Fingerprint authentication is the best choice for highly secure applications because of the accuracy and convenience it provides. A major drawback in integrating this biometric technology into a whole system includes expensive and complicated maintenance, however combining it with the smart card technology makes all the difference necessary to downscale the cost of maintaining the system without compromising security.
With the AET63 BioTRUSTKey, smart card and fingerprint technologies are combined into one secure platform that caters to applications in different environments— whether online or offline, whether for small or large user populations. It is an ideal solution for a broad range of applications, including e-commerce, physical/logical access control, banking and point-of-sales transactions.
i) Maximum security via multi-factor authentication and on-board biometric processing
Authentication is either two-way or three-way. The AET63 BioTRUSTKey verifies something “you have” (smart card), something “you are” (fingerprint) and something “you know” (PIN/password). Users carry their fingerprint templates with them and fingerprint verification authenticates only the smart card user, neutralizing privacy concerns and security risks posed by dummy fingerprints or stolen cards. Anti-security threats are further eliminated via more factors of authentication.
Moreover, the AET63 BioTRUSTKey ensures maximum security by performing fingerprint template extraction and matching in the device itself and not in the PC, which is vulnerable to security attacks. The 3DES encryption used to protect USB data transmission and the optional secure access module (SAM), further enhance the security delivered by the AET63 BioTRUSTKey.
ii) Affordable, flexible and scalable system
By storing an encrypted fingerprint template in the smart card, matching merely involves checking the live fingerprint against the stored template. Hence, in contrast to a traditional fingerprint system, a BioTRUSTKey-based system does not require extra provision for fingerprint algorithm, database, server, and network connectivity, thus lowering both setup and maintenance costs.
| Fingerprint System |
Components |
| Hardware |
Software |
| Traditional |
Fingerprint scanner |
Database |
| Local PC |
1:N fingerprint matching algorithm |
| Enhanced network connectivity |
Application software |
| Server |
|
| Using AET63 BioTRUSTKey |
AET63 BioTRUSTKey |
Application software |
| Local PC |
|
| Smart card |
|
Total cost of ownership is lower in an AET63 BioTRUSTKey-based fingerprint system
Complete local-site authentication implies that, under normal circumstances, a biometric system can be constructed with just three components: local PC applications (or remote server applications), any common smart cards, and the BioTRUSTKey. As only the front-end applications need modification or replacement, back-end system architecture remains intact, removing scalability constraints and allowing undemanding system administration and maintenance.
| |
Smart cards (i.e. ACOS3) |
AET63 BioTRUSTKey |
Local PC/Remote Server (Where application resides) |
| Enrollment |
(3) Encrypted template (and other user information) is written into smart card. |
(1) Fingerprint image is captured from live scan.
(2) Fingerprint image is converted to template. Template is then encrypted. |
|
| Verification |
(3) The stored encrypted template is retrieved from smart card and is sent to AET63 BioTRUSTKey. |
(1) Fingerprint image is captured from live scan.
(2) Fingerprint image is converted to template.
(4) Template from smart card is decrypted.
(5) Fresh template is matched against template from smart card. |
(6) Matching result is looped back to application for processing. |
A simple local-site authentication process
iii) Easy application development
The AET63 BioTRUSTKey API and software development kit – which contains demo programs, tools/utilities, sample codes and reference manual – provided by ACS lets developers integrate fingerprint authentication into smart card-based applications effortlessly, without requiring them to have an in-depth knowledge of biometrics.