EMV® Card Type Approval CPA Level 1 & Level 2 Card Images Requirements

v1.0o Test Cases & Test Environments
Contact Card

EMV® Card Type Approval CPA Level 1 and Level 2 Card Images Requirements Version 1.0.o September 2024

Legal Notice

Page i / iii The EMV® Specifications are provided “AS IS” without warranties of any kind, and EMVCo neither assumes nor accepts any liability for any errors or omissions contained in these Specifications. EMVCO DISCLAIMS ALL REPRESENTATIONS AND WARRANTIES, EXPRESS OR IMPLIED, INCLUDING WITHOUT LIMITATION IMPLIED WARRANTIES OF MERCHANTABILITY, FITNESS FOR A PARTICULAR PURPOSE, TITLE AND NONINFRINGEMENT, AS TO THESE SPECIFICATIONS. EMVCo makes no representations or warranties with respect to intellectual property rights of any third parties in or in relation to the Specifications. EMVCo undertakes no responsibility to determine whether any implementation of the EMV® Specifications may violate, infringe, or otherwise exercise the patent, copyright, trademark, trade secret, know-how, or other intellectual property rights of third parties, and thus any person who implements any part of the EMV® Specifications should consult an intellectual property attorney before any such implementation. Without limiting the foregoing, the Specifications may provide for the use of public key encryption and other technology, which may be the subject matter of patents in several countries. Any party seeking to implement these Specifications is solely responsible for determining whether its activities require a license to any such technology, including for patents on public key encryption technology. EMVCo shall not be liable under any theory for any party’s infringement of any intellectual property rights in connection with the EMV® Specifications.

/ iii Revision Log – Version 1.0.o The following changes have been made to the document since the publication of previous Version 1.0.m. Some of the numbering and cross references in this version have been updated to reflect changes introduced by the published bulletins. The numbering of existing requirements did not change, unless explicitly stated otherwise. Incorporated changes described in the following Specification Updates:

  • Reference to EMV® Integrated Circuit Card Specifications for Payment Systems Book 1, 2, 3 version 4.4 added to section 2
  • Cleaning of the Normative References table in section 2
  • Addition of Card Image A77 in section 4.4 to align with [N5]
  • Removal of equivalence of B4 with card image A17.1 in section 5.3
  • Addition of equivalence of B5 with card image A17.1 in section 5.3
  • Clarification/update of images B25, B78, B79, B80, B88, D08, D09, D10 in section 5.3
  • Removal of card image B89, D13 (A69.1) in section 5.3
  • Image D14 is used for A69.1 in section 5.3
  • addition of card images D11, D15, D16, D17, D18 to support EMV® Card Personalization Specification v2.0 in section 5.3
  • Update of tables in sections 6.1, 6.2, 7.1, 7.2, 7.3,
  • Example of ICS updated in Annex A to match the latest ICS form.
  • Creation of Annex B to describe the CCD ICS Options Applicable to a CPA Product Other editorial changes:
  • References to Specification Bulletins covered by EMV® Integrated Circuit Card Specifications for Payment Systems Book 1, 2, 3 version 4.4 removed 3. 3. 4. 4. 4. 4. 5. 5. 5. 6. 6. 7. 7. 7. / 173 1

Scope

The present document, 'EMV® Card Type Approval – CPA Level 1 and Level 2 Card Images Requirements’, describes the set of Card Images that a Product Provider needs to provide to a laboratory for CPA Level 1 & Level 2 Functional evaluation. This document describes sets of Card Images; each set depends on the options that the CPA application to be tested supports. In each set, the quantities of physical cards to be provided are listed by Card Images. The intended audience for this document is CPA Product Providers and Laboratories.

2 Normative References

/ 173 [N1] [N2] [N3] [N4] [N5] [N6] [N7] [N8] [N9] [N10] [N11] [N12] [N13] [N14] [N15] [N16] [N17] [N18] EMV Integrated Circuit Card Specification for Payment Version 4.4 – October Systems - Book1 - Application Independent ICC to 2022 Terminal Interface Requirements EMV Integrated Circuit Card Application Specification Version 4.4 – October for Payment Systems - Book2 - Security and Key 2022 Management EMV Integrated Circuit Card Terminal Specification for Version 4.4 – October Payment Systems - Book3 - Application Specification 2022 EMV Integrated Circuit Card Specification for Payment Version 1.0 Systems Common Payment Application Specification December 2005 EMVCo Card Type Approval - CCD Level 2 - Test Version 4.4.a – October Cases 2023 EMVCo Card Type Approval - CPA Level 2 - Test Version 1.0.o – August Cases 2023 EMVCo Card Type Approval - CPA Level 2 - Test Version 1.0.o – August Cases 2023 EMVCo Card Type Approval – Card Level 1 Electrical Version 4.3.c – and Protocol – Test Cases December 2021 EMV Card Personalisation Specification Version 2.0 August 2021 Specification Update – Bulletin n°56, CPA Corrections Second Edition, and Changes February 2007 Specification Update – Bulletin n°58, Editorial Errors in Fourth Edition, May Release 1.0 of the CPA Specification 2008 Specification Update – Bulletin n°60, CPA Logging Second Edition, Data Element Minimums February 2008 Specification Update – Bulletin n°61, CPA Additional First Edition, August Check Table Error Processing 2007 Specification Update – Bulletin n°62, CPA First Edition November Personalisation of Log Entry with EMV CPS 2007 Specification Update – Bulletin n°63, CPA Update of Third Edition, May 2008 VLP Available Funds Specification Update – Bulletin n°64, CPA Security First Edition, May 2008 Limits Status Indicators Specification Update – Bulletin n°65, CPA Last Online First Edition, May 2008 Transaction Not Completed Specification Update – Bulletin n°81, CPA Currency First Edition, February Accumulator Overflow 2010

/ 173 [N19] [N20] [N21] Specification Update – Bulletin n°90, CPA blocked 1st Edition, September Application response 2011 Specification Update – Bulletin n°165, AES in CPA First Edition, May 2015 Specification Update – Bulletin n°281, EMV® CPS First Edition, May 2023 DGIs for AES Key Personalisation

3 Notational Conventions

/ 173 3.1 Abbreviations

  • SDA: Static Data Authentication
  • DDA: Dynamic Data Authentication
  • CDA: Combined Dynamic Data Authentication
  • ENC PIN: enciphered offline PIN
  • PDOL: CCD application requesting PDOL in GPO
  • BEFORE: CCD application supporting the according script before the second GEN AC
  • AFTER: CCD application supporting the according script after the second GEN AC
  • ADD SCRIPT: Additional script command not described in EMV
  • SMC: Secure Messaging for Confidentiality
  • SMI: Secure Messaging for Integrity
  • PSE: CCD application supporting PSE
  • LOG: Log file supported
  • ONLINE CAPABLE DETECT: CCD application able to detect a terminal type ‘online capable’
  • OFFLINE ONLY DETECT: CCD application able to detect a terminal type ‘offline only’
  • MACx: Size of the MAC supported
  • NO: means the according option must not be supported.
  • ONLINE ONLY CRM: CCD application that can only go online and that cannot be set differently.
  • Multi app: Card supporting several CCD applications.
  • Odd key: CDA or DDA or Enciphered PIN options using odd key length
  • Different key: CDA and Enciphered PIN options may run with different keys in the same application
  • Same key: CDA and Enciphered PIN options may run with the same key in the same application
  • IAD: Issuer Authentication Data different then the CCD one.

