SAM MPCOS-EMV   In Production
 
Security Access Module for MPCOS cards (contact, dual interface and contactless)  
 

SAM for MPCOS Applications

The Secure Access Module (SAM for MPCOS-EMV) is required in any transactions that use cryptography features with the MPCOS-EMV cards. This module can be integrated into terminals or other devices that can interface with this range. SAM for MPCOS-EMV is thus used in the same applications as MPCOS-EMV cards:

  • Electronic purse in open or closed payment schemes
  • Banking: debit/credit, passbook, pre-authorized debit, magstripe image...
  • Public applications: identity, driving license, health care
  • Access control (logical or physical, etc.)
  • Multi-purpose (loyalty, retail...)

sam.gif (3338 bytes)
Example: SAM to control purchases in a payment application

SAM for MPCOS-EMV is generally included in the terminals either in ISO card or plug-in format. It contains all the cryptography required by the application:

  • cryptographic keys
  • cryptographic algorithms, etc.

This SAM computes all cryptograms / certificates requested by the MPCOS-EMV cards in a secure manner and checks all cryptograms / certificates computed by MPCOS-EMV cards. Since all MPCOS-EMV cryptography functions can be provided by the 'SAM for MPCOS-EMV', the application can be designed faster with enhanced security.

MPCOS-EMV and its SAM are supported by all major terminal manufacturers thanks to compliance with widely accepted standards such as ISO 7816.

 

Main Features and Applicable Standards

ISO 7816-1, -2, -3 compliance
Format: standard card format or Plug-in
ISO 7816-4 commands, data structure (multi-application) and return codes
MPCOS-EMV mirror functions implementing cryptography
Enhanced administrative command set for easy SAM personalization
Off-nominal use protection on top of physical security protection
Enhanced security features including specific protection mechanisms
PIN management and verification
Secure key management and diversification
Two key diversification levels for implementation in large payment schemes
3DES algorithm for authentication, secure messaging, payment certificates...
Sensitive system data protection

The SAM for MPCOS-EMV cannot be used to interface with all types of cards. It is primarily dedicated to MPCOS-EMV cards.