ATA5558_08 ATMEL | Alldatasheet
Document overview
- Manufacturer or author: Provided By ALLDATASHEET.COM(FREE DATASHEET DOWNLOAD SITE)
- PDF pages: 48
Technical content
Features
- Contactless Read/Write Data Transmission Radio Frequency fRF: 100 kHz to 200 kHz User Memory (1024 Bits): 32 Write Pr otectable 32-bit Blocks of Data Deterministic Anticollision: Detection Rate ~ 20 Tags/s with 40-bit Tag ID, RF/32 On-chip CRC Generator: 16-bit CRC-CCI TT Compliant to ISO/IEC 11785 Downlink Transmission: Enhanced 1 out of 4 Pulse Interval Encoding (~ 5 kbps) Uplink Transmission: ASK Modulated, NRZ , Manchester or Bi-phase Encoding Integrated Tuning Capacitor: 80 pF ±12%, 210 pF ±12% as Mask Option System Memory (320 bits): – 10 Write and Password Protectable 32 Bit Blocks of Data – Tag ID (96 Bits Maximum) – Traceability Data with Inherent Manufacturer Serial Number – Write Password (32 Bits) and Read Password (32 Bits), with Page Orientated Memory Protection Areas – Configuration Register for Setup of: Selectable Data Bit Rate: RF/2 .. RF/64 Selectable Tag ID Length to Optimize Anticollision Detection Rate Start of Frame with Variable Preamble Length to Simplify Interrogator Design Public Mode (PM) for Read Only Tag Emulation Electrical Article Su rveillance (EAS) Mode Direct Data (NRZ), Bi -phase (FDX-B) or Manchester Data Encoding 1. General Description The ATA5558 is a contactless, two-terminal R/W-Identification IC (IDIC ®) for multi- or single tag applications in the low frequency ( ≈ 125 kHz) range. The passive tag uses the external RF signal to generate it’s own power supply and internal clock reference. Figure 1-1. RFID System Using an ATA5558 Tag It contains an EEPROM which is subdivide d into 1024 bits of user memory and 320 bits of system memory. Both memory se ctions are organized in data blocks of 32 bits, each equipped with an associated lock bit for block write protection. The user memory, which is intended for storage of recallable user data, is made of 32 such blocks. The 10 block system memory secti on is reserved for system parameter and configuration settings. Two of these blocks include a 32 bit read and a 32 bit write password to prevent unauthorized read and/or write access to protected user defin- able memory pages. Data Power Transponder Reader or Interrogator ATA5558 * Mask option Controller Coil interface Memory 1 kbit R/W IDIC with Deterministic Anticollision ATA5558 4681D–RFID–08/08
4681D–RFID–08/08 ATA5558 The ATA5558 receives commands from the interrogator (downlink) as a 1o u to f4 pulse interval encoded, amplitude modulated signal. Return data transmission from the tag to the interrogator (uplink) utilizes either Manchester, Bi-phase or NRZ encoded amplitude modulation. This is achieved by controlled damping of the interrog ator’s RF field with an on-chip resistive load between the two tag terminals, Coil 1 and Coil 2. Multi-Tag identification is implemented using a deterministic anticollision algorithm which requir es unique tag identifi cation information (Tag ID’s). Three blocks within the system memory are reserved for storage of the Tag ID, the length of which is user configurable up to a maximum of 96 bits. Figure 1-2. System Block Diagram 2. Functional Blocks
2.1 Analog Front End
The analog front end (AFE) includes all circuitry directly associated with the coil interface. It gen- erates the internal power supply and handles the data communication with the interrogator. It consists of the following blocks: Rectifier to generate a DC supply voltage from the AC coil voltage Low-voltage regulator to provide an on-chip stabilized DC voltage Charge pump to generate the high voltage required for EEPROM programming On-chip tuning capacitor (mask option) Field clock extractor Field gap detector for data transmission from interrogator to tag Load switching between Coil 1/Coil 2 for data transmission from tag to interrogator Electrostatic discharge protection (ESD) Analog front-end Binary bitrate generator PPM signal decoder System memory User memory (1 kbit EEPROM) Modulator HV generator Input register Coil 1 Coil 2 * mask option Mode register Anticollision logic Controller POR
4681D–RFID–08/08 ATA5558
2.2 Power-On Reset (POR ) and Initialization
The Power-On-Reset circuit (POR) maintains the circuit in a reset state until an adequate inter- nal operating voltage threshold level has been reached, whereupon a default start-up delay sequence is started. During this period of 200 field clock cycles, the configuration and security setup is initialized from the System Configuration and Page Security blocks.
2.3 Control Logic
The control logic is responsible for the following functions: Initialization and reloading of the configuration from EEPROM Control of read and write memory access operations Data transmission and command decoding CRC check, error detection and error handling
2.4 Modulator
The modulator output circuitry controls the swit ching of a resistive load between the Coil 1 and Coil 2 pads to transmit data from the tag to the interrogator (uplink). The ASK load modulator is driven from the Manchester, Bi-phase encoder or directly from the EEPROM memory data stream (NRZ) according to the uplink encoding configuration. Figure 2-1. Manchester Timing Diagram Table 2-1. Types of Modulation Uplink Mode Manchester Encoding Bi-phase Encoding (1) NRZ – Direct Data ASK-coded modulation 0 = falling edge on mid bit 1 = rising edge on mid bit 0 = rising or falling edge 1 = no edge on mid bit 0 = modulation off 1 = modulation on Note: 1. Since Bi-phase encoding is data dependent the following definitions apply to the ATA5558 implementation. - The tag modulates the first (half) bit period after SOF . - If the last bit of a data stream is a logical 1 it is possible that this bit period is non-modu- lated and therefore is not detectable directly by the reader. Data rate = FRF/16 0 01 NRZ data stream Manchester coded RF field Manchester coded Modulator signal
4681D–RFID–08/08 ATA5558 Figure 2-2. Bi-phase Timing Diagram
2.5 Binary Bit Rate Generator
The tag’s data rate is binary programmable in the configuration register to operate at any bit rate between RF/2 and RF/64.
2.6 Memory Section
2.6.1 Memory Map
The physical memory is subdivided into two logical sections (see Figure 2-3 ). The first logical memory section contains the 1024 bits of user data. The second logical memory section con- tains 320 bits of system/configuration data. Both memories are organized in 32-bit data blocks, each block being equipped with a single lock bit, with which the associated block can be write protected. Command controlled programming and reading always takes place on a serial MSB first block basis so that a block constitutes the smallest directly accessible data unit. The user memory is further subdivided into 8 pages, each of 4 blocks in size. This provides the basis of the page security scheme (“Password Protection” on page 6). Figure 2-3. Memory Map Structure Data rate = FRF/8 NRZ data stream Biphase coded RF field Bi-phase coded Modulator signal 01 110 1 Data rate RF 36h 37h 3Eh 3Fh 3Dh 3Ch 3Bh 3Ah 39h 38h 1Eh 1Fh 1Dh 1Ch 00h 01h 03h 02h 1Bh 04h 05h 06h 07h L L L L L L L L Configuration Password/Page Security Traceability 3 Traceability 2 Traceability 1 Tag ID 3 Tag ID 2 Tag ID 1 System memoryUser memory L L Password - Write Password - Read 31 30 29 0 12 30 29 0 1231 bit position bit position User data block0/page0 User data block1/page0 User data block2/page0 User data block3/page0 User data block4/page1 User data block5/page1 User data block6/page1 User data block7/page1 User data block31/page7 User data block30/page7 User data block29/page7 L L L L L L L L L L L User data block28/page7 User data block27/page6 L L L L Lock bits
4681D–RFID–08/08 ATA5558 A valid Write command can be used for programming a data block of 33 bits – including the associated lock bit – into an addressed location of either memory section. Once locked (lock bit = 1), the entire block including the lock bit itself can no longer be reprogrammed selectively. The system memory section is situated at the upper end of the (6-bit) memory address range and contains all system parameters and configurat ion settings. This area has restricted access (see Figure 2-5 on page 7 ) and the majority of blocks can only be read or written after the suc- cessful execution of the appropriate Password Login command (see Table 7-1 on page 24). All the configuration settings are allocated in block 63 (see Figure 2-7 on page 9) and the pass- word protection security information in block 62 (see Figure 2-6 on page 7).
