gen4_poller_i.c 9.1 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277
  1. #include "gen4_poller_i.h"
  2. #include "bit_buffer.h"
  3. #include "magic/protocols/gen4/gen4_poller.h"
  4. #include <nfc/protocols/iso14443_3a/iso14443_3a_poller.h>
  5. #define GEN4_CMD_PREFIX (0xCF)
  6. #define GEN4_CMD_SET_SHD_MODE (0x32)
  7. #define GEN4_CMD_GET_CFG (0xC6)
  8. #define GEN4_CMD_GET_REVISION (0xCC)
  9. #define GEN4_CMD_WRITE (0xCD)
  10. #define GEN4_CMD_READ (0xCE)
  11. #define GEN4_CMD_SET_DW_BLOCK_0 (0xCF)
  12. #define GEN4_CMD_SET_CFG (0xF0)
  13. #define GEN4_CMD_FUSE_CFG (0xF1)
  14. #define GEN4_CMD_SET_PWD (0xFE)
  15. #define GEN4_RESPONSE_SUCCESS (0x02)
  16. static Gen4PollerError gen4_poller_process_error(Iso14443_3aError error) {
  17. Gen4PollerError ret = Gen4PollerErrorNone;
  18. if(error == Iso14443_3aErrorNone) {
  19. ret = Gen4PollerErrorNone;
  20. } else {
  21. ret = Gen4PollerErrorTimeout;
  22. }
  23. return ret;
  24. }
  25. Gen4PollerError
  26. gen4_poller_set_shadow_mode(Gen4Poller* instance, Gen4Password password, Gen4ShadowMode mode) {
  27. Gen4PollerError ret = Gen4PollerErrorNone;
  28. bit_buffer_reset(instance->tx_buffer);
  29. do {
  30. bit_buffer_append_byte(instance->tx_buffer, GEN4_CMD_PREFIX);
  31. bit_buffer_append_bytes(instance->tx_buffer, password.bytes, GEN4_PASSWORD_LEN);
  32. bit_buffer_append_byte(instance->tx_buffer, GEN4_CMD_SET_SHD_MODE);
  33. bit_buffer_append_byte(instance->tx_buffer, mode);
  34. Iso14443_3aError error = iso14443_3a_poller_send_standard_frame(
  35. instance->iso3_poller, instance->tx_buffer, instance->rx_buffer, GEN4_POLLER_MAX_FWT);
  36. if(error != Iso14443_3aErrorNone) {
  37. ret = gen4_poller_process_error(error);
  38. break;
  39. }
  40. size_t response = bit_buffer_get_size_bytes(instance->rx_buffer);
  41. FURI_LOG_D(TAG, "Card response: 0x%02X, Shadow mode set: 0x%02X", response, mode);
  42. if(response != GEN4_RESPONSE_SUCCESS) {
  43. ret = Gen4PollerErrorProtocol;
  44. break;
  45. }
  46. } while(false);
  47. return ret;
  48. }
  49. Gen4PollerError gen4_poller_set_direct_write_block_0_mode(
  50. Gen4Poller* instance,
  51. Gen4Password password,
  52. Gen4DirectWriteBlock0Mode mode) {
  53. Gen4PollerError ret = Gen4PollerErrorNone;
  54. bit_buffer_reset(instance->tx_buffer);
  55. do {
  56. bit_buffer_append_byte(instance->tx_buffer, GEN4_CMD_PREFIX);
  57. bit_buffer_append_bytes(instance->tx_buffer, password.bytes, GEN4_PASSWORD_LEN);
  58. bit_buffer_append_byte(instance->tx_buffer, GEN4_CMD_SET_DW_BLOCK_0);
  59. bit_buffer_append_byte(instance->tx_buffer, mode);
  60. Iso14443_3aError error = iso14443_3a_poller_send_standard_frame(
  61. instance->iso3_poller, instance->tx_buffer, instance->rx_buffer, GEN4_POLLER_MAX_FWT);
  62. if(error != Iso14443_3aErrorNone) {
  63. ret = gen4_poller_process_error(error);
  64. break;
  65. }
  66. size_t response = bit_buffer_get_size_bytes(instance->rx_buffer);
  67. FURI_LOG_D(
  68. TAG, "Card response: 0x%02X, Direct write to block 0 mode set: 0x%02X", response, mode);
