%20%2F%3E...%3CBR%20%2F%3Esss%20%3AINFO%20%3Aatr%20(Len%3D35)%20...%3CBR%20%2F%3Esss%20%3AINFO%20%3ANewer%20version%20of%20Applet%20Found%3CBR%20%2F%3Esss%20%3AINFO%20%3ACompiled%20for%200x70200.%E6%9C%89%E6%9B%B4%E6%96%B0%E7%9A%84%200x70216...%20%3CBR%20%2F%3E%3CBR%20%2F%3ESSS%3A%20%E9%94%99%E8%AF%AF%3ASE%20ECDSA%20%E5%85%AC%E9%92%A5%E6%9C%AA%E9%85%8D%E7%BD%AE%EF%BC%81%EF%BC%81%EF%BC%81%3CBR%20%2F%3E%E5%BA%94%E7%94%A8%E7%A8%8B%E5%BA%8F%EF%BC%9A%E9%94%99%E8%AF%AF%EF%BC%9ASSS_Session_Open%20%E5%A4%B1%E8%B4%A5...%20%3CBR%20%2F%3E%3C%2FP%3E%3CP%3E%E5%A6%82%E4%BD%95%E4%B8%BA%20eckey_platfscp03%20%E8%BA%AB%E4%BB%BD%E9%AA%8C%E8%AF%81%E9%85%8D%E7%BD%AE%20ECDSA%20%E5%85%AC%E9%92%A5%EF%BC%9F%3C%2FP%3E%3CBR%20%2F%3E%3C%2FLINGO-BODY%3E%3CLINGO-LABS%20id%3D%22lingo-labs-2196484%22%20slang%3D%22en-US%22%20mode%3D%22CREATE%22%3E%3CLINGO-LABEL%3ESmart%20Card%3C%2FLINGO-LABEL%3E%3C%2FLINGO-LABS%3E%3CLINGO-SUB%20id%3D%22lingo-sub-2205678%22%20slang%3D%22en-US%22%20mode%3D%22CREATE%22%20translate%3D%22no%22%3ERe%3A%20ex_ecc%20with%20-DPTMW_SE05X_Auth%3DECKey_PlatfSCP03%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-2205678%22%20slang%3D%22en-US%22%20mode%3D%22CREATE%22%3E%3CP%3E%E4%BD%A0%E5%A5%BD%EF%BC%8C%3CA%20href%3D%22https%3A%2F%2Fcommunity.nxp.com%2Ft5%2Fuser%2Fviewprofilepage%2Fuser-id%2F241501%22%20target%3D%22_blank%22%3E%40Carlos_o%3C%2FA%3E%3C%2FP%3E%3CP%3E%E6%84%9F%E8%B0%A2%E4%B9%8B%E5%89%8D%E7%9A%84%E6%8C%87%E5%AF%BC%E3%80%82%E6%88%91%E5%9C%A8%20SE052F%20%E4%B8%8A%E9%80%9A%E8%BF%87%E4%BB%A5%E4%B8%8B%E6%AD%A5%E9%AA%A4%E8%A7%A3%E5%86%B3%E4%BA%86%20%22%20SE%20ECDSA%20%E5%85%AC%E9%92%A5%E6%9C%AA%E9%85%8D%E7%BD%AE%20%22%20%E9%97%AE%E9%A2%98%EF%BC%9A%3C%2FP%3E%3COL%3E%3CLI%3E%E5%B0%86%E9%BB%98%E8%AE%A4%E4%BC%9A%E8%AF%9D%E7%99%BB%E5%BD%95%E8%AE%BE%E7%BD%AE%E4%B8%BA%3CSTRONG%3ESSS_HAVE_SE05X_AUTH_PLATFSCP03%3C%2FSTRONG%3E%E3%80%82%3C%2FLI%3E%3CLI%3E%E8%BF%90%E8%A1%8C%3CSTRONG%3Ese05x_Delete_and_test_provision%3C%2FSTRONG%3E%E7%A4%BA%E4%BE%8B%EF%BC%8C%E6%89%A7%E8%A1%8C%3CSPAN%3EAddAttestationKeys%3C%2FSPAN%3E%E5%92%8C%3CSPAN%3EReInitializeTestSample%3C%2FSPAN%3E%EF%BC%88%E5%85%A8%E9%83%A8%E6%88%90%E5%8A%9F%EF%BC%8C%E6%98%BE%E7%A4%BA%3CSPAN%3EkSE05x_Result_SUCCESS%3C%2FSPAN%3E%EF%BC%89%E3%80%82%3C%2FLI%3E%3CLI%3E%E5%B0%86%E9%BB%98%E8%AE%A4%E4%BC%9A%E8%AF%9D%E7%99%BB%E5%BD%95%E5%90%8D%E5%88%87%E6%8D%A2%E4%B8%BA%3CSTRONG%3ESSS_HAVE_SE05X_AUTH_ECKEY_PLATFSCP03%3C%2FSTRONG%3E%E3%80%82%3C%2FLI%3E%3C%2FOL%3E%3CP%3E%E4%B9%8B%E5%90%8E%EF%BC%8C%3CSPAN%3Eex_sss_boot_open%3C%2FSPAN%3E%E6%88%90%E5%8A%9F%EF%BC%8C%3CSPAN%3E.