ATAES132A 32K AES Serial EEPROM Specification DATASHEET Features Crypto Element Device with Secure Hardware-based Key Storage CryptoAuthentication Ensures Things and Code 32Kb Standard Serial EEPROM Memory are Real, Untampered, and Compatible with the Atmel AT24C32D and the Atmel AT25320B Confidential 16 User Zones of 2Kb Each High-security Features AES Algorithm with 128-bit Keys AES-CCM for Authentication Message Authentication Code (MAC) Capability Guaranteed Unique Die Serial Number Secure Storage for up to Sixteen 128-bit Keys Encrypted User Memory Read and Write Internal High-quality FIPS Random Number Generator (RNG) 16 High-Endurance Monotonic EEPROM Counters Flexible User Configured Security User Zone Access Rights Independently Configured Authentication Prior to Zone Access Read/Write, Encrypted, or Read-only User Zone Options Secure Download and Boot Authentication and Protect Code High-speed Serial Interface Options In-transit 10MHz SPI (Mode 0 and 3) Ecosystem Control 2 1MHz Standard I C Interface Ensure Only OEM/Licensed Nodes and Accessories Work 2.5V to 5.5V Supply Voltage Range Anti-cloning <250nA Sleep Current Prevent Building with Identical 8-pad UDFN and 8-lead SOIC Package Options BOM or Stolen Code Temperature Range: -40C to +85C Message Security Authentication, Message Integrity, and Confidentiality of Network Benefits Nodes (IoT) Easily Add Security by Replacing Existing Serial EEPROM Authenticate Consumables, Components, and Network Access Protect Sensitive Firmware Securely Store Sensitive Data and Enable Paid-for Features Prevent Contract Manufacturers from Overbuilding Manage Warranty Claims Securely Store Identity Data (i.e. Fingerprints and Pictures) Atmel-8914C-CryptoAuth-ATAES132A-Datasheet 102016 Description The Atmel ATAES132A is a high-security, Serial Electrically-Erasable and Programmable Read-Only Memory (EEPROM) providing both authentication and confidential nonvolatile data storage capabilities. Access restrictions for the 16 user zones are independently configured, and any key can be used with any zone. In addition, keys can be used for standalone authentication. This flexibility permits the ATAES132A to be used in a wide range of applications. The AES-128 cryptographic engine operates in AES-CCM mode to provide authentication, stored data encryption/decryption, and Message Authentication Codes. Data encryption/decryption can be performed for internally stored data or for small external data packets, depending upon the configuration. Data encrypted by one ATAES132A device can be decrypted by another, and vice versa. 2 The ATAES132A pinout is compatible with standard SPI and I C Serial EEPROMs to allow 2 placement on existing PC boards. The SPI and I C instruction sets are identical to the Atmel Serial EEPROMs. The extended security functions are accessed by sending command packets to the ATAES132A using standard write instructions, and reading responses using standard read instructions. The ATAES132A secure Serial EEPROM architecture allows it to be inserted into existing applications. The ATAES132A device incorporates multiple physical security mechanisms to prevent the release of the internally stored secrets. Secure personalization features are provided to facilitate third-party product manufacturing. ATAES132A Datasheet 2 Atmel-8914C-CryptoAuth-ATAES132A-Datasheet 102016