Move/3500 PCI PTS Security Policy
Ingenico document - Please check document validity before using
1_3 References
[1]
ANS X9.24 Part 2: 2016, Retail Financial Services Symmetric Key Management Part 2:
Using Asymmetric Techniques for the Distribution of Symmetric Keys
[2]
ANS X9.24 - 1: 2017, Retail Financial Services Symmetric Key Management Part 1: Using
Symmetric Techniques
[3]
ANS X9.24 - 3: 2017, Retail Financial Services Symmetric Key Management Part 1: Unique
Key Per Transaction
[4]
X9 TR-31 2018, Interoperable Secure Key Exchange Key Block Specification for Symmetric
Algorithms
[5]
ISO 9564-1, Financial services — Personal Identification Number (PIN) management and
security — Part 1: Basic principles and requirements for PINs in card-based systems
[6]
ISO 9564-2, Banking — Personal Identification Number management and security Part 2:
Approved algorithms for PIN encipherment
[7]
PCI PTS POI Derived Test Requirements V5.1 – March 2018
[8]
Ingenico Move/3500 Installation guide
[9]
Ingenico ICO-OPE-01390, Package IP: Security guidance user’s guide
[10]
Ingenico ICO-OPE-01391, Package SSL: Security guidance user’s guide
[11]
Ingenico ICO-OPE-01935, Secure Reading and Exchange of Data security guidance
Notes:
[8] is delivered to the end user.
[9], [10], [11] are delivered to authorized software developers:
2_Introduction
This document addresses the proper use of the POI in a secure manner including information about
key-management responsibilities, administrative responsibilities, device functionality, identification and
environmental requirements.
The use of the device in an unapproved method, as described in the security policy, will violate the
PCI PTS v5.1 approval of the device.