<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Hardware Security Module, Information Security Systems, HSM</title>
	<atom:link href="http://www.hardwaresecurity.info/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.hardwaresecurity.info</link>
	<description>Hardware Security Module</description>
	<lastBuildDate>Sat, 27 Nov 2010 00:59:07 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.0.1</generator>
		<item>
		<title>Database Security for SQL Server</title>
		<link>http://www.hardwaresecurity.info/database-security-for-sql-server/</link>
		<comments>http://www.hardwaresecurity.info/database-security-for-sql-server/#comments</comments>
		<pubDate>Sat, 27 Nov 2010 00:58:36 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Database Security]]></category>
		<category><![CDATA[data encryption]]></category>
		<category><![CDATA[database]]></category>
		<category><![CDATA[database structures]]></category>
		<category><![CDATA[payment card]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[sql server]]></category>

		<guid isPermaLink="false">http://www.hardwaresecurity.info/?p=68</guid>
		<description><![CDATA[Databases are a significant repository of sensitive information in most organizations. Corporate databases contain customers’ credit card data, confidential competitive information, and intellectual property. Lost or stolen data puts organizations at significant risk of reputation and brand damage as well as serious fines. By protecting critical data from both internal and external threats, organizations mitigate the risk of data breaches and comply [...]]]></description>
			<content:encoded><![CDATA[<div id="_mcePaste">Databases are a significant repository of sensitive information in most organizations. Corporate databases contain customers’ credit card data, confidential competitive information, and intellectual property. Lost or stolen data puts organizations at significant risk of reputation and brand damage as well as serious fines. By protecting critical data from both internal and external threats, organizations mitigate the risk of data breaches and comply with regulatory and legislative mandates, including the Payment Card Industry Data Security Standard (PCI DSS).</div>
<div>Microsoft SQL Server 2008 ships with two built-in encryption features to protect your data: transparent data encryption (TDE) and cell-level encryption. These functions enable you to either protect the entire database or to secure only sensitive database fields and can be activated without disrupting your current applications, database structures, and processes.</div>
]]></content:encoded>
			<wfw:commentRss>http://www.hardwaresecurity.info/database-security-for-sql-server/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Which companies can they need to HSM?</title>
		<link>http://www.hardwaresecurity.info/which-companies-can-they-need-to-hsm/</link>
		<comments>http://www.hardwaresecurity.info/which-companies-can-they-need-to-hsm/#comments</comments>
		<pubDate>Mon, 22 Nov 2010 21:30:04 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[HSM]]></category>
		<category><![CDATA[banks]]></category>
		<category><![CDATA[debit]]></category>
		<category><![CDATA[EMV]]></category>
		<category><![CDATA[hsm applications]]></category>
		<category><![CDATA[mobile telecom]]></category>
		<category><![CDATA[more capacity]]></category>

		<guid isPermaLink="false">http://www.hardwaresecurity.info/?p=62</guid>
		<description><![CDATA[New “banks” – retailers, mobile telecom operators, overhauling/moving/consolidating their data centre, changing their payments or issuing software, introducing new applications (debit, EMV), going for in-house card issuing and need to more capacity, introduce new applications. Source : Thales For more information please visit their website.]]></description>
			<content:encoded><![CDATA[<div>New “banks” – retailers, mobile telecom operators, overhauling/moving/consolidating their data centre, changing their payments or issuing software, introducing new applications (debit, EMV), going for in-house card issuing and need to more capacity, introduce new applications.</div>
<p>Source : Thales<br />
For more information please visit their website.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.hardwaresecurity.info/which-companies-can-they-need-to-hsm/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Why use a payment HSM?</title>
		<link>http://www.hardwaresecurity.info/why-use-a-payment-hsm/</link>
		<comments>http://www.hardwaresecurity.info/why-use-a-payment-hsm/#comments</comments>
		<pubDate>Mon, 22 Nov 2010 21:24:00 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[HSM]]></category>
		<category><![CDATA[amex]]></category>
		<category><![CDATA[application]]></category>
		<category><![CDATA[crypto]]></category>
		<category><![CDATA[external attack]]></category>
		<category><![CDATA[host computer]]></category>
		<category><![CDATA[mastercard]]></category>
		<category><![CDATA[right technology]]></category>
		<category><![CDATA[visa]]></category>

		<guid isPermaLink="false">http://www.hardwaresecurity.info/?p=59</guid>
		<description><![CDATA[To offload crypto work from the host computer? No, easy enough to do on the host. To make application development easier &#38; faster? No,  could use a software library on the host. Because someone’s wielding a big stick? Yes, Card schemes (Visa, Mastercard, Amex, etc.) mandate that crypto must be done in a separate hardware [...]]]></description>
			<content:encoded><![CDATA[<div><strong>To offload crypto work from the host computer?</strong></div>
<div>No, easy enough to do on the host.</div>
<div><strong>To make application development easier &amp; faster?</strong></div>
<div>No,  could use a software library on the host.</div>
<div><strong>Because someone’s wielding a big stick?</strong></div>
<div>Yes, Card schemes (Visa, Mastercard, Amex, etc.) mandate that crypto must be done in a separate hardware module, because This provides better security, Right technology/processes and Protection against external attack than protection against insider attack.</div>
]]></content:encoded>
			<wfw:commentRss>http://www.hardwaresecurity.info/why-use-a-payment-hsm/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Security Module Functions</title>
		<link>http://www.hardwaresecurity.info/security-module-functions/</link>
		<comments>http://www.hardwaresecurity.info/security-module-functions/#comments</comments>
		<pubDate>Tue, 16 Nov 2010 21:49:40 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[HSM]]></category>
		<category><![CDATA[digital signatures]]></category>
		<category><![CDATA[encrypting]]></category>
		<category><![CDATA[functions]]></category>
		<category><![CDATA[hardware]]></category>
		<category><![CDATA[hardware security module]]></category>
		<category><![CDATA[security module]]></category>
		<category><![CDATA[smart card]]></category>

		<guid isPermaLink="false">http://www.hardwaresecurity.info/?p=56</guid>
		<description><![CDATA[• Generating digital certificates, including public/private key pairs • Encrypting and decrypting messages with those keys • Generating hash values and signing messages with digital signatures • Validating digital signatures • Interoperating with third-party applications • Protecting certificates and keys from both physical and network-based attacks • Issuing and accepting requests for key materials • [...]]]></description>
			<content:encoded><![CDATA[<p>• Generating digital certificates, including public/private key pairs<br />
• Encrypting and decrypting messages with those keys<br />
• Generating hash values and signing messages with digital signatures<br />
• Validating digital signatures<br />
• Interoperating with third-party applications<br />
• Protecting certificates and keys from both physical and network-based attacks<br />
• Issuing and accepting requests for key materials<br />
• Providing a two-level secure user interface (i.e. smart card reader and key pad)</p>
]]></content:encoded>
			<wfw:commentRss>http://www.hardwaresecurity.info/security-module-functions/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Advantages of Hardware Security Modules</title>
		<link>http://www.hardwaresecurity.info/advantages-of-hardware-security-modules/</link>
		<comments>http://www.hardwaresecurity.info/advantages-of-hardware-security-modules/#comments</comments>
		<pubDate>Tue, 16 Nov 2010 21:46:53 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[HSM]]></category>
		<category><![CDATA[advantages]]></category>
		<category><![CDATA[attack over]]></category>
		<category><![CDATA[hardware security module]]></category>
		<category><![CDATA[isolated]]></category>

		<guid isPermaLink="false">http://www.hardwaresecurity.info/?p=53</guid>
		<description><![CDATA[HSMs are physically isolated. They are not part of another computer&#8217;s file system, they do not have a file system themselves, and they do not run an operating system. They are therefore virtually impossible to attack over a network. Most HSMs also offer tamper protection so that if someone attempts to open the module, the [...]]]></description>
			<content:encoded><![CDATA[<p>HSMs are physically isolated. They are not part of another computer&#8217;s file system, they do not have a file system themselves, and they do not run an operating system. They are therefore virtually impossible to attack over a network. Most HSMs also offer tamper protection so that if someone attempts to open the module, the information inside will be erased. In addition, HSMs offer safeguards against software tampering. Another major advantage of HSMs is that, because their software and hardware is specifically dedicated to providing security functions, it can be specifically optimised for that purpose. HSMs perform security functions faster and with superior results than their software counterparts. For example, one of the processes at the heart of certificate generation and validation is the generation of random numbers. HSMs have dedicated hardware specifically designed to generate random numbers and they can therefore generate numbers that have greater randomness than would be the case if the hardware were not specifically designed for that purpose.</p>
<p>Source: AEP systems</p>
]]></content:encoded>
			<wfw:commentRss>http://www.hardwaresecurity.info/advantages-of-hardware-security-modules/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>ATM interchange</title>
		<link>http://www.hardwaresecurity.info/atm-interchange/</link>
		<comments>http://www.hardwaresecurity.info/atm-interchange/#comments</comments>
		<pubDate>Tue, 16 Nov 2010 21:27:24 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[HSM]]></category>
		<category><![CDATA[hsm applications]]></category>

		<guid isPermaLink="false">http://www.hardwaresecurity.info/?p=49</guid>
		<description><![CDATA[HSM is designed for the ATM interchange environment and can be customized to suit individual networks and, if needed, the particular requirements of each member of the network. The wide variety of host interface options and PIN management commands available in the payShield 9000 family means that the specific needs of each member&#8217;s system can [...]]]></description>
			<content:encoded><![CDATA[<p>HSM is designed for the ATM interchange environment and can be customized to suit individual networks and, if needed, the particular requirements of each member of the network. The wide variety of host interface options and PIN management commands available in the payShield 9000 family means that the specific needs of each member&#8217;s system can be readily accommodated. In particular, specific functions designed around AMEX, Visa and MasterCard processing requirements are an integral part of the core software packages.</p>
<p>Source : Thales<br />
For more information please visit their website.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.hardwaresecurity.info/atm-interchange/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Introducing payShield9000</title>
		<link>http://www.hardwaresecurity.info/introducing-payshield9000/</link>
		<comments>http://www.hardwaresecurity.info/introducing-payshield9000/#comments</comments>
		<pubDate>Sat, 13 Nov 2010 20:32:46 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[HSM]]></category>
		<category><![CDATA[advantages]]></category>
		<category><![CDATA[crypto]]></category>
		<category><![CDATA[host security module]]></category>
		<category><![CDATA[specifications]]></category>
		<category><![CDATA[technical]]></category>

		<guid isPermaLink="false">http://www.hardwaresecurity.info/?p=44</guid>
		<description><![CDATA[Designed specifically to secure card payment systems First payment HSM with high resilience features Market leading performance of 1500 tps using key blocks Banking grade security designed to meet the latest FIPS and PCI HSM security standards Scalable remote management lowering operating costs Modular software with field-upgradeable functionality Backwards compatible with Thales RG7000 and HSM [...]]]></description>
			<content:encoded><![CDATA[<ul>
<li>Designed specifically to secure card payment systems</li>
<li>First payment HSM with high resilience features</li>
<li>Market leading performance of 1500 tps using key blocks</li>
<li>Banking grade security designed to meet the latest FIPS and PCI HSM security standards</li>
<li>Scalable remote management lowering operating costs</li>
<li>Modular software with field-upgradeable functionality</li>
<li>Backwards compatible with Thales RG7000 and HSM 8000</li>
<li>Range of support services including software customization</li>
</ul>
<p>Source : Thales<br />
For more information please visit their website.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.hardwaresecurity.info/introducing-payshield9000/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Thales HSM&#8217;s advantages</title>
		<link>http://www.hardwaresecurity.info/thales-hsms-advantages/</link>
		<comments>http://www.hardwaresecurity.info/thales-hsms-advantages/#comments</comments>
		<pubDate>Sat, 13 Nov 2010 20:19:53 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[HSM]]></category>
		<category><![CDATA[advantages]]></category>
		<category><![CDATA[hsm security]]></category>
		<category><![CDATA[payment hsm]]></category>
		<category><![CDATA[payshield9000]]></category>
		<category><![CDATA[protect]]></category>

		<guid isPermaLink="false">http://www.hardwaresecurity.info/?p=29</guid>
		<description><![CDATA[• Involved in securing over 70% of the world&#8217;s payment card transactions • Deployed by leading card schemes and payment processors for a variety of key management, payment switching and authorisation purposes • Capable of being fully managed remotely from the data centre • Proven in delivering strong security for ATM, POS, corporate banking, card [...]]]></description>
			<content:encoded><![CDATA[<p>• Involved in securing over 70% of the world&#8217;s payment card transactions<br />
• Deployed by leading card schemes and payment processors for a variety of key<br />
management, payment switching and authorisation purposes<br />
• Capable of being fully managed remotely from the data centre<br />
• Proven in delivering strong security for ATM, POS, corporate banking, card issuing, funds<br />
transfer and share trading systems<br />
• Easy to customise for individual user applications<br />
• Designed to support a wide range of host interface connectivity options<br />
• Available in various performance variants to match user transaction processing<br />
requirements<br />
• Upgradeable in terms of functionality through secure auditable software license downloads<br />
• Integrated with all major payment applications provided by leading vendors<br />
• Independently certified to the most rigorous global and national security standards</p>
<p>Source : Thales<br />
For more information please visit their website.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.hardwaresecurity.info/thales-hsms-advantages/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>HSM Introduction</title>
		<link>http://www.hardwaresecurity.info/hsm-introduction/</link>
		<comments>http://www.hardwaresecurity.info/hsm-introduction/#comments</comments>
		<pubDate>Sat, 13 Nov 2010 20:12:05 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[HSM]]></category>
		<category><![CDATA[hardware security module]]></category>
		<category><![CDATA[hsm security]]></category>
		<category><![CDATA[payshield9000]]></category>
		<category><![CDATA[thales]]></category>

		<guid isPermaLink="false">http://www.hardwaresecurity.info/?p=26</guid>
		<description><![CDATA[As an organisation in the payment card industry, you face the challenges of supporting increases in transaction volumes, replacing magnetic stripe cards with contact and/or contactless smart cards, securing remote delivery channels such as mobile or internet while still needing to differentiate your services for competitive advantage. The constant need to defeat new security threats [...]]]></description>
			<content:encoded><![CDATA[<p>As an organisation in the payment card industry, you face the challenges of supporting increases in transaction volumes, replacing magnetic stripe cards with contact and/or contactless smart cards, securing remote delivery channels such as mobile or internet while still needing to differentiate your services for competitive advantage. The constant need to defeat new security threats is a major consideration in your IT investment year-on-year. In addition to the increasing burden of regulation, your solutions must incorporate cryptographic security that meets the latest payment card industry (PCI) mandates and is able to grow and adapt to support your emerging needs.</p>
<p>The payShield 9000, the latest hardware security module (HSM) from Thales, meets these challenges. Its software options address the needs of card issuers, merchant acquirers, switches, third party payment processors, card schemes and ATM network providers. The core security component of the payShield 9000, which delivers the critical security functionality, is designed to exceed the requirements of FIPS 140-2 Level 3 &#8211; the most widely adopted certification standard for cryptographic modules which is mandated by the card schemes. The payShield 9000 is fully backward compatible with the HSM 8000 and RG7000 ranges which it succeeds.</p>
<p>Source : Thales<br />
For more information please visit their website.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.hardwaresecurity.info/hsm-introduction/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>HSM Technical specifications</title>
		<link>http://www.hardwaresecurity.info/hsm-technical-specifications/</link>
		<comments>http://www.hardwaresecurity.info/hsm-technical-specifications/#comments</comments>
		<pubDate>Sat, 13 Nov 2010 15:24:53 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[HSM]]></category>
		<category><![CDATA[hsm]]></category>
		<category><![CDATA[protect]]></category>
		<category><![CDATA[specifications]]></category>
		<category><![CDATA[technical]]></category>

		<guid isPermaLink="false">http://www.hardwaresecurity.info/?p=19</guid>
		<description><![CDATA[Key management &#62; Multiple Master Keys for secure storage and distribution of keys. Separation of different key types, applications or clients, and of development and production use &#62; ANSI TR-31 Key Block support &#62; RSA Public Key &#62; DUKPT (DES and Triple-DES) &#62; Master/Session Key &#62; Racal Transaction Key &#62; Australian Transaction Key (DES and [...]]]></description>
			<content:encoded><![CDATA[<p><strong>Key management</strong><br />
&gt; Multiple Master Keys for secure storage and distribution of keys. Separation of different key types, applications or clients, and of development and production use<br />
&gt; ANSI TR-31 Key Block support<br />
&gt; RSA Public Key<br />
&gt; DUKPT (DES and Triple-DES)<br />
&gt; Master/Session Key<br />
&gt; Racal Transaction Key<br />
&gt; Australian Transaction Key (DES and Triple-DES)<br />
<strong>Cryptographic support</strong><br />
&gt; DES and Triple-DES (two and three key)<br />
&gt; RSA<br />
<strong>Performance</strong><br />
&gt; Range of performance models up to 800<br />
<strong>Triple-DES pin block translates/sec.</strong><br />
&gt; Multi-threading to exploit full capacity<br />
&gt; Clustering capability<br />
<strong>Host connectivity</strong><br />
&gt; Asynchronous (v.24, RS-232)<br />
&gt; TCP/IP &amp; UDP (10/100 Base-T)<br />
&gt; SNA (v.24, RS-232)<br />
&gt; ESCON<br />
<strong>Certifications</strong><br />
&gt; Secure Generic Sub-System (SGSS) certified at FIPS 140-2 Level 3<br />
&gt; RoHS<br />
&gt; MEPS<br />
<strong>Financial industry standards</strong><br />
&gt; VISA/MasterCard/American Express PIN and Card Verification functions<br />
&gt; EMV 3.1.1, 4.0, and 4.1 transactions and messaging (inc. PIN Change)<br />
&gt; Remote Key Loading to NCR, Diebold and Wincor Nixdorf ATMs<br />
&gt; Europay Security Platform<br />
&gt; VISA Cash, CLIP, and VCEPS electronic purse<br />
&gt; Integration with all major payment authorisation and transaction switching applications<br />
<strong>Management facilities</strong><br />
&gt; Console interface for “dumb” terminals<br />
&gt; Graphical User Interface option for standard PC hardware over Ethernet<br />
&gt; Host applications able to manage clusters of HSM 8000s<br />
<strong>Security</strong><br />
&gt; Two-Factor Authentication of operators using Smart Cards<br />
&gt; Dual physical locks control setting of modes<br />
&gt; Tamper-resistance certified to FIPS 140-2<br />
<strong>Level 3</strong><br />
&gt; Detection of removal of covers<br />
&gt; Disabling of functionality not required</p>
<p>Source : Thales<br />
For more information please visit their website.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.hardwaresecurity.info/hsm-technical-specifications/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

