Azure-docs: Can we use X.509 instead of TPM

Created on 4 Jul 2018  Â·  7Comments  Â·  Source: MicrosoftDocs/azure-docs

[Enter feedback here]

1) We are having some questions on Zero touch provisioning for Edge SDK, will DPS work at Gateway level or it can go all the way till leaf nodes. Hope we can still use X.509 certificates instead of TPM.
2) We would need more information/links on creating modules of Python and C language in Gateway, We have already worked with .Net modules.


Document Details

⚠ Do not edit this section. It is required for docs.microsoft.com ➟ GitHub issue linking.

cxp in-progress iot-edgsvc product-question triaged

Most helpful comment

Can you give an estimated time or release date about X.509 certification support for Azure IOT Edge?

All 7 comments

@ampac28 thank you for your feedback!

We would need more information/links on creating modules of Python and C language in Gateway, We have already worked with .Net modules.

Please take a look at this doc:

"When writing a module, you can simply use the Azure IoT Device SDK to connect to the IoT Edge hub and use the above functionality as you would when using IoT Hub with a device application, the only difference being that, from your application back-end, you have to refer to the module identity instead of the device identity."

We are having some questions on Zero touch provisioning for Edge SDK, will DPS work at Gateway level or it can go all the way till leaf nodes. Hope we can still use X.509 certificates instead of TPM.

This will require some deeper analysis in regards to your specific scenario. Can you please file a support request @https://aka.ms/azsupt? If you do not have access to a support plan, please reach out @ [email protected] with a link to this Doc/Issue as well as your subscription ID and we can help get the support ticket opened for this issue.

@nberdy can you add some info on this topic for the records?

Thank you

Since we have not heard back from you we will now proceed to close this thread. If there are further questions regarding this matter, please tag me in your reply. We will gladly continue the discussion and we will reopen the issue.

DPS works at the edge gateway level today. Edge doesn't yet support X.509 certificates but that work is planned, and when that support goes live in Edge you will also be able to provision Edge devices via DPS using X.509 certs.

Can you give an estimated time or release date about X.509 certification support for Azure IOT Edge?

Hi, was this functionality ever added?

@toddgauntgs No, X.509 support hasn't been added to IoT Edge yet. There is a request on the IoT Edge feedback forum that you can upvote to show your interest in the feature: https://feedback.azure.com/forums/907045-azure-iot-edge/suggestions/34812739-support-x-509-certificates-in-iot-edge-for-raspbia

@kgremban Thanks for the follow-up. Good to know, definitely interested.

Was this page helpful?
0 / 5 - 0 ratings

Related issues

varma31 picture varma31  Â·  3Comments

monteledwards picture monteledwards  Â·  3Comments

JeffLoo-ong picture JeffLoo-ong  Â·  3Comments

DeepPuddles picture DeepPuddles  Â·  3Comments

Agazoth picture Agazoth  Â·  3Comments