How to test that AES256 is working.
search cancel

How to test that AES256 is working.

book

Article ID: 272644

calendar_today

Updated On:

Products

Top Secret

Issue/Introduction

 What does Broadcom recommend to test the validity of AES256. 

Environment

Release : 16.0

Resolution

Issue TSS MODIFY STATUS to make sure that AES256 shows. 

MAX_ACID_SIZE(0256K)
 RDT2BYTE(Active)
 NEW_PASSWORD(Active)
 VSAM_DIGICERT(Active)

AES_ENCRYPTION(Active,256)
 LARGE_VSAM_RECORD(Inactive)
 EXPAND_COUNTER(Inactive)
TSS9661I        CA Top Secret PHRASE   Status
 NEWPHRASE(MIN=09,MAX=100,WARN=03,MINDAYS=00,SC=00,MA=00,MN=00)
 PSWDPHRASE(ON )                                        NPPTHRESH(02)
 PPEXP(030)                 PPHIST(03)
TSS9661I        CA Top Secret PASSWORD Status
 NEWPW(MIN=04,MAX=008,WARN=04,MINDAYS=01,NR=1,ID,TS,RS,RT,FA,FN)
 HPBPW(009)                 MSUSPEND(YES)               NPWRTHRESH(2)
 PWEXP(030)                 PWHIST(03)                  PTHRESH(002)
 PWVIEW(NO)
 PWVERIFY(NO)               PWENC(AES )                 PWADMIN(NO)

AESENC(256)                AESCACHE(OFF)

There is no way to test that it is working. 

 

Additional Information

Implement 256-Bit AES Encryption for Passwords and Password Phrases