📖 eUICC.tech ← All Stories 🏠 Home
Page 1 of 7
🏛️ CI Root 🏭 EUM 🔑 SM-DP 🦾 SM-SR 🤖 eUICC Robot ID ID

🪪 The Robot ID System

How ID Badges and Family Trees Keep M2M Secure

A story of grandparent badges, parent badges, child badges, and the trust chain that protects millions of robots

Page 2 of 7
Page 3 of 7
🛂 Guard Check badge! ? Stranger FAKE Who signed this?? ✅ Trace to CI

🪪 Robots Need ID Badges Too

Imagine a stranger walks up: "I'm the Commander: let me send orders to Robot #8721!" How do you know they're legit? You check their ID badge. Then you trace it up the chain to see who signed it. Every helper in SGP.02 carries a signed badge, and every badge traces back to one trusted source.

Page 4 of 7
🏛️ GRANDPARENT CI: Certificate Issuer "Master passport office stamp" 🏭 Parent: EUM Chip Builder 🔑 Parent: SM-DP Key Factory 🦾 Parent: SM-SR Commander 🤖 CHILD: eUICC Robot's own unique badge Level 1 Level 2 Level 3

🌳 The Family Tree: Three Levels of Trust

The Grandparent Badge (CI) is the passport office: its stamp is installed in every robot at birth. Parent Badges (EUM, SM-DP, SM-SR) are signed by the CI. Each robot gets a Child Badge signed by its Chip Builder (EUM). Three generations of trust, one unbroken chain!

Page 5 of 7
📜 X.509 Badge (Like a website cert) Used by: 🏛️ CI 🏭 EUM Servers understand this natively VS 💳 GP Badge (Compact TLV format) Used by: 🔑 SM-DP 🦾 SM-SR Fits in tiny chip brains! 🤖 The robot chip can only read GP badges!

📋 Two Different Badge Formats

Here's a tricky bit: the ID badges come in two formats! Servers (CI, EUM) use X.509: like website certificates. But the tiny robot chip can't read X.509! So Key Factories, Commanders, and robots use GlobalPlatform format: compact tags that fit in the chip's tiny brain.

Page 6 of 7
CI badge (trusted) 🔍 Trace back... Is badge signed by CI? ✅ YES! SM-DP REVOKED 🚫 WANTED 📡 Operator checks Robot doesn't check CRL : too much for a tiny chip!

🔍 Checking Badges Before Taking Orders

When the Key Factory says "I'm legit!", the robot checks: does this badge trace back to the CI? If yes: trusted! If a badge gets compromised, the Operator checks the WANTED list (CRL): not the tiny robot chip (too memory-hungry). This is the "informed decision" model.

Page 7 of 7
🏛️ CI ROOT EUM SMDP SMSR ROBOT 🔑 SK.ECASD Never leaves Trust chain 256-bit security through 2030!

The cryptography in SGP.02 uses 256-bit elliptic curves, AES-128 encryption, and SHA-256 hashing: chosen to stay secure through the year 2030. When a utility meter sealed in a basement needs to stay secure for 15 years, you plan ahead!

📚 Read the Next Story!

📻 Next: Secret Robot Messages →

📖 Back to All Stories