Secure-IC's Securyzr™ SM4-GCM Multi-Booster

Overview

The SM4-GCM Multi-Booster crypto engine is a scalable implementation of the SM4-GCM algorithm compliant with the standard GBT.32907-2016 published by the Organization of State Commercial Administration of China. The unique architecture enables high throughput while maintaining an optimal resource usage.

The SM4-GCM (Galois Counter Mode) is an authenticated encryption algorithm which combines the SM4 counter mode for encryption and the Galois field multiplier for the authentication. The encryption and authentication occur in parallel to enable high throughput.

The GCM cipher mode is well suited to secure high speed communication channels and is widely used in different standards.

The unique architecture enables high level of flexibility. The throughput and features requested will be taken into account in order to select the most optimal configuration. It is easily portable to ASIC and FPGA technologies and addresses a wide range of networking applications where security is a concern.

The SM4-GCM Multi-Booster crypto engine includes key management and context switching. The optimized context switching enables handling of multiple virtual streams of data within a single core. The key can be selected for each packet independently. The advanced pipelined architecture of the SM4-GCM core enables small data packets to be processed without penalty on performance.

For other SM4 solutions, please see dedicated product sheets: SM4 Standard Crypto Engine (SCZ_IP_BA419) and SM4-XTS Multi-Booster (SCZ_IP_BA425).

Key Features

  • ASIC & FPGA
  • High throughput:
    • ASIC: 2Tbps
    • FPGA: 100 Gbps
  • Guaranteed performance with small packets
  • Supports AES cipher
  • OSCCA compliant
  • Scalable solution
  • Can be provided with AXI DMA & software
  • Masking with excellent protection against SPA & DPA
  • Context switching & management
  • Low latency
  • Best trade-off between area and performance
  • Straight forward integration with simple FIFO interfaces

Benefits

  • Scalable and flexible SM4-GCM Engine
  • The SM4-GCM Multi-Booster crypto engine includes key management and context switching. The optimized context switching enables handling of multiple virtual streams of data within a single core. The key can be selected for each packet independently. The advanced pipelined architecture of the SM4-GCM core enables small data packets to be processed without penalty on performance.

Block Diagram

Secure-IC's Securyzr™ SM4-GCM Multi-Booster Block Diagram

Applications

  • MACsec/IPsec/TLS
  • Optical transport
  • Broadband access
  • WPA3 support

Deliverables

  • Netlist or RTL
  • Scripts for synthesis
  • Self-checking TestBench based on FIPS vectors
  • Datasheet
  • Integration guide

Technical Specifications

Maturity
Silicon proven
Availability
Now
×
Semiconductor IP