MF2DL(H)x0
MIFARE DESFire Light contactless application IC
Rev. 3.3 — 5 April 2019
Product data sheet
430733
COMPANY PUBLIC
1 General description
1.1 Introduction
MIFARE DESFire Light (MF2DL(H)x0) is a versatile contactless smart card platform
serving the requirements of applications managed by one single entity. Offering a
powerful mix between performance, security, privacy and flexibility. It addresses the
needs of limited use and simple extended use applications. Based on these parameters
MIFARE DESFire Light is a trusted platform targeting the secure authentication of people
with an intuitive convenient user experience.
MIFARE DESFire Light is fully compliant with the contactless proximity smart card
protocol according to ISO/IEC 14443-4 and ISO/IEC 7816-4 communication frames
making it compatible with the majority of existing contactless infrastructure devices and
with NFC devices, such as NFC enabled mobile handsets. Its contactless performance
supports superior user convenience and reading distances up to 10 cm.
MIFARE DESFire Light has a file-based memory structure compliant to ISO/IEC 7816-4
with a fixed, pre-defined configuration of six individual files (EF). The pre-defined
configuration enables various use cases and allows the management of data according
to best practice. Organized in one single directory (DF) and configurable access rights
per file it enables different use cases of one issuing instance. MIFARE DESFire Light
offers three individual standard data files with totally 544 bytes of memory for storage of
application-specific data. The value file with a stored signed integer value and an upper
and lower limit enables fast, flexible and secure implementation of monetary transactions,
e.g. for micropayment applications. The cyclic record file with 4 entries of 16 bytes each
enables an on-card logging of transactions.
As a contactless platform, MIFARE DESFire Light includes a powerful transaction
management. This transaction management ensures data and transaction consistency
supporting applications with the avoidance of disrupted or incomplete transactions. The
optional Transaction Message Authentication (TMAC) further enables operators of, e.g.,
payment applications with a cryptographic checksum over the complete transaction
enabling the verification of a transaction by a clearing entity.
MIFARE DESFire Light offers AES-based security features for authentication and data
transfer over the contactless interface. The required level of security is defined by the
needs of the application and can be done on a file basis. With 5 customer defined keys,
MIFARE DESFire Light supports a key management addressing the organizational and
security needs of the issuing entity.
Beside the standard AES implementation, MIFARE DESFire Light offers an alternative
AES-based protocol for authentication and secure messaging using a Leakage Resilient
Primitive, LRP. The LRP works as a wrapper around the AES cryptography and
enhances side-channel and fault resistance.