{"id":16334,"date":"2015-08-25T00:00:08","date_gmt":"2015-08-25T00:00:08","guid":{"rendered":"https:\/\/www.rambus.com\/?p=16334"},"modified":"2019-03-15T09:13:12","modified_gmt":"2019-03-15T17:13:12","slug":"use-cases-debug-access-control","status":"publish","type":"post","link":"https:\/\/www.rambus.com\/use-cases-debug-access-control\/","title":{"rendered":"Use Cases: Debug Access Control"},"content":{"rendered":"<p>When chips are shipped into the field, it is required that test features, needed to test the chip during manufacturing, must be securely disabled (see Figure 1 below). If left enabled in the field, these test and debug ports could provide a back door into the device that could be used maliciously to read sensitive keys and other sensitive data from the device. These test features must be disabled when the part ships into the field, but must also be securely enabled later when defective parts are returned through the RMA (Return Merchandise Authorization) channel for failure analysis.<\/p>\n<p>To prevent misuse of debug modes (e.g. BIST, scan, JTAG), the CryptoManager Root of Trust can be connected to the debug mode enable, which defaults to an off (safe) setting. The Root of Trust can selectively enable debug features as needed, for example:<\/p>\n<ul>\n<li>At specified manufacturing stages (wafer test, package test), necessary debug capabilities can be temporarily enabled<\/li>\n<li>In the case of a defective chip or device, debug capability can be re-enabled for Return Merchandise Authorization (RMA) and Failure Analysis (FA)<\/li>\n<\/ul>\n<p>Once the debug is completed, the Root of Trust will disable the debug mode. The CryptoManager solution provides a method for chip and device companies to authenticate the device and authorize the provisioning of the debug enable\/disable operation for each device.<\/p>\n<p><a href=\"https:\/\/www.rambus.com\/wp-content\/uploads\/2015\/08\/Debug-Access-Control-Use-Case.pdf\" target=\"_blank\" rel=\"noopener\"><i class=\"fa fa-download\"> <\/i> Download &#8220;Use Cases: Debug Access Control&#8221;<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>When chips are shipped into the field, it is required that test features, needed to test the chip during manufacturing, must be securely disabled (see Figure 1 below). If left enabled in the field, these test and debug ports could provide a back door into the device that could be used maliciously to read sensitive [&hellip;]<\/p>\n","protected":false},"author":6,"featured_media":0,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_genesis_hide_title":false,"_genesis_hide_breadcrumbs":false,"_genesis_hide_singular_image":false,"_genesis_hide_footer_widgets":false,"_genesis_custom_body_class":"","_genesis_custom_post_class":"","_genesis_layout":"","footnotes":"","_links_to":"","_links_to_target":""},"categories":[578,466,554,577,547],"tags":[],"class_list":{"0":"post-16334","1":"post","2":"type-post","3":"status-publish","4":"format-standard","6":"category-infrastructure-cryptomanager-platform-security-papers","7":"category-papers","8":"category-cryptomanager-platform-security-papers","9":"category-security-engine-cryptomanager-platform-security-papers","10":"category-security-papers","11":"entry"},"yoast_head":"<!-- This site is optimized with the Yoast SEO Premium plugin v26.9 (Yoast SEO v26.9) - https:\/\/yoast.com\/product\/yoast-seo-premium-wordpress\/ -->\n<title>CryptoManager Use Cases: Debug Access Control - Rambus<\/title>\n<meta name=\"description\" content=\"The CryptoManager solution provides a method for chip and device companies to authenticate the device and authorize the provisioning of the debug enable\/disable operation for each device.