MCUXpresso Secure Provisioning Tool

Click image to open expanded view

Diagram

MCUXpresso Secure Provisioning Tool Block Diagram

MCUXpresso Secure Provisioning Tool Block Diagram

Features

Graphical User Interface

  • Easy-to-use configuration of secure provisioning project settings
  • Enables direct communication with attached device for provisioning and programming
  • Supports generation of executable scripts for production use
  • Manufacturing mode for simplified production line use

Command-Line Interface

  • Unified command-line interface to the underlying utilities, enabling the creation of custom provisioning and production workflows
  • Precompiled binary utilities based on the Secure Provisioning SDK (SPSDK) are included with and leveraged by the Secure Provisioning Tool installation

Key/Certificate Management and Generation

  • Leverages OpenSSL or externally specified keys, signatures and certificates
  • OpenSSL libraries are pre-bundled with Windows® and Mac installations for seamless setup
  • Enables EdgeLock® 2GO for key and certificate generation and secure provisioning
  • Keys and certificates are stored and deployed securely
  • Enables Device HSM Trust Provisioning key generation and secure provisioning

Secure Image Preparation

  • Generation of AHAB container and AHAB image for i.MX processors
  • Encrypting and signing of ELF (AXF) executables, SREC and raw binaries
  • Generation of Secure Binary bootable images

Alignment with MCUXpresso Config Tools

  • Supports importing device configuration data (DCD) in binary format that can be specified and generated from the MCUXpresso Config Tools; used primarily for SEMC configuration
  • Supports importing Arm® TrustZone® configuration files generated from the Trusted Execution Environment settings of the MCUXpresso Config Tools; used for Cortex®-M33-based devices
  • Integrate with VS Code for generating AHAB bootable images and container for i.MX devices (Cortex® M core)
  • Support debug authentication with VS Code for rapid debug certificate checking and unlocking debug port

Device Provisioning and Programming

  • Programming of e-FUSEs and one-time-programmable flash regions
  • Direct connection to the target via UART, USB-HID, SPI and I2C for provisioning and programming
  • Image flashing on FlexSPI NOR, SEMC NAND, or SD card boot devices, including configuration of boot device parameters
  • Manufacturing tool capabilities with device provisioning and parallel programming support
  • Supports EdgeLock® 2GO and Device HSM Trust Provisioning (Smart Card Trust Provisioning is only available in version 25.03)
  • Production limit control and factory audit log for EdgeLock® 2GO

Secure Provisioning SDK

  • Unified, reliable and easy-to-use software library supported across a range of NXP MCUs and MPUs, providing a strong secure provisioning foundation from rapid customer prototyping to production deployment
  • Open source code based on Python v3, released on GitHub with fully documented APIs and use case examples

Supported Devices

Downloads

Quick reference to our software types.

1-5 of 31 downloads

Show All

Note: For better experience, software downloads are recommended on desktop.

Documentation

Quick reference to our documentation types

6 documents

Compact List

Fact Sheet (2)
Release Note (1)
User Guide (3)

Hardware

Quick reference to our board types.

1-5 of 51 hardware offerings

Show All

Related Software

Quick reference to our software types.

1-5 of 9 software files

Show All

Note: For better experience, software downloads are recommended on desktop.

Engineering Services

1 engineering service

To find a complete list of our partners that support this software, please see our Partner Marketplace.

Training

6 trainings

Show All

Support

What do you need help with?