3.2 Terminology CPA Application – An application loaded into an ICC compliant to [N1] to [N4] Specifications.

/ 173 4 Card Images for CCD Test Cases related to CPA Testing 4.1

Introduction

  • Not personalized (or not activated): This means that a particular CPA function (optional or not) must be not personalized for the purpose of a specific test. For example the CPA Application supports the DDA function (INTERNAL AUTHENTICATE command), but this function must not be personalized (no keys) or not activated (if the OS has function activation capabilities).
  • Profile Number N: Several card image must be personalized with the maximum number of profile supported (N). In case that the CPA application is able to support more then 99 profiles, Card images must be limited to 99 profiles.
  • When a card image has a variable value defined, such as N, the value is specific only to that card image.

4.2 Card Image A1 This the default Card Image used to perform the CCD level 2 test Cases related to the CPA testing: All data of the CPA application loaded in this Card Image must be consistent. Data described could either be a mandatory setting or up to the CPA application provider (in this case, a recommended setting is proposed). Some data are related to card options and: If the card option is supported, when it shall be fully and correctly personalized in the Card Image A1. We describe also in this section the minimum CPA internal data to react as a CCD application. Depending on the card application implementation, other CPA data may be mandatory and in this case need to be personalized accordingly. Data Accumulators Controls (Internal CPA data, template BF32) Value Recommended or Mandatory value (R or M) Template ‘BF32’ contains 1 tag (‘DF01’) R corresponding to the Accumulator 1: Currency Code1 (up to the implementer), Accumulator parameters = ’C0’ (‘Include ARQC Transaction in CRM Test’, ‘Include Offline Approvals’) ‘DF 01 03 xx xx C0’ where xx xx is the Accumulator Currency Code

/ 173 Accumulators Limits (Internal CPA data, template BF30) Accumulators Profile Controls (Internal CPA data: template BF31) AID of application 1 (CPA application) AID of application 2 AID of application 3 AID of application 4 AIP/AFL Entries (Internal CPA data, template BF41) Application Control (Internal CPA data) Application Primary Account Number ‘PAN) ‘DF 11 0C 99 99 99 99 99 99 99 99 99 99 99 99’ Template ‘BF31’ contains tag ‘DF01’ with the value: ‘E00F’ (‘allow accumulation’, ‘Reset Accumulator with online response’, ‘send Accumulator in IAD’, ‘Currency Conversion not allowed’, ‘use limit 0’) ‘DF 01 02 E0 0F’ An American Express AID, or a JCB AID, or a MasterCard AID, or a VISA AID shall be used once:

  • ‘A000000025 0000’,
  • ‘A000000003 901001’,
  • ‘A000000004 0000’
  • ‘A000000065 0000’ ‘A000000003 901002’ (application must be fully personalized, except static data such a certificates, SSDA, …) ‘A000000004 0001’ (application must be fully personalized, except static data such a certificates, SSDA, …) ‘A000000065 0001’ (application must be fully personalized, except static data such a certificates, SSDA, …) Template ‘BF41’ contains tag ‘DF01’ with the value: AIP AFL length AFL value AIP: Application Interchange Profile must be set according to the options supported (if DDA is supported, the byte 1 bit 6 shall be set to 1b, if CDA is supported the byte 1 bit 1 shall be set to 1b) AIP value: 01x1 100x 0000 0000 AFL length: up to the implementer AFL value: up to the implementer. ‘3x00DC00’ (where x = ‘F’ if Dynamic-RSA Implemeter-option is supported and x = ‘3’ if Dynamic-RSA Implemeter-option is not supported), log both offline and online transactions. The Issuer setting are in accordance with the CCD description below. ‘9761739001010010’ R R M M (if Multiple AID are supported) M (if 3 AIDs are supported) M (if 4 AIDs are supported) R R M Application Primary Account Number ‘PAN) Sequence Number Application currency code Application currency exponent Application Discretionary Data Application

Effective Date

Application Expiration Date Application File Locator (AFL) Application Interchange Profile Application Label Application Life Cycle Data (tag 9F7E) Application Preferred Name ‘00’ Based on the CPA application provider Based on the CPA application provider Based on the CPA application provider ’051231’ ’301231’ (31st December 2030) Based on the CPA application provider Application Interchange Profile must be set according to the options supported (and activated):

