rfal_picopass.c 6.1 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213
  1. #include "rfal_picopass.h"
  2. #define RFAL_PICOPASS_TXRX_FLAGS \
  3. (FURI_HAL_NFC_LL_TXRX_FLAGS_CRC_TX_MANUAL | FURI_HAL_NFC_LL_TXRX_FLAGS_AGC_ON | \
  4. FURI_HAL_NFC_LL_TXRX_FLAGS_PAR_RX_REMV | FURI_HAL_NFC_LL_TXRX_FLAGS_CRC_RX_KEEP)
  5. #define TAG "RFAL_PICOPASS"
  6. typedef struct {
  7. uint8_t CMD;
  8. uint8_t CSN[RFAL_PICOPASS_UID_LEN];
  9. } rfalPicoPassSelectReq;
  10. typedef struct {
  11. uint8_t CMD;
  12. uint8_t null[4];
  13. uint8_t mac[4];
  14. } rfalPicoPassCheckReq;
  15. static uint16_t rfalPicoPassUpdateCcitt(uint16_t crcSeed, uint8_t dataByte) {
  16. uint16_t crc = crcSeed;
  17. uint8_t dat = dataByte;
  18. dat ^= (uint8_t)(crc & 0xFFU);
  19. dat ^= (dat << 4);
  20. crc = (crc >> 8) ^ (((uint16_t)dat) << 8) ^ (((uint16_t)dat) << 3) ^ (((uint16_t)dat) >> 4);
  21. return crc;
  22. }
  23. uint16_t rfalPicoPassCalculateCcitt(uint16_t preloadValue, const uint8_t* buf, uint16_t length) {
  24. uint16_t crc = preloadValue;
  25. uint16_t index;
  26. for(index = 0; index < length; index++) {
  27. crc = rfalPicoPassUpdateCcitt(crc, buf[index]);
  28. }
  29. return crc;
  30. }
  31. FuriHalNfcReturn rfalPicoPassPollerInitialize(void) {
  32. FuriHalNfcReturn ret;
  33. ret = furi_hal_nfc_ll_set_mode(
  34. FuriHalNfcModePollPicopass, FuriHalNfcBitrate26p48, FuriHalNfcBitrate26p48);
  35. if(ret != FuriHalNfcReturnOk) {
  36. return ret;
  37. };
  38. furi_hal_nfc_ll_set_error_handling(FuriHalNfcErrorHandlingNfc);
  39. furi_hal_nfc_ll_set_guard_time(FURI_HAL_NFC_LL_GT_PICOPASS);
  40. furi_hal_nfc_ll_set_fdt_listen(FURI_HAL_NFC_LL_FDT_LISTEN_PICOPASS_POLLER);
  41. furi_hal_nfc_ll_set_fdt_poll(FURI_HAL_NFC_LL_FDT_POLL_PICOPASS_POLLER);
  42. return FuriHalNfcReturnOk;
  43. }
  44. FuriHalNfcReturn rfalPicoPassPollerCheckPresence(void) {
  45. FuriHalNfcReturn ret;
  46. uint8_t txBuf[1] = {RFAL_PICOPASS_CMD_ACTALL};
  47. uint8_t rxBuf[32] = {0};
  48. uint16_t recvLen = 0;
  49. uint32_t flags = RFAL_PICOPASS_TXRX_FLAGS;
  50. uint32_t fwt = furi_hal_nfc_ll_ms2fc(20);
  51. ret = furi_hal_nfc_ll_txrx(txBuf, 1, rxBuf, 32, &recvLen, flags, fwt);
  52. return ret;
  53. }
  54. FuriHalNfcReturn rfalPicoPassPollerIdentify(rfalPicoPassIdentifyRes* idRes) {
  55. FuriHalNfcReturn ret;
  56. uint8_t txBuf[1] = {RFAL_PICOPASS_CMD_READ_OR_IDENTIFY};
  57. uint16_t recvLen = 0;
  58. uint32_t flags = RFAL_PICOPASS_TXRX_FLAGS;
  59. uint32_t fwt = furi_hal_nfc_ll_ms2fc(20);
  60. ret = furi_hal_nfc_ll_txrx(
  61. txBuf,
  62. sizeof(txBuf),
  63. (uint8_t*)idRes,
  64. sizeof(rfalPicoPassIdentifyRes),
  65. &recvLen,
  66. flags,
  67. fwt);
  68. // printf("identify rx: %d %s\n", recvLen, hex2Str(idRes->CSN, RFAL_PICOPASS_UID_LEN));
  69. return ret;
  70. }
  71. FuriHalNfcReturn rfalPicoPassPollerSelect(uint8_t* csn, rfalPicoPassSelectRes* selRes) {
  72. FuriHalNfcReturn ret;
  73. rfalPicoPassSelectReq selReq;
  74. selReq.CMD = RFAL_PICOPASS_CMD_SELECT;
  75. memcpy(selReq.CSN, csn, RFAL_PICOPASS_UID_LEN);
  76. uint16_t recvLen = 0;
  77. uint32_t flags = RFAL_PICOPASS_TXRX_FLAGS;
  78. uint32_t fwt = furi_hal_nfc_ll_ms2fc(20);
  79. ret = furi_hal_nfc_ll_txrx(
  80. (uint8_t*)&selReq,
  81. sizeof(rfalPicoPassSelectReq),
