Should monotonic counter be partitioned to a non-default scheme for FIPS mode enabled iMX8DX?

cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 

Should monotonic counter be partitioned to a non-default scheme for FIPS mode enabled iMX8DX?

307 Views
cchopra
Contributor II

Hi Team,
When FIPS mode is enabled on iM8DX chip, SHE services are not available. I am only looking to use HSM services. Can you please recommend partitioning scheme for monotonic counter?

1. Should it not be partitioned at all and left for default scheme? Knowing that SHE is not allowed in FIPS mode, would all 1620 bits be available for HSM operations?

2. Or should it be partitioned to use the 1618 bits for HSM operations (where two bits are used for marking partition boundary)?

 

Thanks in advance.

#imx8 #imx8dx

@Harvey021 @JorgeCas 

0 Kudos
Reply
1 Reply

249 Views
cchopra
Contributor II

Thanks for the quick reply.

0 Kudos
Reply