For the complete documentation index, see llms.txt. This page is also available as Markdown.

General Description

Purpose

This document describes how to use the DynaFlex II PED device in a secure manner. This includes information about key-management responsibilities, administrative responsibilities, device functionality, identification, and environmental requirements.

The use of the secure card reader in any manner not described in this security policy will invalidate the PCI PTS POI v6.2 approval of the device.

Product Name and Appearance

The front-facing sides of the DynaFlex II PED, including the model with an optional barcode reader (BCR), are shown in Figure 2-1 below. The Kiosk option does not alter the front appearance of the devices. The various bottom views of all devices are depicted in

Figure - DynaFlex II PED and DynaFlex II PED (BCR).

Figure - Bottom views of DynaFlex II PED, DynaFlex II PED (Kiosk), DynaFlex II PED (BCR), and DynaFlex II PED (BCR & Kiosk)

Product Type

The DynaFlex II PED device includes USB communications, magnetic stripe readers (MSR), contact chip card readers (ICCR), contactless card reader (CTLS), and a color display with touchscreen that provides PIN and manual account data entry as well as signature capture capabilities. DynaFlex II PED may also be purchased with an optional embedded barcode reader (BCR) or wireless WLAN communications module.

The DynaFlex II PED can be used as a desktop or handheld device. The Kiosk configuration uses a back cover intended for secure mounting, suitable for use in an unattended environment. All are approved as a PIN Entry Device (PED) device class under PCI PTS POI v6.2 requirements.

Usage in any other environment will invalidate the approval.

Identification

Hardware Identification

To find important product identification, look on the printed product label on the bottom face of the device as shown in Figure below. The device may need to be temporarily detached from stands or surfaces to view the label.

Figure - DynaFlex II PED Device Label Location

The printed label includes the following elements of device identification information, shown by the numbered callouts below:

  • Product name

  • PCI Hardware Identifier (“HW”)

The label also contains other supporting information about the device.

All DynaFlex II PED hardware configurations are listed in Table - PCI Hardware Identifier:

