ISO/IEC 19785-4:2010
Current
The latest, up-to-date edition.
Information technology — Common Biometric Exchange Formats Framework — Part 4: Security block format specifications
Hardcopy , PDF , PDF 3 Users , PDF 5 Users , PDF 9 Users
12-08-2010
ISO/IEC 19785-4:2010 specifies security block formats (see ISO/IEC 19785-1) registered in accordance with ISO/IEC 19785-2 as formats defined by the CBEFF biometric organization ISO/IEC JTC 1/SC 37, and specifies their registered security block format identifiers. [The security block format identifier is recorded in the standard biometric header (SBH) of a patron format (or defined by that patron format as the only available security block format).]
The general-purpose security block format provides for specification of whether the biometric data block (BDB) is encrypted or the SBH and BDB have integrity applied (or both), and can include ACBio instances (see ISO/IEC 24761). This security block provides all necessary security parameters, including those used for encryption or integrity.
It does not restrict the algorithms and parameters used for encryption or integrity, but provides for the recording of such algorithms and parameter values.
It is a matter for profiling to determine, for a particular application area, what algorithms and parameter ranges can be used by the generator of a security block, and hence what algorithms and parameter ranges have to be supported by the user of a security block. This is out of the scope of ISO/IEC 19785-4:2010.
The second security block is more limited, but simpler (and in particular cannot contain ACBio instances, and does not support encryption of the BDB).
Committee |
ISO/IEC JTC 1/SC 37
|
DocumentType |
Standard
|
Pages |
18
|
ProductNote |
This standard also refer toFIPS PUB 201-1,RFC 3852,RFC 5911
|
PublisherName |
International Organization for Standardization
|
Status |
Current
|
Standards | Relationship |
INCITS/ISO/IEC 19785-4:2010(R2020) | Identical |
NEN ISO/IEC 19785-4 : 2010 C1 2013 | Identical |
BS ISO/IEC 19785-4:2010 | Identical |
GOST R ISO/IEC 19785-4 : 2012 | Identical |
BIS IS 16281-4 : 2014 | Identical |
INCITS/ISO/IEC 19785-4 : 2010 | Identical |
BS ISO/IEC 19784-1 : 2006 | INFORMATION TECHNOLOGY - BIOMETRIC APPLICATION PROGRAMMING INTERFACE - PART 1: BIOAPI SPECIFICATION |
ISO/IEC 19784-1:2018 | Information technology — Biometric application programming interface — Part 1: BioAPI specification |
10/30206532 DC : 0 | BS ISO/IEC 29164 - INFORMATION TECHNOLOGY - EMBEDDED BIOAPI |
09/30175705 DC : DRAFT OCT 2009 | BS ISO/IEC 19784-1:2006/FPDAMD - INFORMATION TECHNOLOGY - BIOMETRIC APPLICATION PROGRAMMING INTERFACE - PART 1: BIOAPI SPECIFICATION |
BS ISO/IEC 24745:2011 | Information technology. Security techniques. Biometric information protection |
11/30130588 DC : 0 | ISO/IEC 19794-11 - BIOMETRIC DATA INTERCHANGE FORMATS - PART 11: SIGNATURE/SIGN PROCESSED DYNAMIC DATA |
INCITS/ISO/IEC 24745 : 2012(R2017) | INFORMATION TECHNOLOGY - SECURITY TECHNIQUES - BIOMETRIC INFORMATION PROTECTION |
ISO/IEC 24745:2011 | Information technology Security techniques Biometric information protection |
ISO/IEC 19785-2:2006 | Information technology Common Biometric Exchange Formats Framework Part 2: Procedures for the operation of the Biometric Registration Authority |
ISO/IEC 19785-1:2015 | Information technology Common Biometric Exchange Formats Framework Part 1: Data element specification |
ISO/IEC 24713-3:2009 | Information technology Biometric profiles for interoperability and data interchange Part 3: Biometrics-based verification and identification of seafarers |
AS ISO/IEC 19784.1:2019 | Information technology - Biometric application programming interface BioAPI specification |
ISO/IEC 9798-6:2010 | Information technology Security techniques Entity authentication Part 6: Mechanisms using manual data transfer |
ISO/IEC 24761:2009 | Information technology Security techniques Authentication context for biometrics |
ISO/IEC 19784-1:2006 | Information technology Biometric application programming interface Part 1: BioAPI specification |
Access your standards online with a subscription
Features
-
Simple online access to standards, technical information and regulations.
-
Critical updates of standards and customisable alerts and notifications.
-
Multi-user online standards collection: secure, flexible and cost effective.