A conservative, lattice-free signature primitive.

A complete hardware implementation of SLH-DSA, the NIST hash-based signature standard. SLH-DSA provides a conservative, non-lattice alternative for defense-in-depth and long-lived roots of trust. The core delivers full KeyGen, Sign, and Verify operations, built entirely on SHAKE. Because security rests solely on hash-function assumptions, there are no structured-lattice attack surfaces to worry about.

What the core delivers.

Why SLH-DSA matters.

Compliance and test coverage.

Standards Compliance

NIST FIPS 205

Verification

RTL byte-exact vs the golden including a full 17,088-byte SLH-DSA-128f signature tie-out; golden model ACVP-certified 72/72 across the six SHAKE parameter sets (128/192/256 x small/fast).

Note: "Verified" means RTL byte-exact against official test vectors. It does not imply FIPS 140-3 certification or foundry sign-off.

What you receive.

Available   Verified soft IP. Roadmap within core: remaining parameter-set sweep and SHA-2 sets.

Standard Deliverables

Firm/hard IP (hardened netlist for a target node) available on foundry enablement.

Explore related IP cores.

Request a product brief.

Get detailed specifications, integration guidance, and licensing options for the SLH-DSA Core.