New security controller includes PQC-protected firmware update mechanism

August 7, 2025

Issue 6 2025

The OPTIGA™ TPM SLB 9672 and SLB 9673 trusted platform modules from Infineon provide a solid foundation for securely establishing the identity and software status of connected devices, and for protecting data integrity and confidentiality.

Advanced technology from Infineon provides OEMs with a solution for protecting connected devices from the security threats of tomorrow as well as today. The OPTIGA™ TPM (Trusted Platform Module) SLB 9672 FW16 is a future-proof security solution which includes a post-quantum cryptography (PQC) protected firmware update mechanism optimized for IoT networks and embedded control devices.  

 

The OPTIGA TPM SLB 9672 FW16, which has a serial peripheral interface, is intended for use in smart building systems, network infrastructure, and industrial automation. A member of the same family of TPMs, the OPTIGA TPM SLB 9673, which has an I2C interface, fits a wider set of applications: health and lifestyle devices, renewable energy and smart mobility, as well as smart building systems, network infrastructure, and industrial automation.  

 

The OPTIGA TPM SLB 967x security controllers use eXtended Merkle Signature Scheme (XMSS) signatures, a mechanism which counteracts the threat of firmware corruption by attackers who have access to quantum computers, and increases the chances of the long-term survival of the device by enabling a quantum computing-resistant firmware upgrade path.  

 

The OPTIGA TPMs provide a unique ID. This is required to monitor IoT devices on connected networks for application security and ease of maintenance. The unique ID cannot be erased. 

 

The OPTIGA TPM SLB 9672 and SLB 9673 also offer a firmware update mechanism which has a 256-bit key length, along with an additional check based on PQC. With this strong and trusted update mechanism, the TPM can be updated even if the standard algorithms are no longer trusted. The design allows for improvements in computing performance, providing fail-safe features which counteract the effects of corrupted firmware. For instance, the TPM firmware can be recovered in accordance with the NIST SP 800-193 platform firmware resilience guidelines. 

 

The product also provides a large non-volatile memory to store features such as additional certificates and cryptographic keys. Security evaluation and certification are performed by independent bodies according to the Common Criteria and FIPS requirements. The new OPTIGA TPMs also fully comply with the Trusted Computing Group (TCG) requirements specified in the TPM 2.0 standard version 1.59, and are certified according to the latest TPM 2.0 standard. 

 

The product is also available in another version: the OPTIGA TPM SLB 9672 FW15 is the preferred choice for Microsoft Windows environments and ecosystems, and connected devices which have a PC architecture. 

Features

  • Support for multiple cryptographic algorithms:
    • RSA-4096
    • AES-128
    • AES-192
    • AES-256
    • ECC NIST P384
    • SHA2-384
  • Ten-year longevity commitment
  • Support and maintenance through Infineon security partner network
  • Operating-temperature range: -40°C to 105°C

Applications

  • Printers
  • Industrial robots
  • Programmable logic controllers
  • Surveillance cameras
  • Network infrastructure:
    • Routers
    • Switches
    • Access points
    • Gateways
    • 5G equipment
  • PCs
  • Servers
  • IoT devices
  • Renewable energy generation equipment
  • Smart mobility applications
  • Health and lifestyle monitoring devices
AS_Infineon_OPTIGA-TPM-SLB

Evaluation Kit

Part Number: TPM9672FW1624RPIEBTOBO1

The Infineon OPTIGA™ TPM SLB 9672 RPI evaluation board for Raspberry Pi provides a quick and easy way for developers to get started on security system design with the OPTIGA TPM SLB 9672 trusted platform module (TPM).  

 

The board comes in a Raspberry Pi HAT, hardware attached on top, format which conforms to the rules specified by the Raspberry Pi Foundation. This add-on board makes it easier for users to connect the board to all 40-pin GPIO Raspberry Pi boards. 

 

To enable easy evaluation and integration of the board, Infineon also provides the OPTIGA™ TPM Explorer, a GUI-based software tool which allows designers to evaluate the features of, and use cases for, the OPTIGA TPM SLB 9672 without deep knowledge of the product. 

BC_Infineon_TPM9672FW1624RPIEBTOBO1

FTM Board Club

Sign up for access to exclusive development boards, an essential tool for many innovative design projects.

*Available to pre-qualified EMEA customers only.

Tags

Categories

Featured Products

Related Articles

Susumu — KRL Series Low Resistance Current-Sensing Chip Resistors
Susumu KRL Series low-resistance current-sensing chip resistors combine small package sizes and high...
Read More
Hirose Electric — CX Series Receptacles
Hirose Electric has introduced the CX series of surface-mount and through-hole USB Type-C® connectors...
Read More
STMicroelectronics — ISM330IS Motion Sensor
The ISM330IS motion sensor from STMicroelectronics combines a three-axis digital accelerometer and a...
Read More

Subscribe to our newsletters

Subscribe to Future Electronics

Get access to the latest product information, technical analysis, design notes and more

Choose your region