]> cvs.zerfleddert.de Git - proxmark3-svn/blame - armsrc/apps.h
ADD: HF MFU SETUID, this commands helps changing the UID on a magic UL, UL-C...
[proxmark3-svn] / armsrc / apps.h
CommitLineData
15c4dc5a 1//-----------------------------------------------------------------------------
15c4dc5a 2// Jonathan Westhues, Aug 2005
cee5a30d 3// Gerhard de Koning Gans, April 2008, May 2011
bd20f8f4 4//
5// This code is licensed to you under the terms of the GNU GPL, version 2 or,
6// at your option, any later version. See the LICENSE.txt file for the text of
7// the license.
8//-----------------------------------------------------------------------------
9// Definitions internal to the app source.
15c4dc5a 10//-----------------------------------------------------------------------------
11
12#ifndef __APPS_H
13#define __APPS_H
14
f7e3ed82 15#include <stdint.h>
16#include <stddef.h>
f38a1528 17#include <stdlib.h>
f6c18637 18#include <sys/types.h>
f38a1528 19#include <string.h>
20#include <strings.h>
f38a1528 21#include "../common/crc32.h"
add0504d 22#include "../common/lfdemod.h"
117d9ec2 23#include "BigBuf.h"
385f3987 24#include "../include/hitag2.h"
0ec548dc 25#include "../include/mifare.h"
0ec548dc 26//#include "des.h"
27//#include "aes.h"
28#include "desfire.h"
29
a501c82b 30
31extern const uint8_t OddByteParity[256];
1e262141 32extern int rsamples; // = 0;
33extern int tracing; // = TRUE;
34extern uint8_t trigger;
15c4dc5a 35
6c1e2d95 36// This may be used (sparingly) to declare a function to be copied to
37// and executed from RAM
38#define RAMFUNC __attribute((long_call, section(".ramfunc")))
39
15c4dc5a 40/// appmain.h
41void ReadMem(int addr);
42void __attribute__((noreturn)) AppMain(void);
43void SamyRun(void);
44//void DbpIntegers(int a, int b, int c);
45void DbpString(char *str);
46void Dbprintf(const char *fmt, ...);
d19929cb 47void Dbhexdump(int len, uint8_t *d, bool bAsci);
15c4dc5a 48
3b692427 49// ADC Vref = 3300mV, and an (10M+1M):1M voltage divider on the HF input can measure voltages up to 36300 mV
50#define MAX_ADC_HF_VOLTAGE 36300
51// ADC Vref = 3300mV, and an (10000k+240k):240k voltage divider on the LF input can measure voltages up to 140800 mV
52#define MAX_ADC_LF_VOLTAGE 140800
9ca155ba
M
53int AvgAdc(int ch);
54
15c4dc5a 55void ToSendStuffBit(int b);
56void ToSendReset(void);
57void ListenReaderField(int limit);
15c4dc5a 58extern int ToSendMax;
f7e3ed82 59extern uint8_t ToSend[];
15c4dc5a 60
61/// fpga.h
f7e3ed82 62void FpgaSendCommand(uint16_t cmd, uint16_t v);
63void FpgaWriteConfWord(uint8_t v);
7cc204bf 64void FpgaDownloadAndGo(int bitstream_version);
65int FpgaGatherBitstreamVersion();
15c4dc5a 66void FpgaGatherVersion(char *dst, int len);
67void FpgaSetupSsc(void);
68void SetupSpi(int mode);
d19929cb 69bool FpgaSetupSscDma(uint8_t *buf, int len);
70#define FpgaDisableSscDma(void) AT91C_BASE_PDC_SSC->PDC_PTCR = AT91C_PDC_RXTDIS;
71#define FpgaEnableSscDma(void) AT91C_BASE_PDC_SSC->PDC_PTCR = AT91C_PDC_RXTEN;
f7e3ed82 72void SetAdcMuxFor(uint32_t whichGpio);
15c4dc5a 73
74// Definitions for the FPGA commands.
7cc204bf 75#define FPGA_CMD_SET_CONFREG (1<<12)
76#define FPGA_CMD_SET_DIVISOR (2<<12)
3b2fee43 77#define FPGA_CMD_SET_USER_BYTE1 (3<<12)
15c4dc5a 78// Definitions for the FPGA configuration word.
