ISO/IEC 7816-11
Information technology - Identification cards - Integrated circuit(s) cards with contacts - Part 11: Personal verification through biometric methods
Foreword
1 Scope
2 Normative references
3 Terms and definitions
3.1 biometric data
3.2 biometric information
3.3 biometric verification
3.4 template
4 Symbols and abbreviated terms
5 Commands for biometric verification processes
5.1 Command for a static biometric verification process
5.2 Commands for a dynamic biometric verification process
6 Data elements
6.1 Biometric information
Table 1 - Biometric information DOs
Table 2 - BIT group template
6.2 Biometric data
Table 3 - Biometric data DOs
Figure 1 - Use of biometric data with standardised and proprietary structure
6.3 Verification requirement information
6.3.1 Purpose
6.3.2 VIDO - the short format
Table 4 - VIDO structure
6.3.3 VIT - the long format
Table 5 - Verification requirement information template (VIT) and embedded DOs
Table 6 - Example of the VIT structure
Table 7 - Coding of the usage qualifier based on ISO/IEC 7816-9
7 Bibliography
Annex A - (informative) Biometric verification process
A.1 Abbreviations
A.2 Enrollment process and verification process
Figure A.1 - General scheme of an enrollment process
Figure A.2 - General scheme of a verification process
A.3 Classification of biometric verification methods
* Examples of biometric type B:
Figure A.3 - Messages for static biometric verification
Figure A.4 - Messages for dynamic biometric verification
A.4 Scenarios
Figure A.5 - Scenario with matching and decision process inside the card
Figure A.6 - Scenarios with matching and decision process outside the card
A.5 Retrieval of information relevant for the biometric verification process
Annex B - (informative) Examples for enrollment and verification
B.1 Abbreviations
B.2 Enrollment
Figure B.1 - Commands for enrollment (example)
Figure B.2 - Biometric Information Template BIT (example)
B.3 Verification with a single biometric method
Figure B.3 - Commands for verification without secure messaging (example)
Figure B.4 - Commands for verification with secure messaging (example)
B.4 Verification with more than one verification method
Figure B.5 - Biometric InformationTemplate BIT (example)
Figure B.6 - Commands for verification without secure messaging (example)
B.5 Access to the BIT in case of off-card matching
Figure B.7 - Commands for retrieval of the BIT (example)
Figure B.8 - Commands for retrieval of the BIT after performing an authentication procedure (example)
Annex C - (informative) Biometric information data objects
C.1 Abbreviations
C.2 Biometric information data objects used in case of on-card matching
C.2.1 Usage of a single biometric type or biometric subtype
Table C.1 - Biometric information data objects in case of on-card matching
Table C.2 - Biometric Type
Table C.3 - Biometric Subtype
C.2.1a Usage of standardised and proprietary biometric data formats
Table C.4 - BIT with nested BHTs for biometric data of standardised and proprietary format (example)
C.2.2 Usage of several biometric types or biometric subtypes
Table C.5 - BIT group template with nested BITs for applications with several reference data having its own reference data qualifier (example)
C.2.3 Usage of multimodal biometrics
C.2.4 Presentation of the biometric verification data
Figure C.1 - Biometric Data Template in the command data field (example)
C.3 Biometric information data objects used in case of off-card matching
C.3.1 General construction and usage
C.3.2 Usage of a single biometric type or biometric subtype
Table C.7 - Biometric information data objects used in case of off-card matching
Table C.8 - Biometric data template
Table C.9 - Challenge Template
C.3.3 Usage of nested structures
Table C.10 - BIT group template with nested BITs for applications with biometric reference data of several biometric types (example)
C.3.4 Security issues
Figure C.2 - Secured Biometric Information Template
C.4 IBIA registration information
Annex D - (informative) Usage of Secure Messaging Templates
D.1 Abbreviations
D.2 Secure Messaging related data objects and their usage
Figure D.1 - Biometric Information Template in combination with the SM Template
Table D.1 - SMT Data Objects (subset)
Table D.2 - Control Reference Templates and related DOs (subset)
D.3 Encoding examples
Figure D.2 - BIT Template with embedded SMT Template (example)
Figure D.3 - Personal Data Template with BIT Template (example)
Figure D.4 - Personal Data Template with BIT Template protected by a digital signature (example)
Figure D.5 - Personal Data Template protected by a digital signature and containing beside other DOs a cryptogram for the biometric data (example)
|