Vendor: Intellectual Highway, Corp. Category: IPsec / TLS

SSL/TLS Offload Engine

Secure protocol communication by hardware Our SSL/TLS engine accelerates and offloads processing for encryption / decryption and …

Overview

Secure protocol communication by hardware

Our SSL/TLS engine accelerates and offloads processing for encryption / decryption and authentication in SSL / TLS by combining our TCP offload and crypt engine.

Since the record layer processing is completely hardware offloaded, the user application can overwhelmingly reduce the CPU load which only needs preparing the data to transfer securely.

In addition, by creating the SSL/TLS tunnel between the terminal and the host, the high performance and low latency VPN is possible.

Two types of IP are available, one for embedded devices and the other for servers.

HW takes over high-performance, low-latency secure communication and contributes to power consumption reduction

With PTU (TLS extension) integrated with the crypto engine, the data transmission process in SSL / TLS is completed with full hardware.
Even if a dedicated HW is used for encryption, memory transfer occurs before and after encryption in a normal system. This is because the TCP / IP protocol stack is separated (left figure).
However, with Intellectual Highway’s TLS-enhanced PTU, there is no extra memory transfer of encrypted data or data required for the TLS protocol (right figure). Therefore, high-performance, low-latency secure communication is achievable.

 

Block Diagram

Applications

  • Our SSL/TLS accelerators are software-integrated and can be applied to any applications to speed up processing and reduce CPU load.
  • For example, if your service uses OpenSSL, simply adding on an FPGA card written with our SSL/TLS accelerator to the server machine will improve performance of the service and the CPU power can be dedicated to the application without changing user applications.

Files

Note: some files may require an NDA depending on provider policy.

Specifications

Identity

Part Number
SSL/TLS Offload Engine
Vendor
Intellectual Highway, Corp.

Provider

Intellectual Highway, Corp.
HQ: Japan
Intellectual Highway has extensive expertise and extensive development experience in FPGAs, software, networks, security, computer vision, machine learning and more.

Learn more about IPsec / TLS IP core

Bringing IPsec into the Quantum Safe Era

Over the next five years, all security protocols and public key cryptography will undergo a comprehensive overhaul to ensure quantum safety. This represents the most significant change in these domains since the advent of public key cryptography.

How to design secure SoCs, Part V: Data Protection and Encryption

In today’s connected world, where data is a crucial asset in SoCs, Part V of our series explores how to protect and encrypt data, whether at rest, in transit, or in use building on our earlier blog posts of the series: Essential security features for digital designers, key management, secure boot, and runtime integrity.

Cryptography Does Not Equal Security

At Rambus, we often receive RFIs, RFPs and RFQs for security silicon IP cores to be used in our customer’s next semiconductor product. Such requests often contain a long shopping list of required cryptographic algorithms, their modes of operation, their key lengths or strengths and performance and sizing requirements.

Frequently asked questions about IPsec / TLS IP cores

What is SSL/TLS Offload Engine?

SSL/TLS Offload Engine is a IPsec / TLS IP core from Intellectual Highway, Corp. listed on Semi IP Hub.

How should engineers evaluate this IPsec / TLS?

Engineers should review the overview, key features, supported foundries and nodes, maturity, deliverables, and provider information before shortlisting this IPsec / TLS IP.

Can this semiconductor IP be compared with similar products?

Yes. Buyers can compare this product with similar semiconductor IP cores or IP families based on category, provider, process options, and structured technical specifications.

×
Semiconductor IP