mirror of
https://github.com/RfidResearchGroup/proxmark3.git
synced 2026-09-30 21:48:37 +00:00
The DESFire simulation could only be reached over the air. A conformance suite that has recorded a genuine card's session needs to replay it byte for byte, which takes two things the simulation did not have: a way in over USB, and control of the card's random draws. CMD_HF_DESFIRE_SIM_TEST carries one operation per packet into the same state machine the RF loop drives: BEGIN, SCAN, APDU, RANDOM, FIELDOFF, STATE, END. SCAN runs the RF-reset path (init, reset, random id, FSD) and APDU goes through desfire_sim_apdu(), so native and ISO 7816 wrapped commands answer exactly as they do on air. No FPGA involvement. Randomness goes through a small host-fed byte queue: RndB and the random id draw from it first and fall back to the existing fixed value or tick counter when it is short, raising a sticky underflow flag. With nothing queued the RF simulation is byte-identical to before; SimulateDesfireTag() clears the queue so a host session cannot leak into a reader session. Co-Authored-By: Claude Fable 5.1 (claude-fable-5-1) <noreply@anthropic.com>
76 lines
3.1 KiB
C
76 lines
3.1 KiB
C
//-----------------------------------------------------------------------------
|
|
// Copyright (C) Proxmark3 contributors. See AUTHORS.md for details.
|
|
//
|
|
// This program is free software: you can redistribute it and/or modify
|
|
// it under the terms of the GNU General Public License as published by
|
|
// the Free Software Foundation, either version 3 of the License, or
|
|
// (at your option) any later version.
|
|
//
|
|
// This program is distributed in the hope that it will be useful,
|
|
// but WITHOUT ANY WARRANTY; without even the implied warranty of
|
|
// MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
|
|
// GNU General Public License for more details.
|
|
//
|
|
// See LICENSE.txt for the text of the license.
|
|
//-----------------------------------------------------------------------------
|
|
#ifndef __DESFIRE_H
|
|
#define __DESFIRE_H
|
|
|
|
#include "common.h"
|
|
|
|
#define DESFIRE_MAX_CRYPTO_BLOCK_SIZE 16
|
|
#define DESFIRE_MAX_KEY_SIZE 24
|
|
#define DESFIRE_MAC_LENGTH 4
|
|
#define DESFIRE_CMAC_LENGTH 8
|
|
|
|
typedef enum {
|
|
T_DES = 0x00,
|
|
T_3DES = 0x01, //aka 2K3DES
|
|
T_3K3DES = 0x02,
|
|
T_AES = 0x03
|
|
} DesfireCryptoAlgorithm;
|
|
|
|
#define DESFIRE_MAX_ALGO_COUNT 4 // T_DES ... T_AES
|
|
#define DESFIRE_MAX_KEY_COUNT 0x0E // key numbers 0x00 ... 0x0D
|
|
#define DESFIRE_MAX_APP_COUNT 64 // applications we keep track of per PICC
|
|
#define DESFIRE_MAX_FILE_COUNT 32 // file numbers 0x00 ... 0x1F
|
|
|
|
// Keys recovered for one application.
|
|
// keys[algo][keyno][0] is the found flag, keys[algo][keyno][1..] the key itself.
|
|
// `algo` is a DesfireCryptoAlgorithm, `keyno` the DESFire key number.
|
|
typedef struct {
|
|
uint32_t aid;
|
|
uint8_t keys[DESFIRE_MAX_ALGO_COUNT][DESFIRE_MAX_KEY_COUNT][DESFIRE_MAX_KEY_SIZE + 1];
|
|
} desfire_app_keys_t;
|
|
|
|
// `hf mfdes etest`: one CMD_HF_DESFIRE_SIM_TEST packet carries one operation.
|
|
typedef enum {
|
|
DESFIRE_SIM_TEST_BEGIN = 0, // check the image, clear the random queue -> no data
|
|
DESFIRE_SIM_TEST_END, // drop the state and the random queue -> no data
|
|
DESFIRE_SIM_TEST_SCAN, // RF reset and activation -> iso14a_card_select_t
|
|
DESFIRE_SIM_TEST_APDU, // data: one command, native or ISO 7816 wrapped -> the answer
|
|
DESFIRE_SIM_TEST_RANDOM, // data: bytes the next RndB / random id draws use
|
|
DESFIRE_SIM_TEST_FIELDOFF, // RF reset: session dropped, image re-read -> no data
|
|
DESFIRE_SIM_TEST_STATE, // -> desfire_sim_test_state_t
|
|
} desfire_sim_test_op_t;
|
|
|
|
// bytes the random queue holds, RANDOM answers PM3_EOVFLOW past this
|
|
#define DESFIRE_SIM_TEST_RANDOM_MAX 64
|
|
|
|
typedef struct {
|
|
uint8_t op; // desfire_sim_test_op_t
|
|
uint16_t len;
|
|
uint8_t data[];
|
|
} PACKED desfire_sim_test_cmd_t;
|
|
|
|
typedef struct {
|
|
uint8_t ready; // activated and answering
|
|
uint8_t authenticated;
|
|
uint8_t auth_keyno;
|
|
uint8_t aid[3]; // selected application, wire order
|
|
uint8_t random_remaining; // queued bytes not yet drawn
|
|
uint8_t random_underflow; // a draw wanted more than was queued, sticky
|
|
} PACKED desfire_sim_test_state_t;
|
|
|
|
#endif
|