Difference between revisions of "Belgian eGov"

From YobiWiki
Jump to navigation Jump to search
Line 8: Line 8:
 
==RFID-enabled Passports==
 
==RFID-enabled Passports==
 
* [http://www.icao.int/mrtd/download/technical.cfm ICAO MRTD]
 
* [http://www.icao.int/mrtd/download/technical.cfm ICAO MRTD]
====Readers====
+
===Readers===
 
* http://wiring.org.co/learning/examples/rfid_reading.html ?
 
* http://wiring.org.co/learning/examples/rfid_reading.html ?
====Hacks====
+
===Hacks===
 
* http://www.acbm.com/inedits/rfid.html
 
* http://www.acbm.com/inedits/rfid.html
 
* http://www.schneier.com/blog/archives/2006/06/build_your_own.html
 
* http://www.schneier.com/blog/archives/2006/06/build_your_own.html
====Tools====
+
===Tools===
 
* http://openmrtd.org/
 
* http://openmrtd.org/
 
* http://www.rfidiot.org/
 
* http://www.rfidiot.org/
  +
* http://jmrtd.org/
====Security of Belgian ePassports====
 
  +
==Belgian ePassports==
  +
===Characteristics===
  +
* [https://www.checkdoc.be/CheckDoc/index.jsp?currenPage=checkdocument.jsp&choice=checkSecurity&iconDB=02&specific_document=1115&checksecurity_level=2&id_menu=0012 Current versions demo]
  +
* Uses Opentrust PKI (former IDX-PKI from idealx)
 
===Security of Belgian ePassports===
 
* http://www.theregister.co.uk/2007/06/10/belgian_epassport_flaws/
 
* http://www.theregister.co.uk/2007/06/10/belgian_epassport_flaws/
 
* http://www.dice.ucl.ac.be/crypto/passport/index.html
 
* http://www.dice.ucl.ac.be/crypto/passport/index.html

Revision as of 18:05, 22 January 2009

Links

eID

cf Belgian eID

RFID-enabled Passports

Readers

Hacks

Tools

Belgian ePassports

Characteristics

Security of Belgian ePassports

Electronic voting

Misc

Schaerbeek incident

SIS card

$ pcsc_scan
 Reader 0: iDream ID-SMID01 00 00
  Card state: Card inserted, 
  ATR: 92 23 10 91

ATR: 92 23 10 91
+ TS = 92 --> UNDEFINED
+ T0 = 23, Y(1): 0010, K: 3 (historical bytes)
  TB(1) = 10 --> Programming Param P: 16 Volts, I: 0 milliamperes
+ Historical bytes: 91
 ERROR! ATR is truncated: 2 byte(s) is/are missing
  Category indicator byte: 91 (proprietary format)
Your card is not a microprocessor card. It seems to be memory card.

This requires actually a reader capable of the 3-wire protocol.
Card as identified by a OmniKey 5321 reader:

Siemens SLE4418/28 (Infineon) 1k

It's 1024-byte memory, with a mask to tell which bytes can be changed and probably (if SLE4428) a "password" of 2 bytes, self-locking after 8 failed attempts.
Note that SLE4418/28 are discontinued by Infineon, proposing now compatible cards SLE5518/28