ATECC608A CryptoAuthentication™ Device

Image of Microchip Technology logo

ATECC608A CryptoAuthentication™ Device

Microchip's CryptoAuthentication Device is a trusted and secure authentication solution for Google IoT Core and AWS IoT

The ATECC608A CryptoAuthentication device from Microchip Technology integrates elliptic curve Diffie-Hellman (ECDH) security protocol with elliptic curve digital signature algorithm (ECDSA). ECDH is an ultra-secure method to provide key agreement for encryption/decryption. ECDSA is sign-verify authentication for the Internet of Things (IoT) market, including home automation, industrial networking, and medical, as well as accessories and consumables authentication and more.

Securing communication with a Cloud service and manipulating keys comes with many challenges and storing and using keys in the microcontroller exposes them: operating systems and software have bugs; the Heartbleed bug for OpenSSL was notable by easily exposing keys. Consequently, governments and corporations across the globe are working to protect individual identities and privacy. Strong authentication is the start of robust security. This leads Cloud providers to push towards hardware-based security to obtain strong device identity protection to prevent identity spoofing, but also to protect against unauthorized firmware updates and prevent proliferation. In addition, the ATECC608A offer an integrated AES hardware accelerator strengthening hardware based security for LoRaWAN applications and enable secure boot capabilities for very small microcontrollers.

With ECDH and ECDSA being built right in, this device is ideal for the rapidly growing IoT market by easily supplying the full range of security such as confidentiality, data integrity, and authentication to systems with MCU or MPUs running encryption/decryption algorithms. Like all Microchip CryptoAuthentication products, the ATECC608A employs ultra-secure hardware-based cryptographic key storage and cryptographic countermeasures which eliminate potential backdoors linked to software weaknesses. The device is agnostic of any microprocessor (MPU) or microcontroller (MCU) and compatible with Microchip AVR®/Arm® MCUs or MPUs. As with all CryptoAuthentication devices, the ATECCC608A delivers extremely low power consumption, requires only a single GPIO over a wide voltage range, and has a tiny form factor making it ideal for a variety of IoT applications that require longer battery life and flexible form factors.

Features
  • Cryptographic co-processor with secure hardware-based key storage
    • Protected storage for up to 16 keys, certificates, or data
  • Hardware support for symmetric algorithms
    • SHA-256 and HMAC hash, including off-chip context save/restore
    • AES-128: encrypt/decrypt, Galois field multiply for GCM
  • Networking key management support
    • Turnkey PRF/HKDF calculation for TLS 1.2 and 1.3
    • Ephemeral key generation and key agreement in SRAM
    • Small message encryption with keys entirely protected
  • Two high-endurance monotonic counters
  • Two interface options available
    • High-speed single-pin interface with one GPIO pin
    • 1 MHz standard I2C interface
  • Hardware support for asymmetric sign, verify, key agreement
    • ECDSA: FIPS186-3 elliptic curve digital signature
    • ECDH: FIPS SP800-56A elliptic curve Diffie-Hellman
    • NIST standard P256 elliptic curve support
  • Secure boot support
    • Full ECDSA code signature validation, optional stored digest/signature
    • Optional communication key disablement prior to secure boot
    • Encryption/authentication for messages to prevent on-board attacks
  • Internal high-quality NIST SP 800-90 A/B/C random number generator (RNG)
  • Two high-endurance monotonic counters
  • Guaranteed unique 72-bit serial number
  • 1.8 V to 5.5 V IO levels, 2.0 V to 5.5 V supply voltage
  • <150 nA sleep current
  • 8-pad UDFN, 8-lead SOIC, and 3-lead CONTACT packages
View More

Email: Info@ariat-tech.comHK TEL: +00 852-30501966ADD: Rm 2703 27F Ho King Comm Center 2-16,
Fa Yuen St MongKok Kowloon, Hong Kong.