Secure software updates for the Internet of Things

Exploring constraints and options for secure updates

July 2018



We present a proposal for an open source toolkit for running a private certificate authority and minimal subset of the Transport Layer Security protocol.

As Internet of Things (IoT) devices continue to gain popularity in our homes and communities, we believe it is critical that they can be controlled safely and that the data they hold can be trusted.

That's why we've been interviewing IoT manufacturers to understand what can be done. This technical report and its recommendations have been made based on that research.