We use cookies to give you the best experience and to help improve our website

Find out what cookies we use and how to disable them

ISO/NP 25186 Financial services --Methods for the Generation, Change, and Verification of Card Security Code using the Advanced Encryption Standard

Scope

The scope of the proposed standard is to provide requirements and guidance for methods for generation, change, and verification of card authentication codes using at least 16-byte block ciphers or hash based MACs of equivalent strength, including time based/dynamic methods.

The following table of contents expresses the intended direction of the work effort, but would be anticipated to change as the work progresses:

Foreword

Introduction

1 Scope

2 Normative references

3 Terms and Definitions

4 Basic Principles

5 Generation and Verification of Card Security Code (CSC)

5.1 Introduction

5.2 Algorithm for CSC Annex A (informative) Worked Examples

Bibliography

Purpose

There is a global migration underway in financial services from the current default symmetric encryption standard TDES, which has been withdrawn by NIST, due to projected weakness, to AES. Industry stakeholders are requesting guidance on how to use AES and other 16-byte ciphers in the production of card security codes.

Comment on proposal

Required form fields are indicated by an asterisk (*) character.


Please email further comments to: debbie.stead@bsigroup.com

Follow standard

You are now following this standard. Weekly digest emails will be sent to update you on the following activities:

You can manage your follow preferences from your Account. Please check your mailbox junk folder if you don't receive the weekly email.

Unfollow standard

You have successfully unsubscribed from weekly updates for this standard.

Error