首页> 外文会议>International Joint Conference on e-Business and Telecommunications >Private eyes: Secure remote biometric authentication
【24h】

Private eyes: Secure remote biometric authentication

机译:私人眼睛:安全远程生物认证

获取原文

摘要

We propose an efficient remote biometric authentication protocol that gives strong protection to the user's biometric data in case of two common kinds of security breaches: (1) loss or theft of the user's token (smart card, handheld device, etc.), giving the attacker full access to any secrets embedded within it; (2) total penetration of the server. Only if both client and server are simultaneously compromised is the user's biometric data vulnerable to exposure. The protocol works by encrypting the user's biometric template in a way that allows it to be used for authentication without being decrypted by either token or server. Further, the encrypted template never leaves the token, and only the server has the information that would enable it to be decrypted. We have implemented our protocol using two iris recognition libraries and evaluated its performance. The overall efficiency and recognition performance is essentially the same compared to an unprotected biometric system.
机译:我们提出了一个有效的远程生物认证协议,为用户的生物识别数据提供了强烈的保护,例如两个常见的安全漏洞:(1)用户令牌的丢失或盗窃(智能卡,手持设备等),给出攻击者完全访问嵌入其中的任何秘密; (2)服务器的总渗透。仅当客户端和服务器都同时损害时,用户的生物识别数据才容易受到曝光。该协议通过以允许它用于身份验证的方式加密用户的生物识别模板,而不被令牌或服务器解密。此外,加密模板永远不会离开令牌,并且只有服务器都具有使其解密的信息。我们使用两个虹膜识别库实施了我们的协议,并评估其性能。与未受保护的生物识别系统相比,整体效率和识别性能基本相同。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号