Symmetric Cryptographic Intel FPGA Hard IP User Guide

ID 714305
Date 10/31/2022
Public

A newer version of this document is available. Customers should click here to go to the newest version.

Document Table of Contents

6. Cryptographic IP Data Profiles

The cryptographic IP data profiles allow you to choose a specific algorithm for your application.

All profiles utilize the same AXI-ST interface. Each profile enables you to process data using specific cryptographic settings. You select a profile by setting the p0_app_ip_tx_tuser.pattern[2:0] signal to the desired profile pattern.

The Symmetric Cryptographic IP core supports the following unique profiles or limited interleaving of them:
  • MACsec: MAC Security profile
  • IPsec: IP Security profile
  • Generic GCM profile
  • Generic XTS profile

For all profiles, if you choose to preload the keys, you must wait for four AXI-ST clock cycles before sending data to be encrypted or decrypted. If you are streaming the keys, every key should be immediately followed by data.

Each profile is optimized for specific usage. The following sections describe the profiles and their configurations.