Encrypted storage with TrustZone

キャンセル
次の結果を表示 
表示  限定  | 次の代わりに検索 
もしかして: 

Encrypted storage with TrustZone

ソリューションへジャンプ
1,720件の閲覧回数
brucezhao
Contributor I

Hi, 

    AN12714 (i.MX Encrypted Storage Using CAAM Secure Keys) document describes Encrypted storage with CAAM.

    My question is that if I want to use CSU(Central Security Unit) to limit only OP-TEE can access CAAM, then CAAM can not be accessed by Normal world directly. I mean how to implement encrypted storage with OP-TEE, which uses OTPMK as root key by CAAM. 

    Thanks. 

ラベル(2)
0 件の賞賛
返信
1 解決策
1,707件の閲覧回数
Harvey021
NXP TechSupport
NXP TechSupport

Hi @brucezhao 

OP-TEE itself is secure world, which should be able to access CAAM. AN12714 here mainly uses the kernel module DM-Crypt, which uses CAAM's secure key to implement disk encryption, and does not implement the requirements you mentioned.

Best regards

Harvey

Harvey

 

元の投稿で解決策を見る

0 件の賞賛
返信
2 返答(返信)
1,692件の閲覧回数
brucezhao
Contributor I

Hi Harvey, I got it. Thank you for your reply. 

0 件の賞賛
返信
1,708件の閲覧回数
Harvey021
NXP TechSupport
NXP TechSupport

Hi @brucezhao 

OP-TEE itself is secure world, which should be able to access CAAM. AN12714 here mainly uses the kernel module DM-Crypt, which uses CAAM's secure key to implement disk encryption, and does not implement the requirements you mentioned.

Best regards

Harvey

Harvey

 

0 件の賞賛
返信