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.rambus.com\/use-cases-debug-access-control\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Use Cases: Debug Access Control\" \/>\n<meta property=\"og:description\" content=\"When chips are shipped into the field, it is required that test features, needed to test the chip during manufacturing, must be securely disabled (see\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.rambus.com\/use-cases-debug-access-control\/\" \/>\n<meta property=\"og:site_name\" content=\"Rambus\" \/>\n<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/RambusInc\" \/>\n<meta property=\"article:published_time\" content=\"2015-08-25T00:00:08+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2019-03-15T17:13:12+00:00\" \/>\n<meta name=\"author\" content=\"fongj@rambus.com\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:creator\" content=\"@rambusinc\" \/>\n<meta name=\"twitter:site\" content=\"@rambusinc\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\/\/www.rambus.com\/use-cases-debug-access-control\/#article\",\"isPartOf\":{\"@id\":\"https:\/\/www.rambus.com\/use-cases-debug-access-control\/\"},\"author\":{\"name\":\"fongj@rambus.com\",\"@id\":\"https:\/\/www.rambus.com\/#\/schema\/person\/37e2e7e0a04304c805d567b056b6282e\"},\"headline\":\"Use Cases: Debug Access Control\",\"datePublished\":\"2015-08-25T00:00:08+00:00\",\"dateModified\":\"2019-03-15T17:13:12+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\/\/www.rambus.com\/use-cases-debug-access-control\/\"},\"wordCount\":232,\"publisher\":{\"@id\":\"https:\/\/www.rambus.com\/#organization\"},\"articleSection\":[\"Infrastructure\",\"Papers\",\"Provisioning &amp; Key Management\",\"Security Engine\",\"Security IP\"],\"inLanguage\":\"en-US\"},{\"@type\":\"WebPage\",\"@id\":\"https:\/\/www.rambus.com\/use-cases-debug-access-control\/\",\"url\":\"https:\/\/www.rambus.com\/use-cases-debug-access-control\/\",\"name\":\"CryptoManager Use Cases: Debug Access Control - Rambus\",\"isPartOf\":{\"@id\":\"https:\/\/www.rambus.com\/#website\"},\"datePublished\":\"2015-08-25T00:00:08+00:00\",\"dateModified\":\"2019-03-15T17:13:12+00:00\",\"description\":\"The CryptoManager solution provides a method for chip and device companies to authenticate the device and authorize the provisioning of the debug enable\/disable operation for each device.\",\"breadcrumb\":{\"@id\":\"https:\/\/www.rambus.com\/use-cases-debug-access-control\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/www.rambus.com\/use-cases-debug-access-control\/\"]}]},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/www.rambus.com\/use-cases-debug-access-control\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\/\/www.rambus.com\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Papers\",\"item\":\"https:\/\/www.rambus.com\/papers\/\"},{\"@type\":\"ListItem\",\"position\":3,\"name\":\"Security IP\",\"item\":\"https:\/\/www.rambus.com\/papers\/security-papers\/\"},{\"@type\":\"ListItem\",\"position\":4,\"name\":\"Provisioning &amp; Key Management\",\"item\":\"https:\/\/www.rambus.com\/papers\/security-papers\/cryptomanager-platform-security-papers\/\"},{\"@type\":\"ListItem\",\"position\":5,\"name\":\"Infrastructure\",\"item\":\"https:\/\/www.rambus.com\/papers\/security-papers\/cryptomanager-platform-security-papers\/infrastructure-cryptomanager-platform-security-papers\/\"},{\"@type\":\"ListItem\",\"position\":6,\"name\":\"Use Cases: Debug Access Control\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/www.rambus.com\/#website\",\"url\":\"https:\/\/www.rambus.com\/\",\"name\":\"Rambus\",\"description\":\"At Rambus, we create cutting-edge semiconductor and IP products, providing industry-leading chips and silicon IP to make data faster and safer.