转载请注明出处
http://blog.csdn.net/albinzhiyu/article/details/40504075
作者:蒸只鱼
SDA认证过程中主要分三个步骤
1、获取终端恢复认证中心公钥;读取应用数据流程读出AID和CA公钥索引:
* Tag 8F Certification Authority Public Key Index (ICC)
* - Len 01
* - Value D0 //CA公钥索引:D0
* Tag 4F Application Identifier (AID)
* - Len 07
* - Value A0 00 00 01 52 30 10 //可知对应RID:A0 00 00 01 52
根据CA下发的capk公钥文件获取到对应的————
CA公钥:
D05C2A09D09C9031366EC092BCAC67D4B1B4F88B10005E1FC45C1B483AE7EB86FF0E884A19C0595
A6C34F06386D776A21D620FC9F9C498ADCA00E66D129BCDD4789837B96DCC7F09DA94CCAC5AC7
CFC07F4600DF78E493DC1957DEBA3F4838A4B8BD4CEFE4E4C6119085E5BB21077341C568A21D65D
049D666807C39C401CDFEE7F7F99B8F9CB34A8841EA62E83E8D63
CA指数:
010001
2、由终端恢复发卡行公钥;
读取应用数据流程,读出发卡行公钥证书
* Tag 90 Issuer Public Key Certificate
* - Len 90
* - Value
08 3D 23 86 08 29 25 A0 A2 AA 1B 4B B3 F7 EF D4
* 79 8C DB 60 65 32 93 CC 40 6D C8 A2 BB 33 80 DD
* D7