  82. (uint8_t*)selRes,
  83. sizeof(rfalPicoPassSelectRes),
  84. &recvLen,
  85. flags,
  86. fwt);
  87. // printf("select rx: %d %s\n", recvLen, hex2Str(selRes->CSN, RFAL_PICOPASS_UID_LEN));
  88. if(ret == FuriHalNfcReturnTimeout) {
  89. return FuriHalNfcReturnOk;
  90. }
  91. return ret;
  92. }
  93. FuriHalNfcReturn rfalPicoPassPollerReadCheck(rfalPicoPassReadCheckRes* rcRes) {
  94. FuriHalNfcReturn ret;
  95. uint8_t txBuf[2] = {RFAL_PICOPASS_CMD_READCHECK_KD, 0x02};
  96. uint16_t recvLen = 0;
  97. uint32_t flags = RFAL_PICOPASS_TXRX_FLAGS;
  98. uint32_t fwt = furi_hal_nfc_ll_ms2fc(20);
  99. ret = furi_hal_nfc_ll_txrx(
  100. txBuf,
  101. sizeof(txBuf),
  102. (uint8_t*)rcRes,
  103. sizeof(rfalPicoPassReadCheckRes),
  104. &recvLen,
  105. flags,
  106. fwt);
  107. // printf("readcheck rx: %d %s\n", recvLen, hex2Str(rcRes->CCNR, 8));
  108. if(ret == FuriHalNfcReturnCrc) {
  109. return FuriHalNfcReturnOk;
  110. }
  111. return ret;
  112. }
  113. FuriHalNfcReturn rfalPicoPassPollerCheck(uint8_t* mac, rfalPicoPassCheckRes* chkRes) {
  114. FuriHalNfcReturn ret;
  115. rfalPicoPassCheckReq chkReq;
  116. chkReq.CMD = RFAL_PICOPASS_CMD_CHECK;
  117. memcpy(chkReq.mac, mac, 4);
  118. memset(chkReq.null, 0, 4);
  119. uint16_t recvLen = 0;
  120. uint32_t flags = RFAL_PICOPASS_TXRX_FLAGS;
  121. uint32_t fwt = furi_hal_nfc_ll_ms2fc(20);
  122. // printf("check tx: %s\n", hex2Str((uint8_t *)&chkReq, sizeof(rfalPicoPassCheckReq)));
  123. ret = furi_hal_nfc_ll_txrx(
  124. (uint8_t*)&chkReq,
  125. sizeof(rfalPicoPassCheckReq),
  126. (uint8_t*)chkRes,
  127. sizeof(rfalPicoPassCheckRes),
  128. &recvLen,
  129. flags,
  130. fwt);
  131. // printf("check rx: %d %s\n", recvLen, hex2Str(chkRes->mac, 4));
  132. if(ret == FuriHalNfcReturnCrc) {
  133. return FuriHalNfcReturnOk;
  134. }
  135. return ret;
  136. }
  137. FuriHalNfcReturn rfalPicoPassPollerReadBlock(uint8_t blockNum, rfalPicoPassReadBlockRes* readRes) {
  138. FuriHalNfcReturn ret;
  139. uint8_t txBuf[4] = {RFAL_PICOPASS_CMD_READ_OR_IDENTIFY, 0, 0, 0};
  140. txBuf[1] = blockNum;
  141. uint16_t crc = rfalPicoPassCalculateCcitt(0xE012, txBuf + 1, 1);
  142. memcpy(txBuf + 2, &crc, sizeof(uint16_t));
  143. uint16_t recvLen = 0;
  144. uint32_t flags = RFAL_PICOPASS_TXRX_FLAGS;
  145. uint32_t fwt = furi_hal_nfc_ll_ms2fc(20);
  146. ret = furi_hal_nfc_ll_txrx(
  147. txBuf,
  148. sizeof(txBuf),
  149. (uint8_t*)readRes,
  150. sizeof(rfalPicoPassReadBlockRes),
  151. &recvLen,
  152. flags,
  153. fwt);
  154. return ret;
  155. }
  156. FuriHalNfcReturn rfalPicoPassPollerWriteBlock(uint8_t blockNum, uint8_t data[8], uint8_t mac[4]) {
  157. FuriHalNfcReturn ret;
  158. uint8_t txBuf[14] = {RFAL_PICOPASS_CMD_UPDATE, blockNum, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0};
  159. memcpy(txBuf + 2, data, RFAL_PICOPASS_BLOCK_LEN);
  160. memcpy(txBuf + 10, mac, 4);
  161. uint16_t recvLen = 0;
  162. uint32_t flags = RFAL_PICOPASS_TXRX_FLAGS;
  163. uint32_t fwt = furi_hal_nfc_ll_ms2fc(20);
  164. rfalPicoPassReadBlockRes block;
  165. ret = furi_hal_nfc_ll_txrx(
  166. txBuf, sizeof(txBuf), (uint8_t*)&block, sizeof(block), &recvLen, flags, fwt);
  167. if(ret == FuriHalNfcReturnOk) {
  168. // TODO: compare response
  169. }
  170. return ret;
  171. }