  69. if(response != GEN4_RESPONSE_SUCCESS) {
  70. ret = Gen4PollerErrorProtocol;
  71. break;
  72. }
  73. } while(false);
  74. return ret;
  75. }
  76. Gen4PollerError
  77. gen4_poller_get_config(Gen4Poller* instance, Gen4Password password, Gen4Config* config_result) {
  78. Gen4PollerError ret = Gen4PollerErrorNone;
  79. bit_buffer_reset(instance->tx_buffer);
  80. do {
  81. bit_buffer_append_byte(instance->tx_buffer, GEN4_CMD_PREFIX);
  82. bit_buffer_append_bytes(instance->tx_buffer, password.bytes, GEN4_PASSWORD_LEN);
  83. bit_buffer_append_byte(instance->tx_buffer, GEN4_CMD_GET_CFG);
  84. Iso14443_3aError error = iso14443_3a_poller_send_standard_frame(
  85. instance->iso3_poller, instance->tx_buffer, instance->rx_buffer, GEN4_POLLER_MAX_FWT);
  86. if(error != Iso14443_3aErrorNone) {
  87. ret = gen4_poller_process_error(error);
  88. break;
  89. }
  90. size_t rx_bytes = bit_buffer_get_size_bytes(instance->rx_buffer);
  91. if(rx_bytes != GEN4_CONFIG_SIZE) {
  92. ret = Gen4PollerErrorProtocol;
  93. break;
  94. }
  95. bit_buffer_write_bytes(instance->rx_buffer, config_result->data_raw, GEN4_CONFIG_SIZE);
  96. } while(false);
  97. return ret;
  98. }
  99. Gen4PollerError gen4_poller_get_revision(
  100. Gen4Poller* instance,
  101. Gen4Password password,
  102. Gen4Revision* revision_result) {
  103. Gen4PollerError ret = Gen4PollerErrorNone;
  104. bit_buffer_reset(instance->tx_buffer);
  105. do {
  106. bit_buffer_append_byte(instance->tx_buffer, GEN4_CMD_PREFIX);
  107. bit_buffer_append_bytes(instance->tx_buffer, password.bytes, GEN4_PASSWORD_LEN);
  108. bit_buffer_append_byte(instance->tx_buffer, GEN4_CMD_GET_REVISION);
  109. Iso14443_3aError error = iso14443_3a_poller_send_standard_frame(
  110. instance->iso3_poller, instance->tx_buffer, instance->rx_buffer, GEN4_POLLER_MAX_FWT);
  111. if(error != Iso14443_3aErrorNone) {
  112. ret = gen4_poller_process_error(error);
  113. break;
  114. }
  115. size_t rx_bytes = bit_buffer_get_size_bytes(instance->rx_buffer);
  116. if(rx_bytes != GEN4_REVISION_SIZE) {
  117. ret = Gen4PollerErrorProtocol;
  118. break;
  119. }
  120. bit_buffer_write_bytes(instance->rx_buffer, revision_result->data, GEN4_REVISION_SIZE);
  121. } while(false);
  122. return ret;
  123. }
  124. Gen4PollerError gen4_poller_set_config(
  125. Gen4Poller* instance,
  126. Gen4Password password,
  127. const Gen4Config* config,
  128. size_t config_size,
  129. bool fuse) {
  130. Gen4PollerError ret = Gen4PollerErrorNone;
  131. bit_buffer_reset(instance->tx_buffer);
  132. do {
  133. bit_buffer_append_byte(instance->tx_buffer, GEN4_CMD_PREFIX);
  134. bit_buffer_append_bytes(instance->tx_buffer, password.bytes, GEN4_PASSWORD_LEN);
  135. uint8_t fuse_config = fuse ? GEN4_CMD_FUSE_CFG : GEN4_CMD_SET_CFG;
  136. bit_buffer_append_byte(instance->tx_buffer, fuse_config);
  137. bit_buffer_append_bytes(instance->tx_buffer, config->data_raw, config_size);
  138. Iso14443_3aError error = iso14443_3a_poller_send_standard_frame(
