1 1
Background and current status
Use of Hashing Algorithms in the U.S. Federal
Personal Identity Verification Program
Biometrics Storage Format Selection for the U.S.
Federal Personal Identity Verification Program
Curt Barker December 2005
Information Security and Privacy Board Background and current status - - PowerPoint PPT Presentation
Information Security and Privacy Board Background and current status Use of Hashing Algorithms in the U.S. Federal Personal Identity Verification Program Biometrics Storage Format Selection for the U.S. Federal Personal Identity
1 1
Use of Hashing Algorithms in the U.S. Federal
Biometrics Storage Format Selection for the U.S.
Curt Barker December 2005
2 2
General Status of U.S. Federal Personal Identity
Use of Hashing Algorithms in the U.S. Federal
Processing Concept Programmed Changes in Key/Hash Size Requirements Other Uses of Hashes
Biometrics Decision for Special Publication 800-76
Minutiae-based vs Image-based Storage SP 800-76 Biometrics Storage Formats Conformance Determination
3 3
General Status of U.S. Federal Personal Identity
Use of Hashing Algorithms in the U.S. Federal
Processing Concept Programmed Changes in Key/Hash Size Requirements Other Uses of Hashes
Biometrics Decision for Special Publication 800-76
Minutiae-based vs Image-based Storage SP 800-76 Biometrics Storage Formats Conformance Determination
FIPS 201 REQUIREMENTS
Part 1 – Common Identification and Security
HSPD 12 Control Objectives Identity Proofing, Registration and Issuance Requirements Effective October 2005
Part 2 - Common Interoperability Requirements
Detailed Technical Specifications Office of Management and Budget made Effective October
2006 (OMB M-05-24)
Migration Timeframe (i.e., Phase I to II)
Agency implementation plans have been provided to OMB OMB has issued schedule for full implementation in 2009
4 4
5 5 FIPS 201
Revision to FIPS 201 (FIPS 201-1)
Conformance Testing of Cards Built to FIPS 201/SP 800-73
Formal NVLAP Accreditation of NPIVP Laboratories
6 6
General Status of U.S. Federal Personal Identity
Use of Hashing Algorithms in the U.S. Federal
Processing Concept Programmed Changes in Key/Hash Size Requirements Other Uses of Hashes
Biometrics Decision for Special Publication 800-76
Minutiae-based vs Image-based Storage SP 800-76 Biometrics Storage Formats Conformance Determination
7 7 Special Publication 800-78
Personal Identity Verification
_________________ _________________ _________________ _________________ _________________ _________________ _________________
Hash Function
_________________
Hash RSA Signature Function Digital Signature
_________________
Data
Card Card
8 8
_________________
Digital Signature RSA Verification Function
_________________
Hash Hash Function
_________________
Hash Compare
_________________ _________________ _________________ _________________ _________________ _________________ _________________
Data
9 9 Personal Identity Verification
_________________ _________________ _________________ _________________ _________________ _________________ _________________
Hash Function
_________________
Hash RSA Signature Function Digital Signature
_________________
Data
Card
_________________
Digital Signature
RSA Verification Function
_________________
Hash
Hash Function
_________________
Hash Compare
_________________ _________________ _________________ _________________ _________________ _________________ _________________
Data
Special Publication 800-78
10 10
11 11
12 12
General Status of U.S. Federal Personal Identity
Use of Hashing Algorithms in the U.S. Federal
Processing Concept Programmed Changes in Key/Hash Size Requirements Other Uses of Hashes
Biometrics Decision for Special Publication 800-76
Minutiae-based vs Image-based Storage SP 800-76 Biometrics Storage Formats Conformance Determination
Minutiae-based Rather Than Image-based Storage SP 800-76 Biometrics Storage Formats
ANSI/INCITS 378 EER Compatible With TSA Requirement
Conformance Determination
MINEX? NPIVP?
Special Publication 800-76
13 13
14 14