blob: c0462fb4536da110f7742b62b16e71c5ff2bf55d [file] [log] [blame]
Sylvain Munaut76504e02010-12-07 00:24:32 +01001#!/usr/bin/env python
2# -*- coding: utf-8 -*-
3
4""" pySim: Card programmation logic
5"""
6
7#
8# Copyright (C) 2009-2010 Sylvain Munaut <tnt@246tNt.com>
Harald Welte3156d902011-03-22 21:48:19 +01009# Copyright (C) 2011 Harald Welte <laforge@gnumonks.org>
Alexander Chemeriseb6807d2017-07-18 17:04:38 +030010# Copyright (C) 2017 Alexander.Chemeris <Alexander.Chemeris@gmail.com>
Sylvain Munaut76504e02010-12-07 00:24:32 +010011#
12# This program is free software: you can redistribute it and/or modify
13# it under the terms of the GNU General Public License as published by
14# the Free Software Foundation, either version 2 of the License, or
15# (at your option) any later version.
16#
17# This program is distributed in the hope that it will be useful,
18# but WITHOUT ANY WARRANTY; without even the implied warranty of
19# MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
20# GNU General Public License for more details.
21#
22# You should have received a copy of the GNU General Public License
23# along with this program. If not, see <http://www.gnu.org/licenses/>.
24#
25
Alexander Chemeriseb6807d2017-07-18 17:04:38 +030026from pySim.ts_51_011 import EF, DF
27from pySim.utils import *
Alexander Chemeris8ad124a2018-01-10 14:17:55 +090028from smartcard.util import toBytes
Sylvain Munaut76504e02010-12-07 00:24:32 +010029
30class Card(object):
31
32 def __init__(self, scc):
33 self._scc = scc
Alexander Chemeriseb6807d2017-07-18 17:04:38 +030034 self._adm_chv_num = 4
Supreeth Herlee4e98312020-03-18 11:33:14 +010035 self._aids = []
Sylvain Munaut76504e02010-12-07 00:24:32 +010036
Sylvain Munaut76504e02010-12-07 00:24:32 +010037 def reset(self):
38 self._scc.reset_card()
39
Alexander Chemeriseb6807d2017-07-18 17:04:38 +030040 def verify_adm(self, key):
41 '''
42 Authenticate with ADM key
43 '''
44 (res, sw) = self._scc.verify_chv(self._adm_chv_num, key)
45 return sw
46
47 def read_iccid(self):
48 (res, sw) = self._scc.read_binary(EF['ICCID'])
49 if sw == '9000':
50 return (dec_iccid(res), sw)
51 else:
52 return (None, sw)
53
54 def read_imsi(self):
55 (res, sw) = self._scc.read_binary(EF['IMSI'])
56 if sw == '9000':
57 return (dec_imsi(res), sw)
58 else:
59 return (None, sw)
60
61 def update_imsi(self, imsi):
62 data, sw = self._scc.update_binary(EF['IMSI'], enc_imsi(imsi))
63 return sw
64
65 def update_acc(self, acc):
66 data, sw = self._scc.update_binary(EF['ACC'], lpad(acc, 4))
67 return sw
68
Supreeth Herlea850a472020-03-19 12:44:11 +010069 def read_hplmn_act(self):
70 (res, sw) = self._scc.read_binary(EF['HPLMNAcT'])
71 if sw == '9000':
72 return (format_xplmn_w_act(res), sw)
73 else:
74 return (None, sw)
75
Alexander Chemeriseb6807d2017-07-18 17:04:38 +030076 def update_hplmn_act(self, mcc, mnc, access_tech='FFFF'):
77 """
78 Update Home PLMN with access technology bit-field
79
80 See Section "10.3.37 EFHPLMNwAcT (HPLMN Selector with Access Technology)"
81 in ETSI TS 151 011 for the details of the access_tech field coding.
82 Some common values:
83 access_tech = '0080' # Only GSM is selected
84 access_tech = 'FFFF' # All technologues selected, even Reserved for Future Use ones
85 """
86 # get size and write EF.HPLMNwAcT
Supreeth Herle2d785972019-11-30 11:00:10 +010087 data = self._scc.read_binary(EF['HPLMNwAcT'], length=None, offset=0)
Vadim Yanitskiy9664b2e2020-02-27 01:49:51 +070088 size = len(data[0]) // 2
Alexander Chemeriseb6807d2017-07-18 17:04:38 +030089 hplmn = enc_plmn(mcc, mnc)
90 content = hplmn + access_tech
Vadim Yanitskiy9664b2e2020-02-27 01:49:51 +070091 data, sw = self._scc.update_binary(EF['HPLMNwAcT'], content + 'ffffff0000' * (size // 5 - 1))
Alexander Chemeriseb6807d2017-07-18 17:04:38 +030092 return sw
93
Supreeth Herle1757b262020-03-19 12:43:11 +010094 def read_oplmn_act(self):
95 (res, sw) = self._scc.read_binary(EF['OPLMNwAcT'])
96 if sw == '9000':
97 return (format_xplmn_w_act(res), sw)
98 else:
99 return (None, sw)
100
Philipp Maierc8ce82a2018-07-04 17:57:20 +0200101 def update_oplmn_act(self, mcc, mnc, access_tech='FFFF'):
102 """
Denis 'GNUtoo' Carikli84d2cb32019-09-12 01:46:25 +0200103 See note in update_hplmn_act()
Philipp Maierc8ce82a2018-07-04 17:57:20 +0200104 """
105 # get size and write EF.OPLMNwAcT
Denis 'GNUtoo' Carikli84d2cb32019-09-12 01:46:25 +0200106 data = self._scc.read_binary(EF['OPLMNwAcT'], length=None, offset=0)
Vadim Yanitskiy99affe12020-02-15 05:03:09 +0700107 size = len(data[0]) // 2
Philipp Maierc8ce82a2018-07-04 17:57:20 +0200108 hplmn = enc_plmn(mcc, mnc)
109 content = hplmn + access_tech
Vadim Yanitskiy9664b2e2020-02-27 01:49:51 +0700110 data, sw = self._scc.update_binary(EF['OPLMNwAcT'], content + 'ffffff0000' * (size // 5 - 1))
Philipp Maierc8ce82a2018-07-04 17:57:20 +0200111 return sw
112
Supreeth Herle14084402020-03-19 12:42:10 +0100113 def read_plmn_act(self):
114 (res, sw) = self._scc.read_binary(EF['PLMNwAcT'])
115 if sw == '9000':
116 return (format_xplmn_w_act(res), sw)
117 else:
118 return (None, sw)
119
Philipp Maierc8ce82a2018-07-04 17:57:20 +0200120 def update_plmn_act(self, mcc, mnc, access_tech='FFFF'):
121 """
Denis 'GNUtoo' Carikli84d2cb32019-09-12 01:46:25 +0200122 See note in update_hplmn_act()
Philipp Maierc8ce82a2018-07-04 17:57:20 +0200123 """
124 # get size and write EF.PLMNwAcT
Denis 'GNUtoo' Carikli84d2cb32019-09-12 01:46:25 +0200125 data = self._scc.read_binary(EF['PLMNwAcT'], length=None, offset=0)
Vadim Yanitskiy99affe12020-02-15 05:03:09 +0700126 size = len(data[0]) // 2
Philipp Maierc8ce82a2018-07-04 17:57:20 +0200127 hplmn = enc_plmn(mcc, mnc)
128 content = hplmn + access_tech