2.6.2 Traceability Data
The traceability information is programmed and locked into the traceability blocks (59-61) by Atmel during the production test (1). Note: 1. This is not valid for -DDW (tested die on unsawn wafer) delivery. Figure 2-4. Tag ID and Traceability Structure IC code 4-digit Atmel IC reference number, e.g. ’5558’ ACL Allocation class as defined in ISO/IEC TDR 15963-1 = E0h MFC Manufacturer code of Atmel Corp. as defined in ISO/IEC 7816-6/AM1 = 15h ICR 4-bit Atmel IC revision code DPW 18-bit binary encoded die number on wafer Wafer# 5-bit binary wafer number Lot ID 9-digit lot number RFU Reserved for Future Use TagID Block 57 Block 56 Anticollison detection starts with this bit Block 58 Traceability MFC ICRBlock 60 Block 59 ACL LotID die on wafer 18 bitwafer # 5bit IC code RFU Block 61 LotID
4681D–RFID–08/08 ATA5558 The blocks 59, 60 and 61 contain Atmel’s manufacturer’s serial number (MSN). The top 4 digits of block 61 specifiy the IC code of this product. The following byte of block 61 is fixed to E0h which is the allocation class (ACL) for registered IC manufacturers as defined in TDR 15963-1; followed by the manufacturer code (MFC), which compliant with ISO/IEC 7816-6/AM1, is defined as 15h for Atmel. The remaining two blocks contain a 64-bit Atmel unique traceability code. The data is divided in several sub-groups, a 36-bit lot ID code, a 5-bit wafer number and a 18-bit sequential die number which represents the physical location of the chip on the processed wafer. The ICR nibble (4 bits) of this manufacturer serial number (MSN) is used for the IC refer- ence/version (ICR). The unique tag identifier (Tag ID) blocks provi de an address code with which each tag can be individually identified and in terrogated. These codes are prog rammed by either the tag system administrator or the tag manufacturer into blocks 56 to 58. The allocation of individual Identifica- tion codes must be handled so that an interrogator can never be confronted with two tags with identical Tag IDs. This is an important issue as the Tag ID is used as the basis for accessing and sorting tags during anticollision commands GetID, Select and SelectGroup. The Atmel traceability code (blocks 60 and 59) itself provides a means of unique chip identifica- tion so that this data content can be used as the Tag ID or a part of the Tag ID by copying it or part of it into blocks 56 and 57. The Tag ID code is located in blocks 56 to 58. It is MSB aligned so that it may occupy between 16 and 96 bits (see Figure 2-4 on page 5 ). This Tag ID length is set in the configuration block (see Figure 2-7 on page 9) and has an impact on the time r equired to complete the anticollision detection loop so it should be adjusted to suit system requirements. The default preprogrammed Tag ID length is 64 bits. The anticollision algorithm is based on a bit by bit binary tree elimination, carried out in parallel on all the Tag IDs within the interrogator field. This starts with the MSB of the Tag ID (always in bit position 31 of block 56) and continues through to bit position 0 of block 58 or until the Tag ID LSB, indicated by the configuration Tag ID length, is reached.
2.7 Security Levels
The ATA5558 has three levels of security. Firs tly, the restricted password access which pre- vents unauthorized access to both user and system data but allows authorized access using the correct password. Then a block orientated absolut e write lock protection (lock bits) and finally the Master Key with a security code which has to be set in the configuration block accordingly (see Table 2-2 on page 8 and Figure 2-7 on page 9).
2.7.1 Password Protection
The user memory is subdivided into continuous page areas which can be configured so that write or read/write operations on blocks within these pages can only be carried out after the appropriate password has been transmitted to the tag (LoginRead or LoginWrite command). The read and write password protections are independent and user definable. The read and write passwords are found in blocks 54 and 55 and the page security levels are defined in the Page Security register of block 62 (see Figure 2-6 on page 7).
4681D–RFID–08/08 ATA5558 To access a protected memory block, a Login command with the corresponding read or write password had to be executed once per session. During the login procedure the 32-bit password field of the login command is compared with t he contents of the corresponding password in the system memory. If the password s match, the ATA5558 tag will re turn an SOF pattern as an acknowledge signal. If they do not match, the tag will respond with an SOF followed by the appropriate error code. Writing to a protected memory address which has not been enabled with the correct LoginWrite password, will result in an error code on completion of the interrogator command. Reading a password protected memory address which has not been enabled with the correct LoginRead password, returns a block of all 0 data and no error code. Figure 2-5. System Memory Access Figure 2-6. Page Security Register
2.7.2 Lock Bit
Each memory block, consists of 32 data bits and an associated lock bit (see Figure 2-3 on page 4). Once a block is locked (lock bit = 1), the entire block including the lock bit itself can no longer be reprogrammed Configuration Page Security Traceability 3 Traceability 2 Traceability 1 Tag ID 3 Tag ID 2 Tag ID 1 Password - Write Password - Read Configuration Page Security Traceability 3 Traceability 2 Traceability 1 Tag ID 3 Tag ID 2 Tag ID 1 Password - Write Password - Read Block Name Block Name Block Name Unlimited Access Password Access No Access Read Access Write Access L 3210765415 14 13 1219 18 17 1623 22 21 20 11 10 9 827 26 25 2431 30 29 28 P4a P3aP4b P0bP2bP2aP3bP7a P7b P6a P6b P5a P5b P1a P1b P0a reserved Page 7 Page 6 Page 5 Page 4 Page 0 Page 1 Page 2 Page 3 Page Security Data Password required for write readPxa Pxb 1 1 reserved reserved no yes yes no no yes Code
4681D–RFID–08/08 ATA5558
2.7.3 Master Key
The Master Key controls various operating modes as described in Table 2-2. For production test purposes, other Master Key codes are used, but once the Configuration block has been double locked these test functions can never be reactivated. If the Master Key is set to 0110, the blocks within the system memory section have different access protection (see Figure 2-5 on page 7 ). These access rights are fixed and not influenced by the Page Security Register. Access to pa ssword protected system memory blocks can only be performed after the corresponding LoginWrite or LoginRead has been successfully executed. The password blocks themselves are non-readable. Traceability and configuration can always be read but the traceability data cannot be altered. A new ATA5558 device, when received by the customer can be considered as being unpro- grammed (all 0 state), the only exception to this being the preprogrammed non-alterable traceability information. For the tag manufacturer to be able to easily set up the tag passwords, it is possible to provisionally switch the password protection off. i.e Master Key = 0. In this state, it is possible to read and write all non-locked (lock bits = 0) memory blocks irrespective of the page security. In this way, new tag passwords or Tag ID’s can be defined and written. Blocks, which have once been locked (block lock bit = 1) can however not be rewritten. When the cus- tomer has completed the tag configuration, the Master Key is set to the “safe” state (= 6) thus enabling the full password protection, and then finally the configuration block itself may be locked. In this double locked condition, the configuration and all other locked blocks are irrevers- ibly set and cannot be changed. This applies to bot h the user and the majority of the system memory blocks. Table 2-2. Master Key Related Functions Master Key Enables Protection Scheme DDR PM EAS User Memory Clear Page Security System Memory 6 yes yes yes no yes yes 9 yes yes yes yes yes yes others no no no yes no no
4681D–RFID–08/08 ATA5558
2.8 Tag Configuration Register
The internal tag configuration register holds a shadow copy of the configuration settings stored in the system memory’s block 63. It is refr eshed after every POR cycle (RF field on), Reset to Ready or Write to block 63. Figure 2-7. Configuration Register 3. Transmission Protocol The transmission protocol defines the mechanism to exchange commands and data between the interrogator and the tags. In all but the Public and EAS Mode, the interrogator has complete control over the communication flow – all data transmission being synchronized to interrogator commands and the interrogator field clock – “Interrogator Talks First” (ITF) principle. This means that a tag does not transmit data, unless it has received and properly decoded an interrogator command. The protocol is based on an exchange of commands from the interrogator to the tag (Downlink mode) and response from the tag to the interrogator (Uplink mode) L a4 a3p2 a2 a1 a0 RF/2(n+1) 3210765415 14 13 1219 18 17 1623 22 21 20 11 10 9 827 26 25 2431 30 29 28 1 10 0 Max. Block 0 = Unlocked 1 = Locked R R Uplink Data Bit Rate 000 001 010 011 100 101 110 111 = 16 bit = 32 bit = 48 bit = 64 bit = 80 bit = 96 bit = 40 bit = 56 bit 1 = Downlink CRC check mandatory TagID Length Downlink Data Rate (DDR) 0 0R = Manchester = NRZ (Direct Coding) = FDX-B (Biphase) = Reserved Uplink EncodingSOF Preamble Length ( bit periods ) = 1 = 2 = 8 000 001 ... ... 111 Notes: * ) see Master Key section R = reserved for future use, should be set to '0' x = don't care state Master Key * ) Lock Bit p1 p0 Rn4 n3 n2 n1 n0 = ITF = PM = EAS Operating Mode * ) ITF =Interrogator Talks First Mode PM = Public Mode (Tag Talks First - TTF) EAS = Electrical Article Surveillance NRZ = Non Return to Zero
4681D–RFID–08/08 ATA5558
3.1 Tag to Interrogator Communication
All transmissions from the tag to the interrogator utilize amplitude modulation (ASK) of the RF carrier. This takes place by controlled switching of a resistive load between the coil pads which in turn modulates the RF field generated by the interrogator. The tag is capable of communicating with the in terrogator via inductive coupling. Typical exam- ples of the incorporated amplitude modulation is shown in Figure 3-1: Manchester encoded data signal Bi-phase encoded data signal NRZ direct data encoding Dual pattern data coding is used during the an ticollision loop and for an error code response Figure 3-1. Tag to Interrogator - Load Modulation Coding
3.1.1 Start of Frame (SOF) Encoding
After the reception of a valid in terrogator command the tag will reply immediately with a Start of Frame (SOF) pattern. The SOF pattern is made up of a variable length preamble and a fixed 2-bit (Manchester) code violation followed by a half bit duration of unmodulated carrier. The pre- amble length as set in the configuration bloc k defines the number of (Manchester coded) zero initialization data bits. If the preamble length in t he configuration register is set to zero, a single start bit will precede on the code violation. NRZ Data Anticollision dual pattern data coding load on load off Td load on load off Td Td Td Normal Manchester data coding load on load off Td load on load off Td Normal Biphase data coding load on Tdor load off load on load off load on load off Tdor Data "1" Data "0"
4681D–RFID–08/08 ATA5558 Figure 3-2. SOF Pattern
3.1.2 Public Mode
- In Public Mode the cyclic data stream will be preceded by a single SOF pattern after the completion of the POR delay. 2. The variable number of preamble data bits is aimed at easing the interrogator design and optimizing system performance. 3. Within any closed identification system the preamble length for all tags must be identical.
