BUILDING ACCESS CONTROL SYSTEMS: - PowerPoint PPT Presentation

1 / 36
About This Presentation
Title:

BUILDING ACCESS CONTROL SYSTEMS:

Description:

BUILDING ACCESS CONTROL SYSTEMS: LOCAL EXPERIENCES. Chris Sendall ... Daily email from Card database. Daily file transfer from Card database. Initial data load ... – PowerPoint PPT presentation

Number of Views:355
Avg rating:3.0/5.0
Slides: 37
Provided by: chriss112
Category:

less

Transcript and Presenter's Notes

Title: BUILDING ACCESS CONTROL SYSTEMS:


1
BUILDING ACCESS CONTROL SYSTEMS LOCAL
EXPERIENCES Chris Sendall (MISD / University
Card Services)
cjs2_at_admin.cam.ac.uk
2
  • Card Format
  • Type of System
  • Data
  • Initial Card Supply
  • Temporary Cards

3
University Card Format
4
Contactless chip
July 2004
5
MIFARE classic Standard with 1 Kbytes EEPROM
6
(No Transcript)
7
16 sectors 64 bytes per sector
8
Sector is four blocks 16 bytes per block
9
Sector is four blocks 16 bytes per block
10
A block is a Read/write block (16 bytes) Value
block (4 byte integer value)
11
Sector Trailer contains the keys and access
conditions Keys 6 bytes (12 hex chars) 2
keys Key A Key B Access Conditions (read,
write, increment, decrement-restore-transfer)
12
Blank card
13
University Card data only
14
University Card Data protected by keys
15
University Card protected by keys
16
MAD Mifare Access Directory
Uses sector 0 blocks 1 and 2 32 bytes 15 two
bytes values Application Identifiers (AID)
which are allocated by Phillips 65536
values 0000 sector is free 0002 sector is
reserved
17
University Card MAD
18
University Card MAD
2 blocks 32 bytes 16 - 2 byte values AIDs 00
00 means free 00 02 means reserved
19
Format of data on the University Mifare Card
http//www.admin.cam.ac.uk/offices/misd/univcard/c
ontactless/format.html
20
  • Choice of identifier from card
  • Mifare ID
  • Cardholder ID/Issue number
  • Mifare Number sector 1 sector 4
  • Library Barcode
  • Fixed sector used by system supplier
  • Own sector

21
  • Choice of identifier from card
  • Mifare ID
  • 32 bit number put on all Mifare cards by the card
    manufacturer.
  • Readonly
  • No access key required to read it.
  • Could use any card
  • In theory an electronic box could be produced to
    emulate a Mifare ID as if a card containing that
    ID had been used

22
  • Choice of identifier from card
  • Mifare ID
  • Cardholder ID/Issue number
  • 7 character Cardholder ID (cs0036g)
  • 2 digit issue number
  • Unique to card
  • Reader needs to know security key
  • Too many characters for standard systems need
    up to 8 digit integer

23
  • Choice of identifier from card
  • Mifare ID
  • Cardholder ID/Issue number
  • Mifare Number
  • Unique to card (effectively)
  • Reader needs to know security key
  • Up to eight digit number derived from Cardholder
    ID/Issue number
  • Stored as 32 bit integer value rather than
    digits.
  • sector 1 for normal building access
  • sector 4 for less secure building access

24
  • Choice of identifier from card
  • Mifare ID
  • Cardholder ID/Issue number
  • Mifare Number sector 1 sector 4
  • Library Barcode
  • Unique to user
  • Sector 3
  • Reader needs to know security key
  • No good for building security

25
  • Choice of identifier from card
  • Mifare ID
  • Cardholder ID/Issue number
  • Mifare Number sector 1 sector 4
  • Library Barcode
  • Fixed sector used by system supplier
  • System uses a number in say sector 15.
  • Security key known to system supplier
  • Cards produced by system supplier
  • Cannot use University Card
  • Reader can read either University Card OR
    suppliers card

26
  • Choice of identifier from card
  • Mifare ID
  • Cardholder ID/Issue number
  • Mifare Number sector 1 sector 4
  • Library Barcode
  • Fixed sector used by system supplier
  • Own sector
  • You can add you own special security to the
    sector
  • You know the security keys

27
  • Card Format
  • Type of System
  • Data
  • Initial Card Supply
  • Temporary Cards

28
  • Type of System
  • Dumb reader panel controlling PC
  • Reader with local memory and battery backup
    controlling PC
  • Web enabled reader any controlling PC?
  • Standalone card is network
  • Secondary data pin number, biometrics.

29
  • Card Format
  • Type of System
  • Data
  • Initial Card Supply
  • Temporary Cards

30
  • Data
  • Keeping up to dateUse cardsUse reports from
    Card databaseDaily email from Card
    databaseDaily file transfer from Card database
  • Initial data loadUse cardsUse reports from Card
    databaseUse export from Card database

31
Web access to University Card database
CardWeb
https//www-card.admin.cam.ac.uk/cgi/card.cgi
32
  • Card Format
  • Type of System
  • Data
  • Initial Card Supply
  • Temporary Cards

33
Initial Card Supply The Card Office can supply a
batch of cards for students and staff connected
to the college or department on
demand. Automatically From a supplied list
(CRSid, barcode, name)
34
  • Card Format
  • Type of System
  • Data
  • Initial Card Supply
  • Temporary Cards

35
Temporary Cards
36
Special Cards
Write a Comment
User Comments (0)
About PowerShow.com