Biometric Identification Server Using Transformation Key for Privacy

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing biometric identification systems lack adequate data protection, allowing unauthorized creation of user profiles and identification without consent, as users cannot revoke their biometric reference features.

Innovation Solution

Implementing an identification server that transforms biometric features using a transformation rule and key, requiring the transformation key for identification, thereby enhancing data protection by ensuring only authorized identification.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Measurement precision

If biometric reference features are transmitted to the identification server without transformation, then identification accuracy is improved, but data protection is worsened

Engineering Contradiction:
Improveidentification accuracyVSAvoiddata protection
Core Design Contradiction:
Measurement precisionVSObject-affected harmful factors

Solution Approach 1:

The biometric reference feature is transformed in advance before being stored and transmitted to the identification server. This preliminary transformation ensures that even if the stored data is intercepted, the original biometric information cannot be recovered without the transformation key, thus protecting data while maintaining identification accuracy during the identification process

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

A transformation key is introduced as an intermediary element between the biometric reference feature and the identification server. The transformation key controls the decryption and transformation process, acting as a mediator that enables accurate identification when needed while preventing unauthorized access and protecting user privacy when not needed

Inventive Principle:
Principle #24Intermediary (Mediator)

2Ease of operation

If the biometric reference feature is stored in the identification server, then identification convenience is improved, but user control over privacy is worsened

Engineering Contradiction:
Improveidentification convenienceVSAvoiduser control over privacy
Core Design Contradiction:
Ease of operationVSAdaptability or versatility

Solution Approach 1:

The system dynamically controls the transformation key - it can be provided to the identification server when identification is needed for convenience, and withheld or revoked when privacy protection is required. This dynamic control mechanism allows users to switch between convenience and privacy control based on their needs

Inventive Principle:
Principle #15Dynamics

Solution Approach 2:

The transformation key is pre-shared between the user's device and the identification server, enabling convenient identification operations without requiring real-time key exchange. However, the user retains the ability to revoke this pre-shared key at any time, maintaining preliminary control over their biometric data

Inventive Principle:
Principle #10Preliminary action

3Object-affected harmful factors

If transformation is applied to biometric features, then data protection is improved, but identification complexity is worsened

Engineering Contradiction:
Improvedata protectionVSAvoididentification complexity
Core Design Contradiction:
Object-affected harmful factorsVSDevice complexity

Solution Approach 1:

The patent replaces complex cryptographic transformation mechanisms with a simplified approach: the transformation and decryption process is performed locally on the user's device using stored transformation keys, rather than requiring complex server-side cryptographic operations. This substitution reduces overall system complexity while maintaining strong data protection

Inventive Principle:
Principle #28Mechanics substitution (Replace mechanical system)

Data Source

PatentEP3304807B1Identifying a person on the basis of a transformed biometric reference feature
Publication Date: 2021.10.13 BUNDESDRUCKEREI GMBH
  • EP3304807B1 patent drawingFigure 1
  • EP3304807B1 patent drawingFigure 2
  • EP3304807B1 patent drawingFigure 3

AI summary

The invention relates to an identification server (100) for identifying a person to be identified on the basis of a transformed biometric reference feature which is assigned to the person to be identified, comprising: a memory (101) in which a transformation prescription is stored; a communication interface (105) which is embodied to emit a request for transferring a biometric feature of the person to be identified and a transformation key by way of the communication network and which is embodied to receive the biometric feature of the person to be identified and the transformation key by way of the communication network; and a processor (103) which is embodied to transform the received biometric feature of the person to be identified into a transformed biometric feature for an identification on the basis of the transformed biometric reference feature by means of the transformation prescription and the received transformation key.