Developer Guide

  • 10/27/2020
  • Public Content
Contents

Data Migration

In firmware kits Intel® Management Engine (Intel® ME) 11.8.x and above, and Intel® Trusted Execution Engine (Intel® TXE) 3.1.50.x and above, a change in the firmware Secure Version Number (SVN) during the firmware update flow will change the Pbind key. When this happens, applets lose all the data that was encrypted using the old Pbind key and stored on the host.
The DataMigration class in the com.intel.crypto package provides applets the ability to migrate their data that was encrypted and signed with the previous Pbind key to the new Pbind key. Only a single migration step is supported, i.e., if the firmware SVN was incremented from X to X+1 and then to X+2, and the applet did not migrate its data from Pbind X to Pbind X + 1, the data will be lost.
Class documentation: com.intel.crypto.DataMigration
See the Secure Data Migration sample for more details on the migration flow.
Supported from API level 8

Product and Performance Information

1

Performance varies by use, configuration and other factors. Learn more at www.Intel.com/PerformanceIndex.