`Square, Inc. v. 4361423 Canada Inc.
`IPR2019-01629
`Page 00001
`
`
`
`
`
`IPR2019-01629 Page 00002
`
`IPR2019-01629 Page 00002
`
`
`
`Computer Science
`and Technology
`
`
`NIST Special Publication 500-157
`
`Smart Card Technology:
`New Methods for Computer
`Access Control
`
`Martha E. Haykin and Robert B. J. Warnar
`
`Security Technology Group
`Institute for Computer Sciences and Technology
`National institute of Standards and Technology
`Gaithersburg, MD 20899
`
`September 1988
`
`Competitiveness Act.
`
`NOTE: As of 23 August 1988, the National Bureau of
`Standards (NBS) became the National institute of
`Standards and Technology (NIST) when President
`Reagan signed into law the Omnibus Trade and
`
`US. DEPARTMENT OF COMMERCE
`
`G. William Verity, Secretary
`
`National Institute of Standards and Technology
`
`(formerly National Bureau of Standards)
`Ernest Ambler, Director
`
`IPR2019-01629 Page 00003
`
`IPR2019-01629 Page 00003
`
`
`
`Reports on Computer Science and Technology
`
`The National Institute of Standards and Technology has a special responsibility within the Federal
`Government for computer science and technology activities. The programs of the NIST Institute for
`Computer Sciences and Technology are designed to provide ADP standards, guidelines, and technical
`advisory services to improve the effectiveness of computer utilization, and to perform appropriate re-
`search and development efforts'as foundation for such activities and programs. This publication series will
`report these NIST efforts to the Federal computer community as well as to interested specialists in the
`governmental, academic, and private sectors. Those wishing to receive notices of publications in this
`series should complete and return the form at the end of this publication.
`
`Library of Congress Catalog Card Number: 88-60057?
`National Institute of Standards and Technology
`Special Publication 500-157, 52 pages (Sept. 1988)
`CODEN: XNBSAV
`
`U.S. GOVERNMENT PRINTING OFFICE
`WASHINGTON: 1988
`
`For sale by the Superintendent of Documents, U.S. Government Printing Office, Washington, DC 20402
`
`IPR2019-01629 Page 00004
`
`IPR2019-01629 Page 00004
`
`
`
`CONTENTS
`
`ABSTRACT......................... ...... 1
`
`page
`
`1.0
`
`INTRODUCTION
`
`.
`
`.
`
`.
`
`.
`
`.
`
`1.1 Overview and Scope of this Document
`1.2 The Definition of a Smart Card
`
`.
`
`.
`
`...... 1
`
`...... 1
`...... 2
`
`1.3 Smart Cards and the International Organization
`for Standardization
`.
`.
`.
`.
`.
`. .............. 2
`1.4 Security in a Generalized Smart Card
`...... 4
`
`2.0 SMART CARD INTEGRATED CIRCUIT TECHNOLOGIES
`
`.
`Integrated Circuits (ICs) .
`2.1
`2.2 Limitations of IC Technology
`
`.
`
`.
`.
`
`.
`.
`
`.
`.
`
`.
`.
`
`.
`.
`
`.
`.
`
`.
`.
`
`.
`.
`
`.
`.
`
`.
`.
`
`.
`.
`
`.
`.
`
`.
`.
`
`.
`.
`
`.
`
`.
`.
`
`.
`
`.
`.
`
`.
`
`.
`.
`
`5
`
`5
`6
`
`3.0 THE SMART CARD MICROCOMPUTER .
`.
`.
`....... 6
`3.1 Single-chip Versus Multiple—chip Smart Card Microcomputers .
`7
`3.2 The Smart Card Microprocessor
`.
`.
`. ............ 8
`3.3 Smart Card Memories
`. ..... .
`.
`.
`. ....... .
`.
`.
`.
`8
`
`. ...... .
`.
`.
`.
`3.4 Smart Card Input/Output (I/O)
`3.4.1 Contact and Non—contact Smart Card Interfaces
`.
`.
`.
`.
`
`3.4.2 The Smart Card Reader/Writer Device ...... .
`
`.
`
`.
`.
`
`.
`
`.
`.
`
`.
`
`.
`.
`
`.
`
`. 10
`. 10
`
`. 13
`
`4.0 OTHER CARD TECHNOLOGIES AND THE
`
`CURRENT ROLE OF THE SMART CARD . ........... 13
`
`4.1 Storage Card Technologies—Machine- and Human- Readable
`
`. 13
`
`.
`
`.