Vadim Yanitskiy9664b2e2020-02-27 01:49:51 +0700129 data, sw = self._scc.update_binary(EF['PLMNwAcT'], content + 'ffffff0000' * (size // 5 - 1))
Philipp Maierc8ce82a2018-07-04 17:57:20 +0200130 return sw
131
Denis 'GNUtoo' Carikli84d2cb32019-09-12 01:46:25 +0200132 def update_plmnsel(self, mcc, mnc):
133 data = self._scc.read_binary(EF['PLMNsel'], length=None, offset=0)
Vadim Yanitskiy99affe12020-02-15 05:03:09 +0700134 size = len(data[0]) // 2
Philipp Maier5bf42602018-07-11 23:23:40 +0200135 hplmn = enc_plmn(mcc, mnc)
Philipp Maieraf9ae8b2018-07-13 11:15:49 +0200136 data, sw = self._scc.update_binary(EF['PLMNsel'], hplmn + 'ff' * (size-3))
137 return sw
Philipp Maier5bf42602018-07-11 23:23:40 +0200138
Alexander Chemeriseb6807d2017-07-18 17:04:38 +0300139 def update_smsp(self, smsp):
140 data, sw = self._scc.update_record(EF['SMSP'], 1, rpad(smsp, 84))
141 return sw
142
Philipp Maieree908ae2019-03-21 16:21:12 +0100143 def update_ad(self, mnc):
Denis 'GNUtoo' Carikli84d2cb32019-09-12 01:46:25 +0200144 #See also: 3GPP TS 31.102, chapter 4.2.18
145 mnclen = len(str(mnc))
146 if mnclen == 1:
147 mnclen = 2
148 if mnclen > 3:
Philipp Maieree908ae2019-03-21 16:21:12 +0100149 raise RuntimeError('unable to calculate proper mnclen')
150
Denis 'GNUtoo' Carikli84d2cb32019-09-12 01:46:25 +0200151 data = self._scc.read_binary(EF['AD'], length=None, offset=0)
Vadim Yanitskiy99affe12020-02-15 05:03:09 +0700152 size = len(data[0]) // 2
Denis 'GNUtoo' Carikli84d2cb32019-09-12 01:46:25 +0200153 content = data[0][0:6] + "%02X" % mnclen
Philipp Maieree908ae2019-03-21 16:21:12 +0100154 data, sw = self._scc.update_binary(EF['AD'], content)
155 return sw
156
Alexander Chemeriseb6807d2017-07-18 17:04:38 +0300157 def read_spn(self):
158 (spn, sw) = self._scc.read_binary(EF['SPN'])
159 if sw == '9000':
160 return (dec_spn(spn), sw)
161 else:
162 return (None, sw)
163
164 def update_spn(self, name, hplmn_disp=False, oplmn_disp=False):
165 content = enc_spn(name, hplmn_disp, oplmn_disp)
166 data, sw = self._scc.update_binary(EF['SPN'], rpad(content, 32))
167 return sw
168
Supreeth Herled21349a2020-04-01 08:37:47 +0200169 def read_binary(self, ef, length=None, offset=0):
170 ef_path = ef in EF and EF[ef] or ef
171 return self._scc.read_binary(ef_path, length, offset)
172
Supreeth Herlead10d662020-04-01 08:43:08 +0200173 def read_record(self, ef, rec_no):
174 ef_path = ef in EF and EF[ef] or ef
175 return self._scc.read_record(ef_path, rec_no)
176
Supreeth Herle98a69272020-03-18 12:14:48 +0100177 def read_gid1(self):
178 (res, sw) = self._scc.read_binary(EF['GID1'])
179 if sw == '9000':
180 return (res, sw)
181 else:
182 return (None, sw)
183
Supreeth Herle6d66af62020-03-19 12:49:16 +0100184 def read_msisdn(self):
185 (res, sw) = self._scc.read_record(EF['MSISDN'], 1)
186 if sw == '9000':
187 return (dec_msisdn(res), sw)
188 else:
189 return (None, sw)
190
Supreeth Herlee26331e2020-03-20 18:50:39 +0100191 # Read SIM Service table
192 def read_sst(self):
193 (res, sw) = self._scc.read_binary(EF['SST'])
194 if sw == '9000':
195 return ((res, parse_st(res)), sw)
196 else:
197 return (None, sw)
198
199 # Read the (full) AID for either ISIM or USIM or ISIM application
Philipp Maier0ad5bcf2019-12-31 17:55:47 +0100200 def read_aid(self, isim = False):
201
202 # First (known) halves of the AID
203 aid_usim = "a0000000871002"
204 aid_isim = "a0000000871004"
205
206 # Select which one to look for
207 if isim:
208 aid = aid_isim
209 else:
210 aid = aid_usim
211
212 # Find out how many records the EF.DIR has, then go through
213 # all records and try to find the AID we are looking for
214 aid_record_count = self._scc.record_count(['2F00'])
215 for i in range(0, aid_record_count):
216 record = self._scc.read_record(['2F00'], i + 1)
217 if aid in record[0]:
218 aid_len = int(record[0][6:8], 16)
219 return record[0][8:8 + aid_len * 2]
220
221 return None
222
Supreeth Herlee4e98312020-03-18 11:33:14 +0100223 # Fetch all the AIDs present on UICC
224 def read_aids(self):
225 try:
226 # Find out how many records the EF.DIR has
227 # and store all the AIDs in the UICC
228 rec_cnt = self._scc.record_count(['3f00', '2f00'])
229 for i in range(0, rec_cnt):
230 rec = self._scc.read_record(['3f00', '2f00'], i + 1)
231 if (rec[0][0:2], rec[0][4:6]) == ('61', '4f') and len(rec[0]) > 12 \
232 and rec[0][8:8 + int(rec[0][6:8], 16) * 2] not in self._aids:
233 self._aids.append(rec[0][8:8 + int(rec[0][6:8], 16) * 2])
234 except Exception as e:
235 print("Can't read AIDs from SIM -- %s" % (str(e),))
236
Supreeth Herlef9f3e5e2020-03-22 08:04:59 +0100237 # Select ADF.U/ISIM in the Card using its full AID
238 def select_adf_by_aid(self, adf="usim"):
239 # Check for valid ADF name
240 if adf not in ["usim", "isim"]:
241 return None
242
243 # First (known) halves of the U/ISIM AID
244 aid_map = {}
245 aid_map["usim"] = "a0000000871002"
246 aid_map["isim"] = "a0000000871004"
247
248 for aid in self._aids:
249 if aid_map[adf] in aid:
250 (res, sw) = self._scc.select_adf(aid)
251 return sw
252
253 return None
254
Sylvain Munaut76504e02010-12-07 00:24:32 +0100255
256class _MagicSimBase(Card):
257 """
258 Theses cards uses several record based EFs to store the provider infos,
259 each possible provider uses a specific record number in each EF. The
260 indexes used are ( where N is the number of providers supported ) :
261 - [2 .. N+1] for the operator name
Supreeth Herle9ca41c12020-01-21 12:50:30 +0100262 - [1 .. N] for the programable EFs
Sylvain Munaut76504e02010-12-07 00:24:32 +0100263
264 * 3f00/7f4d/8f0c : Operator Name
265
266 bytes 0-15 : provider name, padded with 0xff
267 byte 16 : length of the provider name
268 byte 17 : 01 for valid records, 00 otherwise
269
270 * 3f00/7f4d/8f0d : Programmable Binary EFs