\",\"publisher\":{\"@id\":\"https:\/\/www.rambus.com\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/www.rambus.com\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Organization\",\"@id\":\"https:\/\/www.rambus.com\/#organization\",\"name\":\"Rambus\",\"url\":\"https:\/\/www.rambus.com\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/www.rambus.com\/#\/schema\/logo\/image\/\",\"url\":\"https:\/\/www.rambus.com\/wp-content\/uploads\/2025\/09\/Rambus_Logo.png\",\"contentUrl\":\"https:\/\/www.rambus.com\/wp-content\/uploads\/2025\/09\/Rambus_Logo.png\",\"width\":200,\"height\":62,\"caption\":\"Rambus\"},\"image\":{\"@id\":\"https:\/\/www.rambus.com\/#\/schema\/logo\/image\/\"},\"sameAs\":[\"https:\/\/www.facebook.com\/RambusInc\",\"https:\/\/x.com\/rambusinc\",\"https:\/\/www.linkedin.com\/company\/rambus\",\"https:\/\/www.youtube.com\/user\/RambusWeb\"],\"description\":\"Rambus is a provider of industry-leading chips and silicon IP.\",\"email\":\"ebiz@rambus.com\",\"telephone\":\"+1-408-462-8000\",\"legalName\":\"Rambus Inc.\",\"numberOfEmployees\":{\"@type\":\"QuantitativeValue\",\"minValue\":\"501\",\"maxValue\":\"1000\"}},{\"@type\":\"Person\",\"@id\":\"https:\/\/www.rambus.com\/#\/schema\/person\/37e2e7e0a04304c805d567b056b6282e\",\"name\":\"fongj@rambus.com\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/www.rambus.com\/#\/schema\/person\/image\/\",\"url\":\"https:\/\/secure.gravatar.com\/avatar\/eef6b189dc8119b048e438b0632a5939d30dd389395900b997b809f52cb059db?s=96&d=blank&r=g\",\"contentUrl\":\"https:\/\/secure.gravatar.com\/avatar\/eef6b189dc8119b048e438b0632a5939d30dd389395900b997b809f52cb059db?s=96&d=blank&r=g\",\"caption\":\"fongj@rambus.com\"},\"url\":\"https:\/\/www.rambus.com\/author\/fongjrambus-com\/\"}]}<\/script>\n<!-- \/ Yoast SEO Premium plugin. -->","yoast_head_json":{"title":"CryptoManager Use Cases: Debug Access Control - Rambus","description":"The CryptoManager solution provides a method for chip and device companies to authenticate the device and authorize the provisioning of the debug enable\/disable operation for each device.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.rambus.com\/use-cases-debug-access-control\/","og_locale":"en_US","og_type":"article","og_title":"Use Cases: Debug Access Control","og_description":"When chips are shipped into the field, it is required that test features, needed to test the chip during manufacturing, must be securely disabled (see","og_url":"https:\/\/www.rambus.com\/use-cases-debug-access-control\/","og_site_name":"Rambus","article_publisher":"https:\/\/www.facebook.com\/RambusInc","article_published_time":"2015-08-25T00:00:08+00:00","article_modified_time":"2019-03-15T17:13:12+00:00","author":"fongj@rambus.com","twitter_card":"summary_large_image","twitter_creator":"@rambusinc","twitter_site":"@rambusinc","schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/www.rambus.com\/use-cases-debug-access-control\/#article","isPartOf":{"@id":"https:\/\/www.rambus.com\/use-cases-debug-access-control\/"},"author":{"name":"fongj@rambus.com","@id":"https:\/\/www.rambus.com\/#\/schema\/person\/37e2e7e0a04304c805d567b056b6282e"},"headline":"Use Cases: Debug Access Control","datePublished":"2015-08-25T00:00:08+00:00","dateModified":"2019-03-15T17:13:12+00:00","mainEntityOfPage":{"@id":"https:\/\/www.rambus.com\/use-cases-debug-access-control\/"},"wordCount":232,"publisher":{"@id":"https:\/\/www.rambus.com\/#organization"},"articleSection":["Infrastructure","Papers","Provisioning &amp; Key Management","Security Engine","Security IP"],"inLanguage":"en-US"},{"@type":"WebPage","@id":"https:\/\/www.rambus.com\/use-cases-debug-access-control\/","url":"https:\/\/www.rambus.com\/use-cases-debug-access-control\/","name":"CryptoManager Use Cases: Debug Access Control - Rambus","isPartOf":{"@id":"https:\/\/www.rambus.com\/#website"},"datePublished":"2015-08-25T00:00:08+00:00","dateModified":"2019-03-15T17:13:12+00:00","description":"The CryptoManager solution provides a method for chip and device companies to authenticate the device and