7cc204bf 79// LF
b014c96d 80#define FPGA_MAJOR_MODE_LF_ADC (0<<5)
81#define FPGA_MAJOR_MODE_LF_EDGE_DETECT (1<<5)
7cc204bf 82#define FPGA_MAJOR_MODE_LF_PASSTHRU (2<<5)
83// HF
84#define FPGA_MAJOR_MODE_HF_READER_TX (0<<5)
85#define FPGA_MAJOR_MODE_HF_READER_RX_XCORR (1<<5)
86#define FPGA_MAJOR_MODE_HF_SIMULATOR (2<<5)
87#define FPGA_MAJOR_MODE_HF_ISO14443A (3<<5)
88// BOTH
89#define FPGA_MAJOR_MODE_OFF (7<<5)
b014c96d 90// Options for LF_ADC
91#define FPGA_LF_ADC_READER_FIELD (1<<0)
d19929cb 92// Options for LF_EDGE_DETECT
3b2fee43 93#define FPGA_CMD_SET_EDGE_DETECT_THRESHOLD FPGA_CMD_SET_USER_BYTE1
d19929cb 94#define FPGA_LF_EDGE_DETECT_READER_FIELD (1<<0)
3b2fee43 95#define FPGA_LF_EDGE_DETECT_TOGGLE_MODE (1<<1)
15c4dc5a 96// Options for the HF reader, tx to tag
97#define FPGA_HF_READER_TX_SHALLOW_MOD (1<<0)
98// Options for the HF reader, correlating against rx from tag
99#define FPGA_HF_READER_RX_XCORR_848_KHZ (1<<0)
100#define FPGA_HF_READER_RX_XCORR_SNOOP (1<<1)
7cc204bf 101#define FPGA_HF_READER_RX_XCORR_QUARTER_FREQ (1<<2)
15c4dc5a 102// Options for the HF simulated tag, how to modulate
103#define FPGA_HF_SIMULATOR_NO_MODULATION (0<<0)
104#define FPGA_HF_SIMULATOR_MODULATE_BPSK (1<<0)
105#define FPGA_HF_SIMULATOR_MODULATE_212K (2<<0)
83fd67ba 106#define FPGA_HF_SIMULATOR_MODULATE_424K (4<<0)
645c960f
MHS
107#define FPGA_HF_SIMULATOR_MODULATE_424K_8BIT 0x5//101
108
15c4dc5a 109// Options for ISO14443A
7cc204bf 110#define FPGA_HF_ISO14443A_SNIFFER (0<<0)
15c4dc5a 111#define FPGA_HF_ISO14443A_TAGSIM_LISTEN (1<<0)
112#define FPGA_HF_ISO14443A_TAGSIM_MOD (2<<0)
113#define FPGA_HF_ISO14443A_READER_LISTEN (3<<0)
114#define FPGA_HF_ISO14443A_READER_MOD (4<<0)
115
116/// lfops.h
f6d9fb17
MHS
117extern uint8_t decimation;
118extern uint8_t bits_per_sample ;
119extern bool averaging;
120
bf7163bd 121void AcquireRawAdcSamples125k(int divisor);
f7e3ed82 122void ModThenAcquireRawAdcSamples125k(int delay_off,int period_0,int period_1,uint8_t *command);
15c4dc5a 123void ReadTItag(void);
f7e3ed82 124void WriteTItag(uint32_t idhi, uint32_t idlo, uint16_t crc);
15c4dc5a 125void AcquireTiType(void);
126void AcquireRawBitsTI(void);
a501c82b 127void SimulateTagLowFrequency( uint16_t period, uint32_t gap, uint8_t ledcontrol);
385f3987 128//void SimulateTagLowFrequencyA(int period, int gap);
a501c82b 129
385f3987 130void CmdHIDsimTAG(int hi, int lo, int ledcontrol);
abd6112f 131void CmdFSKsimTAG(uint16_t arg1, uint16_t arg2, size_t size, uint8_t *BitStream);
132void CmdASKsimTag(uint16_t arg1, uint16_t arg2, size_t size, uint8_t *BitStream);
872e3d4d 133void CmdPSKsimTag(uint16_t arg1, uint16_t arg2, size_t size, uint8_t *BitStream);
15c4dc5a 134void CmdHIDdemodFSK(int findone, int *high, int *low, int ledcontrol);
6ff6ade2 135void CmdEM410xdemod(int findone, int *high, int *low, int ledcontrol);
a1f3bb12 136void CmdIOdemodFSK(int findone, int *high, int *low, int ledcontrol);
137void CopyIOtoT55x7(uint32_t hi, uint32_t lo, uint8_t longFMT); // Clone an ioProx card to T5557/T5567
15c4dc5a 138void SimulateTagLowFrequencyBidir(int divisor, int max_bitlen);
54a942b0 139void CopyHIDtoT55x7(uint32_t hi2, uint32_t hi, uint32_t lo, uint8_t longFMT); // Clone an HID card to T5557/T5567
2d4eae76 140void WriteEM410x(uint32_t card, uint32_t id_hi, uint32_t id_lo);
2414f978 141void CopyIndala64toT55x7(int hi, int lo); // Clone Indala 64-bit tag by UID to T55x7
