NXP Semiconductors
AN13500
EdgeLock A5000 Secure Authenticator for electronic anti-counterfeit protection using device-to-device
authentication
5 A5000 secure provisioning
The IoT device identity should be unique, verifiable and trustworthy so that device
registration attempts and any data uploaded to the OEM's servers can be trusted.
The A5000 is designed to provide a tamper-resistant platform to safely store keys and
credentials needed for device authentication and registration to OEM's cloud service.
Leveraging the A5000 security IC, OEMs can safely authenticate their devices without
writing security code or exposing credentials or keys.
The following options are available for provisioning the EdgeLock A5000 security IC:
• EdgeLock 2GO Ready
: Every EdgeLock A5000 product variant comes pre-provisioned
with keys which can be used for all major use cases, including device-to-device
authentication.
• EdgeLock 2GO Custom
: NXP offers a customization service for injecting the
credentials that you need during the A5000 IC manufacturing. Please contact NXP for
more information on this service.
• EdgeLock 2GO Managed:
NXP offers a cloud service for remotely configurating your
A5000. EdgeLock 2GO Managed is a secure and flexible way for provisioning the keys
and certificates required on your devices and to manage the lifecycle of your device
credentials.
You can find more information and request an evaluation account at
.
• EdgeLock SE05x provisioning by OEMs, distributors or third-party partners
:
OEMs can provision EdgeLock A5000 on their own or select a distributor or third-party
partner for provisioning the A5000 .
AN13500
All information provided in this document is subject to legal disclaimers.
© NXP B.V. 2022. All rights reserved.
Application note
Rev. 1.0 — 28 March 2022
40 / 45