Hi Gernot,
 
Provisioning was added as a future roadmap item in anticipation of a PSA Provisioning Specification. The Specification (Factory or application specific) hasn't happened so far.
There is no active work ongoing in TF-M around provisioning. TF-M using provisioned keys in CC-312 on MuscaB1 platform is available as an example. See details here under CC312 heading.
 
In TrustedFirmware TSC, provisioning has been a discussion topic sometime back. Search for provisioning in the minutes below.
https://github.com/microbuilder/certificate_chains/blob/master/rfc_tfm.md is an RFC that Kevin prepared during those discussions for TF-M devices to use certificate chain.
 
Regards,
Shebu
 
https://lists.trustedfirmware.org/pipermail/tsc/2019-September/000044.html
https://lists.trustedfirmware.org/pipermail/tsc/2019-October/000048.html
https://lists.trustedfirmware.org/pipermail/tsc/2019-November/000052.html
https://lists.trustedfirmware.org/pipermail/tsc/2019-December/000068.html
https://lists.trustedfirmware.org/pipermail/tsc/2020-January/000072.html
https://lists.trustedfirmware.org/pipermail/tsc/2020-February/000076.html
 
-----Original Message-----
From: TF-M <tf-m-bounces@lists.trustedfirmware.org> On Behalf Of Gernot Kvas via TF-M
Sent: Tuesday, May 19, 2020 10:03 PM
To: tf-m@lists.trustedfirmware.org
Subject: [TF-M] TF-M and provisioning
 
Hello,
 
I would like to understand the background behind roadmap item "Provisioning" that is mentioned here [1] (Slide 31) and here [2].
 
What provisioning functionality would we be talking here, is it provisioning as in "RoT provisioning", so more towards manufacturing as defined in the PSA security lifecycle, or provisioning when the device is in state "Secured", so more towards application specific-data? I would assume the latter, but couldn't find any more information on this subject. Any pointers would be highly appreciated.
 
Thanks for your help & kind regards,
 
Gernot
 
[1] https://static.linaro.org/connect/san19/presentations/san19-203.pdf
[2] https://developer.trustedfirmware.org/w/tf_m/planning/
 
 
 
--
TF-M mailing list
TF-M@lists.trustedfirmware.org
https://lists.trustedfirmware.org/mailman/listinfo/tf-m