CN202838367U - Security identity card fingerprint authentication device - Google Patents

Security identity card fingerprint authentication device Download PDF

Info

Publication number
CN202838367U
CN202838367U CN 201220539505 CN201220539505U CN202838367U CN 202838367 U CN202838367 U CN 202838367U CN 201220539505 CN201220539505 CN 201220539505 CN 201220539505 U CN201220539505 U CN 201220539505U CN 202838367 U CN202838367 U CN 202838367U
Authority
CN
China
Prior art keywords
module
fingerprint
cpu
security
special module
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Expired - Lifetime
Application number
CN 201220539505
Other languages
Chinese (zh)
Inventor
王继春
孙涛
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Synthesis Electronic Technology Co Ltd
Original Assignee
SHANDONG SYNTHESIS ELECTRONIC TECHNOLOGY Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by SHANDONG SYNTHESIS ELECTRONIC TECHNOLOGY Co Ltd filed Critical SHANDONG SYNTHESIS ELECTRONIC TECHNOLOGY Co Ltd
Priority to CN 201220539505 priority Critical patent/CN202838367U/en
Application granted granted Critical
Publication of CN202838367U publication Critical patent/CN202838367U/en
Anticipated expiration legal-status Critical
Expired - Lifetime legal-status Critical Current

Links

Images

Landscapes

  • Collating Specific Patterns (AREA)

Abstract

The utility model discloses a security identity card fingerprint authentication device comprising a fingerprint sensor and an SAM (security access module). The security identity card fingerprint authentication device is characterized by further comprising a special integral packaging module and an RF (radio frequency) module, wherein the special integral packaging module is an integrated circuit centering at a CPU (central processing unit), the CPU is connected with the fingerprint sensor and the SAM via an input and output port integrated on the special integral packaging module, and the RF module is connected with the CPU so as to read information carried on a second generation identity card via an internal circuit. The security identity card fingerprint authentication device is good in security.