  • ’40 00’ for SDA,
  • ’50 00’ for SDA and Cardholder Verification (offline PIN in enciphered or clear text)
  • ’20 00’ for DDA,
  • ’30 00’ for DDA and Cardholder Verification (offline PIN in enciphered or clear text)
  • ’71 00’ for CDA, DDA, SDA and Cardholder Verification (offline PIN in enciphered or clear text)
  • … CCD Test Byte 1: 00=CPA SDA–only implementation, 01= CPA RSA-capable implementation. Bytes 2 to 8: Seven bytes representing the Identifier in the Application Life Cycle Data assigned by EMVCo should be the rightmost seven characters of the ICS Number. If the ICS Number is less than seven characters then the Identifier should be leftfilled with "FF" padding. Bytes 9 to 28: Padded with “FF” Bytes 29 to 48: At the discretion of the product provider. CCD / 173 R R M M M M R Application Priority Indicator Application Reference Currency Application Reference Currency Exponent Application Transaction Counter Application Usage Control Application Version Number Cardholder Name Card Risk Management Cardholder Verification Method (CVM) List CDOL1 CDOL2 Certification Authority Public Key Certification Authority Public Key Index ’01’ Based on the CPA application provider Based on the CPA application provider Any value ’FF 00’ Based on the CPA application provider ‘Image X’, where X is the image number
  • Issuer options should be set to allow the card to return the cryptogram type requested by the Test tool (AAC, ARQC or TC at 1st GENERATE AC and AAC or TC at 2nd GENERATE AC when an ARQC has been returned at 1st GENERATE AC).
  • Case of online only Card that cannot be configured as described above, the following CRM must be set: online at 1st GENERATE AC (ARQC is returned at 1st GENERATE AC when a TC is requested). For the 2nd GENERATE AC, the behavior is the same as above CVM List must be set according to the options supported:
  • ‘00000000 00000000 0100’ for Clear text PIN,
  • ’00000000 00000000 0103 0400’ for both PIN methods, ‘9F0206 9F0306 9F1A02 9505 5F2A02 9A03 9C01 9F3704 9F3501 9F3403’ ‘9108 8A02 9505 9F3704’ See section ‘CA Public keys and ICC Private keys values’, Key 1 ‘62’ / 173 R R M M R R R R R CIAC Entries (Internal CPA data; template BF34) Counters Controls (Internal CPA data; template BF37) Counters Limits (Internal CPA data; template BF35) Counters Profile Controls (Internal CPA data; template BF36) DDOL Directory Discretionary Template Dedicated File (DF) Name File Control Information (FCI) Template File Control Information (FCI) Issuer Discretionary Data GPO Parameters (Internal CPA data, template BF3E) Integrated Circuit Card (ICC) PIN Encipherment Public Key Certificate Template ‘BF34’ contains tag ‘DF01’ with the value: ‘DF 01 12 00 00 00 00 00 00 00 00 00 F8 00 00 FC 00 F8 00 00 00’ The Issuer setting are in accordance with the CCD description below. Template ‘BF37’ contains tag ‘DF01’ with the value: ’E0’ (‘Include ARQC Transaction in CRM Test’, ‘Include Offline Declines, ‘Include Offline Approvals’) ‘DF 01 01 E0’ Template ‘BF35’ contains tag ‘DF11’ with the value: ‘DF 11 02 FF FF’ Template ‘BF36’ contains tag ‘DF01’ with the value: ‘0E’ (‘Use Limit Set 0’, ‘allow counting’, ‘Reset Counter with online response’, ‘send Counter value in IAD’,) ‘DF 01 01 0E’ Unpredictable number ‘9F37’ Based on the CPA application provider Based on the CPA application provider Based on the CPA application provider Based on the CPA application provider Template ‘BF3E’ contains tag ‘DF01’ with the value: ‘DF 01 02 00 00’ Present if Dynamic RSA is supported (if another key is used then the recommended one, the CCD application provider must provide the ICC PIN Encipherment Public Key, as the certificate will be not coherent): ‘C1 9F 9A 3C 5F 05 C3 CE 90 20 B1 D5 A1 88 6F CE 2D A4 89 C6 8E 59 80 65 46 66 3C 8C D5 0F C5 B7 1C 94 A7 3F 43 39 C0 86 6F 7F 6F FB 6C 17 2E 2C B0 8E 98 00 2C 5E 1B 66 49 FC 6F E4 C9 0E 81 8A EB EC 7B D3 5F C9 0A 4C 6A 2B 74 CB 2E 51 46 9A FA E6 C3 AD C1 04 18 D3 E1 FF 14 4A 07 1C 68 2F 53 F7 BA CA 1B CF 72 1A 36 F2 A4 2D 27 99 DA E7 86 93 C7 50 37 FD E9 75 A7 E4 6C 9C 73 96 F2 F1’ / 173 R R R R R R R Integrated Circuit Card (ICC) PIN Encipherment Public Key Exponent Integrated Circuit Card (ICC) PIN Encipherment Public Key Remainder Integrated Circuit Card (ICC) PIN Encipherment Private Key Integrated Circuit Card (ICC) Public Key Certificate (512bits ICC key) Integrated Circuit Card (ICC) Public Key Exponent Integrated Circuit Card (ICC) Public Key Remainder Integrated Circuit Card (ICC) Private Key Issuer Application Data Issuer Action Code – Default Issuer Action Code – Denial Issuer Action Code – Online Issuer Code Table Index Present if Dynamic RSA is supported: ‘03’ Not present Present if Dynamic RSA is supported: See section ‘CA Public keys and ICC Private keys values’, Key 4 Present if Dynamic RSA is supported (if another key is used then the recommended one, the CPA application provider must provide the ICC Public Key, as the certificate will be not coherent): ‘BF 45 F8 74 E7 23 1E 7C 6D 49 92 54 92 AA A1 3C FD DB 8C 75 52 B0 A8 B2 E8 AE 25 E0 64 21 51 F8 8D DA CD 3C E4 7A C1 AF 28 82 BF 67 B1 44 17 AC 97 EA 00 2C 3E 2D B4 59 05 32 0D C1 85 C7 A1 9E 47 65 F6 BD F0 11 CC 21 E7 F9 BA 8C B3 1D A6 15 89 61 F0 A8 2F 22 13 7A F4 6E 7E C4 E0 14 00 58 0B AF 58 F3 49 E9 9E 4B 11 03 6D B0 FF 49 22 62 E4 6D 95 E6 C7 26 43 BB 39 EE F5 8E 9A 4E 6C 03’ Present if Dynamic RSA is supported: ‘03’ Not present Present if Dynamic RSA is supported: See section ‘CA Public keys and ICC Private keys values’, Key 3 Based on the CPA application provider ‘0000000000’ ‘0000000000’ ‘0000000000’ Based on the CPA application provider / 173 R R R R R R R R R R Issuer Country Code Issuer Public