Comments

Some recommendations that should be taken into consideration when re-registering your password.

  1. The Master Key (MK) DES or 3DES or both, for each network, are installed on the pinpad card administrator. The MK key is used to decrypt the Working Key (WK) which will be used to encrypt the password entered by the cardholder on the pinpad.

  2. It is worth remembering that there are pinpads with a TEST MK key (only used in a test environment). tests) and pinpads with MK PRODUCTION key (to be used in a production environment). The pinblocks generated by pinpads with Test MK are DIFFERENT from the pinblocks generated with production MK. Make sure you are using a pinpad with the correct MK key.

  3. The card password is associated with the “PAN” (card number) passed as a parameter. At the If a track is passed, the “PAN” will be extracted from the track before being used. In case of If only the 6-digit “BIN” of the card is passed, a fictitious “PAN” will be generated internally. In case of issuance of a second copy of the customer's card, due to loss, theft, expiration, etc., when the “PAN” is changed, it will involve re-registering the password.

  4. The password is encrypted by a WK (DES or 3DES) and if the WK is changed, it implies re-register all passwords again, as the Pinblock generated will be different.

  5. On ABECS pinpads (Version 2.03 and higher) the MK DES keys are considered “obsolete” (i.e., they will be removed from future versions) by ABECS. Therefore, on ABECS pinpads we recommend if using the 3DES encryption type, even if they can optionally support encryption DES.

  6. Passwords encrypted with the DES key generate different pinblocks than those encrypted with 3DES.

  7. Since legacy pinpads (Version 1.08 and lower), and ABECS (Version 2.03 and higher) must live together for a long period, you must register the password encrypted with the WK DES key, and also with the WK 3DES key. It is recommended to use a single Pinpad that has both keys (DES and 3DES) engraved. If this is not possible, then you will need to use two Pinpads different for registration. The password pinblock will need to be collected 4 times, 2 times using the DES key, and 2 times using the key 3DES. It is recommended that the collection be carried out using the same equipment that has the two keys (DES and 3DES), and alternately: DES, 3DES, DES and 3DES. Once collected, compare the 2 pinblocks captured with the DES key, and the 2 captured with the 3DES key, to identify and minimize possible typing errors.

  8. LePinblock functions cannot be called during the flow of a transaction.