z/OS Cryptographic Services ICSF Application Programmer's Guide
Previous topic | Next topic | Contents | Index | Contact z/OS | Library | PDF


ANSI X9.17 Partial Notarization Method

z/OS Cryptographic Services ICSF Application Programmer's Guide
SA22-7522-16

The ANSI X9.17 notarization process can be divided into two procedures:

  1. Partial notarization, in which the ANSI key-encrypting key (AKEK) is cryptographically combined with the origin and destination identifiers.
    Note:
    IBM defines this step as partial notarization. The ANSI X9.17 standard does not use the term partial notarization.
  2. Offsetting, in which the result of the first step is exclusive-ORed with a counter value. ICSF performs the offset procedure to complete the notarization process when you use a partially notarized AKEK.

This appendix describes partial notarization for the ANSI X9.17 notarization process.

Go to the previous page Go to the next page




Copyright IBM Corporation 1990, 2014