Cryptographic Software Support - IBM z13s Technical Manual

Table of Contents

Advertisement

Functions or attributes
ISO 16609 CBC mode triple DES message
authentication code (MAC) support
AES GMAC, AES GCM, AES XTS mode, CMAC
SHA-2 (384,512), HMAC
Visa Format Preserving Encryption
AES PIN support for the German banking industry
ECDSA (192, 224, 256, 384, 521 Prime/NIST)
ECDSA (160, 192, 224, 256, 320, 384, 512 BrainPool)
ECDH (192, 224, 256, 384, 521 Prime/NIST)
ECDH (160, 192, 224, 256, 320, 384, 512 BrainPool)
PNG (Prime Number Generator)
a. To make the addition of the Crypto Express features nondisruptive, the logical partition must be predefined
with the appropriate PCI Express cryptographic adapter number. This number must be selected in its
candidate list in the partition image profile.
b. This feature is not required for Linux if only RSA clear key operations are used. DES or triple DES
encryption requires CPACF to be enabled.
c. This feature is physically present but is not used when configured as an accelerator (clear key only).

6.8 Cryptographic software support

The software support levels for cryptographic functions are listed in Chapter 7.4,
"Cryptographic support" on page 285.
CPACF
CEX5C
CEX5P
-
X
-
-
X
-
-
X
-
-
X
-
-
X
-
-
X
-
-
X
-
-
X
-
-
X
-
Chapter 6. Cryptography
CEX5A
-
-
-
-
-
-
-
-
-
227

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents