NXP Semiconductors
AN13500
EdgeLock A5000 Secure Authenticator for electronic anti-counterfeit protection using device-to-device
authentication
Figure 17. Content of the control unit certificate
4.5.2 Retrieve the pre-provisioned A5000 device certificates public keys
The ECC public keys are required for the ECC verify operation. The ECC public keys can
be extracted from the corresponding certificate using the OpenSSL command-line tool or
with the help of the ssscli tool. In this chapter the ssscli tool is used.
ssscli get ecc pub --format PEM 0xF0000000 machine_pub_key.pem
ssscli get ecc pub --format PEM 0xF0000002
control_unit_pub_key.pem
Figure 18. Retrieve the pre-provisioned A5000 device certificate's public keys
We use again the Linux command
cat
to display the both PEM formatted public keys:
cat machine_pub_key.pem
cat control_unit_pub_key.pem
AN13500
All information provided in this document is subject to legal disclaimers.
© NXP B.V. 2022. All rights reserved.
Application note
Rev. 1.0 — 28 March 2022
19 / 45