1 NPIVP Workshop March 3, 2006 Red Auditorium, NIST, Gaithersburg PIV Test Guidelines Revisions Dr. R. Chandramouli (Mouli) (Director NPIVP)

Slides:



Advertisements
Similar presentations
Cerner Presentation to S&I esMD Workgroup – Industry Scan
Advertisements

CardTech/SecureTech 2002 Government Smart Card Government Smart Card Smart Card Standards and the Government Smart Card Interoperability Specification.
Card and Reader Overview Gerald Smith Sr. Consultant ID Technology Partners.
FIPS 201 Framework: Special Pubs ,76,78 Jim Dray HSPD-12 Workshop May 4/5, 2005.
Status of U.S. Smart Card Deployment Jim Dray Porvoo 7/ World eID Meeting May 2005.
Overview of US Federal Identity Management Initiatives Peter Alterman, Ph.D. Chair, Federal PKI Policy Authority and Asst. CIO E-Authentication, NIH.
The 4BF The Four Bridges Forum Federated PACS A Physical Access Use Case for Bridges FIPS 201/PIV-I PACS Interoperability April 28 th, 2009.
15June’061 NASA PKI and the Federal Environment 13th Fed-Ed PKI Meeting 15 June ‘06 Presenter: Tice DeYoung.
1 1 A Synopsis of Federal Information Processing Standard (FIPS) 201 for Personal Identity Verification (PIV) of Federal Employees and Contractors Presentation.
Personal Identity Verification Program
Department of Health and Human Services Personal Identity Verification Training APPLICANT.
1 Federal Identity Management and Homeland Security Presidential Directive 12 David Temoshok Director, Identity Policy and Management GSA Office of Governmentwide.
FIPS 201 Personal Identity Verification For Federal Employees and Contractors National Institute of Standards and Technology Information Technology Laboratory.
“Personal Identity Verification (PIV) of Federal Employees and Contractors” October 27, 2005 Homeland Security Presidential Directive 12 (HSPD-12)
Cryptography Usage in TWIC (Draft v4 8Dec06)
94/156/174 sRGB Color Palette Values 227/114/34 68/105/125 94/156/ /166/ /198/ /179/ /158/94 108/136/ /198/ /191/179.
1/13/05NCASSR PNNL Visit1 Security Tools Area Overview, Credential Management Services, and the PKI Testbed Jim Basney Senior Research Scientist
National Institute of Standards and Technology 1 NIST Guidance and Standards on System Level Information Security Management Dr. Alicia Clay Deputy Chief.
NIST Special Publication Biometric Data Specification for Personal Identity Verification March 3, 2006 Update.
Federal Information Processing Standard (FIPS) 201, Personal Identity Verification for Federal Employees and Contractors Tim Polk May.
EDUCAUSE Fed/Higher ED PKI Coordination Meeting
1 1 PAIIWG++ Meeting #1 William I. MacGregor National Institute of Standards and Technology 16 Sep 2008.
PIV Data Model Testing Ketan Mehta March 3, 2006.
Mar 11, 2003Mårten Trolin1 Previous lecture Diffie-Hellman key agreement Authentication Certificates Certificate Authorities.
E-Authentication: What Technologies Are Effective? Donna F Dodson April 21, 2008.
Common Page Design. Graphics and Tables Uses: Objects Numbers Concepts Words.
NASA Personal Identity Verification (PIV) NASA Personal Identity Verification (PIV) High Level System Overview Tice F. DeYoung, PhD 14th Fed/Ed Workshop.
NVLAP Overview and Accreditation Process March 2006.
Election Assistance Commission United States VVSG Technical Guidelines Development Committee (TGDC) NIST July 20, 2015 Gaithersburg,
Biometric Access Control in TWIC Read Hardware and Card Application Specification Roger Roehr.
Copyright © The Open Group 2011 Your Name Your title 44 Montgomery Street Suite 960 San Francisco, CA USA Tel
Special Publication : Interfaces for Personal Identity Verification Jim Dray NIST NPIVP Workshop March 3, 2006.
Exploring Microsoft Access Chapter 4 Relational Databases, External Data, Charts, and the Switchboard.
Feb Software Development and IT Security at NOAA/NESDIS/NODC John Relph and Ken Casey NOAA National Oceanographic Data.
1 1 Update: ISO/IEC Identification Cards - Integrated circuit cards programming interfaces Teresa Schwarzhoff, U.S. Department of Commerce Porvoo-12:
Requirements Specification for Lab3 COP4331 and EEL4884 OO Processes for Software Development © Dr. David A. Workman School of Computer Science University.
Business and Systems Aligned. Business Empowered. TM Federal Identity Management Handbook May 5, 2005.
The Value of Common Criteria Evaluations Stuart Katzke, Ph.D. Senior Research Scientist National Institute of Standards & Technology 100 Bureau Drive;
DATA, SITE AND RESOURCE MANAGEMENT SOFTWARE. A Windows application software designed for use with Stylitis data loggers. EMMETRON consolidates resources,
Module 3 Configuring File Access and Printers on Windows ® 7 Clients.
NIST and Computer Security Competencies and Resources to Support E-Voting and Security Ed Roback Chief, Computer Security Division Information Technology.
28 th International Traffic Records Forum Biometrics/SmartCard Workshop 28 th International Traffic Records Forum August 4, 2002 Orlando, Florida.
Module 3 Configuring File Access and Printers on Windows 7 Clients.
European Electronic Identity Practices CEN TC224 WG15 European Citizen Card Standard Speaker: L. Gaston AXALTO Date: 26 May 05.
Module 3: Configuring File Access and Printers on Windows 7 Clients
1 ISO/IEC JTC1/SC37 Standards A presentation of the family of biometric standards October 2008.
1 Federal Identity Management Initiatives Federal Identity Management Initatives David Temoshok Director, Identity Policy and Management GSA Office of.
Public Law Government Charge Card Abuse Prevention Act of 2012 (Charge Card Act) REPORTS December 2013.
Securing Online Banking By Ben White CS 591. Who Federal Financial Institutions Examination Council What To authenticate the identity of retail and commercial.
Certification and Validation Process NPIVP Workshop - March 03, 2006.
NIST SP800 53R4 WMISACA Conferance April 2016 By Dean E Brown CISSP, ISSMP, CSSLP, MCSD Owner – ITSecurityAxioms.com 262 Barrington Cir Lansing, MI
The Federal E-Authentication Initiative David Temoshok Director, Identity Policy GSA Office of Governmentwide Policy February 12, 2004 The E-Authentication.
Test Title Test Content.
Ketan Mehta March 3, 2006 PIV Data Model Testing Ketan Mehta March 3, 2006.
Lab Notebook Setup Jennie L. Borders.
Personal Identity Verification Program
Designers’ Manual Overview and Chapter Contents
Agency SFY IT Strategic Plans: Training
EDUCAUSE Fed/Higher ED PKI Coordination Meeting
SWEN 5230 Your Project Title
Technical Approach Chris Louden Enspier
E-Authentication: What Technologies Are Effective?
Chapter 8 – Energy balances
Group Meeting Ming Hong Tsai Date :
Pima Medical Institute Online Education
NASA Personal Identity Verification (PIV) High Level System Overview Tice F. DeYoung, PhD 14th Fed/Ed Workshop December 14, 2006.
Installation Binder / IRR – an example
Dr. N. S. Harding Chemical Engineering 477 March 8, 2018
ELECTRONIC SIGNATURES
ELECTRONIC SIGNATURES
Presentation transcript:

