EPassport standard status and efforts at Japan IC


























- Slides: 26
E-Passport standard status and efforts at Japan IC passport study committee 2004/09/16 u. Head of Japan ISO/IEC JTC 1/SC 17/WG 3 u. Member of ICAO-NTWG u. Manager of Japanese IC-passport study committee Junichi Sakaki (Panasonic) J-sakaki@so-net. ne. jp
Self Introduction • 1995 - 1997: R&D for Contactless Smartcard prototype • 1997 - 2000:Contactless IC card standardization • 1997 - : Driver License Standardization – (ISO/IEC JTC 1/SC 17/WG 10 Secretary) • 1998 - : Machine Readable Travel Document – (ISO/IEC JTC 1/SC 17/WG 3 TF 4 leader) – (Member of ICAO-TAG-NTWG) – (Manager of Japanese IC-passport study committee)
Relationship ICAO and ISO at Passport standard ICAO Secretary General ISO IEC Airport Bureau JTC 1 Aviation Security &Facilitation Branch SC 17 (Card & ID) Facilitation Section WG 3 (MRTD) TAG (Technical Advisory Group) EPWG* DCFWG* NTWG* Official Liaison TF 1 (New Technology) TF 2 (LDS) TF 3 (PKI) * EPWG: Education Promotion WG * DCFWG: Document Contents and Format WG * NTWG: New Technology WG TF 4 (Testing)
Passport standard committee in Japanese Industrial Standard Committee JISC Information Standard Technology Committee of Japan ITSCJ Japan Business Machine and Information System Industries Association JBMIA SC 17 (Card and Identification) SC 27 Security WG 3 (MRTDs) SWG 1 (Contactless) SC 17/WG 8 Contactless Card PKI TF Biometric TF SC 37 Biometrics
Collaboration of ICAO and ISO • SC 17/WG 3 is sole liaison partner for ICAO-TAG/MRTD within ISO Other liaisons : International Criminal Police Organization(ICPO) International Air Transport Association (IATA) Airport Council International(ACI) • Collaboration has been started from early 1990's • Role of ISO is endorsement of ICAO document(ICAO Doc. 9303) • ICAO document is usually published without ISO endorsement by only ICAO membership county’s agreement and authority of ISO is just Fast Track voting after ICAO publishing. • Six member from SC 17/WG 3 are allowed to participate into ICAO meeting as ISO representatives. • ISO members are acting editors of the ICAO technical reports.
ICAO TAG-NTWG • Two or three times meetings are held in every year. (Den Haag, Tokyo, Oakland : 2004) • Participants are increased after September 11 (Mostly over fifty). • Major participants are Government official (Passport Office, Immigration, Customs, Police) ・Regular participating countries (USA, UK, France, Germany, Canada, NZ, Australia, Netherlands, Italy, Latvia, Swiss, Singapore, Korea, Japan) • Chairman: Gary Mc. Donald (ICAO/Canada Passport Office)
ICAO-Doc. 9303
ICAO TR • Three Technical Reports (Biometrics、Logical Data Structure: LDS、PKI) Have been published as 2004 version at Web site(http: //www. icao. int/mrtd/)
ICAO TR (Cont) 2003/5: Ver-1, 2004/7: Ver-2 Objective: Identification, Aid for Border control, Data structure Basic Guideline: Global Interoperability Need to develop by 2005/10 for US-Visit program Reliability, Practicability, Durability Issues • Biometrics technology is immature stage and standard is not final • Future development of technology is unclear(Backward compatibility) • Compatibility with public opinion, Law, and Culture of member countries. • Technology obsolescence, Biometric aging (validity can be 10 years? ) • Card interoperability ICAO TR is scheduled to integrate into ICAO Doc. 9303 in 2005.
