c4

Revised:  January 25, 2005.



Revised:  February 15, 2005.



2c12



6c16



0c20



4c24



6c26



8c28



21,322d320

Maximum


Not applicable.


09a508
3584-HA1 |X| IBM TotalStorage 3584 High Availability Frame Model HA1

54c653,654
4963 |A| PCI Cryptographic Coprocessor (FIPS-4)
4963 |N| PCI Cryptographic Coprocessor (FIPS-4)
4964 |A| PCI Cryptographic Coprocessor

49c749



56c756



60c760



64c764



69c769



73c773



225,1226c1225,1226

Physical Specifications



Physical Specifications



250,1251c1250,1251

Operating Environment



Operating Environment



330,1331c1330,1331

Limitations



Limitations



843,1844c1843,1844

Hardware Requirements



Hardware Requirements



875,1876c1875,1876

Software Requirements



Software Requirements



887c1887



934c1934



941c1941



945c1945



949c1949



954,1955c1954,1955

No Charge Specify Codes



No Charge Specify Codes



031,2032c2031,2032

Special Feature Codes -- Chargeable



Special Feature Codes -- Chargeable



078a2079
  • (#4964) - PCI Cryptographic Coprocessor

    993a3995

    (No Longer Available as of February 8, 2005)


    063a4066,4142

    (#4964) PCI Cryptographic Coprocessor


    The IBM PCI Cryptographic Coprocessor is a 2/3 length PCI adapter
    combining hardware and software designed to provide high performance
    hardware engines for secure internet transactions such as
    data exchange, verifying electronic signatures, bulk data encryption
    and decryption. Cryptographic processes are performed within a tamper
    resistant enclosure on the adapter that is designed to meet FIPS PUB
    140-1 standard for commercial cryptographic devices at Level 3.

    Security functions supported by the adapter includes:


    • Data Encryption Standard (DES) (56 and 40 bit keys) encryption and
      decryption, with pre- and post-padding; the coprocessor uses both
      electronic and codebook (ECB) and cipher block chain (CBC) modes of
      encryption.
    • Message Authentication (MAC) and financial PIN processing
    • Triple DES encryption and decryption of general data
    • RSA key-pair generation
    • RSA signature generation and signature verification
    • Secure Hashing Algorithm (SHA-1) in hardware
    • Hardware random number generation
    • Protected data storage and retrieval
    • Other non-cryptographic security utilities can be carried out
      using the onboard processor

    IBM offers software to enable your use of the Coprocessors. Two
    different approaches to cryptographic functions are offered for
    download from:


    http://www.ibm.com/security/cryptocards


    • PKCS #11 Version 2.01, an implementation of the industry-standard
      API
    • IBM Common Cryptographic Architecture (CCA), featuring support of
      special interest to the finance industry.

    Under custom contract, IBM also offers toolkits that you can employ
    to develop extensions to the CCA offering and to develop your own
    application to exploit the secure computing environment and
    cryptographic hardware. For more information on custom contracts,
    refer to:


    http://www.ibm.com/security/cryptocards.

    For additional information on the IBM PCI Cryptographic Coprocessor,
    refer to the following World Wide Web page:


    Limitations:


    • The IBM PCI Cryptographic Coprocessor Adapter is a field only
      installed device in order to meet restrictive shipping requirements.

    Note: This adapter may have AIX 5.1 support limitations. Go to the
    following URL to view the latest AIX 5.1 support limitation statements:


    http://www.ibm.com/servers/aix/os/adapters/51.html



    • Attributes provided: Data encryption via PCI bus to host
    • Attributes required: 1 PCI slot
    • For 7039-651: (#4964)

      • Minimum required: 0
      • Maximum allowed: 3 (Initial order maximum: 3 )
      • OS level required: AIX V5.1 or higher.
        For Linux informaion, refer to:
        http://www.ibm.com/servers/eservers/pseries/hardware/
        factsfeatures.html
         


      • Initial Order/MES/Both/Supported: Both
      • CSU: No
      • Return parts MES: No



    826,5827c5905,5906

    Feature Exchanges



    Feature Exchanges



    833c5912



    845c5924



    855c5934



    863c5942