6.3 Tamper resistant hardware SE implementation
The following tamper resistant hardware SE implementations are considered within the current release of the specification:
- Implementation as Secure Elements in different form factors including:
- UICC according to ETSI TS 102 221 [3]. In this case, multiple SE may be supported by means of multiple UICC ADFs (Application Directory File) and remotely managed accordingly, see ETSI TS 102 221 [3].
- Other variants of it such as eSE according to GlobalPlatform Card Specification [5]. In this case, multiple SE may be implemented as multiple GlobalPlatform Security Domains and remotely managed accordingly.
As outlined in oneM2M TR-0008 [i.2], such implementations are recommended as countermeasures against key discovery and device cloning for devices that are physically exposed to potential attackers.