Certificate storage on PSOC6

Tip / Sign in to post questions, reply, level up, and achieve exciting badges. Know more

cross mob
Sameem
Level 1
Level 1
5 sign-ins First reply posted First question asked

Hi Team,

We are using  CYB0644ABZI-S2D44 MCU in our project.

We have following questions related to certificate storage

1. can we store our root certificate in place of the keys which are currently generating through cysecuretools application?

2. can you share the mechanism to authenticate these certificate

3. Do you have any support documents for the authentication process?

 

Thanks,

Sameem

0 Likes
1 Solution
Pushyanth_K
Moderator
Moderator
Moderator
100 sign-ins 10 solutions authored 50 replies posted

Hi @Sameem ,

By default cysecuretools copies the default oem_state.json into the "keys" directory. It contains the key pair of the User/OEM ROT, You can replace them with your own key pair (Not the certificate though). You can also provide chain of trust certificates (in the policy file) to bind the identity to Certification Authority. To know more about how the authentication takes place at the time of provisioning, please refer to: Infineon-PSoC_64_Secure_MCU_Secure_Boot_SDK_User_Guide-Software-v07_00-EN 

 

Thanks and regards,

Pushyanth

View solution in original post

0 Likes
2 Replies
Pushyanth_K
Moderator
Moderator
Moderator
100 sign-ins 10 solutions authored 50 replies posted

Hi @Sameem ,

By default cysecuretools copies the default oem_state.json into the "keys" directory. It contains the key pair of the User/OEM ROT, You can replace them with your own key pair (Not the certificate though). You can also provide chain of trust certificates (in the policy file) to bind the identity to Certification Authority. To know more about how the authentication takes place at the time of provisioning, please refer to: Infineon-PSoC_64_Secure_MCU_Secure_Boot_SDK_User_Guide-Software-v07_00-EN 

 

Thanks and regards,

Pushyanth

0 Likes
Pushyanth_K
Moderator
Moderator
Moderator
100 sign-ins 10 solutions authored 50 replies posted

Hi @Sameem ,

Please let us know if your query was resolved.

We will lock the thread in 3 days.

If your problem is not resolved, please create a new thread and we will be happy to help. 

 

Regards,

Pushyanth

0 Likes