What is a 13.56 MHz contactless smart card, and why does it matter for access cards?
A 13.56 MHz contactless smart card is a high-frequency credential that operates under the ISO/IEC 14443 Type A air interface. It is one of the most widely deployed smart-card technologies in the world, used across office access control, hotel locks, public transit, cashless payment, and campus credentials. Every smart card we manufacture in this family is built on the matching smart-card silicon.
Because the 13.56 MHz family spans several distinct chip generations with very different cryptography, saying a card is "13.56 MHz" alone never fully identifies it. An access reader is provisioned for a specific card type and, often, a specific memory layout and key. Matching that card type on the matching smart-card silicon is the first requirement when you order compatible cards. The right approach for replacements depends entirely on which tier your system uses.
1K and 4K contactless smart cards: the legacy tier
The 1K and 4K contactless smart card is the original and most common member of the family, supplied as 1K (sixteen sectors) and 4K (forty sectors) variants on the matching smart-card silicon. It protects its sectors with an early proprietary 48-bit stream cipher. That cipher is an early-generation design the industry has long considered cryptographically weak, so these 1K and 4K cards are widely regarded as a legacy, open-tier credential. Many older office systems, building-entry panels, and budget hotel locks still rely on them.
Because this tier is an open legacy one, we can encode a 1K or 4K credential that carries the exact data layout your reader already accepts. For these systems we supply ready-encoded compatible cards that present the same sector structure, facility data, and card number your installation expects. This makes the 1K and 4K card among the most straightforward 13.56 MHz formats for spare and replacement credentials.
- 1K:16 个扇区,约 768 可用数据字节;4K:40 个扇区,更大存储空间
- Early proprietary 48-bit stream cipher — legacy, open-tier security
- 常见于旧办公门禁、楼宇入口和经济型酒店门锁
- Broadly supported: we encode the matching layout onto a 1K/4K credential
AES-upgradeable cards, memory tags and NFC tags: the in-between tiers
Between the legacy 1K/4K card and the top security tier sit a few in-between options. The AES-upgradeable smart card is the common drop-in upgrade path from the legacy 1K/4K card: it keeps a sector-style memory structure but can be operated in security levels that replace the old cipher with AES-128. When one of these cards is run in its higher AES security levels, it behaves like a modern secured credential rather than a legacy one, so the right replacement strategy depends on how your integrator configured it.
Alongside those are the simple memory and NFC tags. A low-cost 13.56 MHz ISO 14443-A memory card has little storage and, in its base form, no encryption — common in disposable transit tickets, event wristbands, and some hotel key cards; a hardened variant adds a Triple-DES (3DES) authentication step for a meaningful step up. NFC Forum Type 2 tags (also ISO 14443-A) are simple read/write memory tags used for marketing, product authentication, and basic fobs, while ISO/IEC 15693 vicinity smart cards cover longer-range library, laundry and some hotel tags. Plain memory and NFC tags are an open tier, so we encode a ready-to-use compatible credential on the matching smart-card silicon; the 3DES-authenticated and AES-mode cards are secured tiers, where we supply a compatible blank on the matching chip and your own system enrols it with its keys.
- AES-upgradeable card: sector-style layout, upgradeable to AES-128 in higher security levels
- Base memory tag: no encryption — disposable transit, wristbands, some hotel cards
- 3DES-authenticated memory tag: adds authentication — a real security step up
- NFC Type 2 and ISO 15693 tags: simple read/write memory, not encrypted credentials
- Approach varies: plain memory/NFC we encode ready-to-use; 3DES and AES cards ship as compatible blanks your system enrols
AES-secured smart cards: the high-security tier
The AES-secured 13.56 MHz smart card is the high-security member of the family, built around a flexible application file system and strong cryptography. Its first widely deployed generation introduced AES-128 (alongside legacy 3DES/DES modes); a later generation added features such as multiple isolated applications, transaction MAC, and proximity checking; the current generation adds further hardening and certifications. This is the card you find in modern transit networks, enterprise access control, and newer hotel and resort lock systems that want diversified keys per card.
Its AES encryption and diversified keys are designed so the credential data is written by your own system, never read out of an existing card. For these installations we supply compatible blank AES-secured credentials on the matching smart-card silicon, and your system administrator enrols them through your access-control or property-management software — exactly as you would enrol blanks ordered through the OEM channel. The keys, and your site security, stay in your hands; the blank simply matches the card family your readers expect.
- First AES-128 generation; a later one added multiple apps, transaction MAC, proximity check; the current one is hardened and certified
- 用于现代交通、企业门禁和新型酒店/度假村门锁
- AES + 多样化密钥 = 按设计安全;您的系统持有密钥
- Compatible approach: supply a compatible blank built on the matching smart-card silicon, then enrol it in your own system
How do I get replacements for my 13.56 MHz smart-card system?
Start by identifying which tier of the family your readers use — a legacy 1K/4K card, an AES-upgradeable card, a memory or NFC tag, or a high-security AES-secured card. The chip marking on existing cards, the lock or panel model, or your integrator's documentation will tell you. If you can send a sample card, that confirms the card type and, for the 1K/4K tier, the memory layout.
From there the path is straightforward. For open legacy tiers (1K/4K, plain memory and NFC tags) we encode compatible cards on the matching smart-card silicon that present the exact layout your reader already recognizes. For AES-secured tiers (the high-security card, and AES-upgradeable cards running in AES mode) we supply compatible blanks of the correct card family, and your own system enrols them with its keys. Either way, these are independently manufactured compatible credentials built on the matching smart-card silicon — we are an independent manufacturer and supplier, not affiliated with, authorized by, or endorsed by any chip maker or any lock or access-control manufacturer. When in doubt, send the card type and a sample and request a quote.
The 13.56 MHz smart-card family at a glance — card type, security tier, where it's used, and the compatible approach
| Card type | 安全性 | 典型系统 | 兼容方法 |
|---|---|---|---|
| 1K / 4K contactless smart card | Early 48-bit proprietary cipher (legacy, open tier) | 旧办公门禁、楼宇入口、经济型酒店门锁 | We encode the matching layout onto a 1K/4K credential |
| AES-upgradeable smart card | 可升级到 AES-128(安全级别) | Legacy-card upgrades, mixed-fleet access control | 取决于级别:传统模式下预编码,AES 模式下由您的系统注册的兼容空白卡 |
| Base memory tag (ISO 14443-A) | 无(基础芯片) | 一次性交通票、活动腕带、部分酒店卡 | We encode a ready-to-use credential on a memory tag |
| 3DES-authenticated memory tag | 3DES 认证 | 酒店钥匙卡、需要提升安全性的票务 | Match the chip + config; secured tier your system enrols |
| AES-secured smart card (first AES generation) | AES-128 (also legacy 3DES/DES) | 交通、企业门禁、安全设施 | Compatible blank on the matching smart-card silicon, enrolled by your system |
| AES-secured smart card (multi-application generation) | AES-128 + 多应用、交易MAC、近场检查 | 现代门禁、多应用门禁卡 | Compatible blank on the matching smart-card silicon, enrolled by your system |
| AES-secured smart card (current generation) | AES-128,强化+认证(最新) | 当前企业门禁、新型酒店/度假村门锁 | Compatible blank on the matching smart-card silicon, enrolled by your system |