Effizient - Sicher - Maßgeschneidert - Zuverlässig - Innovativ

eGK Reader for iPadOS

Technical Proof of Concept for External USB Smart Card Communication
HECK Datensysteme is currently developing a technical proof of concept for communication between an iPad and an external USB smart card reader.
The project evaluates the use of Apple DriverKit and USBDriverKit to provide direct communication between an iPadOS application and an external ACS ACR122U contactless smart card reader connected via USB-C.
The project is currently in the development and evaluation stage and is not offered as a finished medical product.

Project Objective
The objective of the eGK Reader project is to evaluate a secure technical architecture for accessing compatible smart cards from an iPad using an external USB reader.
One of the intended use cases is communication with the German electronic health card (elektronische Gesundheitskarte – eGK).
Communication with the smart card is performed using the card’s defined protocols, authentication procedures and access-control mechanisms. The project does not bypass or circumvent security mechanisms of the smart card.

Hardware
The current proof of concept uses the following USB device:

Manufacturer: Advanced Card Systems Ltd. (ACS)
Device: ACR122U PICC Interface
Interface: USB
USB Vendor ID: 0x072F (1839 decimal)
USB Product ID: 0x2200 (8704 decimal)
The reader is connected to an Apple iPad with an M-series processor using USB-C.

DriverKit Integration
The iPadOS application uses an embedded DriverKit extension to communicate with the external USB reader.
The DriverKit extension is intended to provide the USB transport layer between the iPadOS application and the ACS ACR122U.
For this purpose, HECK Datensysteme is requesting the Apple DriverKit USB Transport entitlement for the USB Vendor ID used by Advanced Card Systems Ltd.
The current implementation is specifically being developed and tested with:

Vendor ID: 0x072F
Product ID: 0x2200
Device: ACS ACR122U PICC Interface

The driver is not intended to provide unrestricted access to arbitrary USB devices.
Technical Architecture
The current proof-of-concept architecture is:

iPadOS Application

Apple DriverKit / USBDriverKit Extension

USB-C Connection

ACS ACR122U PICC Interface

Compatible ISO 7816 Smart Card / German eGK

Further communication with supported smart cards is implemented according to the applicable card specifications and security mechanisms.

Security and Data Protection
Security and data protection are fundamental requirements of this project.
The proof of concept does not attempt to circumvent authentication, authorization or cryptographic protection mechanisms implemented by the smart card.
Access to protected information is only intended through the authentication and authorization mechanisms defined for the respective card and application.
During development, technical testing is performed with the goal of minimizing the processing and storage of personal or medical information.

Development Status
Status: Technical Proof of Concept / Development
The project is currently used for technical evaluation of:

  • USB communication on iPadOS using DriverKit
  • communication with the ACS ACR122U
  • smart card communication through the external reader
  • feasibility of a future integrated iPad-based smart card reader solution


The project is not currently marketed or distributed as a finished medical device or healthcare product.

DriverKit Entitlement Request
To enable communication with the external USB reader on iPadOS, HECK Datensysteme is requesting the appropriate Apple DriverKit USB Transport entitlement.

Requested USB Vendor: Advanced Card Systems Ltd.
Vendor ID: 0x072F / 1839
Development device: ACS ACR122U PICC Interface
Product ID: 0x2200 / 8704
The requested entitlement will be used solely for development and operation of the USB communication layer required by this project.

Contact
HECK Datensysteme

Technical contact:
Maximilian-Peter Erbach

Website:
HECK-Datensysteme.de

For questions regarding the eGK Reader development project or the associated DriverKit implementation, please contact us through the contact information provided on this website. 


 
 
 
E-Mail
Anruf