Master-key verification algorithms

The CEX*C implementations employ triple-length DES and PKA master keys (three DES keys) that are internally represented in 24 bytes (168 bits).

Beginning with Release 4.1.0, the CEX*C employs an APKA master key represented in 32 bytes (256 bits). Verification patterns on the contents of the new, current, and old master-key registers can be generated and verified when the selected register is not in the empty state. For the AES master key, the SHA-256 verification method is used.

The CEX*C employ several verification pattern generation methods.