Securing accessory interface
US-11205021-B2 · Dec 21, 2021 · US
US2022014414A1 · US · A1
| Field | Value |
|---|---|
| Publication number | US-2022014414-A1 |
| Application number | US-202117316962-A |
| Country | US |
| Kind code | A1 |
| Filing date | May 11, 2021 |
| Priority date | Jul 7, 2020 |
| Publication date | Jan 13, 2022 |
| Grant date | — |
A practical reading order for non-experts. Skip the full description unless you need deep technical detail.
What the patent document calls the invention.
A short plain-language summary of the technical disclosure.
Who owns or filed the patent and who is credited as inventor.
Filing, priority, publication, and grant dates set the timeline.
The legal scope of protection — read this for what is actually claimed.
Technology tags used to group this patent with similar filings.
Prior art links and similar publications in this corpus.
Official abstract text for this publication.
A method for authentication data transmission and a system thereof are provided. The method is operated in a computer system that is connected to a biometric device, and a secure channel is established there-between according to a security protocol. The computer system can receive encrypted biometric feature data from the biometric device based on a request. In a secure environment built in the computer system, the biometric feature data is decrypted and biometric features can be extracted. A comparison result is generated after comparing the biometric features with feature data in a database. The comparison result can be transmitted to the biometric device. The comparison result is then encrypted in the biometric device according to the security protocol. The biometric device can therefore transmit the encrypted comparison result to the computer system via the secure channel
Opening claim text (preview).
What is claimed is: 1 . A method for authentication data transmission, which is operated in a computer system that is connected to a biometric device, the method comprising: establishing a secure channel between the biometric device and the computer system in accordance with a security protocol; receiving a biometric feature data that is encrypted from the biometric device; decrypting the biometric feature data and retrieving biometric features from the biometric feature data, and comparing the biometric features with feature data in a database so as to produce a comparison result; transmitting the comparison result to the biometric device; and in the biometric device, encrypting the comparison result according to the security protocol and transmitting the encrypted comparison result to the computer system via the secure channel 2 . The method according to claim 1 , wherein the biometric device is implemented by a match on host technology that uses a sensor to collect the biometric features and a processing circuit to form the biometric feature data. 3 . The method according to claim 2 , wherein the computer system connects to the processing circuit via a driver interface, the driver receives the biometric feature data from the processing circuit via a second secure channel, and transmits the comparison result to the processing circuit via the second secure channel. 4 . The method according to claim 3 , wherein the second secure channel is the secure channel that is established in compliance with a transport layer security protocol. 5 . The method according to claim 3 , wherein the computer system performs a software procedure by a processor, and decrypts and compares the biometric features in the database in a secure environment so as to generate the comparison result. 6 . The method according to claim 1 , wherein the security protocol is a secure device connection protocol, and the secure channel is a first secure channel that is established in compliance with the secure device connection protocol. 7 . The method according to claim 6 , wherein the computer system implements a biometric engine by a software procedure, and the biometric engine receives the comparison result via the secure device connection protocol so as to implement a biometric authentication procedure that supports a match on chip technology. 8 . The method according to claim 1 , wherein the computer system generates a request for authentication and transmits the request to the biometric device, and the computer system continually accesses the biometric device that is configured to collect the biometric features and encrypts the biometric features as the biometric feature data. 9 . The method according to claim 8 , wherein, when the computer system initiates a computer procedure that requires user identification, the computer system generates a request for authentication, transmits the request to the biometric device, and continually accesses the biometric device. 10 . The method according to claim 8 , wherein, when the computer system receives the comparison result via the secure channel, the computer system stops accessing the biometric device after confirming the comparison result. 11 . A system, in which a method for authentication data transmission is operated, the system comprising: a computer system, including a processor and a memory, wherein a database including one or more feature data is established; and a biometric device connecting to the computer system; wherein the processor performs the method for authentication data transmission comprising: establishing a secure channel to the biometric device according to a security protocol; receiving encrypted biometric feature data from the biometric device; decrypting the biometric feature data and extracting biometric features from the biometric feature data, wherein the biometric features are used to compare with the feature data in the database so as to generate a comparison result; transmitting the comparison result to the biometric device; and in the biometric device, encrypting the comparison result according to the security protocol and transmitting the encrypted comparison result to the computer system via the secure channel 12 . The system according to claim 11 , wherein the biometric device is implemented by a match on host technology that uses a sensor to collect the biometric features and a processing circuit to form the biometric feature data. 13 . The system according to claim 12 , wherein the computer system connects to the biometric device via a communication port, the computer system receives the biometric feature data generated from the biometric device via a second secure channel, and transmits the comparison result to the biometric device via the second secure channel 14 . The system according to claim 13 , wherein the second secure channel is the secure channel that is established in compliance with a transport layer security protocol. 15 . The system according to claim 13 , wherein the computer system performs a software procedure by the processor, and decrypts and compares the biometric features in the database in a secure environment so as to generate the comparison result. 16 . The system according to claim 11 , wherein the security protocol is a secure device connection protocol and the secure channel is a first secure channel that is established in compliance with the secure device connection protocol. 17 . The system according to claim 16 , wherein the computer system implements a biometric engine by a software procedure and the biometric engine receives the comparison result via the secure device connection protocol so as to implement a biometric authentication procedure that supports a match on chip technology. 18 . The system according to claim 17 , wherein the biometric device includes an encryption circuit for encrypting the comparison result that is transmitted to the computer system via the first secure channel for complying with the secure device connection protocol. 19 . The system according to claim 11 , wherein, when the computer system initiates a computer procedure that requires user identification, the computer system generates a request for authentication, transmits the request to the biometric device, and continually accesses the biometric device. 20 . The system according to claim 19 , wherein, when the computer system receives the comparison result via the secure channel, the computer system stops accessing the biometric device after confirming the comparison result, and then the biometric device enters a standby mode.
using biometrical features, e.g. fingerprint, retina-scan (cryptographic mechanisms or cryptographic arrangements for entity authentication using biological data H04L9/3231) · CPC title
Providing cryptographic facilities or services · CPC title
wherein the data content is protected, e.g. by encrypting or encapsulating the payload · CPC title
at the transport layer · CPC title
using biometric data, e.g. fingerprints, iris scans or voiceprints · CPC title
Related publications grouped by family.
Answers are generated from the same data shown on this page.