EMVCo, May 2007. — 198 p.
Version 4.1z ECC. With support for Ecliptic Curve Cryptograghy.
ScopeChanges in Version 4.1
Structure
Underlying Standards
AudienceNormative ReferencesDefinitionsAbbreviations, Notations, Conventions, and TerminologyData Element Format Conventions
Terminology
Static Data Authentication (SDA)Keys and Certificates
Retrieval of Certification Authority Public Key
Retrieval of Issuer Public Key
Verification of Signed Static Application Data
Offline Dynamic Data AuthenticationKeys and Certificates
Retrieval of Certification Authority Public Key
Retrieval of ICC Public Key
Dynamic Data Authentication (DDA)
Combined DDA/Application Cryptogram Generation (CDA)
Personal Identification Number EnciphermentKeys and Certificates
PIN Encipherment and Verification
Application Cryptogram and Issuer AuthenticationApplication Cryptogram Generation
Issuer Authentication
Key Management
Secure MessagingSecure Messaging Format
Secure Messaging for Integrity and Authentication
Secure Messaging for Confidentiality
Key Management
Certification Authority Public Key Management Principles and PoliciesCertification Authority Public Key Life Cycle
Principles and Policies by Phase
Sample Timelines
Terminal Security and Key Management RequirementsSecurity Requirements for PIN Pads
Key Management Requirements
Annex A Security MechanismsSymmetric Mechanisms
Asymmetric Mechanisms
Annex B Approved Cryptographic AlgorithmsSymmetric Algorithms
Asymmetric Algorithms
Hashing Algorithms
Annex C Informative ReferencesAnnex D Implementation ConsiderationsIssuer and ICC Public Key Length Considerations
Format 1 Secure Messaging Illustration
Application Transaction Counter Considerations
CDA Modes
Common Core DefinitionsChanged Sections
Offline Dynamic Data Authentication
Application Cryptogram and Issuer Authentication
Secure Messaging