Crypto Hub IP

Flexible and configurable solutions for protecting data at rest

Protecting Data at Rest with Configurable Rambus Crypto Hub Solutions

To provide a hardware-based foundation for security, Rambus offers a broad range of flexible and configurable CryptoManager Hub solutions. These products address markets where customers do not need a full-fledged Root of Trust or have their own Root of Trust solution but still require state-of-the-art advanced crypto cores running behind one dedicated bus.

CryptoManager Hub CH-6xx

CryptoManager Hub (CMH) from Rambus is the next generation family of flexible and configurable modules of cryptographic accelerator cores. CMH CH-6xx designs target embedding in customer or Rambus provided Root of Trust security modules. Ideal for power and space-sensitive applications like secure MCU, IoT server, gateway and edge devices, these accelerators are the most versatile, complete crypto solutions offering the best balance of size and performance available on the market.
ProductProduct Configurations and Cryptographic Accelerators Supported
Baseline for all CH-6xxNIST CAVP hardware classic cryptographic accelerators (AES, SHA-2, SHA-3, RSA, ECC), a NIST certified TRNG behind a highly efficient multi-channel DMA based AMBA interface. Supports FIPS 140-3/SESIP/PSA RoT. Select Quantum Safe SKUs provide a full quantum safe boot flow, and supports ML-KEM, ML-DSA, SLH-DSA, LMA, XMSS.
FeaturesCH-630CH-631CH-634CH-635CH-660CH-661CH-664
OSCCA SM2/3/4 ✔ ✔ ✔ 
Full Quantum Safe Boot & Crypto  ✔✔  ✔
Caliptra       
Physical Attack Resistance (SCA & FIA)    ✔✔✔
Target SegmentCH-630CH-631CH-634CH-635CH-660CH-661CH-664
SoC✔✔✔✔✔✔✔
Data Center    ✔✔✔
AI Edge✔✔✔✔   
Government    ✔ ✔

Automotive-grade CryptoManager Hub CH-7xx

The automotive-grade CryptoManager Hub (CMH) from Rambus is the next-generation family of flexible and configurable modules of cryptographic accelerator cores. The CMH CH-7xx designs target embedding in customer or Rambus provided HSM security modules. Ideal for power and space-sensitive automotive applications like central gateways, ADAS/AD compute, AI edge sensors, these accelerators are the most versatile, complete crypto solutions offering the best balance of size and performance available on the market.

ProductProduct Configurations and Cryptographic Accelerators Supported
Baseline for
all CH-7xx
Automotive-grade Crypto Module. NIST CMVP compliant, NIST CAVP hardware classic cryptographic accelerators (AES, SHA-2, SHA-3, RSA, ECC), a NIST certified TRNG, classic and LMS and XMSS boot flow. Supports ISO 21434/26262 and implements ASIL-B or ASIL-D safety logic. Select Quantum Safe SKUs provide a full quantum safe boot flow, and supports ML-KEM, ML-DSA, SLH-DSA, LMA, XMSS.
FeaturesCH-730BCH-731BCH-734BCH-760DCH-761DCH-764D
OSCCA SM2/3/4 ✔  ✔ 
Full Quantum Safe Boot & Crypto  ✔  ✔
Physical Attack Resistance (SCA & FIA)   ✔✔✔
Automotive GradeCH-730BCH-731BCH-734BCH-760DCH-761DCH-764D
ISO 21434✔✔✔✔✔✔
ASIL-D process✔✔✔✔✔✔
ASIL-B FuSa✔✔✔   
ASIL-D FuSa   ✔✔✔

CryptoCell Security Module IP

Designed to be integrated in Arm TrustZone-based power and space-constrained SoCs or FPGAs, the CC-312, CC-712, and CC-713 security IP solutions (formerly Arm CryptoCell) are FIPS 140-3 certifiable hardware security modules that establish the foundation for the Arm Platform Security Architecture (PSA). The CC-312 targets integration on Cortex-M platforms running embedTLS, and the CC-71x targets integration on Cortex-A platforms running Linux or OP-TEE.

ProductProduct Configurations and Cryptographic Accelerators Supported
Baseline for
all CC-312/71x
NIST CAVP hardware classic cryptographic accelerators (AES, SHA-2, RSA, ECC). Secure Boot, Secure Debug, Secure Key Derive.
FeaturesCC-312CC-712CC-713
AES-GCM/AES-XTS ✔✔
OSCCA SM2/3/4  ✔
Target SegmentCC-312CC-712CC-713
IoT Sensor✔✔✔
IoT Gateway ✔✔
Cortex-M✔  
Cortex-A ✔✔

CryptoManager RT-6xx Root of Trust Family: A New Generation of Security Anchored in Hardware

Download RT-600 Root of Trust Series: A New Generation of Security Anchored in Hardware

This latest generation of the Rambus RT-600 Root of Trust IP offers many new features designed to support the security needs of customers today and into the future. These features include Quantum Safe Cryptography, Caliptra Root of Trust for Measurement (RoTM) emulation, an embedded physical unclonable function (PUF), as well as many architectural improvements, such as larger memory space and 64-bit addressing support.

Rambus logo