ST and PEmicro help simplify secure STM32 programming
Programming STM32 devices and managing device security should be straightforward from prototype to production.ST
For many years, ST has worked closely with PEmicro to support STM32 programming as well as secure life-cycle management for a wide range of devices across the STM32 portfolio.
This longstanding collaboration has helped deliver reliable, practical, and secure workflows for both development and production environments, using PEmicro's Multilink debugging probe and Cyclone production programmers.
What this means for developers
This collaboration helps developers move more smoothly through key steps:
- Program STM32 devices during development and production
- Configure option bytes
- Manage debug access
- Support secure provisioning
- Handle life-cycle transitions with RDP and debug authentication using password and certificate mechanisms
Over time, this work has also led to technical blogs, application notes, and practical guides that help teams use STM32 devices more effectively in real development and manufacturing contexts.
A closer look at STM32C5 security flows
The STM32C5 family introduces a secure product life-cycle model centered on secure boot and password-protected regression. PEmicro’s recent blog explains how its tools support the STM32C5 flow, including:
- OEMKEY provisioning in RDP0
- Transition to RDP2 for secure closure
- Regression from RDP2 back to RDP0 using the OEMKEY
For developers, this creates a clearer path to protect firmware, control debug access, and support secure product return or update scenarios.
Read the blog here: STMicroelectronics STM32C5 RDP Regression Guide
Support across STM32 families
The STM32C5 article is part of a broader series of STM32 security resources. PEmicro has also published content covering STM32 series that use RDP regression with a password-based security model:
PEmicro also supports more advanced security models on higher-performance STM32 series, including STM32H5 product lines:
- STM32H563, with TrustZone disabled: support for device life cycle and programming with password authentication
STMicroelectronics: Provisioning/Securing STM32H563 Devices with TrustZone Disabled (Password Authentication)
- STM32H563, with TrustZone enabled: support for device life cycle and programming with certificate authentication
STMicroelectronics: Provisioning/Securing STM32H563 Devices with TrustZone Enabled (Certificate Authentication)
- STM32H573: support for both password and certificate mechanisms on devices integrating the ST-iRoT root of trust
STMicroelectronics: Provisioning/Securing STM32H573 Devices with OBKeys (Certificate and Password Authentication)
The STM32H7 series is also supported, from OBKKey provisioning to full regression:
These resources show how ST continues to work with PEmicro across STM32 families as security features evolve.
Why this collaboration matters
For STM32 developers, this collaboration helps reduce friction between development, secure setup, and production programming, by providing:
- Simplified programming of STM32 devices
- Consistent security and life-cycle management workflows
- Reliable support for development and production use cases
- Practical documentation for secure device handling
- Scalable production programming solutions
The goal is simple: help teams program, secure, and manage STM32 devices with tools that fit both development and manufacturing needs.
What would make STM32 programming and life-cycle management easier for your team? Share your feedback in the comments.
First published on Sep 10, 2026