authorize the provisioning of the debug enable\/disable operation for each device.","breadcrumb":{"@id":"https:\/\/www.rambus.com\/use-cases-debug-access-control\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.rambus.com\/use-cases-debug-access-control\/"]}]},{"@type":"BreadcrumbList","@id":"https:\/\/www.rambus.com\/use-cases-debug-access-control\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/www.rambus.com\/"},{"@type":"ListItem","position":2,"name":"Papers","item":"https:\/\/www.rambus.com\/papers\/"},{"@type":"ListItem","position":3,"name":"Security IP","item":"https:\/\/www.rambus.com\/papers\/security-papers\/"},{"@type":"ListItem","position":4,"name":"Provisioning &amp; Key Management","item":"https:\/\/www.rambus.com\/papers\/security-papers\/cryptomanager-platform-security-papers\/"},{"@type":"ListItem","position":5,"name":"Infrastructure","item":"https:\/\/www.rambus.com\/papers\/security-papers\/cryptomanager-platform-security-papers\/infrastructure-cryptomanager-platform-security-papers\/"},{"@type":"ListItem","position":6,"name":"Use Cases: Debug Access Control"}]},{"@type":"WebSite","@id":"https:\/\/www.rambus.com\/#website","url":"https:\/\/www.rambus.com\/","name":"Rambus","description":"At Rambus, we create cutting-edge semiconductor and IP products, providing industry-leading chips and silicon IP to make data faster and safer.","publisher":{"@id":"https:\/\/www.rambus.com\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.rambus.com\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/www.rambus.com\/#organization","name":"Rambus","url":"https:\/\/www.rambus.com\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.rambus.com\/#\/schema\/logo\/image\/","url":"https:\/\/www.rambus.com\/wp-content\/uploads\/2025\/09\/Rambus_Logo.png","contentUrl":"https:\/\/www.rambus.com\/wp-content\/uploads\/2025\/09\/Rambus_Logo.png","width":200,"height":62,"caption":"Rambus"},"image":{"@id":"https:\/\/www.rambus.com\/#\/schema\/logo\/image\/"},"sameAs":["https:\/\/www.facebook.com\/RambusInc","https:\/\/x.com\/rambusinc","https:\/\/www.linkedin.com\/company\/rambus","https:\/\/www.youtube.com\/user\/RambusWeb"],"description":"Rambus is a provider of industry-leading chips and silicon IP.","email":"ebiz@rambus.com","telephone":"+1-408-462-8000","legalName":"Rambus Inc.","numberOfEmployees":{"@type":"QuantitativeValue","minValue":"501","maxValue":"1000"}},{"@type":"Person","@id":"https:\/\/www.rambus.com\/#\/schema\/person\/37e2e7e0a04304c805d567b056b6282e","name":"fongj@rambus.com","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.rambus.com\/#\/schema\/person\/image\/","url":"https:\/\/secure.gravatar.com\/avatar\/eef6b189dc8119b048e438b0632a5939d30dd389395900b997b809f52cb059db?s=96&d=blank&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/eef6b189dc8119b048e438b0632a5939d30dd389395900b997b809f52cb059db?s=96&d=blank&r=g","caption":"fongj@rambus.com"},"url":"https:\/\/www.rambus.com\/author\/fongjrambus-com\/"}]}},"_links":{"self":[{"href":"https:\/\/www.rambus.com\/wp-json\/wp\/v2\/posts\/16334","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.rambus.com\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.rambus.com\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.rambus.com\/wp-json\/wp\/v2\/users\/6"}],"replies":[{"embeddable":true,"href":"https:\/\/www.rambus.com\/wp-json\/wp\/v2\/comments?post=16334"}],"version-history":[{"count":0,"href":"https:\/\/www.rambus.com\/wp-json\/wp\/v2\/posts\/16334\/revisions"}],"wp:attachment":[{"href":"https:\/\/www.rambus.com\/wp-json\/wp\/v2\/media?parent=16334"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.rambus.com\/wp-json\/wp\/v2\/categories?post=16334"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.rambus.com\/wp-json\/wp\/v2\/tags?post=16334"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}