CRA compliance does not end when a product ships. Engineers must maintain firmware integrity, deliver secure updates, manage vulnerabilities, and document the software included in every build. Join us on September 16 at 15:00 CEST (6:00 AM PT) to learn how these CRA obligations translate into firmware design and maintenance decisions. Follow the implementation path […]
Read MoreMore TagCategory: Uncategorized
Introducing wolfTrust
wolfTrust is a trusted firmware platform for Arm Cortex-M, now under development at wolfSSL, that brings the full wolfSSL security stack into a single secure runtime. It implements the Arm Firmware Framework for M (FF-M) with source-compatible PSA client interfaces, so applications written for Trusted Firmware-M (TF-M) keep their psa_* calls and simply swap the […]
Read MoreMore TagValkey FIPS 140-3 Support with wolfProvider
Valkey is an open source, high-performance key-value data store used for caching, messaging, and data-intensive applications. wolfSSL is currently lab validating Valkey with wolfProvider to verify operation with wolfCrypt FIPS. Once validation is complete, Valkey can use FIPS 140-3 validated cryptography through wolfProvider with no code changes to Valkey and potentially no code changes to […]
Read MoreMore TagwolfTPM on the NVIDIA Jetson Orin firmware TPM
Most TPMs wolfTPM talks to are things you can hold, such as an SLB9672 or ST33KTPM2X soldered next to the SoC and reached over SPI or I2C. The NVIDIA Jetson Orin has no such chip. Its TPM 2.0 is a firmware TPM: software running as a trusted application inside OP-TEE on the same Cortex-A78AE cores […]
Read MoreMore TagwolfBoot comes to the TI C2000 C28x
wolfBoot, our secure bootloader, now runs on the Texas Instruments C2000 C28x DSP. We brought it up on the LAUNCHXL-F28P55X (TMS320F28P550SJ, 150 MHz). It boots the board directly from flash on a bare power-up, with no debugger attached, and it verifies a signed application before that application ever runs. C2000 parts are the workhorses of […]
Read MoreMore TagPostgreSQL FIPS 140-3 Support with wolfProvider
PostgreSQL is an open-source relational database system used to store, manage, and query application and enterprise data. wolfSSL is currently lab validating PostgreSQL with wolfProvider to verify operation with wolfCrypt FIPS. Once validation is complete, PostgreSQL can use FIPS 140-3 validated cryptography through wolfProvider with no code changes to PostgreSQL and potentially no code changes […]
Read MoreMore TagA firmware TPM inside an AMD Spartan UltraScale+ FPGA
A TPM does not have to be a separate chip. wolfTPM‘s firmware-TPM (fwTPM) is the full TPM 2.0 command engine running as firmware, speaking the same protocol a discrete TPM would. On an FPGA that is a powerful idea: you can place a real root of trust inside the programmable logic you are already building, […]
Read MoreMore TagHardware Crypto Acceleration for NXP QorIQ PowerPC: the SEC engine in wolfCrypt
wolfSSL now supports the SEC security engine on NXP’s QorIQ PowerPC T-series processors. SEC is the QorIQ name for the same CAAM block that wolfSSL has long supported on i.MX, and both are covered here: a new bare-metal port for the T-series, and a Linux user space backend for the existing CAAM driver. AES, AES-GCM, […]
Read MoreMore TagA firmware TPM on the AMD Zynq-7000, with a root key from the silicon
A TPM does not have to be a separate chip. wolfTPM’s firmware-TPM (fwTPM) is the full TPM 2.0 command engine running as firmware on a processor you already have, speaking the same protocol a discrete TPM would. That turns “add a root of trust” from a board respin into a software port – and on […]
Read MoreMore TagBare-Metal Secure Boot on the NVIDIA Jetson Orin with wolfBoot
wolfBoot now runs as bare-metal firmware on the NVIDIA Jetson Orin (Tegra234), replacing the vendor UEFI stage entirely and extending the SoC’s hardware root of trust to the operating system through a small, auditable verifier. The Jetson Orin boot chain The Orin boots a fused, signed chain: BootROM to MB1 to MB2 to ARM Trusted […]
Read MoreMore Tag
