Security Systems

From: BT-VS/MKP-XPT

Department: Product Management

Location/Date: Nuremberg, 14:27

Release Letter

Product Information

Products: H.264/H.265 Firmware for CPP14 Thermal camera

Version: 10.40.0095

This letter contains latest information about the above-mentioned firmware version.

1 General

This firmware release is a product launch release for the new device DINION thermal 8100i, based on the CPP14 platform. Changes since former firmware versions are marked blue.

2 Applicable products

3 Important notes

3.1 Two-factor authenticated firmware signature

The security of the signature of the firmware file has been strengthened by using a two-factor authentication process for signing the final released firmware file. The new signature protects from non-released versions being installed in production systems. As a result, pre-release (beta) versions, required sometimes in projects, need to have a special license installed prior to the firmware update. Requests for pre-release versions need to be handled via tech support tickets in order to allow tracking and require a concession signed by the customer.

3.2 "Originally manufactured" certificate

All cameras are prepared to receive a unique Bosch certificate during production, assigned and enrolled by Escrypt LRA. These certificates prove that every device is an original Bosch-manufactured and untampered unit. Escrypt is a Bosch-owned company, providing the Bosch certificate authority (CA). Enrollment of the certificates in production is asynchronous to this firmware release.

3.3 Secure Element (TPM)

All CPP14 devices incorporate a new secure crypto-microcontroller, which we call our Secure Element. "A Secure Element is a tamper-resistant platform capable of securely hosting applications and their confidential and cryptographic data (for example cryptographic keys) in accordance with the rules and security requirements set by well-identified trusted authorities."¹ In this specific case the requirements are defined in the Trusted Platform Module library specification defined by the Trusted Computing Group (TCG). As the Secure Element supports the main functionalities specified by TCG, the ones needed for an IoT device, it is often referred to as a “TPM”. Due to security reasons, the firmware or functionality of the secure crypto-microcontroller cannot be altered in the field. Thus, not all new security features become available on devices with older secure crypto-microcontroller hardware or firmware revisions.

3.4 Secure Boot Protection

All CPP14 devices are shipped with secure boot enabled, protecting the device from execution of unauthorized code. Even in the case that an attacker could circumvent all other security barriers, any malicious code would never become active due to secure boot hindering the camera to start with unauthorized code.

¹ https://globalplatform.org/wp-content/uploads/2018/05/Introduction-to-Secure-Element-15May2018.pdf, page 1

3.5 Open-Source Software

Bosch Security Systems is an advocate of integrating open-source software into its products. The use of open-source software is noted in the Service menu on the System Overview page of every camera's web interface. For general information regarding open-source software in Bosch Security Systems products, please visit http://www.boschsecurity.com/oss.

3.6 Backward compatibility and intermediate firmware update

With firmware constantly being developed, including adapting architectures, some firmware versions may introduce features, increase security, or introduce fixes, that do not allow backward compatibility. This may result, on one hand, in an increase of the minimum firmware version for cameras like it was required with firmware version 8.50, introducing a security fix, that does not allow to downgrade firmware below such a version. On the other hand, it may result in the need of an intermediate step to upgrade firmware, requiring a specific version to be installed first before upgrading to a newer version. This is the case with firmware version 9.0, which introduced a new file system and architecture that will allow us to introduce new features, like app support, while reducing the overall file size of firmware packages.

4 New Features

5 Changes

6 System Requirements

For configuration purposes:

Web Browsers:

For operation purposes:

7 Restrictions; Known Issues

7.1 User Interface

7.2 Imaging

7.3 Encoding

7.4 Security

7.5 Network

7.6 VCA

7.7 Recording

7.8 Export

7.9 Miscellaneous

PDF preview unavailable. Download the PDF instead.

Bosch Releaseletter CPP14-Thermal FW 10.40.0095 Skia/PDF m141 Google Apps Renderer

Related Documents

Preview Bosch CPP16 Firmware Release Letter - Version 10.40.0102
This release letter provides detailed information about the H.264/H.265 firmware version 10.40.0102 for Bosch CPP16 HD/UHD/MP cameras, including new features, changes, system requirements, and known issues.
Preview Bosch CPP13 Cameras Firmware Release Letter: H.264/H.265 Version 8.94.0026
This release letter provides essential information regarding the H.264/H.265 firmware update (version 8.94.0026) for Bosch CPP13 cameras. It details general information, applicable product models, important notes on security and system features, and a summary of changes and known issues.
Preview Bosch DINION thermal 8100i NBT-8700-F18QF: High-Accuracy Thermal Surveillance Camera
Explore the Bosch DINION thermal 8100i NBT-8700-F18QF, a robust bullet thermal camera for mission-critical applications. Features QVGA thermal imaging, IVA Pro Perimeter, long-distance detection, AI autocalibration, and rugged, cybersecure design for reliable perimeter intrusion detection in challenging environments.
Preview Bosch CPP7.3 HD/MP Cameras Firmware Release Letter v7.72.0008
This release letter provides detailed information about the firmware version 7.72.0008 for Bosch CPP7.3 HD/MP cameras, including general notes, applicable products, important security features, system requirements, and a comprehensive list of changes and fixes.
Preview Bosch H.264 Firmware Release Letter - Version 6.32.0929
This release letter provides detailed information on the Bosch H.264 combined firmware version 6.32.0929, covering supported products (CPP7, CPP6, CPP5, CPP4, CPP3, CPP-ENC), new features, changes, and known issues for Bosch security systems.
Preview Bosch CPP4 HD/MP Cameras Firmware Release Letter - Version 6.21.0008
This release letter provides detailed information about the H.264 firmware version 6.21.0008 for Bosch CPP4 HD/MP cameras, including general updates, applicable products, changes, system requirements, known issues, and previous revisions.
Preview Bosch DINION 4000 Quick Install Guide: Setup and Configuration
This guide provides essential information for the quick installation and setup of the Bosch DINION 4000 security camera, covering connections, safety precautions, and detailed menu configurations.
Preview Bosch NDE-5702-AL-GOV FLEXIDOME Outdoor 5100i IR 2MP HDR Security Camera Datasheet
Comprehensive datasheet for the Bosch NDE-5702-AL-GOV FLEXIDOME outdoor 5100i IR camera, detailing its 2MP resolution, High Dynamic Range (HDR), H.265 video compression, Intelligent Video Analytics Pro (IVA Pro), IP66 and IK10 ratings, and extensive technical specifications for professional surveillance applications.