Client-Server Collation System for Biometric Data Leakage Prevention
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
In client-server systems, there is a risk of biometric information leakage when templates are stored on clients, which are not adequately protected by personal information protection laws, and there is a need to prevent leakage of secret information such as passwords or secret keys stored on clients during authentication processes.
Innovation Solution
A collation system that includes a client with a random number generation unit, a concealed information storage unit, and a concealed index computation unit, which generates and stores concealed information using a concealment key, and a server with a determination unit that uses a release key to verify the authenticity of the concealed index, preventing unauthorized access and leakage.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Productivity
If biometric templates are stored on clients, then authentication speed and convenience are improved, but security against information leakage deteriorates
Solution Approach 1:
The patent segments the authentication system into client and server components, where the client stores only encrypted template data and the server holds the decryption keys. This segmentation allows fast local authentication processing while maintaining centralized security control, resolving the contradiction between authentication speed and security.
Solution Approach 2:
The patent introduces encrypted template data as an intermediary between the original biometric information and the authentication server. The encrypted data can be stored and processed on the client for fast authentication, but the decryption capability remains with the server, thus maintaining security while improving authentication speed.
2Reliability
If encrypted templates are stored on clients, then personal information protection is improved, but vulnerability to client compromise deteriorates
Solution Approach 1:
The patent applies preliminary encryption to biometric templates before storing them on clients. By encrypting the data in advance and keeping decryption keys on the server, the system ensures that even if client storage is compromised, the stolen data remains unusable without the server's decryption capability.
3Ease of operation
If decryption keys are stored on clients, then authentication convenience is improved, but risk of key leakage deteriorates
Solution Approach 1:
The patent segments the key management function, storing only encrypted template data on the client while keeping decryption keys exclusively on the server. This segmentation eliminates the risk of key leakage from client storage while maintaining authentication convenience through efficient client-side processing of encrypted data.
Solution Approach 2:
The encrypted template data acts as an intermediary that enables client-side authentication processing without requiring decryption keys on the client. The client can perform authentication operations on encrypted data, and only the server can decrypt results, thus maintaining convenience while eliminating key leakage risk.
Data Source
AI summary
A collation system 20, which is provided with a client 30 and a server 40, the client 30 includes: a random number generation unit 31 which generates a random number; a concealed information storage unit 32 which stores concealed information generated by concealing registered information and the generated random number using a concealment key; and a concealed index computation unit 33 which, on the basis of the collation information input for collation with the registered information and the concealed information, computes a concealed index, generated by concealing an index indicating closeness between the registered information and the collation information; the server 40 includes a determination unit 41 which uses a release key corresponding to the concealment key and the random number transmitted from the client 30 to determine whether or not the index can be acquired from the concealed index transmitted from the client 30.


