Move/3500 PCI PTS Security Policy
Ingenico document - Please check document validity before using
8_3 Key Table
Key Name Purpose / Usage Algorithm
Size
(Bits)
Storage
factor
loaded to
of
available
K_Root_CA
CA public keys for
certificate verification
ECDSA 521
ROM 1
K_Sub_CA1
CA public keys for
certificate verification
ECDSA 521
ROM 1
K_EE1_x3
CA public keys for
certificate verification
ECDSA 521
ROM 1
K_TR31
Calculation of key
encryption and MAC
keys (according to
ANSI31)
TDES
AES
AES
168
128
192
Secure
unit
Enciphere
d under
K_Key or
K_TR31
25
31
25
Key Encryption Key Key encryption
TDES
AES
AES
168
128
192
Secure
unit
Enciphere
d under
K_Key or
K_TR31
25
31
25
Data encryption Key
Data encryption, MAC
calculation /
verification
TDES
TDES
AES
AES
112
168
128
192
Secure
unit
Enciphere
d under
K_Key or
K_TR31
42
31
25
31
25
21
PIN Encryption Key PIN encryption
TDES
AES
AES
168
128
192
Secure
unit
Enciphere
d under
K_Key or
K_TR31
25
31
25
DUKPT2009 – IPEK Initial DUKPT Keys TDES 112
Secure
unit
d under
2
DUKPT2009 – Pin Key Pin encryption TDES 112
Secure
unit
originally
42
DUKPT2009 – Data Key Data encryption TDES 112
Secure
unit
originally
42
3
X is a numerical variable