[Muscle] PIN transfer within T0/T1 encrypted

Karsten Ohme widerstand at t-online.de
Thu Aug 14 13:29:46 PDT 2008


Fabian Bertholm schrieb:
> Hi,
> Hi,
> 
> I am just a smartcard greenhorn thus it might be a stupid question...
> Is the PIN transfer from the reader to the card encryted in any way or
> can I "sniff" it with some hardware attached?

You can sniff it.

> Would be cool if the "Transport Key" of those Cyberflex cards is doing
> something like this.

But: Some cards support the Global Platform specification. You can use
the secure channel capability (called Runtime Messaging Support in GP
2.1.1) of a Security Domain. But to so it would
be necessary This might be impossible.

Or create you own secure channel. Choose some standard.

Regards,
Karsten
> 
> Greetings,
> Fabe
> 
> 
> ------------------------------------------------------------------------
> 
> _______________________________________________
> Muscle mailing list
> Muscle at lists.musclecard.com
> http://lists.drizzle.com/mailman/listinfo/muscle




More information about the Muscle mailing list