i.MX93: Encrypted Data Storage API Test Error

取消
显示结果 
显示  仅  | 搜索替代 
您的意思是: 

i.MX93: Encrypted Data Storage API Test Error

1,132 次查看
petertseng
Contributor IV

Hi Team,

I performed ELE-HSM Tests according to the method provided in the README file at https://github.com/nxp-imx/imx-secure-enclave/blob/lf-6.12.49_2.2.0/

The following error was encountered.

---------------------------------------------------
Encrypted Data Storage API Test
---------------------------------------------------
Data [Encrypted + Signed] stored. SUCCESS

Data [Encrypted + Signed] retrieved. SUCCESS

Signature Verified. SUCCESS.

Decrypted data matches stored Plain data. SUCCESS


SAB Error: SAB CMD [0xa2] Resp [0x329] - Provided key-id, Unknown to key store..

hsm_data_ops [RETRIEVE Again] err: 0x3. SUCCESS
Retrieved Again: Data Empty. SUCCESS
---------------------------------------------------

 

Why is the ELE-HSM test reporting an error?

Do I need to store the key in OTP first?

 

Attach the logfile

 

Thanks,

Peter

标记 (2)
0 项奖励
回复
4 回复数

1,055 次查看
Zhiming_Liu
NXP TechSupport
NXP TechSupport

Hi @petertseng 

This is a phenomenon consistent with the test expectations; there is no need to store the key in the OTP.

Best Regards,
Zhiming

0 项奖励
回复

1,033 次查看
petertseng
Contributor IV

Hi Zhiming,

Can an IMX93 ELE-HSM be used to replace the Crypto Authentication IC (e.g., ATECC608A)?

If possible, how should I achieve this?

I would be extremely grateful if you could provide any relevant information or documents.

 

Thanks,

Peter

0 项奖励
回复

992 次查看
Zhiming_Liu
NXP TechSupport
NXP TechSupport

Hi @petertseng 

In certain scenarios, their functionalities overlap, but ELE-HSM cannot fully replace ATECC608A. If you require a completely independent/offiline secure element, then ATECC608A should be used. If your needs are limited to key storage + AES encryption/decryption + RNG + SHA + secure boot, then using ELE is an option.

Best Regards,
Zhiming

0 项奖励
回复

797 次查看
petertseng
Contributor IV

Hi Zhiming,

How can I store the public key on the IMX93 ?

Where is the public key physically stored ? (e.g., in OTP/eFUSE or root filesystem)?

