6.3 Tamper resistant hardware SE implementation

The following tamper resistant hardware SE implementations are considered within the current release of the specification:

  • Implementation as Secure Elements in different form factors including:
    • UICC according to ETSI TS 102 221 [3]. In this case, multiple SE may be supported by means of multiple UICC ADFs (Application Directory File) and remotely managed accordingly, see ETSI TS 102 221 [3].
    • Other variants of it such as eSE according to GlobalPlatform Card Specification [5]. In this case, multiple SE may be implemented as multiple GlobalPlatform Security Domains and remotely managed accordingly.

As outlined in oneM2M TR-0008 [i.2], such implementations are recommended as countermeasures against key discovery and device cloning for devices that are physically exposed to potential attackers.