Security Advantage of Limiting Serial Updates for Flash Encryption
Posted: Tue Oct 16, 2018 1:12 am
Hi all,
This may seem like a trivial matter to most of you. For some reason, I'm just having trouble wrapping my head around it.
My question is this: what is the inherent security advantage to placing a limit on (plaintext) serial updates once flash encryption is enabled? It seems to me that with flash encryption, we merely want to prevent unauthorized read access to the firmware and bootloader, so I don't understand where imposing a limit to flash updates fits in.
Again, my gut feeling tells me that I am missing something quite obvious. Any feedback is well appreciated.
Thanks!
This may seem like a trivial matter to most of you. For some reason, I'm just having trouble wrapping my head around it.
My question is this: what is the inherent security advantage to placing a limit on (plaintext) serial updates once flash encryption is enabled? It seems to me that with flash encryption, we merely want to prevent unauthorized read access to the firmware and bootloader, so I don't understand where imposing a limit to flash updates fits in.
Again, my gut feeling tells me that I am missing something quite obvious. Any feedback is well appreciated.
Thanks!