CryptoManager Hub (CH-7xx) ISO 21434 Automotive-grade

Foundational Crypto Accelerator Cores for Automotive Use Cases

The automotive-grade CryptoManager Hub (CMH) from Rambus is the next-generation of flexible and configurable cryptographic family of accelerator cores intended for embedding in customer or Rambus provided HSM security modules.

These cores target automotive power and space-constrained SoCs or FPGAs. The CMH offers firmware-controlled public key infrastructure capabilities. It supports SESIP-PSA level 2/3 and FIPS 140-3 level 2/3 certifications when integrated into a security module. These automotive-grade configurations offer automotive ISO 21434 compliance and ISO 26262 ASIL-B and ASIL-D safety mechanisms. The ASIL-D configuration offers side-channel attack protection and fault injection attack detection mechanisms.

Featuring a controller-based architecture with dedicated secure memories, the CMH offers a variety of classic asymmetric cryptographic accelerators including RSA, ECC, SM2, TRNG, KDF (Key Derive), as well as Quantum Safe accelerators like ML-DSA, ML-KEM and SLH-DSA. Ideal for power and space-sensitive automotive applications, central gateways, ADAS/AD compute and AI edge sensors, these accelerators are the most versatile, complete crypto solutions that offer the best balance of size and performance available on the market.

CryptoManager RT-6xx Root of Trust Family: A New Generation of Security Anchored in Hardware

Download RT-600 Root of Trust Series: A New Generation of Security Anchored in Hardware

This latest generation CryptoManager RT-6xx Root of Trust IP offers many new features designed to support the security needs of customers today and in the future. These features include Quantum Safe Cryptography, Caliptra Root of Trust for Measurement (RoTM) emulation, DPA and FIA protections, as well as an innovative three-tier architecture that lets customers tailor a Root of Trust solution to their specific requirements.

How the CryptoManager Hub (CH-7xx) ISO 21434 Automotive-grade Works

The CMH are silicon IP cores developed to provide strong and futureproof cryptographic support, enhancing security designs in SoC platforms.

CryptoManager Hub CH-7XX Block Diagram
CryptoManager Hub CH-7XX Block Diagram

The CMH implements a public key infrastructure comprising of a true random number generator, classic and, optionally, Quantum Safe accelerators, orchestrated by an internal controller. Options offered include standard ASIL-B, and DPA and FIA with ASIL-D. A key store provides local storage of provisioned, derived or generated keys. CMH is also controlled over an Amba AMBA (AHB or AXI) subordinate interface, where data is transferred over a DMA-based AXI manager interface. Readily deployable, CMH products are offered in off-the-shelf configurations, allowing a choice tailored to the needs of your application. Configurations differ by cryptographic accelerators contained, protection mechanisms required, and third-party security standard compliance. Rambus can optionally offer dedicated certification support packages to its CMH licensees that provide related certification documentation, test scripts, and dedicated support to achieve FIPS 140-3, SESIP, PSA and ISO 26262/21434 certification with your product embedding the CMH.

Protecting Data and Devices Now and in the Quantum Computing Era

Download Protecting Data and Devices Now and in the Quantum Computing Era

Quantum computing is being pursued across industry, government and academia with tremendous energy and is set to become a reality in the not-so-distant future. Once sufficiently large quantum computers exist, traditional asymmetric cryptographic methods for key exchange and digital signatures will be broken. Many initiatives have been launched throughout the world to develop and deploy new quantum-resistant cryptographic algorithms, known as Post-Quantum Cryptography (PQC).

Solution Offerings

Rambus logo