[Cryptech Tech] Alpha board main CPU change

Joachim Strömbergson joachim at secworks.se
Fri May 29 07:07:15 UTC 2015


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

Aloha!

Jacob wrote:
> STM32F4429 -> STM32F429
> 
> The ARM M4 has RTC in it, so I guess the external RTC chip is now 
> redundant.

No. Better precision and compartmentalization so we ware keeping it.
Instead we might use both.


> Also, realizing that I don't have any of the credentials required to 
> enter into the sanctum sanctorum of the crypto world, and I know
> that this is bordering on heresy, but since M4 has a TRNG, will you
> trust it? If yes, what benefit is provided by the noise board, if
> any? If not, why would you trust the M4 to manage your external TRNG
> and FPGA

As others have stated. No, we wont replace our TRNG with the one inside
the M4. And note that the noise board is only one of our noise sources.

If the TRNG inside is the same design as in the STM32L06, based on
testing with Dieharder it generates good random numbers. But it is a
black box. ST does not provide any real information on what the
underlying physical process is, how it is used to drive a CSPRNG. And of
course to real insight into what is actually on the chip.

We could use the TRNG in the M4 as an entropy source to feed the TRNG
inside the FPGA (basically a FIFO into which SW could write words
consumed during entropy mixing). But replacing the TRNG, no.

- -- 
Med vänlig hälsning, Yours

Joachim Strömbergson - Alltid i harmonisk svängning.
========================================================================
 Joachim Strömbergson          Secworks AB          joachim at secworks.se
========================================================================
-----BEGIN PGP SIGNATURE-----
Version: GnuPG/MacGPG2 v2
Comment: GPGTools - http://gpgtools.org
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org/

iQIcBAEBCAAGBQJVaBAjAAoJEF3cfFQkIuyNBY4P/0CV0J9BmLg9cBsTAdF8B5Xh
KIcOnhOe8PyeaXgrsxHBECr+Ic7aYeA4C3U8BMbNermFpmUEPMqBmHTuZuiffD3U
ifSD6gnBGVDSHt7GOL2zALrP1V6nFtay2uKal8GSLuGzUAS5c7Znec4szs+kJWqf
KO4anMjlloGcc1d4DprvZLWN1XcyGb8DS08kE16F8I9Lgc7PPqU7/lg7FvJtO3QU
mxA0Q2/DW4BwvpWYMDlkQ5Dcbgs454+areeo16Nz1ijGL2c6xQW4pfI5OU8JjRR6
nFAx7aqtMm/ckal+2F2Vwse/0wwTHPTF+8gVFDbG6gJ110Am/J6aSUTcWNkiZAPk
ImOEKXTi61rFBrNbFdTFK+6X5eIaIF1o8rNrs9MVAm0oxP6zg1vo/zd56OdoaLyw
dVKWR3LGfYzcg1LlaHyUnDoHgG/lUoVsIq7Rcv1XSZNWDpHmoGmPW8arHAeJz4sF
6slii8bkbYnk6jVZQ0/ty4ZrlJ1/F7Qb37tM7iOR2fhSkzy6bheO5/semCR6WSJC
Hdg5RpChSbR0LDYfUxiyzNXb0PNOqPAsdKja+3bSMUdp9As4iy9L9eX8/nowQluG
sI2polnY4XO5xv3RZGYqcJ8Gjw9pqfa7XBIx5BBdRGQeokoq2hrcdY3QWZ3mrezN
2qOD8HQdjYJaQwT7C8tA
=o6af
-----END PGP SIGNATURE-----


More information about the Tech mailing list