An NFC Ticketing System with a new approach of an Inverse Reader Mode



Similar documents
An NFC Ticketing System with a new approach of an Inverse Reader Mode

Software Card Emulation in NFC-enabled Mobile Phones: Great Advantage or Security Nightmare?

Significance of Tokenization in Promoting Cloud Based Secure Elements

Applying the NFC Secure Element in Mobile Identity Apps. RANDY VANDERHOOF Executive Director Smart Card Alliance

Loyalty Systems over Near Field Communication (NFC)

Mobile NFC 101. Presenter: Nick von Dadelszen Date: 31st August 2012 Company: Lateral Security (IT) Services Limited

Mobile Near-Field Communications (NFC) Payments

NFC Test Challenges for Mobile Device Developers Presented by: Miguel Angel Guijarro

}w!"#$%&'()+,-./012345<ya

Your Mobile Phone as a Ticket (NFC)

DEVELOPING NFC APPS for BLACKBERRY

Frequently Asked Questions

Software Card Emulation in NFC-enabled Mobile Phones: Great Advantage or Security Nightmare?

Technical Article. NFiC: a new, economical way to make a device NFC-compliant. Prashant Dekate

A Secure and Open Solution for Seamless Transit Systems

Using RFID Techniques for a Universal Identification Device

Training. MIFARE4Mobile. Public. MobileKnowledge April 2015

NFC in Android. Martijn Coenen

NFC Tags & Solutions. Understanding Near Field Communication (NFC) Technology. Executive Summary

NFC Based Equipment Management Inventory System

Mobile Electronic Payments

NFC. Technical Overview. Release r05

Bank. CA$H 2.0 Contactless payment cards

The Contactless- NFC Project of ATM Barcelona

Mobile Payment: The next step of secure payment VDI / VDE-Colloquium. Hans-Jörg Frey Senior Product Manager May 16th, 2013

Access Control and Management System Based on NFC-Technology by the Use of Smart Phones as Keys

Documentation of Use Cases for NFC Mobile Devices in Public Transport

CONTACTLESS INTEROPERABILITY IN TRANSIT

Training MIFARE SDK. Public. MobileKnowledge June 2015

Securing the future of mobile services. SIMalliance Open Mobile API. An Introduction v2.0. Security, Identity, Mobility

Mobile MasterCard PayPass Testing and Approval Guide. December Version 2.0

The Impact of Emerging Payment Technologies on Retail and Hospitality Businesses. National Computer Corporation

NFC EXPRESS User Manual

Mobile Cloud & Mobile Ticketing

Application of Near Field Communication Technology for Mobile Airline Ticketing

Secure Element Deployment & Host Card Emulation v1.0

Mobile Payment Transactions: BLE and/or NFC? White paper by Swen van Klaarbergen, consultant for UL Transaction Security s Mobile Competence Center

Near Field Communication in Cell Phones

CANADA VS THE USA - THE CONTRAST AND LESSONS FOR MOBILE PAYMENTS

Mobile Applications and OpenTravel Specifications

Important Bluetooth. and Software Considerations for Wireless Barcode Scanner Deployments

Evaluation of the world s first pilot using NFC phones for check-in and hotel room keys

Development of contactless mobile payment services

Touch & Travel a SIM-based eticketing System

Secure Automatic Ticketing System

An Effective Approach to Open Payment Systems

NFC in Public Transport

Relay Attacks in EMV Contactless Cards with Android OTS Devices

Mobile Cloud Computing

The Survey on Near Field Communication

HCE, Apple Pay The shock of simplifying the NFC? paper

Using an NFC-equipped mobile phone as a token in physical access control

The Goods, the Payment and the Mobile!

Latest and Future development of Mobile Payment in Hong Kong

Training. NFC in Android. Public. MobileKnowledge October 2015

NFC Hacking: The Easy Way

A Simple and Secure E-Ticketing System for Intelligent Public Transportation based on NFC

THE PRODUCT AUTHENTICATION APPLICATION DESIGN BASED ON NFC

Bringing Security & Interoperability to Mobile Transactions. Critical Considerations

Bringing Mobile Payments to Market for an International Retailer

HCE and SIM Secure Element:

Near Field Communication (NFC) and Transit: Applications, Technology and Implementation Considerations

Inside the Mobile Wallet: What It Means for Merchants and Card Issuers

OBID RFID by FEIG ELECTRONIC. OBID classic / OBID classic-pro. RFID Reader Technology for Security Applications

Abracon PTM Introduction to ANFCA Series Flexible Peel & Stick NFC Antennas

How To Understand And Understand The Mobile Nfc Ecosystem

NFC Hacking: The Easy Way

C23: NFC Mobile Payment Ecosystem & Business Model. Jane Cloninger Director

The Convergence of IT Security and Physical Access Control

Smart Shopping- An Android Based Shopping Application

NFC Testing. Near Field Communication Research Lab Hagenberg. Gerald Madlmayr. NFC Research Lab, Hagenberg. E-Smart 2008, Sophia Antipolis

OVERVIEW OF MOBILE PAYMENT LANDSCAPE

The State of Pay. A mobile revolution. semble.co.nz

OVERVIEW OF MOBILE PAYMENT LANDSCAPE Marianne Crowe Federal Reserve Bank of Boston NEACH September 10, 2014

About Visa paywave for mobile

Security Analysis of Mobile Payment Systems

Mobile Payment using HCE and mpoint payment gateway based on NFC enabled phones. AUTHOR : GRZEGORZ MILCARZ S111040

NFC: Enabler for Innovative Mobility and Payment NFC: MOBILIDADE E MEIOS DE PAGAMENTO

E M V I M P L E M E N TAT I O N T O O L S F O R S U C C E S S, P C I & S E C U R I T Y. February 2014

How Secure are Contactless Payment Systems?

