RidgeRun Platform Security Manual - Platform Support
🚧 Documentation is under development
The RidgeRun Platform Security Manual guide is currently under active development. Some sections may be incomplete or change without notice.
Questions? Contact RidgeRun or email to support@ridgerun.com.
- Introduction
- General Security Concepts
- Getting Started
- Contact Us
- Sponsor your Favorite Feature
The RidgeRun Platform Security Manual provides practical guidance for implementing and validating security mechanisms on embedded Linux platforms.
Security capabilities and implementation procedures vary depending on the SoC, hardware platform, BSP, operating system, build system, and software release.
The following table shows the security features currently supported and covered by this manual for each platform.
| Security Feature | NXP i.MX95 | NVIDIA Jetson |
|---|---|---|
| Secure Boot | Supported | Supported |
| Trusted Execution Environment (TEE) | Supported | |
| Disk Encryption | Supported | Supported |
| Trusted Platform Module (TPM) | Supported | |
| Secure OTA | Supported | Supported |
| Anti-rollback | Supported | |
| Kiosk Mode / Access Restrictions | Supported |
NXP i.MX95
The NXP i.MX95 section provides a practical path for implementing and validating security mechanisms using the platform's security architecture.
The guide explains the boot and trust architecture and provides procedures for the security features currently supported by this manual, including Secure Boot, disk encryption, secure OTA updates, and anti-rollback.
The platform-specific procedures are integrated into the i.MX95 Yocto build process and include implementation and validation steps.
See NXP i.MX95 Security for the available guides.
NVIDIA Jetson
The NVIDIA Jetson section provides practical guidance for implementing and validating security mechanisms available on Jetson platforms.
The documentation covers security features such as Secure Boot, Trusted Execution Environments (TEE), disk encryption, Trusted Platform Module (TPM) integration, secure OTA updates, and system access restrictions.
Depending on the product software architecture, these security mechanisms can be integrated using JetPack / L4T or a Yocto-based build process. The security objective remains the same, while the build, configuration, signing, and deployment procedures may differ.
See NVIDIA Jetson Security for the available guides.
Platform and software version considerations
Security support should always be evaluated against a specific hardware and software baseline.
Implementation details may vary depending on:
- SoC and module.
- Board configuration.
- BSP release.
- Bootloader version.
- Linux kernel version.
- JetPack / L4T release.
- Yocto release and layers.
- Security lifecycle or fuse configuration.
- Product-specific hardware configuration.
A security procedure validated on one hardware or software configuration should not automatically be assumed to apply unchanged to another.
Other platforms
The platforms listed above represent the security implementations currently covered by the RidgeRun Platform Security Manual.
RidgeRun can also evaluate and implement security mechanisms for embedded platforms that are not currently covered by this manual. This can include evaluating platform security capabilities, mapping them to product security requirements, implementing the required mechanisms, and validating the resulting security configuration.
Please Contact RidgeRun for engineering support with a platform or security requirement not currently covered by this manual.