rfal_picopass.c 6.1 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215
  1. #include "rfal_picopass.h"
  2. #include "utils.h"
  3. #define RFAL_PICOPASS_TXRX_FLAGS \
  4. (FURI_HAL_NFC_LL_TXRX_FLAGS_CRC_TX_MANUAL | FURI_HAL_NFC_LL_TXRX_FLAGS_AGC_ON | \
  5. FURI_HAL_NFC_LL_TXRX_FLAGS_PAR_RX_REMV | FURI_HAL_NFC_LL_TXRX_FLAGS_CRC_RX_KEEP)
  6. #define TAG "RFAL_PICOPASS"
  7. typedef struct {
  8. uint8_t CMD;
  9. uint8_t CSN[RFAL_PICOPASS_UID_LEN];
  10. } rfalPicoPassSelectReq;
  11. typedef struct {
  12. uint8_t CMD;
  13. uint8_t null[4];
  14. uint8_t mac[4];
  15. } rfalPicoPassCheckReq;
  16. static uint16_t rfalPicoPassUpdateCcitt(uint16_t crcSeed, uint8_t dataByte) {
  17. uint16_t crc = crcSeed;
  18. uint8_t dat = dataByte;
  19. dat ^= (uint8_t)(crc & 0xFFU);
  20. dat ^= (dat << 4);
  21. crc = (crc >> 8) ^ (((uint16_t)dat) << 8) ^ (((uint16_t)dat) << 3) ^ (((uint16_t)dat) >> 4);
  22. return crc;
  23. }
  24. static uint16_t
  25. rfalPicoPassCalculateCcitt(uint16_t preloadValue, const uint8_t* buf, uint16_t length) {
  26. uint16_t crc = preloadValue;
  27. uint16_t index;
  28. for(index = 0; index < length; index++) {
  29. crc = rfalPicoPassUpdateCcitt(crc, buf[index]);
  30. }
  31. return crc;
  32. }
  33. FuriHalNfcReturn rfalPicoPassPollerInitialize(void) {
  34. FuriHalNfcReturn ret;
  35. ret = furi_hal_nfc_ll_set_mode(
  36. FuriHalNfcModePollPicopass, FuriHalNfcBitrate26p48, FuriHalNfcBitrate26p48);
  37. if(ret != FuriHalNfcReturnOk) {
  38. return ret;
  39. };
  40. furi_hal_nfc_ll_set_error_handling(FuriHalNfcErrorHandlingNfc);
  41. furi_hal_nfc_ll_set_guard_time(FURI_HAL_NFC_LL_GT_PICOPASS);
  42. furi_hal_nfc_ll_set_fdt_listen(FURI_HAL_NFC_LL_FDT_LISTEN_PICOPASS_POLLER);
  43. furi_hal_nfc_ll_set_fdt_poll(FURI_HAL_NFC_LL_FDT_POLL_PICOPASS_POLLER);
  44. return FuriHalNfcReturnOk;
  45. }
  46. FuriHalNfcReturn rfalPicoPassPollerCheckPresence(void) {
  47. FuriHalNfcReturn ret;
  48. uint8_t txBuf[1] = {RFAL_PICOPASS_CMD_ACTALL};
  49. uint8_t rxBuf[32] = {0};
  50. uint16_t recvLen = 0;
  51. uint32_t flags = RFAL_PICOPASS_TXRX_FLAGS;
  52. uint32_t fwt = furi_hal_nfc_ll_ms2fc(20);
  53. ret = furi_hal_nfc_ll_txrx(txBuf, 1, rxBuf, 32, &recvLen, flags, fwt);
  54. return ret;
  55. }
  56. FuriHalNfcReturn rfalPicoPassPollerIdentify(rfalPicoPassIdentifyRes* idRes) {
  57. FuriHalNfcReturn ret;
  58. uint8_t txBuf[1] = {RFAL_PICOPASS_CMD_IDENTIFY};
  59. uint16_t recvLen = 0;
  60. uint32_t flags = RFAL_PICOPASS_TXRX_FLAGS;
  61. uint32_t fwt = furi_hal_nfc_ll_ms2fc(20);
  62. ret = furi_hal_nfc_ll_txrx(
  63. txBuf,
  64. sizeof(txBuf),
  65. (uint8_t*)idRes,
  66. sizeof(rfalPicoPassIdentifyRes),
  67. &recvLen,
  68. flags,
  69. fwt);
  70. // printf("identify rx: %d %s\n", recvLen, hex2Str(idRes->CSN, RFAL_PICOPASS_UID_LEN));
  71. return ret;
  72. }
  73. FuriHalNfcReturn rfalPicoPassPollerSelect(uint8_t* csn, rfalPicoPassSelectRes* selRes) {
  74. FuriHalNfcReturn ret;
  75. rfalPicoPassSelectReq selReq;
  76. selReq.CMD = RFAL_PICOPASS_CMD_SELECT;
  77. ST_MEMCPY(selReq.CSN, csn, RFAL_PICOPASS_UID_LEN);
  78. uint16_t recvLen = 0;
  79. uint32_t flags = RFAL_PICOPASS_TXRX_FLAGS;
  80. uint32_t fwt = furi_hal_nfc_ll_ms2fc(20);
  81. ret = furi_hal_nfc_ll_txrx(
  82. (uint8_t*)&selReq,
  83. sizeof(rfalPicoPassSelectReq),
