The user is prompted to set their own PIN. The Administator can choose the PIN length.
The PIN is encrypted by the server's public key and sent to the server (along with a one-time use AES key), where it is decrypted by the server's private key.
Next: Registration