Flasher Secure Server
Managing secure production infrastructures
The Flasher Secure Server (FSS) ensures secure programming with SEGGER Flasher Secure units in sensitive production areas by using encrypted communication via network for attack-safe firmware transfers.
Overview
The Flasher Secure Server (FSS) is a key component in secure production processes to protect intellectual property (IP). The FSS manages complex production processes at the contract manufacturer (CM) by authorizing each produced device, by keeping track of the projects, and by intervening in case of unusual events.
Located in a trusted environment, the Flasher Secure Server (FSS) serves as data processing and controlling entity between IP owner and CM during production processes. It authorizes every single programming attempt and updates all operational data (e.g. numbers of devices, serial numbers). It also provides an interface for Flasher Secure clients and a web interface for administration. Any communication over the network is secured via transport layer security (TLS) as well as additional security protocols.
Key features
- Full transparency of remote production
- CM administration & setup portal
- Automatic firmware updates to Flasher Secure clients
- Serial number management
- Counterfeit prevention
- Minimal overhead in programming time
Web configuration
The Flasher Secure Server (FSS) runs on Windows and Linux and can be accessed via an assigned URL. This makes it possible to easily configure Flasher Secure devices and manage projects using a browser of choice, with no need to install any additional software.
Project management
The Flasher Secure Server provides a centralized platform for administrating and keeping track of projects. These projects contain the firmware data, programmed devices data, and manufacturer configurations related to the project and can be accessed via web interface or processed via REST API.
Projects include how to handle reprogrammings, how many devices may be programmed and email notification settings. Additionally, manufacturer settings, firmware and the manufactured devices are stored in a project. Manufacturer settings include the access data for the Flasher Secure units used by the manufacturer. Once a Flasher Secure correctly authenticates itself with FSS it will be listed as known Flasher. The firmware is stored along with its configuration, to provide the complete setup to an authorized Flasher Secure.
User management
The Flasher Secure Server includes user management and user access management, allowing full oder limited access to the system. It is also possible to add specific manufacturers to selected projects and provides an overview about the programming status at each manufacturer.
The Flasher Secure Server offers the following options:
- Local user administration & management connected to a central database
- Decentralized user administration & management with access control based on multi-factor authentication (MFA)
- Centralized user administration & management including identity management within a corporate network using Active Directory (AD)
Device management
The control panel of the Flasher Secure Server lists all devices that are assigned to each project. These lists can be exported as plain text or CSV file. During production, Flasher Secure units will communicate the serial numbers and unque IDs of programmed devices enabling the IP owner to monitor which devices are ready to be sold and used.
It gives an overview of different parameters, e.g.:
- Running production number
- Serial number
- Unique device ID
- Programming cycles
- Most recent programming result
- Current programming status
Media gallery
Videos
May 2021 | 46:37 min
Flasher Secure — Webinar
Software
The Flasher Secure Server is delivered as the Flasher Secure Server Software Package that contains the installation data for the FSS.
System requirements
Operating systems
Operating system | Version |
---|---|
Windows | Microsoft Windows (x86/x64/Arm) |
Linux | Linux (x86/x64/Arm) |
Hardware
Hardware component | Item |
---|---|
CPU | 1 GHz |
Memory | 8 GB RAM |
Disk space | 32 GB [1] |
[1] Mainly depends on the number of projects and devices.
Licensing
The Flasher Secure Server (FSS) comes with a Single Server License that is intended to run on a specific server instance, providing access to one contract manufacturer.
There are also different optional licensing options available, e.g. for company-wide use, third parties, additional MCUS or CMs. Please contact us for detailed information.
Add-ons
Target Encrypted Link Package (TELP) | Flasher Secure Anti-Cloning Package |
---|---|
Protected communication right up to the target device using TELP based on communication secured by TLS (Transport Layer Security). | Device authentication for protection against cloning using algorithms from SEGGER’s digital signature suite emSecure. |
FAQ
Q: What security level can be achieved with Flasher Secure and Flasher Secure Server (FSS)?
A: The Flasher Secure Server (FSS) together with the SEGGER Flasher Secure allows authenticated production with IP protection and counterfeit prevention.
Q: What is the difference between Flasher Secure Control Server and Flasher Secure Server (FSS)?
A: There is none, both are the same. The SEGGER Flasher Control Server has been renamed to Flasher Secure Server (FSS).