Home › Forums › Ask the Flomies › Scan ID or passport
-
AuthorPosts
-
November 6, 2014 at 5:42 am #25810
Hi Richard,
Could FloJack be used to scan passport or ID? Can it read the chip info?
Thanks.November 6, 2014 at 4:16 pm #25894Hey Bosko, most definitely so. The FloJack has all the protocols and cryptographic capabilities to read secure credentials but we haven’t done anything with ePassports before. So I checked into it a bit reading this post and the Machine Readable Travel Document specification. I played around with it a bit today using my ePassport, a Nexus 7, and a FloJack. On Google Play there’s several applications meant for reading ePassports, I used NFC Passport Reader.
The key to ePassport access is the BAC (Basic Access Control) command. It’s a cryptographic handshake that requires the NFC reader to know the Passport Document Number, DOB, and Expiration Date. Without these pieces of info the reader is useless at getting any identifiable information of the ePassport. It’s a common misconception that would be hackers would be able to take your identity off your ePassport without gaining physical access to it, since the keys to unlock the credential are hidden inside the Passport pages and out of plain sight. Here’s a quick video I put together showing the FloJack and Nexus 7 reading my ePassport (unfortunately the device screens are washed out but you get the idea).
November 7, 2014 at 6:32 am #25998Wow, thanks, that was helpful.
December 6, 2014 at 4:22 am #31464Hi Richard,
I’m trying to get data from epassport. On my Nexus 7, I’ve installed https://play.google.com/store/apps/details?id=com.jmarroyo.apdusendercontactless&hl=en to test apdu commands on epassport, using Nexus 7 nfc, without Flojack. When I send this apdu 00 A4 04 0C 07 A0 00 00 02 47 10 01 (Select the LDS DF by AID) I get 90 00 response, which is good and then I can do the BAC. But when I try the same apdu with Flojack on ipad, using Mobile mate or AJ Demo app, the respose is 63 00, which is not good.
Do you know what could be the problem? Which card type is epassport? I see there’s RF configuration field in AJ demo app, should this be different than default values? On Mobile mate Answer-to-reset works with epassport, and also sending ff ca 00 00 returns something.
Thanks. -
AuthorPosts
You must be logged in to reply to this topic.