Move/3500 PCI PTS Security Policy
Ingenico document - Please check document validity before using
Key Name Purpose / Usage Algorithm
Size
(Bits)
Storage
factor
loaded to
of
available
MC_MAC Key
verification of
MC_ECC_Payment_Sy
TDES 128
Secure
unit
y
generate
31
MC_Session_Cipher
Key
Encryption and
Decryption of Data
AES 128
Secure
unit
from
MC_Kern
el_ECC
private
1
MC_Session_Authent
Key
Authentication of Data
AES 128
Secure
unit
from
MC_Kern
el_ECC
private
1
MC_ECC_Payment_Sys
tem_PK Key
MC_Issuer_ECC_PK
ECC 256
Secure
unit
from
5
MC_Kernel_ECC
Private Key
ECDH Establishment
and Generation of
MC_Session Keys
ECC 256
Secure
unit
y
generate
5
MC_Kernel_ECC Public
Key
ECDH Establishment ECC 256
Secure
unit
y
generate
5
MC_Issuer_ECC_PK Key
Verification of
MC_ICC_ECC_PK Key
ECC 256
Secure
unit
from
5
MC_ICC_ECC_PK Key
Validation of blinding
factor
ECC 256
Secure
unit
from
5
8_4 Key Replacement
Any key should be replaced with a new key whenever the compromise of the original key is known or
suspected, and whenever the time deemed feasible to determine the key by exhaustive attack
elapses.
1
X is a numerical variable