• Trusted root-certificate catalog – Verifies that the CA used by the application is trusted and known secure
content delivery
• TI root-of-trust public key – Hardware-based mechanism that allows authenticating TI as the genuine origin of
a given content using asymmetric keys
• Secure content delivery – Allows encrypted file transfer to the system using asymmetric keys created by the
device
Code and Data Security:
• Network passwords and certificates are encrypted and signed.
• Cloning protection – Application and data files are encrypted by a unique key per device.
• Access control – Access to application and data files only by using a token provided in file creation time. If an
unauthorized access is detected, a tamper protection lockdown mechanism takes effect.
• Encrypted and Authenticated file system
• Secured boot – Authentication of the application image on every boot
• Code and data encryption – User application and data files are encrypted in sFlash.
• Code and data authentication – User Application and data files are authenticated with a public key certificate.
• Offloaded crypto library for asymmetric keys, including the ability to create key-pair, sign and verify data
buffer
• Recovery mechanism
Device Security:
• Separate execution environments – Application processor and network processor run on separate Arm
®
cores
• Initial secure programming – Allows for keeping the content confidential on the production line
• Debug security
– JTAG lock
– Debug ports lock
• True random number generator
shows the high-level structure of the CC3220S and CC3220SF devices that are contained within
the CC3220MODS and CC3220MODSF modules, respectively. The application image, user data, and network
information files (passwords, certificates) are encrypted using a device-specific key.
CC3220S and CC3220SF
Network Pro MCU
Network Processor
Wi-Fi
Internet
Peripherals
OEM
Application
Serial Flash
Data Files
OEM
Application
Network information
Radio
Baseband
MAC
HTTPS
TLS/SSL
TCP/IP
MCU
ARM
Cortex-M4
256KB RAM /
1MB Flash (CC3220SF)
SPI and I2C
GPIO
UART
PWM
ADC
-
Copyright © 2017, Texas Instruments Incorporated
Internet
Figure 9-1. CC3220S and CC3220SF High-Level Structure
SWRS206E – MARCH 2017 – REVISED MAY 2021
52
Copyright © 2021 Texas Instruments Incorporated
Product Folder Links: