<?xml version="1.0" encoding="UTF-8" ?>
<?xml-stylesheet type="text/xsl" href="https://devzone.nordicsemi.com/cfs-file/__key/system/syndication/rss.xsl" media="screen"?><rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:wfw="http://wellformedweb.org/CommentAPI/" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Security in BLE with no connection.</title><link>https://devzone.nordicsemi.com/f/nordic-q-a/39187/security-in-ble-with-no-connection</link><description>Hi, I am having a problem related to BLE security. 
 My application model is a nearby network with no connection using BLE. My plan is using advertisement channels to broadcast public information while use filtered scan response mechanism to deliver secure</description><dc:language>en-US</dc:language><generator>Telligent Community 13</generator><lastBuildDate>Fri, 05 Oct 2018 16:01:36 GMT</lastBuildDate><atom:link rel="self" type="application/rss+xml" href="https://devzone.nordicsemi.com/f/nordic-q-a/39187/security-in-ble-with-no-connection" /><item><title>RE: Security in BLE with no connection.</title><link>https://devzone.nordicsemi.com/thread/151876?ContentTypeID=1</link><pubDate>Fri, 05 Oct 2018 16:01:36 GMT</pubDate><guid isPermaLink="false">137ad170-7792-4731-bb38-c0d22fbe4515:3adc5d84-6ba1-4e0d-9ac8-0f9e7964efdc</guid><dc:creator>Marjeris Romero</dc:creator><description>&lt;p&gt;&lt;span&gt;Hi Jie, &lt;/span&gt;&lt;/p&gt;
&lt;p&gt;A whitelist will restricts which peers are allowed to connect to your device. To construct a &lt;span&gt;whitelist&lt;/span&gt;, you must provide a list of peer IDs. The &lt;span&gt;whitelist&lt;/span&gt; will contain the identity addresses + the IRKs of the specified peers. This whitelist can then be provided to the advertising module and be used during advertising, so the application specifically advertises to the devices that are on the &lt;span&gt;whitelist&lt;/span&gt;.&lt;/p&gt;
&lt;p&gt;But I am not sure what you mean with secured scan response. The content of a scan response is not encrypted. IKR is use for recognizing resolvable addresses, so if a device have bonded before and interchanged a IRK key you will be able to recognize the address again. &lt;/p&gt;
&lt;p&gt;Best Regards,&lt;/p&gt;
&lt;p&gt;Marjeris&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item></channel></rss>