Common Access Card (US DoD)

Embed This Widget

Theme


      
    

Widget powered by . Free, no account required.

Dual-Interface

US Department of Defense smart card for military and civilian personnel identity, facility access, and IT authentication.

Dual-Interface | DoD Directive 1000.25 (CAC) | Since 2000

Quick Specs

Dual-Interface
Interface Dual-Interface
Chip Type Microprocessor
OS JavaCard
EAL Level EAL4+
Lifespan 3 years
First Deployed 2000

Full Specifications

Hardware

InterfaceDual-Interface
Chip TypeMicroprocessor
Operating SystemJavaCard

Communication

ProtocolT=0/T=1 + ISO 14443
Extended APDU Không
Logical Channels1

Security

EAL LevelEAL4+
Secure Element
Tamper Resistant
Crypto Coprocessor
Biometric Support Không

Cryptographic Algorithms

RSA-2048 ECC-P256 AES SHA-256
{# FAQ block + FAQPage JSON-LD. Expects `faq_items` = [{"question", "answer"}]. Native
/ (frontend-gold-standard §1.7): the answer text is in the initial HTML and stays reachable with JavaScript disabled, so crawlers and AI extractors read answer-shaped chunks without depending on Alpine. #}

Frequently Asked Questions

How do I choose the right smart card type for my project?

Consider four key factors: interface type (contact, contactless, or dual-interface), security requirements (EAL certification level), application domain (payment, identity, transport), and chip platform (JavaCard, MULTOS, native). For EMV payments, dual-interface cards are now standard. For government eID, EAL5+ certified cards are typically required.

What is the difference between a contact and contactless smart card?

Contact smart cards require physical insertion into a reader and communicate via the ISO 7816 interface (gold contact pads). Contactless cards use radio frequency (ISO 14443) and work within a few centimeters of a reader. Dual-interface cards combine both interfaces on a single chip, offering maximum flexibility.

What does EAL certification mean for smart cards?

EAL (Evaluation Assurance Level) is part of the Common Criteria framework for evaluating IT security. For smart cards, EAL4+ is common for payment cards, while EAL5+ or EAL6+ is required for government identity documents and ePassports. Higher EAL levels indicate more rigorous security testing and formal verification methods.