CN102867136B - A kind of second-generation identity card authentication system with fingerprint characteristic - Google Patents

A kind of second-generation identity card authentication system with fingerprint characteristic Download PDF

Info

Publication number
CN102867136B
CN102867136B CN201210301760.7A CN201210301760A CN102867136B CN 102867136 B CN102867136 B CN 102867136B CN 201210301760 A CN201210301760 A CN 201210301760A CN 102867136 B CN102867136 B CN 102867136B
Authority
CN
China
Prior art keywords
fingerprint
module
close
state
algorithm
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Active
Application number
CN201210301760.7A
Other languages
Chinese (zh)
Other versions
CN102867136A (en
Inventor
李昀
郭志
邱柏云
吴清淑
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Hangzhou Synodata Security Technology Co Ltd
Original Assignee
Hangzhou Synodata Security Technology Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Hangzhou Synodata Security Technology Co Ltd filed Critical Hangzhou Synodata Security Technology Co Ltd
Priority to CN201210301760.7A priority Critical patent/CN102867136B/en
Publication of CN102867136A publication Critical patent/CN102867136A/en
Application granted granted Critical
Publication of CN102867136B publication Critical patent/CN102867136B/en
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Abstract

The present invention relates to a kind of second-generation identity card authentication system with fingerprint characteristic, comprise second-generation resident identification card reader, fingerprint capturer, comprise the close Fingerprint Processing Module of state, specific information deciphering module in described second-generation resident identification card reader, described fingerprint capturer is connected with state close Fingerprint Processing Module by fingerprint collecting program; Identity data in second-generation resident identification card demonstrate,proves program transportation to the specific information deciphering module in second-generation resident identification card reader by brush; This specific information deciphering module is connected with application end, and also Fingerprint Processing Module close with state is connected.Beneficial effect of the present invention is: fingerprint module can not directly and computer upper machine communication or other peripheral hardware communications, separating computer and internetwork operation, the virus of computer terminal can be prevented, malware attacks retains, copy, outside transmitting fingerprint information, compatible good, and support that multiple state is close, international standard algorithm carries out secondary encryption.

