Icon Labs Partners with Infineon to Provide a Complete PKI Management Solution for the OPTIGA TPM


Icon Labs (www.iconlabs.com), a provider of security solutions for IoT and edge devices, today announced its IoT Certificate management solution supports Infineon Technologies’ OPTIGA™ Trusted Platform Module (TPM). The partnership enables device manufacturers to manage PKI certificates throughout the product lifecycle using the OPTIGA™ TPM, including support for certificate injection during device manufacturing. Instead of having to manually install a certificate into each device, the device comes off the assembly line with a PKI certificate already installed. Infineon`s OPTIGA™ TPM chip complies with the internationally recognized security standards of the Trusted Computing Group (TCG). Infineon is recognized as the world’s leading supplier of security solutions for Trusted Computing.

Security is a critical requirement for the IoT, and strong device authentication, using widely adopted PKI technology, enables managed security solutions for IoT deployments.  Icon Labs’ Floodgate Certificate Authority (CA) and Floodgate PKI Client allow manufacturers to incorporate certificate-based authentication using the OPTIGA™ TPM for secure key storage. Capabilities include certificate creation during the manufacturing process using private keys stored in the TPM, certificate creation during device provisioning, and certificate management throughout the life of the device.

Icon Labs provides both the client- and server-sides of the PKI solution required to automate secure provisioning and enrollment. The Floodgate PKI Client is compatible with public and private CAs, providing the flexibility to operate a private PKI system without dependence on a public CA or to operate within the hierarchy of a public CA.  The OPTIGA™ TPM securely stores the keys, the Floodgate Factory CA Server creates device authentication certificates, and the Floodgate PKI Client enables a connection in the field to a CA for issuance of TLS and other run-time certificates. The certificates create a Root of Trust enabling secure machine-to-machine communications, using keys secured by the OPTIGA™ TPM.

“Icon Labs’ solution solves two main security challenges for the IoT,” said Steve Hanna, Sr. Principal for Technical Marketing, of Infineon. “OEMs can easily create certificates for devices using the OPTIGA™ TPM for secured key storage, and, by automating the process, provide the scalability required as the number of IoT devices grows into the billions.”

“We are excited to partner with Infineon to provide a complete PKI solution for OEMs using the OPTIGA™ TPM.  The Floodgate Factory CA Server enables certificate signing during manufacturing,” said Alan Grau, President of Icon Labs. “The Floodgate PKI Client provides the device-side software to streamline TPM usage and key storage, while the Floodgate CA Server allows management of Public Key Infrastructure (PKI) certificates after the device is deployed.” 

How Does the Solution Work? 

Creating a signed certificate during manufacturing requires several steps. First, the Floodgate PKI Client requests the OPTIGA™ TPM to generate a new public-private key pair. Using this key pair, a certificate signing request (CSR) is created while the private key does not leave the TPM. The Floodgate PKI Client sends the CSR to the Factory CA Server, which signs the request and returns a signed certificate to the PKI Client. This certificate can then be used to authenticate the device when the device is provisioned in the field. Follow this link for more information: Automated certificate insertion for OPTIGA™ TPM



May 2, 2017


Topic Area: Press Release


Recent Posts

Waco Family Medicine Achieves Savings and Bold Design with Wood Selections

Case study: The healthcare facility incorporated over 25,000 square feet of wood and saved over $400,000.


Alleged Ransomware Administrator Extradited from South Korea

The Phobos ransomware has been used globally to target over 1,000 organizations, including healthcare.


Design Plans Unveiled for New Intermountain St. Vincent Regional Hospital

The new hospital will be a 14-floor, 737,000 square-foot facility in Billings, Montana.


Ground Broken on New Pediatric Health Campus in Dallas

The new campus will replace the existing Children’s Medical Center Dallas.


Pre-Construction Strategies for Successful Facilities Projects

Savvy decisions can help facilities meet long-term goals by creating consistency and eliminating waste.


 
 


FREE Newsletter Signup Form

News & Updates | Webcast Alerts
Building Technologies | & More!

 
 
 


All fields are required. This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

 
 
 
 

Healthcare Facilities Today membership includes free email newsletters from our facility-industry brands.

Facebook   Twitter   LinkedIn   Posts

Copyright © 2023 TradePress. All rights reserved.