payShield host commands

Card & EMV

payShield KQ — Verify ARQC / Generate ARPC (Static/MChip SKD)

answers with KR

Verify an ARQC and/or generate the ARPC using the Mastercard M/Chip proprietary derivation (scheme 1) — the ARPC is computed under the ICC master key

Fields

FieldWhat it holds
Scheme ID1 charsKW: 0/1 EMV2000, 2/3 EMV Common SK · KQ: 1 M/Chip
Mode1 chars0 verify · 1 verify+ARPC(M1) · 2 ARPC(M1) · 3 verify+ARPC(M2) · 4 ARPC(M2)
MK-AC under LMK32 or 97 or 129 charsS… key block (97/129 chars), or 32 hex under a variant LMK
PAN12-19 digit card number
PAN Sequence Number2 chars00
ATC (HEX)4 chars4 hex chars (2 bytes)
Transaction Data (HEX)Concatenated EMV transaction data in hex (host adds any 0x80 padding)
ARQC (HEX)16 chars16 hex chars (8 bytes)
ARC (HEX)4 chars4 hex chars (2 bytes) — Method 1 ARPC

On the wire

Complete host messages. Each runs against the KeyLab simulator as printed. The header is four zeros here; the device echoes back whatever you send.

Verify ARQC / Generate ARPC (Static/MChip SKD)

0000KQ11S10096E0TN00N000093958BE965930B976EBAD02EF36855DF83CD58DE241264CA230A93427E7C9EB32515846EB1458B6843219876543210000001000000002500000000100000000000000007100000000000071013020500000000003C00000103A4A082;6F49780802445A8F0000

4-char headercommand224 chars of fields
Send KQ to the simulator

Opens the simulator with this command already filled in.

Card & EMV