Terminology for SZTP

Terms

Term

Definition

SZTP

Secure Zero Touch Provisioning. It is a function that automatically and securely loads version files (such as the system software package, configuration files, and patch files) when an unconfigured device is powered on and started.

IDevID

Initial device identifier. It is the identity certificate of a device.

Bootstrapping Data

Includes the ownership voucher, owner certificate, and conveyed information.

Ownership Voucher

Is used to identify the owner of a device. It is signed by a device vendor and used to establish a chain of trust on the network in an unknown network environment.

Owner Certificate

Contains the identity certificate and intermediate certificate of the bootstrap server. It is used to verify the signature of the conveyed information.

Conveyed Information

Includes redirect information and onboarding information.

Redirect Information

Is used to redirect the device to another bootstrap server. The redirect information may contain a server list, which includes the host name (or IP address) of each server, the optional ports, and the trust anchor certificates.

Onboarding Information

Provides the paths for downloading version files and information such as the scripts to be run and the mode of processing configuration files.

Acronyms and Abbreviations

Acronym and Abbreviation

Full Name

SZTP

Secure Zero Touch Provisioning

DHCP

Dynamic Host Configuration Protocol

TLS

Transport Layer Security

HTTPS

HTTP over SSL

PNP

Plug and Play

Copyright © Huawei Technologies Co., Ltd.
Copyright © Huawei Technologies Co., Ltd.
< Previous topic