Platform Integration Information for Credit Unions

Add or Update Admin Password in Symitar Quest

The steps included in this document help guide a credit union to add or update their admin password in Symitar Quest.

Note: Before changing the admin password, you should already be working with Banno Support and have a case open. You need to be in contact with Support so the password can be sent over immediately after or while updating the password.
  1. Log in to Symitar Quest.
  2. In the toolbar, click Navigate > Management > Parameter Managers.
  3. In the Parameter Manager drop-down list, click SymXchange Parameters > Banno instance.
  4. Click SymXchange Client Number (the default is SymXchange Client Number 0) > Client Parameter.
  5. After clicking Client Parameter, the masked Administrative Password displays.
  6. Update the Administrative Password per Banno requirements and click OK.
  7. After updating the Administrative Password, go to Device Control.
  8. For Device, select SymXchange from the drop-down list.
  9. Select the Banno SymXchange instance and refresh the instance by clicking the refresh button for the updated Administrative Password to be recognized.

SymXchange Implementation Blueprints for Banno

This blueprint is used to configure SymXchange for credit unions. The minimum Symitar release currently supported is 2020.01.

SYSTEM Web Console

Certificate Configuration

Network traffic between Symitar and Banno uses the SymXchange HTTPS protocol. This requires a certificate to be generated and exchanged between the client systems.

Create a Key configuration and certificate to be used for your Banno SymXchange instance:

  1. Log in to System Web Console.
  2. Navigate to Key Management > Key Store Configuration.
  3. Click the New Configuration button.
  4. At the Name prompt, enter a name for the new key configuration.
    • Ex: BANNO_SYMxxx (where xxx is the SYM number)
  5. At the Description prompt, enter a description for the new key configuration.
  6. At the Host SYM prompt, select the SYM under which SymXchange runs.
  7. Click Save.
    • The new key configuration now appears in the key store configuration list.
  8. From the list, select the new key configuration.
  9. Click the Key Stores tab.
  10. Click the Open Key Store icon next to the key store.
  11. Click Create Key.
  12. At the Alias prompt, enter an alias.
    • Ex: banno_symxxx (where xxx is the SYM number)
  13. At the Days of Validity prompt, type 3650.
  14. At the Key Size prompt, select 2048 bits.
  15. At the Common Name (CN) prompt, enter a name.
    • Ex: symx.<CU_Name>.local
  16. Remaining fields are not required but can be filled in if desired.
  17. Click Create.
    • The new key alias now appears in the key store.

Export the Public Key from the Banno instance.

  1. Log in to the System Web Console.
  2. In the System Web Console window, select Key Management from the menu list.
    • The Key Store Configuration List pane appears.
  3. In the Configuration Name column, select the key configuration created for Banno.
  4. Select the Key Stores tab, and then click the Open Key Store icon.
    • The Key Management pane appears.
  5. Click the Export icon.
    • The Export Key dialog box appears.
  6. Leave the Private Key Password prompt blank.
  7. At the File Name prompt, type a relevant name.
  8. At the File Format prompt, click the drop-down arrow, and then select PEM.
  9. Click the Export button to save the .pem file to your local drive.
  10. Upload the certificate to the Banno Implementation/Update jSource case.
    • Important: You must upload the file to a secure internal access point. Send the file using a secured method. Do not use email.

Import a Certificate for ECAAS.

  • Banno will supply the .p12 certificate needed for the following steps in the For Clients case that we opened where setup was requested.
  1. Log in to System Web Console.
  2. Navigate to Key Management > Key Store Configuration.
  3. From the list, click the Banno key configuration created previously.
  4. Click the Key Stores tab.
  5. Click the Open Key Store (folder) icon to the right of the key store.
  6. Click Import.
  7. Choose the .p12 certificate to import
  8. The Alias must be ecaas_id_provider. ID cannot be changed to the sym number.
  9. Enter the password for the certificate(if you forget the password the certificate will not import)
  10. Click Import
  11. Click the button in the Trust column for the ecaas_id_provider entry.
    • The following message appears: Trust key result: Successfully copied certificate.
  12. Navigate back to Key Management Trust Store, you should now see the ecass_id_provider certificate listed.

Import Banno’s Public Certificate into SymXchange and ECAAS.

  1. Log in to System Web Console.
  2. Navigate to Key Management > Key Store Configuration.
  3. From the list, click the Banno key configuration created previously.
  4. Click the Key Stores tab.
  5. Click the Open Trust Store (folder) icon to the right of the key store.
  6. Click Import.
  7. Click Choose, and then navigate to the file containing the Banno-provided certificate.
  8. Click Upload.
    • A dialog box appears with the public key in .pem format.
  9. At the Alias prompt, enter service_banno.
    • The alias must be service_banno.
    • The alias should be all lowercase without spaces.
  10. Click Import.
    • The public certificate now appears as part of the trust store.

SymXchange Web Services Configurations

Enable services for SymXchange Instance Services Configuration:

ServiceVersion
AccountService
  • 2020.01
  • Persistent
  • EcaaService
  • 2020.01
  • Persistent
  • EpisysInformationService
  • 2020.01
  • FileManagementService
  • 2020.01
  • Persistent
  • FindByService
  • 2020.01
  • Persistent
  • InformationService
  • Persistent
  • PowerOnService
  • 2020.01
  • Persistent
  • TransactionsService
  • 2020.01
  • Persistent

  • SymXchange Instance Device Mapping Configuration 
    Device TypeBANNO
    Device Number20 + CU 3-digit #
    Client NumberUse first available for Instance, usually 0

    SymXchange Instance Web Server Configuration
    HTTP(s) Port NumberAny available
    Protocol+++https
    Key Configuration Name+++Select from dropdown
    Key Alias+++Select from dropdown
    Add White List IPv4 Addresses
  • 10.90.72.0-255
  • 10.90.86.0-255
  • 10.90.100.0-255
  • +++ Requires Certificate Configuration to be completed first in order to make selection.


    SymXchange Instance Details Configuration 
    Number of SymXchange Web Service Posters15

    +++ If Geezeo is also being installed, the number of posters should be set to 25.

    SymXchange Parameters

    SymXchange Client Parameters

    The following SymXchange Client Parameters are a small list of parameters that should be set, however, it is the CU’s responsibility to ensure remaining SymXchange parameters are reviewed to confirm that they’re set up according to their policies:

    Parameter NameSetting
    Client System User NumberSet accordingly
    Client System NameSymXchange – Banno
    Report TitleSymXchange – Banno
    Administrative PasswordCU Preference
    Use HB Password?Yes
    Allow PIN FM?Yes
    Credit Card Masking Method1
    Transaction Source CodeSet accordingly
    Inv Attempts Before Frozen20
    FM in Posting JournalYes
    Review ALL Past Due Days ParametersSet accordingly
    Review ALL GL ParametersSet accordingly
    Services for Transfer In, Out, Withdrawal and DepositSet accordingly
    Maximum Response Fields10,000
    Maximum Specfile Lines10,000
    Maximum All Field Count10,000
    ODT/ODP settingsSet accordingly

    Service Operations

    Enable the specified credential(s) for the SymXchange per Operation Credentials Parameters for each method(s):