BGS MOBILE PLATFORM HCE AND CLOUD BASED PAYMENTS

How To Use Nfc On A Mobile Phone

AN Quick Start Up Guide for EXPLORE NFC working with Raspberry Pi. Application note COMPANY PUBLIC. Rev December

Towards an Internet of Things: Android meets NFC. Dipartimento di Scienze dell Informazione Università di Bologna

Use of NFC and QR code Identification in an Electronic Ticket System for Public Transport

Important Notice Baracoda products works with all Bluetooth devices accepting both SPP connection and sniff mode.

White Paper. Take advantage of application development opportunities in the changing landscape of enterprise mobility with

SmartCITIES. Smart InterOperable. Solutions for Transport Authorities

Smart Ride: European transit systems move to contactless mobile payments Trends and Developments, May 05, 2015

Transcription:

An NFC Ticketing System with a new approach of an Inverse Reader Mode Dresden, 22/11/2013 Felipe de Sousa Silva

Outline NFC Overview NFC Public Ticket System. Intention of the Inverse Reader Mode The Inverse Mode Design Validation Process Conclusion

NFC Overview What is NFC? NFC ( near field communication ) is a short-range wireless technology that enable two devices to securely exchange small amounts of data when they are placed a few centimeters apart. Applications of NFC Files transference Collect multimedia information E-payment Public transportation ticketing

Why should I use NFC? NFC vs Paper tickets Tickets stored in phones are less likely to be lost than paper tickets. Studies have repeatedly shown that people are less likely to leave home without their phones than anything else. Obtaining a ticket is much more convenient, because it can be sent electronically to the NFC-enabled phone.

Why should I use NFC? NFC vs Contactless Card An NFC-enabled phone can hold more than one ticket from more than one transport operator. Using their NFC-enabled phones, consumers can manage their cards and tickets anywhere at any time. Smart cards stored in an NFC-enabled phone are less susceptible to collision.

Why should I use NFC? NFC vs Barcode NFC ticketing is also faster. There is no need to open an application to find the 2D barcode; the phone experience is a simple tap-and-go. NFC-enabled phones are two-way devices, enabling the traveler to both send and receive information, while 2D barcodes are read-only. QR codes are not always easy to read

NFC Modes Operation Modes Reader / Write Card emulation Peer-to-peer

NFC Modes Operation Modes Reader / Write Card emulation Peer-to-peer

NFC Modes Operation Modes Reader / Write Card emulation Peer-to-peer

NFC Design The NFC chip has direct access to UICC and SAM chip. The Secure chip and UICC are used to store sensitive data like keys and personal information. Unfortunately the usage of the SE is restricted by the owner. Manufacturer MMO TSM

NFC Ticketing System

Intention of the Inverse Reader Mode Current ticketing systems use NFC enabled mobile phones in card emulation or peer-to-peer mode. Problems with card emulation mode: Owner of the secure element vs. third party service provider restricted or no access to the secure element of the mobile phone. Problems with peer-to-peer mode: Compatibility problems with different implementations (e.g. Symbian vs. Android) No access to the lower layers (APDU) on some operating systems (e.g. Windows Phone) Problems with software emulated tags: Only few implementations (e.g. RIM s Blackberry OS since version 7, Cyanogenmod

Intention of the Inverse Reader Mode New approach: Inverse Reader Mode No secure element is needed on the mobile phone The mobile phone uses only the reader/writer mode, which works on all NFC enabled phones Light-weight and well-established protocol stack (ISO/IEC 14443-4 and 7816-4) Card emulation support is needed on the reader side

The Inverse Mode Design

APDU Exchange Data For exchanging data from the smartphone to the validation terminal APDU messages are used. APDU Commands SELECT DF READ BINARY WRITE BINARY

File System StationID Stores the identification of the ticket station. TicketID Used to store the ticket information into the ticket station. TicketDate Similar to the TicketID File. Used to store the ticket date. ValidInfo The Server check the information and write into this file the result.

Validation Process NFC phone requests the station ID. The phone selects the correct ticket, send to the system and wait for a confirmation. The phone send the ticket date and wait for another confirmation. At the end the phone send a message requesting the content of the validinfo file.

Validation Process If the validation process was accomplished successfully, all file identifiers will be set to their default values.

Conclusion Alternative to the card emulation mode Avoiding the access restrictions of the secure element Until now security was not considered in detail

References http://www.smartcardalliance.org/pages/publications-nfc-frequently-askedquestions http://www.nexperts.com/nexpertise/technology/how-does-it-work/ http://www.nfc.cc/wp-content/uploads/2011/03/architecture.jpg http://supportforums.blackberry.com/t5/native-development/peer-to-peer- NFC-How-to-send-multiple-messages/td-p/2645143 http://ieeexplore.ieee.org/stamp/stamp.jsp?tp=&arnumber=6482448 http://nfc-workshop.org/2013/documentation/presentation_fh- OOe_InverseReaderMode.pdf

Thank You!