/[pcsclite]/trunk/Drivers/ccid/README
ViewVC logotype

Contents of /trunk/Drivers/ccid/README

Parent Directory Parent Directory | Revision Log Revision Log


Revision 1761 - (show annotations) (download)
Sun Nov 27 19:44:29 2005 UTC (7 years, 5 months ago) by rousseau
File size: 17161 byte(s)
release 0.9.4
1 USB CCID IFD Handler
2 ====================
3
4 This package provides the source code for a generic USB CCID
5 (Chip/Smart Card Interface Devices) driver. See [1] for the USB CCID
6 specifications from the USB working group.
7
8
9 Authors:
10 ========
11
12 - Ludovic Rousseau <ludovic.rousseau@free.fr>
13 - Carlos Prados for the PPS and ATR parsing code (taken from his
14 towitoto driver) in towitoko/ directory.
15 - Olaf Kirch for the T=1 TPDU code (from the OpenCT package) in openct/
16 directory. I (Ludovic Rousseau) greatly improved this code.
17
18
19 Supported CCID readers:
20 =======================
21
22 (in alphabetical order)
23 - Advanced Card Systems ACR 38 [16]
24 old versions of this reader have a bug: the reader do timeout when a
25 special USB frame is sent from the reader. If the frame size if a
26 multiple of wMaxPacketSize the communication is stopped.
27 - Cherry XX33 keyboard [?]
28 - Cherry XX44 keyboard (SmartBoard G83-6744) [18]
29 - Cherry SmartTerminal ST2XXX
30 - Cherry ST-1044U [27]
31 - Dell keyboard SK-3106 [?]
32 - Dell smart card reader keyboard [?]
33 - Eutron SIM Pocket Combo [25]
34 - Eutron CryptoIdentity [26]
35 - Gemplus GemPC 433 SL [2]
36 - Gemplus GemPC Key [3]
37 - Gemplus GemPC Twin [4]
38 - Kobil KAAN Base [19]
39 - Kobil KAAN Advanced [20]
40 - Kobil KAAN SIM III [21]
41 - Kobil mIDentity [22]
42 - OmniKey CardMan 3121 [5]
43 - SCM Micro SCR 331 [6]
44 You shall upgrade the firmware [17] using version 5.18 or later.
45 - SCM Micro SCR 331-DI [11]
46 You shall upgrade the firmware [17] using version 6.22 or later.
47 - SCM Micro SCR 335 [7]
48 The firmware of this reader can't be upgraded so be sure to buy a
49 recent model with firmware 5.14 or later
50 - SCM Micro SCR 3310
51 - SCM Micro SPR 532 [9]
52 You shall contact Torsten Maykranz <tmaykranz@scmmicro.de> to get a
53 firmware upgrade.
54 - Verisign Secure Storage Token [24]
55 - Verisign Secure Token [?]
56
57
58 Should work but untested by me:
59 ===============================
60
61 I would like to get these readers to perform test and validation and
62 move them in the supported list above. If you are one of the
63 manufacturers, please, contact me.
64
65 - ActivCard USB reader 2.0 [10]
66 - C3PO LTC32 [13]
67 - SCM Micro SCR 331-DI NTTCom [23]
68 - SCM Micro SCR 3310-NTTCOM [28]
69 - SCM Micro SCR 333 [15]
70 - Silitek SK-3105 keyboard [12] or C3PO TLTC2USB [14]
71
72
73 Unsupported or partly supported CCID readers:
74 =============================================
75
76 - C3PO LTC31 [8]
77 The reader works fine with Linux kernel 2.4 but does not with Linux
78 kernel 2.6. The ioctl() syscall returns EINVAL (Invalid argument)
79 - RSA SecureID SID800 [24]
80 The USB layer is completely broken. The reader is sometimes not even
81 seen on the USB bus (same problem under Windows). Maybe newer
82 devices will work?
