Four Vendors Cooperate to Develop Smart Card Solutions for Public Transport

Smart card manufacturers Giesecke & Devrient (G&D) and Oberthur Technologies, chip suppliers Infineon Technologies and INSIDE Contactless announced they have launched an industry initiative to provide a new security solution for next-generation smart card based public transport applications. The solution will build on an open standard being implemented by the four partner companies, which will eventually be governed by an independent body. Companies active in the smart card arena -- providers of chips, smart cards, application-specific operating software, reader devices and transportation systems -- are invited to join the initiative for the advancement of more secure public transportation applications.

The new standard promises to bring a number of key benefits to both public transport agencies and smart card industry players, including higher performance and advanced system security for public transport applications, as well as the availability of multiple sources for chip products. Through independent testing, the open standard will also provide optimized interoperability to enable simple and fast integration into public transport schemes. The first emulation chips and transportation smart cards using this standard are scheduled to be available by the end of 2010.

The industry initiative is based on groundwork performed by Infineon, the chip card IC provider. Infineon has developed a hardware-based security system specifically suited for public transportation smart card applications. It is comprised of a specific authentication scheme using the open and well-accepted Advanced Encryption Standard (AES) with 128-bit key length and file types and command sets based on the ISO/IEC 7816 standard. Employing AES, an encryption algorithm also used for commercial transactions, will increase security over less-robust security schemes widely used in current public transportation systems. Using the encryption and secure messaging scheme for authentication, data encryption and Message Authentication Coding (MACing) allows high flexibility and fast adoption for different applications. Infineon, which has already started its own chip development based on the open standard security system, has verified the feasibility of the authentication scheme, enabling the other manufacturers to start their development work immediately.

The fables semiconductor company INSIDE Contactless, the chip provider for contactless payment cards, has already signed an agreement with Infineon to implement the security scheme for its chip platforms. In addition, two of the card manufacturers, G&D and Oberthur, have agreed to develop public transport applications based on the scheme.

Share to:
Comments ( 0 ) provides weekly and monthly e-Newsletters which include the latest security industry news, vertical solution case studies and product information.

Please key in code