Key Certificate (1024 bits Issuer Key) Issuer Public Key Exponent Issuer Public Key Remainder Issuer specified Lower Limit for the cumulative amounts approved offline Issuer specified Lower Limit for the number of transactions approved offline Issuer specified Upper Limit for the cumulative amounts approved offline Issuer specified Upper Limit for the number of transactions approved offline Issuer Option: accept if unable to go online when Go Online on Next Transaction Was Set Issuer Option: accept if unable to go online when Last Online Transaction Not Completed Based on the CPA application provider ’38 06 C8 01 24 68 F1 E3 6C 89 C2 BE 0A B0 CC E4 EB 19 91 8E 1C EC FA 3B 9F DB B8 BA 14 16 E0 81 B1 77 16 CE 70 71 4A 2C 35 4E 79 0F FB 4C 25 7B C0 F6 64 0B E9 3E 43 A3 9B 44 B5 82 9D 4C C4 9D FC D3 C7 98 8C 28 58 50 3E 35 2B C9 69 BC 9A F8 8D 9E 90 27 09 9C 5B 62 3E BF 11 A1 99 54 94 16 96 01 E9 4D 68 5F CB 88 C2 76 C5 BE 9E BB 97 78 94 33 04 D6 57 33 B1 A7 DE 3B 20 A3 45 50 B1 D2 32 B4 3B 09 D1 83 F9 B2 02 20 21 10 16 C0 AA B5’ ‘03’ ‘8B 4E 84 02 F8 D0 21 45 60 6A 64 3F DC 52 14 76 AF 4E 50 6D’ This data object must be personalized in the default setting with the maximum value, else stated differently in the ‘Card Configuration’ field of a test Case. This data object must be personalized in the default setting with the maximum value, else stated differently in the ‘Card Configuration’ field of a test Case. This data object must be personalized in the default setting with the maximum value, else stated differently in the ‘Card Configuration’ field of a test Case. This data object must be personalized in the default setting with the maximum value, else stated differently in the ‘Card Configuration’ field of a test Case. The option ‘accept if an offline only terminal or the terminal is unable to go online when Go online on Next Transaction Was Set bit is set in CVR of the 1st GENERATE AC ’ must be personalized as set in the default setting else stated differently in the ‘Card Configuration’ field of a test Case. The option ‘accept if an offline only terminal or the terminal is unable to go online when Last online Transaction Not Completed bit is set in CVR of the 1st GENERATE AC’ must be personalized as set in the default setting else stated differently in the ‘Card Configuration’ field of a test Case. / 173 R R R M M M M M M Issuer Option: CSU created by proxy Issuer Option: force online and accept if unable to go online when Issuer Authentication is failed on the previous transaction Issuer Option: force online and accept if unable to go online when Issuer Authentication is not performed on the previous transaction Issuer Option: force online and accept if unable to go online when PIN Try Limit is exceeded Issuer Option: force online when Issuer Script Processing Failed Issuer Option: Issuer Authentication is required to be performed to reset non velocity – checking indicators and counts The option ‘Update Counter by CSU when created by Proxy’ must be personalized as set in the default setting else stated differently in the ‘Card Configuration’ field of a test Case. The option ‘Force to go online at online capable terminal and accept if an offline only terminal or the terminal is unable to go online when Issuer Authentication failed bit is set in CVR of the 1st GENERATE AC’ must be personalized as set in the default setting else stated differently in the ‘Card Configuration’ field of a test Case. The option ‘Force to go online at online capable terminal and accept if an offline only terminal or the terminal is unable to go online when Issuer Authentication not performed bit is set in CVR of the 1st GENERATE AC’ must be personalized as set in the default setting else stated differently in the ‘Card Configuration’ field of a test Case. The option ‘Force to go online at online capable terminal and accept if an offline only terminal or the terminal is unable to go online when PIN Try Limit Exceeded bit is set in CVR of the 1st GENERATE AC’ must be personalized as set in the default setting else stated differently in the ‘Card Configuration’ field of a test Case. The option ‘Force to go online at online capable terminal (and accept if an offline only terminal or the terminal is unable to go online) when Issuer Script Processing Failed bit is set in CVR of the 1st GENERATE AC’ must be personalized as set in the default setting else stated differently in the ‘Card Configuration’ field of a test Case. The option ‘Issuer Authentication is not required to pass for resetting non velocity-checking indicators and count’ must be personalized as not set in the default setting else stated differently in the ‘Card Configuration’ field of a test Case. / 173 M M M M M M Issuer Option: Issuer Authentication is required to be performed to reset velocity checking counters Issuer Option: Issuer Authentication required Issuer Option: Issuer Authentication to pass when performed Issuer Option: New card Issuer Options Profile Controls (Internal CPA data, template BF3B) Language Preference Last Online Application Transaction Counter (ATC) Register Log Entry The option ‘Issuer Authentication is not required to pass for resetting velocity-checking counters’ must be personalized as not set in the default setting else stated differently in the ‘Card Configuration’ field of a test Case. The option ‘Issuer Authentication is required to be performed for the application to approve (TC) an online transaction’ must be personalized as not set in the default setting else stated differently in the ‘Card Configuration’ field of a test Case. The option ‘Issuer Authentication required to pass when performed for the application to approve (TC) an online