271
272 * 3f00/7f4d/8f0e : Programmable Record EFs
273
274 """
275
276 @classmethod
277 def autodetect(kls, scc):
278 try:
279 for p, l, t in kls._files.values():
280 if not t:
281 continue
282 if scc.record_size(['3f00', '7f4d', p]) != l:
283 return None
284 except:
285 return None
286
287 return kls(scc)
288
289 def _get_count(self):
290 """
291 Selects the file and returns the total number of entries
292 and entry size
293 """
294 f = self._files['name']
295
296 r = self._scc.select_file(['3f00', '7f4d', f[0]])
297 rec_len = int(r[-1][28:30], 16)
298 tlen = int(r[-1][4:8],16)
299 rec_cnt = (tlen / rec_len) - 1;
300
301 if (rec_cnt < 1) or (rec_len != f[1]):
302 raise RuntimeError('Bad card type')
303
304 return rec_cnt
305
306 def program(self, p):
307 # Go to dir
308 self._scc.select_file(['3f00', '7f4d'])
309
310 # Home PLMN in PLMN_Sel format
Alexander Chemeris7be92ff2013-07-10 11:18:06 +0400311 hplmn = enc_plmn(p['mcc'], p['mnc'])
Sylvain Munaut76504e02010-12-07 00:24:32 +0100312
313 # Operator name ( 3f00/7f4d/8f0c )
314 self._scc.update_record(self._files['name'][0], 2,
315 rpad(b2h(p['name']), 32) + ('%02x' % len(p['name'])) + '01'
316 )
317
318 # ICCID/IMSI/Ki/HPLMN ( 3f00/7f4d/8f0d )
319 v = ''
320
321 # inline Ki
322 if self._ki_file is None:
323 v += p['ki']
324
325 # ICCID
Alexander Chemeris7be92ff2013-07-10 11:18:06 +0400326 v += '3f00' + '2fe2' + '0a' + enc_iccid(p['iccid'])
Sylvain Munaut76504e02010-12-07 00:24:32 +0100327
328 # IMSI
Alexander Chemeris7be92ff2013-07-10 11:18:06 +0400329 v += '7f20' + '6f07' + '09' + enc_imsi(p['imsi'])
Sylvain Munaut76504e02010-12-07 00:24:32 +0100330
331 # Ki
332 if self._ki_file:
333 v += self._ki_file + '10' + p['ki']
334
335 # PLMN_Sel
336 v+= '6f30' + '18' + rpad(hplmn, 36)
337
Alexander Chemeris21885242013-07-02 16:56:55 +0400338 # ACC
339 # This doesn't work with "fake" SuperSIM cards,
340 # but will hopefully work with real SuperSIMs.
341 if p.get('acc') is not None:
342 v+= '6f78' + '02' + lpad(p['acc'], 4)
343
Sylvain Munaut76504e02010-12-07 00:24:32 +0100344 self._scc.update_record(self._files['b_ef'][0], 1,
345 rpad(v, self._files['b_ef'][1]*2)
346 )
347
348 # SMSP ( 3f00/7f4d/8f0e )
349 # FIXME
350
351 # Write PLMN_Sel forcefully as well
352 r = self._scc.select_file(['3f00', '7f20', '6f30'])
353 tl = int(r[-1][4:8], 16)
354
Alexander Chemeris7be92ff2013-07-10 11:18:06 +0400355 hplmn = enc_plmn(p['mcc'], p['mnc'])
Sylvain Munaut76504e02010-12-07 00:24:32 +0100356 self._scc.update_binary('6f30', hplmn + 'ff' * (tl-3))
357
358 def erase(self):
359 # Dummy
360 df = {}
361 for k, v in self._files.iteritems():
362 ofs = 1
363 fv = v[1] * 'ff'
364 if k == 'name':
365 ofs = 2
366 fv = fv[0:-4] + '0000'
367 df[v[0]] = (fv, ofs)
368
369 # Write
370 for n in range(0,self._get_count()):
371 for k, (msg, ofs) in df.iteritems():
372 self._scc.update_record(['3f00', '7f4d', k], n + ofs, msg)
373
374
375class SuperSim(_MagicSimBase):
376
377 name = 'supersim'
378
379 _files = {
380 'name' : ('8f0c', 18, True),
381 'b_ef' : ('8f0d', 74, True),
382 'r_ef' : ('8f0e', 50, True),
383 }
384
385 _ki_file = None
386
387
388class MagicSim(_MagicSimBase):
389
390 name = 'magicsim'
391
392 _files = {
393 'name' : ('8f0c', 18, True),
394 'b_ef' : ('8f0d', 130, True),
395 'r_ef' : ('8f0e', 102, False),
396 }
397
398 _ki_file = '6f1b'
399
400
401class FakeMagicSim(Card):
402 """
403 Theses cards have a record based EF 3f00/000c that contains the provider
404 informations. See the program method for its format. The records go from
405 1 to N.
406 """
407
408 name = 'fakemagicsim'
409
410 @classmethod
411 def autodetect(kls, scc):
412 try:
413 if scc.record_size(['3f00', '000c']) != 0x5a:
414 return None
415 except:
416 return None
417
418 return kls(scc)
419
420 def _get_infos(self):
421 """
422 Selects the file and returns the total number of entries
423 and entry size
424 """
425
426 r = self._scc.select_file(['3f00', '000c'])
427 rec_len = int(r[-1][28:30], 16)
428 tlen = int(r[-1][4:8],16)
429 rec_cnt = (tlen / rec_len) - 1;
430
431 if (rec_cnt < 1) or (rec_len != 0x5a):
432 raise RuntimeError('Bad card type')
433
434 return rec_cnt, rec_len
435
436 def program(self, p):
437 # Home PLMN
438 r = self._scc.select_file(['3f00', '7f20', '6f30'])
439 tl = int(r[-1][4:8], 16)
440
Alexander Chemeris7be92ff2013-07-10 11:18:06 +0400441 hplmn = enc_plmn(p['mcc'], p['mnc'])
Sylvain Munaut76504e02010-12-07 00:24:32 +0100442 self._scc.update_binary('6f30', hplmn + 'ff' * (tl-3))
443
444 # Get total number of entries and entry size
445 rec_cnt, rec_len = self._get_infos()
446
447 # Set first entry
448 entry = (
Philipp Maier45daa922019-04-01 15:49:45 +0200449 '81' + # 1b Status: Valid & Active
Sylvain Munaut76504e02010-12-07 00:24:32 +0100450 rpad(b2h(p['name'][0:14]), 28) + # 14b Entry Name
Philipp Maier45daa922019-04-01 15:49:45 +0200451 enc_iccid(p['iccid']) + # 10b ICCID
452 enc_imsi(p['imsi']) + # 9b IMSI_len + id_type(9) + IMSI
453 p['ki'] + # 16b Ki
454 lpad(p['smsp'], 80) # 40b SMSP (padded with ff if needed)
Sylvain Munaut76504e02010-12-07 00:24:32 +0100455 )
456 self._scc.update_record('000c', 1, entry)
457
458 def erase(self):
459 # Get total number of entries and entry size
460 rec_cnt, rec_len = self._get_infos()
461
462 # Erase all entries
463 entry = 'ff' * rec_len
464 for i in range(0, rec_cnt):
465 self._scc.update_record('000c', 1+i, entry)
466
Sylvain Munaut5da8d4e2013-07-02 15:13:24 +0200467
Harald Welte3156d902011-03-22 21:48:19 +0100468class GrcardSim(Card):
469 """
470 Greencard (grcard.cn) HZCOS GSM SIM
471 These cards have a much more regular ISO 7816-4 / TS 11.11 structure,
472 and use standard UPDATE RECORD / UPDATE BINARY commands except for Ki.