Description

A kind of second-generation identity card authentication system with fingerprint characteristic
Technical field
The invention belongs to field of information security technology, particularly relate to a kind of second-generation identity card authentication system with fingerprint characteristic.
Background technology
According to relevant policy of government, I.D. increasing finger print information is inexorable trend, that reading system about I.D. finger print information will have very large demand, its security of reading demo plant of the existing finger print information about I.D. and ease for use are all not enough, data are plaintext after leaving reader, are are easily intercepted and captured in the process being transferred to application end.The computing environment of application end may be common computer, also may be the embedded system based on other CPU platform, these are not security contexts, very general by the phenomenon of virus, malware attacks, are very easy to be retained by straightforward procedure simultaneously, copy, outside transmitting fingerprint information.Such as: domestic patent 201020144504 discloses a kind of identity card reading device with living things feature recognition, domestic patent 200720190468.7 discloses the ID card verification system based on fingerprint recognition, but now in the urgent need to one with encryption and decryption functions in sheet, the fingerprint of ciphertext transmission process data reads verification system and ensures I.D. finger print information safety.
Summary of the invention
The object of the invention is to the deficiency overcoming above-mentioned existence, and the second-generation identity card authentication system of the band fingerprint characteristic that a kind of processing speed is fast, security is higher is provided.
The object of the invention is to have come by following technical solution, it comprises second-generation resident identification card reader, fingerprint capturer, comprise the close Fingerprint Processing Module of state, specific information deciphering module in described second-generation resident identification card reader, described fingerprint capturer is connected with state close Fingerprint Processing Module by fingerprint collecting program; Identity data in second-generation resident identification card demonstrate,proves program transportation to the specific information deciphering module in second-generation resident identification card reader by brush; This specific information deciphering module is connected with application end, and also Fingerprint Processing Module close with state is connected.
As preferably, the close Fingerprint Processing Module of described state comprises high performance information safety chip, hardware protection module, ID (identity number) card information data interface module, fingerprint sensor interface module, fingerprint algorithm accelerating engine module, fingerprint algorithm protection module.
As preferably, described high performance information safety chip is built-in with the close algoritic module of state, canonical algorithm module; The close algoritic module of this state is the module supporting the close algorithm fingerprint algorithm of SM1, SM2, SM3, SMS4, SM6, SSF33, SCB2 state; This canonical algorithm module is support the module of RSA, ECC, AES, DES/3DES, SHA international standard algorithm.
As preferably, described fingerprint algorithm protection module is the high safe OTP storage space of built-in 16K, the module of curable various software and algorithm.
Beneficial effect of the present invention is: the finger print information on I.D. is stored in the close Fingerprint Processing Module chip internal of state, and safety chip inside has MPU defencive function, anti-intercepting, prevents cracking, anti-high-low voltage; Perform in fingerprint algorithm sheet, without the need to extending out any device, chip has special fingerprint accelerating engine, be convenient to run various domestic algorithm for recognizing fingerprint, make its high-speed cruising in sheet, unique OTP+MPU data protection, the external world cannot obtain algorithm in sheet, ensures data and algorithm security; Fingerprint Processing Module is fast as association's process mould of system, and ciphertext is transmitted between decrypts information module, fingerprint module can not directly and computer upper machine communication or other peripheral hardware communications, separating computer and internetwork operation, the virus of computer terminal can be prevented, malware attacks retains, copy, outside transmitting fingerprint information, intermodule uses ciphertext to transmit and ciphertext simultaneously, has effectively evaded in transmitting procedure the risk intercepted and captured and crack; Support to run third party's algorithm for recognizing fingerprint, compatible good, and support that multiple state is close, international standard algorithm carries out secondary encryption.
Accompanying drawing explanation
Fig. 1 is second-generation identification card fingerprint Information Authentication device schematic diagram of the present invention.
Fig. 2 is the close Fingerprint Processing Module schematic diagram of state of the present invention.
Fig. 3 is I.D. finger print information demo plant processing flow chart of the present invention.
Label in accompanying drawing is respectively: 1, second-generation resident identification card reader; 2, fingerprint capturer; 3, second-generation resident identification card; 4, application end; 5, high performance information safety chip; 11, the close Fingerprint Processing Module of state; 12, specific information deciphering module; 51, the close algoritic module of state, 52, canonical algorithm module, 111, hardware protection module; 112, ID (identity number) card information data interface module; 113, fingerprint sensor interface module, 114, fingerprint algorithm accelerating engine module, 115, fingerprint algorithm protection module.
Embodiment
Below in conjunction with accompanying drawing, detailed introduction is done to the present invention: as shown in Figure 1, the present invention includes the close Fingerprint Processing Module 11 of state, specific information deciphering module 12, fingerprint capturer 2.First by second-generation resident identification card reader 1 brush second-generation resident identification card 3, obtain identity information data, then specific information deciphering module 12 is transferred to, fingerprint encrypt data is sent to the close Fingerprint Processing Module 11 of state by specific information deciphering module 12, gather fingerprint characteristic by fingerprint capturer 2 simultaneously and transfer to the close Fingerprint Processing Module 11 of state, carry out instant decrypt fingerprint data and comparison by the close Fingerprint Processing Module of state 11.Finally the ciphertext of finger print identifying result is returned specific information deciphering module 12, when needing, transfer to application end 4.
As shown in Figure 2, the close Fingerprint Processing Module 11 of described state comprises high performance information safety chip 5, hardware protection module 111, ID (identity number) card information data interface module 112, fingerprint sensor interface module 113, fingerprint algorithm accelerating engine module 114, fingerprint algorithm protection module 115.
High performance information safety chip 5: adopt bright element chip company to design according to international information-security chip standard, by the strict detection of FIPS, the close safety chip of state by national Password Management office is detected: SSX1103, this built-in chip type canonical algorithm module 52 and state close algoritic module 51, support the encryption technologies such as PKI, CPK.
The close algoritic module 51 of state: support the close algorithm fingerprint algorithms of state such as SM1, SM2, SM3, SMS4, SM6, SSF33, SCB2.
Canonical algorithm module 52: support the international standard algorithms such as RSA, ECC, AES, DES/3DES, SHA.
Fingerprint algorithm accelerating engine module 114: fingerprint algorithm is mainly used to process fingerprint image, such as feature extraction, ratio equity, accelerating engine is that bright unit exclusively designs, and can support to run various third party's fingerprint algorithm, realize the high speed processing of fingerprint, versatility is good.
Fingerprint algorithm protection module 115: the high safe OTP storage space of built-in 16K, curable various software and algorithm, spatial information cannot be read, available protecting related software and algorithm, thus realizes the customization customizations of chip and module.Built-in Special safety streamline, can utilize the deciphering of secure flows waterline hardware implementing finger print data, the extraction of fingerprint on site, the comparison of finger print information, and the Real-time Obtaining of related data and destruction.
ID (identity number) card information data interface module 112: the mode adopting online encryption in data transmission procedure, has evaded in transmitting procedure the risk intercepted and captured and crack, has supported various communication interfaces, can mount various equipment.
Hardware protection module 111: built-in Special safety streamline, can utilize the deciphering of secure flows waterline hardware implementing finger print data, the extraction of fingerprint on site, the comparison of finger print information, and the Real-time Obtaining of related data and destruction.
Fingerprint sensor interface module 113: the LOSCS sensor interface of bright first patent, can support the fingerprint sensor of various main flow on the market.Support the various sensors such as optics, depression bar, electric capacity, temperature-sensitive.
Treatment scheme of the present invention is: as shown in Figure 3, the first step: scanning I.D., obtains I.D. essential information.
Second step: see the need of the information of taking the fingerprint, if needing just to be extracted by finger print information is sent to Fingerprint Processing Module.
3rd step: as needs carry out fingerprint on site certification, just by fingerprint sensor collection in worksite fingerprint.
4th step: the finger print information of the finger print information that decryption identity card stores and collection in worksite is compared.
5th step: comparison success, feedback authentication result, carries out further work, or unsuccessfully returns.
In addition to the implementation, all employings are equal to the technical scheme of replacement or equivalent transformation formation, all drop on the protection domain of application claims.