  139. instance->iso3_poller, instance->tx_buffer, instance->rx_buffer, GEN4_POLLER_MAX_FWT);
  140. if(error != Iso14443_3aErrorNone) {
  141. ret = gen4_poller_process_error(error);
  142. break;
  143. }
  144. size_t response = bit_buffer_get_size_bytes(instance->rx_buffer);
  145. FURI_LOG_D(TAG, "Card response to set default config command: 0x%02X", response);
  146. if(response != GEN4_RESPONSE_SUCCESS) {
  147. ret = Gen4PollerErrorProtocol;
  148. break;
  149. }
  150. } while(false);
  151. return ret;
  152. }
  153. Gen4PollerError gen4_poller_write_block(
  154. Gen4Poller* instance,
  155. Gen4Password password,
  156. uint8_t block_num,
  157. const uint8_t* data) {
  158. Gen4PollerError ret = Gen4PollerErrorNone;
  159. bit_buffer_reset(instance->tx_buffer);
  160. do {
  161. bit_buffer_append_byte(instance->tx_buffer, GEN4_CMD_PREFIX);
  162. bit_buffer_append_bytes(instance->tx_buffer, password.bytes, GEN4_PASSWORD_LEN);
  163. bit_buffer_append_byte(instance->tx_buffer, GEN4_CMD_WRITE);
  164. bit_buffer_append_byte(instance->tx_buffer, block_num);
  165. bit_buffer_append_bytes(instance->tx_buffer, data, GEN4_POLLER_BLOCK_SIZE);
  166. Iso14443_3aError error = iso14443_3a_poller_send_standard_frame(
  167. instance->iso3_poller, instance->tx_buffer, instance->rx_buffer, GEN4_POLLER_MAX_FWT);
  168. if(error != Iso14443_3aErrorNone) {
  169. ret = gen4_poller_process_error(error);
  170. break;
  171. }
  172. size_t rx_bytes = bit_buffer_get_size_bytes(instance->rx_buffer);
  173. if(rx_bytes != 2) {
  174. ret = Gen4PollerErrorProtocol;
  175. break;
  176. }
  177. } while(false);
  178. return ret;
  179. }
  180. Gen4PollerError gen4_poller_change_password(
  181. Gen4Poller* instance,
  182. Gen4Password pwd_current,
  183. Gen4Password pwd_new) {
  184. Gen4PollerError ret = Gen4PollerErrorNone;
  185. bit_buffer_reset(instance->tx_buffer);
  186. do {
  187. bit_buffer_append_byte(instance->tx_buffer, GEN4_CMD_PREFIX);
  188. bit_buffer_append_bytes(instance->tx_buffer, pwd_current.bytes, GEN4_PASSWORD_LEN);
  189. bit_buffer_append_byte(instance->tx_buffer, GEN4_CMD_SET_PWD);
  190. bit_buffer_append_bytes(instance->tx_buffer, pwd_new.bytes, GEN4_PASSWORD_LEN);
  191. Iso14443_3aError error = iso14443_3a_poller_send_standard_frame(
  192. instance->iso3_poller, instance->tx_buffer, instance->rx_buffer, GEN4_POLLER_MAX_FWT);
  193. if(error != Iso14443_3aErrorNone) {
  194. ret = gen4_poller_process_error(error);
  195. break;
  196. }
  197. size_t response = bit_buffer_get_size_bytes(instance->rx_buffer);
  198. FURI_LOG_D(
  199. TAG,
  200. "Trying to change password from 0x%02X %02X %02X %02X to "
  201. "0x%02X %02X %02X %02X. Card response: 0x%02X",
  202. pwd_current.bytes[0],
  203. pwd_current.bytes[1],
  204. pwd_current.bytes[2],
  205. pwd_current.bytes[3],
  206. pwd_new.bytes[0],
  207. pwd_new.bytes[1],
  208. pwd_new.bytes[2],
  209. pwd_new.bytes[3],
  210. response);
  211. if(response != GEN4_RESPONSE_SUCCESS) {
  212. ret = Gen4PollerErrorProtocol;
  213. break;
  214. }
  215. } while(false);
  216. return ret;
  217. }