Developer Guide

  • 10/27/2020
  • Public Content
Contents

Data Migration

In firmware kits Intel® Management Engine (Intel® ME) 11.8.x and above, and Intel® Trusted Execution Engine (Intel® TXE) 3.1.50.x and above, a change in the firmware Secure Version Number (SVN) during the firmware update flow will change the Pbind key. When this happens, applets lose all the data that was encrypted using the old Pbind key and stored on the host.
The DataMigration class in the com.intel.crypto package provides applets the ability to migrate their data that was encrypted and signed with the previous Pbind key to the new Pbind key. Only a single migration step is supported, i.e., if the firmware SVN was incremented from X to X+1 and then to X+2, and the applet did not migrate its data from Pbind X to Pbind X + 1, the data will be lost.
Class documentation: com.intel.crypto.DataMigration
See the Secure Data Migration sample for more details on the migration flow.
Supported from API level 8

Product and Performance Information

1

Intel's compilers may or may not optimize to the same degree for non-Intel microprocessors for optimizations that are not unique to Intel microprocessors. These optimizations include SSE2, SSE3, and SSSE3 instruction sets and other optimizations. Intel does not guarantee the availability, functionality, or effectiveness of any optimization on microprocessors not manufactured by Intel. Microprocessor-dependent optimizations in this product are intended for use with Intel microprocessors. Certain optimizations not specific to Intel microarchitecture are reserved for Intel microprocessors. Please refer to the applicable product User and Reference Guides for more information regarding the specific instruction sets covered by this notice.

Notice revision #20110804