Claims (2)

1. the second-generation identity card authentication system with fingerprint characteristic, comprise second-generation resident identification card reader (1), fingerprint capturer (2), it is characterized in that: comprise the close Fingerprint Processing Module of state (11), specific information deciphering module (12) in described second-generation resident identification card reader (1), described fingerprint capturer (2) is connected with the close Fingerprint Processing Module of state (11) by fingerprint collecting program; Identity data in second-generation resident identification card (3) demonstrate,proves program transportation to the specific information deciphering module (12) in second-generation resident identification card reader (1) by brush; This specific information deciphering module (12) is connected with application end (4), and also Fingerprint Processing Module (11) close with state is connected; The close Fingerprint Processing Module of described state (11) comprises high performance information safety chip (5), hardware protection module (111), ID (identity number) card information data interface module (112), fingerprint sensor interface module (113), fingerprint algorithm accelerating engine module (114), fingerprint algorithm protection module (115); Described high performance information safety chip (5) is built-in with the close algoritic module of state (51), canonical algorithm module (52); The close algoritic module of this state (51) is the module supporting the close algorithm fingerprint algorithm of SM1, SM2, SM3, SMS4, SM6, SSF33, SCB2 state; This canonical algorithm module (52) is support the module of RSA, ECC, AES, DES/3DES, SHA international standard algorithm.
2. the second-generation identity card authentication system of band fingerprint characteristic according to claim 1, is characterized in that: described fingerprint algorithm protection module (115) is the high safe OTP storage space of built-in 16K, can solidify the module of various software and algorithm.
CN201210301760.7A 2012-08-23 2012-08-23 A kind of second-generation identity card authentication system with fingerprint characteristic Active CN102867136B (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201210301760.7A CN102867136B (en) 2012-08-23 2012-08-23 A kind of second-generation identity card authentication system with fingerprint characteristic

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201210301760.7A CN102867136B (en) 2012-08-23 2012-08-23 A kind of second-generation identity card authentication system with fingerprint characteristic

Publications (2)

Publication Number Publication Date
CN102867136A CN102867136A (en) 2013-01-09
CN102867136B true CN102867136B (en) 2015-12-16

Family

ID=47446004

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201210301760.7A Active CN102867136B (en) 2012-08-23 2012-08-23 A kind of second-generation identity card authentication system with fingerprint characteristic

Country Status (1)

Country Link
CN (1) CN102867136B (en)

Families Citing this family (9)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN103279691A (en) * 2013-04-12 2013-09-04 杭州晟元芯片技术有限公司 Encryption storage device for copyright protection and method thereof
CN103456105B (en) * 2013-08-22 2016-06-01 上海余乐计算机科技有限公司 Hotel intelligent self-service terminal all-in-one machine
CN103577850A (en) * 2013-09-19 2014-02-12 无锡指网生物识别科技有限公司 Fingerprint management device
CN103500326A (en) * 2013-10-16 2014-01-08 东南大学 Embedded fingerprint acquisition instrument
CN103729587A (en) * 2013-12-23 2014-04-16 杭州晟元芯片技术有限公司 Chip integrating with fingerprint interface, fingerprint algorithm, security algorithms and correlated accelerators
CN105528559A (en) * 2015-12-17 2016-04-27 大唐微电子技术有限公司 Fingerprint safety chip
CN106934315B (en) * 2017-05-05 2023-06-02 成都因纳伟盛科技股份有限公司 APP and card reading board encryption system based on handheld resident identification card reader
CN107743062A (en) * 2017-08-29 2018-02-27 苏州惠邦科信息技术有限公司 Mobile phone safe encryption chip
CN111865995A (en) * 2020-07-24 2020-10-30 芯河半导体科技(无锡)有限公司 Communication mode using hardware cryptographic algorithm in TR069

