Vendor: Xiphera Ltd Category: Public Key

NIST P-256/P-384 ECDH+ECDSA - Compact ECC IP Cores supporting ECDH and ECDSA on NIST P-256/P-384

XIP41x3C are a family of compact Intellectual Property (IP) cores implementing Elliptic Curve Diffie-Hellman (ECDH) and Elliptic …

Overview

XIP41x3C are a family of compact Intellectual Property (IP) cores implementing Elliptic Curve Diffie-Hellman (ECDH) and Elliptic Curve Digital Signature Algorithm (ECDSA) on NIST prime curves [2]. ECDH and ECDSA on NIST prime curves are widely used in various cryptographic protocols and systems.

The XIP41x3C family currently includes two IP cores:

  • XIP4123C for ECDH and ECDSA on the NIST P-256 elliptic curve and
  • XIP4133C for ECDH and ECDSA on the NIST P-384 elliptic curve.

These two curves are the most commonly used NIST curves today. XIP41x3C has been designed for easy integration with FPGA- and ASIC-based designs in a vendor-agnostic design methodology, and the functionality of XIP41x3C does not rely on any FPGA manufacturer-specific features

Functionality

XIP41x3C can be used for elliptic curve key generation, computation of Diffie-Hellman shared secrets as well as for ECDSA signature generation and verification. Hence, they are very versatile IP cores that can be used in a variety of cryptographic protocols and systems. The NIST prime curves are arguably still the most used elliptic curves and it is common for practical systems using ECC to support P-256 and/or P-384.

The main optimization objective for XIP41x3C has been on reducing the resource requirements and XIP41x3C require only very few resources considering the complexity of the operations that they support. They also include various security checks for the input values that prevent acci dental misuses that could compromise the security of the cryptosystem. These include validations that the input points are in fact a valid point on the curve and in-built prevention of accidential misuse of values that should be used only once (ECDSA nonces). XIP41x3C also include protections against side-channel attacks, the most important of which is the fully constant-time operation of all operations that use secret values.

XIP41x3C implements the main elliptic curve operations. XIP41x3C requires an external random number generator (for example, XIP8001B) and ECDSA also requires an external hash function.

Key features

  • Minimal Resource Requirements: XIP41x3Crequire for example 1119 LUTs in AMDSpartan 7® and use only 1-2 multipliers/DSP blocks and 1-3 internal memory block in a typical FPGA implementation.
  • Secure Architecture: The execution time of XIP41x3C is independent of the secret val ues and, consequently, provides full protection against timing-based side-channel attacks. Additionally, the pattern of operations during computations is independent of the secrets. XIP41x3C have two interfaces which can be used for separating access to security-critical values.
  • Standard Compliance: XIP41x3C are compliant with FIPS 186-5 [2] and SP 800-56A [1]. XIP41x3C can be used as a part of numerous public-key systems and protocols including IKEv2 [4, 6, 3] and TLS 1.3 (RFC 8446) [5].
  • Easy Integration: The 16-bit interface of XIP41x3C supports easy integration to various systems.

Block Diagram

Benefits

  • Fully digital design
  • Portable to any ASIC or FPGA technology
  • Fully standard compliant
  • Easy to integrate
  • Several bus interfaces available
  • IP core designed in-house at Xiphera
  • Technical support by the original designers and cryptographic experts
  • CAVP validated

Applications

  • XIP41x3C have several applications, as ECC on NIST prime curves are popular asymmetric cryptography schemes that are used in a number of standardized communications protocols, including IPSEC, MACSEC and TLS (Transport Layer Security) versions 1.2 and 1.3.
  • XIP41x3C can also be used to offload microcontroller / -processor based designs, if a software-based implementation of P-256/P-384 arithmetic is too slow.

What’s Included?

  • XIP41x3C can be shipped in a number of formats, including netlist, source code, or encrypted source code.
  • Additionally, synthesis scripts, a comprehensive testbench, and a detailed datasheet including an integration guide are included.

Specifications

Identity

Part Number
XIP41X3C
Vendor
Xiphera Ltd
Type
Silicon IP

Security

Crypto Algorithm
ECDSA

Files

Note: some files may require an NDA depending on provider policy.

Provider

HQ: Finland

Learn more about Public Key IP core

CAVP-Validated Post-Quantum Cryptography

Xiphera’s xQlave® Post-Quantum Cryptography product family provides cryptographic protection designed specifically for the quantum era. Our ML-KEM and ML-DSA implementations are validated under the NIST CAVP program, ensuring they follow NIST standards and operate correctly in real hardware.

Why Post-Quantum Cryptography Doesn’t Replace Classical Cryptography

As quantum computing advances, discussions around the future of cryptography are becoming increasingly common. In many conversations, one message is often heard: in the future, only quantum-safe cryptography will be needed. While quantum computing does introduce real risks to certain cryptographic systems, the reality is more nuanced. Future secure systems will not solely on a single “quantum-safe” algorithm. Instead, they will continue to combine multiple cryptographic technologies.

The Rise of Physical AI and Robotics: Why Hardware-Based Security is Non-Negotiable

Whether you’re a technologist, business leader, or simply curious, physical AI is reshaping how we live, work, and interact with the world. Its potential to augment human capabilities, solve global challenges, and create new industries is why physical AI is dominating conversations today. But how do we secure these systems against cyber threats that could have real-world consequences?

Frequently asked questions about Public-Key Cryptography IP cores

What is NIST P-256/P-384 ECDH+ECDSA - Compact ECC IP Cores supporting ECDH and ECDSA on NIST P-256/P-384?

NIST P-256/P-384 ECDH+ECDSA - Compact ECC IP Cores supporting ECDH and ECDSA on NIST P-256/P-384 is a Public Key IP core from Xiphera Ltd listed on Semi IP Hub.

How should engineers evaluate this Public Key?

Engineers should review the overview, key features, supported foundries and nodes, maturity, deliverables, and provider information before shortlisting this Public Key IP.

Can this semiconductor IP be compared with similar products?

Yes. Buyers can compare this product with similar semiconductor IP cores or IP families based on category, provider, process options, and structured technical specifications.

×
Semiconductor IP