473 """
474
475 name = 'grcardsim'
476
477 @classmethod
478 def autodetect(kls, scc):
479 return None
480
481 def program(self, p):
482 # We don't really know yet what ADM PIN 4 is about
483 #self._scc.verify_chv(4, h2b("4444444444444444"))
484
485 # Authenticate using ADM PIN 5
Jan Balkec3ebd332015-01-26 12:22:55 +0100486 if p['pin_adm']:
Philipp Maiera3de5a32018-08-23 10:27:04 +0200487 pin = h2b(p['pin_adm'])
Jan Balkec3ebd332015-01-26 12:22:55 +0100488 else:
489 pin = h2b("4444444444444444")
490 self._scc.verify_chv(5, pin)
Harald Welte3156d902011-03-22 21:48:19 +0100491
492 # EF.ICCID
493 r = self._scc.select_file(['3f00', '2fe2'])
Alexander Chemeris7be92ff2013-07-10 11:18:06 +0400494 data, sw = self._scc.update_binary('2fe2', enc_iccid(p['iccid']))
Harald Welte3156d902011-03-22 21:48:19 +0100495
496 # EF.IMSI
497 r = self._scc.select_file(['3f00', '7f20', '6f07'])
Alexander Chemeris7be92ff2013-07-10 11:18:06 +0400498 data, sw = self._scc.update_binary('6f07', enc_imsi(p['imsi']))
Harald Welte3156d902011-03-22 21:48:19 +0100499
500 # EF.ACC
Alexander Chemeris21885242013-07-02 16:56:55 +0400501 if p.get('acc') is not None:
502 data, sw = self._scc.update_binary('6f78', lpad(p['acc'], 4))
Harald Welte3156d902011-03-22 21:48:19 +0100503
504 # EF.SMSP
Denis 'GNUtoo' Carikli84d2cb32019-09-12 01:46:25 +0200505 if p.get('smsp'):
Harald Welte23888da2019-08-28 23:19:11 +0200506 r = self._scc.select_file(['3f00', '7f10', '6f42'])
507 data, sw = self._scc.update_record('6f42', 1, lpad(p['smsp'], 80))
Harald Welte3156d902011-03-22 21:48:19 +0100508
509 # Set the Ki using proprietary command
510 pdu = '80d4020010' + p['ki']
511 data, sw = self._scc._tp.send_apdu(pdu)
512
513 # EF.HPLMN
514 r = self._scc.select_file(['3f00', '7f20', '6f30'])
515 size = int(r[-1][4:8], 16)
Alexander Chemeris7be92ff2013-07-10 11:18:06 +0400516 hplmn = enc_plmn(p['mcc'], p['mnc'])
Harald Welte3156d902011-03-22 21:48:19 +0100517 self._scc.update_binary('6f30', hplmn + 'ff' * (size-3))
518
519 # EF.SPN (Service Provider Name)
520 r = self._scc.select_file(['3f00', '7f20', '6f30'])
521 size = int(r[-1][4:8], 16)
522 # FIXME
523
524 # FIXME: EF.MSISDN
525
526 def erase(self):
527 return
Sylvain Munaut76504e02010-12-07 00:24:32 +0100528
Harald Weltee10394b2011-12-07 12:34:14 +0100529class SysmoSIMgr1(GrcardSim):
530 """
531 sysmocom sysmoSIM-GR1
532 These cards have a much more regular ISO 7816-4 / TS 11.11 structure,
533 and use standard UPDATE RECORD / UPDATE BINARY commands except for Ki.
534 """
535 name = 'sysmosim-gr1'
536
Denis 'GNUtoo' Carikli84d2cb32019-09-12 01:46:25 +0200537 @classmethod
Philipp Maier087feff2018-08-23 09:41:36 +0200538 def autodetect(kls, scc):
539 try:
540 # Look for ATR
541 if scc.get_atr() == toBytes("3B 99 18 00 11 88 22 33 44 55 66 77 60"):
542 return kls(scc)
543 except:
544 return None
545 return None
Sylvain Munaut5da8d4e2013-07-02 15:13:24 +0200546
Holger Hans Peter Freyther4d91bf42012-03-22 14:28:38 +0100547class SysmoUSIMgr1(Card):
548 """
549 sysmocom sysmoUSIM-GR1
550 """
551 name = 'sysmoUSIM-GR1'
552
553 @classmethod
554 def autodetect(kls, scc):
555 # TODO: Access the ATR
556 return None
557
558 def program(self, p):
559 # TODO: check if verify_chv could be used or what it needs
560 # self._scc.verify_chv(0x0A, [0x33,0x32,0x32,0x31,0x33,0x32,0x33,0x32])
561 # Unlock the card..
