<?xml version="1.0" encoding="UTF-8" ?>
<?xml-stylesheet type="text/xsl" href="https://devzone.nordicsemi.com/cfs-file/__key/system/syndication/rss.xsl" media="screen"?><rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:wfw="http://wellformedweb.org/CommentAPI/" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>PSA Initial attestation token signature verification</title><link>https://devzone.nordicsemi.com/f/nordic-q-a/100560/psa-initial-attestation-token-signature-verification</link><description>Hi 
 
 We have received Initial Attestation report from device using psa_initial_attest_get_token and we want to verify signature. 
 Today we don&amp;#39;t know how signature is calculated inside psa_initial_attest_get_token api, signing key that we set is of</description><dc:language>en-US</dc:language><generator>Telligent Community 13</generator><lastBuildDate>Fri, 09 Jun 2023 08:01:46 GMT</lastBuildDate><atom:link rel="self" type="application/rss+xml" href="https://devzone.nordicsemi.com/f/nordic-q-a/100560/psa-initial-attestation-token-signature-verification" /><item><title>RE: PSA Initial attestation token signature verification</title><link>https://devzone.nordicsemi.com/thread/430136?ContentTypeID=1</link><pubDate>Fri, 09 Jun 2023 08:01:46 GMT</pubDate><guid isPermaLink="false">137ad170-7792-4731-bb38-c0d22fbe4515:2c8df8a3-3ed9-487c-ac91-a1354a700e68</guid><dc:creator>Hieu</dc:creator><description>&lt;p&gt;Hi Dilip,&lt;/p&gt;
&lt;p&gt;There is a tool for validating the Initial Attestation Token, provided by the&amp;nbsp;Trusted Firmware org.&lt;/p&gt;
&lt;p&gt;You can find its source code it here:&amp;nbsp;&lt;a href="https://git.trustedfirmware.org/TF-M/tf-m-tools.git/tree/iat-verifier?h=release%2F1.8.x"&gt;https://git.trustedfirmware.org/TF-M/tf-m-tools.git/tree/iat-verifier?h=release%2F1.8.x&lt;/a&gt;.&lt;/p&gt;
&lt;p&gt;From the source code, you will also be able to investigate the compilation and decompilation of a token.&lt;/p&gt;
&lt;p&gt;Hieu&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item><item><title>RE: PSA Initial attestation token signature verification</title><link>https://devzone.nordicsemi.com/thread/429927?ContentTypeID=1</link><pubDate>Thu, 08 Jun 2023 09:17:59 GMT</pubDate><guid isPermaLink="false">137ad170-7792-4731-bb38-c0d22fbe4515:9a5bc242-5ebc-4f35-baeb-a6cd6803c70d</guid><dc:creator>dilip agrawal</dc:creator><description>&lt;p&gt;yes Hieu&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item><item><title>RE: PSA Initial attestation token signature verification</title><link>https://devzone.nordicsemi.com/thread/429923?ContentTypeID=1</link><pubDate>Thu, 08 Jun 2023 09:10:28 GMT</pubDate><guid isPermaLink="false">137ad170-7792-4731-bb38-c0d22fbe4515:06b14517-2e62-4326-91a9-71f808720c3a</guid><dc:creator>Hieu</dc:creator><description>&lt;p&gt;Hi Dilip,&lt;/p&gt;
&lt;p&gt;If I understand correctly, the reason you want to know how the signature is calculated is to perform a validation, right?&lt;/p&gt;
&lt;p&gt;I will investigate this and get back to you soon.&lt;/p&gt;
&lt;p&gt;Regards,&lt;/p&gt;
&lt;p&gt;Hieu&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item></channel></rss>