Skip to main content

Smart Cards to Enhance Security and Privacy in Biometrics

  • Chapter
Security and Privacy in Biometrics

Abstract

Smart cards are portable secure devices designed to hold personal and service information for many kind of applications. Examples of the use of smart cards are cell phone user identification (e.g. GSM SIM card), banking cards (e.g. EMV credit/debit cards) or citizen cards. Smart cards and Biometrics can be used jointly in different kinds of scenarios. Being a secure portable device, smart cards can be used for storing securely biometric references (e.g. templates) of the cardholder, perform biometric operations such as the comparison of an external biometric sample with the on-card stored biometric reference, or even relate operations within the card to the correct execution and result of those biometric operations.

In order to provide the reader of the book with an overview of this technology, this chapter provides a description of smart cards, from their origin till the current technology involved, focusing especially in the security services they provide. Once the technology and the security services are introduced, the chapter will detail how smart cards can be integrated in biometric systems, which will be summarized in four different strategies: Store-on-Card, On-Card Biometric Comparison, Work-sharing Mechanism, and System-on-Card.

Also the way to evaluate the joint use of smart cards and Biometrics will be described; both at the performance level, as well as its security. Last, but not least, this chapter will illustrate the collaboration of both technologies by providing two examples of current major deployments.

This is a preview of subscription content, log in via an institution to check access.

Access this chapter

eBook
USD 16.99
Price excludes VAT (USA)
  • Available as EPUB and PDF
  • Read on any device
  • Instant download
  • Own it forever
Softcover Book
USD 109.99
Price excludes VAT (USA)
  • Compact, lightweight edition
  • Dispatched in 3 to 5 business days
  • Free shipping worldwide - see info
Hardcover Book
USD 109.99
Price excludes VAT (USA)
  • Durable hardcover edition
  • Dispatched in 3 to 5 business days
  • Free shipping worldwide - see info

Tax calculation will be finalised at checkout

Purchases are for personal use only

Institutional subscriptions

References

  1. Zoreda JL, Oton JM (1994) Smart Cards. Artech House, Norwood

    Google Scholar 

  2. Bright R (1988) Smart Cards: Principles, Practice, Applications. Ellis Horwood Books in Information Technology

    Google Scholar 

  3. International Organization for Standardization (ISO). ISO/IEC 7816 identification cards—integrated circuit cards. http://www.iso.org

  4. Rankl W, Effing W (1997) Smart Card Handbook. Wiley, New York

    Google Scholar 

  5. Oracle. Java card. http://www.oracle.com/technetwork/java/javacard/overview/index.html

  6. International Organization for Standardization (ISO). ISO/IEC 7816 identification cards—integrated circuit cards—part 4: organization, security and commands for interchange. http://www.iso.org

  7. PC/SC Workgroup. http://www.pcscworkgroup.com/

  8. Kömmerling O, Kuhn MG (1999) Design principles for tamper-resistant smartcard processors. In: Proceedings of the USENIX Workshop on Smartcard Technology on USENIX Workshop on Smartcard Technology (WOST’99). USENIX Association, Berkeley

    Google Scholar 

  9. Schneier B (1995) Applied Cryptography. Wiley, New York

    Google Scholar 

  10. RSA Laboratories. PKCS #11 cryptographic token interface (cryptoki). http://www.rsa.com/rsalabs/node.asp?id=2133

  11. RSA Laboratories. PKCS #15 cryptographic token information format standard. http://www.rsa.com/rsalabs/node.asp?id=2124

  12. Sanchez-Reillo R (2002) Achieving security in integrated circuit card applications: reality or desire? IEEE Aerospace and Electronic Systems Magazine 17(6):4–8

    Article  Google Scholar 

  13. Ratha NK, Connell JHBRM (2001) Enhancing security and privacy in biometrics-based authentication systems. IBM Systems Journal 40(3):614–634

    Article  Google Scholar 

  14. Sanchez-Reillo R (2009) Tamper-Proof Operating System. Encyclopaedia of Biometrics, vol 2. Springer, Berlin, pp 1315–1321

    Google Scholar 

  15. International Organization for Standardization (ISO). ISO/IEC 24787 information technology—identification cards—on-card biometric comparison. http://www.iso.org

  16. Sanchez-Reillo R, Gonzalez-Marcos A (1999) Access control system with hand geometry verification and smart cards. In: IEEE 33rd Annual 1999 International Carnahan Conference on Security Technology, pp 485–487

    Google Scholar 

  17. Cuerpo Nacional de Policia. DNI electrónico. http://www.dnielectronico.es/

  18. Precise Biometrics. Precise match-on-card. http://www.precisebiometrics.com/?id=136

  19. Gemalto. NET bio. http://www.gemalto.com/products/dotnet_bio/

  20. NIST. MINEX II—performance of fingerprint match-on-card algorithms—phase IV report, NIST interagency report 7477 (revision II), http://biometrics.nist.gov/cs_links/minex/minexII/minex_report.pdf

  21. NEUROtechnology. Megamatcher on card SDK. http://www.neurotechnology.com/megamatcher-on-card.html

  22. Sanchez-Reillo R (2001) Including Biometric Authentication in a Smart Card Operating System. International conference on audio and video-based biometric person authentication (AVBPA). Lecture Notes on Computer Science, vol 2091. Springer, Berlin. pp 342–347

    Google Scholar 

  23. NIST. MINEX minutia exchange homepage. http://www.nist.gov/itl/iad/ig/minex.cfm

  24. Common Criteria Portal. http://www.commoncriteriaportal.org/pps/

  25. International Civil Aviation Organization (ICAO) (2006) Doc 9303: machine readable travel documents—part 1: machine readable passports—vol 2: specifications for electronically enabled passports with biometric identification capability, 6th edn. http://www.icao.org/

Download references

Author information

Authors and Affiliations

Authors

Corresponding author

Correspondence to Raul Sanchez-Reillo .

Editor information

Editors and Affiliations

Rights and permissions

Reprints and permissions

Copyright information

© 2013 Springer-Verlag London

About this chapter

Cite this chapter

Sanchez-Reillo, R., Alonso-Moreno, R., Liu-Jimenez, J. (2013). Smart Cards to Enhance Security and Privacy in Biometrics. In: Campisi, P. (eds) Security and Privacy in Biometrics. Springer, London. https://doi.org/10.1007/978-1-4471-5230-9_10

Download citation

  • DOI: https://doi.org/10.1007/978-1-4471-5230-9_10

  • Publisher Name: Springer, London

  • Print ISBN: 978-1-4471-5229-3

  • Online ISBN: 978-1-4471-5230-9

  • eBook Packages: Computer ScienceComputer Science (R0)

Publish with us

Policies and ethics