Hi at muscle,

@David: Please change the description of my loader's download link to :

Applet loader for the Cyberflex Access _Developer_ 32k cards.

BTW, I must admit, that the instructions in the Readme are wrong concerning the JavaCardKit version for creating a load file from scratch: You _must_ use 2.1.1. But, since there are no crypto classes in the API, you have to copy them from JavaCardKit 2.1.2. The older kit is still exported restricted (what a crap!).

I won't blame Axalto for keeping us from loading their other cards without buying their $DK, since their card docs are public, while other vendors charge you even for that!

And, it's also true, that you may get my loader working with non-Developer cards by changing the Card Manager AID in CFlexAccess32Loader.java, but the infamous codeshield still prevents you from using those cards, so far:

1. I found a working load file of SimplePurse in one of the Cyberflex forums (hehe): http://www.flexforum.com/forums/cyberflexgeneral/256.html
Some aficionado sent me 2 e-gate cards a few weeks ago, and I could load this file with a 9000 response, but still, the following Install/Make Selectable command fails (6985).

2. I also rebuild CardEdge from the current sources, converted and transformed it and see, it still loads/works fine on the Developer cards, but no chance on the e-gate! I analysed SimplePurse.bin and the only visible difference is, that the Descriptor component is also appended. The Method and RefLocation components are altered, which is reflected by changes in Applet, Class and Directory components. Header, Import and StaticField aren't changed at all.

Baseline: I could not find the hidden magic difference, that keeps CardEdge from loading on e-gates, while SimplePurse does :(

For those, who are interested in reading load files and compare them to JCVM-2.1.1-specs:
http://home.vr-web.de/~martin.buechler/smartcard/CardEdge.bin
http://home.vr-web.de/~martin.buechler/smartcard/SimplePurse.bin

...I invested too much precious time, I think worth of about ten $DKs.
I have to stop now and turn to other interesting applications, like i.e. OpenSC/PKCS#15 and IBM's JCOP, who actually developed a PKCS#15 emulation with a pure OP-Card. For those of you, who worked already with the Cyberflex Access 16K cards, I submitted a patch to OpenSC, that turns that cards into a PKCS#-15 Token; ok, whith some quirks, like always...

@Ludovic: I use the PKCS#11 module a lot, but only the version from muscleframework-1.1.1, all newer version failed, alas I did not try the latest patched version yet.

Regards

Martin

Attachment: smime.p7s
Description: S/MIME Cryptographic Signature

Reply via email to