TPM 2.0 security chips provide strong protection for connected embedded devices

August 7, 2025

Issue 6 2024, Issue 6 2025

STMicroelectronics has extended the STSAFE-TPM family with the introduction of the ST33KTPM2X and industrial-qualified ST33KTPM2I trusted platform module (TPM) ICs, for use in securing infrastructure, industrial, medical and other connected products which must meet the strongest government security requirements.

The STSAFE-TPM TPMs, which have long been used to provide security protection in enterprise PCs, servers and workstations, defend connected devices against a wide range of threats. Independent validation allows for compliance with security regulations mandated to manufacturers which supply equipment to government organizations.  

 

Alongside the ST33KTPM2X and ST33KTPM2I TPMs, a standard version of the TPM-provisioned IDevID and IAK identities, as well as manifest files of device certificates provided securely to customers to support white-listing or registration into their networks, is also now available from ST. 

 

The new TPMs offer improved performance, enhanced security, and increased memory capacity, giving manufacturers the capability to adapt to the growing severity of security challenges to connected products. These security chips are suitable for functions including:  

  • Platform trusted identity  
  • Device health attestation  
  • Anti-counterfeiting  
  • Protection and provisioning of keys and critical data  
  • 199 kbytes of secure storage  
  • Cryptography 
  • TLS secure channel communication 
  • Self-recovery 

 

The device has independently verified security status according to Common Criteria EAL4+, Trusted Computing Group (TCG), and the US Federal Information Processing Standard (FIPS) 140-3 specifications.  

 

For integration into product designs, the ST33KTPM2X and ST33KTPM2I are compatible with the Windows and Linux® operating systems, and the TCG TPM software stack. They support firmware upgrades for the addition of new standard features and cryptography capabilities. These include post-quantum cryptography, as added to the TPM specifications by the TCG.  

 

The upgrade function is double-buffered: this ensures that an upgrade completes successfully, and acts as a back-up when the latest image is upgraded (or factory-installed) twice. 

 

The ST TPMs are backed by a dedicated evaluation board, the STPM4RasPIV21. This is an extension board for connecting the ST33KTPM TPM chips to Raspberry Pi boards, or to an STM32 microprocessor development kit such as the STM32MP157F-DK2 or STM32MP135F-DK. Example code for STM32 MCUs is also available. 

 

The board is for product evaluation, use case development and design integration. The STPM4RasPIV21 is shipped with one trusted platform module soldered to the board. The STPM4RasPIV21 includes:   

  • 26-pin female connector to plug on Raspberry Pi or STM32MPx-DK boards 
  • I2C or SPI configurable interface 
  • Reset button to reset the TPM device without a platform restart 
  • 26-pin male connector to ease probing and to plug to the same or another extension board 

Features (ST33KTPM2X)

  • Compliant with TPM version 2.0 revision 1.59
  • CC EAL4+ certified (HW-IC basis CC EAL6+)
  • FIPS 140-3 level 1
    • Certified to physical security level 3
  • 10-year longevity
  • SP800-193 compliant for protection, detection and recovery requirements
  • Flash memory with error correction code
  • Serial peripheral or I2C interface
  • Operating-temperature range: -40°C to 105°C

Applications

  • Gateways, access-points and network switches 
  • EV charging stations 
  • Medical equipment 
  • Connected city equipment 
  • Industrial control systems 
  • Factory automation 
  • Security equipment  
  • PCs and tablet computers 
  • Workstations  
  • Servers 

FTM Board Club

Sign up for access to exclusive development boards, an essential tool for many innovative design projects.

*Available to pre-qualified EMEA customers only.

Tags

Categories

Extra_FTMIssue62024_STMicroelectronics_ST33KTPM2X_TPM

Related Articles

Hirose Electric — CX Series Receptacles
Hirose Electric has introduced the CX series of surface-mount and through-hole USB Type-C® connectors...
Read More
STMicroelectronics — ISM330IS Motion Sensor
The ISM330IS motion sensor from STMicroelectronics combines a three-axis digital accelerometer and a...
Read More
STMicroelectronics — LSM6DSV16X IMU
The STMicroelectronics LSM6DSV16X IMU combines an accelerometer and gyroscope with a machine learning...
Read More

Subscribe to our newsletters

Subscribe to Future Electronics

Get access to the latest product information, technical analysis, design notes and more

Choose your region