`
`. 14
`
`4.2 Storage Card Technologies—Machine-Readable Only
`
`.
`
`.
`
`4.2.1 Early Approaches
`
`. ........ . ........... 14
`
`4. 2. 2 The Magnetic Stripe Card
`
`.
`
`.
`
`.
`
`..... .
`
`4. 2. 3 The Laser—Written Optical Memory Card ..... .
`4. 2.4 The Integrated Circuit (1C) Storage Card ..... .
`4.3 Current Constraints on the Role of the Smart Card .
`
`4.3.1 Factors in the Placement of the Smart Card lC Chip(s)
`4.3.2 Cost Factors of the Smart Card
`.
`.
`. ...... .
`
`5.0 ACCESS CONTROL AND THE SMART CARD .
`
`.
`
`.
`
`.
`
`.
`
`.
`
`.
`.
`.
`
`.
`
`.
`
`.
`
`.
`.
`.
`
`.
`.
`
`.
`
`5.1 Basic Access Control Concepts
`
`.
`
`.
`
`.
`
`.
`
`. ....... .
`
`5.1.1 Cryptographic Techniques:
`Encryption and Message Authentication ...... .
`5.1. 2 User Authentication ..... .
`.
`. ....... .
`
`.
`.
`
`5.1. 3 Device Authentication
`.
`.
`.
`5.2 The Smart Card and Authentication
`
`.
`
`.
`. ....... .
`. ........ .
`
`.
`
`.
`.
`.
`
`.
`.
`
`.
`
`.
`
`.
`.
`
`.
`.
`
`.
`
`.
`.
`.
`
`.
`.
`
`.
`
`.
`
`.
`.
`
`.
`.
`
`. 15
`
`. 15
`. 16
`. 17
`
`. 17
`. 18
`
`. 18
`
`. 18
`
`. 18
`. 19
`
`. 20
`. 21
`
`iii
`
`IPR2019-01629 Page 00005
`
`IPR2019-01629 Page 00005
`
`
`
`5.3 Smart Card Encryption Capabilities .
`
`.
`
`.
`
`5.4 Secure Storage: Smart Card Memory Zones
`5.5 Smart Card Life Cycle
`.
`.
`.
`.
`.
`.
`.
`.
`.
`
`.
`
`.
`
`.
`
`.
`
`.
`
`.
`
`.
`
`.
`
`.
`
`.
`
`.
`
`. 23
`
`. 24
`. ....... .
`. ......... 26
`
`6.0 NBS ACCESS CONTROL RESEARCH .
`
`.
`
`......... 28
`
`. 28
`.
`.
`.
`.
`.
`6.1 NBS Plastic Memory Key Access Control Systems
`6.1.1 Access Control System for “Dumb” Terminals ......... 29
`
`6.1.2 Access Control System for Cryptographic Workstations
`
`.
`
`.
`
`.
`
`. 29
`
`. 31
`.
`6.2 The NBS Biometric Smart Card Access Control System .
`6.3 Future NBS Investigations in Access Control ......... 31
`
`7.0 FUTURE SMART CARD FORECAST .
`
`.
`
`.
`
`.
`
`.
`
`.
`
`.
`
`.
`
`. ...... 33
`
`7.1 Future Smart Card Costs
`.
`. ..............-
`7. 2 Future Changesin Smart Card Integrated Circuitry .
`.
`.
`.
`7.2.1 The Role of EPROM1n Future Smart Cards
`.
`.
`.
`.
`.
`.
`.
`
`.
`.
`.
`
`. 34
`. 34
`. 35
`
`7.2.2 The Role of EEPROM in Future Smart Cards
`
`.
`
`.
`
`. ...... 35
`
`7.3 Expected Changes in the Appearance and Construction
`of the Smart Card .
`. ......
`.
`.
`.
`. ...... 36
`7.4 Expected Changesin Smart Card Operations
`and Applications
`.
`. ........... .
`7.5 The Role of Standardsin the Future of smart Cards
`.
`.
`.
`.
`
`. 37
`. 40
`
`APPENDIX: STANDARDS ACTIVITIES
`
`FOR INTEGRATED CIRCUIT CARDS .
`
`.
`
`.
`
`. ..... .
`
`.
`
`.
`
`.
`
`.
`
`.
`
`. 41
`
`REFERENCES....... ...... 43
`
`iv
`
`IPR2019-01629 Page 00006
`
`IPR2019-01629 Page 00006
`
`
`
`IPR2019-01629 Page 00007
`
`IPR2019-01629 Page 00007
`
`