3.2 Interrogator to Tag Communication
All commands and data bit streams from the interrogator to the tag are 100% (OOK – On-Off-Key) modulated using a modified 1 out of 4 pulse position coding. Depending on the data, the continuous RF field is interspersed with short field gaps of constant duration and vari- able separation. The time from one gap to the next may take on one of four discrete values. Each of these represent one of four possible dual bit downlink data codes ( 00 .. 11) in the data stream (see Figure 3-3). The downlink data transfer speed is dependent on the downlink data rate (DDR) bit set in the tag configuration block, so that selected tags can always understand the interrogator. The minimum write data coding (maximum data rate) is 9 field clocks. This corre- sponds with the d00 (dref) parameter in Figure 3-3 and Table 3-1 on page 12. Figure 3-3. Interrogator to Tag - Modified 1 out of 4 Pulse Position Coding SOF 2 bit period code violation Example with Preamble length = 4 Wgap Sgap Downlink modeUplink mode d00dref d01 d11 d10
4681D–RFID–08/08 ATA5558
3.2.1 Start Gap
The first command gap is usually slightly longer (~20 field clocks) than the following data gaps. This is referred to as the start gap. All interrogator to tag commands are initiated by such a start gap. As soon as the clock extractor detects a start gap, the tag’s receive damping is switched on. This serves to improve the gap detection of all following data gaps. A start gap can be detected at any time after the completion of the tag’s power on reset delay sequence (RF field-on plus ~3 ms). If a gap is received during this delay sequence, irrespective of whether it is part of a command or a start gap, the delay will restarted. Commands or partial command sequences occurring during the power on reset sequence will not executed. 3.2.2 4PPM Command Encoding The timing between data gaps depends on the Downlink Data Rate (DDR) in the configuration register and is nominally 9 or 13 field clocks for a 00, 17 or 29 field clocks for a 01, 25 or 46 field clocks for a 10 and 33 or 61 field clocks for a 11. The duration of the field gaps lie between 8 and 20 field clocks. Should no gap be detected for more than the maximum 11 gap separation (see Table 3-1 ), the tag(s) will terminat e the present command decodin g mode and, if enabled release the receive damping. If an error is detected within the command sequence (e.g. incor- rect number of bits received, CRC check failed etc.) the tag will return a dual pattern coded error to the interrogator and ignore the command. The first two bits of every command constitute the Start of Command (SOC) and is always 00. This SOC is used as a timing reference for all follow- ing data (see Table 3-1), thus providing an auto-adjustment to allow for varying environmental conditions. Table 3-1. Modified Pulse Position Modulation - Timing Parameters Parameter Remark Symbol DDR = 1 and Master Key = 6 or 9 DDR = 0 or Master key ≠ 6 or 9 Start gap S gap 81 0 5 0 8 1 05 0 T c Write gap W gap 81 0 2 0 8 1 02 0 T c Write data coding (gap separation) Reference data 00 dref 9– 6 8 1 3–7 2 T c 00 data d 00 dref – 3 d ref dref + 4 d ref – 7 d ref dref + 8 T c 01 data d 01 dref + 5 d ref + 8 d ref + 12 d ref + 9 d ref + 16 d ref + 24 T c 10 data d 10 dref + 13 d ref + 16 d ref + 20 d ref + 25 d ref + 32 d ref + 40 T c 11 data d 11 dref + 21 d ref + 24 d ref + 28 d ref + 41 d ref + 48 d ref + 56 T c Notes: 1. All absolute times assume TC = 1/fC = 8 µs (fC = 125 kHz) 2. All the above timing data is that which should appear on the device terminals so that the device can operate correctly. Depending on the coil used (e.g. Q factor etc.) and the transmission medium, the values implemented in the interrogator could vary slightly.
4681D–RFID–08/08 ATA5558 4. CRC Error Checking The CRC error checking circuitry generates a 16-bit CRC to ensure the integrity of transmitted and received data packets. The ATA5558 uses the CRC-CCITT (Consultative Committee for International Telegraph and Telephone) for error detection. The 16 bit cyclic redundancy code is calculated using the following polynomial with an initial value of 0x0000: The implemented version of the CRC check has the following characteristics: Reverse CRC-CCITT 16 as described in ISO/IEC 11785 The CRC 16-bit shift register is initialized to all zeros at the beginning of a command The incoming data bits are XOR-ed with the MSB of the CRC register and is shifted into the register’s LSB After all data bits have been processed, the CRC register contains the CRC-16 code. Reversibility - The original data together with associated CRC, when fed back into the same CRC generator will regenerate the initial value (all zero’s). Should a CRC be required, both the tag and interrogator must use the above CRC polynomial. During read/write operations, a CRC can be atta ched to information by either the interrogator and/or the tag In the case of downlink communication, a CRC (CRC_d) can be attached to information trans- mitted from the interrogator to the tag(s) (see Figure 4-2 on page 15 ). This is evaluated by the tag(s) to ensure correct transmission. During the uplink phase of the read commands the tag replies with the requested data block(s) followed by an uplink CRC (CRC_u). This CRC_u is generated in the tag’s CRC generator, from the downlink address, CRC_d (if used) and the returned data (see Figure 4-3 on page 16 a, b, c). So by initializing the interrogator’s CRC generator with the same address and CRC_d (if used), then subsequently updating it with the returned data and uplink CRC_u, the integrity of both the address understood by the tag and data itself can be verified. On receiving a response from the tag which includes a CRC_u, it is recommended that the interrogator verifies this. If it is found to be incorrect, the interrogator should take the appropriate actions. These actions are left to the discretion of the system designer. During the anticollision detection, the CRC can also be used as a means of tag identification. A tag which is successfully selected by one of the select commands or as the result of an anticolli- sion elimination cycle, will always reply with a CRC . This is generated from it’s own Tag ID (see Figure 4-3 on page 16 d) and is always preceded by an SOF pattern. This also provides an addi- tional means of double checking whether the intended tag has been selected. For any write command, if the bit 10 of the configuration register = 1, the usage of the CRC for this communication is mandatory. Failure to include or verify a CRC results in the tag aborting the command execution and returning an error code . If the configuration register bit 10 = 0, the Write CRC usage is optional. In this case, th e CRC is handled in the same manner as a read command i.e. the CRC is only evaluated if attached. Should no CRC be transmitted and the con- figuration register bit 10 = 0, then the command will always be executed. P(X) x 16 x12 x5 x0++ +=
4681D–RFID–08/08 ATA5558 Figure 4-3. Examples of Uplink CRC Generation 1100 0100 1000 0000 (a) Read Multiple Blocks using downlink CRC (b) Read Single Block without downlink CRC 0 1 1 0 0 0 start address 1 1 1 0 0 0 Tag CRC Generator after 92 shift operations end address (07hex) (06hex) address Tag CRC Generator after 38 shift operations (06hex) 0 1 1 0 0 0 CRC_u = A955hex CRC_u = 6285hex 1 0 1 0 1 0 1 0 1 0 0 1 0 1 0 1 1 0 1 0 0 0 0 1 0 1 0 0 0 1 1 0 (D25E hex) 0 1 1 1 1 0 1 0 0 1 0 0 1 0 1 1 CRC_d from interrogator 1110 0110 1010 0010 1100 0100 1000 0000 (0123 4567 hex) Data from address 06h (89ABCDEF hex) Data from address 07h 0000 0000 0000 0000 0011 0011 0011 0011 (CCCC 0000hex) Data from address 06h (c) Read Single Block with downlink CRC 1 0 1 0 1 0 start address Tag CRC generator after 54 shift operations (15hex) CRC_u = 039Ahex 0 1 0 1 1 0 0 1 1 1 0 0 0 0 0 0 (4294 hex) 0 0 1 0 1 0 0 1 0 1 0 0 0 0 1 0 CRC_d from interrogator 1010 1010 1010 1010 0101 0101 0101 0101 (AAAA 5555 hex) Data from address 07h (d) Select Tag (16 bit TagID) Tag CRC Generator after 16 shift operations CRC_u = 2730hex 0 0 0 0 1 1 0 0 1 1 1 0 0 1 0 0 ( 0123hex) TagID 1111 0111 1011 0011 1101 0101 1001 0001 Data from tag Data from interrogator CRC Generator tag or interrogator
4681D–RFID–08/08 ATA5558 5. Operating Modes After initialization, the Operating Mode (Configura tion block bits 23 and 24) is interrogated and depending on it’s state, the device will go into either the READY state of the “Interrogator Talks First” (ITF) mode or the Public Mode’s PM READY state if the PM bit is set or the “Electronic Article Surveillance” (EAS) mode is selected.
