FortiPKA — Hardware Public Key Accelerator
of Classic ECC and RSA algorithms
What Is FortiPKA?
FortiPKA delivers RSA and ECC algorithms with advanced protection against side-channel and fault injection attacks, including multi-layered SCA/FIA protections, it offers robust, security-certifiable cryptography with minimal performance degradation. The IP is engineered to meet or exceed rigorous security certification standards across all levels of FIPS 140-3 and Common Criteria.
FortiPKA Hardware IPs
FortiPKA Hardware soft macro IPs deliver asymmetric cryptography with certifiable resistance to side-channel and fault-injection attacks (SCA/FI). Implementing RSA and ECC aligned with NIST standards, these cores provide extraordinary PPA.
FortifyIQ Differentiators for PKA
Intrinsic SCA/FIA resistance with algorithm-level hardening.
Secure FOTA updates address emerging threats.
Unified SW–HW interface enabling immediate deployment on legacy devices, and simple migration to hardware implementation.
Boutique tailoring for latency, area, or power targets, radiation hardening, and certification targets. Customization is flexible until tape-out.
Software libraries with minimal RAM use for legacy or cost-sensitive systems.
High-performance hardware intrinsically hardened and validated against side-channel and fault injection attacks.
Soft-macro, process-agnostic design.
Full internal lab validation via FortiEDA in simulation, on an FPGA board and in silicon
Features
- A patented high-performance modulo multiplication algorithm contributes to the core’s compactness and speed
- Secure ECC and RSA operations
- Configurable key sizes and curves
- Configurable performance/size tradeoff
- Side-channel-hardened modular arithmetic
- Supports FIPS 140-3 up to Level 4, Common Criteria AVA_VAN.5, SESIP up to Level 5 certification targets
- Customization is flexible until tape-out
Use Cases
FortiPQC Hardware soft macro IPs
FortiPKA hardware soft macro IPs provide asymmetric cryptography RSA/ECC, SCA/FIA-resistant security with exceptional Power-Performance-Area (PPA) and full design portability. They integrate seamlessly into any semiconductor platform, from cost-constrained embedded devices to advanced data-center and multi-chip systems.
- Key exchange, signatures, and attestation
- Secure boot frameworks
- Authentication protocols (TLS, DTLS, custom)
- Smart cards, IoT devices, cryptocurrency wallets
- Government systems
Integration Simplicity
Identical API across software and hardware allows early migration without rewriting application logic.
Certification & Assurance Readiness
Supports CC EAL6+, SESIP 5, FIPS 140-3/4, and AVA_VAN.5 requirements.
Why Choose FortifyIQ for PKA
FortiPKA provides hardened arithmetic and high-assurance security without the typical performance degradation found in protected RSA/ECC implementations.