Biometric Identification Server Using Transformation Key for Privacy
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing biometric identification systems lack adequate data protection, allowing unauthorized creation of user profiles and identification without consent, as users cannot revoke their biometric reference features.
Innovation Solution
Implementing an identification server that transforms biometric features using a transformation rule and key, requiring the transformation key for identification, thereby enhancing data protection by ensuring only authorized identification.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Measurement precision
If biometric reference features are transmitted to the identification server without transformation, then identification accuracy is improved, but data protection is worsened
Solution Approach 1:
The biometric reference feature is transformed in advance before being stored and transmitted to the identification server. This preliminary transformation ensures that even if the stored data is intercepted, the original biometric information cannot be recovered without the transformation key, thus protecting data while maintaining identification accuracy during the identification process
Solution Approach 2:
A transformation key is introduced as an intermediary element between the biometric reference feature and the identification server. The transformation key controls the decryption and transformation process, acting as a mediator that enables accurate identification when needed while preventing unauthorized access and protecting user privacy when not needed
2Ease of operation
If the biometric reference feature is stored in the identification server, then identification convenience is improved, but user control over privacy is worsened
Solution Approach 1:
The system dynamically controls the transformation key - it can be provided to the identification server when identification is needed for convenience, and withheld or revoked when privacy protection is required. This dynamic control mechanism allows users to switch between convenience and privacy control based on their needs
Solution Approach 2:
The transformation key is pre-shared between the user's device and the identification server, enabling convenient identification operations without requiring real-time key exchange. However, the user retains the ability to revoke this pre-shared key at any time, maintaining preliminary control over their biometric data
3Object-affected harmful factors
If transformation is applied to biometric features, then data protection is improved, but identification complexity is worsened
Solution Approach 1:
The patent replaces complex cryptographic transformation mechanisms with a simplified approach: the transformation and decryption process is performed locally on the user's device using stored transformation keys, rather than requiring complex server-side cryptographic operations. This substitution reduces overall system complexity while maintaining strong data protection
Data Source
Figure 1
Figure 2
Figure 3
AI summary
The invention relates to an identification server (100) for identifying a person to be identified on the basis of a transformed biometric reference feature which is assigned to the person to be identified, comprising: a memory (101) in which a transformation prescription is stored; a communication interface (105) which is embodied to emit a request for transferring a biometric feature of the person to be identified and a transformation key by way of the communication network and which is embodied to receive the biometric feature of the person to be identified and the transformation key by way of the communication network; and a processor (103) which is embodied to transform the received biometric feature of the person to be identified into a transformed biometric feature for an identification on the basis of the transformed biometric reference feature by means of the transformation prescription and the received transformation key.