5.1 Interrogator Talks First Mode (ITF)
For multi-tag applications, the ATA5558 is used in the “Interrogator Talks First” (ITF) mode with anticollision handling capability. In this mode, the tag starts up in the READY state, where it remains silent and waits for further interrogator commands before communication can take place.
5.2 Tag State Machine
Any tag can find itself in one of the following states: P O W E R D O W N PM READY (for PM or EAS modes only) READY (ITF mode) SELECTED Q U I E T In the state diagram shown in Figure 5-1 on page 18 , a state transition takes place by applying or removing the field (power on/off) or via one of the commands Select, SelectAll, SelectGroup, ResetSelected or ResetToReady. When a tag is unable to decode or process an interrogator command (e.g. CRC or bit frame error), it will rema in in the current stat e. Depending on the state, tag(s) will only accept certain commands.
5.3 Power Down State
The tag is in the Power Down state when there is not enough energy in the interrogator field to activate the tag. The ATA5558 commences a power-on initialization delay with an activated weak damping level to achieve a field strength threshold for stable operation.
5.4 READY State (ITF)
The ATA5558 tag enters the READY state after it has been activated by the interrogator (RF-field on) or after receiving either a ResetToReady or ResetSelected command (the EAS and PM deactivated). The READY state is the initial anticollision state, and in general all tags on this state are unidentified.
5.5 Selected State
Before a tag can in any way be accessed, it must first be selected. Tag selection can take place individually in which case they find themselves within the Selected state. They can enter the Selected state as a result of receiving an explicit Select command with the matching Tag ID. In this way, only one tag can theoretically be in the Selected state at any one time. If a tag should find itself in the Selected state and a second tag is selected by a subsequent Select command, the first tag will automatically proceed into the Quiet state.
4681D–RFID–08/08 ATA5558 It is possible to carry out commands simultaneously on more than one tag. To do this they must all first be selected by specifying a group of tags within the READY state and putting the group into the Selected state. This is performed by using a SelectGroup command with a matching partial Tag ID pattern. A group of tags in the Selected state may be written simultaneously with identical blocks of data. Data verification and checksum errors are reported by the tags using a special dual pattern code. Tags within the Selected state will automatically drop into the Quiet state and be excluded from subsequent anticollision detection, if a subsequent Select or GetID command is received. Selection can also take place on tag groups with non-matching Tag ID patterns using the Select- NGroup command. This could be useful for example, to check a storage crate for items which do not match a certain selection criteria (e.g. color or dispatch destination), so a SelectNGroup command with the Tag ID mask set to the color black will GroupSelect all non-black items. If no tag responds with a SOF pattern, then there are no black items present. Figure 5-1. Tag State Diagram Select, GroupSelect or GetID opcode GetID Select or GroupSelect with matching TagID or SelectAll TagID Identified Implicit state change Command initated state transition Arbitration lost/ TagID eliminated QUIET SELECTED Anticollision detection loop ResetToReady PM READY (continuous data transmission) Power On (PM or EAS only) Power On (ITFMode ) POWER DOWN ResetToReady or invalid command (PM or EAS only) Start Gap Read/Write/Login ResetToReady, Reset Selected READY (ITF mode ) All sucessfull select commands
4681D–RFID–08/08 ATA5558
5.6 Quiet State
The tag goes into the Quiet state from the Selected state when a new selection takes place i.e. a Select or a GetID command is received. Unlike the READY state, the tag’s Tag ID in this state is known. Tags in the Quiet state are excluded from subsequent anticollision detection.
5.7 Public Mode (PM) and PM READY State
In the Public Mode, communication commences with a single “Start of Frame” pattern (SOF), fol- lowed by a continuous stream of serialized user data which is read cyclically from the user memory. This starts with block 0, bit 31 and c ontinues sequentially through to bit 0 of the final block address defined by the configuration parameter MAXBLOCK. After reaching the MAX- BLOCK address, data transmission repeats with block 0, bit 31. If, for example MAXBLOCK were set to 1, block 0 and 1 would be continuously transmitt ed. This transmission process con- tinues indefinitely until terminated by either switching the field off or on the receipt of a valid interrogator command. On the start of a new command the tag will proceed te mporarily from the PM READY state into the (ITF) READY state. If the command is valid, it will be executed and the tag state changes as if in the ITF mode (see Figure 5-1 on page 18 ). If the command is invalid, then it will drop back into the PM READY state and continue to transmit data. To restart the public mode transmis- sion, the tag must be re-initialized by reappl ying the field (POR) or by using a ResetToReady command. Figure 5-2. Public Mode Start Up
5.8 Electronic Article Surveillance (EAS)
The EAS Mode is intended for retail article surveillance wher eby the device will be physically attached to retail articles in a store or supermarket. The device will be preprogrammed into an ”unpaid state” before entering the sales area by programming the block 0 to MAXBLOCK of the user memory to all 0s. For convenience reasons M AXBLOCK should be set to 0 in the configu- ration word. To increase security, the memory pages containing block 0 to MAXBLOCK should be assigned a write password security level (see password protection). Once the article has been purchased at the cash desk, the device is programmed into a “paid state” by writing the block 0 with all 1 s, using the appropriate password (if necessary). As soon as an “unpaid” device enters an interrogator field, it will modulate the interrogator field with an RF/2 signal. This can be detected by the surveillanc e interrogator and us ed to trigger an appropriate audio or visual warning. A “paid” device will remain silent. As in the Public Mode, the device will revert to ITF mode READY state as soon as it receives a valid interrogator command. By reapplying the field (POR) or using a ResetToReady command, the device returns to EAS mode. POR POR initialisation delay Start of Frame (SOF) Data Block 0 Check Operating Mode (= PM) 100110 0 31 30 25 26272829 Bit position Data Block (Maxblock ) Example data values 10011 43 0 12 100110 31 30 26 272829 Continue from Data Block 0
4681D–RFID–08/08 ATA5558 Figure 5-3. EAS Startup 6. Anticollision Protocol The aim of the anticollision prot ocol and associated arbitration pr ocess is to detect and identify the Tag ID’s of all tags within the READY state which are present within range of the interrogator field. The interrogator masters all communication with single or multiple tags. Tag arbitration commu- nication is initiated by issu ing the GetID command. All tags in the READY state will then enter the anticollision detection loop and synchronously start to trans mit an identifi cation response that represents the tag’s individual unique Tag ID code. Using an iterative bit-wise sorting algo- rithm on these Tag ID’s, the interrogator is capable of eliminating all but one tag. This remaining tag is thus selected and can be accessed dire ctly by following commands. Tags eliminated dur- ing the detection loop are muted, drop back into the READY state to participate in the next detection cycle. A typical anticollision procedure is illustrated in the following scheme: a) The interrogator starts the anticollision detection by sending a GetID command. Any previously eliminated and muted tag will be put into the READY state. All tags in the READY state participate initially in the anticollision detection loop. If nothing is known of the Tag ID’s within range, then the GetID command includes no further parameters and the detection group encompasses all tags. After a predefined number of field clock cycles, all tags within range re ply by synchronously transmitting a SOF pattern followed by their own respective Tag ID(MSB). Anticollision detection can be reduced to a subgroup of tags by passing a partial Tag ID pat- tern as Tag ID command parameter. These bits represent the most significant bits of the Tag ID subgroup. Anticollision detection will then be carried out on this subgroup, continuing as above with the synchronous reply from all constituent tags, followed by their most signifi- cant unknown Tag ID bit(s). "Unpaid" Device (Block 0 = all '0's) POR POR initialisation delay Check Operating Mode (= EAS) "Paid" Device (Block 0 = all '1's) POR POR initialisation delay Check Operating Mode (= EAS)
4681D–RFID–08/08 ATA5558 b) The interrogator can detect whether any tag is present. If no SOF pattern is returned then there is no tag present within the detection group so the process continues with (a). c) The interrogator checks the tag responses bit-wise within the anticollision loop. If one or more active tags are within range, the interrogator will sequentially scan the Tag ID bits from the most significant through to the least significant bits. Each time slot corresponds to a particular Tag ID bit position. All tags reply simultaneously with dual pattern modulated data, the response signals being superimposed on one another. A damped signal will thus overwrite a non-damped signal so that a logical 1 Tag ID bit will prevail over a logical 0 bit. d) The interrogator checks and eliminates tags. If the interrogator detects a Tag ID logical 1 bit, it acknowledges reception by broadcasting a gap in the field signal. This can be monitored and evaluated by all tags within the detection group. Otherwise a Tag ID logical 0 bit induces no reaction from the interrogator. On observing an acknowledge gap, any individual tag can, by checking the state of it’s own current Tag ID bit, deduce whether it should remain in the current anticollision detection loop (Tag ID bit = 1) or whether it should eliminate itself from the detection group (Tag ID bit =0). Eliminated tags will be muted and fall back into the READY state where they take no further part in the current detection loop. They remain in this state until the next anticollision loop is started by a new GetID command. Continue to (a) Non eliminated tags remain in the detection loop and if the final Tag ID bit has not been reached then the next Tag ID bit is interrogated in (c) otherwise (e). e) End of a single anticollision loop By the time the final Tag ID bit has been interrogated, there will be only one remaining active tag within range – all others having been eliminated during the previous interactions. Assuming no new tags have entered the interrogation since the start of the anticollision loop and that all the signals have been correctly interpreted, the interrogator should at this stage be able to identify the associated Tag ID. This active tag is set automatically into the Selected state and replies with the anticollision response which consists of an SOF followed a 16 bit CRC generated from it’s own Tag ID. If the received CRC matches the Tag ID the interrogator may continue with (a) or (f). If the received CRC is corrupted or does not match the calculated 16 bit value the interroga- tor will issue a ResetSelected command to transfer this improperly selected tag back into the READY state. Continue to (a). f) The interrogator communicates directly with tag in Selected state. At this stage the single identified and selected tag can undergo direct communication with the interrogator and can be read and written with either Read, Write or Login commands. This tag remains selected until the interrogat or starts a new anticollision loop with a new GetID command, or if other tags are addressed directly using a Select or GroupSelect com- mand. The selected tag then drops into the Quiet state where it is excluded from all future anticollision detection loops. Continue to (a).
