emSSL & emSSH
Embedded SoftwareEmbedded security stack with TLS 1.3/1.2 client and server, SSH-2 remote access via emSSH, hardware crypto acceleration, and the emCrypt cryptographic library underneath. India pricing via GSAS.
TLS
1.3 and 1.2, client + server
SSH
SSH-2 with SCP add-on (via emSSH)
Crypto Engine
emCrypt (AES, RSA, ECC, SHA)
Acceleration
Hardware crypto offload
Footprint
Configurable, minimal ROM
License
Royalty-free
Overview
About emSSL & emSSH
SEGGER emSSL delivers TLS 1.3 and TLS 1.2 security for embedded systems that must communicate over encrypted channels without the memory overhead and attack surface of OpenSSL or mbedTLS ports. Supporting both client and server modes, emSSL enables microcontrollers to establish secure HTTPS connections to cloud platforms, accept encrypted MQTT sessions from field devices, and serve configuration interfaces over TLS, covering the full spectrum of secure communication patterns found in IoT gateways, industrial edge nodes, and connected medical equipment deployed across Indian healthcare and manufacturing sectors.

TLS Version Support
| TLS Version | Mode | Status |
|---|---|---|
| TLS 1.3 | Client + Server | Full support (RFC 8446) |
| TLS 1.2 | Client + Server | Full support (RFC 5246) |
| DTLS 1.2 | Client + Server | UDP-based secure communication |
Supported Cipher Suites
| Category | Algorithms |
|---|---|
| Key Exchange | ECDHE (P-256, P-384, P-521, X25519), DHE, RSA, PSK |
| Authentication | RSA, ECDSA (P-256, P-384), Ed25519 |
| Symmetric Encryption | AES-128-GCM, AES-256-GCM, AES-128-CCM, ChaCha20-Poly1305 |
| Hash / MAC | SHA-256, SHA-384, SHA-512, HMAC |
| Certificate Formats | X.509 v3, PEM, DER |
| TLS Extensions | SNI, ALPN, session tickets, early data (0-RTT) |
emSSH: Secure Shell
emSSH complements emSSL by providing SSH-2 secure shell access to embedded devices, with an SCP add-on for encrypted file transfer and port forwarding for tunneling other traffic securely. See emSSH for the full protocol, cipher, and licensing details.
emCrypt Foundation and Hardware Acceleration
Both stacks are built on emCrypt, SEGGER’s own cryptographic library implementing AES, RSA, ECC, and SHA algorithms with support for hardware crypto acceleration on silicon that provides it. Hardware offload reduces CPU load and power consumption for sustained encrypted communication, and the modular build system allows teams to include only the cipher suites their application requires, keeping ROM footprint to a minimum. Royalty-free licensing ensures that adding production-grade security to every unit shipped carries no incremental per-device cost.
Blog
SEGGER Insights
SEGGER J-Link and J-Trace Now Support Andes Trace: Why This Matters for RISC-V
SEGGER's J-Link and J-Trace probes now support Andes Trace, the hybrid N-Trace plus E-Trace instruction-trace solution built into Andes RISC-V cores. Here is what Andes Trace is, why probe-level support closes one of RISC-V's last serious tooling gaps, and what it means for Indian embedded teams.
Choosing a SEGGER Flasher: Standalone vs Gang vs Secure vs Portable
Standalone, gang, secure, or portable, the SEGGER Flasher family covers four different production-programming problems, not one. Here is how Indian engineering and production teams should decide.
J-Trace PRO vs TRACE32: An Honest Comparison for India
SEGGER J-Trace PRO delivers much of the same core streaming-trace capability as Lauterbach TRACE32 for Arm Cortex-M/A/R and RISC-V targets, at a lower cost point. Here is where each platform is the stronger fit for Indian engineering teams.
Related products
More from SEGGER
All SEGGER products →
embOS RTOS
Safety-certified real-time operating system with zero-interrupt-latency, sub-1 KB ROM footprint, and royalty-free licensing across Classic, MPU, Ultra, and Safe editions. India pricing via GSAS.
View embOS RTOS →
emPower OS
Complete embedded operating system integrating RTOS, middleware, security, connectivity, and UI libraries into a single royalty-free platform. Available in India from GSAS.
View emPower OS →
emNet TCP/IP Stack
Dual IPv4/IPv6 TCP/IP stack with TLS 1.3 via emSSL, zero-copy API, and ~30 KB ROM footprint. Includes MQTT, HTTP server/client, FTP, SNMP, DHCP, and DNS. India pricing and local support from GSAS.
View emNet TCP/IP Stack →FAQ
Common questions about emSSL & emSSH
What is SEGGER emSSL?
Is emSSL royalty-free?
Which SEGGER middleware for encrypted HTTPS or MQTT communication?
Can I buy SEGGER emSSL in India?
Does emSSL support hardware crypto acceleration?
Interested in emSSL & emSSH?
Get pricing, an evaluation unit, or a technical consultation from our application engineers.