Skip to main content
Application NoteNxp

AN12132: A71CH for Secure Connection to OEM Cloud

This application note describes using the NXP A71CH security IC to establish secure TLS connections between IoT devices and OEM cloud servers using ECC and PKI.

View application note

Overview

The AN12132 application note provides a comprehensive guide on utilizing the NXP A71CH security IC to secure IoT device communication with OEM cloud platforms. It details fundamental concepts of Elliptic Curve Cryptography (ECC), including digital signatures (ECDSA) and key agreement (ECDH), and explains the implementation of Public Key Infrastructure (PKI) using digital certificates. The document outlines the mechanisms for establishing secure Transport Layer Security (TLS) connections, focusing on the storage and management of unique device credentials within the A71CH to ensure device authenticity, data confidentiality, and communication integrity.

Use Cases

  • Secure IoT device-to-cloud connectivity
  • Cryptographic device authentication and proof-of-origin
  • Protected storage of cryptographic keys and certificates
  • Implementation of TLS/SSL in resource-constrained IoT nodes
  • Secure communication with OEM cloud servers

Topics

NXP A71CH
Security IC
IoT Security
Cloud Authentication
ECC Cryptography
TLS Protocol
ECDSA
ECDH
Public Key Infrastructure
Digital Certificates

Referenced Parts

A71CH

NXP

The A71CH is a ready-to-use solution enabling ease-of-use security for IoT device makers. It is a secure element capable of securely storing and provisioning credentials

i.MX6UltraLite

NXP

The A7CH OpenSSL Engine is fully compatible with the i.MX6UltraLite embedded platform.

AN12132: A71CH for Secure Connection to OEM Cloud | Design Resources