General Description
Purpose
This document describes how to use the DynaFlex II PED device in a secure manner. This includes information about key-management responsibilities, administrative responsibilities, device functionality, identification, and environmental requirements.
The use of the secure card reader in any manner not described in this security policy will invalidate the PCI PTS POI v6.2 approval of the device.
Product Name and Appearance
The front-facing sides of the DynaFlex II PED, including the model with an optional barcode reader (BCR), are shown in Figure 2-1 below. The Kiosk option does not alter the front appearance of the devices. The various bottom views of all devices are depicted in

Figure - DynaFlex II PED and DynaFlex II PED (BCR).

Figure - Bottom views of DynaFlex II PED, DynaFlex II PED (Kiosk), DynaFlex II PED (BCR), and DynaFlex II PED (BCR & Kiosk)
Product Type
The DynaFlex II PED device includes USB communications, magnetic stripe readers (MSR), contact chip card readers (ICCR), contactless card reader (CTLS), and a color display with touchscreen that provides PIN and manual account data entry as well as signature capture capabilities. DynaFlex II PED may also be purchased with an optional embedded barcode reader (BCR) or wireless WLAN communications module.
The DynaFlex II PED can be used as a desktop or handheld device. The Kiosk configuration uses a back cover intended for secure mounting, suitable for use in an unattended environment. All are approved as a PIN Entry Device (PED) device class under PCI PTS POI v6.2 requirements.
Usage in any other environment will invalidate the approval.
Identification
Hardware Identification
To find important product identification, look on the printed product label on the bottom face of the device as shown in Figure below. The device may need to be temporarily detached from stands or surfaces to view the label.
Do not remove or alter this label.

Figure - DynaFlex II PED Device Label Location
The printed label includes the following elements of device identification information, shown by the numbered callouts below:
Product name
PCI Hardware Identifier (“HW”)

