text.skipToContent text.skipToNavigation

 

Microchip

 

Microchip ECC608-TMNGTLS TrustMANAGER

Part of the CryptoAuthentication™ family

The Microchip ECC608-TMNGTLS is a Trust Manager pre-provisioned variant of the ATECC608. The ECC608-TMNGTLS device will work in combination with the keySTREAM™ Software-as-a-Service (SaaS) powered by Kudelski IoT. The device comes pre-provisioned with a set of cryptographic keys to connect to keySTREAM SaaS.

When deployed in the marketplace, the IoT device containing the ECC608-TMNGTLS will connect to the keySTREAM SaaS, which will give ownership of the IoT device to the intended owner by provisioning the device “in-field” with its custom PKI. The solution is truly zero touch as there is no need to physically intervene in a secret exchange.

Cryptographic keys are now managed remotely and dynamically while being protected within the physical boundary of the secure authentication IC. The solution ensures security practices for the lifecycle management of your product related to key management after the IoT device is deployed. This data sheet provides the slot and key configuration information for the ECC608-TMNGTLS device. This information defines the access policies of each of the data zone slots. Limited command and I/O operating information is provided in this document.

Specific sections discussing Microchip’s hardware and software tools that can aid in developing user applications have been included. Guided use cases can be leveraged in Microchip’s Trust Platform Design Suite (TPDS). The required secrets and private keys are provisioned in-field through the keySTREAM SaaS.

Features

  • Fully Specified Configuration Zone
  • I2C Interface with One-Time Changeable I2C Address
  • JIL High Rating – Validated to JIL Application of Attack Potential to Smartcards and Similar Devices, Version 3.1
  • Internal High-Quality NIST SP 800-90A/B/C True Random Number Generator (TRNG) NIST CMVP ESV Certified
  • Predefined Slot Access Policies to Work with Kudelski keySTREAM SaaS:
    • ECC P-256 Device Identity Key
    • ECC P-256 Attestation Private Key
    • Customer specific identity information

 

  • Slots for In-Field Provisioning of:
    • Device and Signer compressed certificate slots
  • 1.8V to 5.5V I/O Levels, 2.0V to 5.5V Supply Voltage
  • Standard Industrial Temperature Range: -40℃ to +85℃
  • 30 nA nominal Sleep Current
  • Available in 8-Pad UDFN and 8-Pin SOIC packages with a fixed 10-unit reel size for prototyping and a 2k
  • Minimum-Order-Quantity (MOQ) for production

Applications

  • Secure IoT TLS 1.2 and 1.3 Connections including custom Root CA setup and associated PKI
  • Dynamic Certificate management including rotation, revocation, renewal

 

  • Secure Boot
  • End-to-End Data Protection
  • Private Key Rotation for security agility

 

Contact Future Electronics Sales Department for a quote.