Page 1
DynaFlex II Smart Card Reader PCI PTS POI v6.2 Security Policy March 2023 Document Number: D998200573-10 REGISTERED TO ISO 9001:2015 MagTek Inc | 1710 Apollo Court | Seal Beach, CA 90740 | Phone: (562) 546-6400 | Technical Support: (888) 624-8350 www.magtek.com...
Page 2
Some device icons courtesy of https://icons8.com/, used under the Creative Commons Attribution- NoDerivs 3.0 license. All other system names and product names are the property of their respective owners. MagTek Inc | 1710 Apollo Court | Seal Beach, CA 90740 | Phone: (562) 546-6400 | Technical Support: (888) 624-8350 www.magtek.com...
Page 3
Table 0-1 - Revisions Rev Number Date Notes Mar 13, 2023 Initial Release DynaFlex II| Smart Card Reader | PCI PTS POI v6.2 Security Policy Page 3 of 17 (D998200573-10)
1 - Purpose Purpose This document describes how to use the DynaFlex II family of products in a secure manner. This includes information about key-management responsibilities, administrative responsibilities, device functionality, identification, and environmental requirements. The use of the secure card reader in any manner not described in this security policy, will invalidate the PCI PTS POI v6.2 approval of the device.
General Description Product Name and Appearance The front facing sides of DynaFlex II and DynaFlex II with Barcode Reader (BCR), are shown in Figure 2-1 below. The different rear facing sides of all devices are shown in Figure 2-2. Figure 2-1 - DynaFlex II and DynaFlex II (BCR) – Front View Figure 2-2 –...
(ICCR), and contactless card readers (CTLS). DynaFlex II products may also be purchased with an embedded barcode reader (BCR). DynaFlex II products can be used as desktop or handheld devices. The Kiosk version uses a back cover intended for secure mounting, suitable for use in an unattended environment. All are approved as Smart Card Reader (SCR) devices, adhering to PCI PTS POI v6.2 requirements.
Page 8
B = as Certified minor fixes not adding functionality or related to security (e.g. change component value for antenna matching): 0 = as certified DynaFlex II| Smart Card Reader | PCI PTS POI v6.2 Security Policy Page 8 of 17 (D998200573-10)
1000009341 = DynaFlex II Boot firmware part number A = Certified Version Minor revisions, bug fixes 15-17 PCI = PCI version of firmware DynaFlex II| Smart Card Reader | PCI PTS POI v6.2 Security Policy Page 9 of 17 (D998200573-10)
ID is printed on the label. The Firmware ID is accessible via the device and displayed on the screen. Go to the PCI compliance web page and search for MagTek, and find the product name, DynaFlex II. Compare the Hardware ID and Firmware ID: https://www.pcisecuritystandards.org/assessors_and_solutions/pin_transaction_devices...
PCI PTS approval. Configuration Settings DynaFlex II ships from the factory fully secure. The devices have no configuration settings that require modification by the user to meet PCI security requirements. DynaFlex II| Smart Card Reader | PCI PTS POI v6.2 Security Policy...
D998200563 DYNAFLEX II DEVICE INSPECTION or D998200566 DYNAFLEX II KIOSK DEVICE INSPECTION. If any problems are detected, stop using the device, set it aside in a secure location, and contact the manufacturer or your acquirer for further advice.
Passwords and Certificates DynaFlex II ships from the factory fully secure. The devices have no security related default values (e.g., passwords/authentication codes/certificates) that require modification by the user to meet PCI security requirements.
For help with updates to EMV configuration, contact Magensa Remote Services. Decommissioning Before DynaFlex II is permanently removed from service, all the keys and sensitive data must be erased. One way to accomplish this is by temporarily removing the bottom cover, which forces a tamper response.
Security Account Data Protection DynaFlex II always encrypts account data from all three reader types, using the 112-bit TDEA-CBC algorithm, or 128-bit AES-CBC with X9.24 DUKPT key management. This device does not support any mechanisms such as whitelists or SRED disable that would allow the data to be sent out unencrypted.
Secure Hash Algorithm SRED Secure Reading and Exchange of Data TDEA Triple Data Encryption Algorithm Universal Serial Bus USB HID USB Human Interface Device DynaFlex II| Smart Card Reader | PCI PTS POI v6.2 Security Policy Page 16 of 17 (D998200573-10)
References The following documents may be used to provide additional details about the device and this security policy: • D998200554 DynaFlex II and DynaFlex II PIN Entry Device Installation and Operation Manual • D998200383 DynaFlex Products Programmer’s Manual (COMMANDS) •...
Need help?
Do you have a question about the DynaFlex II and is the answer not in the manual?
Questions and answers