Beyond PKI: The biocryptographic key infrastructure

3Citations
Citations of this article
18Readers
Mendeley users who have this article in their library.
Get full text

Abstract

Public Key Infrastructure is a widely deployed security technology for handling key distribution and validation in computer security. Despite PKI's popularity as a security solution, Phishing and other Man-in-the-Middle related attacks are accomplished with ease throughout our computer networks. The major problems with PKI come down to trust, and largely, how much faith we must place in cryptographic keys alone to establish authenticity and identity. In this chapter, we look at a novel biometric solution that mitigates this problem at both the user and certificate authority levels. More importantly, we analyze the problem of applying unprotected biometric features directly into PKI, and propose the integration of a secure, revocable biometric template protection technology that supports transactional key release. A detailed explanation of this new Biocryptographic Key Infrastructure is provided, including composition, enrollment, authentication, and revocation details. The BKI provides a new paradigm for blending elements of physical and virtual security to address network attacks that more conventional approaches have not been able to stop.

Cite

CITATION STYLE

APA

Scheirer, W. J., Bishop, W., & Boult, T. E. (2013). Beyond PKI: The biocryptographic key infrastructure. In Security and Privacy in Biometrics (pp. 45–68). Springer-Verlag London Ltd. https://doi.org/10.1007/978-1-4471-5230-9_3

Register to see more suggestions

Mendeley helps you to discover research relevant for your work.

Already have an account?

Save time finding and organizing research with Mendeley

Sign up for free