562 data, sw = self._scc._tp.send_apdu_checksw("0020000A083332323133323332")
563
564 # TODO: move into SimCardCommands
Holger Hans Peter Freyther4d91bf42012-03-22 14:28:38 +0100565 par = ( p['ki'] + # 16b K
Alexander Chemeris7be92ff2013-07-10 11:18:06 +0400566 p['opc'] + # 32b OPC
567 enc_iccid(p['iccid']) + # 10b ICCID
568 enc_imsi(p['imsi']) # 9b IMSI_len + id_type(9) + IMSI
Holger Hans Peter Freyther4d91bf42012-03-22 14:28:38 +0100569 )
570 data, sw = self._scc._tp.send_apdu_checksw("0099000033" + par)
571
572 def erase(self):
573 return
574
Sylvain Munaut053c8952013-07-02 15:12:32 +0200575
Sylvain Munaut2fc205c2013-12-23 17:22:56 +0100576class SysmoSIMgr2(Card):
577 """
578 sysmocom sysmoSIM-GR2
579 """
580
581 name = 'sysmoSIM-GR2'
582
583 @classmethod
584 def autodetect(kls, scc):
Alexander Chemeris8ad124a2018-01-10 14:17:55 +0900585 try:
586 # Look for ATR
587 if scc.get_atr() == toBytes("3B 7D 94 00 00 55 55 53 0A 74 86 93 0B 24 7C 4D 54 68"):
588 return kls(scc)
589 except:
590 return None
Sylvain Munaut2fc205c2013-12-23 17:22:56 +0100591 return None
592
593 def program(self, p):
594
595 # select MF
596 r = self._scc.select_file(['3f00'])
597
598 # authenticate as SUPER ADM using default key
599 self._scc.verify_chv(0x0b, h2b("3838383838383838"))
600
601 # set ADM pin using proprietary command
602 # INS: D4
603 # P1: 3A for PIN, 3B for PUK
604 # P2: CHV number, as in VERIFY CHV for PIN, and as in UNBLOCK CHV for PUK
605 # P3: 08, CHV length (curiously the PUK is also 08 length, instead of 10)
Jan Balkec3ebd332015-01-26 12:22:55 +0100606 if p['pin_adm']:
Daniel Willmann7d38d742018-06-15 07:31:50 +0200607 pin = h2b(p['pin_adm'])
Jan Balkec3ebd332015-01-26 12:22:55 +0100608 else:
609 pin = h2b("4444444444444444")
610
611 pdu = 'A0D43A0508' + b2h(pin)
Sylvain Munaut2fc205c2013-12-23 17:22:56 +0100612 data, sw = self._scc._tp.send_apdu(pdu)
613
614 # authenticate as ADM (enough to write file, and can set PINs)
Jan Balkec3ebd332015-01-26 12:22:55 +0100615
616 self._scc.verify_chv(0x05, pin)
Sylvain Munaut2fc205c2013-12-23 17:22:56 +0100617
618 # write EF.ICCID
619 data, sw = self._scc.update_binary('2fe2', enc_iccid(p['iccid']))
620
621 # select DF_GSM
622 r = self._scc.select_file(['7f20'])
623
624 # write EF.IMSI
625 data, sw = self._scc.update_binary('6f07', enc_imsi(p['imsi']))
626
627 # write EF.ACC
628 if p.get('acc') is not None:
629 data, sw = self._scc.update_binary('6f78', lpad(p['acc'], 4))
630
631 # get size and write EF.HPLMN
632 r = self._scc.select_file(['6f30'])
633 size = int(r[-1][4:8], 16)
634 hplmn = enc_plmn(p['mcc'], p['mnc'])
635 self._scc.update_binary('6f30', hplmn + 'ff' * (size-3))
636
637 # set COMP128 version 0 in proprietary file
638 data, sw = self._scc.update_binary('0001', '001000')
639
640 # set Ki in proprietary file
641 data, sw = self._scc.update_binary('0001', p['ki'], 3)
642
643 # select DF_TELECOM
644 r = self._scc.select_file(['3f00', '7f10'])
645
646 # write EF.SMSP
Denis 'GNUtoo' Carikli84d2cb32019-09-12 01:46:25 +0200647 if p.get('smsp'):
Harald Welte23888da2019-08-28 23:19:11 +0200648 data, sw = self._scc.update_record('6f42', 1, lpad(p['smsp'], 80))
Sylvain Munaut2fc205c2013-12-23 17:22:56 +0100649
650 def erase(self):
651 return
652
Jan Balke3e840672015-01-26 15:36:27 +0100653class SysmoUSIMSJS1(Card):
654 """
655 sysmocom sysmoUSIM-SJS1
656 """
657
658 name = 'sysmoUSIM-SJS1'
659
660 def __init__(self, ssc):
661 super(SysmoUSIMSJS1, self).__init__(ssc)
662 self._scc.cla_byte = "00"
Philipp Maier2d15ea02019-03-20 12:40:36 +0100663 self._scc.sel_ctrl = "0004" #request an FCP
Jan Balke3e840672015-01-26 15:36:27 +0100664
665 @classmethod
666 def autodetect(kls, scc):
Alexander Chemeris8ad124a2018-01-10 14:17:55 +0900667 try:
668 # Look for ATR
669 if scc.get_atr() == toBytes("3B 9F 96 80 1F C7 80 31 A0 73 BE 21 13 67 43 20 07 18 00 00 01 A5"):
670 return kls(scc)
671 except:
672 return None
Jan Balke3e840672015-01-26 15:36:27 +0100673 return None
674
675 def program(self, p):
676
Philipp Maiere9604882017-03-21 17:24:31 +0100677 # authenticate as ADM using default key (written on the card..)
678 if not p['pin_adm']:
679 raise ValueError("Please provide a PIN-ADM as there is no default one")
680 self._scc.verify_chv(0x0A, h2b(p['pin_adm']))
Jan Balke3e840672015-01-26 15:36:27 +0100681
682 # select MF
683 r = self._scc.select_file(['3f00'])
684
Philipp Maiere9604882017-03-21 17:24:31 +0100685 # write EF.ICCID
686 data, sw = self._scc.update_binary('2fe2', enc_iccid(p['iccid']))
687
Jan Balke3e840672015-01-26 15:36:27 +0100688 # select DF_GSM
689 r = self._scc.select_file(['7f20'])
690
Jan Balke3e840672015-01-26 15:36:27 +0100691 # set Ki in proprietary file
692 data, sw = self._scc.update_binary('00FF', p['ki'])
693
Philipp Maier1be35bf2018-07-13 11:29:03 +0200694 # set OPc in proprietary file
Daniel Willmann67acdbc2018-06-15 07:42:48 +0200695 if 'opc' in p:
696 content = "01" + p['opc']
697 data, sw = self._scc.update_binary('00F7', content)
Jan Balke3e840672015-01-26 15:36:27 +0100698
Supreeth Herle7947d922019-06-08 07:50:53 +0200699 # set Service Provider Name
