IBM z13s Technical Manual page 254

Table of Contents

Advertisement

Functions or attributes
Provides the highest asymmetric (encrypted key)
encryption performance
Disruptive process to enable
Requires IOCDS definition
Uses CHPID numbers
Uses PCHIDs (one PCHID)
Requires CPACF enablement (FC 3863)
Requires ICSF to be active
Offers UDX
Usable for data privacy: Encryption and decryption
processing
Usable for data integrity: Hashing and message
authentication
Usable for financial processes and key management
operations
Crypto performance IBM RMF™ monitoring
Requires system master keys to be loaded
System (master) key storage
Retained key storage
Tamper-resistant hardware packaging
Designed for FIPS 140-2 Level 4 certification
Supports Linux applications that perform SSL
handshakes
RSA functions
High-performance SHA-1 and SHA2
Clear key DES or triple DES
AES for 128-bit, 192-bit, and 256-bit keys
Pseudorandom number generator (PRNG)
Clear key RSA
Europay, MasterCard and Visa (EMV) support
Public Key Decrypt (PKD) support for Zero-Pad option
for clear RSA private keys
Public Key Encrypt (PKE) support for Mod_Raised_to
Power (MRP) function
Remote loading of initial keys in ATM
Improved key exchange with non-CCA systems
226
IBM z13s Technical Guide
CPACF
CEX5C
CEX5P
-
X
X
a
-
Note
Note
-
-
-
-
-
-
-
X
X
b
b
b
X
X
X
-
X
X
-
X
-
X
X
X
X
X
X
-
X
X
-
X
X
-
X
X
-
X
X
-
X
-
-
X
X
-
X
X
-
-
-
-
X
X
X
X
X
X
-
-
X
X
X
X
X
X
-
-
-
-
X
-
-
X
-
-
X
X
-
X
-
-
X
-
CEX5A
-
a
a
Note
-
-
X
b
X
X
-
-
-
-
X
-
-
-
c
X
X
X
X
-
-
-
-
X
-
-
-
-
-

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents