Financial HSM
Financial HSM
■ Product Introduction and Features
Financial HSM is a specific cryptographic equipment developed by Sansec. It mainly provides cryptography-based protection for IC, like social security card and especially for ATM / POS networking information system of inter-bank transactions in the financial system. It can reliably and safely protect the pin (personal identification number) in the financial network and effectively prevent the fraud of fake card. It has a perfect key management system, which can effectively prevent active attacks on the communication channel.
■ Application Scenario
Cryptographic Algorithm Support
Chinese cryptographic algorithm: SM1, SM2, SM3 and SM4
International cryptographic algorithm: RSA, 3DES, AES, SHA1, SHA256 and SHA 512
Key Management
Key generation (Level 2 and 3 commercial cryptographic modules by State Cryptography Administration), storage, backup, and restoration.
Message Integrity Assurance
MAC calculation and verification
Transaction Validity Assurance
TAC calculation and verification
Personal PIN Assurance
PINBLOCK encryption, conversion, verification, etc.
Personal Validity verification
PW calculation and verification
Card Validity Vedification
CW calculation and verification
Financial Parameter Verification
ARQC generation, ARPC verification, etc.
PIN, Key and Data Encryption
Encrypted Envelope Printing
■ Product Functions
System security
Financial HSMs protect the system through the authorization and authentication provided by the HSMs to the application server based on the whitelist and cryptography.
Key Security
Adopt the three-layer key structure: "System Protection Key-User Key-Session Key", fully guarantee the security of keys and application systems
High Availability
Cluster load mode to ensure business redundancy, Redundant power supply to ensure continuous equipment operation, multi-network port active and standby binding to ensure network redundancy
Compliance
Meet various financial parameter verification requirement and PBOC(China financial integrated circuit (IC) card specification).
■ Application Diagram
■ 产品规格
产品型号 |
SecHSM-Pay 310 |
SecHSM-Pay 510 |
SecHSM-Pay 710 |
外观规格 |
2U |
2U |
2U |
SM2签名/验签(次/秒) |
4500/2000 |
10000/3900 |
32000/29000 |
SM4算法加解密(Mbps) |
850 |
850 |
2000 |
SM3杂凑算法(Mbps) |
850 |
850 |
2000 |
SM4 PIN转换(次/秒) |
25000 |
25000 |
40000 |
SM4 MAC计算(次/秒)128字节 |
50000 |
50000 |
90000 |
注:仅供参考,实际交付以合同为准
Previous Page
Next Page
Previous Page
Next Page