Cryptogram File Formats
Last updated
Was this helpful?
Line format:
Key Name, KEK Algorithm(optional), KEK (optional), KEK-KCV (optional), Key Algorithm, Cryptogram, KCV, KSI, EKSI (optional)Rules:
Key Name is mandatory.
KEK Algorithm, KEK, and KEK-KCV are optional.
If present, KEK is encrypted with ZMK.
Or use the KEK created on the UI.
This in-file KEK encrypts the cryptogram.
Key Algorithm is mandatory.
Cryptogram is mandatory.
KCV is mandatory.
KSI is mandatory.
Exactly 10 HEX bytes.
EKSI is optional.
Use it to avoid KSI modification.
Provide KSI encrypted with KEK.
Each line is one key.
Missing optional fields must still keep commas.
Unless optional fields are only at the end.
Line format:
Rules:
Key Name is mandatory.
KEK Algorithm, KEK, and KEK-KCV are optional.
If present, KEK is encrypted with ZMK.
Or use the KEK created on the UI.
This in-file KEK encrypts the cryptogram.
Key Algorithm is mandatory.
Cryptogram is mandatory.
KCV is mandatory.
Each line is one key.
Missing optional fields must still keep commas.
Unless optional fields are only at the end.
Line format:
Rules:
Key Name is mandatory.
KEK Algorithm, KEK, and KEK-KCV are optional.
If present, KEK is encrypted with ZMK.
Or use the KEK created on the UI.
This in-file KEK encrypts the cryptogram.
Key Algorithm is mandatory.
Cryptogram is mandatory.
KCV is mandatory.
KRD-S/N is optional.
Terminal S/N.
Use it to target a specific terminal.
Each line is one key.
Missing optional fields must still keep commas.
Unless optional fields are only at the end.
Samples:
See the MS sample folder in Cryptogram-Key-Sample-Files.zip.
Use the same naming concept as TR-31 Master Session keys.
Line format:
Rules:
Key Name is mandatory.
KEK Algorithm, KEK, and KEK-KCV are optional.
If present, KEK is encrypted with ZMK.
Or use the KEK created on the UI.
This in-file KEK encrypts the cryptogram.
Cryptogram is mandatory.
KCV is mandatory.
IKSN is mandatory.
Exactly 20 HEX bytes.
EIKSN is optional.
Use it to avoid IKSN modification.
Provide IKSN encrypted with KEK.
KRD-S/N is optional.
Terminal S/N.
Use it to target a specific terminal.
Each line is one key.
Missing optional fields must still keep commas.
Unless optional fields are only at the end.
Samples:
See the IK sample folder in Cryptogram-Key-Sample-Files.zip.
Use the same naming concept as TR-31 IK keys.
Last updated
Was this helpful?
Was this helpful?
Key Name, KEK Algorithm(optional), KEK (optional), KEK-KCV (optional), Key Algorithm, Cryptogram, KCVKey Name, KEK-Algorithm(optional), KEK (optional), KEK-KCV (optional), Key Algorithm, Cryptogram, KCV, KRD-S/N(optional)Key Name, KEK algorithm (optional), KEK (optional), KEK-KCV (optional), Cryptogram, KCV, IKSN, EIKSN (optional), KRD-S/N (optional)