Supreeth Herle840a9e22020-01-21 13:32:46 +0100700 if p.get('name') is not None:
701 content = enc_spn(p['name'], True, True)
702 data, sw = self._scc.update_binary('6F46', rpad(content, 32))
Supreeth Herle7947d922019-06-08 07:50:53 +0200703
Supreeth Herlec8796a32019-12-23 12:23:42 +0100704 if p.get('acc') is not None:
705 self.update_acc(p['acc'])
706
Jan Balke3e840672015-01-26 15:36:27 +0100707 # write EF.IMSI
708 data, sw = self._scc.update_binary('6f07', enc_imsi(p['imsi']))
709
Philipp Maier2d15ea02019-03-20 12:40:36 +0100710 # EF.PLMNsel
Denis 'GNUtoo' Carikli84d2cb32019-09-12 01:46:25 +0200711 if p.get('mcc') and p.get('mnc'):
712 sw = self.update_plmnsel(p['mcc'], p['mnc'])
713 if sw != '9000':
Philipp Maier2d15ea02019-03-20 12:40:36 +0100714 print("Programming PLMNsel failed with code %s"%sw)
715
Denis 'GNUtoo' Carikli84d2cb32019-09-12 01:46:25 +0200716 # EF.PLMNwAcT
717 if p.get('mcc') and p.get('mnc'):
Philipp Maier2d15ea02019-03-20 12:40:36 +0100718 sw = self.update_plmn_act(p['mcc'], p['mnc'])
719 if sw != '9000':
720 print("Programming PLMNwAcT failed with code %s"%sw)
721
Denis 'GNUtoo' Carikli84d2cb32019-09-12 01:46:25 +0200722 # EF.OPLMNwAcT
723 if p.get('mcc') and p.get('mnc'):
Philipp Maier2d15ea02019-03-20 12:40:36 +0100724 sw = self.update_oplmn_act(p['mcc'], p['mnc'])
725 if sw != '9000':
726 print("Programming OPLMNwAcT failed with code %s"%sw)
727
Supreeth Herlef442fb42020-01-21 12:47:32 +0100728 # EF.HPLMNwAcT
729 if p.get('mcc') and p.get('mnc'):
730 sw = self.update_hplmn_act(p['mcc'], p['mnc'])
731 if sw != '9000':
732 print("Programming HPLMNwAcT failed with code %s"%sw)
733
Denis 'GNUtoo' Carikli84d2cb32019-09-12 01:46:25 +0200734 # EF.AD
735 if p.get('mcc') and p.get('mnc'):
Philipp Maieree908ae2019-03-21 16:21:12 +0100736 sw = self.update_ad(p['mnc'])
737 if sw != '9000':
738 print("Programming AD failed with code %s"%sw)
Philipp Maier2d15ea02019-03-20 12:40:36 +0100739
Daniel Willmann1d087ef2017-08-31 10:08:45 +0200740 # EF.SMSP
Harald Welte23888da2019-08-28 23:19:11 +0200741 if p.get('smsp'):
742 r = self._scc.select_file(['3f00', '7f10'])
743 data, sw = self._scc.update_record('6f42', 1, lpad(p['smsp'], 104), force_len=True)
Jan Balke3e840672015-01-26 15:36:27 +0100744
Supreeth Herle5a541012019-12-22 08:59:16 +0100745 # EF.MSISDN
746 # TODO: Alpha Identifier (currently 'ff'O * 20)
747 # TODO: Capability/Configuration1 Record Identifier
748 # TODO: Extension1 Record Identifier
749 if p.get('msisdn') is not None:
750 msisdn = enc_msisdn(p['msisdn'])
751 data = 'ff' * 20 + msisdn + 'ff' * 2
752
753 r = self._scc.select_file(['3f00', '7f10'])
754 data, sw = self._scc.update_record('6F40', 1, data, force_len=True)
755
Alexander Chemerise0d9d882018-01-10 14:18:32 +0900756 def erase(self):
757 return
758
759
760class FairwavesSIM(Card):
761 """
762 FairwavesSIM
763
764 The SIM card is operating according to the standard.
765 For Ki/OP/OPC programming the following files are additionally open for writing:
766 3F00/7F20/FF01 – OP/OPC:
767 byte 1 = 0x01, bytes 2-17: OPC;
768 byte 1 = 0x00, bytes 2-17: OP;
769 3F00/7F20/FF02: Ki
770 """
771
Philipp Maier5a876312019-11-11 11:01:46 +0100772 name = 'Fairwaves-SIM'
Alexander Chemerise0d9d882018-01-10 14:18:32 +0900773 # Propriatary files
774 _EF_num = {
775 'Ki': 'FF02',
776 'OP/OPC': 'FF01',
777 }
778 _EF = {
779 'Ki': DF['GSM']+[_EF_num['Ki']],
780 'OP/OPC': DF['GSM']+[_EF_num['OP/OPC']],
781 }
782
783 def __init__(self, ssc):
784 super(FairwavesSIM, self).__init__(ssc)
785 self._adm_chv_num = 0x11
786 self._adm2_chv_num = 0x12
787
788
789 @classmethod
790 def autodetect(kls, scc):
791 try:
792 # Look for ATR
793 if scc.get_atr() == toBytes("3B 9F 96 80 1F C7 80 31 A0 73 BE 21 13 67 44 22 06 10 00 00 01 A9"):
794 return kls(scc)
795 except:
796 return None
797 return None
798
799
800 def verify_adm2(self, key):
801 '''
802 Authenticate with ADM2 key.
803
804 Fairwaves SIM cards support hierarchical key structure and ADM2 key
805 is a key which has access to proprietary files (Ki and OP/OPC).
806 That said, ADM key inherits permissions of ADM2 key and thus we rarely
807 need ADM2 key per se.
808 '''
809 (res, sw) = self._scc.verify_chv(self._adm2_chv_num, key)
810 return sw
811
812
813 def read_ki(self):
814 """
815 Read Ki in proprietary file.
816
817 Requires ADM1 access level
818 """
819 return self._scc.read_binary(self._EF['Ki'])
820
821
822 def update_ki(self, ki):
823 """
824 Set Ki in proprietary file.
825
826 Requires ADM1 access level
827 """
828 data, sw = self._scc.update_binary(self._EF['Ki'], ki)
829 return sw
830
831
832 def read_op_opc(self):
833 """
834 Read Ki in proprietary file.
835
836 Requires ADM1 access level
837 """
838 (ef, sw) = self._scc.read_binary(self._EF['OP/OPC'])
839 type = 'OP' if ef[0:2] == '00' else 'OPC'
840 return ((type, ef[2:]), sw)
841
842
843 def update_op(self, op):
844 """
845 Set OP in proprietary file.
846
847 Requires ADM1 access level
848 """
849 content = '00' + op
850 data, sw = self._scc.update_binary(self._EF['OP/OPC'], content)
851 return sw
852
853
854 def update_opc(self, opc):
855 """
