Infineon enables open source software stack for TPM 2.0 - for easier integration of security into industrial and automotive applications

Information Technology Press Releases Thursday November 15, 2018 08:44
SINGAPORE--15 Nov--PRNewswire/InfoQuest

A strong interest in enhancing the security of IoT, IIoT, Industry 4.0 and automotive applications has led to an open source software stack for Trusted Platform Module (TPM) 2.0 -- a standardized hardware-based security solution for securing industrial, automotive and other applications such as network equipment. This is the first open source TPM middleware that complies with the Software Stack (TSS) Enhanced System API (ESAPI) specification of the Trusted Computing Group (TCG).

The release of the TPM 2.0 ESAPI stack speeds up the adoption of TPM 2.0 in embedded systems and simplifies the integration of TPM 2.0 in all kinds of applications. The ease of integration on Linux and other embedded platforms provide significant value to the open source community.

Besides making the TSS ESAPI layer available to everyone, Infineon Security Partner Network (ISPN) offers a wide variety of software libraries meeting the requirements of different applications and target platforms supported by security experts of ISPN.

Based on the ESAPI layer, the stack includes support for OpenSSL. It can use the Infineon OPTIGA(TM) TPM to protect device communication secured with SSL/TLS via a standardized interface by deploying TPM 2.0 as a secured key store for OpenSSL. It thus protects the keys from vulnerabilities like the famous Heartbleed bug.

The TSS stack and ESAPI layer are published under the permissive 2-clause BSD license, which provides high flexibility and increases adoption. The ESAPI has been designed and validated by a wide community to achieve a high level of quality and stability, as is required in modern embedded and IoT systems. With industrial and automotive customers in mind, the code was developed using industry standards, continuous integration and testing, a thorough two-person review process, and static code analyzers like clang and Coverity(TM). In addition, the stack was tested and evaluated on Infineon OPTIGA(TM) TPM SLB 9670 with the latest TPM specifications. Future enhancements will include support for Cryptsetup/LUKS disk encryption and a version featuring ESAPI support for TPM tools.

Availability
Application developers can use Infineon's OPTIGA(TM) TPM SLB 9670 Iridium boards and download the TSS code via Github to get started.
More information about Infineon's OPTIGA(TM) TPM is available: www.infineon.com/TPM.
More information about the Github Project (including the downloadable code) is available here.
Photo - https://photos.prnasia.com/prnh/20181112/2296721-1

Latest Press Release

Copperwired Opens Its Biggest .Life Flagship Store on the 4th Floor of Central World Serving as Thailands First Meeting Point for Modern Digital Lifestyle

Now Open! Thailand's first meeting point for digital lifestyle, .Life flagship store is now open on the 4th floor of Central World, spanning over 310 square meters, taking the title as the largest .Life store branch. The new design is inspired by museum...

Locus Chain to Launch a Digital Asset Exchange Platform in Dubai

Locus Chain Foundation prepares to launch the company's first digital asset exchange platform in Dubai, the Locus Chain Digital Asset Exchange (Locus DAX) Singapore-headquartered Locus Chain Foundation, the developers of a revolutionary, next-generation...

Fitbit Enhances Health and Fitness Smartwatch Experience Powered by Fitbit OS 3.0 Update, New Popular Brand Apps and Advanced Developer Tools

Fitbit OS 3.0 delivers an upgraded on-device dashboard and goal-based exercise modes to Fitbit Ionic, Fitbit Ionic: adidas edition and Fitbit Versa, along with new popular brand apps and clock face Fitbit (NYSE: FIT), the leading global wearables brand,...

Kaspersky Lab uncovers third Windows zero day exploit in three months

Kaspersky Lab technologies have automatically detected a new exploited vulnerability in the Microsoft Windows OS kernel, the third consecutive zero-day exploit to be discovered in three months. Kaspersky Lab technologies have automatically detected a new...

Johnson Johnson Vision aims to become a leading contact lens brand in the digital era by adopting a new communication channel, ACUVUE LINE Official Account to better connect with consumer

Johnson & Johnson Vision, the importer of ACUVUE contact lens, continues in becoming a leading contact lens brand in the digital era by adopting a new social media touch point to attract digital consumer. Recently, the brand has introduced the ACUVUE...

Related Topics