EZ BSP

The Secure Foundation for Connected Devices

Ezurio's EZ BSP is more than a basic Linux board support package. It's our core Linux software offering that provides built-in security from design and manufacturing to field deployment through the entire product lifecycle. Only on Ezurio SOMs and SBCs. 

EZ-BSP-Icon.png

What is a BSP?

A BSP is the foundational code and tools that make software run on specific hardware. For a SOM, the BSP generates the operating system that boots and runs on the SOM and its carrier board.

2

SDK

Tools for app developers
  • Output of the EZ BSP build
  • Qt, C++, .NET, Python supported
  • Hands off cleanly to app teams
3

Linux OS

Built for the SOM + Carrier
  • Boots and runs on the SOM and its carrier board
  • Tailored to your hardware, production-ready
1

Linux BSP

Two Flavors
  • Yocto OR Buildroot build system
  • Configure during integration — expected and fully supported

How EZ BSP Goes Further

EZ BSP is open source — not proprietary, not closed. Built on Linux kernel, U-Boot, Yocto, and Buildroot — plus thousands of upstream tools and applications.

{ }

Open Source

Foundation is open source projects

  • Linux kernel, U-Boot, Yocto, Buildroot
  • Thousands of upstream tools and apps
  • Proprietary tools only when silicon vendors require them or no open source alternative exists
>

Faster Integration

Engineered to ship

  • Ezurio adds configurations and customizations
  • Get our SOMs running on your carrier board faster
  • Shorter path from prototype to production
S

Security by Design

Built in, not bolted on

  • Secure Boot, Secure Signing, Secure Update
  • Software Security Lifecycle Management
  • Security must be designed in from the start — cannot be retrofitted

Your build, your call: You always have the choice to follow Ezurio recommended changes or customizations or design your own. Support coverage is broadest when designs follow Ezurio recommended configuration — significant deviations may reduce the level of support we're able to offer.

Accelerate Development

A/B is the embedded-industry OTA standard​

Update tooling is built in — no low-level Linux or DIY update plumbing to figure out​

One image, QA-verified as a whole — higher assurance and less brittle than piecemeal updates​/p>

Powered by SWUpdate

Open-source OTA engine — no lock-in​​

Most common embedded-Linux engine for updates​​

Installs & verifies signed software images​​

Flexible enough to do delta updates if needed but not our default recommendation​

Integrates With Your Cloud/Server Update Manager

Works with many proprietary device-management systems​

SWUpdate has a native integration with the open-source server-side updater Hawkbit​

No proprietary cloud/server software lock-in​​

Where EZ BSP Fits — The Software Stack

Customer's Application Code Your product logic — rides on everything below
EZ BSP
EZ BSP Code - Security Capabilities Chain of Trust (Secure Boot · Signing · Mass Programming) · Security BSP Releases · FIPS 140-3
EZ BSP
EZ BSP Code - Over the Air (OTA) Update Foundation Device Side OTA Framework · Works with most Cloud or Server Side Device Management Systems
EZ BSP
EZ BSP Code - Foundational Hardware Support Device Trees · Ezurio Connectivity Stack · Customization for our Development Kits
Vendor BSP Code (NXP / TI / MediaTek) Forks mainline Linux · Drivers · Optimization for their SoCs
Mainline Linux Code — Yocto / Buildroot Standard open-source projects
Ezurio SOM Hardware NXP i.MX 9x / 8Mx · TI AM6x · MediaTek Genio
Key Outputs
  • Hardware Root of Trust Programming
  • Secure Image Programming
  • Device Side OTA Update Framework
  • At-Scale Manufacturing

Production-Grade Security

Goes beyond basic BSPs to deliver device security deployable at manufacturing scale. Ezurio has customers buying hundreds of thousands of securely programmed SOMs per year.

At-Scale Manufacturing

Secure key injection and mass programming at Ezurio facilities — no complex in-house infrastructure needed.

Long-Term Security

Regular LTS-based security BSP releases and multi-year software availability sustain device security long after launch — across 7–15 year product lifecycles.

No Lock-In

Built on open-source Linux generated from Yocto and Buildroot — industry-standard foundations customers’ teams already trust. 


Featured Product: Nitrogen95 SMARC

Our new Nitrogen95 SMARC family is powered by NXP’s i.MX 95 processor family, NXP’s PF09 PMIC and PF53 Regulators, our Sona Wi-Fi 6/6E and Bluetooth 5.3/5.4 wireless modules, LPDDR5 RAM, and eMMC storage. All supported by our EZ BSP. 

View Documentation

N959_6_SMARCwith NX611 - front connector removed_4.png
Chain of Trust icon

Chain of Trust

  • Device security framework using secure boot with hardware root of trust and secure device storage
  • Production-Grade Image Signing - Secure signing service for generating signed firmware and certificates, backed by AWS
  • Manufacturing Provisioning - Mass programming of hardware root of trust and secure image programming with optional provisioning of customer-specific application keys, certificates, and credentials
Security BSP Releases icon

Security BSP Releases

  • LTS Linux kernel, Yocto, and Buildroot releases out of our normal cycle to address CVEs
  • Ezurio QA re-tests the BSP/hardware combination to preserve features
  • Customer outsources the burden of retesting core BSP functionality
  • Yocto & Buildroot generate SBOMs for use in customer’s CVE scanner or each build system’s built in CVE scanner.
  • Supports EU CRA, EO 14028 & NTIA SBOM compliance
FIPS Cryptographic Modules icon

FIPS Cryptographic Modules

  • FIPS 140-3 Level 1 certified
  • Wi-Fi data-in-transit
  • TLS data-in-transit
  • Currently on 60 Series SOM
  • In design for select SMARC and OSM SOMs
  • Required for medical, government, defense
Loop

Ready to Get Started? 

Get in touch with our sales and engineering team to find the SOM that best meets your needs, powered by our comprehensive EZ BSP. 

Browse Ezurio SOMs

Contact Sales and Support