Mandatory Interface Encryption
Mandatory Interface Encryption
As a trading venue operator, Deutsche Börse needs to adhere to requirements regarding encryption of data during transfer via networks on public ground and the encryption of credentials during transfer via networks on non-public ground (Critical Infrastructure KRITIS regulation).
Deutsche Börse has implemented mandatory changes regarding data transmission via the T7 trading interfaces. These changes have been made to improve the security of information transmitted via communication networks to further reduce the risk of unauthorized interception, manipulation, or misuse.
To support Trading Participants with the implementation of their security requirements, Deutsche Börse now offers additional connectivity options to implement Transport Layer Security (TLS) for sensitive data in critical business areas.
Timeline
Interface | T7 Release | Availability in Simulation | Mandatory in Simulation | Availability in Production | Mandatory in Production |
FIX LF* | 10.1 | 02.05.22 | 10.03.23 | 27.06.22 | 08.05.23 |
ETI LF* | 11.0 | 12.09.22 | 04.08.23 | 21.11.22 | 23.10.23 |
ETI HF** | 11.1 | 04.04.23 | 24.11.23 | 22.05.23 | 11.12.23 |
*) payload encryption (all data TLS encrypted)
**) password encryption (by Deutsche Börse’s public RSA key)
Event | Environment | T7 Release | Decommissioning date |
Ordering of HF Session outside the Equinix FR2 facility in the Member Section | Production | 11.1 | 21.08.23 |
Usage of HF Sessions outside the Equinix FR2 facility | Production | 11.1 | 23.10.23 |
Participation Requirements
Feature/Enhancement | Details | Action Item |
Mandatory implementation of FIX LF TLS | Support for FIX LF connectivity option without TLS will cease in Production on 8 May 2023 (only FIX LF TLS connectivity possible). | Existing application must be adapted at the earliest point in time. |
Mandatory of ETI TLS | Support for connectivity option without TLS for Production will cease on 23 October 2023 (only ETI TLS possible). | Existing application must be adapted at the earliest point in time |
Mandatory password encryption for ETI HF sessions | Password encryption will become mandatory on 11 December for Trading participants using ETI HF sessions. | Application must be adapted at the earliest possible point in time. |
Replacement of ETI HF with ETI LF sessions (only for Prod) | Use of Prod ETI HF outside of Deutsche Börse´s Equinix FR2 will cease on 23 October (ordering of Prod HF session for non-Equinix installations ends on 21 August 2023). | Trading participants must replace ETI HF with ETI LF or transfer session to installations within Deutsche Börse´s Equinix FR2. |
Contact
Technical Key Account Management
cts@deutsche-boerse.com
Focus Call - Mandatory Interface Encryption