This topic describes how to use the Master Key Entry panels to
enter master keys in a cryptographic hardware feature. Each feature
is capable of performing cryptographic functions and holding master
keys within a secure boundary.
Cryptographic features depends on your system configuration. Here
are the CCA coprocessors, the servers that they are available on,
and the supported master keys:
- z990 and z890: PCIXCC and CEX2C: DES and RSA.
- z9 EC and z9 BC: CEX2C: AES, DES, and RSA.
- z10 EC and z10 BC: CEX2C and CEX3C: AES, DES, ECC, and RSA.
- z114 and z196: CEX3C: AES, DES, ECC, and RSA.
- zEC12 and zBC12: CEX3C and CEX4C: AES, DES, ECC, and RSA.
- IBM z13:
CEX5C: AES, DES, ECC, and RSA.
Note: The cryptographic accelerators improve clear key RSA operation
performance. They do not require the setting of master keys.