Description

A kind of safe I.D. fingerprint certification device
Technical field
The utility model relates to a kind of I.D. fingerprint certification device, belongs to the field of embedded system and integrated circuit (IC) design.
Background technology
Revised " residential identity demonstration " the 3rd clear, the resident identification card registry comprises finger print information, and stipulates that the citizen applies for getting, changes neck, the resident identification card of applying for another should be registered finger print information.In resident identification card, add finger print information, public security organ and society can be by veritifying fingerprint with the card unit, carrying out quickly and accurately " testimony of a witness homogeneity " assert, effectively take precautions against the generation of criminal offences such as falsely using other people resident identification card and imitation, adulterium resident identification card, be conducive to increase work efficiency, safeguard citizens' lawful rights and interests.
Revised " residential identity demonstration " strengthened the protection to individual citizens information; clear units concerned and staff thereof be to doing one's duty or provide the individual citizens information of the resident identification card record that obtains in the service process to treat it in strict confidence, and stipulated corresponding legal liabilities.
" residential identity demonstration " the 19 regulation of new revision: " staff of the units such as government offices or finance, telecommunications, traffic, education, medical treatment reveals in the individual citizens information of doing one's duty or providing the resident identification card that obtains in the service process to put down in writing; in the case which constitutes a crime, prosecution for criminal responsibility shall be undertaken according to law; Still if the offence does not constitute a crime, by the detention below 15 days more than ten days of public security organ place, and locate 5,000 yuan of fine, income generated in violation of the regulations is arranged, illegal gains shall be confiscated.There is the preceding article behavior in unit, and is in the case which constitutes a crime, prosecution for criminal responsibility shall be undertaken according to law; Still if the offence does not constitute a crime, to its persons directly in charge and other persons held directly responsible, locate detention below 15 days more than ten days by public security organ, and locate fine below 500,000 yuan more than 100,000 yuan, income generated in violation of the regulations is arranged, illegal gains shall be confiscated.Front two behavior is arranged, hurtful to other people, bear civil liabilities according to law.”
In at present practical application, fingerprint authentication comprises that on-line is verified and the off line type is verified two kinds.
Resident's fingerprint authentication process of on-line is as follows:
1. collect the image of fingerprint by fingerprint sensor, upload to PC by communication interface such as USB or serial ports, the fingerprint characteristic that meets Ministry of Public Security's standard in the PC operation is processed the storehouse, and Characteristic of Image takes the fingerprint.
2. the fingerprint characteristic information of storing in the Certification of Second Generation that reads by the SAM security module reads Certification of Second Generation and reads by the 13.56MHz radio frequency interface.
3. in PC, carry out aspect ratio pair, confirm resident's identity.
Fingerprint authentication is namely carried out in the checking of off line type in built-in terminal.Proof procedure is identical with on-line, and difference is that the terminal of checking changes built-in terminal into by PC.
Because finger print information is citizen's individual privacy, be checking citizenship law foundation simultaneously, in proof procedure, must guarantee the safety of finger print information.In current proof procedure, there is serious disclosure risk in finger print information.
At first, in the transmission course between fingerprint sensor and PC, fingerprint image is easy to be intercepted and captured; Secondly, the information in fingerprint that uploads in PC or the built-in terminal is present in the storage mediums such as internal memory or hard disk, has more serious risk of leakage.
Summary of the invention
Therefore, the utility model proposes preferably I.D. fingerprint certification device of a kind of security for the information security leak that exists in the current second generation identity card fingerprint authentication process.
A kind of safe I.D. fingerprint certification device, comprise fingerprint sensor and SAM security module, it is characterized in that, the special module that also comprises overall package, this special module is the integrated circuit take CPU as core, wherein said CPU connects described fingerprint sensor and SAM security module by the IO interface that is integrated on this special module, and comprises by internal circuit and be connected in described CPU to read the RF module of No.2 residence card carrying information.
According to above-mentioned safe I.D. fingerprint certification device of the present utility model, carry out the authentication of I.D. fingerprint by the special module of a slice overall package, fingerprint sensor and SAM security module are connected in this special module, directly carry out feature extraction and compare in the special module again after the information in fingerprint collection, in this process, need not to store fingerprint image and feature, can effectively solve the leakage problem in finger print information transmission and the storing process.
Above-mentioned safe I.D. fingerprint certification device, CPU connects peripheral circuit by internal bus in the described special module.
Above-mentioned safe I.D. fingerprint certification device is stated from the described special module with the storer of supporting special module and comprises for the Flash of storage specific boot code and operation code and be used for depositing the SRAM of temporary variable and data.
Below in conjunction with Figure of description in detail technical scheme of the present invention is described in detail.
Description of drawings
Fig. 1 is the structural principle block diagram according to a kind of safe I.D. fingerprint certification device of the present utility model.
Among the figure: 1, fingerprint sensor, 2, the SAM security module, 3, storer, 4, IO interface, 5, the encryption and decryption engine, 6, the finger prints processing engine, 7, CPU, 8, the RF module, 9, No.2 residence card.
Embodiment