transaction’ must be personalized as not set in the default setting else stated differently in the ‘Card Configuration’ field of a test Case. The option ‘new card’ must be personalized as not set in the default setting else stated differently in the ‘Card Configuration’ field of a test Case. If Implementer option Cryptogram version is ‘5’ or (‘5’ and ‘6’), then Template ‘BF3B’ contains tag ‘DF01’ with the value: ‘802113A5010000’ (‘log transaction’, 1st GENERATE AC Command Data Length=’21’, 2nd GENERATE AC Command Data Length = ‘13’, Profile CCI=’A5’, Profile DKI=’01’) ‘DF 01 07 80 21 13 A5 01 00 00 If Implementer option Cryptogram version is ‘6’, then Template ‘BF3B’ contains tag ‘DF01’ with the value: ‘802113A6010000’ (‘log transaction’, 1st GENERATE AC Command Data Length=’21’, 2nd GENERATE AC Command Data Length = ‘13’, Profile CCI=’A6’, Profile DKI=’01’) ‘DF 01 07 80 21 13 A6 01 00 00 Based on the CPA application provider To be personalized if supported by the application When supported, this option must be fully personalized, else stated differently in the ‘Card Configuration’ field of a test Case. Note: Both online and offline transactions must be logged / 173 M M M M R M (when supported) / 173 Log Format When supported, this option must be fully R personalized (setting up to the CPA application provider), else stated differently in the ‘Card Configuration’ field of a test Case. ‘9F0206 5F2A02 9A03 9F5205 9F3602 9F2701’ Note: Both online and offline transactions must be logged Lower Consecutive Not present M Offline Limit Master Keys (MK)
  • If Implementer option ‘Cryptogram version is ‘5’ M or (‘5’ and ‘6’), only 3DES Master Keys shall be personalized
  • If Implementer option ‘Cryptogram version is ‘6’,
  • if AES keys of 16 bytes is supported, Master keys are personalized with a 16 bytes value
  • If AES keys of 16 bytes is not supported but 24 bytes is supported, Master keys are personalized with a 24 bytes value
  • If AES keys of 16 bytes and 24 bytes are not supported but 32 bytes is supported, Master keys are personalized with a 32 bytes value Payment System Environment (PSE) PDOL Personal Identification Number (PIN) Personal Identification Number (PIN) Try Counter Personal Identification Number Try Limit (PTL) Profile Controls (Internal CPA data, template BF3F) RID (used in the Issuer Public Key Certificate) Service Code When supported, this option must be fully personalized in the default setting, else stated differently in the ‘Card Configuration’ field of a test Case. PDOL empty 4 digits length, value ‘1234’ Value is equal to PTL 3 Template ‘BF3F’ contains tag ‘DF01’ with the value: ‘DF 01 08 11 11 F1 FF FF FF 00 00’ For simplification reasons, the RID used to calculate the Issuer Public Key Certificate is always: ‘F0 00 00 00 03’ Based on the CPA application provider M (when supported) R M M M R M / 173 Signed Static Data Authentication (SSDA) Static Data Authentication Tag List Track 1 Discretionary Data Track 2 Discretionary Data Track 2 Equivalent Data Upper Consecutive Offline Limit When supported, this option must be fully personalized in the default setting, else stated differently in the ‘Card Configuration’ field of a test Case: ’13 43 8D 9D 5E 97 A7 90 7B FF 9D 47 17 2A 56 59 FF 34 FB B2 50 B4 2C 7B C6 EF 94 64 D8 73 31 FE 9D 87 29 51 89 00 C4 C1 97 09 81 F7 E6 94 C4 70 DD C0 1E 38 E9 3E 40 F5 76 FF F3 CE 76 31 42 2A 75 E6 1B BA 39 7F C2 73 16 13 80 68 8B 1E AF BE 4E 1E 1F 9A 8C 90 3E D0 63 B7 20 B5 5E 13 A3 9D 51 E1 CF BB 90 3D C4 C3 D6 54 18 0F 57 3F 36 D2 A7 A4 78 DB B4 E7 F8 0F 24 E7 5D 34 5E 0A 30 85’ ‘82’ Based on the CPA application provider Based on the CPA application provider Based on the CPA application provider Not present R (when supported) R M Note: The data signed in offline CAM are the PAN and the PAN Sequence Number. / 173 4.3 CA Public keys and ICC Private keys values This section describes values of the CA Public keys and of the ICC and ICC PIN encipherment private keys values. 1/ 1152-bit CA Key Component Registered Application Provider Identifier (RID) Index Modulus Exponent Secure Hash Algorithm1 Hash Value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omponent CA Modulus (n) Length 144 ('90') CA Public Exponent (e) CA Prime 1 (p) 1 ('1') 72 ('48') CA Prime 2 (q) 72 Value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omponent Length ('48') CA Exponent 1 (d mod p-1) 72 ('48') CA Exponent 2 (d mod q-1) 72 ('48') CA Coefficient 72 ('48') Value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bit CA Key / 173 Component Registered Application Provider Identifier (RID) Index Modulus Exponent Secure Hash Algorithm1 Hash Value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omponent CA Modulus (n) CA Public Exponent (e) CA Prime 1 (p) CA Prime 2 (q) Length 176 ('B0') 1 ('1') 88 ('58') 88 ('58') Value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omponent Length CA Exponent 1 (d mod p-1) 88 ('58') CA Exponent 2 (d mod q-1) 88 ('58') CA Coefficient 88 ('58') Value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bit ICC Private Key / 173 Component ICC Modulus (n) ICC Public Exponent (e) ICC Private Exponent (d) ICC Prime 1 (p) ICC Prime 2 (q) ICC Exponent 1 (d mod p1) ICC Exponent 2 (d mod q1) ICC Coefficient Length 64 ('40') 1 ('1') 64 ('40') 32 ('20') 32 ('20') 32 ('20') 32 ('20') 32 ('20') Value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bit ICC PIN Encipherment Private Key / 173 Component ICC PIN Modulus (n) ICC PIN Public Exponent (e) ICC PIN Private Exponent (d) ICC PIN Prime 1 (p) ICC PIN Prime 2 (q) ICC PIN Exponent 1 (d mod p-1) ICC PIN Exponent 2 (d mod q-1) ICC PIN Coefficient Length 64 ('40') 1 ('1') 64 ('40') 32 ('20') 