i.MX8 ULP encrypted update shared key question

取消
显示结果 
显示  仅  | 搜索替代 
您的意思是: 

i.MX8 ULP encrypted update shared key question

141 次查看
ddresser
Contributor III

My question keeps getting marked as spam for some reason.

I'm trying to understand best practice for securely updating a large number (thousands) of devices based on the i.MX8 ULP in the field.

I would like to encrypt the updates, but don't want to use separate key_blobs for every device.

Will either of these strategies work?

  1. burn a shared key to fuses (I think this would be fuse bank 6 on the imx8ulp.  Please confirm)
  2. deliver a shared key to the devices that is encrypted with a SRK and install it in the kernel key ring with keyctl

How is this usually accomplished at scale?

0 项奖励
回复
0 回复数