As our connected world expands, the technological advances in high-performance computing (HPC) are reshaping system-on-chip (SoC) designs to address the need for more acceleration, more storage capacity, new compute architectures, and increased bandwidths for faster data movement. High bandwidth interfaces such as DDR/LPDDR/MRDIMM are proliferating, and their speeds continue to grow from generation to generation.

At the same time, the security of data and systems is paramount, driven by multiple factors, including significant growth in confidential and sensitive information, laws, regulations, and standards evolution.

Synopsys Inline Memory Encryption (IME) Security Modules provide confidentiality of data in use or stored in off-chip memory over memory interfaces. They integrate seamlessly with Synopsys DDR, LPDDR, and MRDIMM IP Controllers for most optimal solutions in the industry with latency as low as 2 cycles, accelerating SoC integration and reducing risk.

Besides this tightly integrated security within controller IP for ultra‑low‑latency protection, the Synopsys IME Security Modules also serve other use cases described in this datasheet. These include coherent memory encryption for systems implementing ARM Confidential Compute Architecture (CCA) through standalone connections to ARM CXL/CCIX Coherent Gateway (CCG) fabrics. Additionally, IME ensures confidentiality in chiplet‑based systems via UCIe, securing data as it moves between processing and memory chiplets. IME can also be deployed as an inline AXI‑based encryption engine, enabling plug‑and‑play protection in a wide variety of system designs, or as a lookaside AXI solution that adds encryption to heterogeneous platforms and non‑Synopsys memory controllers without requiring architectural changes. Together, these use cases demonstrate the scalability and versatility of the Synopsys IME Security Modules across next‑generation SoCs.

Learn about the Synopsys broad portfolio of Security Solutions for Interfaces.

 

 

Highlights & Key Features

  • Scalable IME Security Modules support many use cases:
    • Secure Controllers (DDR5, LPDDR5, DDR6, LPDDR6, MRDIMM2, MRDIMM3)
    • ARM CCA Coherent Memory Protection
    • Memory Chiplet Protection via UCIe
    • Memory Encryption via AXI
  • Ultra-low latency: IME latency overhead as low as 2 cycles when integrated with Synopsys Controllers
  • Configurable for optimal PPA and latency
  • Data confidentiality with independent cryptographic support for read and write channels
  • Standards compliant: NIST SP800-38E, IEEE Std. 1619-2018
  • FIPS 140-3 certification support
  • Up to 1024 keys
  • Modes: AES-XTS, AES-ECB
  • ARM CCA RME_V2 support
  • Support for different datapath widths
  • Efficient key control and refresh
  • Key readback protection
  • SRAM zeroization
  • RAS SRAM ECC

Product Details

Resources


Find Your IP

Search for IP

Quickly identify and access the right IP solutions for your project needs.


Foundation IP Selector

Find embedded memory and logic IP for your SoC design.

Non-Volatile Memory IP Selector

Find silicon-proven NVM IP for your SoC design needs.