Overview
Configuration-over-Ethernet (COE) is a Layer 2 configuration protocol design by SoC-e to access remotely to FPGAs that implements SoC-e switching infrastructures. COE uses one of the Ethernet data lines of the switch and the typical use of COE is accessing the internal registers of the IPs for configuration and status reports purposes. This approach simplifies system design due to it is not necessary including specific configuration channel like MDIO or SPI. This solution has been widely implement on installations based son SoC-e modules like SMARToem.
In order to enable the use of this protocol in non-secure channels, SoC-e has relased a COE secure implementation named Configuration-over-Ethernet Secure (COEsec). COEsec has the same key benefits of the standard implementation, like CPU-less operation and small layout, but it ensures the security in the access to the remote device through encryption and authentication.
In order to provide the required information to secure the communications, a custom frame format has been developed. Thus, COEsec frames are standard Ethernet frames whose payload has been divided in several subfields that contain both cryptographic and configuration information.
The core of the IP is a cryptographic engine that is able to encrypt, decrypt and authenticate COE frames making use of the AES-GCM algorithm implemented on hardware. This cryptographic engine is an all in hardware solution that provides a great balance between performance and resources. Furthermore, this approach allows to minimize the latency at the same time that the efficiency is increased compared to other software based cryptographic solutions.
SoC-e HSR/PRP Switch and Managed Ethernet Switch IP Cores support COEsec apart from other configuration links (MDIO, AXI4, etc.).
Learn more about Ethernet IP core
Building on its High-Speed Ethernet controller IP family, Cadence provides ESUN-ready controller IP for next-generation AI scale-up networking.
This blog post explores how the team verified a 10BASE-T1S automotive ethernet subsystem using a Cadence tools-based multi-platform verification, which unifies simulation, emulation, and formal verification techniques.
Learn how ESUN enhances Ethernet for lossless, predictable AI scale-up networking—cutting overhead, reducing tail latency, and improving efficiency.
Ethernet has evolved significantly from 10 Mbps shared media to today’s multi-hundred gigabit high-speed links. One foundational feature that has enabled this scalability and ease of deployment is Auto-Negotiation (AN).
Ethernet was originally designed for high-speed data transfer and interoperability between devices. However, traditional Ethernet does not provide built-in mechanisms for securing data traffic, such as encryption or authenticity protection. This is where MACsec comes into the picture.
This blog examines what separates truly automotive-grade Ethernet IP from generic implementations across functional safety, time-sensitive networking, security, observability, lifecycle management, and the integration disciplines that only become visible once a program is deep into development.