SOLUTIONS

Remote Key Injection

Remote Key Injection (RKI)

XAC Remote Key Injection Solution is a PCI PIN 3.1 Certified and one stop RKI Solution. From CA Injection when terminal production, RKLD for Key Import, Key Generation, to Key Deployment, all can be done through XAC Cloud TMS II system to reach truly Server-Less instead of setting up a server in-house plus adding HSM.

  • Comprehensive PCI-Certified Security Architecture

    PCI PIN 3.1 Certification

    • Remote Key Distribution Using Asymmetric Keys Operation

    • Certification & Registration Authority Operations

    • Key-Injection Facilities

     
  • Secure CA Injection During Manufacturing

    During device production, XAC device send CSR directly to XAC’s CA server inside the XAC manufacturing environment.
    This eliminates the need for a third-party bridge server.

    Benefits:

    • Faster production workflow

    • Reduced operational risks

    • No additional infrastructure or integration cost

  • Physical Key Loading Device for Enhanced Security

    Instead of upload transaction keys to web portal, XAC provides Physical Key Loading Device.

    This Physical Key Loading Device (RKLD) is handled by the key owner and stored in the existing secure room. Only been exposed when performing key generation & uploaded.

     
  • True Server-Less Key Distribution Powered by XAC TMS II

    By leveraging XAC TMS II as a secure key package distribution platform, users can:
    • Schedule key replacement for specific devices
    • Target device groups with controlled deployment
    • No bridge between terminal and server needed
    • Reduce complexity in communication between server, device, and host

    This server-less architecture simplifies deployment and minimizes ongoing maintenance effort.

Operational Cost Savings for Customers

XAC’s PCI-certified RKI solution delivers significant cost and workflow efficiencies:

Remote key replacement for field-deployed devices

No need to bring devices back to the warehouse.

No PCI-approved secure room required for key renewal

Devices automatically receive new key packages once they are online.

Lower initial investment

No local HSM or bridge server required.

Streamlined operations

Reduced labor, logistics, and downtime across manufacturing and field maintenance.
Compare

total 0 items

In accordance with the General Data Protection Regulation (GDPR) enforced by the European Union, we are committed to protecting your personal data and giving you control over it.

By clicking "Accept All," you consent to our use of cookies to enhance your experience on this website, help us analyze site performance and usage, and deliver relevant marketing content. You can manage your cookie preferences below. By clicking "Confirm," you agree to proceed with your current settings.

Manage Cookies

Privacy Preference Center

In accordance with the General Data Protection Regulation (GDPR) enforced by the European Union, we are committed to protecting your personal data and giving you control over it.

By clicking "Accept All," you consent to our use of cookies to enhance your experience on this website, help us analyze site performance and usage, and deliver relevant marketing content. You can manage your cookie preferences below. By clicking "Confirm," you agree to proceed with your current settings.

Manage Consent Settings

Necessary Cookies

Always On

These cookies are essential for the website to function and cannot be disabled in our systems. They are usually set only in response to actions you take, such as setting your privacy preferences, logging in, or filling out forms. You can set your browser to block or alert you about these cookies, but some parts of the site may not work properly as a result.