Such as accompanying drawing 1, a kind of safe I.D. fingerprint certification device, make up No.2 residence card authentication special module, be called for short special module, special module is made of CPU7, finger prints processing engine 6, storer 3, IO interface 4 and encryption and decryption engine 5, take CPU as core, carry out framework with internal bus (shown in the heavy line among Fig. 1) or internal circuit.Fingerprint sensor 1 is connected to special module by IO interface 4, reads in information in fingerprint; The SAM(Security Access module of second generation identity card checking, secure access module) security module 2 is connected to special module by IO interface 4.
Wherein, SAM security module 2 and No.2 residence card authentication special module adopt the form of integration module, can adopt the form of single special IC, also can adopt the multi-chip package form that multiple chips is packaged together, and form a special module.The step that this special module carries out the fingerprint characteristic comparison comprises:
Information in fingerprint is input to special module by the fingerprint sensor collection, and CPU cooperates with the finger prints processing engine in special module, in module fingerprint is carried out fingerprint characteristic and extracts;
CPU is by SAM security module access No.2 residence card, the fingerprint characteristic information of storing in the reading identity card;
CPU compares the affirmation residential identity with the fingerprint characteristic that extracts in the fingerprint characteristic that extracts and the I.D..
Based on above scheme, owing to adopted integrated special module, have following advantage:
1. in special module, directly carry out feature extraction after the information in fingerprint collection and compare, in this process, need not to store fingerprint image and feature, can effectively solve the leakage problem in finger print information transmission and the storing process.
In special module with the parts such as CPU processor and RF module integration together, effectively solve the reliability and security of data transmission between CPU and the RF module, prevent CPU and RF(Radio Frequency, less radio-frequency) between the module communication intercepted and captured and leaked.
Further, the critical piece of second generation identity card fingerprint authentication comprises:
1. fingerprint sensor
These parts are input to special module with people's information in fingerprint collection and by communication interface.Fingerprint sensor mainly comprises semiconductor fingerprint sensor and optical sensor, is applicable to different application scenarioss.
2.SAM security module
The SAM security module is the guarantee of secure communication between No.2 residence card and the ID card verification facility.The SAM security module has defined the communication protocol between CPU and the No.2 residence card.
3. storer
Be used for the data that special module produces when calculation process process storage program or operation.Mainly comprise: temporary variable and data when SRAM is used for the operation of buffer memory program, authenticate completely, automatically empty; Flash is used for the program code of storage CPU.
4. IO interface
IO interface is communicated by letter for the treatment of CPU and external module, the main data interaction of processing between fingerprint sensor, SAM security module and the CPU in this programme.
5. encryption and decryption engine
The close algorithm of state that comprises RSA, DES/3DES and China.The encryption and decryption engine is used for realizing the hardware-accelerated of encryption and decryption operation.
6. finger prints processing engine
Be used for realizing the hardware-accelerated of finger prints processing, reduce the computational load of embedded type CPU in processing finger print information.
7.CPU
The processing element of executive system software.
8.RF module
The radio frequency interface of radio communication between realization and the No.2 residence card is supported the ISO14443 interface protocol.
In addition, about No.2 residence card, storage resident's personal information, comprises resident's fingerprint characteristic information here in the resident identification card.
Wherein parts 3-8 consist of the special module of fingerprint authentication, and this module adopts integrated design, can adopt single highly integrated special IC to realize, also can adopt the form of many integrated circuit multi-chip packages to realize.Because adopt integrated design, this special module can realize that volume is less, the security that power consumption is lower and higher.
Using the step that this above-mentioned authenticate device carries out fingerprint characteristic comparison comprises:
1) information in fingerprint is carried out the collection of holder's fingerprint by fingerprint sensor 1, is transferred to special module through IO interface 4;
2) CPU7 in special module, call and move the finger prints processing program, carry out fingerprint characteristic and extract, fingerprint processing engine 6 will provide the function of hardware acceleration of finger prints processing in this leaching process, and the ephemeral data during the program operation such as fingerprint characteristic will be stored in the SRAM storer in the storer 3.
3) CPU7 utilizes security service access that SAM security module 2 provides by RF module 8 access No.2 residence cards 9, and the fingerprint characteristic information of storing in the reading identity card is stored among the SRAM in the storer 3;
4) CPU7 be stored in SRAM in fingerprint characteristic and I.D. in the fingerprint characteristic that extracts compare, confirm residential identity.
5) comparison finishes, and the interim service datas such as the fingerprint image among the removing SRAM and feature guarantee data security.During the module power down, the data among the SRAM also will be removed thereupon, and irrecoverable.
Adopt this such scheme and step, have following technical advantage and innovative point:
1. the image information collecting of fingerprint is in special module, can directly carry out fingerprint characteristic in special module extracts and compares, need not fingerprint image is transferred in PC or other treatment facilities and process, finger print information can not derived outside the special module, has solved the information security issue in the fingerprint image transmission course.
2. carry out fingerprint characteristic and extract and compare in special module, need not to carry out the storage of fingerprint image and feature, above-mentioned information will be removed thereupon after comparison finishes, and this has just solved the problem of data safety of fingerprint image and characteristic storage.
In special module with the parts such as CPU processor and RF module integration together, effectively solve the reliability and security of data transmission between CPU and the RF module, prevent from communicating by letter between CPU and the RF module and intercepted and captured and leak.

