The Inside Secure Secure Boot solution provides tools for integrating security into an embedded device’s system boot sequence. The Inside Secure Secure Boot solution uses strong cryptography to protect the boot process of SoCs and Application Processors.
Supports multiple flexible
Support of third-party signing
Support for hardware acceleration, key storage and anti-rollback
The Inside Secure Secure Boot solution protects the device boot sequence by providing the following security layers:
This layer ensures that the system only boots images that are from a trusted source, without any changes introduced to the images. Thus, this layer protects against tampering.
This layer protects images from being examined by encrypting the image using strong cryptography. By using product-line specific encryption keys, the protected images are also prevented from being used on other product lines.
This layer enforces a secure firmware update by protecting against installing of images that are revoked. It prevents a hacker to use an old image with known vulnerabilities, which have been fixed in maintenance updates.Secure
The Inside Secure Secure Boot implements strong cryptography:
Secure Boot in combination with hardware crypto modules
The Inside Secure Secure Boot solution is designed to work with various types of hardware or a combination thereof. The following INSIDE Secure Silicon IP cores are supported:
Secure Boot with certificates
The SafeZone Secure Boot solution supports use of certificates. The use of certificates allow the creator of the Secure Boot Loader (the chip manufacturer) to delegate the Secure Boot Image signing to device manufacturers. The alternative to using certificates is using multiple boot loader stages.
FREE Webinar: Understanding Fault Injection Attacks and Their Mitigation