1 NPIVP Workshop March 3, 2006 Red Auditorium, NIST, Gaithersburg PIV Test Guidelines Revisions Dr. R. Chandramouli (Mouli) (Director NPIVP)

2 Scope of SP DTRs and Test Assertions Cover the testing of the following for Conformance to SP Specs: 1. PIV Middleware Interface – Client Application Programming Interface (Chapter 6) 2. PIV Card Application Interface – Card Application Card Command Interface (Chapter 7) 3. PIV Data Model (Chapter 4 & Appendix A)

3 PIV Conformance Testing Process Overview Test TypeBy whomWhen PIV Middleware Interface Accredited NPIVP Lab Prior to Agency Procurement PIV Card App. Interface Accredited NPIVP Lab Prior to Agency Procurement (Card Pre- Personalization) PIV Data Model (On-card Content) Agencies (or Sys. Integrator) During Card Issuance ( Personalization)

4 PIV Conformance Testing Guidelines Documents Overview (Revised) Test TypeBy whomDocument PIV Middleware Interface Accredited NPIVP Lab SP A PIV Card App. Interface Accredited NPIVP Lab SP A PIV Data Model and Content Agencies (or Sys. Integrator) SP B

5 PIV Conformance Testing Guidelines Document Titles SP SP A SP B PIV Card Application and Middeware Interface Test Guidelines PIV Data Model and Content Test Guidelines

6 PIV Card Application and Middeware Interface Test Guidelines (SP A) - Scope PIV Middleware Interface Tests - 9 Functions - 81 Test Cases PIV Card Application Interface Tests - 8 APDUs - 97 Test Cases - 68 Contact, 29 Contactless Interface

7 What is “New” and “Out” in SP A Out Appendix D – PIV Data Objects Representation Test Assertions Appendix E - PIV Authentication Use Case Test Assertions Appendix F.3 – Data Objects Representation Test Results Summary Appendix F.4 – Authentication Use Case Test Results Summary Appendix F.5 – To be renamed to “Test Discrepancy Cases Reporting Template” and re-numbered.

8 What is “New” and “Out” in SP A New Appendix D – DTRs to Test Assertions Mapping Table Testing Integrity of Data Objects storage based on BER-TLV tags – WHAT IS IN = WHAT WE GET Tests Modified to capture changes e.g., Removal of PIN requirement for Certificate buffers Testing of GENERAL AUTHENTICATE command for all three types of authentication – INTERNAL, EXTERNAL and MUTUAL.

9 PIV Data Model and Content Test Guidelines (SP B) - Scope BER-TLV Format Conformance Tests - All data Objects - Appendix A of SP Biometric Data Format Conformance Tests - Fingerprint and Facial Objects - SP Cryptographic Objects Tests - Certificates, Signature Blocks - SP , FIPS 201-1

10 Publication Dates SP A – March 10 th, 2006 SP B - April 3 th, 2006