83
84
85 Supported operating systems:
86 ============================
87
88 - GNU/Linux (libusb 0.1.7)
89 - MacOS X/Darwin (libusb 0.1.8beta, CVS snapshot. See "Known problems")
90 to libusb)
91
92
93 Debug informations:
94 ===================
95
96 The driver uses the debug function provided by pcscd. So if pcscd sends
97 its debug to stdout (pcscd --foreground) then the CCID will also send
98 its debug to stdout. If pcscd sends its debug to syslog (by default)
99 then the CCID will also send its debug to syslog.
100
101 You can change the debug level using the Info.plist configuraion file.
102 The Info.plist is installed, by default, in
103 /usr/local/pcsc/drivers/ifd-ccid.bundle/Contents/Info.plist
104
105 The debug level is set in the ifdLogLevel field. It is a binary OR
106 combinaison of 4 different levels.
107 - 1: critical: important error messages
108 - 2: info: informative messages like what reader was detected
109 - 4: periodic: periodic info when pcscd test if a card is present (every
110 1/10 of a second)
111 - 8: comm: a dump of all the bytes exchanged between the host and the
112 reader
113
114 By default the debug level is set to 3 (1 + 2) and correspond to the
115 critical and info levels.
116
117 You have to restart the driver so it read the configuration file again
118 and use the new debug level value. To restart the driver you just need
119 to unplug all your CCID readers so the the driver is unloaded and then
120 replug your readers. You can also restart pcscd.
121
122
123 Known problems:
124 ===============
125
126 MacOSX libusb
127 """""""""""""
128 There is a bug in libusb that crash the libusb library when you
129 unplug a reader and replug it in another USB socket. So if you
130 unplug a reader replug it in the same USB socket.
131
132 see http://sourceforge.net/tracker/index.php?func=detail&aid=886778&group_id=1674&atid=101674
133
134
135 Licence:
136 ========
137
138 This library is free software; you can redistribute it and/or modify it
139 under the terms of the GNU Lesser General Public License as published by
140 the Free Software Foundation; either version 2.1 of the License, or (at
141 your option) any later version.
142
143 This library is distributed in the hope that it will be useful, but
144 WITHOUT ANY WARRANTY; without even the implied warranty of
145 MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU Lesser
146 General Public License for more details.
147
148 You should have received a copy of the GNU Lesser General Public License
149 along with this library; if not, write to the Free Software Foundation,
150 Inc., 59 Temple Place, Suite 330, Boston, MA 02111-1307 USA
151
152
153 History:
154 ========
155
156 0.9.4 - 27 November 2005, Ludovic Rousseau
157 - add support for Eutron SIM Pocket Combo, Eutron CryptoIdentity,
158 Verisign Secure Token and VeriSign Secure Storage Token, GemPC
159 Card (PCMCIA), SCM SCR331-DI NTTCom, SCM Micro SCR 3310-NTTCom,
160 Cherry ST-1044U, Cherry SmartTerminal ST-2XXX
161 - add support of PC/SC v2 part 10 CM_IOCTL_GET_FEATURE_REQUEST add
162 support of FEATURE_VERIFY_PIN_DIRECT and FEATURE_MODIFY_PIN_DIRECT
163 remove support of IOCTL_SMARTCARD_VENDOR_VERIFY_PIN (now
164 obsoleted). A sample code is available in examples/scardcontrol.c
165 - we need pcsc-lite 1.2.9-beta9 since some structures used for PIN
166 pad readers are defined by pcsc-lite
167 - some (bogus) cards require an extra EGT but the ATR does not say
168 so. We try to detect the bogus cards and set TC1=2
169 - IFDHSetProtocolParameters(): only use a data rate supported by the
170 reader in the PPS negociation, otherwise we stay at the default
171 speed.
172 - calculate and store the read timeout according to the card ATR
173 instead of using a fixed value of 60 seconds
174 - increase the read timeout if the card sends and WTX request
175 - improve support of GemPC Twin and GemPC Card (serial protocol)
176 - reset the device on close only if DRIVER_OPTION_RESET_ON_CLOSE is
177 set. The problem was that a device reset also disconnects the
178 keyboard on a keyboard + reader device.