Thanks,

Peter

0 项奖励
回复
%3CLINGO-SUB%20id%3D%22lingo-sub-2321632%22%20slang%3D%22en-US%22%20mode%3D%22CREATE%22%3Ei.MX93%EF%BC%9A%E5%8A%A0%E5%AF%86%E6%95%B0%E6%8D%AE%E5%AD%98%E5%82%A8%20API%20%E6%B5%8B%E8%AF%95%E9%94%99%E8%AF%AF%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-2321632%22%20slang%3D%22en-US%22%20mode%3D%22CREATE%22%3E%3CP%3E%3CSPAN%3E%E5%97%A8%EF%BC%8C%E5%9B%A2%E9%98%9F%E3%80%81%3C%2FSPAN%3E%3C%2FP%3E%3CP%3E%3CSPAN%3E%E6%88%91%E6%8C%89%E7%85%A7%3CA%20href%3D%22https%3A%2F%2Fgithub.com%2Fnxp-imx%2Fimx-secure-enclave%2Fblob%2Flf-6.12.49_2.2.0%2F%22%20target%3D%22_blank%22%20rel%3D%22nofollow%20noopener%20noreferrer%22%3Ehttps%3A%2F%2Fgithub.com%2Fnxp-imx%2Fimx-secure-enclave%2Fblob%2Flf-6.12.49_2.2.0%2F%3C%2FA%3E%E7%9A%84%20README%20%E6%96%87%E4%BB%B6%E4%B8%AD%E6%8F%90%E4%BE%9B%E7%9A%84%E6%96%B9%E6%B3%95%E8%BF%9B%E8%A1%8C%E4%BA%86%20ELE-HSM%20%E6%B5%8B%E8%AF%95%E3%80%82%3C%2FSPAN%3E%3C%2FP%3E%3CP%3E%3CSPAN%3E%E9%81%87%E5%88%B0%E4%BB%A5%E4%B8%8B%E9%94%99%E8%AF%AF%E3%80%82%3C%2FSPAN%3E%3C%2FP%3E%3CPRE%20class%3D%22lia-code-sample%20language-markup%22%3E%3CCODE%20translate%3D%22no%22%3E---------------------------------------------------%0AEncrypted%20Data%20Storage%20API%20Test%0A---------------------------------------------------%0AData%20%5BEncrypted%20%2B%20Signed%5D%20stored.%20SUCCESS%0A%0AData%20%5BEncrypted%20%2B%20Signed%5D%20retrieved.%20SUCCESS%0A%0ASignature%20Verified.%20SUCCESS.%0A%0ADecrypted%20data%20matches%20stored%20Plain%20data.%20SUCCESS%0A%0A%0ASAB%20Error%3A%20SAB%20CMD%20%5B0xa2%5D%20Resp%20%5B0x329%5D%20-%20Provided%20key-id%2C%20Unknown%20to%20key%20store..%0A%0Ahsm_data_ops%20%5BRETRIEVE%20Again%5D%20err%3A%200x3.%20SUCCESS%0ARetrieved%20Again%3A%20Data%20Empty.%20SUCCESS%0A---------------------------------------------------%3C%2FCODE%3E%3C%2FPRE%3E%3CBR%20%2F%3E%3CP%3E%3CSPAN%3E%E4%B8%BA%E4%BB%80%E4%B9%88%20ELE-HSM%20%E6%B5%8B%E8%AF%95%E6%8A%A5%E5%91%8A%E9%94%99%E8%AF%AF%EF%BC%9F%3C%2FSPAN%3E%3C%2FP%3E%3CP%3E%3CSPAN%3E%E6%88%91%E9%9C%80%E8%A6%81%E5%85%88%E5%9C%A8%20OTP%20%E4%B8%AD%E5%AD%98%E5%82%A8%E5%AF%86%E9%92%A5%E5%90%97%EF%BC%9F%3C%2FSPAN%3E%3C%2FP%3E%3CBR%20%2F%3E%3CP%3E%3CSPAN%3E%E9%99%84%E4%B8%8A%E6%97%A5%E5%BF%97%E6%96%87%E4%BB%B6%3C%2FSPAN%3E%3C%2FP%3E%3CBR%20%2F%