IBM z13s Technical Manual page 244

Table of Contents

Advertisement

VFPE allows customers to add encryption to their applications in such a way that the
encrypted data can flow through their systems without requiring a massive redesign of their
application. In the example, if the credit card number is VFPE-encrypted at the point of entry,
the cipher text still behaves like a credit card number. It can flow through business logic until it
meets that back-end transaction server that can VFPE-decrypt it to get the original credit card
number to process the transaction.
Here are the FPE requirements:
Hardware requirements:
– z13s or z13 servers and Crypto Express5S with CCA V5.2 firmware
Software requirements:
– z/OS V2.2
– z/OS V2.1 and z/OS V1.13 with the Cryptographic Support for z/OS V1R13-z/OS
V2R1 web deliverable (FMID HCR77B0)
– z/VM V6.2 and Version 6.3 with PTFs for guest use
AES PIN support for the German banking industry
The German banking industry organization, DK, has defined a new set of PIN processing
functions to be used on the internal systems of banks and their servers. CCA is designed to
support the functions that are essential to those parts of the German banking industry that
are governed by DK requirements. The functions include key management support for new
AES key types, AES key derivation support, and several DK-specific PIN and administrative
functions.
This support includes PIN method APIs, PIN administration APIs, new key management
verbs, and new access control points support that is needed for DK-defined functions.
Here are the requirements for AES PIN support:
Hardware requirements:
– z13s servers and Crypto Express5S with CCA V5.2 firmware
– z13 servers and Crypto Express5S with CCA V5.0 or later firmware
– zEC12 or zBC12 servers and Crypto Express4S with CCA V4.4 firmware
– zEC12, zBC12, z196, or z114 servers and Crypto Express3 with CCA V4.4 firmware
Software requirements:
– z/OS V2.2
– z/OS V2.1 or z/OS V1.13 with the Cryptographic Support for z/OS V1R13-z/OS V2R1
web deliverable (FMID HCR77A1) with PTFs
– z/OS V2.1 (FMID HCR77A0) with PTFs
– z/OS V1.12 or z/OS V1.13 with the Cryptographic Support for z/OS V1R12-V1R13 web
deliverable (FMID HCR77A0) with PTFs
– z/VM Version 6.2, and Version 6.3 with PTFs for guest use
216
IBM z13s Technical Guide

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents