190 likes | 419 Views
Biometrics – updates on ISO and ICAO. Asbjørn Hovstø Porvoo7 Reykjavik, Iceland 27th May 2005. Chicago Convention Mandate.
E N D
Biometrics – updates on ISO and ICAO Asbjørn Hovstø Porvoo7 Reykjavik, Iceland 27th May 2005
Chicago Convention Mandate Contracting States prevent unnecessary delays by facilitating border clearance formalities and that they adopt internationally standard customs and immigration procedures (Articles 22 and 23).
MachineReadablePassport • Standardization. • Document security. • Global interoperability. • Benefits to the document holder (2003 ICAO biometric “blueprint”)
Cooperation • ISO • SC17/WG3 • SC37 • Airport Council International (ACI) • IATA • Simplifying Passenger Travel (SPT) • INTERPOL
ICAO – NTWG • Incorporation of new technologies into travel documents and visa • Meet approximately 3-4 times per year • Chaired by Gary McDonald (Canada) • gmcdonal@ppt.gc.ca
Vision • Goals • Improve document security • Machine authentication • Positive ID of individuals • Secure document issuing processes • Improve facilitation • Minimize time spent on inspection of legitimate travelers • Segmentation of low-high risk travelers • Minimize waiting times for traveler
ICAO Doc 9303 Part 1 - Passport Part 2 - Visa Migrate to 6.edition ISO/SC17 WG3 ISO/IEC 7501 Part 3 - Official Travel Document
Biometric Blueprint • Choice of biometric and storage technology most compatible with the requirements for machine-assisted identity confirmation with MRTDs • Facial recognition • Fingerprint • Iris-scan • Contactless IC • Logical data structure • PKI Digital Signatures
Deliverables • Technical reports • Logical data structure • Machine-assisted identity confirmation – biometrics • Encryption and PKI • Electronic visas
Global Interoperability • Biometrics cannot stand alone • Common data storage device • Common data structure • Common method of securing the data
Authentication protocols • Passive authentication (M) • Access Control • Less-sensitive data (MRZ, facial image) – Basic Access Control • Sensitive data (fingerprint, ext) – Extended Access Control • Active Authentication • Prevents cloning by using chip-individ. keypair
Data Storage • Review of data storage technologies started in 1997 • Limitation of paper • Detailed review of IC cards • ICAO Doc 9303, Part 3 • Contactless RF chip embedded in traditional paper books • ISO 14443 standards apply
Conclusions • Doc 9303 forwarded to ICAO TAG 15 • Annexes A-E of PKI-report normative • Country signing CA certificate securely • Actual keypairs generated securely • CRL distribution • Protocol for bilateral exchange protocol
Issues • LDS & PKI harmonized development • Authenticity of individual biometrics • Extended access control – EU develop • On-card access control • Resolve difference with SC37/CBEFF • Address e-Visas
Thank you • Asbjørn Hovstø asbjorn.hovsto@ergo.no • Delegate to • ISO/IEC JTC1/SC17 WG3 • ISO/IEC JTC1/SC37 • ICAO/NTWG