    ServiceRecordOperationCredential(s)
    AccountAccountgetAccount
  • Home Banking
  • Admin Password
  • AccountAccountgetAccountSelectFieldsFilterChildren
  • Home Banking
  • Admin Password
  • AccountAccountupdateAccountByID
  • Home Banking
  • Admin Password
  • AccountCardsearchCardSelectFields
  • Home Banking
  • Admin Password
  • AccountCardsearchCardPageSelectFields
  • Home Banking
  • Admin Password
  • AccountCardupdateCardByID
  • Home Banking
  • Admin Password
  • AccountEFTcreateEft
  • Home Banking
  • Admin Password
  • AccountEFTdeleteEft
  • Home Banking
  • Admin Password
  • AccountEFTgetEftListSelectFields
  • Home Banking
  • Admin Password
  • AccountEFTgetEftPagedListSelectFields
  • Home Banking
  • Admin Password
  • AccountEFTgetEftSelectFields
  • Home Banking
  • Admin Password
  • AccountEFTupdateEftByID
  • Home Banking
  • Admin Password
  • AccountExternalLoanNameupdateExternalLoanNameByID.
  • Home Banking
  • Admin Password
  • AccountExternalLoanTransfercreateExternalLoanTransfer
  • Home Banking
  • Admin Password
  • AccountExternalLoanTransfergetExternalLoanTransferSelectFields
  • Home Banking
  • Admin Password
  • AccountExternalLoanTransferupdateExternalLoanTransferByID
  • Home Banking
  • Admin Password
  • AccountExternalLoanTransfersearchExternalLoanTransferPagedSelectFields
  • Home Banking
  • Admin Password
  • AccountLoangetLoan
  • Home Banking
  • Admin Password
  • AccountLoangetLoanListSelectFields
  • Home Banking
  • Admin Password
  • AccountLoangetLoanPagedListSelectFields
  • Home Banking
  • Admin Password
  • AccountLoangetLoanSelectFieldsFilterChildren
  • Home Banking
  • Admin Password
  • AccountLoanupdateLoanByID
  • Home Banking
  • Admin Password
  • AccountLoanNameupdateLoanNameByID
  • Home Banking
  • Admin Password
  • AccountLoanTransactiongetLoanTransactionPagedListSelectFields
  • Home Banking
  • Admin Password
  • AccountLoanTransfercreateLoanTransfer
  • Home Banking
  • Admin Password
  • AccountLoanTransferdeleteLoanTransfer
  • Home Banking
  • Admin Password
  • AccountLoanTransfergetLoanTransferListSelectFields
  • Home Banking
  • Admin Password
  • AccountLoanTransfergetLoanTransferSelectFields
  • Home Banking
  • Admin Password
  • AccountLoanTransfersearchLoanTransferPagedSelectFields
  • Home Banking
  • Admin Password
  • AccountLoanTransferupdateLoanTransferByID
  • Home Banking
  • Admin Password
  • AccountNamegetNameListSelectFields
  • Home Banking
  • Admin Password
  • AccountNamegetNamePagedListSelectFields
  • Home Banking
  • Admin Password
  • AccountNamesearchNameSelectFields
  • Home Banking
  • Admin Password
  • AccountNamesearchNamePagedSelectFields
  • Home Banking
  • Admin Password
  • AccountNameupdateNameByID
  • Home Banking
  • Admin Password
  • AccountPreferencecreatePreference
  • Home Banking
  • Admin Password
  • AccountPreferencesearchPreferenceSelectFields
  • Home Banking
  • Admin Password
  • AccountPreferencesearchPreferencePagedSelectFields
  • Home Banking
  • Admin Password
  • AccountPreferenceupdatePreferenceByID
  • Home Banking
  • Admin Password
  • AccountSharegetShare
  • Home Banking
  • Admin Password
  • AccountSharegetShareListSelectFields
  • Home Banking
  • Admin Password
  • AccountSharegetShareSelectFieldsFilterChildren
  • Home Banking
  • Admin Password
  • AccountShareupdateShareByID
  • Home Banking
  • Admin Password
  • AccountShareHoldcreateShareHold
  • Home Banking
  • Admin Password
  • AccountShareHoldupdateShareHoldByID
  • Home Banking
  • Admin Password
  • AccountShareNameupdateShareNameByID
  • Home Banking
  • Admin Password
  • AccountShareTransactiongetShareTransactionPagedListSelectFields
  • Home Banking
  • Admin Password
  • AccountShareTransactionsearchShareTransactionPagedSelectFields
  • Home Banking
  • Admin Password
  • AccountShareTransactionsearchShareTransactionSelectFields
  • Home Banking
  • Admin Password
  • AccountShareTransfercreateShareTransfer
  • Home Banking
  • Admin Password
  • AccountShareTransferdeleteShareTransfer
  • Home Banking
  • Admin Password
  • AccountShareTransfergetShareTransferListSelectFields
  • Home Banking
  • Admin Password
  • AccountShareTransfergetShareTransferSelectFields
  • Home Banking
  • Admin Password
  • AccountShareTransferupdateShareTransferByID
  • Home Banking
  • Admin Password
  • AccountTrackingsearchTrackingSelectFields
  • Home Banking
  • Admin Password
  • AccountTrackingsearchTrackingPagedSelectFields
  • Home Banking
  • Admin Password
  • EpisysInformationgetGeneralEpisysInformation
  • Admin Password
  • FileManagementdownloadDataFile
  • Admin Password
  • FileManagementuploadDataFile
  • Admin Password
  • FindByfindByHomeUser
  • Admin Password
  • General LedgersearchGlHistoryPagedSelectFields
  • Admin Password
  • InformationgetGeneralInformation
  • Admin Password
  • PowerOnexecutePowerOn
  • Home Banking
  • Admin Password
  • Transactionsdeposit
  • Home Banking
  • Admin Password
  • Transactionstransfer
  • Home Banking
  • Admin Password
  • TransactionsreverseWithdraw
  • Home Banking
  • Admin Password
  • TransactionsreverseWithdrawFee
  • Home Banking
  • Admin Password
  • Transactionswithdraw
  • Home Banking
  • Admin Password
  • TransactionswithdrawFee
  • Home Banking
  • Admin Password

