BS ISO IEC 19792-2009 Information technology - Security techniques - Security evaluation of biometrics《信息技术 安全技术 生物统计学的安全评估》.pdf
《BS ISO IEC 19792-2009 Information technology - Security techniques - Security evaluation of biometrics《信息技术 安全技术 生物统计学的安全评估》.pdf》由会员分享,可在线阅读,更多相关《BS ISO IEC 19792-2009 Information technology - Security techniques - Security evaluation of biometrics《信息技术 安全技术 生物统计学的安全评估》.pdf(46页珍藏版)》请在麦多课文档分享上搜索。
1、BS ISO/IEC 19792:2009 ICS 35.040 NO COPYING WITHOUT BSI PERMISSION EXCEPT AS PERMITTED BY COPYRIGHT LAW BRITISH STANDARD Information technology Security techniques Security evaluation of biometricsThis British Standard was published under the authority of the Standards Policy and Strategy Committee
2、on 31 August 2009 BSI 2009 ISBN 978 0 580 53797 4 Amendments/corrigenda issued since publication Date Comments BS ISO/IEC 19792:2009 National foreword This British Standard is the UK implementation of ISO/IEC 19792:2009. The UK participation in its preparation was entrusted to Technical Committee IS
3、T/33, IT - Security techniques. A list of organizations represented on this committee can be obtained on request to its secretary. This publication does not purport to include all the necessary provisions of a contract. Users are responsible for its correct application. Compliance with a British Sta
4、ndard cannot confer immunity from legal obligations.BS ISO/IEC 19792:2009Reference number ISO/IEC 19792:2009(E) ISO/IEC 2009INTERNATIONAL STANDARD ISO/IEC 19792 First edition 2009-08-01 Information technology Security techniques Security evaluation of biometrics Technologies de linformation Techniqu
5、es de scurit Cadre de la scurit pour lvaluation et le test de la technologie biometrique BS ISO/IEC 19792:2009 ISO/IEC 19792:2009(E) PDF disclaimer This PDF file may contain embedded typefaces. In accordance with Adobes licensing policy, this file may be printed or viewed but shall not be edited unl
6、ess the typefaces which are embedded are licensed to and installed on the computer performing the editing. In downloading this file, parties accept therein the responsibility of not infringing Adobes licensing policy. The ISO Central Secretariat accepts no liability in this area. Adobe is a trademar
7、k of Adobe Systems Incorporated. Details of the software products used to create this PDF file can be found in the General Info relative to the file; the PDF-creation parameters were optimized for printing. Every care has been taken to ensure that the file is suitable for use by ISO member bodies. I
8、n the unlikely event that a problem relating to it is found, please inform the Central Secretariat at the address given below. COPYRIGHT PROTECTED DOCUMENT ISO/IEC 2009 All rights reserved. Unless otherwise specified, no part of this publication may be reproduced or utilized in any form or by any me
9、ans, electronic or mechanical, including photocopying and microfilm, without permission in writing from either ISO at the address below or ISOs member body in the country of the requester. ISO copyright office Case postale 56 CH-1211 Geneva 20 Tel. + 41 22 749 01 11 Fax + 41 22 749 09 47 E-mail copy
10、rightiso.org Web www.iso.org Published in Switzerland ii ISO/IEC 2009 All rights reservedBS ISO/IEC 19792:2009 ISO/IEC 19792:2009(E) ISO/IEC 2009 All rights reserved iiiContents Page Foreword iv 1 Scope1 2 Conformance .2 3 Normative references2 4 Terms and definitions .2 4.1 General .2 4.2 Biometric
11、 systems.4 4.3 Biometric processes .5 4.4 Error rates 7 4.5 Statistical8 5 Abbreviated terms .8 6 Security evaluation9 6.1 Overview.9 6.2 Methodology 9 7 Error rates of biometric systems .10 7.1 Introduction10 7.2 Concept Testing security-relevant error rates 11 8 Vulnerability assessment .19 8.1 In
12、troduction19 8.2 Vulnerability assessment .19 8.3 Common vulnerabilities of biometric systems 21 9 Privacy29 9.1 Overview.29 Annex A (informative) Reference model of a biometric system.31 Bibliography37 BS ISO/IEC 19792:2009 ISO/IEC 19792:2009(E) iv ISO/IEC 2009 All rights reservedForeword ISO (the
