Chapter 7. Software support 287
Table 7-62 lists the ICSF FMIDs and web-deliverable codes for z/OS V1R12 through V2R2.
Later FMIDs include the functions of previous ones.
Table 7-62 z/OS ICSF FMIDs
ICSF
FMID
z/OS Web deliverable name Supported function
HCR7770 V1R12
V1R11
V1R10
Cryptographic Support for
z/OS V1R9-V1R11
Included as a base
element of z/OS V1R12
Crypto Express3 and Crypto Express3-1P
support
PKA Key Management Extensions
CPACF Protected Key
Extended PKCS #11
ICSF Restructure (Performance, RAS, and
ICSF-CICS Attach Facility)
HCR7780 V1R13
V1R12
V1R11
V1R10
Cryptographic Support for
z/OS V1R10-V1R12
Included as a base
element of z/OS V1R13
IBM zEnterprise 196 support
Elliptic Curve Cryptography
Message-Security-Assist-4
HMAC Support
ANSI X9.8 Pin
ANSI X9.24 (CBC Key Wrapping)
CKDS constraint relief
PCI Audit
All callable services AMODE (64)
PKA RSA OAEP with SHA-256 algorithm
a
HCR7790 V1R13
V1R12
V1R11
Cryptographic Support for
z/OS V1R11-V1R13
Expanded key support for AES algorithm
Enhanced ANSI TR-31
PIN block decimalization table protection
Elliptic Curve Diffie-Hellman (ECDH)
algorithm
RSA in the Modulus-Exponent (ME) and
Chinese Remainder Theorem (CRT)
formats
HCR77A0 V2R1
V1R13
V1R12
Cryptographic Support for
z/OS V1R12-V1R13
Included as a base
element of z/OS V2R1
zEC12 & CEX4S Support, including
Enterprise PKCS #11 (EP11)
KDS Administration support for the PKDS
(RSA-MK/ECC-MK) and TKDS (P11-MK)
including improved I/O performance on
these key datasets
24-byte DES Master Key support
New controls for weak key wrapping
DUKPT for MAC and Encryption Keys
FIPS compliant RNG and Random Number
cache
Secure Cipher Text Translate
EMV Enhancements for Amex