  • PowerOns and Letterfiles

    All available Banno feature PowerOn® specfiles and letterfiles can be provided by a SymXchange Analyst. Specfiles must be uploaded to the SYM, installed for demand use, and entered in the SymXchange Common Parameters for the SymXchange Instance using the Individual Specfile Load Method.

    Required

    The following PowerOn® specfiles are required for standard Banno features:

    • BANNO.ALERT.TRANSACTIONS.V1
    • BANNO.ALERT.TRANSFILE.V1
    • BANNO.NT.ENROLLMENT.V2 (only required for NetTeller clients)
    • BANNO.PENDINGTRANS.IQ.V3.POW
    • SYMX.GETMISCPARAMS.BANNO
    • BANNO.TRANSFERLIST.V7.POW

    Optional

    The following PowerOn® specfiles and letterfiles are for specific optional features that are not part of standard Banno services and will require the credit union to open a support case with Banno to assist with additional configurations.

    PowerOnLetterFile
    BANNO.CDRENEW.V1.POWBANNO.CDRENEW.V1.CFG
    BANNO.CHANGE.ADDR.V1.POWBANNO.CHANGE.ADDR.V1.CFG
    BANNO.LOANPAYMENT.SKIP.V1.POWBANNO.LOANPAYMENT.SKIP.CFG
    BANNO.LOAN.PAYOFF.V1.POWBANNO.LOAN.PAYOFF.V1.CFG
    BANNO.ODTOPTIN.V1.POWBANNO.ODTOPTIN.V1.CFG
    BANNO.NEWSUBCREATE.V1.CONFIG 
    BANNO.NEWSUBCREATE.V1.POW 
    BANNO.CHECK.WITHDRAW.V1.POWBANNO.CHECK.WITHDRAW.V1.CFG
    GEEZEO 

    Banno Blueprint Change Log

    | Date | Changes | Updated by | | — | — | | 2/18/2026 |

    • Updated the ECAAS certiicate section to reflect the new requirement of importing a certificate rather than creating it in Web Console.
    |
    • Brian Frost
    | | 1/20/2026 |
    • Added the following operations for Persistent version support:
      • searchCardPagedSelectFields
      • getEftPagedListSelectFields
      • getLoanPagedListSelectFields
      • searchNamePagedSelectFields
      • searchPreferencePagedSelectFields
      • getShareTransferPagedListSelectFields
      • searchTrackingPagedSelectFields
      • updateShareNameByID
      • updateLoanNameByID
      • updateExternalLoanNameByID
      • getGeneralInformation
    • Added Information service for Persistent version support
    | | 10/03/2025 |
    • Removed BANNO.DATABASE.CHECK.V1.POW PowerOn
    | | 09/02/2025 |
    • Added Geezeo-specific changes:
      • Included GEEZEO PowerOn name to optional PowerOn section
      • Added note to increase SymXchange posters to 25 when Geezeo is in use
      • Added getNamePagedListSelectFields
      | | 04/29/2025 |
      • Added additional operations for Rapid Transfers:
        • withdraw
        • deposit
        • reverseWithdraw
        • reverseWithdrawFee
        • updateShareHoldByID
        | | 10/18/2023 |
        • Moved BANNO.DATABASE.CHECK.V1.POW PowerOn from Required to Optional | | 02/06/2023 |
          • Added Create a Certificate for ECAAS section for Token Authentication | | 03/11/2025 |
            • Removed 2018.01 services as minimum version requirement is 2020.01
              • Added Persistent versions
              • Added ExternalLoan and ExternalLoanTransfer records for scheduled external loan support
            | | 12/02/2021 |
            • Added searchLoanTransferPagedSelectFields for Loan Transfer record support |

              SymXchange Implementation Blueprints for Jack Henry ISO Wires

              This blueprint is used to configure SymXchange Jack Henry ISO Wires for credit unions. The minimum Symitar release currently supported is 2020.01.