179 - use color logs
180 - some minor bugs removed
181
182
183 0.9.3 - 14 March 2005, Ludovic Rousseau
184 - change the licence from GNU GPL to GNU Lesser GPL (LGPL)
185 - add support for ACS ACR 38, Kobil KAAN Base, Kobil KAAN Advanced,
186 Kobil KAAN SIM III, Kobil KAAN mIDentity, SCM Micro SCR 331,
187 SCM Micro SCR 331-DI, SCM Micro SCR 335, SCM Micro SCR 3310,
188 SCM Micro SCR 532, Cherry XX44 readers
189 - improve communication speed with readers featuring "Automatic PPS
190 made by the CCID"
191 - switch the Cherry xx33 reader in ISO mode if power up in EMV mode
192 fails.
193 - add support of character level readers. Thanks to O2Micro for the
194 patch
195 - add support for the O2Micro OZ776S reader but the reader firmware
196 is still bogus
197 - check firmware version to avoid firmwares with bugs. You can still
198 use a bogus firmware by setting DRIVER_OPTION_USE_BOGUS_FIRMWARE
199 in Info.plist
200 - some minor bugs removed
201
202 0.9.2 - 15 August 2004, Ludovic Rousseau
203 - T=1 TPDU code:
204 . the work on T=1 TPDU code was possible thanks to Gemplus
205 validation team who helped me test, debug and bring the code to
206 an EMV validation level. Thanks to Jérôme, Jean-Yves, Xavier and
207 the Gemplus readers department
208 . error code was not checked correctly
209 . avoid a (nearly) infinite loop when resynch are needed.
210 . correctly initialise an internal value to allow more than one
211 reader to work
212 - multi-slots readers
213 . add support for multi-slots readers. The only one I have is a
214 SCM Micro SCR 331-DI with a contact and a contactless interface.
215 The contactless interface may or may not work for you since the
216 reader uses proprietary (undocumented) commands.
217 - GemPC Twin serial reader
218 . perform a command (get the reader firmware) to be sure a GemPC
219 Twin (serial or pcmcia) reader is connected
220 . use a dynamic timeout when reading the serial port.
221 The first timeout used when detecting the reader is 2 seconds to
222 not wait too long if no reader is connected. Later timeouts are
223 set to 1 minute to allow long time APDU.
224 - use `pkg-config libpcsclite --cflags` to locate the pcsc-lite
225 header files
226 - use `pkg-config --print-errors --atleast-version=1.2.9-beta5 libpcsclite`
227 to test the pcsc-lite version
228 - code improvements thanks to the splint tool (http://www.splint.org/)
229
230 0.9.1 - 1 July 2004, Ludovic Rousseau
231 - I forgot to define IFD_PARITY_ERROR in a .h file
232
233 0.9.0 - 1 July 2004, Ludovic Rousseau
234 - The T=1 TPDU automata from Carlos Prados' Towitoko driver is very
235 limited and do not support error management mechanisms.
236 I then used the T=1 TPDU automata from OpenCT (OpenSC project).
237 This automata is much more powerful but still lacks a lot of error
238 management code.
239 I then added all the needed code to reach the quality level
240 requested by the EMV standard.
