%% You should probably cite draft-moran-suit-architecture instead of this I-D. @techreport{moran-fud-architecture-00, number = {draft-moran-fud-architecture-00}, type = {Internet-Draft}, institution = {Internet Engineering Task Force}, publisher = {Internet Engineering Task Force}, note = {Work in Progress}, url = {https://datatracker.ietf.org/doc/draft-moran-fud-architecture/00/}, author = {Brendan Moran and Milosch Meriac and Hannes Tschofenig}, title = {{A Firmware Update Architecture for Internet of Things Devices}}, pagetotal = 12, year = 2017, month = jul, day = 18, abstract = {Vulnerabilities with IoT devices have raised the need for a solid and secure firmware update mechanism that is also suitable for constrained devices. Incorporating such update mechanism to fix vulnerabilities, to update configuration settings as well as adding new functionality is recommended by security experts. This document specifies requires and an architecture for a firmware update mechanism aimed for Internet of Things (IoT) devices. The architecture is agnostic to the transport of the firmware images and associated meta-data. This version of the document assumes asymmetric cryptography and a public key infrastructure. Future versions may also describe a symmetric key approach for very constrained devices.}, }