SB nº SU-33 : Clarification of Terminate in the EMV® Specification (Spec Change)

v1.0 Specification Bulletins

Specification Update Bulletin No. 33 First Edition: April 2004 This Bulletin has immediate effect Products will be tested against the requirements of this bulletin commencing 1st October 2004 This specification update applies to EMV 2000 Integrated Circuit Card Specifications for Payment Systems Version 4.0. Clarification of 'Terminate' in the EMV Specification To assure that terminals perform the correct processing when the EMV specification says to 'terminate,' this specification update clarifies the terms 'terminate card session', 'terminate transaction', and 'terminate processing'. Terminate Card Session 'Terminate card session' is used when the terminal receives a bad ATR, finds incorrectly formatted data in a file, encounters a blocked card, or does not find any mutually supported applications. When this term is used, the terminal shall discontinue all communication with the card. Please add the following definition to the end of EMV 2000 Integrated Circuit Card Specifications for Payment Systems Version 4.0 Book 1 Section 4 Abbreviations, Notations, and Terminology below "The following terminology is used:" terminate card session End the card session by deactivating the IFD contacts according to Section 2.1.5 of this book, and displaying a message indicating that the ICC cannot be used to complete the transaction Terminate Transaction 'Terminate transaction' is used for errors during application processing such as missing mandatory card data, redundant card data, service not allowed, and an invalid status word received in a command response. When this term is used, the terminal shall terminate the current application and deactivate the card.. This document contains proprietary and confidential information of EMVCo LLC. Copyright © EMVCo LLC 2004

Please make the following change to EMV 2000 Integrated Circuit Card Specifications for Payment Systems Version 4.0 Book 3 Section 4 Abbreviations and Notations and to EMV 2000 Integrated Circuit Card Specifications for Payment Systems Version 4.0 Book 3 Section 4 Abbreviations, Notations, and Terminology: Add the following definition below "The following terminology is used:" Terminate transaction Stop the current application and deactivate the card Terminate Processing 'Terminate processing' has the same meaning as 'terminate transaction.' To avoid confusion, this term is being replaced by 'terminate transaction' in the specifications. One of the examples of where this action shall be taken is being deleted because the specification already provides a different action for this condition. Please make the following changes to EMV 2000 Integrated Circuit Card Specifications for Payment Systems Version 4.0 Book 3 Section 3.4 Erroneous or Missing Data in the ICC: In the paragraph below Table II-7, change 'the terminal shall terminate processing' to 'the terminal shall terminate the transaction unless otherwise specified in the Application Specification.' In the list below this paragraph, delete item IV 'CVM Lists with no Cardholder Verification Rules' and renumber the following items in the list. Terminate a Specific Process When 'terminate' is used with a specific transaction process such as 'terminate cardholder verification,' the individual process is considered to have failed, but transaction processing continues with the next step in the transaction. For example Book 3 Section 6.5 says that during cardholder verification 'if the CVM List is not present in the ICC, the terminal shall terminate cardholder verification.' This means that cardholder verification is stopped, but the terminal proceeds with processing the transaction. Book 3 Section 6.10 says that 'If SW1 indicates an 'error' condition; the processing of the Issuer Script shall be terminated.' This means that processing of commands in the current issuer script is discontinued but processing of the transaction including processing of any remaining issuer scripts continues. Fallback to Magnetic Stripe Read Allowing fallback to magnetic stripe after a transaction is terminated is determined by payment system rules and is outside the scope of EMV This document contains proprietary and confidential information of EMVCo LLC. Copyright © EMVCo LLC 2004

In EMV 2000 Integrated Circuit Card Specifications for Payment Systems Version 4.0 Book 4, please add the following paragraph to the end of Section 2.6.2 Exception Handling: Payment system rules determine whether fallback to magnetic stripe is allowed after the failure of an ICC-read transaction. This behaviour is outside the scope of EMV. This document contains proprietary and confidential information of EMVCo LLC. Copyright © EMVCo LLC 2004