payShield host commands

Key management

payShield A0 — Generate Key

answers with A1

Generate, generate + export under a ZMK/TMK, or derive via DUKPT (Modes 0/1/A/B) — the key is returned as a key block under the LMK

On the wire

Complete host messages. Each runs against the KeyLab simulator as printed. The header is four zeros here; the device echoes back whatever you send.

Generate a key

0000A00FFFS%00#P0A3N00S00

4-char headercommand19 chars of fields
Generate + export under ZMK

0000A01FFFSS10096K0TE00N00000663F8250BF0FF91DF4C91CCB0256EC24387973879ADD7A13A565AA103BF7B2DB0ADCB419A4D5115S%00#P0A3N00S00

4-char headercommand117 chars of fields
Derive IPEK from BDK (DUKPT)

0000A0AFFFS01S10128B0AX00S00017FBA12044BF201F91B07CE63E55A15AFEB3A7C4A78F45BFD5BD35987C668A2061D8E679A1C3EFFCC47175518D77B99BF2EBFE9F3AE294A8EFF00002000000001%00#B1A1N00S00

4-char headercommand166 chars of fields
Derive + export under ZMK

0000A0BFFFS01S10128B0AX00S00017FBA12044BF201F91B07CE63E55A15AFEB3A7C4A78F45BFD5BD35987C668A2061D8E679A1C3EFFCC47175518D77B99BF2EBFE9F3AE294A8EFF00002000000001S10096K0TE00N00000663F8250BF0FF91DF4C91CCB0256EC24387973879ADD7A13A565AA103BF7B2DB0ADCB419A4D5115S%00#B1A1N00S00

4-char headercommand264 chars of fields
Send A0 to the simulator

Opens the simulator with this command already filled in.

Key management