Skip to content

Generating an ECC keypair #57

Answered by ayushev
stefanomologni asked this question in Q&A
Discussion options

You must be logged in to vote

If we are talking about generic OPTIGA Trust M chips, they are pre-provisioned by default with a X.509 Certificate and a corresponding private key. You can find more about this either here or here

So that certificate is provisioned at 0xe0e0 data slot and the private key is loaded at 0xe0f0. You can't change them generally speaking. it is possible to permanently remove them (only applied for the generic chips on the market) by chaning metadata.

0x8007 error is Access Conditions error, which means that you can't update the object as the change Access Conditions don't allow this. Please have a look at Solutions Reference Manual Table 72 page 104,

You have there a Key Object 0xe0f0, the defa…

Replies: 2 comments 3 replies

Comment options

You must be logged in to vote
3 replies
@stefanomologni
Comment options

@stefanomologni
Comment options

@ayushev
Comment options

Answer selected by ayushev
Comment options

You must be logged in to vote
0 replies
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Category
Q&A
Labels
None yet
2 participants
Converted from issue

This discussion was converted from issue #56 on May 28, 2021 15:26.