13、International Organization for Standardization) is a worldwide federation of national standards bodies (ISO member bodies). The work of preparing International Standards is normally carried out through ISO technical committees. Each member body interested in a subject for which a technical committee
14、 has been established has the right to be represented on that committee. International organizations, governmental and non-governmental, in liaison with ISO, also take part in the work. ISO collaborates closely with the International Electrotechnical Commission (IEC) on all matters of electrotechnic
15、al standardization. International Standards are drafted in accordance with the rules given in the ISO/IEC Directives, Part 2. The main task of technical committees is to prepare International Standards. Draft International Standards adopted by the technical committees are circulated to the member bo
16、dies for voting. Publication as an International Standard requires approval by at least 75 % of the member bodies casting a vote. Attention is drawn to the possibility that some of the elements of this document may be the subject of patent rights. ISO shall not be held responsible for identifying an
17、y or all such patent rights. ISO/IEC 19792 was prepared by Technical Committee ISO/TC JTC1, Information technology, Subcommittee SC 27, IT Security techniques. BS ISO/IEC 19792:2009 INTERNATIONAL STANDARD ISO/IEC 19792:2009(E) ISO/IEC 2009 All rights reserved 1Information technology Security techniq
18、ues Security evaluation of biometrics 1 Scope This International Standard specifies the subjects to be addressed during a security evaluation of a biometric system. It covers the biometric-specific aspects and principles to be considered during the security evaluation of a biometric system. It does
19、not address the non-biometric aspects which might form part of the overall security evaluation of a system using biometric technology (e.g. requirements on databases or communication channels). This International Standard does not aim to define any concrete methodology for the security evaluation of
20、 biometric systems but instead focuses on the principal requirements. As such, the requirements in this International Standard are independent of any evaluation or certification scheme and will need to be incorporated into and adapted before being used in the context of a concrete scheme. This Inter
21、national Standard defines various areas that are important to be considered during a security evaluation of a biometric system. These areas are represented by the following clauses of this International Standard: Clauses 4 and 5 of this International Standard give an overview of all terms, definitio
22、ns and acronyms used, Clause 6 introduces the overall concept for a security evaluation of a biometric system, Clause 7 describes statistical aspects of security-relevant error rates, Clause 8 deals with the vulnerability assessment of biometric systems and Clause 9 describes the evaluation of priva
23、cy aspects. This International Standard is relevant to both evaluator and developer communities. It specifies requirements for evaluators and provides guidance on performing a security evaluation of a biometric system. It serves to inform developers of the requirements for biometric security evaluat
24、ions to help them prepare for security evaluations. Although this International Standard is independent of any specific evaluation scheme it could serve as a framework for the development of concrete evaluation and testing methodologies to integrate the requirements for biometric evaluations into ex
- 1.请仔细阅读文档,确保文档完整性,对于不预览、不比对内容而直接下载带来的问题本站不予受理。
- 2.下载的文档,不会出现我们的网址水印。
- 3、该文档所得收入(下载+内容+预览)归上传者、原创作者;如果您是本文档原作者,请点此认领!既往收益都归您。
下载文档到电脑,查找使用更方便
5000 积分 0人已下载
下载 | 加入VIP,交流精品资源 |
- 配套讲稿:
如PPT文件的首页显示word图标,表示该PPT已包含配套word讲稿。双击word图标可打开word文档。
- 特殊限制:
部分文档作品中含有的国旗、国徽等图片,仅作为作品整体效果示例展示,禁止商用。设计者仅对作品中独创性部分享有著作权。
- 关 键 词:
- BSISOIEC197922009INFORMATIONTECHNOLOGYSECURITYTECHNIQUESSECURITYEVALUATIONOFBIOMETRICS 信息技术 安全技术 生物 统计学

链接地址:http://www.mydoc123.com/p-396527.html