![Securiuty-key-en](/sites/default/files/media/images/Securiuty-key-en0324.png)
Overview
Description
Topics
Supports RSIP-E51A security engine for RA8 series
- Key Wrapping
- Generate code/data for use with Decryption On-The-Fly
- Prepare a file for use with Secure Factory Programming
- Generate Key Certificate and Code Certificate for FSBL
Security Key Management Tool is a support tool for key management systems and secure functions using Renesas security IP.
Features
- Compliant with key-management systems that use security IP modules incorporated in Renesas MCUs and MPUs
- Wrapping of user application keys and DLM keys for secure key injection and secure key updating
- Key data files can be output in a variety of file formats
- Generate data for using security functions with Renesas security IP
- See details for functions
Release Information
- Latest Ver. V.1.06
- Released:Mar 29, 2024
- Operating Environment
Supported Device Family | Security IP |
---|---|
RA | SCE9 (Protected Mode, Compatibility Mode), SCE7, SCE5, SCE5_B, RSIP-E51A |
RX | TSIP, TSIP-Lite |
RZ | TSIP |
Synergy | SCE7, SCE5 |
Target Devices
Other Target Families*
- RZ Family
- *Contact Technical Support or Sales for details of these target devices. Contact Us
Downloads
|
|
|
---|---|---|
Type | Title | Date |
Software & Tools - Other | ZIP 22.28 MB 日本語 | |
Software & Tools - Other | ZIP 22.37 MB 日本語 | |
Software & Tools - Other | ZIP 173.26 MB 日本語 | |
Software & Tools - Other | ZIP 163.48 MB 日本語 | |
4 items
|
Documentation
|
|
|
---|---|---|
Type | Title | Date |
Manual - Development Tools | PDF 4.04 MB 日本語 , 简体中文 | |
1 item
|
Additional Details
Functions
Output key data files for use in the installation and updating of secure keys
The Security Key Management Tool supports the following functions required for using Renesas security IP modules to inject and update secure keys.
- Generating User Factory Programming Key (UFPK) files in the Renesas Key Wrap Service format
- Wrapping DLM/AL Keys by using the UFPK for the injection of secure keys*
- Wrapping user keys by using the UFPK for the injection of secure keys
- Wrapping user keys by using the Key Update Key (KUK) for the updating of secure keys
* Only MCU families/security engines that support DLM/AL Keys are supported.
Output files support a variety of file formats
Wrapped key files can be output for different purposes in the file formats listed below.
Format | Use Case |
---|---|
Renesas key file*1 | Factory key injection |
Motorola HEX | Factory key injection |
C source files | Field key update, prototype key injection*2 |
Binary data | Field key update |
*1 Only MCU families/security engines that support key injection functionality in the boot firmware are supported.
*2 Not supported for RA RSIP-E51A and SCE9 Protected Mode.
Example of using the Security Key Management Tool during secure key installation
![Securiuty-key-en](/sites/default/files/media/images/Securiuty-key-en0324.png)
For more information about secure key injection and update on Renesas devices, please see www.renesas.com/iot-security.
Data generation for using security features with Renesas security IP
In addition to secure key injection and updating, it generates data for use in the following functions of the device.
Please refer to the hardware user's manual or application note of your MCU/MPU for the functions supported by your device.
- Generate Key Certificate and Code Certificate for FSBL
- Encrypt code/data for use with Decryption On-The-Fly
- Prepare a file for use with Secure Factory Programming
- Prepare a file for use with the TSIP UPDATE solution