ACR3901T-W1 – Reference Manual
Version 1.02
www.acs.com.hk
Page 16 of 100
6.1.3.
Authentication
Before any sensitive data can be loaded into the ACR3901T-W1, the data processing server must be
authenticated by the ACR3901T-W1 for the privilege to modify the secured data inside reader. In the
ACR3901T-W1, a mutual authentication method is being used.
For better pictorial illustration, please refer to the figure below (The picture below has omitted the
bridging device for simplicity and better illustration):
Figure 4
: Authentication Procedure
After successful authentication, a 16-byte Session Key is generated in both ACR3901T-W1 and the
data server.
Default Customer Master Key (Hex):
FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF
Note: The reader will be locked and unusable once incorrect authentication keys are entered more
than six (6) times.
For more detailed information, you may contact an ACS sales representative.
1. Send authentication
request message
2. Answer to the request
message
3. Send authentication
response message
4. Answer to the
authentication response
message
Transmitted
through the
bridging device