4681D–RFID–08/08 ATA5558 Figure 6-1. Anticollision Loop Transmit SOF Gap? x = x + 1 (next bit) Last TagID bit? SELECT state Transmit TagID(x) TagID(x) = 0? READY state GetID command? x = x + 1 (next bit) Last TagID bit? Selected TagID found Y Interrogator (single master) Start Start SOF? (Tag present?) TagID(x)=1? Transmit Gap (Acknowledge) Selected TagID(x) = 1 Selected TagID(x) = 0 Transmit SOF + CRC of selected Tag Y Selected CRC correct? Detection Error Tag (one of many slaves) N Y No Tag N Parameters received? N Transmit GetID command/ parameters Y N Y Y N Select Subgroup x = N Y N N N N Y N Y N TagID(x) = 1? Partial TagID Transmit GetID command Y Y GetID command Mask bit parameters SOF TagID(x)bit Gap SOF + CRC
4681D–RFID–08/08 ATA5558 7. Command Set The first two bits of any interrogator command are called Start Of Command (SOC) and are always 00. This pulse interval is used for auto calibration purposes. The following series of dual bit packets define the interrogator command opcodes and the command dependant parameter information. A command overview is given in Table 7-1 below Table 6-1. Anti-collision Timing Parameter Remark Symbol Formular Formular Example: Tbit = 32 / fc, dref = 24 × Tc Tag reaction time End of start gap to start of tag command processing TIR ≥ 0 × Tc Tag to Interrogator response time End of final command gap to start of Tag SOF TTag d11 max + 65 × Tc (See Table 3-1 on page 12) DDR = 1 117 × Tc DDR = 0 145 × Tc Anticollision Aknowledge response time End of Interrogator acknowledge gap to start of Tag SOF Tack DDR = 1 134 × Tc 134 × Tc DDR = 0 138 × Tc 138 × Tc Anticollision final zero bit response time Overlap of final zero bit and SOF T 0 ½ × Tbit ½ × Tbit 16 × Tc Table 7-1. List of ATA5558 Supported Commands Command SOC Opcode Number of Parameter bits Description Read Single Block 00 01 6 (+ 16 CRC_d) Read single 32 bit data block and CRC_u (+ optional downlink CRC_d) Read Multiple Blocks 00 01 12 (+ 16 CRC_d) Read multiple data blocks and CRC_u (+ optional downlink CRC_d) Write Single Block 00 01 40 (+ 16 CRC_d) Write a single block (+ optional downlink CRC_d) Login Write 00 01 11 01 11 10 32 Login for write PWD protected access Login Read 00 01 11 01 10 10 32 Login for read PWD protected access GetID 00 00 00 None Starts a complete new anticollision loop GetID (Tag ID-part, even) 00 00 00 Length of partial Tag ID Anticollision loop with partial Tag ID, with even number of matching Tag ID bits. GetID (Tag ID-part, odd) 00 00 1 Length of partial Tag ID Anticollision loop with partial Tag ID, with odd number of matching Tag ID bits. Select (Tag ID) 00 00 00 Length of Tag ID Puts specif ied tag into Selected state SelectAll 00 10 00 None Selects all tags in the RF field SelectGroup 00 10 0[0]n 1 Length of Tag ID mask Select a specific group of tags SelectNGroup 00 10 1[0]n 1 Length of Tag ID mask Select all tags which are NOT members of the specified group ResetSelected 00 11 10 00 00 None Reset selected tag to READY state without reloading configuration register ResetToReady 00 11 00 00 00 None Reset all tags in the RF field to READY state and reload configuration register from system memory (block #63) ArmClear 00 11 00 10 00 6 × 0 Arms tag for ClearAll command ClearAll 00 01 01 11 11 34 × 0 (+ 16 CRC_d) Clears memory except traceability data (with optional constant CRC_d = 96ADh)
4681D–RFID–08/08 ATA5558 Figure 7-1. Command Format Read multiple blocks Read single block Write single block XXXX XX addr cmd cmd cmd XXXX XX start addr XXXXXX XXXX XX addr data bits GetID (Even partial TagID) 0 n Length(TagID) where n : even cmd TagID[msb],TagID[msb-1]..TagID[msb-(n-1)] partial_TagID cmd GetID (Odd partial TagID) 0 n Length(TagID)-1 where n : odd lock SelectGroup m+n: even 0 m+n Length(TagID) odd SelectNGroup m+n: even 0 m+n Length(TagID) Command OK Response Error Response 1000 1000 0 [(0)m 1] TagID(msb-m) ... TagID(msb-m-n) 1 [(0)m 1] TagID(msb-m) ... TagID(msb-m-n) SOF SOF Anticollision Response SOF CRC_u SOF SOF Data CRC_uSOF Data partial_TagID CRC_d SelectCRC CRC(TagID)0100 Select 0000 TagID 0000 SOF CRC_u 1 TagID[msb],TagID[msb-1]...TagID[msb-(n-1)] CRC_d CRC_d SOF Error code dual pattern SOF Error code dual pattern SOF Error code dual pattern SOF Error code dual pattern SOF Error code dual pattern None None None None None GetID end addr SOF SOF Error code dual pattern 0000Select All 10 cmd cmd cmd Anticollision Response Anticollision Response fn (start addr,end addr) fn(start addr,end addr,(CRC_d),data fn (addr) fn(addr,data,(CRC_d)) fn (addr,lock,data) variable length mask positioning pattern(1) variable length (n) TagID Select pattern(2) Note: 1. The leftmost position of the TagID select mask is determined by m '0' bits followed by a single '1' bit. These bit positions can be regarded as don't care bit positions. Note: 2. The TagID select mask is a variable (n) bi ts long. It starts immediately after the positioning pattern and can be terminated as required with the end of the command. All TagID lsb bits not defined are don't care. fn (TagID) variable length mask positioning pattern(1) variable length (n) TagID Select pattern(2) even
4681D–RFID–08/08 ATA5558 Figure 7-2. Command Format (Continued)
7.1 Error Response
If a command sequence is in any case invalid, the tag answers immediately with one of the error codes (see Table 7-2). This is made up of an SOF pattern followed by a 4-bit dual pattern coded data word. Command OK Response Error Response ArmClear SOF SOF Error code dual pattern SOF SOF Error code dual pattern 111100ClearAll 0 101 cmd 32 '0' data bits
00 CRC_d
constant CRC (96ADh) SOFLogin Read 0111 10 Read PWD addr cmd PWD(31)...PWD(0) Read PWD 1000 Login Write 0111 11 Write PWD addr cmd PWD(31)...PWD(0) Write PWD 1 000 ResetToReady SOF SOF Error code dual pattern SOF Error code dual pattern SOF SOF Error code dual pattern SOF SOF Error code dual pattern cmd 000000Reset Selected 10 cmd 000000 00 cmd 100000 10 0000 00 Table 7-2. Error Codes Error Code Description 0 1 1 1 Command format error – incorrect number of bits 1 1 1 0 Corrupt command (1 out of 4) encoding 0 0 1 0 Attempt to write a locked block – write command aborted 0 1 0 0 Attempt to write a protected block without a login – write command aborted 1 0 0 0 Login/Write command format error 1 1 0 1 Incorrect Login password 1 0 1 1 CRC error in command stream – command aborted 1 0 1 0 Program 0 verification error – unreliable zero level (degraded data retention) 0 1 1 0 Program 1 verification error – unreliable one level (degraded data retention) others Reserved for future use
4681D–RFID–08/08 ATA5558
7.2 Read Single Block
A Read Single Block command is executed on a tag in the Selected state. It serially reads a complete 32-bit tag data block. A downlink CRC (CRC_d) can be optionally included. This acts as a check for the block address. If included, the tag will always check the CRC_d and abort the command if it not compatible with the received address. If omitted, the tag will perform no down- link CRC check. The tag responds to a single block read command with the requested 32-bit data block which is always followed by a 16-bit up link CRC (CRC_u) to ensure data and address integrity. A read protected or non-existent memory block will return a block of 1 data bits (FFFF FFFF). A suc- cessful execution of a LoginRead command is necessary before reading a protected memory block. It should be noted that the 16-bit CRC_u is generated from both the block address parameter and retrieved data. So that it acts as a check for the complete command transaction. From the received CRC_u, the interrogator can ensure that the data is correct and that it was read from the correct requested block address. Note: 1. optional
7.3 Read Multiple Blocks
A Read Multiple Blocks command is executed on a tag in the Selected state. It serially reads an array of consecutive 32-bit tag data blocks from a start address through to and including an end address. A downlink CRC (CRC_d) can be optionally included. This acts as a check for both block address parameters. If included the tag will always check the CRC_d and abort the com- mand if it is not compatible with the receiv ed addresses. If omitted, the tag will perform no downlink CRC check. The tag responds to a read command with the requested 32-bit data blocks which are always followed by a single 16-bit up link CRC (CRC_u) to ensure data and address integrity. A read protected or non-existent memory block will return a block of 1 data bits (FFFF FFFF). A suc- cessful execution of a LoginRead command is necessary before reading a memory array including protected memory blocks. It should be noted that the 16 bit CRC_u is gene rated from both the ad dress parameters and retrieved data so that it acts as a check for the complete command transaction. From the received CRC_u, the interrogator can ensure that the data is correct and that it was read from the correct requested block address range. Table 7-3. Interrogator Command Parameters Command Parameter 1 CRC (optional) Read Single Block = 00 01 Block Address CRC_d (Block Addr) 4 bits 6 bits (MSB first) 16 bits (MSB first) Table 7-4. Tag Response SOF Data CRC Start of Frame Data Block CRC_u (Block Addr + [CRC_d (1)] +Data) 3 .. 10-bit periods 32 bits (MSB first) 16 bits (MSB first)