32 ('20') 32 ('20') 32 ('20') 32 ('20') Value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bit ICC Key / 173 Component ICC Modulus (n) ICC Public Exponent (e) ICC Private Exponent (d) ICC Prime 1 (p) ICC Prime 2 (q) ICC Exponent 1 (d mod p1) ICC Exponent 2 (d mod q1) ICC Coefficient Length 144 ('90') 1 ('1') 144 ('90') 72 ('48') 72 ('48') 72 ('48') 72 ('48') 72 ('48') Value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omponent Length Value FE EE 3F 67 30 2A 48 2D / 173 6/ 1152-bit ICC PIN Encipherment Key Component ICC PIN Modulus (n) Length 144 ('90') ICC PIN Public Exponent (e) ICC PIN Private Exponent (d) 1 ('1') 144 ('90') ICC PIN Prime 1 (p) 72 ('48') ICC PIN Prime 2 (q) 72 ('48') ICC PIN Exponent 1 (d mod p-1) 72 ('48') ICC PIN Exponent 2 (d mod q-1) 72 ('48') Value EA 82 3B 65 F2 1B 04 89 62 F3 59 1E C2 12 53 E8 41 2A 0E 2D FE 14 30 82 15 00 34 A4 8C 0D 10 B8 EA 12 1B A3 6F 4F FE 2C 23 CF 28 B2 CF 7D FD D4 22 35 E8 7C 19 A1 2F 59 8A CC BF 8C 4A 2D 95 35 A5 F6 68 0D C7 AB 0C A6 26 A7 C8 49 8B A8 C6 01 6D 7E 08 A1 4C 2D 7F FA C0 39 44 F1 16 71 38 81 00 EA D1 BF DF 43 5A 14 DD A5 07 0A D8 6F D3 74 D0 1D F9 AE 54 A9 51 68 D8 2D E3 C2 C2 05 33 3E 41 3C CA 68 B1 7D E5 91 DD 95 89 95 E8 5C F2 25 03 9C 56 D2 43 F6 BC AD B0 EC A2 3B 69 D6 B6 E2 9A D6 1C 09 73 FE B8 20 56 B8 AA CD C3 08 08 B5 D0 9C 0C 12 6C F4 DF FE C8 17 DF 70 77 34 FE A9 38 16 CE 9A FD 66 6B 74 E6 5C 88 7F B2 DC 1E 63 79 19 4E F0 09 2F C7 5D C2 D3 00 16 DC 4D 13 B4 C3 10 C0 06 21 80 D5 65 09 09 82 DF 33 3C B3 DB 7F 52 14 9B DE EF 9A 99 3B 7A DC 46 79 74 A1 35 C3 BB 39 B6 DE C8 DA D3 4C 9B 20 A7 1D 48 BB 15 EB 67 58 10 DB 2E 12 F6 54 65 C6 F8 5F 60 E5 20 6B FA 6F B9 A3 7C B0 32 A3 D7 75 95 78 14 70 90 8C BD A1 36 BD D5 2C 04 01 42 6F 7F ED 13 11 2C A3 45 4E 23 31 A4 42 4A 84 4C 99 B6 BA F3 3F 03 10 5F 5D 90 4C 8C 89 A3 16 B0 D5 A2 88 2A 36 E5 39 4C DB A7 6B 59 1E 92 39 EF B7 EC 5B 9B 5B 04 38 FC E8 69 F6 F6 7C D7 E0 74 53 BF 66 66 37 6B 40 C3 5C 68 04 64 CA 47 98 60 0C 7A 23 05 3B B8 4A EA AD B0 A5 34 22 11 65 90 1F 58 CA 48 62 EF 46 75 63 0E 97 C2 2A 8E D9 F8 0F 6D 9B 7D E6 AF 4D A6 F5 26 6C FD CA CC 6D 3A 4E 63 A5 62 F5 B5 B3 29 16 24 7E 8E 1D 58 00 D6 F4 FF F3 62 0B 73 17 83 89 6C CB C2 D6 DC 58 33 11 24 7C A2 2A 02 0A EA 3E 60 33 08 5B C2 0F 20 8E 6C 5A C6 CF 43 7B 88 92 6F 9C E6 14 61 7B 9F CF F2 E7 BC E7 58 25 FD F0 46 A4 A4 53 3A 95 A2 E2 7F 99 99 7A 47 80 82 3D 9A AD 98 86 DA 65 95 5D A6 C2 03 7D 25 87 47 1E 75 C3 78 16 B6 43 B5 6A 3B 31 85 97 4A 2E F8 EC B4 65 2C 1C 5F 3B FA B4 F3 BC FE 99 CA 33 / 173 Component ICC PIN Coefficient Length 72 ('48') Value 8F 39 27 64 51 DC CB 2F 97 AA 15 45 A2 F0 36 0E 1E 3F 2C 34 01 A5 01 10 61 1F B6 E1 08 18 3C 5D 76 A7 99 E0 A9 1F 67 B7 1A BB 4E 29 DB 85 ED 35 57 C5 A3 B3 C8 D0 08 68 6D DB 87 9A 29 35 A2 46 9C 9E 42 65 78 90 D2 CF 7/ 1024-bit ICC Key Component ICC Modulus (n) ICC Public Exponent (e) ICC Private Exponent (d) ICC Prime 1 (p) ICC Prime 2 (q) ICC Exponent 1 (d mod p1) ICC Exponent 2 (d mod q1) Length 128 ('80') 1 ('1') 128 ('80') 64 ('40') 64 ('40') 64 ('40') 64 ('40') Value E0 EF 4E F8 4E C2 CC A5 C9 84 3E 2E 02 F3 12 B7 68 E8 5C 98 64 69 4D 87 D8 28 D4 98 24 71 97 38 43 07 B5 D5 CB 2E CE C3 5A FB 3B 57 E4 F3 A2 71 5A 0C 1E B8 D3 D7 1A 3C 9E EE 93 C3 DA AF 48 1A 6D A0 12 4D 79 72 75 8D 71 1A 5F 40 1A 48 50 EA 87 E6 E6 8F 6B C8 B6 B1 80 E2 D9 38 B9 B2 FC F6 EA DB A7 E2 FA 01 5C CA EA 65 8A 31 86 6B 7D 1C 72 A0 B0 B2 D7 A5 BB 5B B6 ED 2D 57 16 E2 2A 9B 03 95 F4 DF 50 34 81 DD C3 DB AD 7E C9 57 4C B7 24 F0 9A E8 65 98 46 33 AF E5 70 8D BA C2 F6 64 D0 2C AF CE 8E 87 74 89 D7 91 FC D2 3A 98 A2 6C 4B 91 5D 69 D0 8D 3A 11 7D BF 49 B7 D7 E7 1F 85 65 B3 9F 22 2A D4 21 17 93 1A F1 78 D5 2E 4A 13 00 9C 7D BD B6 F5 52 23 7C 6A EC 85 7C 09 2B CA 48 27 BE 7D E7 1D F1 17 08 1F AA FE 44 9E 7C FA A5 04 93 EF 9C 54 D9 34 99 61 59 0A B3 E2 C6 F9 FB F8 08 67 4C 89 7A 20 C2 BD 0D FF 81 36 0C 3F 3A C8 48 8B 93 25 B9 B5 D0 1D 24 95 79 A5 79 88 2E 0E B2 3C C3 7D 24 68 5C E4 C1 F9 2E 51 24 AC CD 50 06 00 F5 2A 40 64 BE 49 1D 8B FC F4 46 CD 45 E8 28 F7 C0 B1 C6 B1 6E 0B A2 2A 7F 1E CC F5 2E D4 E1 BE 69 D6 13 CB A6 C3 5B 7B 85 06 77 C5 5C A0 8B AE 44 CF F3 51 E1 D6 23 13 9C 47 8B 58 57 9B BC C8 53 2E 1F 87 B7 5B CA 11 4C 4E 70 E6 5F A5 5A EF 88 5B A6 C0 81 D3 5E AA 56 24 08 2A 27 30 30 5D 0C C3 D1 23 E0 13 6D B8 FB C3 A6 5A C9 5F 21 7D D7 A8 C2 F0 3D ED D6 A6 1E E0 C3 1D DE 35 59 55 F8 C6 D5 98 7E DB 69 07 FD F8 2F 33 83 9A C5 FA 80 76 84 76 49 5D 16 C6 FF 69 DD F8 C9 E3 41 29 9B E4 0D 32 6F 2C E7 A7 AE 04 4F D8 E8 6B 07 C9 83 35 4C E1 41 39 6C B7 BD 85 07 90 3A 67 D3 30 37 74 15 05 24 E7 DC 0B 88 34 4B 44 3F / 173 Component ICC Coefficient Length 64 ('40') Value 9F 44 D8 9D 91 A0 E0 4E F0 93 77 DC D2 5E 76 AA 39 58 E1 C1 99 AC D0 36 0D 15 96 D7 B8 97 5C 69 C0 02 D2 46 DF 29 3F 24 CF 8F D4 83 53 2C 5A CE 61 A8 26 4F 59 04 10 3C 51 61 3A E5 A6 7A B4 B7 8/ 1024-bit ICC PIN Encipherment Key / 173 Component ICC PIN Modulus (n) Length 128 ('80') ICC PIN Public Exponent (e) ICC PIN Private Exponent (d) 1 ('1') 144 ('90') ICC PIN Prime 1 (p) 64 ('40') ICC PIN Prime 2 (q) 64 ('40') ICC PIN Exponent 1 (d mod p-1) 64 ('40') ICC PIN Exponent 2 (d mod q-1) 64 ('40') ICC PIN Coefficient 64 ('40') Value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bit ICC Key / 173 Component ICC Modulus (n) ICC Public Exponent (e) ICC Private Exponent (d) ICC Prime 1 (p) ICC Prime 2 (q) ICC Exponent 1 (d mod p1) ICC Exponent 2 (d mod q1) ICC Coefficient Length 96 ('60') 1 ('1') 96 ('60') 48 ('30') 48 ('30') 48 ('30') 48 ('30') 48 ('30') Value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bit ICC PIN Encipherment Key / 173 Component ICC PIN Modulus (n) ICC PIN Public Exponent (e) ICC PIN Private Exponent (d) ICC PIN