The label also contains other supporting information about the device.
All DynaFlex II PED hardware configurations are listed in Table - PCI Hardware Identifier:
Table - PCI Hardware Identifier
PCI ID Tag
Configuration Description
40PCI4SU0xBx
DynaFlex II PED, USB
40PCI5SU0xBx
DynaFlex II PED, BCR, USB
40PCI4SW0xBx
DynaFlex II PED, USB/ WLAN
40PCI5SW0xBx
DynaFlex II PED, BCR, USB/ WLAN
40PCI4KU0xBx
DynaFlex II PED, Kiosk, USB
40PCI5KU0xBx
DynaFlex II PED, Kiosk, BCR, USB
40PCI4KW0xBx
DynaFlex II PED, Kiosk, USB/ WLAN
40PCI5KW0xBx
DynaFlex II PED, Kiosk, BCR, USB/ WLAN
40PCI4SU0xCx
DynaFlex II PED, USB
40PCI5SU0xCx
DynaFlex II PED, BCR, USB
40PCI4SW0xCx
DynaFlex II PED, USB/ WLAN
40PCI5SW0xCx
DynaFlex II PED, BCR, USB/ WLAN
40PCI4KU0xCx
DynaFlex II PED, Kiosk, USB
40PCI5KU0xCx
DynaFlex II PED, Kiosk, BCR, USB
40PCI4KW0xCx
DynaFlex II PED, Kiosk, USB/ WLAN
40PCI5KW0xCx
DynaFlex II PED, Kiosk, BCR, USB/ WLAN
40PCI4SU0xDx
DynaFlex II PED, USB
40PCI5SU0xDx
DynaFlex II PED, BCR, USB
40PCI4SW0xDx
DynaFlex II PED, USB/ WLAN
40PCI5SW0xDx
DynaFlex II PED, BCR, USB/ WLAN
40PCI4KU0xDx
DynaFlex II PED, Kiosk, USB
40PCI5KU0xDx
DynaFlex II PED, Kiosk, BCR, USB
40PCI4KW0xDx
DynaFlex II PED, Kiosk, USB/ WLAN
40PCI5KW0xDx
DynaFlex II PED, Kiosk, BCR, USB/ WLAN
Table – Hardware Versions with Description of Associated Variables
PCI Hardware ID Number
1
2
3
4
5
6
7
8
9
10
11
12
PCI Hardware ID Number
4
0
P
C
I
4
S
U
0
x
B
x
PCI Hardware ID Number
4
0
P
C
I
5
S
U
0
x
B
x
PCI Hardware ID Number
4
0
P
C
I
4
S
W
0
x
B
x
PCI Hardware ID Number
4
0
P
C
I
5
S
W
0
x
B
x
PCI Hardware ID Number
4
0
P
C
I
4
K
U
0
x
B
x
PCI Hardware ID Number
4
0
P
C
I
5
K
U
0
x
B
x
PCI Hardware ID Number
4
0
P
C
I
4
K
W
0
x
B
x
PCI Hardware ID Number
4
0
P
C
I
5
K
W
0
x
B
x
PCI Hardware ID Number
4
0
P
C
I
4
S
U
0
x
C
x
PCI Hardware ID Number
4
0
P
C
I
5
S
U
0
x
C
x
PCI Hardware ID Number
4
0
P
C
I
4
S
W
0
x
C
x
PCI Hardware ID Number
4
0
P
C
I
5
S
W
0
x
C
x
PCI Hardware ID Number
4
0
P
C
I
4
K
U
0
x
C
x
PCI Hardware ID Number
4
0
P
C
I
5
K
U
0
x
C
x
PCI Hardware ID Number
4
0
P
C
I
4
K
W
0
x
C
x
PCI Hardware ID Number
4
0
P
C
I
5
K
W
0
x
C
x
PCI Hardware ID Number
4
0
P
C
I
4
S
U
0
x
D
x
PCI Hardware ID Number
4
0
P
C
I
5
S
U
0
x
D
x
PCI Hardware ID Number
4
0
P
C
I
4
S
W
0
x
D
x
PCI Hardware ID Number
4
0
P
C
I
5
S
W
0
x
D
x
PCI Hardware ID Number
4
0
P
C
I
4
K
U
0
x
D
x
PCI Hardware ID Number
4
0
P
C
I
5
K
U
0
x
D
x
PCI Hardware ID Number
4
0
P
C
I
4
K
W
0
x
D
x
PCI Hardware ID Number
4
0
P
C
I
5
K
W
0
x
D
x
Table - Positions
Fixed Position
Variable “X” Position
Description of Fixed or Variable “X” in the Selection Position
1-2
40 = DynaFlex II PED
3-5
PCI = PCI Hardware
6
Front options
4 = Standard
5 = includes Barcode Reader
7
Back options S = Standard
K = Kiosk Mounting
8
Interface Options U = USB
W = USB + WLAN
9
Placeholder
0 = As certified.
10
Cover Color:
B = Black
G = Gray W = White
11
Version
B, C and D = as Certified
12
minor fixes not adding functionality or related to security (e.g., change component value for antenna matching):
0 = as certified
Firmware Identification
The most recent firmware versions for DynaFlex II PED are 1000008593-A1-PCI for the secure bootloader (Boot FW), 1000007537-AB0-PCI and 1000009711-AC0-PCI for the core firmware (Main FW), and 1000007537-AB0-PCI for the WLAN firmware (WLAN FW). The secure bootloader firmware version covers both the first stage (Boot0) permanently programmed into the device and the second stage (Boot1). Any changes to either Boot0 or Boot1 stages will result in a change to the Boot FW version that is visible to the user, reported by the device, and listed on the PCI Approved Devices website.
All device identification information, including firmware versions, exists as properties within the device. The host can retrieve these properties (Property Subgroup 2.1.2.2.nn Core Firmware Information) at any time using Command 0xD101 Get Property as described in D998200383 DynaFlex Products Programmer’s Manual (COMMANDS).
Note: MagTek will now use a two-character major revision designation when a new revision is released. For example, DynaFlex II PIN Entry Devices will have revision designations that increase in length from older to newer, Ax → AAx → ABx.
Table - Previous Main Firmware Version and Associated Variables (17 Position)
Firmware Number
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
1
0
0
0
0
0
8
5
9
2
-
A
x
-
P
C
I
Main FW
Fixed Position
Variable “x”
Position
Description of Fixed or Variable “x” in the Selected Position
1-10
1000008592 = DynaFlex II PED main firmware part number
12
A = Certified Version
13
Minor revisions, bug fixes
15-17
PCI = PCI version of firmware
Table - Main Firmware Version and Associated Variables
Firmware Number
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
1
0
0
0
0
0
8
5
9
2
-
A
A
x
-
P
C
I
1
0
0
0
0
0
8
5
9
2
-
A
B
x
-
P
C
I
1
0
0
0
0
0
9
7
1
1
-
A
B
x
-
P
C
I
1
0
0
0
0
0
8
5
9
2
-
A
C
x
-
P
C
I
1
0
0
0
0
0
9
7
1
1
-
A
C
x
-
P
C
I
Main FW
Fixed Position
Variable
“x”
Position
Description of Fixed or Variable “x” in the Selected Position
1-10
1000008592, 1000009711 = DynaFlex II PED main firmware part number
12-13
1000008592 - AA, AB and AC = Certified Version 1000009711 – AB and AC = Certified Version
14
Minor revisions, bug fixes
16-18
PCI = PCI version of firmware
Last updated