Citations (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN1339894A (en) * 2000-08-24 2002-03-13 杭州中正生物认证技术有限公司 Identification certificate and its making method
CN1971575A (en) * 2006-11-24 2007-05-30 深圳兆日技术有限公司 An identity control method based on credibility platform module and fingerprint identifying

Family Cites Families (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101540083A (en) * 2009-04-16 2009-09-23 成都方程式电子有限公司 Method utilizing ID card number as bank account number and adopting fingerprint for ID authentication
CN201654806U (en) * 2010-03-30 2010-11-24 王晶晶 ID card verification system based on fingerprint identification
CN202067291U (en) * 2011-05-17 2011-12-07 吴长松 Multifunctional mobile police affair validating terminal

Patent Citations (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN1339894A (en) * 2000-08-24 2002-03-13 杭州中正生物认证技术有限公司 Identification certificate and its making method
CN1971575A (en) * 2006-11-24 2007-05-30 深圳兆日技术有限公司 An identity control method based on credibility platform module and fingerprint identifying

Also Published As

Publication number Publication date
CN102867136A (en) 2013-01-09

Similar Documents

Publication Publication Date Title
CN102867136B (en) A kind of second-generation identity card authentication system with fingerprint characteristic
CN201181472Y (en) Hardware key device and movable memory system
CN108011716B (en) Cipher device and implementation method
CN105095719B (en) A kind of unlocked by fingerprint method and its system and the electronic equipment with the system
CN103606047A (en) Password management system
CN1889419A (en) Method and apparatus for realizing encrypting
CA2829689A1 (en) An instant communication method and system
CN104468937A (en) Data encryption and decryption methods and devices for mobile terminal and protection system
CN104318201A (en) Fingerprint processing method, chip and terminal
CN105117658A (en) Password security management method and equipment based on fingerprint authentication
CN105808998A (en) Fingerprint identification device
CN102857503A (en) Secure wireless transmission method for fingerprint data
CN104468478A (en) Mail encryption method
CN101383825A (en) Method, apparatus and terminal implementing computer file ciphering
CN104036204A (en) Touch-tone encrypted safety USB (universal serial bus) flash disk
CN110191136A (en) A kind of convenient and fast file secure transmission method and equipment
CN105825135A (en) Encryption chip, encryption system, encryption method and decryption method
CN203260066U (en) Electronic payment device based on fingerprint identification and audio interface
CN103258269A (en) Electronic payment device for mobile equipment
CN202711243U (en) Encryption type movable storage device based on fingerprint authentication
CN201838004U (en) Hardware encryption card for computer interface
CN101639881A (en) Data transmission line
CN103186736A (en) Fingerprint key device
CN102831080A (en) Data security protection method for mobile storage equipment
GB2556625A (en) Secure enrolment of biometric data

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
C53 Correction of patent for invention or patent application
CB02 Change of applicant information

Address after: The city of Hangzhou in West Zhejiang province 311121 No. 998 Building 9 East Sea Park

Applicant after: Hangzhou Shengyuan Chip Technique Co., Ltd.

Address before: 310012, room 17, building 176, 203 Tianmu Mountain Road, Hangzhou, Zhejiang, Xihu District

Applicant before: Hangzhou Shengyuan Chip Technique Co., Ltd.

C53 Correction of patent for invention or patent application
CB02 Change of applicant information

Address after: Hangzhou City, Zhejiang province 311121 Yuhang Wuchang Street No. 998 West Sea Park Building 9 East

Applicant after: Hangzhou Shengyuan Chip Technique Co., Ltd.

Address before: The city of Hangzhou in West Zhejiang province 311121 No. 998 Building 9 East Sea Park

Applicant before: Hangzhou Shengyuan Chip Technique Co., Ltd.

CB02 Change of applicant information

Address after: Hangzhou City, Zhejiang province 311121 Yuhang Wuchang Street No. 998 West Sea Park Building 9 East

Applicant after: HANGZHOU SYNODATA SECURITY TECHNOLOGY CO., LTD.

Address before: Hangzhou City, Zhejiang province 311121 Yuhang Wuchang Street No. 998 West Sea Park Building 9 East

Applicant before: Hangzhou Shengyuan Chip Technique Co., Ltd.

COR Change of bibliographic data
C14 Grant of patent or utility model
GR01 Patent grant