241 - add support for new readers:
242 . Advanced Card Systems ACR 38
243 . Cherry XX33
244 . Dell keyboard SK-3106
245 . Dell smart card reader keyboard
246 . SCR 333
247 - add support of multi procotol cards (T=0 and T=1)
248 - the debug level is now dynamic and set in the Info.plist file (no
249 need to recompile the driver any more)
250 - add support for the libusb naming scheme: usb:%04x/%04x:libusb:%s
251 - INSTALL: add a "configuring the driver for the serial reader
252 (GemPC Twin)" part
253 - use `pkg-config libpcsclite --variable=usbdropdir` so you do not
254 have to use --enable-usbdropdir=DIR or --enable-ccidtwindir=DIR
255 even if pcscd does not use the default /usr/local/pcsc/drivers
256 - add support of IOCTL_SMARTCARD_VENDOR_IFD_EXCHANGE and
257 IOCTL_SMARTCARD_VENDOR_VERIFY_PIN in IFDHControl()
258 - read ifdDriverOptions from Info.plist to limit the use of
259 IOCTL_SMARTCARD_VENDOR_IFD_EXCHANGE (idea from Peter Williams)
260 - provide an example of use of SCardControl()
261 IOCTL_SMARTCARD_VENDOR_IFD_EXCHANGE and
262 IOCTL_SMARTCARD_VENDOR_VERIFY_PIN in example/
263 - add a --enable-pcsclite option (default to yes) so that the driver
264 can be compiled for a different framework (one needing
265 tokenparser.l like Solaris)
266 - Reset action is power off and power on, not just power on
267 - use the include files from pcsc-lite
268 - add a mechanism to allow power on at 1.8V, 3V and then 5V as
269 specified by ISO 7816. We still use 5V for now to avoid problems
270 with non ISO compliant cards
271
272 0.4.1 - 14 February 2004, Ludovic Rousseau
273 - distribute missing files readers/supported_readers.txt and
274 src/create_Info_plist.pl
275 'make install' failed because of this.
276
277 0.4.0 - 13 February 2004, Ludovic Rousseau
278 - support of T=1 with TPDU readers. A lot of the T=1 code comes from
279 Carlos Prados towitoko driver.
280 My code is GNU GPL, his code is GNU LGPL so the global driver is
281 GNU GPL
282 - PPS negotiation if the reader does not do it automatically
283 - add support for the Silitek SK-3105 keyboard. It's a USB device
284 with multiple interfaces
285 - use the create_Info_plist.pl script to generate the installed
286 Info.plist from an Info.plist template and a list of supported
287 readers. The Info.plist was too "complex" to maintain by hand
288 since it now contains 11 entries
289 - add support of IFDHCreateChannelByName to avoid wrong reader
290 enumeration. This is not complete if you have multiple _identical_
291 readers. You need to use a > 1.2.0 pcsc-lite version (not yet
292 released at that time)
293 - build but do not install the serial ccidtwin driver by default
294 since it is useless on computers without a serial port or without
295 this reader for example.
296 - read and write timeouts are not symmetric. write timout can be
297 shorter since the reader and card is not supposed to do anything
298 before receiving (write) a command
299 - do not try to find usb.h and other libusb files if
300 --disable-libusb is used. Needed if you only want to build the
301 serial driver. Thanks to Niki Waibel for the patch
302 - add a --enable-ccidtwindir argument to ./configure to specify the
303 serial GemPC Twin installation directory
304 - debug and code improvements and simplifications
305
306 0.3.2 - 4 November 2003, Ludovic Rousseau
307 - src/commands.c: correct a stupid bug that occurs with an APDU with
308 2 bytes response.
309 - Info.plist: add SPR 532 in list of supported readers
310 - parse.c: do not exit if the InterfaceClass is 0xFF (proprietary).
311 It is the case with old readers manufactured before the final
312 release of the CCID specs.
313 - move LTC31 reader from unsupported to supported reader list. It
314 was my f ault since in used odd INS byte in my test applet and odd
315 INS bytes are forbidden by ISO 7816-4 ch. 5.4.2 Instruction byte.
316 Thanks to Josep Moné s Teixidor for pointing the problem.
317 - src/commands.c: comment out the automatic GET RESPONSE part. I
318 don't think it should be in the driver. Maybe in pcscd instead?
319
320 0.3.1 - 23 September 2003, Ludovic Rouseau
321 - add --enable-multi-thread (enabled by default) for thread safe
322 support an APDU multiplexing. You will need pcsc-lite-1.2.0-rc3 or
323 above to use this feature.