142void CopyIndala224toT55x7(int uid1, int uid2, int uid3, int uid4, int uid5, int uid6, int uid7); // Clone Indala 224-bit tag by UID to T55x7
54a942b0 143void T55xxWriteBlock(uint32_t Data, uint32_t Block, uint32_t Pwd, uint8_t PwdMode);
144void T55xxReadBlock(uint32_t Block, uint32_t Pwd, uint8_t PwdMode );
145void T55xxReadTrace(void);
f6c18637 146void TurnReadLFOn();
54a942b0 147int DemodPCF7931(uint8_t **outBlocks);
148int IsBlock0PCF7931(uint8_t *Block);
149int IsBlock1PCF7931(uint8_t *Block);
150void ReadPCF7931();
151void EM4xReadWord(uint8_t Address, uint32_t Pwd, uint8_t PwdMode);
152void EM4xWriteWord(uint32_t Data, uint8_t Address, uint32_t Pwd, uint8_t PwdMode);
15c4dc5a 153
154/// iso14443.h
155void SimulateIso14443Tag(void);
f7e3ed82 156void AcquireRawAdcSamplesIso14443(uint32_t parameter);
7cf3ef20 157void ReadSTMemoryIso14443(uint32_t);
0f7f9edc 158void RAMFUNC SnoopIso14443(void);
7cf3ef20 159void SendRawCommand14443B(uint32_t, uint32_t, uint8_t, uint8_t[]);
15c4dc5a 160
161/// iso14443a.h
5cd9ec01 162void RAMFUNC SnoopIso14443a(uint8_t param);
28afbd2b 163void SimulateIso14443aTag(int tagType, int uid_1st, int uid_2nd, byte_t* data);
902cb3c0 164void ReaderIso14443a(UsbCommand * c);
1e262141 165// Also used in iclass.c
a501c82b 166bool RAMFUNC LogTrace(const uint8_t *btBytes, uint16_t len, uint32_t timestamp_start, uint32_t timestamp_end, uint8_t *parity, bool readerToTag);
6a1f2d82 167void GetParity(const uint8_t *pbtCmd, uint16_t len, uint8_t *parity);
902cb3c0 168void iso14a_set_trigger(bool enable);
3000dc4e 169
5cd9ec01 170void RAMFUNC SniffMifare(uint8_t param);
8556b852 171
5acd09bd 172/// epa.h
902cb3c0 173void EPA_PACE_Collect_Nonce(UsbCommand * c);
5acd09bd 174
8556b852 175// mifarecmd.h
1c611bbd 176void ReaderMifare(bool first_try);
9492e0b0 177int32_t dist_nt(uint32_t nt1, uint32_t nt2);
20f9a2a1 178void MifareReadBlock(uint8_t arg0, uint8_t arg1, uint8_t arg2, uint8_t *data);
0ec548dc 179void MifareUReadBlock(uint8_t arg0, uint8_t arg1, uint8_t *datain);
f38a1528 180void MifareUC_Auth1(uint8_t arg0, uint8_t *datain);
181void MifareUC_Auth2(uint32_t arg0, uint8_t *datain);
a501c82b 182void MifareUReadCard(uint8_t arg0, int Pages, uint8_t *datain);
20f9a2a1
M
183void MifareReadSector(uint8_t arg0, uint8_t arg1, uint8_t arg2, uint8_t *datain);
184void MifareWriteBlock(uint8_t arg0, uint8_t arg1, uint8_t arg2, uint8_t *datain);
981bd429 185void MifareUWriteBlock(uint8_t arg0,uint8_t *datain);
186void MifareUWriteBlock_Special(uint8_t arg0,uint8_t *datain);
f397b5cc
M
187void MifareNested(uint32_t arg0, uint32_t arg1, uint32_t arg2, uint8_t *datain);
188void MifareChkKeys(uint8_t arg0, uint8_t arg1, uint8_t arg2, uint8_t *datain);
20f9a2a1 189void Mifare1ksim(uint8_t arg0, uint8_t arg1, uint8_t arg2, uint8_t *datain);
8556b852
M
190void MifareSetDbgLvl(uint32_t arg0, uint32_t arg1, uint32_t arg2, uint8_t *datain);
191void MifareEMemClr(uint32_t arg0, uint32_t arg1, uint32_t arg2, uint8_t *datain);
192void MifareEMemSet(uint32_t arg0, uint32_t arg1, uint32_t arg2, uint8_t *datain);
193void MifareEMemGet(uint32_t arg0, uint32_t arg1, uint32_t arg2, uint8_t *datain);
194void MifareECardLoad(uint32_t arg0, uint32_t arg1, uint32_t arg2, uint8_t *datain);
0675f200 195void MifareCSetBlock(uint32_t arg0, uint32_t arg1, uint32_t arg2, uint8_t *datain); // Work with "magic Chinese" card
545a1f38 196void MifareCGetBlock(uint32_t arg0, uint32_t arg1, uint32_t arg2, uint8_t *datain);
d52e4e88 197void MifareCIdent(); // is "magic chinese" card?