856 Set OPC in proprietary file.
857
858 Requires ADM1 access level
859 """
860 content = '01' + opc
861 data, sw = self._scc.update_binary(self._EF['OP/OPC'], content)
862 return sw
863
864
865 def program(self, p):
866 # authenticate as ADM1
867 if not p['pin_adm']:
868 raise ValueError("Please provide a PIN-ADM as there is no default one")
869 sw = self.verify_adm(h2b(p['pin_adm']))
870 if sw != '9000':
871 raise RuntimeError('Failed to authenticate with ADM key %s'%(p['pin_adm'],))
872
873 # TODO: Set operator name
874 if p.get('smsp') is not None:
875 sw = self.update_smsp(p['smsp'])
876 if sw != '9000':
877 print("Programming SMSP failed with code %s"%sw)
878 # This SIM doesn't support changing ICCID
879 if p.get('mcc') is not None and p.get('mnc') is not None:
880 sw = self.update_hplmn_act(p['mcc'], p['mnc'])
881 if sw != '9000':
882 print("Programming MCC/MNC failed with code %s"%sw)
883 if p.get('imsi') is not None:
884 sw = self.update_imsi(p['imsi'])
885 if sw != '9000':
886 print("Programming IMSI failed with code %s"%sw)
887 if p.get('ki') is not None:
888 sw = self.update_ki(p['ki'])
889 if sw != '9000':
890 print("Programming Ki failed with code %s"%sw)
891 if p.get('opc') is not None:
892 sw = self.update_opc(p['opc'])
893 if sw != '9000':
894 print("Programming OPC failed with code %s"%sw)
895 if p.get('acc') is not None:
896 sw = self.update_acc(p['acc'])
897 if sw != '9000':
898 print("Programming ACC failed with code %s"%sw)
Jan Balke3e840672015-01-26 15:36:27 +0100899
900 def erase(self):
901 return
902
903
Todd Neal9eeadfc2018-04-25 15:36:29 -0500904class OpenCellsSim(Card):
905 """
906 OpenCellsSim
907
908 """
909
Philipp Maier5a876312019-11-11 11:01:46 +0100910 name = 'OpenCells-SIM'
Todd Neal9eeadfc2018-04-25 15:36:29 -0500911
912 def __init__(self, ssc):
913 super(OpenCellsSim, self).__init__(ssc)
914 self._adm_chv_num = 0x0A
915
916
917 @classmethod
918 def autodetect(kls, scc):
919 try:
920 # Look for ATR
921 if scc.get_atr() == toBytes("3B 9F 95 80 1F C3 80 31 E0 73 FE 21 13 57 86 81 02 86 98 44 18 A8"):
922 return kls(scc)
923 except:
924 return None
925 return None
926
927
928 def program(self, p):
929 if not p['pin_adm']:
930 raise ValueError("Please provide a PIN-ADM as there is no default one")
931 self._scc.verify_chv(0x0A, h2b(p['pin_adm']))
932
933 # select MF
934 r = self._scc.select_file(['3f00'])
935
936 # write EF.ICCID
937 data, sw = self._scc.update_binary('2fe2', enc_iccid(p['iccid']))
938
939 r = self._scc.select_file(['7ff0'])
940
941 # set Ki in proprietary file
942 data, sw = self._scc.update_binary('FF02', p['ki'])
943
944 # set OPC in proprietary file
945 data, sw = self._scc.update_binary('FF01', p['opc'])
946
947 # select DF_GSM
948 r = self._scc.select_file(['7f20'])
949
950 # write EF.IMSI
951 data, sw = self._scc.update_binary('6f07', enc_imsi(p['imsi']))
952
Philipp Maierc8ce82a2018-07-04 17:57:20 +0200953class WavemobileSim(Card):
954 """
955 WavemobileSim
956
957 """
958
959 name = 'Wavemobile-SIM'
960
961 def __init__(self, ssc):
962 super(WavemobileSim, self).__init__(ssc)
963 self._adm_chv_num = 0x0A
964 self._scc.cla_byte = "00"
965 self._scc.sel_ctrl = "0004" #request an FCP
966
967 @classmethod
968 def autodetect(kls, scc):
969 try:
970 # Look for ATR
971 if scc.get_atr() == toBytes("3B 9F 95 80 1F C7 80 31 E0 73 F6 21 13 67 4D 45 16 00 43 01 00 8F"):
972 return kls(scc)
973 except:
974 return None
975 return None
976
977 def program(self, p):
978 if not p['pin_adm']:
979 raise ValueError("Please provide a PIN-ADM as there is no default one")
980 sw = self.verify_adm(h2b(p['pin_adm']))
981 if sw != '9000':
982 raise RuntimeError('Failed to authenticate with ADM key %s'%(p['pin_adm'],))
983
Denis 'GNUtoo' Carikli84d2cb32019-09-12 01:46:25 +0200984 # EF.ICCID
985 # TODO: Add programming of the ICCID
986 if p.get('iccid'):
Philipp Maierc8ce82a2018-07-04 17:57:20 +0200987 print("Warning: Programming of the ICCID is not implemented for this type of card.")
988
Denis 'GNUtoo' Carikli84d2cb32019-09-12 01:46:25 +0200989 # KI (Presumably a propritary file)
990 # TODO: Add programming of KI
991 if p.get('ki'):
Philipp Maierc8ce82a2018-07-04 17:57:20 +0200992 print("Warning: Programming of the KI is not implemented for this type of card.")
993
Denis 'GNUtoo' Carikli84d2cb32019-09-12 01:46:25 +0200994 # OPc (Presumably a propritary file)
995 # TODO: Add programming of OPc
996 if p.get('opc'):
Philipp Maierc8ce82a2018-07-04 17:57:20 +0200997 print("Warning: Programming of the OPc is not implemented for this type of card.")
998
Denis 'GNUtoo' Carikli84d2cb32019-09-12 01:46:25 +0200999 # EF.SMSP
Philipp Maierc8ce82a2018-07-04 17:57:20 +02001000 if p.get('smsp'):
1001 sw = self.update_smsp(p['smsp'])
1002 if sw != '9000':
1003 print("Programming SMSP failed with code %s"%sw)
1004
Denis 'GNUtoo' Carikli84d2cb32019-09-12 01:46:25 +02001005 # EF.IMSI
Philipp Maierc8ce82a2018-07-04 17:57:20 +02001006 if p.get('imsi'):
1007 sw = self.update_imsi(p['imsi'])
1008 if sw != '9000':
1009 print("Programming IMSI failed with code %s"%sw)
1010
1011 # EF.ACC
1012 if p.get('acc'):
1013 sw = self.update_acc(p['acc'])
1014 if sw != '9000':
1015 print("Programming ACC failed with code %s"%sw)
1016
1017 # EF.PLMNsel
Denis 'GNUtoo' Carikli84d2cb32019-09-12 01:46:25 +02001018 if p.get('mcc') and p.get('mnc'):
1019 sw = self.update_plmnsel(p['mcc'], p['mnc'])
1020 if sw != '9000':
Philipp Maierc8ce82a2018-07-04 17:57:20 +02001021 print("Programming PLMNsel failed with code %s"%sw)
1022
Denis 'GNUtoo' Carikli84d2cb32019-09-12 01:46:25 +02001023 # EF.PLMNwAcT
1024 if p.get('mcc') and p.get('mnc'):
Philipp Maierc8ce82a2018-07-04 17:57:20 +02001025 sw = self.update_plmn_act(p['mcc'], p['mnc'])
1026 if sw != '9000':
1027 print("Programming PLMNwAcT failed with code %s"%sw)
1028
Denis 'GNUtoo' Carikli84d2cb32019-09-12 01:46:25 +02001029 # EF.OPLMNwAcT
1030 if p.get('mcc') and p.get('mnc'):
Philipp Maierc8ce82a2018-07-04 17:57:20 +02001031 sw = self.update_oplmn_act(p['mcc'], p['mnc'])
1032 if sw != '9000':
1033 print("Programming OPLMNwAcT failed with code %s"%sw)
1034
Denis 'GNUtoo' Carikli84d2cb32019-09-12 01:46:25 +02001035 # EF.AD
1036 if p.get('mcc') and p.get('mnc'):
Philipp Maier6e507a72019-04-01 16:33:48 +02001037 sw = self.update_ad(p['mnc'])
1038 if sw != '9000':
1039 print("Programming AD failed with code %s"%sw)
1040
Denis 'GNUtoo' Carikli84d2cb32019-09-12 01:46:25 +02001041 return None
Philipp Maierc8ce82a2018-07-04 17:57:20 +02001042
1043 def erase(self):
1044 return
1045
Todd Neal9eeadfc2018-04-25 15:36:29 -05001046
Philipp Maier0ad5bcf2019-12-31 17:55:47 +01001047class SysmoISIMSJA2(Card):
1048 """
1049 sysmocom sysmoISIM-SJA2
1050 """
1051
1052 name = 'sysmoISIM-SJA2'
1053
1054 def __init__(self, ssc):
1055 super(SysmoISIMSJA2, self).__init__(ssc)
1056 self._scc.cla_byte = "00"
1057 self._scc.sel_ctrl = "0004" #request an FCP
1058
1059 @classmethod
1060 def autodetect(kls, scc):
1061 try:
1062 # Try card model #1
1063 atr = "3B 9F 96 80 1F 87 80 31 E0 73 FE 21 1B 67 4A 4C 75 30 34 05 4B A9"
1064 if scc.get_atr() == toBytes(atr):
1065 return kls(scc)
1066
1067 # Try card model #2
1068 atr = "3B 9F 96 80 1F 87 80 31 E0 73 FE 21 1B 67 4A 4C 75 31 33 02 51 B2"
1069 if scc.get_atr() == toBytes(atr):
1070 return kls(scc)
Philipp Maierb3e11ea2020-03-11 12:32:44 +01001071
1072 # Try card model #3
1073 atr = "3B 9F 96 80 1F 87 80 31 E0 73 FE 21 1B 67 4A 4C 52 75 31 04 51 D5"
1074 if scc.get_atr() == toBytes(atr):
1075 return kls(scc)
Philipp Maier0ad5bcf2019-12-31 17:55:47 +01001076 except:
1077 return None
1078 return None
1079
1080 def program(self, p):
1081 # authenticate as ADM using default key (written on the card..)
