4/09/2010

NXP 恩智浦推出新的RFID晶片---朝每物一標籤邁進

來源出處

G2iL and G2iL+可以被打開和關閉。是第二代(長距離)標籤,但是可以切換成短距離使用,嘗試破壞會送出警告訊息。

這兩款同樣具有防竊功能。在記憶體多1個bit來表示這樣物品是否被賣出,如果未賣出的物品接近門口就應該發出警報。
支援用RFID來載入韌體到電子產品上(STmicroelectronics出過HF具有同樣功能),這是很有創意的作法,
效果和應用價值不明。

個人看法:
這是朝大規模取代條碼的第一步。在商店需要進行防竊,而賣出給顧客之後考量到隱私權問題需要可以被關閉。
第一點防竊這部份商店為了隨時監控(接收警告訊息),需要在很多位置裝設reader,導入成本可能過高。
第二點關閉的問題,這裡應該需要密碼才能再打開,否則大家都可以打開就失去意義了。
整體而言非常適合用在零售業,一個晶片可以一魚多吃,可以看出NXP在這一塊市場的企圖心。

4/07/2010

Medlog應用Gen2 RFID在醫藥冷鏈

出處

一家葡萄牙公司採用內建溫度記錄器的EPC Gen 2標籤來確保藥物在運送途中獲得妥善的保溫效果。
2009年底他們6個倉儲已全面採用RFID。
過去這家公司嘗試使用溫度記錄器貼在運送車的外面,然而記錄器必須人工打開,運送後記錄必須抄錄到報表上分析,
員工大致上每個月只會做一兩次操作。記錄器並非直接貼在藥物包裝上而是車子(冰箱)外殼,不夠準確。

之後他們使用下圖的產品:
semi-passive (複習一下, 看到semi-passive就知道是有電池但不會主動回報reader)

CAEN RFID

透過一台手持reader啟動標籤之後,每30分鐘記錄一次溫度,內含電池可以使用約3年。
主要可以提高顧客對產品的信心,改善運送環節後,或許可以降低因溫控不佳而丟棄產品的量。

RFID結合Sensor是未來的趨勢之一。

延伸閱讀 何謂冷鏈?(cold chain)

3/02/2010

NXP Mifare Plus 恩智浦提供非接觸式卡片系統新一層安全保護

參考來源
mifare plus
原文出處


重點摘要︰有AES以及CRYPTO1加密功能, 向下相容, 防金鑰更新中斷, 7-Byte唯一ID和亂數ID, 距離估計(防止relay)。
防金鑰更新中斷機制, 如果卡片在key更新時被有心人(攻擊者)強制中斷, 會自動認定失敗並回復至先前的key (我未看先猜是dual-mode保護機制, 也就是存兩組key, 只有更新成功才把pointer指到新的那組, 從規格2x128bit AES key應該可以證實我的猜測)。

Key applications(主要應用)
  • 交通 Public transportation
  • 存取管理 Access management, e.g. employee, school or campus cards
  • 道路電子收費 Electronic toll collection
  • 停車Car parking
  • 認同卡 Loyalty programs
Key features(功能規格)
  • 2 or 4-KB EEPROM
  • Simple fixed memory structure compatible with MIFARE Classic 1 K (MF1ICS50), MIFARE Classic 4 K (MF1ICS70)
  • Access conditions freely configurable
  • Smooth migration from MIFARE Classic to MIFARE Plus security level supported
  • Open standard AES crypto for authentication, integrity and encryption
  • Common Criteria Certification: EAL4+ for IC HW and SW
  • ISO/IEC 14443-A unique serial number, 4 or 7 byte and random IDs
  • Multi-sector authentication, multi-block read and write
  • Anti-tear function for writing AES keys
  • Keys can be stored as MIFARE Classic CRYPTO1 keys (2 x 48 bit per sector) or as AES keys (2 x 128 bit sector)
  • Supports virtual card concept
  • High data rates up to 848 kbit/s
  • Available in MOA4 modules or 8-inch sawn bumped wafer
NXP MIFARE Plus is based on open global standards both for air interface and cryptographic methods. It is available in two versions: MIFARE Plus S, the Slim version, for straightforward migration of MIFARE Classic systems, and MIFARE Plus X, the eXpert version, which offers more flexibility to optimize the command flow for speed, privacy and confidentiality. MIFARE Plus X offers a rich feature set, including proximity checks against relay attacks.
MIFARE Plus is fully functional backwards compatible with MIFARE Classic 1 K / 4 K. Interoperability with MIFARE Classic has been verified by the independent MIFARE Certification Institute. MIFARE Plus offers the possibility to issue cards seamlessly into existing MIFARE Classic applications, before the infrastructure is upgraded. Once the security upgrades are in place, MIFARE Plus cards can be switched to a more secure mode in the field with no customer interaction necessary. AES (advanced encryption standard) is then being used for authentication, encryption and data integrity.
MIFARE Plus supports high-speed communication between card and terminal at up to 848 kbps/s, for time critical services. The read range of up to 10 cm increases the convenience of the touch-and-go experience.

Security Levels(可以切換幾個安全等級)
MIFARE Plus cards supports one pre-personalization and 3 security levels. Cards operate in one security level at any given time and can only be switched to a higher level.
  • Security Level 0 (預先燒錄key, AES和CRYPTO1保護memory?)
    MIFARE Plus cards are pre-personalized with configuration keys, level switching keys, MIFARE Classic CRYPTO1 and AES keys for the memory.
  • Security Level 1 (向下相容模式)
    In this level the cards are 100% functionally backwards compatible with MIFARE Classic 1K / 4K cards. Cards work seamlessly in existing MIFARE Classic infrastructure.
  • Security Level 2 (用AES做reader認證, 傳輸中用CRYPTO1做資料加密)
    Mandatory AES authentication. MIFARE Classic CRYPTO1 for data confidentiality.
  • Security Level 3 (全部用AES做reader認證, 傳輸資料加密, 資料檢查碼, 額外提供距離偵測)
    Mandatory AES for authentication, communication confidentiality and integrity. Optional proximity detection (MIFARE Plus X only).
自動防中斷機制, 如果卡片在key更新時被有心人(攻擊者)強制中斷, 會自動認定失敗並回復至先前的key, (我未看先猜是dual-mode保護機制, 也就是存兩組key, 只有更新成功才把pointer指到新的那組, 從規格2x128bit AES key應該可以證實我的猜測)
An automatic anti-tear mechanism is available for secure deployment of rolling keys. If a card is removed from the field during a key update, it either concludes the update or automatically falls back to the previous key. NXP recommends 7Byte UID, but offers 4B UID versions of MIFARE Plus during migration. MIFARE Plus is available in the proven MOA4 module and as sawn bumped wafers, no changes for existing manufacturing processes necessary.
Product leaflet
You can download the product leaflet here.