4681D–RFID–08/08 ATA5558
7.4 Write Single Block
The Write Single Block command only effects tag(s) which have been previously been put in the Selected state. It performs the programming of a specific block address with a 32-bit block of data and associated lock bit. For password protected memory blocks the LoginWrite command has to be executed first, otherwise the progra mming will fail and an error code will be returned. Memory blocks which have a 1 in the lock bit are locked and cannot be written. The command protocol includes downlink CRC (CRC_d) whic h is used to check the downlink address and data. This CRC_d can be mandatory or optional depending on the state of bit 10 of the configu- ration register. If set to 1, the CRC_d must always be included and correct for the data programming to take place. If set to 0, the CRC_d is optional i.e. it is only checked if the CRC data is present. On receiving the Write command, and if necessary checking th e CRC_d, the tag will start the EEPROM programming sequence. The maximum EEPROM program time per block (including the lock bit) is 6 ms. This programming cycle includes an automatic read verification phase which makes sure that the data has been program med securely thus ensuring satisfactory long term data retention. To signal the completion of a successful programming cycle, the tag returns a single SOF pattern. If for any reason the programming of the data block fails, the tag will generate the corresponding error code. The error code bits are dual pattern coded (see Figure 3-1 on page 10 ) and pre- ceded by a SOF pattern. An attempt to write to a locked block address or a downlink CRC error causes an immediate abort of the programming cycle followed by the transmission of the corre- sponding error response. In the case of an EEPROM data verification failure, the error response is returned after the completion of the programming cycle. Note: 1. The downlink CRC (CRC_d) must be appe nded if bit 10 of the configuration register = 1, oth- erwise it is optional. Table 7-5. Interrogator Command Parameters Command Parameter 1 Parameter 2 CRC (optional) Read = 00 01 Start Block Address End Block Address CRC_d (Start Block Addr + End Block Addr) 4 bit 6 bits (MSB first) 6 bits (MSB first) 16 bits (MSB first) Table 7-6. Tag Response SOF Data CRC Start of Frame Multiple Data Blocks CRC_u (Start Block Addr + End Block Addr + [CRC_d*] + Data) 3 .. 10-bit period ((EndAddr – StartAddr + 1) × 32) bits (MSB first) 16 bits (MSB first) Table 7-7. Interrogator Command Parameters Command Parameter 1 Parameter 2 Parameter 3 CRC (1) Write Single Block = 00 01 Block Address 0 + Lock bit Write Data CRC_d (Block Addr + Lock + Data) 4 bits 6 bits (MSB first) 2 bits 32 bits (MSB first) 16 bits (MSB first)
4681D–RFID–08/08 ATA5558
7.5 LoginRead
The purpose of the LoginRead command is to rel ease the read protection on all read protected data blocks within the user memory. A tag in the Selected state will respond with a SOF pattern if the transmitted read password matches the dat a stored in the tag’s system memory block 36hex (Read PWD). In the case of a non-matching read pa ssword the tag will reply with a SOF pattern followed by an error code. After a successful LoginRead command, all read protected memory blocks may be read normally. This positive login status remains valid until a new tag is selected or the tag is reset.
7.6 LoginWrite
The purpose of the LoginWrite command is to release the write protection on all write protected data blocks within the user memory. A tag in the Selected state responds with a SOF pattern if the transmitted write password matches the data stored in the tag’s system memory block 37hex (Write PWD). In the case of a non-matching wr ite password the tag w ill reply with an SOF fol- lowed by an error code. After a successful LoginWrite command any write protected memory block may be modified, as long as the addressed memory block is not already locked. The posi- tive login status is valid until a new tag is selected or the tag is reset. Table 7-8. Tag Response SOF Error Flags Start of Frame Present on error only 3 .. 10-bit period 4-bit – dual pattern code Table 7-9. Interrogator Command Parameters Command Parameter 1 Parameter 2 Parameter 3 LoginRead = 00 01 11 01 10 (36hex) 10 Read Password 4 bits 6 bits (MSB first) 2 bits 32 bit (MSB first) Table 7-10. Tag Response SOF Error Flags Start of Frame Present on error only 3 .. 10-bit period 4-bit – dual pattern code Table 7-11. Interrogator Command Parameters Command Parameter 1 Parameter 2 Parameter 3 LoginWrite = 00 01 11 01 11 (37hex) 10 Write Password 4 bits 6 bits (MSB first) 2 bits 32 bits (MSB first) Table 7-12. Tag Response SOF Error Flags Start of Frame Present on error only 3 .. 10-bit period 4-bit – dual pattern code
4681D–RFID–08/08 ATA5558
7.7 ResetSelected
A ResetSelected command will set all currently selected tag(s) back into the ITF mode’s READY state. The tag(s) answers with a SOF pattern and will be able to participate in future anticollision sequences. If either PM or EAS is enabled , this command will not return a selected back into public Mode Ready State ,i.e., the device will not start to transmit public mode data.
7.8 ResetToReady
In ITF mode, a ResetToR eady command will set all tags within range of the RF field back into the Ready state. If either PM or EAS is enabled, the ResetToReady will set the tag back into the PM Ready state where it will start to transmit PM data. All tags will answer with the SOF pattern. In READY state they can then participate in future anticollision sequences. The ResetToReady command reloads the configuration register from system memory block #63.
7.9 Select
When receiving a Select command, the addressed tag responds with the 16 bit CRC of the Tag ID and immediately enters the Selected state. After selection, the interrogator may communicate with the selected tag using any valid Read, Write or Login commands. If the interrogator sends a new GetID or Select (another tag) com- mand, the currently selected tag enters the Quiet state automatically. Table 7-13. Interrogator Command Command ResetSelected = 00 11 10 00 00 10 bits Table 7-14. Tag Response SOF Start of Frame 3 .. 10 bit-period Table 7-15. Interrogator Command Command ResetToReady = 00 11 00 00 00 10 bits Table 7-16. Tag response SOF Start of Frame 3 .. 10-bit period
4681D–RFID–08/08 ATA5558
7.10 GetID
When receiving a general GetID command, all ta gs in the READY stat e will enter the anticolli- sion loop and take part in the deterministic arbi tration sequence All activated tags will reply synchronously with the same anticollision response. This specific anticollision signature consists of a SOF pattern followed by subsequent dual pattern coded Tag ID bit(s) as illustrated in Figure 3-1 on page 10 and Figure 6-3 on page 23.
7.11 Get_ID (Partial Tag ID)
Any anticollision loop starts with the interrogator’s GetID command. All tags in the READY state with a matching partial Tag ID will reply syn chronously with their own personal anticollision response. This consists of an initial SOF pattern followed by the Tag ID bit(s) in dual pattern coding which continue until the complete Tag ID has been sent or until the tag is eliminated from the search. Table 7-17. Interrogator Command Parameters Command Parameter Select = 00 00 00 Tag ID 6 bits <Length (Tag ID)> bits (MSB first) Table 7-18. Tag Response SOF CRC Start of Frame CRC_u (Tag ID) 3 .. 10-bit period 16 bits (MSB first) Table 7-19. Interrogator Command Command GetID = 00 00 00 6 bits Table 7-20. Tag Response SOF Subsequent Tag ID Bit(s) Start of Frame Dual pattern code 3 .. 10-bit period <n> × 2 bits periods (MSB first) Table 7-21. Interrogator Command Parameters (Even Number of (n) Known Tag ID Bits) Command Parameter 6 bits <n> bits (MSB first); where n = 2, 4, 6, 8....
