FASUG Application Development Day 2007

Track C Session 5

Case Study: Data Encryption in RPG
Charles Guarino


Case Study: Data Encryption in RPG

A case study surrounding one company's need to implement encryption to achieve PCI (Payment Card Industry) compliance. Using the new security APIs from IBM, "QC3DECDT and QC3ENCDT," we were able to encrypt all sensitive data in the application database. Included in this project was a generic encryption/ decryption service program, a file conversion strategy, and re-writes to existing maintenance and inquiry programs.

By the end of this session, attendees will:

  1. Learn the necessary steps in determining a proper encryption algorithm
  2. Understand the system requirements to achieve encryption
  3. Implement encryption on their own system, using built in APIs


Web Page: Ashway Consulting, LLC.