MF3D(H)x2
MIFARE DESFire EV2 contactless multi-application IC
Rev. 3.1 — 17 May 2018 Product short data sheet
364231 COMPANY PUBLIC
1 General description
1.1 Introduction
MIFARE DESFire EV2 contactless IC (MF3D(H)x2) is the latest addition to the MIFARE
DESFire product family introducing new features along with enhanced performance for
best user experience. The MIFARE DESFire EV2 is Common Criteria EAL5+ security
certified which is the same security certification level as demanded for smart card IC
products used e.g. for banking cards or electronic passports. It fully complies with
the requirements for fast and highly secure data transmission and flexible application
management. This makes it the ideal product for service providers and service operators
who want to offer an easy, convenient and secure access to a wide variety of different
services.
MIFARE DESFire EV2 offers best flexibility when creating multi-application schemes and
features such as MIsmartApp with multiple key sets and Transaction MAC are supporting
new business models. Smart Cities services for example could be utilized with only one
MIFARE DESFire EV2 card by combining services such as public transportation, car
or bike sharing, access to city attractions with citizen services, closed-loop e-payment
applications and local loyalty programs.
MIFARE DESFire EV2 is based on global open standards for both air interface and
cryptographic methods. It is compliant to all levels of ISO/IEC 14443A and supports
optional ISO/IEC 7816-4 commands (APDU and file structure supported) and is fully
interoperable with existing NFC readers for MIFARE products.
Featuring an on-chip backup management system and the mutual three pass
authentication, a MIFARE DESFire EV2 card
1
can hold as many applications as the
memory can accommodate. Each application can hold up to 32 files with various data
configurations. The size of each file is defined at the moment of its creation, making
MIFARE DESFire EV2 a truly flexible and convenient product. An automatic anti-tear
mechanism is available for all file types, guaranteeing transaction oriented data integrity.
The main characteristics of this device are denoted by its name "DESFire": DES
indicates the high level of security using a 3DES or AES hardware cryptographic engine
for confidentiality and integrity protection of the transmission data. Fire indicates its
outstanding position as a Fast, Innovative, Reliable and sEcure IC in the contactless
proximity transaction market.
MIFARE DESFire EV2 delivers the perfect balance of speed, performance and cost
efficiency. Its open concept allows seamless future integration of other ticketing media
such as smart paper tickets, banking convergence card, and mobile ticketing based on
Near Field Communication (NFC) technology. It is also fully compatible with the existing
1 In this document the term „MIFARE DESFire card“ refers to a MIFARE DESFire IC-based contactless
card.
NXP Semiconductors
MF3D(H)x2
MIFARE DESFire EV2 contactless multi-application IC
MF3Dx2_MF3DHx2_SDS All information provided in this document is subject to legal disclaimers. © NXP B.V. 2018. All rights reserved.
Product short data sheet Rev. 3.1 — 17 May 2018
COMPANY PUBLIC 364231 2 / 27
reader hardware platform of MIFARE products. MIFARE DESFire EV2 is your ticket to
secure contactless systems worldwide.
1.2 Evolution of MIFARE DESFire products family
MIFARE DESFire has evolved over time, enhancing its security properties to protect
against current and future security threats, and adding new features to better suit into
new user requirements.
MIFARE DESFire EV2 is the third generation of the MIFARE DESFire products family
succeeding MIFARE DESFire EV1 Contactless IC. It is functionally backward compatible
with both MIFARE DESFire EV1 and MIFARE DESFire D40 (MF3ICD40).
Figure 1 shows the relationship between the three generations of MIFARE DESFire
products. The latest generation encompasses the features from the older generation(s).
Therefore, allowing existing users of the older products to adopt the latest product with
minimum or no changes to their infrastructures.
MIFARE DESFire EV2 can be used as a MIFARE DESFire EV1 in its default delivery
configuration. Every new features would required an activation and/or the use of new
commands.
aaa-022074
CC EAL5+ on HW and SW
2 KB, 4 KB or 8 KB EEPROM
Unlimited Applications, 32 files
6 file types - new Transaction MAC file
17 pF or 70 pF
CC EAL4+ on HW and SW
2 KB, 4 KB or 8 KB EEPROM
28 Applications, 32 files
5 file types
17 pF or 70 pF
Secure messaging (EV2):
AES128
Improved ISO7816-4 APDU and cmds
Configurable ATS with FSCI setting
up to 128 bytes transfer buffer
MIsmartApp
Transaction MAC
Multiple Key Sets
Multiple keys per access rights
Shared application management
Update Record command
Virtual Card Architecture
Proximity Check
Originality Check
4 KB EEPROM
28 Applications, 16 files
5 file types
17 pF
Secure messaging (D40):
2KTDEA and Single DES
ISO7816-4 APDU and cmds (3)
Automatic backup mechanism
1 PICC key, 14 keys per App
Higher baudrate (up to 848 kbps)
Secure messaging (EV1):
2KTDEA and 3KTDEA and AES128
Random ID
ISO7816-4 APDU and cmds (8)
ISO7816-4 file structure support
Configurable ATS
Figure 1. Evolution of MIFARE DESFire
NXP Semiconductors
MF3D(H)x2
MIFARE DESFire EV2 contactless multi-application IC
MF3Dx2_MF3DHx2_SDS All information provided in this document is subject to legal disclaimers. © NXP B.V. 2018. All rights reserved.
Product short data sheet Rev. 3.1 — 17 May 2018
COMPANY PUBLIC 364231 3 / 27
2 Features and benefits
2.1 Features overview
2.1.1 RF interface: ISO/IEC 14443 Type A
Contactless interface compliant with ISO/IEC 14443-2/3 A
Low Hmin enabling operating distance up to 100 mm (depending on power provided by
the PCD and antenna geometry)
Fast data transfer: 106 kbit/s, 212 kbit/s, 424 kbit/s, 848 kbit/s
7 bytes unique identifier (option for Random ID)
Uses ISO/IEC 14443-4 transmission protocol
Configurable FSCI to support up to 128 bytes frame size (new)
2.1.2 Non-volatile memory
2 kB, 4 kB or 8 kB EEPROM
Data retention of 25 years
Write endurance typical 500 000 cycles
Fast programming cycles (erase/write) 1 ms
2.1.3 NV-memory organization
Flexible file system: user can freely define application structures on PICC
Virtually no limitation on number of applications per PICC (new)
Up to 32 files in each application (6 file types available: Standard Data file, Back-up
Data file, Value file, Linear Record file, Cyclic Record file and Transaction MAC file)
File size is determined during creation (not for Transaction MAC file)
2.1.4 Security
Common Criteria certification: EAL5+ (Hardware and Software)
Unique 7 bytes serial number for each device
Optional "RANDOM" ID for enhance security and privacy
Mutual three pass authentication
Mutual authentication according to ISO/IEC 7816-4
Flexible key management: 1 card master key and up to 14 keys per application
Hardware DES using 56/112/168 bit keys featuring key version
Hardware AES using 128-bit keys featuring key version
Data authenticity by 8 byte CMAC
Data encryption on RF-channel
Authentication on application level
Hardware exception sensors
Self-securing file system
Backward compatibility to MF3ICD40: 4 byte MAC, CRC 16

MF3D2201DUF/00V

Mfr. #:
Manufacturer:
NXP Semiconductors
Description:
RFID Transponders MIFARE DESFire EV2 contactless multi-application IC
Lifecycle:
New from this manufacturer.
Delivery:
DHL FedEx Ups TNT EMS
Payment:
T/T Paypal Visa MoneyGram Western Union