324 - add --enable-libusb=PATH option is your libusb is not installed in
325 /usr or /usr/local
326 - honor DESTDIR in install rules (closes [ #300110 ]). Thanks to
327 Ville Skyttä for the patch.
328 - src/ccid.c: do not switch the GemPC Key and GemPC Twin in APDU
329 mode since it also swicth in EMV mode and may not work with non
330 EMV cards
331 - src/ccid_serial.c: complete reimplementation of the Twin serial
332 protocol using a finite state automata (code much simpler)
333
334 0.3.0 - 10 September 2003, Ludovic Rousseau
335 - support of GemPC Twin connected to a serial port. Thanks to Niki
336 W. Waibel for a working prototype.
337 - support of auto voltage at power up if the reader support it
338 instead of forcing a 5V in all cases.
339 - support of APDU mode instead of just TPDU if the reader support
340 it. Thanks to Jean-Luc Giraud for the idea and inspiration I got
341 from his "concurrent" driver.
342 - support of "time request" from the card.
343 - parse: new indentation for more readability of supported features.
344 - switch the GemPC Key and GemPC Twin in APDU mode since they
345 support it but do not announce it in the dwFeatures.
346 - new build process using autoconf/automake.
347
348 0.2.0 - 26 August 2003, Ludovic Rousseau
349 - Works under MacOS X
350 - Info.plist: use an <array></array> for the alias enumeration
351 - Makefile rework for *BSD and MacOS X
352
353 0.1.0 - 13 August 2003, Ludovic Rousseau
354 - First public release
355
356
357 Bibliography:
358 =============
359
360 [1] http://www.usb.org/developers/devclass_docs/ccid_classspec_1_00a.pdf
361 [2] http://www.gemplus.com/products/gempc433/
362 [3] http://www.gemplus.com/products/gempckey/
363 [4] http://www.gemplus.com/products/gempctwin/
364 [5] http://www.omnikey.com/en/produkt_details.php3?produkt=1&variante=47
365 [6] http://www.scmmicro.com/security/SCR331.html
366 [7] http://www.scmmicro.com/security/SCR335.html
367 [8] http://www.c3po.es/ltc31.html
368 [9] http://www.scmmicro.com/security/SPR532.html
369 [10] http://www.activcard.com/products/usb_reader.html
370 [11] http://www.scmmicro.com/security/SCR331-DI.html
371 [12] http://www.silitek.com/prod/getProduct.do?xml_id=4_2&menu_id=4_2_8&cid=1_8_5
372 [13] http://www.c3po.es/ltc32.html
373 [14] http://www.c3po.es/tltc2usb.html
374 [15] http://www.scmmicro.com/security/SCR333.html
375 [16] http://www.acs.com.hk/Product_Readers.asp?productID=59&PCate=Products_PC_Linked_SmartCard_Readers
376 [17] http://www.scmmicro.com/support/pcs_product_drivers.html
377 [18] http://www.cherrycorp.com/english/advanced-line/advanced-line_smartboard_g83-6744.htm
378 [19] http://www.kobil.com/e/products/smartcard/kaan-base.php
379 [20] http://www.kobil.com/e/products/smartcard/kaan-advanced.php
380 [21] http://www.kobil.com/d/products/smartcard/kaansim3.php
381 [22] http://www.kobil.com/e/products/index.php?s=midentity
382 [23] http://www.ntt.com/jpki/SCR331DI.html
383 [24] http://www.verisign.co.uk/products-services/security-services/unified-authentication/usb-tokens/
384 [25] http://www.eutron.com/simpocket.asp
385 [26] http://www.cryptoidentity.eutron.com/eng/home.asp
386 [27] http://www.cherry.de/english/advanced-line/advanced_smartterminal_st-1044u.htm
387 [28] http://www.ntt.com/jpki/scr3310.html
388
389 $Id$
390
391 vim:ts=20

Properties

Name Value
svn:eol-style native
svn:keywords Author Date Id Revision

  ViewVC Help
Powered by ViewVC 1.1.5