[PCI DSS 1.x] 3.6.1 Generation of strong cryptographic keys

3.6.1 Verify that key management procedures require the generation of strong keys

Is Zos ICSF encryption using AES 128 bit encryption sufficient on z0s for protecting CHD ? Compensating controls also in use with RACF.