Part Number: CC2642R
I am opening this new ticket as our previous thread regarding the RPA scanner limitation was locked. We successfully bypassed the initial connection issue by updating our scan filter policy to 0x02 (Accept All + Resolve RPAs). The Central (CC2642R) now successfully resolves the RPA and accepts the Peripheral's Directed Advertisement.
However, we are now hitting a mathematical failure during the OOB Secure Connections pairing phase.
Our Architecture (1-Way NFC + ATT OOB)
Our flow is as follows:
-
NFC Exchange: The Central (TI) sends its Identity Address and IRK to the Peripheral (NXP) via NFC. The Central does not receive the Peripheral's data in return.
-
Connection: The Peripheral starts Directed Advertising, targeting the Central. Controller Privacy is ENABLED on the TI device (
ADDRMODE_RP_WITH_RANDOM_ID). The TI device accepts the directed advertisement and connects using an RPA. -
ATT Exchange: After the connection is established, the TI device sends its local OOB
ConfirmandRandomvalues to the NXP device over the BLE link via an ATT Write Command. -
Pairing: The SMP Secure Connections pairing phase is then initiated.
The Issue
I have attached an Ellisys dhkey_check_failed_issue.zip air-trace of this exact flow. As seen in the log:
-
The devices physically connect and exchange SMP feature flags.
-
At Authentication Stage 2, the pairing drops at the
DH Key Check.
Thank you for your support!
Best regards,
Marco Magdy