21.10.2013 Views

Security

Security

Security

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Step 1: After power on: CSE module reads<br />

bootloader via its bus master interface.<br />

Step 2: CSE module uses the boot key to<br />

calculates the MAC value of the bootloader.<br />

Step 3: CSE module compares calculated<br />

MAC with stored boot MAC. If identical:<br />

successful secure boot set respective bit<br />

in host interface and unlock keys<br />

Step 4: MCU always starts bootloader.<br />

4<br />

Bootloader:<br />

Part of flash memory<br />

Start bootloader<br />

• MAC(message authentication code) protects against modification of bootloader<br />

and depends on the (secret) boot key integrity and authenticity of bootloader.<br />

• Only if calculated MAC value matches stored boot MAC value: successful secure<br />

boot set respective bit in host interface and unlock keys for further usage (see<br />

next demos)<br />

TM<br />

Random<br />

number<br />

generator<br />

1<br />

Bus master<br />

11<br />

Flash<br />

MPC5646C<br />

CSE module<br />

Unique ID<br />

AES-128<br />

2a<br />

3b<br />

MAC value<br />

Keys<br />

Boot key<br />

Host Interface<br />

Bit for successful<br />

3c<br />

secure boot<br />

Keys unlocked<br />

Freescale, the Freescale logo, AltiVec, C-5, CodeTEST, CodeWarrior, ColdFire, ColdFire+, C-Ware, the Energy Efficient Solutions logo, Kinetis,<br />

mobileGT, PowerQUICC, Processor Expert, QorIQ, Qorivva, StarCore, Symphony and VortiQa are trademarks of Freescale Semiconductor, Inc.,<br />

Reg. U.S. Pat. & Tm. Off. Airfast, BeeKit, BeeStack, CoreNet, Flexis, MagniV, MXC, Platform in a Package, QorIQ Qonverge, QUICC Engine,<br />

Ready Play, SafeAssure, the SafeAssure logo, SMARTMOS, TurboLink, Vybrid and Xtrinsic are trademarks of Freescale Semiconductor, Inc. All<br />

other product or service names are the property of their respective owners. © 2012 Freescale Semiconductor, Inc.<br />

2c<br />

2b<br />

Boot MAC<br />

juergen.frank@freescale.com<br />

3a

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!