Académique Documents
Professionnel Documents
Culture Documents
Introduction Outline
your pocket?
Application Field
Identity Portable File Healthcare Access Control Banking
OPEN SESAME
Computer Security
Service Payment
August 2001 - 5 Bull & Innovatron Patents
Payphone
Loyalty
Chip
Access Control
be accessed by anyone, these internal secrets can be used by the card itself for ciphering and authentication purposes
Access Control
n Access to information can be limited
to the card holder by the use of a PIN (Personal Identification Number) Open n A PIN is a specific sort of password Sesame n A smart card can control many passwords, allowing different people customized access to information
3rd
Access Control
Memory Cards
The first generation of smart cards
August 2001 - 13 Bull & Innovatron Patents
SAVINGS
Memory Chips
n Memory chips are dedicated to data storage: Phonecards and Multi-service smart cards n The chip design will use either EPROM or
EEPROM technologies:
Reserved area to store users data
n Memory chips have no microprocessor inside n A single silicon wafer is used to produce many
chips
From 6,000 to 8,000 chips per wafer Memory chips are very small
~ 2 mm
Introduction to Smart Cards Nicolas SMAYRA
n n n n
Loyalty
n Each Card has a specific Protocol n Readers need drivers developing for each card
Drivers
Commands Card Protocol
Read / Update may be protected by Manufacturer or Issuer Different memory areas may have different protection
August 2001 - 21 Bull & Innovatron Patents
GPM271 GPM276
GPM2k GPM8k
GAM326 GAM275
GFM : Gemplus Free-Access Memory GPM : Gemplus Protected Memory GAM : Gemplus Authenticated Memory GemClub-Memo : New generation of memory cards
August 2001 - 22 Bull & Innovatron Patents
not crucial
u Non
magstripe application
Portable File
Mrs. PATIENT
August 2001 - 23 Bull & Innovatron Patents
GPM Applications
n These cards were originally designed as payphone
GAM Applications
n Prepaid cards:
Payphone
Payphone
Vending Machine
August 2001 - 25 Bull & Innovatron Patents
Parking
Introduction to Smart Cards Nicolas SMAYRA
Phonecard
Payphone
Units Balance
out of units
Petrol Industry
Smart Oil Company
Department Stores
Grandes Galleries "Around Corner" shop
Small Retailers
National ID...
Main Competitors
n Several competitors using off-the-shelf chips Schlumberger G&D Oberthur Bull Orga Incard...
Microprocessor cards
A microprocessor card can: add / delete manipulate information in its memory on the card. Similar to a miniature computer with a microprocessor an input/output port operating system hard disk built-in security features.
Microprocessor cards
n What for ? Advanced data storage Data processing (Intelligent card) High security needs n Chip organisation:
ROM COS
CPU
R A M
SECURITY
n What type of application ? Any !
August 2001 - 31 Bull & Innovatron Patents
E E P R O M
Microprocessor Chips
n Microprocessor chips are dedicated to data
processing:
Electronic purse, Banking, GSM, Loyalty and Electronic commerce applications For advance data storage and security needs
RAM technologies
Reserved area to store user data and an Operating System
n All microprocessors have a special processing
unit (CPU: Central Processing Unit) n A single silicon wafer is used to produce many chips
From 500 to 1,500 chips per wafer Microprocessor chips are larger than memory chips From 6 to 20 mm
August 2001 - 33 Bull & Innovatron Patents
n Pros: Pros
n Cons:
high processing power programmable and customizable large data storage capacity high security
SECURITY
OS
OS Role
n The role of the Chip Operating System is to Enable an easy Memory access Give the Card a pre-defined behavior Contains the set of commands Manage Security Contains the cryptographic algorithms Checks the access conditions
manufacturer
BUT ... There are ISO standards to provide interoperability between card manufacturers ALL Gemplus Microprocessor cards follow international standards
Some benefits...
Contactless Cards
ISO 7816-1 dimension (86x54x 0.8)mm Proximity Transaction (8 to 10cm)
ISO dimensions
SmartAir
Mr.Smith
12394983-00
Vehicle Card
Airline Ticketing
Application Players
HOST
READERS
CARDS
Application Software
n Application software developed for
customers needs
Design to communicate with users card
Application software
Reader
the application
It serves as a translator It accepts the messages
Card
Terminal Reader
Host
Host drives the card through the reader Reader transmits to/from card
Card
Application Software
Host
Card
Reader or Terminal
August 2001 - 51 Bull & Innovatron Patents
Messages
n The card communicates with the reader by
Command
Response
Example
Read Name
Q&A
Thank you