Friday, October 28, 2022

Secure App Stores

RSP (Remote SIM Provisioning) is an excellent mechanism for the delivery of sensitive data and that includes SIM apps resident within SIM profiles.

However, SIM/eUICC apps are still critically deprived of resources and... even strings... Even "large" eUICCs only have up to 1 MB of space (SGP.22 4.3).

This ETSI article may suggest that the eUICC could be resident within standard enclaves:

https://www.etsi.org/newsroom/press-releases/2134-2022-10-new-etsi-specification-eliminates-the-need-for-physical-sims

So could RSP also be used to deliver secure apps to standard enclaves?

And will SIM apps be able to take advantage of having a lot more resource, eg. resident within a Trustzone enclave?

Intel's SGX provides far more space, eg. 500MB and as high as multiple GBs, though as part of a server based Xeon chip. Could the eUICC be run in an Intel SGX enclave?




No comments:

Post a Comment