Online and Digital Identification, Securing Web 2.0, PKI and Digital Certificates

Revised FIPS 201 adds biometrics, authentication keys

Wednesday, March 9, 2011

The National Institute of Standards and Technology issued a draft of FIPS 201-2, the revised smart card specification for government employees. Comments on the draft will be accepted through early April.

The revised standard includes changes to biometrics and other authentication mechanisms for physical access control. PKI at the door has long been discussed as an option for PIV and this standard would seem to embrace that.


Card issuers would require an asymmetric card authentication key for the credentials. “The card authentication key—and certificate—are currently optional,” says Bob Fontana, president at Codebench. “This allowed millions of cards to be issued that can’t be used at door readers because they lacked the necessary authentication components. As FIPS 201-2 compliant PIV and PIV-I cards begin to proliferate and replace expiring FIPS 201-1 cards, this problem will solve itself.”

The draft also paves the way for new biometrics. Match-on-card biometrics, where the identifiable information never leaves the card, is added as an authentication mechanism. Also, iris images can be used when reliable fingerprint images cannot be captured, the draft states.

There are also revisions to a section of the original standard that would enable inclusion of other applications. This may allow agencies to add other secure applications, such as transit or payment, to the PIV credentials. The U.S. Department of Defense is an advocate of adding both of these apps to the IDs.

While the additions seem positive, there are concerns in the industry that a revised standard could delay current deployments, says one industry source.

Read the PKI at the door story here and find a video of the industry discussing it here[end] 

Vision-Box, a biometrics solutions provider, has come out with an automatic border control e-gate that supports multimodal biometric authentication.

This new e-gate is a thin system that contains vb i-match, a single sourced design that is modular and flexible and can be adapted to business requirements and infrastructure constraints that would otherwise disrupt passenger flow. It has the ability to cope with industry standards such as ICAO. The e-gate supports iris, fingerprint and facial biometrics.

read more »

Thursby Software Systems, Inc. has released the PKard Reader, a touch Web browser solution for the iOS that includes secure authentication to a personal smart card.

read more »

Key Source International announced GSA approval for it’s biometric keyboard and stand-alone biometric pod. KSI products are approved under FIPS 201 for Federal Employees and civilian contractors.

read more »

The introduction of biometric multimodal fusion has helped lead to greater accuracy in biometric authentication, but its adoption rate is still overall fairly low, reports ZDNet Asia.

read more »

Be first to comment...
Comment on this article

Your full name and URL will be displayed with your comment.

Your email is not shown or shared, and is used only for your Gravatar image.




characters left.