Biometric Identification Handshake Overhead Reduction

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

The conventional TLS handshake process in fingerprint identification systems involves numerous interactions, leading to significant system overhead.

Innovation Solution

A method that reduces handshake interactions by using pre-shared keys to generate session keys and identity verification information, allowing for secure biometric identification information transmission with reduced overhead.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If conventional TLS handshake process is used for biometric identification information transmission, then data confidentiality and integrity are ensured, but system overhead increases significantly due to numerous interactions

Engineering Contradiction:
Improvedata confidentiality and integrityVSAvoidsystem overhead
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent applies preliminary action by pre-configuring both the biometric identification apparatus and driving unit with identical pre-shared keys before communication. This eliminates the need for complex TLS handshake negotiations, as both parties already possess the cryptographic material needed for secure communication, thereby reducing system overhead while maintaining data confidentiality and integrity

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The patent extracts the key exchange and certificate verification steps from the complete TLS handshake process, retaining only the essential symmetric encryption mechanism. By removing unnecessary handshake interactions and keeping only the core security functionality using pre-shared keys, the system achieves secure biometric transmission with reduced complexity

Inventive Principle:
Principle #2Taking out (Extraction)

2Adaptability or versatility

If multiple pre-shared keys are provided for selection, then flexibility is improved, but the handshake process becomes more complex requiring additional interactions

Engineering Contradiction:
Improvekey selection flexibilityVSAvoidhandshake interaction complexity
Core Design Contradiction:
Adaptability or versatilityVSDevice complexity

Solution Approach 1:

The patent applies self-service by having both the biometric identification apparatus and driving unit independently generate identical session keys using the same pre-shared key and random numbers. Each party autonomously derives the encryption keys without needing to negotiate or select from multiple options, eliminating complex key selection interactions while maintaining flexibility through programmable key derivation

Inventive Principle:
Principle #25Self-service

Data Source

PatentEP3547601B1Biometric information transmission establishing method , device, system, and storage medium
Publication Date: 2020.10.21 SHENZHEN GOODIX TECH CO LTD
  • EP3547601B1 patent drawingFigure 1
  • EP3547601B1 patent drawingFigure 2
  • EP3547601B1 patent drawingFigure 3~4

AI summary

The present application provides a method, an apparatus and a system for establishing biometric identification information transmission and a storage medium, including: transmitting a first random number to a driving unit; receiving a second random number and a first identity verification information from the driving unit; generating a key of a first session according to the first random number, the second random number and a pre-shared key, and generating a second identity verification information according to the key of the first session, the first random number and the second random number; transmitting the second identity verification information to the driving unit; and determining, according to the first identity verification information and the second identity verification information, whether a session between a biometric identification apparatus and the driving unit is established successfully. Therefore system overheads is reduced.