Back

Install secret information into the hardware security module during manufacturing.


CONTROL ID
12249
CONTROL TYPE
Systems Design, Build, and Implementation
CLASSIFICATION
Preventive

SUPPORTING AND SUPPORTED CONTROLS




This Control directly supports the implied Control(s):
  • Implement a hardware security module, as necessary., CC ID: 12222

This Control has the following implementation support Control(s):
  • Install secret information into the hardware security module so that it can only be verified by the initial-key-loading facility., CC ID: 12272
  • Install secret information under dual control into the hardware security module., CC ID: 12257


SELECTED AUTHORITY DOCUMENTS COMPLIED WITH




  • If the HSM will be authenticated at the facility of initial deployment by means of secret information placed in the device during manufacturing, this secret information is unique to each HSM, unknown and unpredictable to any person, and installed in the HSM. Secret information is installed under dua… (D6, Payment Card Industry (PCI), PIN Transaction Security (PTS) Hardware Security Module (HSM) - Security Requirements, Version 2.0)
  • If the device will be authenticated at the facility of initial deployment by means of secret information placed in the device during manufacturing, this secret information is unique to each device, unknown and unpredictable to any person, and installed in the device. Secret information is installed … (I6, Payment Card Industry (PCI), PIN Transaction Security (PTS) Hardware Security Module (HSM) - Security Requirements, Version 3.0)