Prime 1 (p) ICC PIN Prime 2 (q) ICC PIN Exponent 1 (d mod p-1) ICC PIN Exponent 2 (d mod q-1) ICC PIN Coefficient Length 96 ('60') 1 ('1') 96 ('60') 48 ('30') 48 ('30') 48 ('30') 48 ('30') 48 ('30') Value C8 BC 15 10 B2 A9 7B 12 3D 6A 38 F7 6E 11 AA 0F 7C E2 DB 93 FD FA B8 E6 A9 46 89 D6 D3 AD 11 A9 6E B5 F3 7C 86 ED 60 26 A2 B6 EE CD 48 A7 41 4E 28 AA 69 50 ED 99 6E 29 81 56 EF 29 75 74 DD 2A D9 29 26 0B 7C E5 29 56 5B DA AE 1F 18 BE A8 49 EA 58 50 5D D2 68 5D 94 CA EB ED 46 47 B0 88 3B 03 85 D2 B8 B5 CC 70 FC B6 D3 9C 25 FA 49 61 1C 0A 53 41 E7 B7 FE A7 25 EF 1B 84 5B E4 8D 1E 0B C6 49 CE A2 53 04 9E 40 19 C1 CF 49 DE 30 6F 80 DD 97 51 17 95 A9 88 F5 73 39 46 42 1C 7D 22 D9 A4 EB F3 10 AB 2E 8B 70 BD 71 2F C5 65 1D 25 DE E3 C5 BA 97 3A 9B BC 4F D0 C6 BF 6E CF EA 16 11 BB EB 40 C3 5C 68 04 64 CA 47 98 60 0C 7A 23 05 3B B8 4A EA AD B0 A5 34 22 11 65 90 1F 58 CA 48 62 EF 46 75 63 0E 97 C2 2A 8E D9 F8 0F 6D 9B 80 D5 DA 70 02 94 07 47 99 32 63 D5 2B F2 3F 9D 91 77 BE F1 A2 5D 06 6E CC 18 20 AD 75 E8 14 3B 91 91 52 79 F8 22 DA 36 23 B1 11 F2 CE FE FA F3 EC CF 9C D5 D7 92 F0 02 ED DC 2F BA EA B2 FC 17 58 D2 7A DC 9C 73 CB 18 CD 6C 0B 99 0A BF 90 86 DA EC 9F 84 4E 42 09 BA 81 71 B4 91 50 0A 49 12 55 E3 91 A0 01 B8 04 DA 66 21 97 E3 72 A1 7F BE 60 FA 7F 4B C1 93 59 9F 32 BA C0 73 A3 F0 0D 7D 0B B6 36 FB FA C1 E6 CE C2 76 0B F7 34 A9 FC A2 9D DF CA 1A B8 39 2C 93 A5 FB 66 47 CB D8 8F E6 64 5D 03 DE 25 74 D8 7F 79 7B 68 72 5C B4 21 7C 35 E9 71 5A 81 E6 30 15 C9 A4 AB 2D 25 EF 8E 06 9F 2D 11/ 1000-bit ICC PIN Encipherment Key / 173 Component ICC Modulus (n) ICC Public Exponent (e) ICC Private Exponent (d) ICC Prime 1 (p) ICC Prime 2 (q) ICC Exponent 1 (d mod p1) ICC Exponent 2 (d mod q1) ICC Coefficient Length 125 ('7D') 3 ('03') 125 ('7D') 63 ('3F') 63 ('3F') 63 ('3F') 63 ('3F') 63 ('3F') Value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ther Card Images This section describes the other card images that are requested to run the CCD test cases related to the CPA testing, depending on the CPA ICS. Some Card images listed below can be replaced by CPA card images, see section 5.3 of this document to have the exhaustive list. Also CCD Card images A20, A27 and A27a do not exist for CPA testing and are replaced by other card image such as B32 (A27b). This is due to different Options type between CPA and CCD (A single Option ‘Dynamic RSA‘ instead of three CCD Options ‘DDA, CDA, Enciphered PIN’). Image Number A1 (A37.3) A3 A4c Differences from the default configurations None
  • PDOL which contains amount (tag 9F02):
  • GPO Parameters (Internal CPA data, template BF3E): ‘DF 01 02 06 00’ CPA application personalized with ICC Keys odd length 1000 bits:
  • CA Public Key Index (1408 bits): ‘63’ (for CA key see section ‘CA Public keys and ICC Private keys values’, Key 2)
  • When DDA or CDA or enciphered PIN (only when different keys from DDA or CDA are not supported) are supported:
  • ICC Public Key Certificate: 31 6E E3 1D 84 51 57 B8 43 16 7C 03 32 07 46 D9 48 E6 98 F3 D1 E2 85 B1 FD 26 EA 69 F2 D1 07 F6 E3 2C 4F 88 96 F3 03 FA 08 49 FE 90 9B A6 25 3D 02 D9 AA B6 6C 2D F9 98 43 9D A7 06 37 24 7B 39 3F AF 5B F5 D9 BB 5F 08 E1 B2 C3 3A 02 0E 56 D2 16 2F C3 29 D0 5C 9E B2 E5 D8 29 58 76 B6 20 1A DD 7D D6 D8 DD 07 F6 2C 2D 3C 3B 4F 44 29 DC 44 2E DB EA 90 66 1F 2B 7E 52 35 5F 67 80 A6 98 9F 9D E5 25 FA E5 F7 64 15 19 E0 FD 2B A5 D6 B4 82
  • ICC Public Key Exponent: ‘03’
  • ICC Public Key Remainder: ’87 4F 41 7F 50 36 22 0B 07 65 E6 35 B8 B5 13 0E A2 92 08 94 C7 06 69’
  • ICC Private Key: see section ‘CA Public keys and ICC Private keys values’, Key 11
  • When Enciphered PIN is supported (with different keys from DDA or CDA): same key value as previous one for the ICC PIN Encipherment Public key.
  • When DDA or CDA or Enciphered PIN are supported:
  • Issuer Public Key Certificate (1152 bits): 27 3C FA 41 30 C8 23 64 4D CD E9 C1 FD 5F 4D 11 4F 9C D2 8B C8 95 96 C8 03 D3 4C 68 CF 18 5A 11 3E 38 4F 04 BD 51 ED 85 26 47 7A 5D CE F3 FB 7D 93 50 2C BE 0B 96 48 AE E6 DE 5F 46 D4 F9 28 28 B4 5D C8 A8 63 BA A6 1F 51 1B 0A / 173 A5 A6 A7 A8 A11.5, A11.8, A11.16 A11.7, A11.11, A12 A14.x,…, A14.x (where x is the value of the SFI of the PSE in the range identified in the ICS) A18 A18a F3 5E D0 34 B4 CB 8B 4D EC 46 0B 50 3E 82 FF 43 5E 6C 0A 59 B7 10 A5 17 4D B9 A3 8B 27 E7 D0 6C A2 E6 37 D2 3C EA 0F B4 28 10 84 1F F3 B7 6F 72 9E 27 A6 15 13 37 B4 2F 44 63 99 E3 6C 0B 9B 17 15 E5 CC 60 3B BC 39 F3 03 EC 6B CB 83 A3 15 07 49 E0 1B 53 EB FF A3 0A 34 0B 2B 19 2C 50 C5 9D ED FB 7B FA FB’
  • Issuer Public Key Exponent: ‘03’ Issuer Public Key Remainder: ’10 07 7D 15’ Script commands with Mac Length = 5 Script commands with Mac Length = 6 Script commands with Mac Length = 7 Script commands with Mac Length = 8
  • Image A11.5: AID length is 5, value is: A000000004
  • Image A11.7: AID length is 7, value is: A0000000650000
  • Image A11.8: AID length is 8, value is: A000000003901001
  • Image A11.11: AID length is 11, value is: A000000004000000000000
  • Image A11.16: AID length is 16, value is: A0000000650000000000000000000000 N CPA applications using same partial DF name, where N is the maximum number of application declared in the ICS PSE personalized with:
  • the SFI of the PSE in the range [1, 10] (SFI=1 in 14.1, SFI=2 in 14.2,…) N different images, each for a value (x) declared in ICS. Values could be contiguous or not, e.g. 3,4,5,6 or 3, 5,7,…
  • Cards must be loaded with each record number declared in the ICS
  • CDA personalized: Issuer PK certificate, ICC PK certificate, computed using the CA, Issuer, and ICC Public key length maximum declared in the ICS
  • DDA not personalized (if supported) – Byte ‘ bit 6 of AIP (‘DDA supported’) = ‘0’