  84. (uint8_t*)selRes,
  85. sizeof(rfalPicoPassSelectRes),
  86. &recvLen,
  87. flags,
  88. fwt);
  89. // printf("select rx: %d %s\n", recvLen, hex2Str(selRes->CSN, RFAL_PICOPASS_UID_LEN));
  90. if(ret == FuriHalNfcReturnTimeout) {
  91. return FuriHalNfcReturnOk;
  92. }
  93. return ret;
  94. }
  95. FuriHalNfcReturn rfalPicoPassPollerReadCheck(rfalPicoPassReadCheckRes* rcRes) {
  96. FuriHalNfcReturn ret;
  97. uint8_t txBuf[2] = {RFAL_PICOPASS_CMD_READCHECK, 0x02};
  98. uint16_t recvLen = 0;
  99. uint32_t flags = RFAL_PICOPASS_TXRX_FLAGS;
  100. uint32_t fwt = furi_hal_nfc_ll_ms2fc(20);
  101. ret = furi_hal_nfc_ll_txrx(
  102. txBuf,
  103. sizeof(txBuf),
  104. (uint8_t*)rcRes,
  105. sizeof(rfalPicoPassReadCheckRes),
  106. &recvLen,
  107. flags,
  108. fwt);
  109. // printf("readcheck rx: %d %s\n", recvLen, hex2Str(rcRes->CCNR, 8));
  110. if(ret == FuriHalNfcReturnCrc) {
  111. return FuriHalNfcReturnOk;
  112. }
  113. return ret;
  114. }
  115. FuriHalNfcReturn rfalPicoPassPollerCheck(uint8_t* mac, rfalPicoPassCheckRes* chkRes) {
  116. FuriHalNfcReturn ret;
  117. rfalPicoPassCheckReq chkReq;
  118. chkReq.CMD = RFAL_PICOPASS_CMD_CHECK;
  119. ST_MEMCPY(chkReq.mac, mac, 4);
  120. ST_MEMSET(chkReq.null, 0, 4);
  121. uint16_t recvLen = 0;
  122. uint32_t flags = RFAL_PICOPASS_TXRX_FLAGS;
  123. uint32_t fwt = furi_hal_nfc_ll_ms2fc(20);
  124. // printf("check tx: %s\n", hex2Str((uint8_t *)&chkReq, sizeof(rfalPicoPassCheckReq)));
  125. ret = furi_hal_nfc_ll_txrx(
  126. (uint8_t*)&chkReq,
  127. sizeof(rfalPicoPassCheckReq),
  128. (uint8_t*)chkRes,
  129. sizeof(rfalPicoPassCheckRes),
  130. &recvLen,
  131. flags,
  132. fwt);
  133. // printf("check rx: %d %s\n", recvLen, hex2Str(chkRes->mac, 4));
  134. if(ret == FuriHalNfcReturnCrc) {
  135. return FuriHalNfcReturnOk;
  136. }
  137. return ret;
  138. }
  139. FuriHalNfcReturn rfalPicoPassPollerReadBlock(uint8_t blockNum, rfalPicoPassReadBlockRes* readRes) {
  140. FuriHalNfcReturn ret;
  141. uint8_t txBuf[4] = {RFAL_PICOPASS_CMD_READ, 0, 0, 0};
  142. txBuf[1] = blockNum;
  143. uint16_t crc = rfalPicoPassCalculateCcitt(0xE012, txBuf + 1, 1);
  144. memcpy(txBuf + 2, &crc, sizeof(uint16_t));
  145. uint16_t recvLen = 0;
  146. uint32_t flags = RFAL_PICOPASS_TXRX_FLAGS;
  147. uint32_t fwt = furi_hal_nfc_ll_ms2fc(20);
  148. ret = furi_hal_nfc_ll_txrx(
  149. txBuf,
  150. sizeof(txBuf),
  151. (uint8_t*)readRes,
  152. sizeof(rfalPicoPassReadBlockRes),
  153. &recvLen,
  154. flags,
  155. fwt);
  156. return ret;
  157. }
  158. FuriHalNfcReturn rfalPicoPassPollerWriteBlock(uint8_t blockNum, uint8_t data[8], uint8_t mac[4]) {
  159. FuriHalNfcReturn ret;
  160. uint8_t txBuf[14] = {RFAL_PICOPASS_CMD_WRITE, blockNum, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0};
  161. memcpy(txBuf + 2, data, RFAL_PICOPASS_MAX_BLOCK_LEN);
  162. memcpy(txBuf + 10, mac, 4);
  163. uint16_t recvLen = 0;
  164. uint32_t flags = RFAL_PICOPASS_TXRX_FLAGS;
  165. uint32_t fwt = furi_hal_nfc_ll_ms2fc(20);
  166. rfalPicoPassReadBlockRes block;
  167. ret = furi_hal_nfc_ll_txrx(
  168. txBuf, sizeof(txBuf), (uint8_t*)&block, sizeof(block), &recvLen, flags, fwt);
  169. if(ret == FuriHalNfcReturnOk) {
  170. // TODO: compare response
  171. }
  172. return ret;
  173. }