ISO IEC 24787-2010 Information technology - Identification cards - On-card biometric comparison《信息技术 识别卡 卡上生物特征识别》.pdf
《ISO IEC 24787-2010 Information technology - Identification cards - On-card biometric comparison《信息技术 识别卡 卡上生物特征识别》.pdf》由会员分享,可在线阅读,更多相关《ISO IEC 24787-2010 Information technology - Identification cards - On-card biometric comparison《信息技术 识别卡 卡上生物特征识别》.pdf(46页珍藏版)》请在麦多课文档分享上搜索。
1、 Reference number ISO/IEC 24787:2010(E) ISO/IEC 2010INTERNATIONAL STANDARD ISO/IEC 24787 First edition 2010-12-15 Information technology Identification cards On-card biometric comparison Technologies de linformation Cartes didentification Comparaison biomtrique sur cartes ISO/IEC 24787:2010(E) PDF d
2、isclaimer This PDF file may contain embedded typefaces. In accordance with Adobes licensing policy, this file may be printed or viewed but shall not be edited unless the typefaces which are embedded are licensed to and installed on the computer performing the editing. In downloading this file, parti
3、es accept therein the responsibility of not infringing Adobes licensing policy. The ISO Central Secretariat accepts no liability in this area. Adobe is a trademark of Adobe Systems Incorporated. Details of the software products used to create this PDF file can be found in the General Info relative t
4、o the file; the PDF-creation parameters were optimized for printing. Every care has been taken to ensure that the file is suitable for use by ISO member bodies. In the unlikely event that a problem relating to it is found, please inform the Central Secretariat at the address given below. COPYRIGHT P
5、ROTECTED DOCUMENT ISO/IEC 2010 All rights reserved. Unless otherwise specified, no part of this publication may be reproduced or utilized in any form or by any means, electronic or mechanical, including photocopying and microfilm, without permission in writing from either ISO at the address below or
6、 ISOs member body in the country of the requester. ISO copyright office Case postale 56 CH-1211 Geneva 20 Tel. + 41 22 749 01 11 Fax + 41 22 749 09 47 E-mail copyrightiso.org Web www.iso.org Published in Switzerland ii ISO/IEC 2010 All rights reservedISO/IEC 24787:2010(E) ISO/IEC 2010 All rights res
7、erved iiiContents Page Foreword .v Introductionvi 1 Scope1 2 Conformance.1 3 Normative references2 4 Terms and definitions .2 5 Abbreviated terms.4 6 Architecture of biometric matching using an ICC .5 6.1 General .5 6.2 Off-card comparison .5 6.3 On-card comparison (sensor-off-card) .6 6.4 Work-shar
8、ing on-card comparison7 6.5 System-on-card comparison8 7 General framework for on-card comparison applications 8 7.1 Data for on-card comparison .8 7.1.1 General .8 7.1.2 Biometric reference object handling.8 7.1.3 Configuration data for biometric verification .9 7.1.4 Shared interface for multiple
9、applications11 7.1.5 Retry counter management15 7.2 Standard processes for on-card comparison 15 7.2.1 Application identifier (AID) for on-card biometric comparison 15 7.2.2 Read biometric reference data.15 7.2.3 Enrolment.15 7.2.4 Verification .16 7.2.5 Termination of on-card comparison application
10、16 7.2.6 Comparison process and result output 16 7.2.7 Security requirements and biometric reference management .16 7.2.8 Threshold management17 8 Work-sharing.17 8.1 Runtime work-sharing mechanism using WSR protocol17 8.2 Work-sharing management 18 8.2.1 General .18 8.2.2 Work-sharing procedure dis
11、covery.19 8.2.3 Work-sharing procedure operation .19 Annex A (normative) Common TLV-structure of the file control parameter 20 Annex B (normative) Security policies for on-card biometric comparison 21 B.1 Introduction21 B.2 Common security policies (CSP) for on-card biometric comparison22 B.3 Securi
12、ty policies (SP1) for global comparison configuration data 22 B.4 Security policies (SP2) for local comparison configuration data 23 Annex C (informative) Sample APDU for on-card comparison 24 Annex D (informative) Software shareable interface for biometrics comparison27 D.1 General.27 D.2 Shareable
