METHODS FOR SECURE ENROLLMENT OF PERSONAL IDENTITY CREDENTIALS INTO ELECTRONIC DEVICES
4 Assignments
0 Petitions
Accused Products
Abstract
A method and system for securely enrolling personal identity credentials into personal identification devices. The system of the invention comprises the manufacturer of the device and an enrollment authority. The manufacturer is responsible for recording serial numbers or another unique identifier for each device that it produces, along with a self-generated public key for each device. The enrollment authority is recognized by the manufacturer or another suitable institution as capable of validating an individual before enrolling him into the device. The enrollment authority maintains and operates the appropriate equipment for enrollment, and provides its approval of the enrollment. The methods described herein discuss post-manufacturing, enrollment, backup, and recovery processes for the device.
-
Citations
15 Claims
-
1-14. -14. (canceled)
-
15. A method, comprising:
-
verifying, at a personal identification device, a validity of a party based on an encrypted string associated with the party; sending from the personal identification device an encrypted session key to the party when the validity of the party is verified; receiving, at the personal identification device, biometric data based on the encrypted session key after the sending and when the validating of the party is verified; and storing, only at the personal identification device, the biometric data after the receiving.
-
Specification