Claims (3)

1. the I.D. fingerprint certification device of a safety, comprise fingerprint sensor (1) and SAM security module, it is characterized in that, the special module that also comprises overall package, this special module is CPU(7) be the integrated circuit of core, wherein said CPU connects described fingerprint sensor (1) and SAM security module (2) by the IO interface that is integrated on this special module, and comprise by internal circuit be connected in described CPU(7) to read the RF module (8) of No.2 residence card carrying information.
2. safe I.D. fingerprint certification device according to claim 1 is characterized in that CPU connects peripheral circuit by internal bus in the described special module.
3. safe I.D. fingerprint certification device according to claim 1, it is characterized in that, be stated from the described special module with the storer of supporting special module and comprise for the Flash of storage specific boot code and operation code and be used for depositing the SRAM of temporary variable and data.
CN 201220539505 2012-10-22 2012-10-22 Security identity card fingerprint authentication device Expired - Lifetime CN202838367U (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN 201220539505 CN202838367U (en) 2012-10-22 2012-10-22 Security identity card fingerprint authentication device

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN 201220539505 CN202838367U (en) 2012-10-22 2012-10-22 Security identity card fingerprint authentication device

Publications (1)

Publication Number Publication Date
CN202838367U true CN202838367U (en) 2013-03-27

Family

ID=47950018

Family Applications (1)

Application Number Title Priority Date Filing Date
CN 201220539505 Expired - Lifetime CN202838367U (en) 2012-10-22 2012-10-22 Security identity card fingerprint authentication device

Country Status (1)

Country Link
CN (1) CN202838367U (en)

Cited By (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102938056A (en) * 2012-10-22 2013-02-20 山东神思电子技术股份有限公司 Safe identity card fingerprint authentication device
CN104598854A (en) * 2015-01-16 2015-05-06 孟庆国 Identification card concentrated decoding system

Cited By (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102938056A (en) * 2012-10-22 2013-02-20 山东神思电子技术股份有限公司 Safe identity card fingerprint authentication device
CN104598854A (en) * 2015-01-16 2015-05-06 孟庆国 Identification card concentrated decoding system

Similar Documents

Publication Publication Date Title
CN103745151B (en) Method for authenticating identity through combination of two-dimension codes and dynamic passwords
CN204759626U (en) Electronic payment terminating machine
CN101154251A (en) Information privacy management system based on radio frequency recognition and method thereof
CN104881648A (en) Fingerprint verification system arranged in valid identity card
CN201974866U (en) Card-camera access control device
CN204480256U (en) The fingerprint blue-tooth intelligence cipher key that a kind of Multifunctional mobile pays
CN205827374U (en) Internet authentication trusted system and terminal
CN202003365U (en) Authentication device based on system on programmable chip (SOPC)
CN102034307A (en) Electronic wallet-based dynamic password authentication system and method
CN202838367U (en) Security identity card fingerprint authentication device
CN205015906U (en) Anti -fake verification system of electron certificate
CN102013026A (en) Smart card dynamic password authentication system and smart card dynamic password authentication method
CN103279692A (en) File encrypting and decrypting method and device based on mobile phone
Ranasinghe et al. RFID/NFC device with embedded fingerprint authentication system
US20150143512A1 (en) Iris key, system and method of unlocking electronic device using the iris key
CN104462926A (en) Intelligent card identity recognition method and system
CN204883811U (en) Payment card safety coefficient
CN103390140A (en) Mobile terminal and information security control method thereof
CN106709832A (en) Campus life account system based on fingerprint identification
US8880859B2 (en) Method and arrangement for configuring electronic devices
CN102938056A (en) Safe identity card fingerprint authentication device
CN104951823A (en) Composite card management method and system
CN107730263A (en) A kind of high safety fingerprint method of payment and system
Singh Multi-factor authentication and their approaches
CN207051923U (en) The image sensor chip and terminal device of individual layer embedded bio recognizer

Legal Events

Date Code Title Description
C14 Grant of patent or utility model
GR01 Patent grant
C56 Change in the name or address of the patentee
CP01 Change in the name or title of a patent holder

Address after: Shun high tech Zone of Ji'nan City, Shandong province 250101 China West Road No. 699

Patentee after: SYNTHESIS ELECTRONIC TECHNOLOGY Co.,Ltd.

Address before: Shun high tech Zone of Ji'nan City, Shandong province 250101 China West Road No. 699

Patentee before: SHANDONG SYNTHESIS ELECTRONIC TECHNOLOGY Co.,Ltd.

CX01 Expiry of patent term
CX01 Expiry of patent term

Granted publication date: 20130327