4681D–RFID–08/08 ATA5558
7.12 SelectAll
When receiving the SelectAll command, all tags in the READY state will enter the Selected state and answer with the SOF pattern. This allows the rapid global configuration and personalization of a collection of tags without having to select and program each tag sequentially. Table 7-22. Interrogator Command Parameters (Odd Number of (n) Known Tag ID Bits) Command Parameter 5 bits <n> bits (MSB first); where n = 1, 3, 5, 7, .. Table 7-23. Tag Response SOF Subsequent Tag ID bit(s) Start of Frame Dual pattern code 3 .. 10-bit period <m – n> × 2 bits periods Table 7-24. Interrogator Command Command SelectAll = 00 10 00 6 bits Table 7-25. Tag Response SOF Start of Frame 3 .. 10-bit period
4681D–RFID–08/08 ATA5558
7.13 SelectGroup
When receiving the SelectGroup command, all tags in the READY state with the matching par- tial Tag ID will enter the Selected state and answer with the SOF pattern. The partial Tag ID can vary in length. It’s pattern position relative to the Tag ID is set by the first (leftmost) 1 in the com- mand parameter. The preceeding 0 bits act solely as “don’t care” spacer bits. This “mask header” is not part of the actual partial Tag ID. The mask pattern follows the mask header and is terminated by the end of command. Leading 0 don’t care mask bits + 1 = mask header (not part of Partial Tag ID) X = don’t care mask bits Example of SelectGroup Parameters: Sample Tag ID 6CB9 : 01 10 11 00 10 11 10 01 The above Tag ID would be selected by all the following GroupSelect command parameters: 1) Command Parameter: Partial Tag ID: 0 00 00 00 1 0 10 11 XX XX XX X0 10 11 XX XX 2) Command Parameter: Partial Tag ID: 0 00 00 00 00 01 11 10 XX XX XX XX XX 11 10 XX 3) Command Parameter: Partial Tag ID: 0 00 00 00 00 00 00 00 11 XX XX XX XX XX XX XX X1 4) Command Parameter: Partial Tag ID: 1 01 10 11 00 01 10 11 00 XX XX XX Table 7-26. Interrogator Command Parameters Command Parameter 1 Parameter 2 SelectGroup = 00 10 0 Mask header: <m–1> × 0 + 1 Partial Tag ID 5 bits <m> bits, (m = 1 .. Tag ID length) <n> bits, (1 .. Tag IDTag ID length) Table 7-27. Tag Response SOF Start of Frame 3 .. 10-bit period
4681D–RFID–08/08 ATA5558
7.14 SelectNGroup
When receiving the SelectNGroup command, all tags in the READY state which do not match the partial Tag ID will enter the Selected state and answer with the SOF pattern. The partial Tag ID can vary length. It’s pattern position relative to the Tag ID is set by the first (leftmost) 1 in the command parameter. The preceeding 0 bits act solely as ”don’t care” spacer bits. This “mask header” is not part of the actual partial Tag ID. The mask pattern follows the mask header and is terminated by the end of command. Leading 0 don’t care mask bits + 1 = mask header (not part of Partial Tag ID) X = don’t care mask bits Example of SelectNGroup Parameters: Sample Tag ID 6CB9 : 01 10 11 00 10 11 10 01 The above Tag ID would be selected by all the following GroupNSelect command parameters: 1) Command Parameter: Partial Tag ID: 0 00 00 00 1 0 00 11 XX XX XX X0 00 11 XX XX 2) Command Parameter: Partial Tag ID: 0 00 00 00 00 01 11 11 XX XX XX XX XX 11 11 XX 3) Command Parameter: Partial Tag ID: 0 00 00 00 00 00 00 00 10 XX XX XX XX XX XX XX X0 4) Command Parameter: Partial Tag ID: 1 00 10 11 00 10 11 10 01 00 10 11 00 10 11 10 01 Table 7-28. Interrogator Command Parameters Command Parameter 1 Parameter 2 SelectGroup = 00 10 1 Mask header: <m–1> × 0 + 1 Matching pattern section of Tag ID 5 bits <m> bits; m = 1 .. Tag ID length – 2 <n> bits; n = 2 .. Table 7-29. Tag Response SOF Start of Frame 3 .. 10-bit period
4681D–RFID–08/08 ATA5558
7.15 ArmClear
A selected tag, when receiving the ArmClear command with the Master Key NOT set to 6 will prepare the device for a subsequent ClearAll command. If this command is followed by any command other than a ClearAll, it will become disarmed. In which case the ArmClear must be repeated before a ClearAll can be successfully executed.
7.16 ClearAll
Tags in the Selected state, if previously armed by the ArmClear command will clear all memory blocks and their lock bits with the exceptio n of the traceability data blocks (see Figure 2-3 on page 4 in “Memory” section). The ClearAll command includes an EEPROM programming sequence. The maximum EEPROM programming time is 6 ms. On completion of a successful clear the tag replies with a single SOF pattern. If for any reason the clear operation fails, the tag will generate the corresponding error code. The error code bits are dual pattern coded (see Figure 3-2 on page 11 and Table 7-2 on page 26 ) and are preceded by a SOF pattern. If the constant downlink checksum CRC_d (if appended) is incorrect, the clear operation is aborted and an error response is returned immediately. Table 7-30. Interrogator Command Command Parameter ArmClear = 00 11 00 10 00 00 00 00 10 bits 6 bits Table 7-31. Tag Response SOF Start of Frame 3 .. 10-bit period Table 7-32. Interrogator Command Parameters Command Parameter 1 Parameter 2 Parameter 3 CRC (Optional) ClearAll = 00 01 01 11 11 00 32 × 0 bits CRC_u = 96ADh 4 bits 6 bits 2 bits 32 bits 16 bits Table 7-33. Tag Response SOF Error Flags Start of Frame Present on error only 3 .. 10-bit period 4-bit – dual pattern code
4681D–RFID–08/08 ATA5558 8. Absolute Maximum Ratings Stresses beyond those listed under “Absolute Maximum Ratings” may cause permanent damage to the device. This is a stress rating only and functional operation of the device at these or any other conditions beyond those indicated in the operational sections of this specification is not implied. Exposure to absolute maximum rating conditions for extended periods may affect device reliability. Parameters Symbol Value Unit Maximum DC current into Coil 1/Coil 2 I coil 20 mA Maximum AC current into Coil 1/Coil 2 f = 125 kHz I coil p 20 mA Power dissipation (dice) (free-air condition, time of application: 1 s) P tot 100 mW Electrostatic discharge maximum to MIL–Standard 883 C method 3015 V max 2000 V Operating ambient temperature range T amb –40 to +85 °C Storage temperature range (data retention reduced) T stg –40 to +150 °C 9. Electrical Characteristics Tamb = +25°C; fcoil = 125 kHz; unless otherwise specified No. Parameters Test Conditions Symbol Min. Typ. Max. Unit Type*
1 RF frequency range f RF 100 125 200 kHz
2.1 Supply current
(without current consumed by the external LC tank circuit) Tamb = 25°C(3) (see Figure 9-1 on page 37) IDD 35 µ A T
2.2 Read – full temperature
range 47 µ A Q
2.3 Program EEPROM 25 40 µA Q
3.1 Coil voltage (AC supply) Read, Select, Login command(2) 6V clamp VQ
3.2 Write/program EEPROM (2) 6V clamp VQ
4 Start-up time V coil pp =6 V t startup 2.5 3 ms Q
5 Clamp voltage 10 mA current into
Vclamp/Tamb –7.5 mV/K Q 6.1 Modulation parameters Vcoilpp = 6V on test circuit generator and modulation ON(4) Vmod pp 4.2 5 V T
6.2 I mod pp 2m A T
*) Type means: T: directly or indirectly tested during production; Q: guaranteed based on initial product qualification data Notes: 1. EEPROM device performance can be influenced by subsequen t customer assembly processes especially if subjected to high temperatures or mechanical stress conditions. So Atmel confirms these parameters only for devices as they leave the Atmel production, as sawn wafers on foil or diced wafers in tray, etc. 2. Current into Coil 1/Coil 2 is limited to 10 mA. The damping charac teristics are defined by the internally limited supply volt- age (= minimum AC coil voltage). IDD =( VOUTmax –V CLK)/R 4. V mod measurement setup: R = 1 kΩ; VCLK = 3 V; setup with modulation enabled (see Figure 9-1 on page 37). 5. The tolerance of the on-chip resonance capacitor is ±12% at 3s over whole production. The capacitor tolerance is ±3% at 3σ on a wafer basis.
