Method and system for authentication data transmission

US2022014414A1 · US · A1

Patent metadata
FieldValue
Publication numberUS-2022014414-A1
Application numberUS-202117316962-A
CountryUS
Kind codeA1
Filing dateMay 11, 2021
Priority dateJul 7, 2020
Publication dateJan 13, 2022
Grant date

How to read this patent

A practical reading order for non-experts. Skip the full description unless you need deep technical detail.

  1. Title

    What the patent document calls the invention.

  2. Abstract

    A short plain-language summary of the technical disclosure.

  3. Assignees and inventors

    Who owns or filed the patent and who is credited as inventor.

  4. Key dates

    Filing, priority, publication, and grant dates set the timeline.

  5. First independent claim

    The legal scope of protection — read this for what is actually claimed.

  6. CPC / IPC classifications

    Technology tags used to group this patent with similar filings.

  7. Citations and related patents

    Prior art links and similar publications in this corpus.

Abstract

Official abstract text for this publication.

A method for authentication data transmission and a system thereof are provided. The method is operated in a computer system that is connected to a biometric device, and a secure channel is established there-between according to a security protocol. The computer system can receive encrypted biometric feature data from the biometric device based on a request. In a secure environment built in the computer system, the biometric feature data is decrypted and biometric features can be extracted. A comparison result is generated after comparing the biometric features with feature data in a database. The comparison result can be transmitted to the biometric device. The comparison result is then encrypted in the biometric device according to the security protocol. The biometric device can therefore transmit the encrypted comparison result to the computer system via the secure channel

First claim

Opening claim text (preview).

What is claimed is: 1 . A method for authentication data transmission, which is operated in a computer system that is connected to a biometric device, the method comprising: establishing a secure channel between the biometric device and the computer system in accordance with a security protocol; receiving a biometric feature data that is encrypted from the biometric device; decrypting the biometric feature data and retrieving biometric features from the biometric feature data, and comparing the biometric features with feature data in a database so as to produce a comparison result; transmitting the comparison result to the biometric device; and in the biometric device, encrypting the comparison result according to the security protocol and transmitting the encrypted comparison result to the computer system via the secure channel 2 . The method according to claim 1 , wherein the biometric device is implemented by a match on host technology that uses a sensor to collect the biometric features and a processing circuit to form the biometric feature data. 3 . The method according to claim 2 , wherein the computer system connects to the processing circuit via a driver interface, the driver receives the biometric feature data from the processing circuit via a second secure channel, and transmits the comparison result to the processing circuit via the second secure channel. 4 . The method according to claim 3 , wherein the second secure channel is the secure channel that is established in compliance with a transport layer security protocol. 5 . The method according to claim 3 , wherein the computer system performs a software procedure by a processor, and decrypts and compares the biometric features in the database in a secure environment so as to generate the comparison result. 6 . The method according to claim 1 , wherein the security protocol is a secure device connection protocol, and the secure channel is a first secure channel that is established in compliance with the secure device connection protocol. 7 . The method according to claim 6 , wherein the computer system implements a biometric engine by a software procedure, and the biometric engine receives the comparison result via the secure device connection protocol so as to implement a biometric authentication procedure that supports a match on chip technology. 8 . The method according to claim 1 , wherein the computer system generates a request for authentication and transmits the request to the biometric device, and the computer system continually accesses the biometric device that is configured to collect the biometric features and encrypts the biometric features as the biometric feature data. 9 . The method according to claim 8 , wherein, when the computer system initiates a computer procedure that requires user identification, the computer system generates a request for authentication, transmits the request to the biometric device, and continually accesses the biometric device. 10 . The method according to claim 8 , wherein, when the computer system receives the comparison result via the secure channel, the computer system stops accessing the biometric device after confirming the comparison result. 11 . A system, in which a method for authentication data transmission is operated, the system comprising: a computer system, including a processor and a memory, wherein a database including one or more feature data is established; and a biometric device connecting to the computer system; wherein the processor performs the method for authentication data transmission comprising: establishing a secure channel to the biometric device according to a security protocol; receiving encrypted biometric feature data from the biometric device; decrypting the biometric feature data and extracting biometric features from the biometric feature data, wherein the biometric features are used to compare with the feature data in the database so as to generate a comparison result; transmitting the comparison result to the biometric device; and in the biometric device, encrypting the comparison result according to the security protocol and transmitting the encrypted comparison result to the computer system via the secure channel 12 . The system according to claim 11 , wherein the biometric device is implemented by a match on host technology that uses a sensor to collect the biometric features and a processing circuit to form the biometric feature data. 13 . The system according to claim 12 , wherein the computer system connects to the biometric device via a communication port, the computer system receives the biometric feature data generated from the biometric device via a second secure channel, and transmits the comparison result to the biometric device via the second secure channel 14 . The system according to claim 13 , wherein the second secure channel is the secure channel that is established in compliance with a transport layer security protocol. 15 . The system according to claim 13 , wherein the computer system performs a software procedure by the processor, and decrypts and compares the biometric features in the database in a secure environment so as to generate the comparison result. 16 . The system according to claim 11 , wherein the security protocol is a secure device connection protocol and the secure channel is a first secure channel that is established in compliance with the secure device connection protocol. 17 . The system according to claim 16 , wherein the computer system implements a biometric engine by a software procedure and the biometric engine receives the comparison result via the secure device connection protocol so as to implement a biometric authentication procedure that supports a match on chip technology. 18 . The system according to claim 17 , wherein the biometric device includes an encryption circuit for encrypting the comparison result that is transmitted to the computer system via the first secure channel for complying with the secure device connection protocol. 19 . The system according to claim 11 , wherein, when the computer system initiates a computer procedure that requires user identification, the computer system generates a request for authentication, transmits the request to the biometric device, and continually accesses the biometric device. 20 . The system according to claim 19 , wherein, when the computer system receives the comparison result via the secure channel, the computer system stops accessing the biometric device after confirming the comparison result, and then the biometric device enters a standby mode.

Assignees

Inventors

Classifications

  • using biometrical features, e.g. fingerprint, retina-scan (cryptographic mechanisms or cryptographic arrangements for entity authentication using biological data H04L9/3231) · CPC title

  • Providing cryptographic facilities or services · CPC title

  • wherein the data content is protected, e.g. by encrypting or encapsulating the payload · CPC title

  • at the transport layer · CPC title

  • G06F21/32Primary

    using biometric data, e.g. fingerprints, iris scans or voiceprints · CPC title

Patent family

Related publications grouped by family.

External sources

Frequently asked questions

Answers are generated from the same data shown on this page.

What does patent US2022014414A1 cover?
A method for authentication data transmission and a system thereof are provided. The method is operated in a computer system that is connected to a biometric device, and a secure channel is established there-between according to a security protocol. The computer system can receive encrypted biometric feature data from the biometric device based on a request. In a secure environment built in the…
Who is the assignee on this patent?
Realtek Semiconductor Corp
What technology area does this patent fall under?
Primary CPC classification H04L63/0861. Mapped technology areas include Electricity.
When was this patent published?
Publication date Thu Jan 13 2022 00:00:00 GMT+0000 (Coordinated Universal Time) (A1). Legal status and post-grant events are not shown on this page.
What related patents are in patentsdb?
We list 5 related publications on this page (citations in our corpus or others sharing the same primary CPC).