...
首页> 外文期刊>International Journal on Critical Infrastructure Protection >A survey of system security in contactless electronic passports
【24h】

A survey of system security in contactless electronic passports

机译:非接触式电子护照的系统安全性调查

获取原文
获取原文并翻译 | 示例

摘要

A traditional paper-based passport contains a Machine-Readable Zone (MRZ) and a Visual Inspection Zone (VIZ). The MRZ has two lines of the holder's personal data, document data, and verification characters encoded using Optical Character Recognition font B (OCR-B). The encoded data include the holder's name, date of birth, and other identity information of the holder. The VIZ contains the holder's photo with signature and is usually placed on the data page of a paper passport. However, the MRZ and VIZ can be easily duplicated with normal document reproduction technology to produce a fake passport which can pass traditional verification. Neither of these features actively verify the holder's identity; nor do they bind the holder's identity to the document in a fool proof way. A passport also contains blank pages for visa stamps and country entry or exit dates. Any of this information can be easily altered to produce fake permissions and travel records. The electronic passport, supporting authentication using secure credentials on a tamper-resistant chip, is an attempt to improve the security of paper-based passport at minimum cost. This paper surveys security mechanisms built in first-generation electronic passports and compares them with second generation passports. It analyzes and describes the cryptographic protocols used in Basic Access Control (BAC) and Extended Access Control (EAC).
机译:传统的纸质护照包含一个机读区(MRZ)和一个视觉检查区(VIZ)。机读区有两行,分别是持有人的个人数据,文件数据和使用光学字符识别字体B(OCR-B)编码的验证字符。编码数据包括持有人的姓名,出生日期和持有人的其他身份信息。 VIZ包含持有人的签名照片,通常放在纸质护照的数据页上。但是,可以使用普通的文档复制技术轻松地复制MRZ和VIZ,以生产可以通过传统验证的假护照。这两个功能均未主动验证持有人的身份;也不会以简单的方式将持有人的身份绑定到文件。护照还包含空白页,上面有签证印章和国家入境或出境日期。任何此类信息都可以轻松更改,以产生假许可和旅行记录。电子护照支持使用防篡改芯片上的安全凭据进行身份验证,是一种尝试以最小的成本提高纸质护照的安全性的尝试。本文调查了第一代电子护照中内置的安全机制,并将其与第二代电子护照进行了比较。它分析并描述了基本访问控制(BAC)和扩展访问控制(EAC)中使用的加密协议。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号