96 Chapter 9 Key Architecture
Section 9.5 Security Options
9.5.1 Prompts Authentication Key Options
This option controls whether the prompt authentication keys are based on the terminal or
the application. These options will be used when doing any secure data entry.
When prompt MACing is enabled and the prompts authentication key security option is set
to 0 (terminal based), at data entry time, the secure text and clear text prompts will be
verified with the terminal-based special keys.
When prompt MACing is enabled and the prompts authentication key security option is set
to 1 (application based), at data entry time, the secure text and clear text prompts will be
verified with application based special keys.
Possible Values Description
0 Prompts authentication key is terminal based.
If Prompt MACing is also enabled, the form’s prompt display will be
authenticated by the terminal-based clear text key and security text
key. (Default)
1 Prompts authentication key is application based.
The form's prompt display is authenticated by an application-based
clear text key or a security text key.
9.5.2 Change Terminal ID Option
This option controls the financial keys existence once the terminal ID is re-loaded.
Possible Values Description
0 Changing Terminal ID will not erase all keys. (Default)
Once the terminal ID is re-injected through the key injection
process, the existing keys will be retained.
1 Changing Terminal ID will erase the keys.
Once the terminal ID is re-injected, all of the financial keys,
including Master/Session and DUKPT keys, will be erased.
9.5.3 Prompt MACing
Prompt MACing controls how a data entry form’s display prompts are shown.
Possible
Values
Status Description
0 Disabled Prompts are not authenticated before being displayed the
screen. (Default)
1 Enabled Prompts are authenticated and then displayed on the
screen.