3.2.3 ECC608-TFLXWPC Slot Configuration Summary

The ECC608-TFLXWPC has 16 slots that are configured for different use cases. Below is a summary of those slots with their configuration and proposed uses for the ECC608-TFLXWPC:

Table 3-5. Slots Configuration
SlotUse CaseDescriptionPrimary Configuration
0WPC Slot 0 authenticationWPC Slot 0 primary ECC authentication keyPermanent, Ext Sign, Not Readable, Optional Secure Boot Enable
11WPC Slot 1 authenticationWPC Slot 1 primary ECC authentication keyPermanent, Ext Sign, Not Readable, Optional Secure Boot Enable
2TLS authenticationPrimary TLS ECC authentication keyPermanent, Ext Sign, ECDH, Not Readable, Optional Secure Boot Enable
3WPC Slot 0 authenticationWPC Slot 0 certificate chain digestPermanent or Writable and Slot Lockable, Clear Text Read depending on access policies
4WPC Slot 0 authenticationWPC Slot 0 extra informationPermanent or Writable and Slot Lockable, Clear Text Read depending on access policies
5WPC Slot 0 authenticationWPC Slot 0 extra informationPermanent or Writable and Slot Lockable, Clear Text Read depending on access policies
6I/O protection key Key used to protect the I2C bus communication (I/O) of certain commands. Requires setup before use. Permanent or Writable and Slot Lockable, Never Read depending on access policies
7Secure Boot Storage location for secure boot digest. This is an internal function, so no reads or writes are enabled.No Read, No Write
82WPC Slot 1 authenticationStorage of WPC Slot 1 information public key, certificate and slot digestClear Text Read, Writable or Lockable depending on access policies
9WPC Slot 0 authenticationWPC Slot 0 manufacturer public keyPermanent, Clear Read, No Write or Writable depending on access policies
10TLS authenticationTLS device compressed certificate in CryptoAuthentication compressed formatPermanent, Clear Read, No Write or Writable depending on access policies
11TLS authenticationTLS public key for the CA (signer) that signed the device certificateClear Read, No Write or Writable depending on access policies
12TLS authentication TLS certificate for the CA (signer) certificate for the device certificate in the CryptoAuthentication compressed formatClear Read, No Write or Writable depending on access policies
13WPC Slot 0 authenticationWPC Slot 0 compressed device certificatePermanent, Clear Read, No Write or Writable depending on access policies
14WPC Slot 0 authenticationWPC Slot 0 compressed manufacturer certificatePermanent, Clear Read, No Write or Writable depending on access policies
15Secure BootSecure boot public keyPermanent or Writable and Lockable with Clear Text Read
Note:
  1. This slot is always reserved for an ECC private key. If WPC Slot 1 is not required, it may alternately contain a private key for use with WPC Slot 2 or some other purpose.
  2. If WPC Slot 1 is not used in the application, this slot may be used for the WPC Slot 2 or 3 information. It is recommended that this slot be locked if it is used for public key or certificate information. If no other WPC slots are required, this slot may be used to store general purpose data.