Title: BUILDING ACCESS CONTROL SYSTEMS:
1BUILDING ACCESS CONTROL SYSTEMS LOCAL
EXPERIENCES Chris Sendall (MISD / University
Card Services)
cjs2_at_admin.cam.ac.uk
2- Card Format
- Type of System
- Data
- Initial Card Supply
- Temporary Cards
3University Card Format
4Contactless chip
July 2004
5 MIFARE classic Standard with 1 Kbytes EEPROM
6(No Transcript)
716 sectors 64 bytes per sector
8Sector is four blocks 16 bytes per block
9Sector is four blocks 16 bytes per block
10A block is a Read/write block (16 bytes) Value
block (4 byte integer value)
11Sector Trailer contains the keys and access
conditions Keys 6 bytes (12 hex chars) 2
keys Key A Key B Access Conditions (read,
write, increment, decrement-restore-transfer)
12Blank card
13University Card data only
14University Card Data protected by keys
15University Card protected by keys
16MAD Mifare Access Directory
Uses sector 0 blocks 1 and 2 32 bytes 15 two
bytes values Application Identifiers (AID)
which are allocated by Phillips 65536
values 0000 sector is free 0002 sector is
reserved
17University Card MAD
18University Card MAD
2 blocks 32 bytes 16 - 2 byte values AIDs 00
00 means free 00 02 means reserved
19Format of data on the University Mifare Card
http//www.admin.cam.ac.uk/offices/misd/univcard/c
ontactless/format.html
20- Choice of identifier from card
- Mifare ID
- Cardholder ID/Issue number
- Mifare Number sector 1 sector 4
- Library Barcode
- Fixed sector used by system supplier
- Own sector
21- Choice of identifier from card
- Mifare ID
- 32 bit number put on all Mifare cards by the card
manufacturer. - Readonly
- No access key required to read it.
- Could use any card
- In theory an electronic box could be produced to
emulate a Mifare ID as if a card containing that
ID had been used
22- Choice of identifier from card
- Mifare ID
- Cardholder ID/Issue number
- 7 character Cardholder ID (cs0036g)
- 2 digit issue number
- Unique to card
- Reader needs to know security key
- Too many characters for standard systems need
up to 8 digit integer
23- Choice of identifier from card
- Mifare ID
- Cardholder ID/Issue number
- Mifare Number
- Unique to card (effectively)
- Reader needs to know security key
- Up to eight digit number derived from Cardholder
ID/Issue number - Stored as 32 bit integer value rather than
digits. - sector 1 for normal building access
- sector 4 for less secure building access
24- Choice of identifier from card
- Mifare ID
- Cardholder ID/Issue number
- Mifare Number sector 1 sector 4
- Library Barcode
- Unique to user
- Sector 3
- Reader needs to know security key
- No good for building security
25- Choice of identifier from card
- Mifare ID
- Cardholder ID/Issue number
- Mifare Number sector 1 sector 4
- Library Barcode
- Fixed sector used by system supplier
- System uses a number in say sector 15.
- Security key known to system supplier
- Cards produced by system supplier
- Cannot use University Card
- Reader can read either University Card OR
suppliers card
26- Choice of identifier from card
- Mifare ID
- Cardholder ID/Issue number
- Mifare Number sector 1 sector 4
- Library Barcode
- Fixed sector used by system supplier
- Own sector
- You can add you own special security to the
sector - You know the security keys
27- Card Format
- Type of System
- Data
- Initial Card Supply
- Temporary Cards
28- Type of System
- Dumb reader panel controlling PC
- Reader with local memory and battery backup
controlling PC - Web enabled reader any controlling PC?
- Standalone card is network
- Secondary data pin number, biometrics.
29- Card Format
- Type of System
- Data
- Initial Card Supply
- Temporary Cards
30- Data
- Keeping up to dateUse cardsUse reports from
Card databaseDaily email from Card
databaseDaily file transfer from Card database - Initial data loadUse cardsUse reports from Card
databaseUse export from Card database
31Web access to University Card database
CardWeb
https//www-card.admin.cam.ac.uk/cgi/card.cgi
32- Card Format
- Type of System
- Data
- Initial Card Supply
- Temporary Cards
33Initial Card Supply The Card Office can supply a
batch of cards for students and staff connected
to the college or department on
demand. Automatically From a supplied list
(CRSid, barcode, name)
34- Card Format
- Type of System
- Data
- Initial Card Supply
- Temporary Cards
35Temporary Cards
36Special Cards