1082 if not p['pin_adm']:
1083 raise ValueError("Please provide a PIN-ADM as there is no default one")
1084 self._scc.verify_chv(0x0A, h2b(p['pin_adm']))
1085
1086 # This type of card does not allow to reprogram the ICCID.
1087 # Reprogramming the ICCID would mess up the card os software
1088 # license management, so the ICCID must be kept at its factory
1089 # setting!
1090 if p.get('iccid'):
1091 print("Warning: Programming of the ICCID is not implemented for this type of card.")
1092
1093 # select DF_GSM
1094 self._scc.select_file(['7f20'])
1095
1096 # write EF.IMSI
1097 if p.get('imsi'):
1098 self._scc.update_binary('6f07', enc_imsi(p['imsi']))
1099
1100 # EF.PLMNsel
1101 if p.get('mcc') and p.get('mnc'):
1102 sw = self.update_plmnsel(p['mcc'], p['mnc'])
1103 if sw != '9000':
1104 print("Programming PLMNsel failed with code %s"%sw)
1105
1106 # EF.PLMNwAcT
1107 if p.get('mcc') and p.get('mnc'):
1108 sw = self.update_plmn_act(p['mcc'], p['mnc'])
1109 if sw != '9000':
1110 print("Programming PLMNwAcT failed with code %s"%sw)
1111
1112 # EF.OPLMNwAcT
1113 if p.get('mcc') and p.get('mnc'):
1114 sw = self.update_oplmn_act(p['mcc'], p['mnc'])
1115 if sw != '9000':
1116 print("Programming OPLMNwAcT failed with code %s"%sw)
1117
1118 # EF.AD
1119 if p.get('mcc') and p.get('mnc'):
1120 sw = self.update_ad(p['mnc'])
1121 if sw != '9000':
1122 print("Programming AD failed with code %s"%sw)
1123
1124 # EF.SMSP
1125 if p.get('smsp'):
1126 r = self._scc.select_file(['3f00', '7f10'])
1127 data, sw = self._scc.update_record('6f42', 1, lpad(p['smsp'], 104), force_len=True)
1128
1129 # update EF-SIM_AUTH_KEY (and EF-USIM_AUTH_KEY_2G, which is
1130 # hard linked to EF-USIM_AUTH_KEY)
1131 self._scc.select_file(['3f00'])
1132 self._scc.select_file(['a515'])
1133 if p.get('ki'):
1134 self._scc.update_binary('6f20', p['ki'], 1)
1135 if p.get('opc'):
1136 self._scc.update_binary('6f20', p['opc'], 17)
1137
1138 # update EF-USIM_AUTH_KEY in ADF.ISIM
1139 self._scc.select_file(['3f00'])
1140 aid = self.read_aid(isim = True)
Philipp Maierd9507862020-03-11 12:18:29 +01001141 if (aid):
1142 self._scc.select_adf(aid)
1143 if p.get('ki'):
1144 self._scc.update_binary('af20', p['ki'], 1)
1145 if p.get('opc'):
1146 self._scc.update_binary('af20', p['opc'], 17)
Philipp Maier0ad5bcf2019-12-31 17:55:47 +01001147
1148 # update EF-USIM_AUTH_KEY in ADF.USIM
1149 self._scc.select_file(['3f00'])
1150 aid = self.read_aid()
Philipp Maierd9507862020-03-11 12:18:29 +01001151 if (aid):
1152 self._scc.select_adf(aid)
1153 if p.get('ki'):
1154 self._scc.update_binary('af20', p['ki'], 1)
1155 if p.get('opc'):
1156 self._scc.update_binary('af20', p['opc'], 17)
Philipp Maier0ad5bcf2019-12-31 17:55:47 +01001157
1158 return
1159
1160 def erase(self):
1161 return
1162
1163
Todd Neal9eeadfc2018-04-25 15:36:29 -05001164# In order for autodetection ...
Harald Weltee10394b2011-12-07 12:34:14 +01001165_cards_classes = [ FakeMagicSim, SuperSim, MagicSim, GrcardSim,
Alexander Chemerise0d9d882018-01-10 14:18:32 +09001166 SysmoSIMgr1, SysmoSIMgr2, SysmoUSIMgr1, SysmoUSIMSJS1,
Philipp Maier0ad5bcf2019-12-31 17:55:47 +01001167 FairwavesSIM, OpenCellsSim, WavemobileSim, SysmoISIMSJA2 ]
Alexander Chemeris8ad124a2018-01-10 14:17:55 +09001168
1169def card_autodetect(scc):
1170 for kls in _cards_classes:
1171 card = kls.autodetect(scc)
1172 if card is not None:
1173 card.reset()
1174 return card
1175 return None
Supreeth Herle4c306ab2020-03-18 11:38:00 +01001176
1177def card_detect(ctype, scc):
1178 # Detect type if needed
1179 card = None
1180 ctypes = dict([(kls.name, kls) for kls in _cards_classes])
1181
1182 if ctype in ("auto", "auto_once"):
1183 for kls in _cards_classes:
1184 card = kls.autodetect(scc)
1185 if card:
1186 print("Autodetected card type: %s" % card.name)
1187 card.reset()
1188 break
1189
1190 if card is None:
1191 print("Autodetection failed")
1192 return None
1193
1194 if ctype == "auto_once":
1195 ctype = card.name
1196
1197 elif ctype in ctypes:
1198 card = ctypes[ctype](scc)
1199
1200 else:
1201 raise ValueError("Unknown card type: %s" % ctype)
1202
1203 return card