I’ve been grappling with a #CoreNFC, #Swift, #CommonCrypto and #DESFire problem on and off for a few years. Not much help online due to being an intersection of multiple niches.
Decided to see if #LLMs could help.
No, they could not.
Trying to implement #desfire EV2 secure messaging.
I must have done something wrong, it doesn't work out somehow.
Symmetric authentication is a pain as both sides have to know the key.
My door access has a key in the card reader which means inherently all cards have to have that key, else the reader has to know the key for each card, which does not scale.
The work around - encrypt the site key with the card UID and use that on the card. One key in reader, different key in each and every cards.
Compromising a card/fob is not easy, but this way it compromises only the one card, not whole site.
oh uh hashtags for search i guess, so this thread is findable.