Home > Security IP > Protocol Engines
For data protection at line rate, Rambus offers a complete family of MACsec silicon IP solutions covering port rates from 1 to 800 Gbps, and applications ranging from copper PHY, automotive SOC/PHY, high-performance SOCs, to high-end optical PHY and switch/router ASICs. The fully-featured IEEE 802.1X MACsec Toolkit software accelerates time to market when building an integrated system.
Solution | Product Brief | Description |
---|---|---|
MACsec-IP-164 | Multi-channel MACsec/IPsec engine with TDM interface. Port rates from 100G to 800G with optional support of Cisco extensions. | |
MACsec-IP-161 | Single-port MACsec engine with FIFO interface. Port rates from 1G to 50G (multiple optimized configurations) with optional support of TSN (incl. IEEE802.3br) and Cisco extensions. ISO 26262 ASIL-B Ready configurations available. | |
MACsec-IP-361 | Single-port MACsec engine with xMII (MII/GMII etc.) interface for plug-and-play integration between MAC and PCS modules. Port rates from 1G to 50G (multiple optimized configurations) with optional support of TSN (incl. IEEE802.3br) and Cisco extensions. Embeds the MACsec-IP-161 core. Certified ISO 26262 ASIL-B Ready configurations available. | |
MACsec-IP-160 | Single-port MACsec engine with FIFO interface. Port rates from 1G to 100G (multiple optimized configurations). Industry-proven solution for silicon devices that require plug-and-play MACsec processing for an Ethernet port at full line rate. |
Rambus IPsec and TLS security engines deliver the benefits of throughput acceleration in combination with significant CPU offload by performing complete protocol transformations. These multi-protocol engines offer acceleration of IPsec, SSL/TLS/DTLS, MACsec and basic hash and crypto operations at speeds from 100 Mbps up to 800 Gbps in architectures ranging from the traditional Look-Aside engines attached to an AMBA bus system, to more sophisticated and powerful inline packet engines and inline transform engines.
The multi-protocol engines support all common symmetric FIPS-compliant algorithms, the ChaCha20/Poly1305 algorithm, 3GPP algorithms, Chinese algorithms, and various additional optional algorithms for specific applications. The IP integrates with various open-source data planes, such as DPDK and ODP as well as directly with the Linux Crypto APIs.
Solution | Product Brief | Description |
---|---|---|
Protocol-IP-197 | Accelerate data plane IPsec, SSL, TLS, DTLS (CAPWAP), 3GPP and MACsec up to 100 Gbps with protocol-aware packet engine with classifier and AMBA Look-Aside and Inline streaming interfaces. Designed for maximum CPU offload, full transformation offload with classification. Integrates smoothly into complex SoCs with full virtualization support. Embedded caches and latency compensation to ensure throughput is maintained under extreme latency conditions. | |
Protocol-IP-196 | Accelerate IPsec, SSL, TLS, DTLS, 3GPP and MACsec up to 10 Gbps with this protocol-aware packet engine with Look-Aside interface. Designed for fast integration, maximum CPU offload, full transforms and easy integration into SoC designs with full Virtualization support. Embedded caches and latency compensation ensure throughput is maintained under extreme latency conditions. | |
Protocol-IP-93 | Accelerate IPsec, SSL/TLS up to 1 Gbps, including TLS 1.2 and 1.3. This protocol-aware packet engine with Look-Aside interface is well suited for acceleration of the TLS packet processing in IoT devices with cloud access, low power constraints and/or secure boot acceleration. Designed for fast integration and low-gate count requirements. | |
Protocol-IP-67 | Accelerate IPsec ESP with AES-GCM or AES-GMAC up to 800 Gbps with this up to 64-channel protocol transform engine with time-sliced packet interface. | |
Protocol-IP-68 | Accelerate IPsec ESP with AES-GCM, AES-GMAC up to 100Gbps and ChaCha20/Poly1305 up to 50 Gbps with this up to 64-channel protocol transform engine with time-sliced packet interface. |