How to verify hardware-backed encryption/decryption (AES/RSA) via ELE API on i.MX95

cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 

How to verify hardware-backed encryption/decryption (AES/RSA) via ELE API on i.MX95

52 Views
Giorgos_Sofroniou
Contributor I

I'm working with the NXP EdgeLock Enclave (ELE) on the Verdin i.MX95, using the imx-secure-enclave library (https://github.com/nxp-imx/imx-secure-enclave). I need to demonstrate/validate that the hardware crypto engine correctly supports the following operations:

    • generateSymmetricKey
    • injectSymmetricKey
    • generatePublicPrivateKeyPair(shares the public key and stores internally the private key)
    • encrypt(data, keyId)
    • decrypt(data,keyId)
    • sign
    • VerifySignature

For at least the following base algorithms: AES (symmetric) and RSA (asymmetric)

Is there a recommended test suite, sample application, or reference that exercises all of the above operations end-to-end?

Any pointers to example code, test procedures, or documentation covering hardware validation of these primitives would be appreciated.


0 Kudos
Reply
0 Replies
%3CLINGO-SUB%20id%3D%22lingo-sub-2405774%22%20slang%3D%22en-US%22%20mode%3D%22CREATE%22%3EHow%20to%20verify%20hardware-backed%20encryption%2Fdecryption%20(AES%2FRSA)%20via%20ELE%20API%20on%20i.MX95%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-2405774%22%20slang%3D%22en-US%22%20mode%3D%22CREATE%22%3E%3CP%3EI'm%20working%20with%20the%20NXP%20EdgeLock%20Enclave%20(ELE)%20on%20the%20Verdin%20i.MX95%2C%20using%20the%20imx-secure-enclave%20library%20(%3CA%20href%3D%22https%3A%2F%2Fgithub.com%2Fnxp-imx%2Fimx-secure-enclave%22%20target%3D%22_blank%22%20rel%3D%22nofollow%20noopener%20noreferrer%22%3Ehttps%3A%2F%2Fgithub.com%2Fnxp-imx%2Fimx-secure-enclave%3C%2FA%3E).%20I%20need%20to%20demonstrate%2Fvalidate%20that%20the%20hardware%20crypto%20engine%20correctly%20supports%20the%20following%20operations%3A%3C%2FP%3E%3CUL%3E%3CUL%3E%3CLI%3EgenerateSymmetricKey%3C%2FLI%3E%3CLI%3EinjectSymmetricKey%3C%2FLI%3E%3CLI%3EgeneratePublicPrivateKeyPair(shares%20the%20public%20key%20and%20stores%20internally%20the%20private%20key)%3C%2FLI%3E%3CLI%3Eencrypt(data%2C%20keyId)%3C%2FLI%3E%3CLI%3Edecrypt(data%2CkeyId)%3C%2FLI%3E%3CLI%3Esign%3C%2FLI%3E%3CLI%3EVerifySignature%3C%2FLI%3E%3C%2FUL%3E%3C%2FUL%3E%3CP%3EFor%20at%20least%20the%20following%20base%20algorithms%3A%26nbsp%3B%3CSTRONG%3EAES%3C%2FSTRONG%3E%20(symmetric)%20and%26nbsp%3B%3CSTRONG%3ERSA%3C%2FSTRONG%3E%20(asymmetric)%3C%2FP%3E%3CP%3EIs%20there%20a%20recommended%20test%20suite%2C%20sample%20application%2C%20or%20reference%26nbsp%3Bthat%20exercises%20all%20of%20the%20above%20operations%20end-to-end%3F%3CBR%20%2F%3E%3CBR%20%2F%3EAny%20pointers%20to%20example%20code%2C%20test%20procedures%2C%20or%20documentation%20covering%20hardware%20validation%20of%20these%20primitives%20would%20be%20appreciated.%3CBR%20%2F%3E%3CBR%20%2F%3E%3CBR%20%2F%3E%3C%2FP%3E%3C%2FLINGO-BODY%3E