In UltraScale devices, private key encryption of the bitstream using AES-GCM-256 (a self-authenticating AES algorithm) is supported with the SEM IP. Public key authentication using RSA-2048 is supported with the SEM IP.
In UltraScale+ FPGAs, private key encryption of the bitstream using AES-GCM-256 (a self-authenticating AES algorithm) has been verified and is supported with the SEM IP. Public key authentication using RSA-2048 has also been verified and is supported with the SEM IP, in addition to support for AES encryption with key rolling.
In UltraScale+ MPSoC, private key encryption of the bitstream using AES-GCM-256 (a self-authenticating AES algorithm) has been verified and is supported with the SEM IP. Public key authentication using RSA-4096 has also been verified and is supported with the SEM IP.