Presentation is loading. Please wait.

Presentation is loading. Please wait.

Strong Authentication Infrastructure Requirement: Trusted Input Devices National ID Workshop Carnegie Mellon University November 28, 2001 Lark M. Allen.

Similar presentations


Presentation on theme: "Strong Authentication Infrastructure Requirement: Trusted Input Devices National ID Workshop Carnegie Mellon University November 28, 2001 Lark M. Allen."— Presentation transcript:

1 Strong Authentication Infrastructure Requirement: Trusted Input Devices National ID Workshop Carnegie Mellon University November 28, 2001 Lark M. Allen / Wave Systems

2 The Problem  Personal Computers are untrusted devices  Input, processing, and output cannot be protected or hidden from interception, observation, and hacking Therefore: Authentication processing in PCs cannot be trusted, regardless of the identity tokens utilized 11/27/012

3 The Problem 11/27/013 Hi, I’m Bill Gates, Would you please give me access to my bank account ? Password / PIN (PC) Sure, Trust Me! SMART

4 EU Is Addressing the Problem  France: 1999 Cyber-Comm specification for trusted smart card readers for consumer usage  Banks, Credit Card and Smart Card Companies  Authentication of smart card and keypad input performed in reader  Secure output – LCD display on reader  EU: July, 2001 FinRead specification for trusted reader devices  Banks, Governments, Technology Companies  Programmable, multi-application/services platform through Java applets  Global Trust Authority as source of trust for system  Integrated services business model for deployment 11/27/014

5 EMBASSY Trusted Client Systems Processor Memory Interfaces /Storage Clock Crypto Music DRM Digital Signature Video PPV Trust Assurance Network Digital Signature Digital Signature Music DRM Music DRM Hard Disk Digital Signature Video PPV Video PPV Application EMBASSY CHIP/ Trusted OS Music DRM ‘Sovereign and Protected Place in a Hostile Territory’

6 Strategic: Independent Trust Domains EMBASSY Device Trust Domain Shared, Multi-Party Trusted Devices SERVICE C Trust Domain Applet C Applet B SERVICE B Trust Domain SERVICE A Trust Domain Applet A

7 Strong Authentication Content Protection Services Delivery E-Commerce Privacy Protection Platform Security Secure Peer-Peer Conditional Access Distributed Transactions Secure Applets Trusted Operating System EMBASSY Trusted Client Chip Trust Assurance Network Developer Kits EMBASSY Trusted Client Applications

8 EMBASSY-enabled Devices PC USB secure input devices Interfaces to support multiple inputs: Key matrix Smart cards LCD - output Biometrics GPS Mag stripe Serial devices Keyboards (Samsung, PC OEMs) Smart Card Readers (SSP/Litronics, SCM, Securelink/CPS) PC/SC and EMV-Compliant New platform for services and security applications to PCs


Download ppt "Strong Authentication Infrastructure Requirement: Trusted Input Devices National ID Workshop Carnegie Mellon University November 28, 2001 Lark M. Allen."

Similar presentations


Ads by Google