2024.11.01

Balancing Security with Efficiency: Encryption and Decryption Performance on Entry-Level CPUs

Share:

Introduction
Encryption is crucial for securing data, even in cost-sensitive environments powered by entry-level CPUs with 1 to 4 cores. In this blog, we’ll compare the encryption and decryption performance of QAT and AES-NI and Intel CPUs using OpenSSL across 1C, 2C, and 4C configurations. Also included AMD’s 2-core performance as a reference.

Crypto Acceleration Performance Comparison
The evolution of CPUs brings in better performance of encryption and decryption operation to enable efficient data processing and enhanced security. The performance results of IPsec of Intel Atom processors have been listed below. From generation to generation, Intel enhances crypto acceleration with simplified hardware integration with better TCO.

Balancing-Security-with-Efficiency-02-1-e1730431912499

  • In platform powered by Denverton processor, the performance of IPSec crypto of integrated QAT is better than the one of CPU core with AES-NI accelerator.
  • Crypto acceleration performance has enhanced from Denverton (5Gbps) to Alder Lake (10/13 Gbps) to Amston Lake (15/17 Gbps) as representing the evolution and improvement of generations.
  • The crypto acceleration of Amston Lake platform with AES-NI and other accelerator of CPU core has reached and over the performance of Denverton platform with integrated QAT. That is, the integrated instructions of Amston Lake processor have excellent performance which offers simplified hardware integration with better Total Cost of Ownership (TCO).

In addition to IPSec performance, OpenSSL is a comprehensive, high-quality toolkit designed for general-purpose cryptography and secure communication. The throughput results of both IPSec and OpenSSL with two kinds of cryptographic algorithms at different package size are included in the following table for performance comparison from generation to generation.

Balancing-Security-with-Efficiency-03-1-1024x589

  • AES-128-GCM operates in Galois/Counter Mode, which is a modern authenticated encryption mode which includes built-in authentication and integrity checks. On the other hand, AES-128-CBC-HMAC-SHA1 uses Cipher Block Chaining (CBC) mode for encryption and a separate HMAC-SHA1 for integrity. CBC mode alone does not provide integrity, so HMAC-SHA1 is used to add a layer of authentication. GCM is generally faster than CBC because it can be parallelized while CBC cannot be parallelized during encryption and the HMAC-SHA1 adds an additional performance overhead due to the extra integrity check step. And the performance listed in the table in line with this expectation.
  • The performance of higher CPU core count shows higher performance no matter with AES128-GCM or AES-128-CBC-HMAC-SHA1. The increase in performance is equivalent to the corresponding increase in the number of cores. Once the core counts double, the cryptography performance also doubles accordingly.

As for AMD, the efficiency of encryption and decryption operations are enhanced with AESNI (Advanced Encryption Standard New Instructions) and the OpenSSL test results of Ryzen Embedded R1000 are listed below. The cryptography performances of Intel Denverton and Amston Lake are also included in the table as a reference.Balancing-Security-with-Efficiency-04-1-1536x574

  • The cryptography performance of Ryzen R1000 platform increases significantly with the use of AES-NI instruction set to perform encryption and decryption operations more efficiently.
  • Regarding the test results with large package size, the performance result of OpenSSL of AMD Ryzen 1000 is superior to the one of Intel Denverton while the performance with smaller package size shows the opposite.
  • The latest Intel Amston Lake processor perform the best in both small and large package size compared to AMD Ryzen R1000 and Denverton processors.

 

Conclusion
Crypto acceleration is important to handle data with security and efficiency. Vendors of processors are all dedicated to developing enhanced performance to meet the demands of the market. This Tech Blog offers some performance results of encryption to show the evolution of the development for entry level processors.

Related News

Rack-Scale AI Infrastructure: Maximizing Performance, Efficiency, and Scalability for the AI Era
2026.06.30

Rack-Scale AI Infrastructure: Maximizing Performance, Efficiency, and Scalability for the AI Era

Driven by the explosion of Gen AI, Agentic AI, and the massive datasets behind them, computing infrastructure is evolving from standalone servers to rack-scale architectures. Modern AI workloads require a tightly integrated combination of computing, networking, storage, and cooling solutions to deliver maximum performance and efficiency. Future-Ready AI Infrastructure has become the foundation for the AI Era.

Enhancing Network Resilience with AEWIN Gen4 LAN Bypass
2026.06.30

Enhancing Network Resilience with AEWIN Gen4 LAN Bypass

Traditional LAN bypass focuses on keeping traffic flowing when a system goes down, but modern deployments require greater flexibility to balance availability and security. AEWIN Gen4 LAN bypass builds on the Gen3 foundation by introducing enhanced traffic control mechanisms to enable network behavior to better align with real-world operational demands.

Optimizing Thermal Design for High-Performance Network Appliances and Servers
2026.06.30

Optimizing Thermal Design for High-Performance Network Appliances and Servers

As modern data centers and network infrastructures continue to scale, the demand for higher computing performance is rapidly increasing. This trend drives CPU power consumption to new levels, especially with the latest server-grade processors. As a result, optimized thermal management has become a critical design factor that directly impacts system stability and performance. High-performance network appliances and servers require advanced cooling solutions to sustain performance under heavy workloads.

Inquiry Cart

total 0 items

Compare

total 0 items

Email Subscribe

Verification

Click the numbers from smallest to largest.

We use cookies to allow our website to work properly, personalize content and advertising, provide social media features and analyze traffic. We also share information about your use of our site with our social media, advertising and analytics partners

Manage Cookies

Privacy Settings

We use cookies to allow our website to work properly, personalize content and advertising, provide social media features and analyze traffic. We also share information about your use of our site with our social media, advertising and analytics partners

Privacy Policy

Manage Consent Settings

Essential Cookies

Accept All

The website cannot function without these cookies and you cannot switch them off on your system.

These cookies are typically set only in response to an action you perform (i.e. a service request), such as setting privacy preferences, logging in, or filling in a form.

You can set your browser to block or prompt you for these cookies, but this may prevent some site features from working.