Loading…
Attending this event?
September 16-18, 2024
Vienna, Austria
View More Details & Registration
Note: The schedule is subject to change.

The Sched app allows you to build your schedule but is not a substitute for your event registration. You must be registered for Open Source Summit Europe 2024 to participate in the sessions. If you have not registered but would like to join us, please go to the event registration page to purchase a registration.

This schedule is automatically displayed in Central European Summer Time (UTC/GMT +2). To see the schedule in your preferred timezone, please select from the drop-down menu to the right, above "Filter by Date."

IMPORTANT NOTE: Timing of sessions and room locations are subject to change.

Tuesday September 17, 2024 11:00 - 11:20 CEST
MCUboot enables secure booting of Zephyr RTOS using asymmetric cryptographic signature verification with a public key. The hash of the public key is embedded or compiled with the MCUboot binary by default, which is used for checking the integrity of the public key. To tamper-proof, as an alternate secure boot option, the hash of the public key can be stored securely and retrieved when hardware keys are enabled. Security of embedded SoC's (e.g., i.MX RT) offers more capabilities, such as High Assurance Boot (HAB), Data Co-Processor (DCP), or Trusted Firmware-M (TF-M) implementing the Trustzone for SoC's (e.g., nRF91) to enable secure storage with hardware crypto acceleration or external security modules (e.g., TPM, EdegeLock) to store keys in hardware vaults.

This talk will detail MCUboot secure booting with hardware keys. NXP i.MX RT as an example using HAB for booting singed and encrypted bootloader MCUboot, enabling hardware root of trust, and booting Zephyr RTOS using keys from OTP for verification. We will also see about using the TF-M backend and OTP for secure booting Trustzone-enabled SoCs.
Speakers
avatar for Parthiban N

Parthiban N

Software Engineer, Linumiz
With over 14 years of experience in software engineering, Parthiban founded Linumiz, a company that provides domain-neutral software services for U-Boot, Linux, and Zephyr, ranging from board bringup, board supported package, customization, device drivers, to over the air software... Read More →
Tuesday September 17, 2024 11:00 - 11:20 CEST
Hall M1 (Level 1)
  Zephyr

Sign up or log in to save this to your schedule, view media, leave feedback and see who's attending!

Share Modal

Share this link via

Or copy link