13、 Interface Mechanism.27 ISO/IEC 24787:2010(E) iv ISO/IEC 2010 All rights reservedAnnex E (informative) Recommendation for security mechanisms in on-card comparison . 29 E.1 General. 29 E.2 Mutual authentication. 29 E.3 Message integrity 29 E.4 Confidentiality. 29 E.5 Prevention of replay attack usin
14、g MAC with secret key. 30 Annex F (informative) Architecture for work-sharing on-card comparison. 31 F.1 General. 31 F.2 Work-sharing architecture for on-card comparison . 31 F.3 Types of work-sharing strategy used for on-card comparison . 32 F.3.1 General. 32 F.3.2 Pre-comparison computation 32 F.3
15、.3 Work-sharing at runtime 32 F.4 Work-sharing computation protocol. 32 Annex G (informative) Examples of implementations of on-card biometric comparison mechanisms 34 G.1 Introduction. 34 G.2 Single Application, Homogeneous Usage .34 G.3 Single Application, Heterogeneous Usage 35 G.4 Multiple Appli
16、cations 35 Annex H (informative) State diagram of a card performing a WSR session when needed 37 Bibliography. 38 ISO/IEC 24787:2010(E) ISO/IEC 2010 All rights reserved vForeword ISO (the International Organization for Standardization) and IEC (the International Electrotechnical Commission) form the
17、 specialized system for worldwide standardization. National bodies that are members of ISO or IEC participate in the development of International Standards through technical committees established by the respective organization to deal with particular fields of technical activity. ISO and IEC techni
18、cal committees collaborate in fields of mutual interest. Other international organizations, governmental and non-governmental, in liaison with ISO and IEC, also take part in the work. In the field of information technology, ISO and IEC have established a joint technical committee, ISO/IEC JTC 1. Int
19、ernational Standards are drafted in accordance with the rules given in the ISO/IEC Directives, Part 2. The main task of the joint technical committee is to prepare International Standards. Draft International Standards adopted by the joint technical committee are circulated to national bodies for vo
20、ting. Publication as an International Standard requires approval by at least 75 % of the national bodies casting a vote. ISO/IEC 24787 was prepared by Joint Technical Committee ISO/IEC JTC 1, Information technology, Subcommittee SC 17, Cards and personal identification. ISO/IEC 24787:2010(E) vi ISO/
21、IEC 2010 All rights reservedIntroduction On-card biometric comparison, also known as on-card matching in ISO/IEC 7816-11:2004, is one privacy-enhanced solution employing integrated circuit cards (ICCs) and biometric technologies, and provides a more secure biometric authentication in that the biomet
22、ric comparison process is executed inside the ICC. In contrast with off-card comparison (off-card matching), on-card comparison does not need the biometric reference data in the ICC to be transferred to interface devices. Therefore, even if the ICC is lost or stolen, the biometric reference data sto
23、red on the ICC cannot be copied and remains private. ISO/IEC 7816-11 and ISO/IEC 19785-3 cover technologies concerning off-card comparison and simple on-card comparison. Most robust biometric comparison processes using biometric samples acquired in the “real” world require high computational intensi
24、ty. In contrast, CPU performance and other resources available on the ICC progress more slowly because requirements for low power consumption, small geometry of the chip, demand of low-cost cards and so on are obstacles to their more rapid advancement. Biometric sensors embedded onto the ICCs are st
- 1.请仔细阅读文档,确保文档完整性,对于不预览、不比对内容而直接下载带来的问题本站不予受理。
- 2.下载的文档,不会出现我们的网址水印。
- 3、该文档所得收入(下载+内容+预览)归上传者、原创作者;如果您是本文档原作者,请点此认领!既往收益都归您。
下载文档到电脑,查找使用更方便
10000 积分 0人已下载
下载 | 加入VIP,交流精品资源 |
- 配套讲稿:
如PPT文件的首页显示word图标,表示该PPT已包含配套word讲稿。双击word图标可打开word文档。
- 特殊限制:
部分文档作品中含有的国旗、国徽等图片,仅作为作品整体效果示例展示,禁止商用。设计者仅对作品中独创性部分享有著作权。
- 关 键 词:
- ISOIEC247872010INFORMATIONTECHNOLOGYIDENTIFICATIONCARDSONCARDBIOMETRICCOMPARISON 信息技术 识别 卡卡上 生物 特征 PDF

链接地址:http://www.mydoc123.com/p-1257130.html