# Enabling P2PE on Debug Devices

The Finix Device Reader SDK uses point-to-point encryption (P2PE), so every device must have an encryption key injected before it can process transactions. Production devices receive this key automatically over the air. Debug devices, however, require manual key injection using the steps below.

The screenshots in this guide were taken on a PAX A800, but the process is identical across all supported PAX models.

## Step 1: Open the Settings App

From the home screen, locate and open the Settings app. You may be prompted for a passcode. Each PAX model uses a different passcode, so try the following combinations, in order, until one works:

| Passcode | Notes |
|  --- | --- |
| `Pax9876@@` |  |
| `pax9876@@` | Most common |
| `9876@@` |  |
| `9876` |  |


PAX home screen with Settings app
## Step 2: Open Security Settings

Scroll down the Settings page and select **Security**.

PAX A800 Settings page with Security option highlighted
## Step 3: Start RKI Download

Select **RKI Download**.

PAX A800 Security page with RKI Download option
## Step 4: Select Key Injection

On the RKI screen, select **Key Injection**.

PAX A800 RKI screen with Key Injection option
## Step 5: Select Internal PED

When prompted to select a pinpad, choose **1. InternalPED**.

PAX A800 pinpad selection screen showing InternalPED option
## Step 6: Enter the Connection Details and Start the Injection

Enter the following connection details, then select **Start Key Injection**:

| Field | Value |
|  --- | --- |
| Host | `rkilt.pax.us` |
| Port | `33619` |


PAX A800 RKI connection details entry screen
## Step 7: Confirm Success

If the key is injected correctly, a **Download Success!** screen appears. If you do not see this confirmation, contact [customer support](mailto:support@finix.com) for assistance.

PAX A800 RKI Download Success confirmation screen