Electronic Identity Cards for User Authentication-Promise and Practice

被引:22
作者
Poller, Andreas [1 ]
Waldmann, Ulrich [1 ]
Vowe, Sven [1 ]
Tuerpe, Sven [2 ]
机构
[1] Fraunhofer Inst Secure Informat Technol, Cloud Comp Ident & Privacy Dept, Darmstadt, Germany
[2] Fraunhofer Inst Secure Informat Technol, Secur Test Lab, Darmstadt, Germany
关键词
eID; electronic identity card; Germany; identity management; privacy; smart card; user authentication;
D O I
10.1109/MSP.2011.148
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Electronic identity (eID) cards promise to supply a universal, nationwide user authentication mechanism. Most European countries have started deploying eID for government and private-sector applications. The German eID project serves as a showcase for eID from an application perspective. The new German ID card is contactless, aims to protect people's privacy to the greatest extent possible, and supports cryptographically strong mutual authentication between users and services. Privacy features include support for pseudonymous authentication and per-service controlled access to individual data items. The core technology seems ready for mass deployment, but application issues might hamper eID adoption for online applications. © 2012 IEEE.
引用
收藏
页码:46 / 54
页数:9
相关论文
共 12 条
  • [1] [Anonymous], 2011, TR03127 GERM FED OFF
  • [2] [Anonymous], 2011, NAT STRAT TRUST ID C
  • [3] [Anonymous], 2000, Rethinking public key infrastructures and digital certificates: building in privacy
  • [4] [Anonymous], 2010, TR03110 GERM FED OFF
  • [5] [Anonymous], 2011, NAT STRAT POL DIG ID
  • [6] [Anonymous], 2011, 14890 CEN PREN EUR C
  • [7] [Anonymous], 2011, 15480 CEN PRTS EUR C
  • [8] [Anonymous], 2010, ISOIECJTC1SC17WG3TF5
  • [9] Borges G., 2010, RECHTSFRAGEN HAFTUNG
  • [10] Camenisch Jan., 2007, Security, Privacy, and Trust in Modern Data Management, P213