  • Enciphered PIN not personalized (if supported), and CVM list does not reference the Enciphered PIN
  • CDA personalized: Issuer PK certificate, ICC PK certificate, computed using the CA, Issuer, and ICC Public key length maximum declared in the ICS
  • DDA not personalized (if supported) – Byte ‘ bit 6 of AIP (‘DDA supported’) = ‘0’
  • Enciphered PIN personalized (if supported) and CVM list reference the Enciphered PIN / 173 A19 A19b A19c A23 A24 A26 A26a A28
  • DDA personalized: Issuer PK certificate, ICC PK certificate, computed using the CA, Issuer, and ICC Public key length maximum declared in the ICS
  • CDA not personalized (if supported) – Byte ‘ bit 1 of AIP (‘CDA supported’) = ‘0’
  • Enciphered PIN not personalized (if supported), and CVM list does not reference the Enciphered PIN
  • DDA personalized: Issuer PK certificate, ICC PK certificate, computed using the CA, Issuer, and ICC Public key length maximum declared in the ICS
  • CDA not personalized (if supported) – Byte ‘ bit 1 of AIP (‘CDA supported’) = ‘0’
  • Enciphered PIN personalized (if supported) and CVM list reference the Enciphered PIN
  • DDA not personalized (if supported), - Byte ‘ bit 6 of AIP (‘DDA supported’) = ‘0’
  • CDA not personalized (if supported) – Byte ‘ bit 1 of AIP (‘CDA supported’) = ‘0
  • Enciphered PIN personalized (Issuer PK certificate, ICC PK certificate, computed using the CA, Issuer, and ICC Public key or PIN Encipherment key length maximum declared in the ICS) and CVM list reference the Enciphered PIN
  • AFL including SFI in the range [11, 20]
  • AFL including SFI in the range [21, 30] ATC = minimum limit defined in the ICS (or 0) ATC = maximum value declared in the ICS -100
  • Card configuration which cumulates the transactions in a currency ‘X’ (international) in a single Transactions Counter, set the ‘Lower Offline Transaction Count Limit Exceeded’ after 3 offline transactions, set the ‘Upper Offline Transaction Count Limit exceeded’ after 5 offline transactions and does not set the bits with any other conditions specified by the Issuer.
  • Card configuration which cumulates the transactions in the currency ‘Y’ (domestic) in a single Cumulative Amount Counter, set the ‘Lower Cumulative Offline Amount Limit Exceeded’ when the Offline Cumulative Amount exceeds the value ‘300’, set the ‘Upper Cumulative Offline Amount Limit Exceeded’ when the Offline Cumulative Amount exceeds the value ‘500’ and does not set the bits with any other conditions specified by the Issuer
  • Card configuration shall not override this decline for transactions at Terminal Type ‘26’.
  • Accumulators Limits (Internal CPA data; template BF30): Template ‘BF30’ contains tag ‘DF11’ with the value: ‘DF 11 0C 00 00 00 00 03 00 00 00 00 00 05 00’ / 173
  • Counters Limits (Internal CPA data; template BF35): Template ‘BF35’ contains tag ‘DF11’ with the value: ‘DF 11 02 03 05’
  • Counters Controls (Internal CPA data; template BF37): Template ‘BF37’ contains tag ‘DF01’ with the value: ’B0’ (‘Include ARQC Transaction in CRM Test’, ‘Include only if not accumulated’, ‘Include Offline Approvals’), ‘DF 01 01 B0’ A29
  • Card configuration which cumulates the transactions in a currency ‘X’ (international) in a single Transactions Counter, set the ‘Lower Offline Transaction Count Limit Exceeded’ after 3 offline transactions, set the ‘Upper Offline Transaction Count Limit exceeded’ after 5 offline transactions and does not set the bits with any other conditions specified by the Issuer.
  • Card configuration which cumulates the transactions in the currency ‘Y’ (domestic) in a single Cumulative Amount Counter, set the ‘Lower Cumulative Offline Amount Limit Exceeded’ when the Offline Cumulative Amount exceeds the value ‘300’, set the ‘Upper Cumulative Offline Amount Limit Exceeded’ when the Offline Cumulative Amount exceeds the value ‘500’ and does not set the bits with any other conditions specified by the Issuer.
  • Card configuration shall override this decline for transactions at Terminal Type ‘26’.
  • The Card configuration does not require an Issuer authentication to pass for resetting the velocity-checking offline transaction count(s) and cumulative offline amount(s).
  • The CPA application shall use the ‘Update Counters’ option ‘No Update of Offline Counters’ to update the velocity-checking count(s) and cumulative amount(s), if the ‘CSU Created by Proxy for the Issuer’ bit in the CSU is set to 1.
  • Card with the Issuer option set: when ‘Issuer Authentication Not Performed' bit is set in CVR, the Card configuration shall not force transactions at online-capable terminals to go online.
  • Card with the Issuer option set: when ‘Issuer Authentication Failed’ bit is set in CVR, the Card configuration shall not force transactions at online-capable terminals to go online.
  • Application Control (Internal CPA data): ‘2F80DC00’ (if Enciphered PIN offline supported), log both offline and online transactions. The Issuer settings are in accordance with the CCD description above
  • Accumulators Limits (Internal CPA data; template BF30): Template ‘BF30’ contains tag ‘DF11’ with the value: ‘DF 11 0C 00 00 00 00 03 00 00 00 00 00 05 00’
  • CIAC Entries (Internal CPA data; template BF34): Template ‘BF34’ contains tag ‘DF01’ with the value: ‘DF 01 12 00 00 00 00 00 00 00 00 00 F8 00 00 E4 00 F8 00 00 00’
  • Counters Limits (Internal CPA data; template BF35): Template ‘BF35’ contains tag ‘DF11’ with the value: ‘DF 11 02 03 05’ © 2010-2024 EMVCo, LLC. All rights reserved. Reproduction, distribution and other use of this document is permitted only pursuant to the applicable agreem

Shown in part. Read the original for the full text.