MQ Authenticate User Security Exit (MQAUSX) currently uses the ‘Tiny Encryption Algorithm Variant’ (aka TEAV or XTEA) for encryption and decryption of the user’s password between the client-side security exit and the server-side security exit.
The security group of existing customers and potential customers are requesting that we use Advanced Encryption Standard (AES) symmetric-key encryption rather than XTEA. I have a working prototype (beta) of MQAUSX that supports AES 256-bit encryption/decryption. The prototype defaults to AES 256-bit rather than XTEA and it is backwards compatible with the previous releases of MQAUSX.
If anyone (existing customers and/or potential customers) would like to try out the new prototype then send an email to support@capitalware.com
Regards,
Roger Lacroix
Capitalware Inc.