PIV Data Model Testing Ketan Mehta March 3, 2006.

Slides:



Advertisements
Similar presentations
For Joe Broghamer Philip S. Lee May 5, 2005 Implementing PIV Specifications HSPD-12 Workshop.
Advertisements

Cerner Presentation to S&I esMD Workgroup – Industry Scan
1 ABCs of PKI TAG Presentation 18 th May 2004 Paul Butler.
Technical Report PKI for Machine Readable Travel Documents offering ICC read-only access TAG_15 Montreal, Tom Kinneging.
International Workshop on Usability and Biometrics: NIST Welcome
Card and Reader Overview Gerald Smith Sr. Consultant ID Technology Partners.
Match On Card Technology and its use for PKI Mgr. Miroslav Valeš Sales Manager Eastern Europe May 9, 2001 CATE 2001 Security and Protection.
FIPS 201 Framework: Special Pubs ,76,78 Jim Dray HSPD-12 Workshop May 4/5, 2005.
Mobile Devices in the DoD
12 November 2002Digital Identity Forum – London Biometrics and ID Bill Perry Independent Consultant Phone:
Securing e Government Public Key Infrastructure
PKE PP Mike Henry Jean Petty Entrust CygnaCom Santosh Chokhani.
15June’061 NASA PKI and the Federal Environment 13th Fed-Ed PKI Meeting 15 June ‘06 Presenter: Tice DeYoung.
1 1 A Synopsis of Federal Information Processing Standard (FIPS) 201 for Personal Identity Verification (PIV) of Federal Employees and Contractors Presentation.
Personal Identity Verification Program
Identity Assurance at Virginia Tech CSG January 13, 2010 Mary Dunker
FIPS 201 Personal Identity Verification For Federal Employees and Contractors National Institute of Standards and Technology Information Technology Laboratory.
“Personal Identity Verification (PIV) of Federal Employees and Contractors” October 27, 2005 Homeland Security Presidential Directive 12 (HSPD-12)
Department of Labor HSPD-12
Cryptography Usage in TWIC (Draft v4 8Dec06)
Automatic Finger Print Identification System with Multi biometric Options A smart presentation On AFIS System.
ELECTRONIC PRESCRIPTIONS Basia Korel Kendra Wadsworth.
NIST Special Publication Biometric Data Specification for Personal Identity Verification March 3, 2006 Update.
16.1 © 2004 Pearson Education, Inc. Exam Planning, Implementing, and Maintaining a Microsoft® Windows® Server 2003 Active Directory Infrastructure.
Federal Information Processing Standard (FIPS) 201, Personal Identity Verification for Federal Employees and Contractors Tim Polk May.
EDUCAUSE Fed/Higher ED PKI Coordination Meeting
BIOMETRICS AND NETWORK AUTHENTICATION Security Innovators.
FIT3105 Smart card based authentication and identity management Lecture 4.
Standards for Biometrics Dr. Pushkin Kachroo. Introduction Standards needed for interoperability At all levels of the system –hardware level (using one.
November 1, 2006Sarah Wahl / Graduate Student UCCS1 Public Key Infrastructure By Sarah Wahl.
CN1276 Server Kemtis Kunanuraksapong MSIS with Distinction MCTS, MCDST, MCP, A+
Copyright, 1996 © Dale Carnegie & Associates, Inc. Digital Certificates Presented by Sunit Chauhan.
NASA Personal Identity Verification (PIV) NASA Personal Identity Verification (PIV) High Level System Overview Tice F. DeYoung, PhD 14th Fed/Ed Workshop.
NVLAP Overview and Accreditation Process March 2006.
Chapter 10: Authentication Guide to Computer Network Security.
Best Practices in Deploying a PKI Solution BIEN Nguyen Thanh Product Consultant – M.Tech Vietnam
Biometric Access Control in TWIC Read Hardware and Card Application Specification Roger Roehr.
Securing Data at the Application Layer Planning Authenticity and Integrity of Transmitted Data Planning Encryption of Transmitted Data.
Introduction to Secure Messaging The Open Group Messaging Forum April 30, 2003.
Special Publication : Interfaces for Personal Identity Verification Jim Dray NIST NPIVP Workshop March 3, 2006.
Key Management Workshop November 1-2, Cryptographic Algorithms, Keys, and other Keying Material  Approved cryptographic algorithms  Security.
Certificates and FIPS 201 Tim Polk March 3, 2006.
1 1 Update: ISO/IEC Identification Cards - Integrated circuit cards programming interfaces Teresa Schwarzhoff, U.S. Department of Commerce Porvoo-12:
Hosted by: June 23-26, 2003 New York City State of Biometric Standards Jeff Stapleton, Manager Information Risk Management
Business and Systems Aligned. Business Empowered. TM Federal Identity Management Handbook May 5, 2005.
Security PS Evaluating Password Alternatives Bruce K. Marshall, CISSP, IAM Senior Security Consultant
Symbol Technologies Security Forum - Airline Security
HSPD-12 Identity Management Initiative Carol Bales Senior Policy Analyst United States Office of Management and Budget North American Day 2006.
28 th International Traffic Records Forum Biometrics/SmartCard Workshop 28 th International Traffic Records Forum August 4, 2002 Orlando, Florida.
1 ISO/IEC JTC1/SC37 Standards A presentation of the family of biometric standards October 2008.
EESSI June 2000Slide 1 European Electronic Signature Standardization Hans Nilsson, iD2 Technologies, Sweden.
PRESENTATION ON BIOMETRICS
1 Federal Identity Management Initiatives Federal Identity Management Initatives David Temoshok Director, Identity Policy and Management GSA Office of.
Sofia, 2008 Valery Konyavsky New Approaches to Ensure Cybersecurity VNIIPVTI All-Russia Research-and- Development Institute for Problems of Computing Equipment.
Certification and Validation Process NPIVP Workshop - March 03, 2006.
Technical Devices for Security Management Kathryn Hockman COSC 481.
The Federal Information Processing Standards (FIPS) Encryption Suite Sean Smith COSC
Submitted by: Siddharth Jain (08EJCIT075) Shirin Saluja (08EJCIT071) Shweta Sharma (08EJCIT074) VIII Semester, I.T Department Submitted to: Mr. Abhay Kumar.
Bruno Struif, GMD-TKT 1 SmartCard-Technik German Digital Signature Card and Office Identity Card and PKCS #15 Bruno Struif GMD German National Research.
1 NPIVP Workshop March 3, 2006 Red Auditorium, NIST, Gaithersburg PIV Test Guidelines Revisions Dr. R. Chandramouli (Mouli) (Director NPIVP)
TAG Presentation 18th May 2004 Paul Butler
Ketan Mehta March 3, 2006 PIV Data Model Testing Ketan Mehta March 3, 2006.
TAG Presentation 18th May 2004 Paul Butler
Personal Identity Verification Program
کاربرد گواهی الکترونیکی در سیستمهای کاربردی (امضای دیجیتال)
EDUCAUSE Fed/Higher ED PKI Coordination Meeting
Biometric technology.
Hybrid Finger print recognition
NASA Personal Identity Verification (PIV) High Level System Overview Tice F. DeYoung, PhD 14th Fed/Ed Workshop December 14, 2006.
Milan Zoric Centre for Testing and Interoperability ETSI
Presentation transcript:

PIV Data Model Testing Ketan Mehta March 3, 2006

Agenda PIV Test Environment Test Methodology Test Areas Schedule

PIV Client Application Programming Interface PIV Card Command Calls Card Reader Driver Card Reader PIV Card Application PIV Data Model PIV Card Command Interface PIV MIDDLEWARE (SP ) Host PC Smart Card Reader PIV CARD (FIPS 201, SP , SP , SP ) Test Toolkit Application PIV Test Environment

Agenda Test Methodology Test Areas Schedule

InputsProcessOutputs FIPS 201 SP SP SP Derived Test Requirements & Test Assertions Lab Testing: Conformance to SP NIST Test Guidance — SP Lab Activity SP A Test Results NPIVP Certificate PIV Test Methodology PIV Data Model Testing* Agency Activity** SP B Self-certification * Conformance to FIPS 201, SP , and SP ** The process is currently being defined

Agenda PIV Test Environment Test Methodology Test Areas Schedule

Test Areas CHUID Data Object Security Object Biometric Data Object PKI Keys and Certificates Note that all test requirements are designed to: - Validate the format of PIV data - Validate values in the fields - Validate computation such as signatures or data comparison

PIV Client Application Programming Interface PIV Card Command Calls Card Reader Driver Card Reader PIV Card Application PIV Data Model PIV Card Command Interface PIV MIDDLEWARE Agency / System Integrator Smart Card Reader PIV CARD (SP Conformant) Test Toolkit Application  Finger print stored for FBI Transmission  Finger print stored for PIV Enrollment  Finger print minutiae for PIV Card  Facial Image for PIV Card Data Under Test SP B – PIV Biometrics Testing

Enrollment Process Face Templating Fingerprint Templating CBEFF Header Generation PIV-Specific Enrollment Procedures Verification Process Fingerprint Matching Verification Process Fingerprint Matching Documentation (Fingerprint and Facial Acquisition, Equipment, Procedures) - Quality dependent on the MINEX04 test results - External to PIV testing Tested through SP B - Dependent on the policy requirements and procedural steps - External to PIV Testing Integrated PIV Biometrics Process Format Validation Human Inspection Performance Tests SP B – Biometric Data Conformance

Test Toolkit Application Card Reader Driver Card Reader PIV Card Application PIV Data Model PIV Card Command Interface Agency / System Integrator Smart Card Reader Data Under Test Certificate Profile Conformance Algorithm Conformance Signature Conformance PIV Card SP B – PIV PKI Testing

Validate signatures on all signed PIV objects Validate signature block format on all signed PIV objects o Validate encoding of Cryptographic Message Syntax external digital signature Validate values in certain fields of the signature block o Validate algorithms employed are in agreement with SP o Values are consistent with other data objects on the PIV Card SP B — Cryptographic Objects Conformance …Signature Conformance

Validate the presence of CRL and OCSP URLs Validate NACI indicator field SP B — Cryptographic Objects Conformance …Certificate Conformance

The tags and lengths in various data objects should conform to specifications in Appendix A of SP SP B — BER-TLV Format Conformance

Tentative Schedule Draft SP B – April 3rd Final SP B – April 28th