              SYSTEM Web Console

              Certificate Configuration

              Network traffic between Symitar and JH ISO Wires uses the SymXchange HTTPS protocol. This requires a certificate to be generated and exchanged between the client systems.

              Create a Key configuration and certificate to be used for your JH ISO Wires SymXchange instance.

              1. Log in to System Web Console.
              2. Navigate to Key Management > Key Store Configuration.
              3. Click the New Configuration button.
              4. At the Name prompt, enter a name for the new key configuration.
                • Ex: JHProxyService_SYMxxx (where xxx is the SYM number)
              5. At the Description prompt, enter a description for the new key configuration.
              6. At the Host SYM prompt, select the SYM under which SymXchange runs.
              7. Click Save.
                • The new key configuration now appears in the key store configuration list.
              8. From the list, select the new key configuration.
              9. Click the Key Stores tab.
              10. Click the Open Key Store icon next to the key store.
              11. Click Create Key.
              12. At the Alias prompt, enter an alias.
                • Ex: jhproxyservice_symxxx (where xxx is the SYM number)
              13. At the Days of Validity prompt, type 3650.
              14. At the Key Size prompt, select 2048 bits.
              15. At the Common Name (CN) prompt, enter a name.
                • Ex: symx.<CU_Name>.local
              16. Remaining fields are not required but can be filled in if desired.
              17. Click Create.
                • The new key alias now appears in the key store.

              Export the Public Key from the JHProxyService Key Configuration

              1. Log in to the System Web Console.
              2. In the System Web Console window, select Key Management from the menu list and click on Key Store Configuration.
                • The Key Store Configuration List pane appears.
              3. In the Configuration Name column, select the key configuration created for JHProxyService.
              4. Select the Key Stores tab, and then click the Open Key Store icon.
                • The Key Management pane appears.
              5. Click the Export icon.
                • The Export Key dialog box appears.
              6. Leave the Private Key Password prompt blank.
              7. At the File Name prompt, type a relevant name.
              8. At the File Format prompt, click the drop-down arrow, and then select PEM.
              9. Click the Export button to save the .pem file to your local drive.
              10. Upload the certificate to the JH ISO Wires Implementation/Update jSource case.
                • Important: You must upload the file to a secure internal access point. Send the file using a secured method. Do not use email.

              Import a Certificate for ECAAS

              • Banno will supply the .p12 certificate needed for the following steps in the For Clients case that we opened where setup was requested.
              1. Log in to System Web Console.
              2. Navigate to Key Management > Key Store Configuration.
              3. From the list, click the Banno key configuration created previously.
              4. Click the Key Stores tab.
              5. Click the Open Key Store (folder) icon to the right of the key store.
              6. Click Import.
              7. Choose the .p12 certificate to import
              8. The Alias must be ecaas_id_provider. ID cannot be changed to the sym number.
              9. Enter the password for the certificate(if you forget the password the certificate will not import)
              10. Click Import
              11. Click the button in the Trust column for the ecaas_id_provider entry.
                • The following message appears: Trust key result: Successfully copied certificate.
              12. Navigate back to Key Management Trust Store, you should now see the ecass_id_provider certificate listed.

              Import Banno’s Public Certificate into Key Store

              1. Log in to System Web Console.
              2. Navigate to Key Management > Key Store Configuration.
              3. From the list, click the JHProxyService key configuration created previously.
              4. Click the Key Stores tab.
              5. Click the Open Trust Store (folder) icon to the right of the key store.
              6. Click Import.
              7. Click Choose, and then navigate to the file containing the Banno-provided certificate.
              8. Click Upload.
                • A dialog box appears with the public key in .pem format.
              9. At the Alias prompt, enter service_banno.
                • The alias must be service_banno.
                • The alias should be all lowercase without spaces.
              10. Click Import.
                • The public certificate now appears as part of the trust store.

