<?xml version="1.0" encoding="UTF-8" ?>
<?xml-stylesheet type="text/xsl" href="https://devzone.nordicsemi.com/cfs-file/__key/system/syndication/rss.xsl" media="screen"?><rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:wfw="http://wellformedweb.org/CommentAPI/" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>How to block the over-the-air DFU?</title><link>https://devzone.nordicsemi.com/f/nordic-q-a/121392/how-to-block-the-over-the-air-dfu</link><description>Hi everyone, 
 I use the ble-app-buttonless-dfu example to develop my application. 
 I make a mutual authentication to be sure the device is connected to the right mobile app. 
 In the used example, the OTA DFU is always available. 
 The main goal is</description><dc:language>en-US</dc:language><generator>Telligent Community 13</generator><lastBuildDate>Tue, 20 May 2025 06:22:51 GMT</lastBuildDate><atom:link rel="self" type="application/rss+xml" href="https://devzone.nordicsemi.com/f/nordic-q-a/121392/how-to-block-the-over-the-air-dfu" /><item><title>RE: How to block the over-the-air DFU?</title><link>https://devzone.nordicsemi.com/thread/536075?ContentTypeID=1</link><pubDate>Tue, 20 May 2025 06:22:51 GMT</pubDate><guid isPermaLink="false">137ad170-7792-4731-bb38-c0d22fbe4515:7125eefb-79dc-4cdf-8093-a581aba22cbc</guid><dc:creator>vonRollChristophe</dc:creator><description>&lt;p&gt;Hi,&lt;/p&gt;
&lt;p&gt;You&amp;#39;re right, it is your old nRF52SDK.&lt;/p&gt;
&lt;p&gt;Mutual authentication is a part of the procedure to recognize two communicating devices&amp;nbsp;for cybersecurity.&lt;/p&gt;
&lt;p&gt;Thanks for your answer. I will try your solution.&lt;/p&gt;
&lt;p&gt;Best regards&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item><item><title>RE: How to block the over-the-air DFU?</title><link>https://devzone.nordicsemi.com/thread/535302?ContentTypeID=1</link><pubDate>Wed, 14 May 2025 10:53:40 GMT</pubDate><guid isPermaLink="false">137ad170-7792-4731-bb38-c0d22fbe4515:96baae14-e995-4146-8071-ecd832db43c7</guid><dc:creator>Susheel Nuguru</dc:creator><description>&lt;p&gt;Hi, I am assuming that this is our older nRF5SDK related development.&amp;nbsp;&lt;/p&gt;
&lt;p&gt;I am not so sure what you mean by mutual authentication (probably a translate error?), but if you mean that you need pairing or bonding established before these two devices can start the OTA process, then there is no native support for it.&amp;nbsp;&lt;br /&gt;&lt;br /&gt;As far as I know, once you have called&amp;nbsp;ble_dfu_buttonless_init and returned will have registered the DFU service already.&amp;nbsp; You would have to split this init into two parts if you want to have authentication/trigger check in between.&amp;nbsp;I do not have an example to show you, but this is doable with some changes to the way you initialize the dfu and probably handling&amp;nbsp;BLE_GATTS_EVT_RW_AUTHORIZE_REQUEST a bit different and then re advertising the dfu service after you receive this Authorize request.&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item></channel></rss>