When and how to use Key Diversification data?
Posted: Mon Dec 07, 2015 6:08 am
In response field of Initialized Update command, Key Diversification data which contains manufacture ID and last two bytes of security domain AID is returned to reader. I wonder for what purpose Key Diversification data is used.
I have read global platform specifications, but I didn't find any answer. I tried to google and found somewhere said that the base keys are derived at off card's end using this diversification data. Is this right? Hope anyone give me some suggestions!
Thanks, marclo
I have read global platform specifications, but I didn't find any answer. I tried to google and found somewhere said that the base keys are derived at off card's end using this diversification data. Is this right? Hope anyone give me some suggestions!
Thanks, marclo