              SymXchange Web Services Configurations

              Enable services for SymXchange Instance Services Configuration:

              ServiceVersion
              AccountService
            • 2020.01
            • Persistent
            • EcaaService
            • 2020.01
            • Persistent
            • EpisysInformationService
            • 2020.01
            • FindByService
            • 2020.01
            • Persistent
            • GeneralLedgerService
            • 2020.01
            • Persistent
            • InformationService
            • Persistent
            • TransactionsService
            • 2020.01
            • Persistent

            • SymXchange Instance Device Mapping Configuration 
              Device TypeJHWIRESISO
              Device Number20 + CU 3-digit #
              Client NumberUse first available for Instance, usually 0

              SymXchange Instance Web Server Configuration
              HTTP(s) Port NumberAny available
              Protocol+++https
              Key Configuration Name+++Select from dropdown
              Key Alias+++Select from dropdown
              Add White List IPv4 Addresses
            • 10.90.72.0-255
            • 10.90.86.0-255
            • 10.90.100.0-255
            • +++ Requires Certificate Configuration to be completed first in order to make selection.


              SymXchange Instance Details Configuration 
              Number of SymXchange Web Service Posters15

              SymXchange Parameters

              SymXchange Client Parameters

              The following SymXchange Client Parameters are a small list of parameters that should be set, however, it is the CU’s responsibility to ensure remaining SymXchange parameters are reviewed to confirm that they’re set up according to their policies:

              Parameter NameSetting
              Client System User NumberSet accordingly
              Client System NameSymXchange – JHWires ISO
              Report TitleSymXchange – JHWires ISO
              Administrative PasswordCU Preference
              Transaction Source CodeSet accordingly
              FM in Posting JournalYes
              Review ALL Past Due Days ParametersSet accordingly
              Review ALL GL ParametersSet accordingly
              Services for Transfer In, Out, Withdrawal and DepositSet accordingly
              Maximum Response Fields10,000
              Maximum Specfile Lines10,000
              Maximum All Field Count10,000
              ODT/ODP settingsSet accordingly

              Service Operations

              Enable the specified credential(s) for the SymXchange per Operation Credentials Parameters for each method(s):

              ServiceRecordOperationCredential(s)
              AccountAccountgetAccount
            • Home Banking
            • Admin Password
            • AccountAccountgetAccountSelectFields
            • Home Banking
            • Admin Password
            • AccountAccountgetAccountSelectFieldsFilterChildren
            • Home Banking
            • Admin Password
            • AccountSharegetShare
            • Home Banking
            • Admin Password
            • AccountSharegetShareListSelectFields
            • Home Banking
            • Admin Password
            • AccountSharegetShareSelectFieldsFilterChildren
            • Home Banking
            • Admin Password
            • AccountShareTransactionsearchShareTransactionSelectFields
            • Home Banking
            • Admin Password
            • AccountShareAnalysissearchShareAnalysisPagedSelectFields
            • Home Banking
            • Admin Password
            • AccountShareAnalysisupdateShareAnalysisByID
            • Home Banking
            • Admin Password
            • AccountShareHoldcreateShareHold
            • Home Banking
            • Admin Password
            • AccountShareHoldupdateShareHoldByID
            • Home Banking
            • Admin Password
            • EpisysInformationgetGeneralEpisysInformation
            • Admin Password
            • FindByfindByHomeUser
            • Admin Password
            • FindByfindByShortName
            • Admin Password
            • GeneralLedgerGlAccountgetGlAccountSelectFields
            • Admin Password
            • InformationgetGeneralInformation
            • Admin Password
            • TransactionsDeposit
            • Home Banking
            • Admin Password
            • TransactionsGLToGLPost
            • Home Banking
            • Admin Password
            • Transactionswithdraw
            • Home Banking
            • Admin Password
            • TransactionswithdrawFee
            • Home Banking
            • Admin Password
            • JH ISO Change Log

              DateChangesUpdated by
              02/19/2026
              • Edited the ECAAS certificate portion to import certs instead of creating certs
              • Brian Frost
              02/11/2025
              • Removed unused services
              01/22/2025
              • Modified services
              • Added GeneralLedger record
              01/15/2025
              • Created

              Related