4681D–RFID–08/08 ATA5558 Figure 9-1. Measurement Setup for Vmod
7 Programming time
(36 + 648 internal clocks) T prog 55 . 7 6 m s T
8 Endurance Erase all/Write all (1) ncycle 100000 Cycles Q
9.1 Data retention Top = 55° C(1) tretention 10 20 50 Y ears
9.2 Top = 150 ° C(1) tretention 96 hrs T
9.3 Top = 250 ° C(1) tretention 24 hrs Q
10 Resonance capacitor Mask option (5) Cr
- Electrical Characteristics (Continued) Tamb = +25°C; fcoil = 125 kHz; unless otherwise specified No. Parameters Test Conditions Symbol Min. Typ. Max. Unit Type* *) Type means: T: directly or indirectly tested during production; Q: guaranteed based on initial product qualification data Notes: 1. EEPROM device performance can be influenced by subsequen t customer assembly processes especially if subjected to high temperatures or mechanical stress conditions. So Atmel confirms these parameters only for devices as they leave the Atmel production, as sawn wafers on foil or diced wafers in tray, etc. 2. Current into Coil 1/Coil 2 is limited to 10 mA. The damping charac teristics are defined by the internally limited supply volt- age (= minimum AC coil voltage). IDD =( VOUTmax –V CLK)/R 4. V mod measurement setup: R = 1 kΩ; VCLK = 3 V; setup with modulation enabled (see Figure 9-1 on page 37). 5. The tolerance of the on-chip resonance capacitor is ±12% at 3s over whole production. The capacitor tolerance is ±3% at 3σ on a wafer basis. Coil 1 ATA5558 Coil 2 Substrate V CLK R 750 750 BAT68 BAT68
4681D–RFID–08/08 ATA5558
10.1 Available Order Codes
10.2 Engineering Samples
Die-samples are supplied 50 pcs. Each in waffle pack, with standard part number applied. 10. Ordering Information ATA5558 a b - x x x Package - DDB - DDT 6” sawn wafer on blue foil with ring, thickness 150 µm (approx. 6 mil) Die in waffle pack, 150 µm (approx. 6 mil), planned Drawing See Figure 10-2 on page 40 See Figure 10-3 on page 41 Type
11 Standard pads without on-chip C
- DDB - DBB -DDT 6” sawn wafer on blue foil with ring, thickness 150 µm (approx. 6 mil) 6” sawn wafer on blue foil with ring and Goldbumps 25 µm, thickness 150 µm (approx. 6 mil) Die in waffle pack, 150 µm (approx. 6 mil), planned Drawing See Figure 10-4 on page 42 See Figure 10-5 on page 43 See Figure 10-6 on page 44 and Figure 10-7 on page 45 Type Mega Pads with on-chip 80 pF Mega Pads with on-chip 210 pF ATA5558 a b - x x x Package - PP - PAE Plastic transponder NOA3 micromodule with 330 pF lead-free, planned Drawing See Figure 10-9 on page 47 See Figure 10-8 on page 46 Type
4681D–RFID–08/08 ATA5558
10.3 Delivery Pre-configuration
The ATA5558 is delivered in a pre-programmed state. The traceability blocks (59-61) contain unique non erasable traceability data as described in section “Traceability Data” on page 5. The remaining memory contains erasable demonstration data which can be replaced by customer data after having been cleared using a sequence of Select, ArmClear and ClearAll commands. the demonstration data represents the following device configuration: Block 63 contains configuration data representi ng Public Mode, FDX-B Modulation, a data rate of RF/32, a Tag ID length of 64 bits, pream ble value of 7 and a maximum public mode block value (Maxblock) of 3. Blocks 0-3 contain an FDX-B encoded animal ID code in accordance with ISO 11784 represent- ing a National ID code 000123456789 and country code 999. The Tag ID blocks 56-57 contai n a direct copy of the unique traceability data held in blocks 59-60 thus each delivered device will have it’s own 64 bit unique Tag ID code with which anticol- lision arbitration can be demonstrated. All other blocks are erased.
10.4 Ordering Exam ples (Recommended)
ATA555811 - Tested dice on unsawn 6” wafer, thickness 300 µm, no on-chip capacitor, no damping during POR initialization.
10.5 Package Information
Figure 10-1. 2 Pad Layout for Wire Bonding Dimensions in µm ATA5558 650 186 186 100 1630 274 1300
4681D–RFID–08/08 ATA5558 Figure 10-2. 6” Sawn Wafer on Blue Foil with Ring (Type 11, Standard Pads)
4681D–RFID–08/08 ATA5558 Figure 10-3. Die in Waffle Pack (Type 11, Standard Pads)
4681D–RFID–08/08 ATA5558 Figure 10-4. 6” Sawn Wafer on Blue Foil with Ring (Type 12/14, Mega Pads)
4681D–RFID–08/08 ATA5558 Figure 10-5. 6” Sawn Wafer on Blue Foil with Ring and Goldbumps 25 µm (Type 12/14, Mega Pads)
4681D–RFID–08/08 ATA5558 Figure 10-6. Die in Waffle Pack (Type 12/14, Mega Pads)
4681D–RFID–08/08 ATA5558 Figure 10-7. Die in Waffle Pack and Goldbumps 25 µm (Type 12/14, Mega Pads)
4681D–RFID–08/08 ATA5558 Figure 10-8. NOA3 Micromodule Note 2 Note 4 8-0.02 8.1±0.03 5.1±0.05 1.42±0.05 specifications according to DIN technical drawings Dimensions in mm Note: 1. Reject hole by testing device 2. Punching cutline recommendation for singulation 3. Total package thickness exclusive punching burr 4. Module dimension after electrical disconnection Issue: 1; 28.04.06 Subcontractor: NedCard Drawing refers to following types: Micromodule NOA-3 Drawing-No.: 6.549-5035.01-4 9.5±0.03 4.8±0.05 5.15±0.03 1.42±0.05 4.75+0.02 0.05 B 0.03 4.625 1.585 2.515 6.265 12.165 15.915 31.83 21.815 Note 1 Note 2 5.06±0.03 R1.5±0.03 R1.1±0.03 (4x) R0.2 max. Note 4 0.09-0.01 0.38-0.035 Note 3 A X X5:1 2.375 2.375 B 25.565 BA 0.03 B 0.05 A ∅ 2±0.05
4681D–RFID–08/08 ATA5558 Figure 10-9. Plastic Transponder Package: Transponder Dimensions in mm specifications according to DIN technical drawings Issue: 1; 14.07.97 Drawing-No.: 6.549-5030.01-4 4.2±0.1 5.7±0.1 11.9±0.1 4.9±0.2 12.1±0.1 5.9±0.1 1±0.2 ×45˚ ±2˚ 7˚±2˚ 7˚±2˚ 4.4±0.1 1.1±0.1 3±0.1
4681D–RFID–08/08 Headquarters International Atmel Corporation
2325 Orchard Parkway
San Jose, CA 95131 USA Tel: 1(408) 441-0311 Fax: 1(408) 487-2600 Atmel Asia Room 1219 Chinachem Golden Plaza
77 Mody Road Tsimshatsui
Tel: (852) 2721-9778 Fax: (852) 2722-1369 Atmel Europe Le Krebs 8, Rue Jean-Pierre Timbaud BP 309 78054 Saint-Quentin-en-Yvelines Cedex France Atmel Japan 9F, Tonetsu Shinkawa Bldg. 1-24-8 Shinkawa Chuo-ku, Tokyo 104-0033 Japan Tel: (81) 3-3523-3551 Fax: (81) 3-3523-7581 Product Contact Web Site www.atmel.com Technical Support rfid@atmel.com Sales Contact www.atmel.com/contacts Literature Requests www.atmel.com/literature Disclaimer: The information in this document is provided in connection with Atmel products. No license, express or implied, by estoppel or otherwise, to any intellectual property right is granted by this document or in connection with the sale of Atmel products. EXCEPT AS SET FORTH IN ATMEL ’S TERMS AND CONDI- TIONS OF SALE LOCATED ON ATMEL ’S WEB SITE, ATMEL ASSUMES NO LI ABILITY WHATSOEVER AND DISCLAIMS ANY EXPRESS, IMPLIED OR STATUTOR Y WARRANTY RELATING TO ITS PRODUCTS INCLUDING, BUT NOT LIMITED TO, THE IMPLIED WARRANTY OF MERCHANTABILITY, FITNESS FOR A PARTICU LAR PURPOSE, OR NON-INFRINGEMENT. IN NO EVENT SHALL ATMEL BE LIABLE FOR ANY DIRECT, INDIRECT, CONSEQUENTIAL, PUNITIVE, SPECIAL OR I NCIDEN- TAL DAMAGES (INCLUDING, WITHOUT LIMITATION, DAMAGES FOR LOSS OF PROFITS, BUSINESS INTERRUPTION, OR LOSS OF INFORMATION) ARISING OUT OF THE USE OR INABILITY TO USE THIS DOCUMENT, EVEN IF ATME L HAS BEEN ADVISED OF THE POSSIBILITY OF SUCH DAMAGES. Atmel makes no representations or warranties with respect to the accuracy or comp leteness of the contents of this document and reserves the rig ht to make changes to specifications and product descriptions at any time without notice. Atmel does not make any commitment to update the information contained her ein. Unless specifically provided otherwise, Atmel products are not suitable for, and shall not be used in, automotive applications. Atmel’s products are not int ended, authorized, or warranted for use as components in applications in tended to support or sustain life. © 2008 Atmel Corporation. All rights reserved. Atmel ®, logo and combinations thereof, IDIC ® and others are registered trademarks or trade- marks of Atmel Corporation or its subsidiaries. Other terms and product names may be trademarks of others.