製品概要
概要
The X-CUBE-SBSFU Secure Boot and Secure Firmware Update solution allows the update of the STM32 microcontroller built-in program with new firmware versions, adding new features and correcting potential issues. The update process is performed in a secure way to prevent unauthorized updates and access to confidential on-device data.
The Secure Boot (Root of Trust services) is an immutable code, always executed after a system reset, that checks STM32 static protections, activates STM32 run-time protections and then verifies the authenticity and integrity of user application code before every execution in order to ensure that invalid or malicious code cannot be run.
The Secure Firmware Update application receives the firmware image via a UART interface with the Ymodem protocol, checks its authenticity, and checks the integrity of the code before installing it. The firmware update is done on the complete firmware image, or only on a portion of the firmware image. Examples are provided for single firmware image configuration in order to maximize firmware image size, and for dual firmware image configurations in order to ensure safe image installation and enable over-the-air firmware update capability commonly used in IoT devices. Examples can be configured to use asymmetric or symmetric cryptographic schemes with or without firmware encryption.
The secure key management services provide cryptographic services to the user application through the PKCS #11 APIs (KEY ID-based APIs) that are executed inside a protected and isolated environment. User application keys are stored in the protected and isolated environment for their secured update: authenticity check, data decryption and data integrity check. This is available on the STM32L4 Series with example provided on the B-L475E-IOT01A and B-L4S5I-IOT01A boards.
STSAFE-A110 is a tamper-resistant secure element (HW Common Criteria EAL5+ certified) used to host X509 certificates and keys, and perform verifications that are used for firmware image authentication during Secure Boot and Secure Firmware Update procedures. This is available on the STM32L4 Series with example provided on the B-L4S5I-IOT01A board.
X-CUBE-SBSFU is built on top of STM32Cube software technology, making the portability across different STM32 microcontrollers easy. It is provided as reference code to demonstrate best use of STM32 security protections.
The X-CUBE-SBSFU Expansion Package comes with examples running on the STM32L4 Series, STM32F4 Series, STM32F7 Series, STM32G0 Series, STM32G4 Series, STM32H7 Series, STM32L0 Series, STM32L1 Series, and STM32WB Series. An example combining STM32 microcontroller and STSAFE-A100 is also provided for the STM32L4 Series.
-
特徴
- Secure Boot to check firmware image before execution
- Secure Firmware Update with anti-rollback and partial image update capabilities for over-the-air or local firmware image update
- Secure key management services offering cryptographic services by means of the PKCS #11 APIs
- Standalone STM32 system solution example demonstrating best use of STM32 protections to protect assets against unauthorized external or internal access
- Combined STM32 and STSAFE-A110 system solution example demonstrating hardware Secure Element protections for secure authentication services and secure data storage
ソフトウェア入手
| 製品型番 | 概要 | 最新バージョン | ECCN (EU) | ECCN (US) | サプライヤ | ダウンロード | すべてのバージョン |
|---|---|---|---|---|---|---|---|
| X-CUBE-SBSFU | Secure boot & secure firmware update software expansion for STM32Cube | 2.8.0 | NEC | 5D992.c | ST |
推奨コンテンツ
おすすめのツール & ソフトウェア
All tools & software
すべてのリソース
| タイトル | バージョン | 更新日 |
|---|
製品スペック (1)
| タイトル | バージョン | 更新日 | |||
|---|---|---|---|---|---|
| 7.0 | 23 Aug 2021 | 23 Aug 2021 |
アプリケーションノート (1)
| タイトル | バージョン | 更新日 | |||
|---|---|---|---|---|---|
| 9.0 | 08 Dec 2025 | 08 Dec 2025 |
テクニカル・ノート & 技術解説 (1)
| タイトル | バージョン | 更新日 | |||
|---|---|---|---|---|---|
| 1.0 | 26 Nov 2021 | 26 Nov 2021 |
ユーザマニュアル (4)
| タイトル | バージョン | 更新日 | |||
|---|---|---|---|---|---|
| 5.0 | 24 Jun 2022 | 24 Jun 2022 | |||
| 2.0 | 10 Sep 2020 | 10 Sep 2020 | |||
| 2.0 | 10 Jan 2023 | 10 Jan 2023 | |||
| 11.0 | 08 Dec 2025 | 08 Dec 2025 |
プレゼンテーション (5 of 6)
| タイトル | バージョン | 更新日 | |||
|---|---|---|---|---|---|
| 1.0 | 10 Aug 2022 | 10 Aug 2022 | |||
| 1.0 | 10 Aug 2022 | 10 Aug 2022 | |||
| 1.0 | 21 Mar 2024 | 21 Mar 2024 | |||
| 1.0 | 13 Dec 2023 | 13 Dec 2023 | |||
| 1.0 | 10 Aug 2022 | 10 Aug 2022 | |||
| 22.08 | 10 Aug 2022 | 10 Aug 2022 |
フライヤー (2)
| タイトル | バージョン | 更新日 | |||
|---|---|---|---|---|---|
| 1.1 | 27 Feb 2022 | 27 Feb 2022 | |||
| 1.2 | 27 Feb 2022 | 27 Feb 2022 |
パンフレット (1)
| タイトル | バージョン | 更新日 | |||
|---|---|---|---|---|---|
| 1.1 | 27 Feb 2022 | 27 Feb 2022 |
製品認証 (1)
| タイトル | バージョン | 更新日 | |||
|---|---|---|---|---|---|
| 1.0 | 04 Jun 2020 | 04 Jun 2020 |
ライセンス契約 (1)
| タイトル | バージョン | 更新日 | |||
|---|---|---|---|---|---|
| 8.0 | 16 Oct 2025 | 16 Oct 2025 |
Additional License Terms (1)
| タイトル | バージョン | 更新日 | |||
|---|---|---|---|---|---|
| HTML | 1.0 | 30 Nov 2022 | 30 Nov 2022 |
セキュリティ勧告 (4)
| タイトル | バージョン | 更新日 | |||
|---|---|---|---|---|---|
| 1.0 | 23 Feb 2025 | 23 Feb 2025 | |||
| 1.0 | 16 Sep 2025 | 16 Sep 2025 | |||
| 1.0 | 14 Jun 2024 | 14 Jun 2024 | |||
| 1.0 | 11 Oct 2024 | 11 Oct 2024 |
セキュリティ情報 (1)
| タイトル | バージョン | 更新日 | |||
|---|---|---|---|---|---|
| 2.0 | 26 Mar 2025 | 26 Mar 2025 |