aa60d156 198void MifareUSetPwd(uint8_t arg0, uint8_t *datain);
15c4dc5a 199
add0504d 200void MifareCollectNonces(uint32_t arg0, uint32_t arg1);
201
6ff6ade2 202//desfire
203void Mifare_DES_Auth1(uint8_t arg0,uint8_t *datain);
204void Mifare_DES_Auth2(uint32_t arg0, uint8_t *datain);
205
f38a1528 206// mifaredesfire.h
f6c18637 207bool InitDesfireCard();
208void MifareSendCommand(uint8_t arg0,uint8_t arg1, uint8_t *datain);
209void MifareDesfireGetInformation();
210void MifareDES_Auth1(uint8_t arg0,uint8_t arg1,uint8_t arg2, uint8_t *datain);
211void ReaderMifareDES(uint32_t param, uint32_t param2, uint8_t * datain);
212int DesfireAPDU(uint8_t *cmd, size_t cmd_len, uint8_t *dataout);
213size_t CreateAPDU( uint8_t *datain, size_t len, uint8_t *dataout);
214void OnSuccess();
225ccb91 215void OnError(uint8_t reason);
f6c18637 216
217
f38a1528 218
0ec548dc 219// desfire_crypto.h
220void *mifare_cryto_preprocess_data (desfiretag_t tag, void *data, size_t *nbytes, off_t offset, int communication_settings);
221void *mifare_cryto_postprocess_data (desfiretag_t tag, void *data, ssize_t *nbytes, int communication_settings);
222void mifare_cypher_single_block (desfirekey_t key, uint8_t *data, uint8_t *ivect, MifareCryptoDirection direction, MifareCryptoOperation operation, size_t block_size);
223void mifare_cypher_blocks_chained (desfiretag_t tag, desfirekey_t key, uint8_t *ivect, uint8_t *data, size_t data_size, MifareCryptoDirection direction, MifareCryptoOperation operation);
224size_t key_block_size (const desfirekey_t key);
225size_t padded_data_length (const size_t nbytes, const size_t block_size);
226size_t maced_data_length (const desfirekey_t key, const size_t nbytes);
227size_t enciphered_data_length (const desfiretag_t tag, const size_t nbytes, int communication_settings);
228void cmac_generate_subkeys (desfirekey_t key);
229void cmac (const desfirekey_t key, uint8_t *ivect, const uint8_t *data, size_t len, uint8_t *cmac);
f38a1528 230
231
15c4dc5a 232/// iso15693.h
9455b51c 233void RecordRawAdcSamplesIso15693(void);
15c4dc5a 234void AcquireRawAdcSamplesIso15693(void);
f7e3ed82 235void ReaderIso15693(uint32_t parameter); // Simulate an ISO15693 reader - greg
3649b640 236void SimTagIso15693(uint32_t parameter, uint8_t *uid); // simulate an ISO15693 tag - greg
9455b51c 237void BruteforceIso15693Afi(uint32_t speed); // find an AFI of a tag - atrox
238void DirectTag15693Command(uint32_t datalen,uint32_t speed, uint32_t recv, uint8_t data[]); // send arbitrary commands from CLI - atrox
239void SetDebugIso15693(uint32_t flag);
15c4dc5a 240
cee5a30d 241/// iclass.h
242void RAMFUNC SnoopIClass(void);
ff7bb4ef 243void SimulateIClass(uint32_t arg0, uint32_t arg1, uint32_t arg2, uint8_t *datain);
1e262141 244void ReaderIClass(uint8_t arg0);
f38a1528 245void ReaderIClass_Replay(uint8_t arg0,uint8_t *MAC);
246void IClass_iso14443A_GetPublic(uint8_t arg0);
cee5a30d 247
d19929cb 248// hitag2.h
249void SnoopHitag(uint32_t type);
250void SimulateHitagTag(bool tag_mem_supplied, byte_t* data);
251void ReaderHitag(hitag_function htf, hitag_data* htd);
252
6e82300d 253// cmd.h
254bool cmd_receive(UsbCommand* cmd);
79a73ab2 255bool cmd_send(uint32_t cmd, uint32_t arg0, uint32_t arg1, uint32_t arg2, void* data, size_t len);
6e82300d 256
15c4dc5a 257/// util.h
15c4dc5a 258
259#endif
Impressum, Datenschutz