Table - PCI Hardware Identifier

PCI ID Tag

Configuration Description

40PCI4SU0xBx

DynaFlex II PED, USB

40PCI5SU0xBx

DynaFlex II PED, BCR, USB

40PCI4SW0xBx

DynaFlex II PED, USB/ WLAN

40PCI5SW0xBx

DynaFlex II PED, BCR, USB/ WLAN

40PCI4KU0xBx

DynaFlex II PED, Kiosk, USB

40PCI5KU0xBx

DynaFlex II PED, Kiosk, BCR, USB

40PCI4KW0xBx

DynaFlex II PED, Kiosk, USB/ WLAN

40PCI5KW0xBx

DynaFlex II PED, Kiosk, BCR, USB/ WLAN

40PCI4SU0xCx

DynaFlex II PED, USB

40PCI5SU0xCx

DynaFlex II PED, BCR, USB

40PCI4SW0xCx

DynaFlex II PED, USB/ WLAN

40PCI5SW0xCx

DynaFlex II PED, BCR, USB/ WLAN

40PCI4KU0xCx

DynaFlex II PED, Kiosk, USB

40PCI5KU0xCx

DynaFlex II PED, Kiosk, BCR, USB

40PCI4KW0xCx

DynaFlex II PED, Kiosk, USB/ WLAN

40PCI5KW0xCx

DynaFlex II PED, Kiosk, BCR, USB/ WLAN

40PCI4SU0xDx

DynaFlex II PED, USB

40PCI5SU0xDx

DynaFlex II PED, BCR, USB

40PCI4SW0xDx

DynaFlex II PED, USB/ WLAN

40PCI5SW0xDx

DynaFlex II PED, BCR, USB/ WLAN

40PCI4KU0xDx

DynaFlex II PED, Kiosk, USB

40PCI5KU0xDx

DynaFlex II PED, Kiosk, BCR, USB

40PCI4KW0xDx

DynaFlex II PED, Kiosk, USB/ WLAN

40PCI5KW0xDx

DynaFlex II PED, Kiosk, BCR, USB/ WLAN

Table – Hardware Versions with Description of Associated Variables

PCI Hardware ID Number

1

2

3

4

5

6

7

8

9

10

11

12

PCI Hardware ID Number

4

0

P

C

I

4

S

U

0

x

B

x

PCI Hardware ID Number

4

0

P

C

I

5

S

U

0

x

B

x

PCI Hardware ID Number

4

0

P

C

I

4

S

W

0

x

B

x

PCI Hardware ID Number

4

0

P

C

I

5

S

W

0

x

B

x

PCI Hardware ID Number

4

0

P

C

I

4

K

U

0

x

B

x

PCI Hardware ID Number

4

0

P

C

I

5

K

U

0

x

B

x

PCI Hardware ID Number

4

0

P

C

I

4

K

W

0

x

B

x

PCI Hardware ID Number

4

0

P

C

I

5

K

W

0

x

B

x

PCI Hardware ID Number

4

0

P

C

I

4

S

U

0

x

C

x

PCI Hardware ID Number

4

0

P

C

I

5

S

U

0

x

C

x

PCI Hardware ID Number

4

0

P

C

I

4

S

W

0

x

C

x

PCI Hardware ID Number

4

0

P

C

I

5

S

W

0

x

C

x

PCI Hardware ID Number

4

0

P

C

I

4

K

U

0

x

C

x

PCI Hardware ID Number

4

0

P

C

I

5

K

U

0

x

C

x

PCI Hardware ID Number

4

0

P

C

I

4

K

W

0

x

C

x

PCI Hardware ID Number

4

0

P

C

I

5

K

W

0

x

C

x

PCI Hardware ID Number

4

0

P

C

I

4

S

U

0

x

D

x

PCI Hardware ID Number

4

0

P

C

I

5

S

U

0

x

D

x

PCI Hardware ID Number

4

0

P

C

I

4

S

W

0

x

D

x

PCI Hardware ID Number

4

0

P

C

I

5

S

W

0

x

D

x

PCI Hardware ID Number

4

0

P

C

I

4

K

U

0

x

D

x

PCI Hardware ID Number

4

0

P

C

I

5

K

U

0

x

D

x

PCI Hardware ID Number

4

0

P

C

I

4

K

W

0

x

D

x

PCI Hardware ID Number

4

0

P

C

I

5

K

W

0

x

D

x

Table - Positions

Fixed Position

Variable “X” Position

Description of Fixed or Variable “X” in the Selection Position

1-2

40 = DynaFlex II PED

3-5

PCI = PCI Hardware

6

Front options

4 = Standard

5 = includes Barcode Reader

7

Back options S = Standard

K = Kiosk Mounting

8

Interface Options U = USB

W = USB + WLAN

9

Placeholder

0 = As certified.

10

Cover Color:

B = Black

G = Gray W = White

11

Version

B, C and D = as Certified

12

minor fixes not adding functionality or related to security (e.g., change component value for antenna matching):

0 = as certified

Firmware Identification

The most recent firmware versions for DynaFlex II PED are 1000008593-A1-PCI for the secure bootloader (Boot FW), 1000007537-AB0-PCI and 1000009711-AC0-PCI for the core firmware (Main FW), and 1000007537-AB0-PCI for the WLAN firmware (WLAN FW). The secure bootloader firmware version covers both the first stage (Boot0) permanently programmed into the device and the second stage (Boot1). Any changes to either Boot0 or Boot1 stages will result in a change to the Boot FW version that is visible to the user, reported by the device, and listed on the PCI Approved Devices website.

All device identification information, including firmware versions, exists as properties within the device. The host can retrieve these properties (Property Subgroup 2.1.2.2.nn Core Firmware Information) at any time using Command 0xD101 Get Property as described in D998200383 DynaFlex Products Programmer’s Manual (COMMANDS).

Note: MagTek will now use a two-character major revision designation when a new revision is released. For example, DynaFlex II PIN Entry Devices will have revision designations that increase in length from older to newer, Ax → AAx → ABx.

Table - Previous Main Firmware Version and Associated Variables (17 Position)

Firmware Number

1

2

3

4

5

6

7

8

9

10

11

12

13

14

15

16

17

1

0

0

0

0

0

8

5

9

2

-

A

x

-

P

C

I

Main FW

Fixed Position

Variable “x”

Position

Description of Fixed or Variable “x” in the Selected Position

1-10

1000008592 = DynaFlex II PED main firmware part number

12

A = Certified Version

13

Minor revisions, bug fixes

15-17

PCI = PCI version of firmware

Table - Main Firmware Version and Associated Variables

Firmware Number

1

2

3

4

5

6

7

8

9

10

11

12

13

14

15

16

17

18

1

0

0

0

0

0

8

5

9

2

-

A

A

x

-

P

C

I

1

0

0

0

0

0

8

5

9

2

-

A

B

x

-

P

C

I

1

0

0

0

0

0

9

7

1

1

-

A

B

x

-

P

C

I

1

0

0

0

0

0

8

5

9

2

-

A

C

x

-

P

C

I

1

0

0

0

0

0

9

7

1

1

-

A

C

x

-

P

C

I

Main FW

Fixed Position

Variable

“x”

Position

Description of Fixed or Variable “x” in the Selected Position

1-10

1000008592, 1000009711 = DynaFlex II PED main firmware part number

12-13

1000008592 - AA, AB and AC = Certified Version 1000009711 – AB and AC = Certified Version

14

Minor revisions, bug fixes

16-18

PCI = PCI version of firmware

Last updated