This thread has been locked.

If you have a related question, please click the "Ask a related question" button in the top right corner. The newly created question will be automatically linked to this question.

AM2634-Q1: Is there any way to load HSM firmware on HSFS device(SR1.1)?

Part Number: AM2634-Q1

Dear Champs,

Is there any way to load HSM firmware on HSFS device(SR1.1) before fusing customer keys?

Thanks and Best Regards,

SI.

  • Hi SI,

    HSM Run Time firmware load is supported in both HS-FS and HS-SE devices. The difference between the same are mentioned here -

    https://dev.ti.com/tirex/explore/node?node=A__AV7JOFQElxyKdMz93HO.9w__AM26X-ACADEMY__t0CaxbG__LATEST

    For User Modified Custom HSM Firmware, they need HS-SE devices.

    Best Regards,
    Aakash

  • Hi Aakash,

    Thanks for the clarification.

    BTW, what is HSM Run Time firmware?

    When I checked MCU+ SDK UG, HSM Server is one of HSM runtime firmware we provide through MCU+ SDK, right?

    Is it possible to download User modified customer HSM FIrmware after turning to HS-SE device?

    My customer want to release their product with user modified HSM FIrmware on HS-FS device, and then, run user modified HSM FIrmware after signing HS-SE device. Is this scenario possible?

    Thanks and Best Regards,

    SI.

  • Hi ,

    HSM Server is one of HSM runtime firmware we provide through MCU+ SDK, right?

    Actually TIFS-MCU Firmware is TI's HSM Firmware delivered to the customers. HSM Server is a communication model between HSM Firmware and Application (which will act as a HSM Client).

    Is it possible to download User modified customer HSM FIrmware after turning to HS-SE device?

    Customer needs to request for NDA as mentioned in the Academy. This will allow them to use TIFS-MCU package.

    My customer want to release their product with user modified HSM FIrmware on HS-FS device, and then, run user modified HSM FIrmware after signing HS-SE device. Is this scenario possible?

    No, TI owns the HSM Run-Time Firmware in case of HS-FS devices to provide easy development of applications etc. However, to ensure customer freedom of use in case of HSM Firmware, the HS-SE devices are introduced with root of trust with the customers.

    Anyways, HS-FS devices are deemed non-secure and fit for development. However, HS-SE devices are considered secure and fit for production.

    Best Regards,
    Aakash