industry news
Subscribe Now

Renesas Electronics Delivers First Release of Embedded Security Solutions that Protect IoT Endpoints: the RX231 Communications Security Evaluation Kit

Düsseldorf, June 27, 2016 – Renesas Electronics, a premier supplier of advanced semiconductor solutions, today introduced a new series of embedded security solutions employing general-purpose microcontrollers (MCUs) and microprocessors (MPUs) as completely new security structures for embedded devices that will function as Internet of Things (IoT) endpoints in homes and buildings. Now, as the first product of this series, Renesas has released the RX231 Communications Security Evaluation Kit.

At the same time as implementing strong security functions using a trusted secure IP that is already incorporated in the Renesas RX231 MCUs (Note 1), the new kit provides both an evaluation board and a wide range of software, to prevent virus infections over communication channels and disclosure of confidential information and allows embedded devices with strengthened security to be developed easily.

Recently, there has been progress in supporting the IoT, in which a wide variety of devices is connected to the Internet for improving industrial productivity through data collection or remote control for energy saving. In many cases, overall network security in the IoT tends to be weak, since the scale of these systems is small, especially in edge devices at the very end of the network, such as sensors. To assure that edge devices do not become a platform for attack on the whole network, it has become necessary to make edge devices more intelligent, to enable them to independently make decisions and defend themselves, and to prevent both unauthorized software updates by viruses and other such actors and eavesdropping on the communications channels.

It is the management of encryption keys that correspond to passwords to protect information that is the core for implementing strong security functions. Since encryption keys were previously stored in flash memory or other nonvolatile memory, there was a risk that they could be discovered through malicious access. To address this issue, Renesas has developed a new technology that reliably protects these encryption keys using “trusted secure IP” hardware. In addition, by providing both an evaluation board and software at the same time the RX231 Communications Security Evaluation Kit serves as a one-step service and simplifies implementation of security and communications functions.

Key features of the RX231 Communications Security Evaluation Kit:

1) It implements strong security using the RX231’s built-in trusted secure IP

The trusted secure IP integrated into the Renesas RX231 32-bit MCU takes advantage of the security technology accumulated by Renesas and forms a hardware security layer that cannot be damaged even if attacked externally. This trusted secure IP features both (a) an encryption engine and (b) reliable protection of encryption keys. Thus the kit supports the implementation of strong security compared to earlier systems in which the encryption keys were managed by user efforts. 

a) The encryption engine supports both encryption and decryption using either 128-bit or 256-bit encryption keys as stipulated by AES (Note 2). It also supports ECB, CBC, GCM, and CMAC, which can be used for authentication and modification detection. Furthermore, it includes a true random number generator to generate random keys. 

b) Encryption keys are only handled in a secure area within the trusted secure IP. When an encryption key is stored in nonvolatile memory outside this IP, it is stored in combination with a characteristic semiconductor device ID as key generation information so that the original encryption key cannot be determined. Thus it is possible to protect encryption keys from reverse engineering (Note 3) attacks.

c) Access monitoring functions are provided. Accesses to the encryption engine and the encryption keys within this trusted secure IP are monitored, and when an illegal access is detected, further accesses are blocked. This prevents unauthorized use of the encryption engine and the encryption keys. 

2) Embedded devices can be protected from unauthorized programs over communications channels such as wireless LAN and USB

While upgrades to provide new security measures go without saying, it is also necessary to update software to handle the steady progress in functionality in embedded devices. During these operations, as a secure firmware update function, when updating microcontroller user software using communication over wireless LAN or USB channels, if an unauthorized program modification is detected, the install operation is cancelled. Also, as a secure boot function, if an unauthorized modification to the user program is detected at MCU boot time, unauthorized program execution is prevented by stopping the boot operation. Furthermore, eavesdropping on communications can be prevented by data encryption/decryption using AES with the encryption engine.

