CRACEN — Cryptographic accelerator engine

nRF54L15 | nRF54L10 | nRF54L05 Datasheet

The main features of the CRACEN peripheral are the following:

  • Cryptomaster – Symmetric cryptographic engines and digest engines
    • AES
      • Supports 128-, 192-, and 256-bit keys
      • Masking countermeasures
      • Context switching
    • HASH – including MD5, SHA1, SHA224, SHA256, SHA384, SHA512, and HMAC
    • ChaChaPoly
    • SHA3, SHAKE128, and SHAKE256
    • SM4
  • Public Key cryptographic engine (PKE) and Isolated Key Generator (IKG)
    • Modular exponentiation – RSA with and without CRT; 4096-bit maximum operand size
    • Elliptic Curve Cryptography (ECC) with 640-bit maximum operand size
    • Digital Signature Algorithm (DSA) and Elliptic Curve Digital Signature Algorithm (ECDSA, EC-KCDSA, and EdDSA), with 4096-bit maximum operand size
    • Diffie-Hellman (D-H and ECDH) key exchange
  • Random Number Generator (RNG)
Figure 1. Cryptographic accelerator engine block diagram
Page-1 Sheet.41 CryptoMaster Symmetric Engine CryptoMaster Symmetric Engine Sheet.42 Public Key operation Public Key operation Sheet.43 Random Number Generator Random Number Generator Sheet.56 µCode RAM µCode RAM Sheet.60 ProtectedRAM ProtectedRAM Sheet.85 Interconnect Interconnect Sheet.97 Isolated Key Generator Isolated Key Generator Slave, v.110 Subordinate Subordinate Master, v.111 Manager Manager Rectangle.215 DMA DMA Rectangle.113 Cryptographic engines Cryptographic engines Sheet.114 Data RAM Data RAM Slave, v.117 Slave, v.118 Rectangle.119 Control interface Control interface Slave, v.120 Manager Manager Slave, v.121 Subordinate Subordinate Sheet.122 Slave, v.123 Slave, v.125 Dynamic connector Dynamic connector.131