216
IBM z13s Technical Guide
VFPE allows customers to add encryption to their applications in such a way that the
encrypted data can flow through their systems without requiring a massive redesign of their
application. In the example, if the credit card number is VFPE-encrypted at the point of entry,
the cipher text still behaves like a credit card number. It can flow through business logic until it
meets that back-end transaction server that can VFPE-decrypt it to get the original credit card
number to process the transaction.
Here are the FPE requirements:
Hardware requirements:
– z13s or z13 servers and Crypto Express5S with CCA V5.2 firmware
Software requirements:
– z/OS V2.2
– z/OS V2.1 and z/OS V1.13 with the Cryptographic Support for z/OS V1R13-z/OS
V2R1 web deliverable (FMID HCR77B0)
– z/VM V6.2 and Version 6.3 with PTFs for guest use
AES PIN support for the German banking industry
The German banking industry organization, DK, has defined a new set of PIN processing
functions to be used on the internal systems of banks and their servers. CCA is designed to
support the functions that are essential to those parts of the German banking industry that
are governed by DK requirements. The functions include key management support for new
AES key types, AES key derivation support, and several DK-specific PIN and administrative
functions.
This support includes PIN method APIs, PIN administration APIs, new key management
verbs, and new access control points support that is needed for DK-defined functions.
Here are the requirements for AES PIN support:
Hardware requirements:
– z13s servers and Crypto Express5S with CCA V5.2 firmware
– z13 servers and Crypto Express5S with CCA V5.0 or later firmware
– zEC12 or zBC12 servers and Crypto Express4S with CCA V4.4 firmware
– zEC12, zBC12, z196, or z114 servers and Crypto Express3 with CCA V4.4 firmware
Software requirements:
– z/OS V2.2
– z/OS V2.1 or z/OS V1.13 with the Cryptographic Support for z/OS V1R13-z/OS V2R1
web deliverable (FMID HCR77A1) with PTFs
– z/OS V2.1 (FMID HCR77A0) with PTFs
– z/OS V1.12 or z/OS V1.13 with the Cryptographic Support for z/OS V1R12-V1R13 web
deliverable (FMID HCR77A0) with PTFs
– z/VM Version 6.2, and Version 6.3 with PTFs for guest use
Summary of Contents for z13s
Page 2: ......
Page 3: ...International Technical Support Organization IBM z13s Technical Guide June 2016 SG24 8294 00 ...
Page 24: ...THIS PAGE INTENTIONALLY LEFT BLANK ...
Page 164: ...136 IBM z13s Technical Guide ...
Page 226: ...198 IBM z13s Technical Guide ...
Page 256: ...228 IBM z13s Technical Guide ...
Page 414: ...386 IBM z13s Technical Guide ...
Page 464: ...436 IBM z13s Technical Guide ...
Page 476: ...448 IBM z13s Technical Guide ...
Page 498: ...470 IBM z13s Technical Guide ...
Page 502: ...474 IBM z13s Technical Guide ...
Page 568: ...540 IBM z13s Technical Guide ...
Page 578: ...550 IBM z13s Technical Guide ...
Page 584: ...556 IBM z13s Technical Guide ...
Page 585: ...ISBN 0738441678 SG24 8294 00 1 0 spine 0 875 1 498 460 788 pages IBM z13s Technical Guide ...
Page 586: ......
Page 587: ......
Page 588: ...ibm com redbooks Printed in U S A Back cover ISBN 0738441678 SG24 8294 00 ...