Smart credentials

13.56 MHz · DESFire EV3 Blank / provisioning

MIFARE DESFire EV3 blank cards

DESFire EV3 credentials for new secure deployments and authorised credential personalisation. An existing secured DESFire card cannot be copied without the access-control operator’s application keys.

MIFARE DESFire EV3 blank cards
Blank / provisioning

For new deployments or authorised credential issuance. Existing secured cards are not copied.

What is a MIFARE DESFire EV3 blank card?

A MIFARE DESFire EV3 blank card is an unpersonalized 13.56 MHz ISO 14443-4 smart card with AES-128 cryptography, a Common Criteria EAL5+ certified chip platform and 2K, 4K or 8K of multi-application memory. American Key Cards supplies EV3 as blank stock for your system’s authorized personalization — existing secured DESFire cards cannot be copied without the operator’s application keys, so all supply is new issuance, quoted to your deployment.

Overview

About DESFire EV3

When a new access-control, campus or transit deployment specifies "secure contactless," it is specifying DESFire. The EV3 generation carries AES-128 cryptography, a multi-application file system that lets one card serve door access, payment and transit simultaneously, and the certifications enterprise security reviews expect. This is the credential we recommend when the honest answer to "can our cards be cloned?" needs to be no.

We supply EV3 as blank stock for your system’s authorized personalization — including SALTO installations commissioned on DESFire — and the flip side of real security is stated on every relevant page: as of 2026, an existing secured DESFire card cannot be copied without the operator’s application keys, by us or anyone else. That is the product working correctly.

Technical details

MIFARE DESFire EV3 blank cards specifications

Frequency
13.56 MHz
Standard
ISO/IEC 14443-4 Type A, ISO/IEC 7816-4 command set
Memory options
2K, 4K or 8K bytes
Security
AES-128 (3DES supported for backward compatibility)
Certification
Common Criteria EAL5+ certified chip platform
Applications
Multi-application: access, payment, transit on one chip
UID
7-byte UID (random ID option supported)
Card dimensions
CR80 ISO/IEC 7810 ID-1 — 85.6 × 54 mm, 30 mil / 0.76 mm
Printing
Dye-sub direct-to-card printable
Ordering route
Blank stock or authorised personalisation only

Available configuration

Choose the form factor after the technology

Printable ISO card Key fob on request

Where it fits

Common DESFire EV3 applications

New corporate access systems

AES credentials for green-field deployments where security review demands modern cryptography from day one.

Universities & campus cards

One card carrying door access, dining, print and library applications in separate secured files.

Transit & fare systems

EV3’s transaction speed and security profile fit closed-loop fare collection and municipal ID programs.

High-security tenants in shared buildings

Suite-level DESFire upgrades layered over a base building’s legacy system via dual-technology cards.

Before you order

How to order DESFire EV3 correctly

  1. Memory: 2K, 4K or 8K

    Single-application door access fits 2K; multi-application campus and payment designs want 4K or 8K. Your application map decides — we help you count.

  2. Who personalizes the cards

    Blank stock gets its applications and keys written by your integrator, card office or issuance bureau. Decide the personalization route before ordering volume.

  3. Reader compatibility across generations

    EV3 is backwards-compatible with EV1/EV2 readers for existing applications, but new EV3 features need readers that speak them. We confirm your reader firmware picture first.

Compatibility reference

Find your exact reader format

Choose the matching format before ordering. These pages list the relevant reader families, OEM references and credential requirements.

Questions we actually get

DESFire EV3 FAQ

Can you clone our existing DESFire cards?

No — and neither can anyone legitimate. DESFire’s AES protection means new credentials come from authorized issuance with the operator’s keys, which is precisely why the platform is worth deploying.

EV1 and EV2 readers are installed — will EV3 cards work?

For applications written to EV1/EV2 feature levels, yes, EV3 is backwards-compatible. We verify your reader firmware and application requirements before committing stock.

Blank cards or pre-personalized — which do I need?

If you have an integrator or card office with key custody, blank stock is standard. If you are unsure who holds keys, that conversation comes before any card order — we can walk you through the options.

Is DESFire overkill for a small office?

Sometimes, and we will say so. A five-door office with low risk may be better served by simpler credentials; DESFire earns its cost where cloning risk, multi-application needs or compliance requirements are real.

Need help identifying the technology?

Send a photo of the credential and the reader model. We'll identify the format before we quote a compatible product.

Lifetime parts & workmanship guarantee on every card