P5DF081X0T1AD2060S NXP Semiconductors, P5DF081X0T1AD2060S Datasheet - Page 13

no-image

P5DF081X0T1AD2060S

Manufacturer Part Number
P5DF081X0T1AD2060S
Description
IC SAM MIFARE 8PLLCC
Manufacturer
NXP Semiconductors
Datasheet

Specifications of P5DF081X0T1AD2060S

Lead Free Status / RoHS Status
Lead free / RoHS Compliant
NXP Semiconductors
Table 6.
P5DF081_SDS
Objective short data sheet
PUBLIC
Command
SAM_DisableCrypto
SAM_LockUnlock
SAM_AuthenticateHost
SAM_ActivateOfflineKey
SAM_LoadInitVector
SAM_KillAuthentication
SAM_SelectApplication
SAM security and configuration commands
8.6.1 SAM security and configuration commands
8.6 MIFARE SAM AV2 command set
For better readability of the following command descriptions, the logical channel number
of the CLA byte is set to default 00b.
Description
This command allows the permanent and irreversible disabling of the cryptographic functionality
of the MIFARE SAM AV2.
Successful host authentication with one of the three keys stored in KeyNo 00h is required to send
this command.
The command SAM_LockUnlock (INS = 10h) is used to run a mutual authentication
between the SAM and host system. The host authentication consists of three parts.
Such an authentication proves that both the SAM and the host contain the same secret,
namely the AES key Kx. The terminology, notations and state descriptions for
SAM_LockUnlock are provided in
AV1 compatibility mode:
The command SAM_AuthenticateHost is used to run a mutual 3-pass authentication between the
MIFARE SAM AV2 and host system.
Such an authentication proves that both the MIFARE SAM AV2 and the host contain the same
secret, namely a DES, TDEA or AES key and generates a session key for further cryptographic
operations.
A host authentication is required to:
SAM_ActivateOfflineKey is to be used in AV2 mode to activate both OfflineCrypto and
OfflineChange keys.
The command SAM_LoadInitVector is used to load an init vector for the next cryptographic
operation into the MIFARE SAM AV2.
The loaded init vector will be applied in the next cryptographic operation independent from the
‘Keep IV’ setting of the key entry except for the authentication commands where the init vector is
reset to zero.
AV1 compatibility mode:
Invalidates any kind of authentication in the logical channel the command is issued.
The command SAM_SelectApplication is the equivalent of the SelectApplication command of
DESFire. The MIFARE SAM AV2 generates a list of available keys linked to the specified
Application ID as defined in the key entry property ‘DF_AID’.
The MIFARE SAM AV2 generates a list of available keys per DESFire AID and DESFire key
number. For every key number, up to 6 key versions can be stored in the list (so it can read the
keys from maximum two key entries per DESFire AID and DESFire key number). This list is filled
starting with key entry zero. If the KST contains more than 6 key versions per DESFire AID and
DESFIRE key number, only the first 6 versions will be listed.
Load or update keys into the MIFARE SAM AV2
Modify key usage counter limits
Activate the MIFARE SAM AV2 after reset (if configured accordingly in the
configuration settings (SET) of KeyNo 00h)
All information provided in this document is subject to legal disclaimers.
Rev. 1 — 12 August 2010
191710
Ref. 1
.
P5DF081
MIFARE SAM AV2
© NXP B.V. 2010. All rights reserved.
13 of 36

Related parts for P5DF081X0T1AD2060S