nRF Connect Docs
nRF Connect SDK Add-ons Add-ons nRF Connect SDK Bare Metal Bare Metal
Documentation sets
  • nRF Connect SDK

  • nrfxlib

  • Zephyr Project

  • MCUboot

  • Trusted Firmware-M

  • Matter

  • Kconfig Reference

★ Feedback
Trusted Firmware-M
nRF Connect SDK
2.2.2

Contents

  • Introduction
  • Security
    • Threat Models
      • TF-M Threat model
    • Security Advisories
      • Advisory TFMV-1
      • Advisory TFMV-2
      • Advisory TFMV-3
      • Advisory TFMV-4
      • Advisory TFMV-5
      • Advisory TFMV-6
      • Advisory TFMV-7
      • Advisory TFMV-8
      • Advisory TFMV-9
    • Security Recommendations
  • TF-M Profiles
    • Small
    • ARoT-less
    • Medium
    • Large
  • Source Structure
    • Details for the /platform folder
    • Details for the /platform/ext folder
  • SPM Backends
  • Floating-Point Support
  • Secure Interrupt Integration Guide
  • Platform Provisioning
  • Branch Protection
  • Services
    • Initial Attestation
    • Crypto
    • Internal Trusted Storage
    • Platform
    • Protected Storage
    • Adding a New Secure Partition
    • Manifest Tool
    • ADAC
  • Design Documents
    • Secure Boot
      • BL1 Immutable bootloader
      • Rollback Protection
      • HW Key integration
    • Multi CPU
      • Booting a multi-cpu
      • Hybrid Platform Topology
      • Mailbox Design
      • Memory Access Check
      • SPE - NSPE communication
    • Secure Services
      • Secure Partition Manager
      • Secure Partition RTL
      • Inter-Process Communication
      • Stateless Services
      • Service Signing
      • Crypto
      • Symmetric Initial Attestation
      • Internal Trusted Storage
        • Block-aligned flash
      • Firmware Update
      • PS Key Management
    • Software Design
      • Code Sharing
      • Hardware Abstraction Layer
      • Cooperative Scheduling
      • Code Templates
      • Implicit Typecasting
    • Isolation Rules
    • Builtin Keys
    • Logging system
    • Physical Attack Mitigation
    • MM-IOVEC High Isol Levels
Trusted Firmware-M
  • Runtime Security Engine (RSE)
  • View page source

Runtime Security Engine (RSE)

Previously known as Runtime Security Subsystem (RSS).

  • RSE introduction
  • DMA Initial Command Sequence (ICS) introduction
  • RSE integration guide
  • SFCP communication design
  • RSE hardware key management
  • RSE provisioning
  • RSE routing table
  • RSE ROM releases
  • RSE Platforms
  • RSE ROM unit test guidelines
  • RSE staged boot
  • RSE BL1_2 image binding
  • RSE firmware update metadata
  • RSE BL2 image binding
  • RSE Cryptography
  • BL1
  • BL2
  • Runtime Crypto partition
  • RSE Cryptographic hardware
  • Security strength requirements
  • Side-channel countermeasures
  • BL1 crypto API
  • cc3xx low_level_driver API

RSE also includes the following extra partitions:

  • Authenticated Debug Access Control (ADAC)

  • Measured boot partition

  • Delegated attestation partition

  • DICE Protection Environment partition


SPDX-FileCopyrightText: Copyright The TrustedFirmware-M Contributors


Trusted Firmware-M
nRF Connect SDK
nrfxlib
Zephyr Project
MCUboot
Trusted Firmware-M
Matter
Kconfig Reference