%2Fex_ecc%20%2Fdev%2Fi2c-0%3C%2FSPAN%3E%E8%BF%90%E8%A1%8C%E6%97%A0%E8%AF%AF%E3%80%82%3C%2FP%3E%3CP%3E%E4%BD%A0%E8%83%BD%E5%90%A6%E7%A1%AE%E8%AE%A4%E8%BF%99%E4%B8%AA%E5%B7%A5%E4%BD%9C%E6%B5%81%E7%A8%8B%EF%BC%9A%3CSTRONG%3E%20SSS_HAVE_SE05X_AUTH_PLATFSCP03%3C%2FSTRONG%3E--%26gt%3B%3CSTRONG%3E%20%E2%80%94%20%26gt%3B%20%E9%85%8D%E7%BD%AE%20%E2%80%94%20%26gt%3B%3C%2FSTRONG%3E--%26gt%3B%3CSPAN%3E%3CSTRONG%3E%20SSS_HAVE_SE05X_AUTH_ECKEY_PLATFSCP%2003%3C%2FSTRONG%3E%3CBR%20%2F%3E%3C%2FSPAN%3E%20%E6%98%AF%E5%90%A6%E6%AD%A3%E7%A1%AE%E4%B8%94%E5%80%BC%E5%BE%97%E6%8E%A8%E8%8D%90%EF%BC%9F%3C%2FP%3E%3C%2FLINGO-BODY%3E%3CLINGO-SUB%20id%3D%22lingo-sub-2202997%22%20slang%3D%22en-US%22%20mode%3D%22CREATE%22%20translate%3D%22no%22%3ERe%3A%20ex_ecc%20with%20-DPTMW_SE05X_Auth%3DECKey_PlatfSCP03%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-2202997%22%20slang%3D%22en-US%22%20mode%3D%22CREATE%22%3E%3CP%3E%E4%BD%A0%E5%A5%BD%3CA%20href%3D%22https%3A%2F%2Fcommunity.nxp.com%2Ft5%2Fuser%2Fviewprofilepage%2Fuser-id%2F246736%22%20target%3D%22_blank%22%3E%40KiteJLKo%3C%2FA%3E%3C%2FP%3E%0A%3CP%3E%E6%82%A8%E8%83%BD%E5%90%A6%E5%B0%9D%E8%AF%95%E6%9B%B4%E6%96%B0%E8%87%B3%20SE-PLUG-TRUST-MW_04.07.01%EF%BC%9F%20%3C%2FP%3E%3C%2FLINGO-BODY%3E%3CLINGO-SUB%20id%3D%22lingo-sub-2197108%22%20slang%3D%22en-US%22%20mode%3D%22CREATE%22%20translate%3D%22no%22%3ERe%3A%20ex_ecc%20with%20-DPTMW_SE05X_Auth%3DECKey_PlatfSCP03%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-2197108%22%20slang%3D%22en-US%22%20mode%3D%22CREATE%22%3E%3CP%3E%E5%97%A8%EF%BC%8C%3CA%20href%3D%22https%3A%2F%2Fcommunity.nxp.com%2Ft5%2Fuser%2Fviewprofilepage%2Fuser-id%2F241501%22%20target%3D%22_blank%22%3E%40Carlos_o%3C%2FA%3E%E3%80%81%3C%2FP%3E%3CP%3E%E6%88%91%E7%9A%84%20Env%EF%BC%9Ayocto%20Linux%20%3C%2FP%3E%3C%2FLINGO-BODY%3E%3CLINGO-SUB%20id%3D%22lingo-sub-2196895%22%20slang%3D%22en-US%22%20mode%3D%22CREATE%22%20translate%3D%22no%22%3ERe%3A%20ex_ecc%20with%20-DPTMW_SE05X_Auth%3DECKey_PlatfSCP03%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-2196895%22%20slang%3D%22en-US%22%20mode%3D%22CREATE%22%3E%3CP%3E%E4%BD%A0%E5%A5%BD%3CA%20href%3D%22https%3A%2F%2Fcommunity.nxp.com%2Ft5%2Fuser%2Fviewprofilepage%2Fuser-id%2F246736%22%20target%3D%22_blank%22%3E%40KiteJLKo%3C%2FA%3E%3C%2FP%3E%0A%3CP%3E%E8%AF%B7%E6%8F%90%E4%BE%9B%E6%82%A8%E6%98%AF%E5%9C%A8%E5%93%AA%E4%B8%AA%E7%8E%AF%E5%A2%83%E4%B8%8B%E7%BC%96%E5%86%99%E4%BB%A3%E7%A0%81%E7%9A%84%EF%BC%9F(%E8%A7%86%E7%AA%97%E3%80%81Linux%E3%80%81%E7%89%B9%E5%AE%9A%E5%BE%AE%E6%8E%A7%E5%88%B6%E5%99%A8%EF%BC%89%3C%2FP%3E%0A%3CBR%20%2F%3E%3C%2FLINGO-BODY%3E