3E%3CP%3E%3CSPAN%20class%3D%22%22%3E%E8%B0%A2%E8%B0%A2%EF%BC%81%3C%2FSPAN%3E%3C%2FP%3E%3CP%3E%3CSPAN%20class%3D%22%22%3EPeter%3C%2FSPAN%3E%3C%2FP%3E%3C%2FLINGO-BODY%3E%3CLINGO-SUB%20id%3D%22lingo-sub-2324766%22%20slang%3D%22en-US%22%20mode%3D%22CREATE%22%20translate%3D%22no%22%3ERe%3A%20i.MX93%3A%20Encrypted%20Data%20Storage%20API%20Test%20Error%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-2324766%22%20slang%3D%22en-US%22%20mode%3D%22CREATE%22%3E%3CP%3E%E4%BD%A0%E5%A5%BD%3CA%20href%3D%22https%3A%2F%2Fcommunity.nxp.com%2Ft5%2Fuser%2Fviewprofilepage%2Fuser-id%2F58032%22%20target%3D%22_blank%22%3E%40petertseng%3C%2FA%3E%20%3CBR%20%2F%3E%3CBR%20%2F%3E%E8%BF%99%E7%A7%8D%E7%8E%B0%E8%B1%A1%E4%B8%8E%E6%B5%8B%E8%AF%95%E9%A2%84%E6%9C%9F%E4%B8%80%E8%87%B4%EF%BC%9B%E6%B2%A1%E6%9C%89%E5%BF%85%E8%A6%81%E5%9C%A8%20OTP%20%E4%B8%AD%E5%AD%98%E5%82%A8%E5%AF%86%E9%92%A5%E3%80%82%3CBR%20%2F%3E%3CBR%20%2F%3E%E8%87%B4%E6%95%AC%EF%BC%8C%3CBR%20%2F%3EZhiming%3C%2FP%3E%3C%2FLINGO-BODY%3E%3CLINGO-SUB%20id%3D%22lingo-sub-2324840%22%20slang%3D%22en-US%22%20mode%3D%22CREATE%22%20translate%3D%22no%22%3ERe%3A%20i.MX93%3A%20Encrypted%20Data%20Storage%20API%20Test%20Error%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-2324840%22%20slang%3D%22en-US%22%20mode%3D%22CREATE%22%3E%3CP%3E%E5%97%A8%3CSPAN%3E%EF%BC%8C%E5%BF%97%E6%98%8E%E3%80%81%3C%2FSPAN%3E%3C%2FP%3E%3CP%3E%3CSPAN%3E%E8%83%BD%E5%90%A6%E7%94%A8%20IMX93%20ELE-HSM%20%E4%BB%A3%E6%9B%BF%E5%AF%86%E7%A0%81%E9%AA%8C%E8%AF%81%20IC%EF%BC%88%E5%A6%82%20ATECC608A%EF%BC%89%EF%BC%9F%3C%2FSPAN%3E%3C%2FP%3E%3CP%3E%3CSPAN%3E%E5%A6%82%E6%9E%9C%E5%8F%AF%E8%83%BD%EF%BC%8C%E6%88%91%E8%AF%A5%E5%A6%82%E4%BD%95%E5%AE%9E%E7%8E%B0%EF%BC%9F%3C%2FSPAN%3E%3C%2FP%3E%3CP%3E%3CSPAN%3E%E5%A6%82%E6%9E%9C%E6%82%A8%E8%83%BD%E6%8F%90%E4%BE%9B%E4%BB%BB%E4%BD%95%E7%9B%B8%E5%85%B3%E4%BF%A1%E6%81%AF%E6%88%96%E6%96%87%E4%BB%B6%EF%BC%8C%E6%88%91%E5%B0%86%E4%B8%8D%E8%83%9C%E6%84%9F%E6%BF%80%E3%80%82%3C%2FSPAN%3E%3C%2FP%3E%3CBR%20%2F%3E%3CP%3E%3CSPAN%20class%3D%22%22%3E%E8%B0%A2%E8%B0%A2%EF%BC%81%3C%2FSPAN%3E%3C%2FP%3E%3CP%3E%3CSPAN%20class%3D%22%22%3EPeter%3C%2FSPAN%3E%3C%2FP%3E%3C%2FLINGO-BODY%3E%3CLINGO-SUB%20id%3D%22lingo-sub-2325946%22%20slang%3D%22en-US%22%20mode%3D%22CREATE%22%20translate%3D%22no%22%3ERe%3A%20i.MX93%3A%20Encrypted%20Data%20Storage%20API%20Test%20Error%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-2325946%22%20slang%3D%22en-US%22%20mode%3D%22CREATE%22%3E%3CP%3E%E4%BD%A0%E5%A5%BD%3CA%20href%3D%22https%3A%2F%2Fcommunity.nxp.com%2Ft5%2Fuser%2Fviewprofilepage%2Fuser-id%2F58032%22%20target%3D%22_blank%22%3E%40petertseng%3C%2FA%3E%20%3CBR%20%2F%3E%3CBR%20%2F%3E%E5%9C%A8%E6%9F%90%E4%BA%9B%E6%83%85%E5%86%B5%E4%B8%8B%EF%BC%8C%E5%AE%83%E4%BB%AC%E7%9A%84%E5%8A%9F%E8%83%BD%E6%98%AF%E9%87%8D%E5%8F%A0%E7%9A%84%EF%BC%8C%E4%BD%86%20ELE-HSM%20%E4%B8%8D%E8%83%BD%E5%AE%8C%E5%85%A8%E5%8F%96%E4%BB%A3%20ATECC608A%E3%80%82%E5%A6%82%E6%9E%9C%E6%82%A8%E9%9C%80%E8%A6%81%E5%AE%8C%E5%85%A8%E7%8B%AC%E7%AB%8B%2F%E7%A6%BB%E7%BA%BF%E7%9A%84%E5%AE%89%E5%85%A8%E5%85%83%E4%BB%B6%EF%BC%8C%E5%88%99%E5%BA%94%E4%BD%BF%E7%94%A8%20ATECC608A%E3%80%82%E5%A6%82%E6%9E%9C%E4%BD%A0%E7%9A%84%E9%9C%80%E6%B1%82%E4%BB%85%E9%99%90%E4%BA%8E%E5%AF%86%E9%92%A5%E5%AD%98%E5%82%A8%20%2B%20AES%20%E5%8A%A0%E5%AF%86%2F%E8%A7%A3%E5%AF%86%20%2B%20RNG%20%2B%20%E5%AE%89%E5%85%A8%E6%95%A3%E5%88%97%E7%AE%97%E6%B3%95(SHA)%20%2B%20%E5%AE%89%E5%85%A8%E5%90%AF%E5%8A%A8%EF%BC%8C%E9%82%A3%E4%B9%88%E4%BD%BF%E7%94%A8%20ELE%20%E6%98%AF%E4%B8%80%E7%A7%8D%E9%80%89%E6%8B%A9%E3%80%82%3CBR%20%2F%3E%3CBR%20%2F%3E%E8%87%B4%E6%95%AC%EF%BC%8C%3CBR%20%2F%3EZhiming%3C%2FP%3E%3C%2FLINGO-BODY%3E%3CLINGO-SUB%20id%3D%22lingo-sub-2328744%22%20slang%3D%22en-US%22%20mode%3D%22CREATE%22%20translate%3D%22no%22%3ERe%3A%20i.MX93%3A%20Encrypted%20Data%20Storage%20API%20Test%20Error%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-2328744%22%20slang%3D%22en-US%22%20mode%3D%22CREATE%22%3E%3CP%3E%E5%97%A8%3CSPAN%3E%EF%BC%8C%E5%BF%97%E6%98%8E%E3%80%81%3C%2FSPAN%3E%3C%2FP%3E%3CP%3E%E5%A6%82%E4%BD%95%E5%9C%A8%20IMX93%20%E4%B8%8A%E5%AD%98%E5%82%A8%E5%85%AC%E9%92%A5%EF%BC%9F%3C%2FP%3E%3CP%3E%E5%85%AC%E5%BC%80%E5%AF%86%E9%92%A5%E5%AE%9E%E9%99%85%E5%AD%98%E6%94%BE%E5%9C%A8%E5%93%AA%E9%87%8C%EF%BC%9F(%E4%BE%8B%E5%A6%82%EF%BC%8C%E5%9C%A8%20OTP%2FeFUSE%20%E6%88%96%E6%A0%B9%E6%96%87%E4%BB%B6%E7%B3%BB%E7%BB%9F%E4%B8%AD%EF%BC%89%EF%BC%9F%3C%2FP%3E%3CP%3E%3CSPAN%20class%3D%22%22%3E%E8%B0%A2%E8%B0%A2%EF%BC%81%3C%2FSPAN%3E%3C%2FP%3E%3CP%3E%3CSPAN%20class%3D%22%22%3EPeter%3C%2FSPAN%3E%3C%2FP%3E%3C%2FLINGO-BODY%3E