ICAO TR (Cont) ・ Recommended Biometrics Face: Primary (Image) Finger: Secondary (Image) + Optional Minutiae Iris: Secondary (Image) → Pattent Issue(Base Patent only)had been resolved by mutual agreement of ICAO and Iridian Tec. Berlin Resolution(2002/6) ICAO TAG-MRTD/NTWG endorses the use of face recognition as the globally interoperable biometric for machine assisted identity confirmation with machine readable travel documents. ICAO TAG-MRTD/NTWG further recognizes that member states may elect to use of fingerprint and/or iris recognition as additional biometric technologies in support of machine assisted identity confirmation. Adoption Unanimous
ICAO TR (Cont) New Orleans Resolution (2004/3) ICAO TAG-MRTD/NTWG recognizes that Member States currently and will continue to utilize the facial image as the primary identifier for MRTDs and as such endorses the use of standardized digitally-stored facial images as the globally interoperable biometric to support facial recognition technologies for machine assisted identity verification with machine-readable travel documents. ICAO TAG-MRTD/NTWG further recognizes that in addition to the use of a digitally stored facial image, Member States can use standardized digitallystored fingerprint and/or iris* images as additional globally interoperable biometrics in support of machine assisted verification and/or identification. Member States, in their initial deployment of MRTDs with biometrics identifiers, are encouraged to adopt contactless IC media of sufficient capacity to facilitate on-board storage of additional MRTD data and biometric identifiers. *subject to the resolution of intellectual property issues
Major topics of ICAO TR 2004 Rquired Memory Capacity : Minimum 32 k Byte(Case of One Facial Biometrics) Interface : Proximity IC card(ISO/IEC 14443) only Location of IC chip : Location and Material are Note specified All personal data are written in issuing process(Can not be changed after issuing) To resolve interoperability issues, supplementary practices have been added Facial data is defined as not privacy and not encrypted Optional Finger and Iris data should be encrypted as privacy and its means is left as agreement between countries Basic rule is free to read all personal data
Major topics of ICAO TR 2004 Document security Passive Authentication : Authenticity and Integrity Basic Access control : Skimming and Eavesdropping for Privacy Active Authentication : Chip Substitution and Data Copying Face Biometrics spec is simply refer to ISO/IEC 19794 -5, and 19785 -1 Image encording : JPEG, JPEG 2000(Optional) Protection Profile (IC chip & card OS) : EAL 4+ Even if IC chip is broken, Passport is still valid by printed data (electronic data is just an aid). Lots of Option, No best practice for receiving state
Issues on ICAO TR Still unclear on Public key distribution and Revocation list Undefined on VISA data Virtual VISA using internet? Append VISA data on a same chip memory? Independent VISA sticker(2 D barcode, IC-Chip, others)? Issuing cost, Chip durability for 10 years? Insufficiency on face biometrics accuracy(Aging, Lighting) International interoperability issue on contactless chip interface Lack of consideration on transaction speed at immigration booth (Slower than human? ) Several countries are in procurement stage although standard is not yet completed
Reason of ICAO decision Why Face recognition? Few changes are required on the issuing process Portrait has been used at passport and immigration for long time Psychological comfort Compatible with human inspection (Machine verification is aid) Compatible with negative list which has been accumulated Why Image? Good interoperability Flexibility for future technology progress Can be reused for visual human inspection Why Contactless-IC? Enough memory capacity(32 k 64 k Byte is available) Easy to handle High speed data read High security
IC chip implementation Inlay (Thin plastic sheet with IC-chip and antenna) IC chip Antenna coil Issuers choice • Chip location : Cover page, Middle, Back cover • Material : PVC or PET • Chip size(Phisical & Memory): proportionality relation • Read range : Tradeoff relationship at functionality &Speed • Cost : Depends on memory capacity & functionality
Issuing process (Example) Inlay Assemble to Booklet Transport File create Lock with transport key Application Complete Print / Personalize Grant Scan from Application form (Identification )
Logical Data Structure MF Issuer Application (DF) User Application (DF) Common Data (EF) Other Personal Data (EF) MRZ Data (EF) Note MF: Master File DF: Dedicated File EF: Elementary File MRZ : Machine Readable Zone (i. e. OCR) Face Data (EF) Security Object (EF) (Digital Signature) Finger Data (Option) (EF) Iris Data (EF) (Not defined) (Option)
Digital Signature Generate key pair Issuing Key (Secret Key) Verification Key (Public Key) Data Signature Compute and add digital signature using a secret key Issuer Signature Inspection Verify data using public key
ICAO Schedule ICAO TR Ver-2 July 2004 ICAO TR Ver-1 May 2003 New Orleans London NTWG July Glasgow NTWG Sep Tokyo NTWG Sep Den Hague NTWG Feb NTWG Mar 2003 ICAO TAG 14 (Montreal )Apr 2004 ICAO TAG 15 (Montreal) May NZ NTWG Dec
e-Passport Study Committee ICAO/NTWG Other ministries IC card Immigration Airport Ministry of Foreign Affairs Domestic SC 17/WG 3 (passport) e-passport Study committee ●IC Specification ●Biometrics ●Durability of Passport Card ●Security ●Compatibility of IC reader ●Operation in Issuing ●Legal system
e-Passport Study Committee : Timeline 2003 10 11 12 Report submission IC Specification Biometrics Durability of Passport Card Security Compatibility of IC reader Operation in Issuing Legal system 2004 1 2 3 4 5 6 7 8 9 2005 10 11 12 1 2 3 4 5 6 Report 7 8 9 2006 10 11 12 1 2 3 4 5 6 e-Passport Introduction
Face biometrics experiments 1.Aging test Experiment outline : Face recognition test by using past 11(mostly 6) years database of diplomatic passport. Since the database contain many photos taken at different year for same person, it is anticipated that it can be used for an good aging test data. Objective : Validate passport period of validity from biometric points of view 2.Photo quality test Experiment outline : Specify obstructive factor at photo quality through various environments (speed photo box, simulation of airport etc. ) of photo shoot. Objective : Review a current photo guideline of MOFA
Image quality test -1 e-passport Immigration Photo studio Pre Face Recognition Test Instant photo stand ● 32 -person images ● 8 engines Best Practice
Image quality test -2 e-passport Immigration Simulated immigration booth (bright lighting) Best Practice Face Recognition Test Instant photo stand ● 300 images ● 9 engines Simulated immigration booth (dark lighting)
Aging test Immigration e-passport 6 Years ago 5 Years ago 3 Years ago 4 Years ago 2 Years ago 11 years database (Mostly 6 years) 1 Years ago Face aging Recognition Test New Photo ●Total 32, 000 images ● 10, 000 -person images ● 7 engines Present image