Specifies key management techniques for keys used in the authentication, encryption and decryption of electronic messages relating to financial transactions using session keys. Includes security interface procedures between terminals and acquirers, methods of interchange of the various enciphering keys used for securing transactions, and ensures that messages can only be authenticated at their correct destination.