Microchip Technology TA101 Trust Anchor Authentication ICs

Microchip Technology TA101 Trust Anchor Authentication ICs provide support for secure boot, message authentication via MAC generation, and support for trusted firmware updates. It also supports Qi 1.3 and Qi 2.0 wireless charging authentication, multiple key management for user access privileges, and network authentication such as TLS and other root-of-trust-based operations. This device is a companion device to any microcontroller (MCU) or microprocessor (MPU) on the same board.

The TA101 integrates multiple asymmetric, symmetric, and hashing security protocols. It supports an ultra-secure method for key agreement and sign-verify authentication for automotive in-vehicle networking applications. It enhances the cryptographic security strength from 128 bits to 256 bits. As with all of Microchip's CryptoAutomotive™ security ICs, the TA101 employs ultra-secure hardware-based cryptographic key storage and countermeasures to eliminate potential backdoors stemming from software weaknesses.

The device is agnostic of any microprocessor (MPU) or microcontroller (MCU) and is compatible with our AVR® or Arm® processor-based MCUs and MPUs.

Features

  • Advanced Crypto Engine (ACE) for execution of all cryptography commands
  • Elliptic Curves Support (ECC)
    • P-256 - ECDSA sign, verify, KeyGen, and ECDH
    • P-384 - ECDSA sign, verify, KeyGen, and ECDH
    • P-521 - ECDSA sign, verify, KeyGen, and ECDH
    • Ed25519 - EdDSA sign, verify, and KeyGen, supported modes (Pure, CTX, PH)
    • X25519 - KeyGen and ECDH
  • RSA support
    • 2048-bit, 4096-bit RSA-OAEP encrypt/decrypt
    • 2048-bit, 4096-bit RSA signature generation and verification
    • 2048-bit, 4096-bit RSA key generation and key derivation
  • Symmetric cryptography and algorithm support
    • AES key generation (16- or 32-byte keys)
    • AES-ECB encryption/decryption (128-bit, 256-bit); external API support for alternate ciphers (CBC, CCM, counter mode, etc.)
    • AES-CMAC (128-bit, 256-bit) calculation and validation
    • Authenticated Encryption with Associated Data (AEAD) using AES-GCM (128-bit or 256-bit, single and split modes)
    • SHA-256, SHA-384, SHA-512 and HMAC-SHA256, HMAC-SHA384 and HMAC-SHA512 digest calculation
  • Multiple Key Derivation Functions (KDF) supported
    • PRF, HKDF, SP800-108 KDF and SHA-256 one-step KDF
    • TLS V1.2 with full session establishment support, including PRF KDF with host SW
    • TLS V1.3 with full-session establishment support, including HKDF with host SW
  • Certifications
    • NIST SP800-90 A/B/C Random Number Generator (RNG) (NIST certified - CAVP DRBG, ESV NRBG)
    • NIST Compliance mode for FIPS 140-3 security enforcement; supports formal NIST certification
    • Vulnerability assessment rating: JIL High, AVA_VAN.5
  • I/O options for security commands
    • 1MHz standard I2C interface
    • 16MHz SPI interface modes 0 and 3
  • 8-lead SOIC package options
  • 2.7V to 5.5V voltage supply range
  • Industrial grade temperature range of -40°C to +125°C (ambient operating range)

Applications

  • Automotive
  • Security-sensitive consumer to industrial

Videos

Veröffentlichungsdatum: 2026-10-06 | Aktualisiert: 2026-10-06