OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
From: Ian Stevenson (Ian.StevensonPROTOCOM.COM.AU)
Date: Thu Jul 19 2001 - 23:01:23 CDT

  • Messages sorted by: [ date ] [ thread ] [ subject ] [ author ]

    In order to create files on the MF, you must setup a session key and use
    Secure Messaging - that is just how the card has been setup. However, if
    you just want to access the DFs below the MF, you can just do a Select file
    - but you were talking about CreateFile below.....?

    Further, are you trying to access some of the files that are on there from
    Gemplus? If so read the PS. Otherwise it will depend on what settings the
    files where created with, but if they where created with no protection, and
    no requirement for SM, then you should be able to read them...

    Ian Stevenson.

    P.S.
    If you are trying to use the key files that are on the cards you received
    from Gemplus, then there is a catch. These files are protected by two pins.
    One is the pin that you set with the Gemsafe product (we'll call this the
    user pin) and the other is on the Gemplus are not disclosing, from what I
    can deduct this is a pin to ensure that they are only used by the Gemsafe
    program (we'll call this the application pin).

    Other then the user pin and the application pin, there is a third pin which
    is the administration pin (to allow unblocking of the other pins).

                        Tan Fuibee
                        <fuibeeYAHOO.COM> To: SmartCardSDKDISCUSS.MICROSOFT.COM
                        Sent by: SmartCardSDK cc:
                        <SmartCardSDKDISCUSS.MICR Subject: Re: Authorization registers
                        OSOFT.COM>

                        07/20/2001 12:43 PM
                        Please respond to
                        SmartCardSDK

    Hi Stevenson,
    Is that true that I need to establish the session key
    before access any DF under the MF for the GPK8000? I
    read through the document and use the pilot kit
    already. I have a personalised card and manage to use
    APDU to access EF under any DF of MF through the pilot
    kit. However, my application can't read the EF under
    DF even I selected the DF through AID...Any idea...Can
    help.

    Thanks
    Fui Bee

     --- Ian Stevenson <Ian.StevensonPROTOCOM.COM.AU>
    wrote: > Just so you do get an answer, to create a
    file in
    > the MF of the GPK8000 you
    > have to establish a session key. You need to do this
    > only on the MF as that
    > is what the access conditions are set to.
    >
    > I would suggest you goto the Gemplus site and
    > download the manual for the
    > card - this is how I figured out how to use it's
    > APDUs - and the pilot
    > program.
    >
    > It should also be noted that, although there is a
    > standard for the
    > CreateFile command, this only came in ISO 7816-9.
    > This standard was only
    > published in 2000, so very few (I'm yet to find any)
    > support this standard
    > (they usually only do parts 1, 2, 3, and 4).
    >
    > IS.
    >
    >
    >
    >
    >
    >
    > Francois Methot
    > <francoismMACADAMIAN.COM>
    > To: SmartCardSDKDISCUSS.MICROSOFT.COM
    > Sent by: SmartCardSDK
    > cc:
    > <SmartCardSDKDISCUSS.MICR
    > Subject: Authorization registers
    > OSOFT.COM>
    >
    >
    > 07/20/2001 12:13 AM
    > Please respond to
    > SmartCardSDK
    >
    >
    >
    >
    >
    >
    > Hi,
    >
    > Thanks you all for your support on my first and
    > previous question on
    > this group.
    >
    > Does the Authorization registers always set to 0
    > when selecting the MF on a
    > SmartCard?
    >
    > Because I am tring to create an EF file on the MF.
    > When I send the command CreateFile it return me
    > this:
    >
    > 69 82h Access conditions not fulfilled:
    > Secure messaging required and no key specified in
    > Access Conditions
    > Secure messaging required and no temporary
    > administration key established
    >
    > I specified in the create command that I don't want
    > to use the Secure
    > Messaging! What is happening according to you?
    > Should I do a verify command
    > first?
    >
    >
    > regards
    > Francois

    ____________________________________________________________
    Do You Yahoo!?
    Get your free yahoo.co.uk address at http://mail.yahoo.co.uk
    or your free yahoo.ie address at http://mail.yahoo.ie