Previous topic |
Next topic |
Contents |
Index |
Contact z/OS |
Library |
PDF
Clear PIN Generate Alternate (CSNBCPA and CSNECPA) z/OS Cryptographic Services ICSF Application Programmer's Guide SA22-7522-16 |
|
Use the clear PIN generate alternate service to generate a clear VISA PVV (PIN validation value) from an input encrypted PIN block, or to produce a 3624 offset from a customer-selected encrypted PIN. The PIN block can be encrypted under either an input PIN-encrypting key (IPINENC) or an output PIN-encrypting key (OPINENC). An enhanced PIN security mode, on PCICC, PCIXCC, CEX2C, or CEX3C, is available for extracting PINs from encrypted PIN blocks. This mode only applies when specifying a PIN-extraction method for an IBM 3621 or an IBM 3624 PIN-block. To do this, you must enable the PTR Enhanced PIN Security access control point in the default role. When activated, this mode limits checking of the PIN to decimal digits and a PIN length minimum of 4 is enforced. No other PIN-block consistency checking will occur. An enhanced PIN security mode on a CEX3C is available to implement restrictions required by the ANSI X9.8 PIN standard. To enforce these restrictions, you must enable the following control points in the default role.
The callable service name for AMODE(64) invocation is CSNECPA. |
Copyright IBM Corporation 1990, 2014
|