Icon Labs and Infineon join forces on PKI certificates management

April 27, 2017 // By Julien Happich
Icon Labs worked with Infineon Technologies so its IoT Certificate management solution would support the company's Optiga Trusted Platform Module (TPM).

The partnership enables device manufacturers to manage PKI certificates throughout the product lifecycle using the Optiga TPM, including support for certificate injection during device manufacturing. Instead of having to manually install a certificate into each device, the device comes off the assembly line with a PKI certificate already installed.

Icon Labs’ Floodgate Certificate Authority (CA) and Floodgate PKI Client allow manufacturers to incorporate certificate-based authentication using the Optiga TPM for secure key storage. Capabilities include certificate creation during the manufacturing process using private keys stored in the TPM, certificate creation during device provisioning, and certificate management throughout the life of the device.  

Icon Labs provides both the client- and server-sides of the PKI solution required to automate secure provisioning and enrolment. The Floodgate PKI Client is compatible with public and private CAs, providing the flexibility to operate a private PKI system without dependence on a public CA or to operate within the hierarchy of a public CA. The Optiga TPM securely stores the keys, the Floodgate Factory CA Server creates device authentication certificates, and the Floodgate PKI Client enables a connection in the field to a CA for issuance of TLS and other run-time certificates. The certificates create a Root of Trust enabling secure machine-to-machine communications, using keys secured by the Optiga TPM.

Icon Labs - www.iconlabs.com

Infineon - www.infineon.com