Looking for breakthrough ideas for innovation challenges? Try Patsnap Eureka!

Electronic passport expansion access control system and authentication method based on identification cipher technology

A technology for identifying passwords and access control, which is applied to transmission systems, electrical components, and collaborative devices, etc., can solve the problems of complex certificate management, high cost, and heavy verification work, and achieve simple system structure, low construction cost, and authorization. flexible effects

Active Publication Date: 2009-08-12
WUHAN TIANYU INFORMATION IND
View PDF0 Cites 17 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

When performing extended access control verification, the verification terminal is required to provide a certificate chain. The chip needs to use its limited computing resources to verify the authenticity and validity of the certificate chain, and the verification work is heavy.
2) Certificate distribution and management are complicated, and the cost of system construction is high
Certificate management will be more complex over time
3) Its authorized chain of trust is unreliable
That is, when the issuing country CVCA issues a DVCA certificate to the passport verification agency DV, it cannot effectively control which verification terminals the DV authorizes to, and the DV may authorize verification terminals that the CVCA does not trust.
This is the biggest flaw of the EU EAC scheme

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Electronic passport expansion access control system and authentication method based on identification cipher technology
  • Electronic passport expansion access control system and authentication method based on identification cipher technology
  • Electronic passport expansion access control system and authentication method based on identification cipher technology

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0033] The general framework of the present invention is as figure 1 shown. Each passport-issuing country has a unique national passport center, which establishes a key service center 1 . The key service center 1 configures a key server based on identification public key cryptography technology, and sets up passport issuing centers 2.1, ..., 2.N and passport verification centers 3.1, . ..., 3.M, passport issuing center 2.1, ..., 2.N is responsible for making and issuing electronic passports for applicants 4.1, 4.2, ..., 4.P, passport verification center 3.1, ..., 3. M is responsible for managing the verification terminals 5.1, 5.2, ..., 5.Q at each entry-exit port.

[0034] Key service center 1 provides key services for passport issuing centers 2.1, ..., 2.N and passport verification centers 3.1, ..., 3.M. The passport verification center 3.1, ..., 3.M applies to the key service center 1 for permission to read sensitive biometric information, and the key service center 1 au...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

PUM

No PUM Login to View More

Abstract

The invention discloses an identification cryptographic technique-based electronic passport extended access control system and an identification cryptographic technique-based authentication method. The authentication method comprises the following steps that: a key service centre provides a key service; a passport verification center makes an application for sensitive biological characteristic information-reading authority, the key service center issues an authorization smart card to perform authorization, and the passport verification center distributes the authorization smart card to a verification terminal controlled thereby; and a passport issuing center applies the key service center for an authentication key and a public parameter for authentication and writes the authentication key and the public parameter into passport smart card of an electronic passport. During passport verification, the authorization smart card and the passport smart card implement an identification cryptographic algorithm-based authentication protocol to judge if the verification terminal has the authority to read sensitive biological characteristic data. The system and the method avoid loopholes in authentication trust transmission in a European proposal, save the establishment of a complicate PKI system, and allow for low system construction cost. Compared with Singaporean EAC, the method provides flexible authorization for a certifying organization, and can still authorize the certifying organization after the issue of a passport.

Description

technical field [0001] The invention belongs to the field of anti-counterfeiting of electronic certificates, and specifically designs an implementation system and authentication method based on identification and encryption technology for the extended access control mechanism of electronic passports. Background technique [0002] In 2003, the International Civil Aviation Organization (ICAO) in Montreal adopted a globally harmonized plan to integrate biometric information into electronic passports. In order to ensure the security of electronic passports, ICAO has designed four security mechanisms for it, among which Extended Access Control (EAC) is designed to further protect the sensitive biometric information stored in passports. The fingerprint and iris data of the cardholder are considered sensitive biometric data, and ICAO regards them as optional biometric data for electronic passports, but the verification accuracy of fingerprint and iris-based feature recognition tech...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

Application Information

Patent Timeline
no application Login to View More
IPC IPC(8): G06K17/00H04L29/06H04L9/32
Inventor 张新访李成华朱建新吴俊军向文欧阳由
Owner WUHAN TIANYU INFORMATION IND
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Patsnap Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Patsnap Eureka Blog
Learn More
PatSnap group products