3) Evaluation board and a wide range of software that allows even developers without security or communications experience to develop applications quickly

The RX231 on-chip trusted secure IP 32-bit MCU evaluation board provided in the RX231 Communications Security Evaluation Kit includes a USB and SDHI wireless LAN communications expansion board interface, and can be connected to a wireless LAN communications expansion board. This kit also provides, in addition to security software, FreeRTOS, Renesas TCP/IP middleware, and a wireless LAN driver as a wireless LAN protocol stack for communications. Similar to the security software, Renesas also supports development of the communications sections that require specialized knowledge, thus allowing rapid implementation of secure embedded systems that operate over communications channels.

Renesas aims to continue to develop and provide solutions that realize robust security required for embedded systems that will function as edge devices in IoT. 

RX231 MCU product information:

https://www.renesas.com/en-eu/products/microcontrollers-microprocessors/rx/rx200/rx231.html 

RX231 Communications Security Evaluation Kit:

https://www.renesas.com/en-eu/products/software-tools/boards-and-kits/renesas-starter-kits/renesas-starter-kit-for-rx231b.html

Note 1)

The RX231 is a 32-bit MCU that is specialized for high power efficiency and was released in June 2015. Certain RX231 products already include security functions (trusted secure IP).

Note 2)

AES: Advanced Encryption Standard. AES is the standard encryption system in the United States, and is established by the National Institute of Standards and Technology.

Note 3)

Reverse engineering refers to process of analyzing devices available in the market to explicate its structure and technology. 

About Renesas Electronics Europe

Renesas Electronics Europe, with its business operations centre located in Dusseldorf, Germany, is a wholly owned subsidiary of Renesas Electronics Corporation (TSE: 6723). As the world’s number one supplier of microcontrollers and a premier supplier of advanced semiconductor solutions, Renesas enables “Big Ideas for Every Space” by providing complete solutions that integrate microcontrollers and microprocessors, SoC, ASIC, analog & power devices and software. Renesas was established in 2010 and is headquartered in Japan. With over 800 hardware and software alliance partners worldwide, it has the industry’s largest local support network. Renesas Electronics’ European structure is comprised of two business groups – automotive and industrial – as well as the global ADAS solution group and the engineering group.

Further information about Renesas Electronics Europe is available at www.renesas.eu.

Renesas Electronics Europe is also on social media at http://twitter.com/Renesas_Europehttp://facebook.com/RenesasEurope andhttp://youtube.com/RenesasPresents.

Leave a Reply

featured blogs
May 2, 2024
I'm envisioning what one of these pieces would look like on the wall of my office. It would look awesome!...
Apr 30, 2024
Analog IC design engineers need breakthrough technologies & chip design tools to solve modern challenges; learn more from our analog design panel at SNUG 2024.The post Why Analog Design Challenges Need Breakthrough Technologies appeared first on Chip Design....

featured video

Why Wiwynn Energy-Optimized Data Center IT Solutions Use Cadence Optimality Explorer

Sponsored by Cadence Design Systems

In the AI era, as the signal-data rate increases, the signal integrity challenges in server designs also increase. Wiwynn provides hyperscale data centers with innovative cloud IT infrastructure, bringing the best total cost of ownership (TCO), energy, and energy-itemized IT solutions from the cloud to the edge.

Learn more about how Wiwynn is developing a new methodology for PCB designs with Cadence’s Optimality Intelligent System Explorer and Clarity 3D Solver.

featured paper

Altera® FPGAs and SoCs with FPGA AI Suite and OpenVINO™ Toolkit Drive Embedded/Edge AI/Machine Learning Applications

Sponsored by Intel

Describes the emerging use cases of FPGA-based AI inference in edge and custom AI applications, and software and hardware solutions for edge FPGA AI.

Click here to read more

featured chalk talk

VITA RF Product Portfolio: Enabling An OpenVPX World
Sponsored by Mouser Electronics and Amphenol
Interoperability is a very valuable aspect of military and aerospace electronic designs and is a cornerstone to VITA, OpenVPX and SOSA. In this episode of Chalk Talk, Amelia Dalton and Eddie Alexander from Amphenol SV explore Amphenol SV’s portfolio of VITA RF solutions. They also examine the role that SOSA plays in the development of military and aerospace systems and how you can utilize Amphenol SV’s VITA RF solutions in your next design.
Oct 25, 2023
25,023 views