1、 /19785-42012 4 ISO/IEC 19785-4:2010Information technology Common Biometric Exchange FormatsFramework Part 4: Security block format specifications(IDT) 27 2002 . 184- , 1.02004 . 1 /1 - , 42 355 - 3 24 2012 . 554-4 / 19785-4:2010 - 4: (ISO/IEC 19785-4:2010 Information technology Common Biometric Exc
2、hange Formats Framework Part 4: Security block format specifications). - 1.52004 ( 3.5). - , 5 6 . - , - . () . - , , 2013 , - - II / 19785-420121 .12 13 23.1 ,/19785-1 23.2 ,/19784-1 23.3 ,/24761 .23.4 ,/9798-6 .24 24.1 /19785-124.2 /24761 .34.3 /9798-6 34.4 RFC3852 .35 35.1 .35.2 35.3 35.4 .35.5 .
3、1 .35.6 35.7 35.8 .45.9 .106 , .106.1 106.2 .106.3 .106.4 .106.5 .1.106.6 .106.7 116.8 11() .1 12B() ,RFC5911 14() .16III / 19785-42012 / 19785 .:- 1. ;- 2. ;- 3. ;- 4. .,- / . ( - ). .-.-()/19785-1- (). ()- / 19785-1, .,- CBEFF_BDB_encryption_options CBEFF_BIR_integrity_options -NOENCRYPTIONNOINTEG
4、RITY.,-,.,CBEFF_SB_format_ownerCBEFF_SB_format_type-,. , , -,.,/24713-3*,.5,- -,RFC3852CryptographicMessageSyntax(CMS)*EnvelopedData,EncryptedData,SignedData AuthenticatedData*. . AuthenticationContextforBiometrics(ACBio)*4,/ 24761. ACBio , -RFC3852.ACBio,- . ACBio (TAI)*53.6,.,.* .* RFC 3852 Crypto
5、graphic Message Syntax (CMS) - (Internet Engineering Task Force, IETF), , - .* EnvelopedData, EncryptedData, SignedData AuthenticatedData , , .*4Authentication Context for Biometrics (ACBio) ().*5Telebiometric authentication infrastructure (TAI) -.IV / 19785-42012 4 Information technology. Biometric
6、s. Common Biometric Exchange Formats Framework.Part 4. Security block format specifications 201301011 ( / 19785-1), - / 19785-2 , / 1/37, - . () , . / - , ACBio ( / 24761). , . , . / 19785 . , 6 , , ACBio .2 , . , , . , , , :/ 8824 ( ) . ( 1) (ISO/IEC 8824 (all parts), ITUT Rec. X.680683, Informatio
7、n technology AbstractSyntax Notation One (ASN.1)/ 8825 ( ) . .1(ISO/IEC 8825 (all parts), ITUT Rec. X.690693, Information technology ASN.1 encoding rules)1 / 19785-42012 / 9798-6 . . . 6. (ISO/IEC 9798-6, Information technology Security techniques Entity authentication Part 6: Mechanisms using manua
8、l data transfer)/ 19784-1 . . 1. (ISO/IEC 19784-1, Informationtechnology Biometric application programming interface Part 1: BioAPI specification)/ 19785-1 . - . 1. (ISO/IEC 19785-1, Informationtechnology Common Biometric Exchange Formats Framework Part 1: Data element specification)/ 24761 . . - (I
9、SO/IEC 24761, Information technology Security techniques Authentication context for biometrics)RFC 3852 (RFC 3852, Cryptographic Message Syntax(CMS), July 2004)RFC 5911 .1 - (RFC 5911, New ASN.1 Modules for Cryptographic MessageSyntax (CMS) and S-MIME, June 2010)3 3.1 , / 19785-1 , / 19785-1: (biome
10、tric); (biometrics); () (biometric data block (BDB); () (biometric information record (BIR);- (CBEFF biometric organization); () (security block (SB); (security block format); (security block format identifier); (security block format owner); () (standard biometric header (SBH).3.2 , / 19784-1 , / 1
11、9784-1: (BioAPI Unit).3.3 , / 24761 , / 24761: (ACBio instance); () (authentication context for biometrics (ACBio); () (biometric processing unit (BPU).3.4 , / 9798-6 , / 9798-6: (message authentication code).4 4.1 / 19785-1 / 19785-1: (BDB); (BIR); (CBEFF); (SB); (SBH).2 / 19785-420124.2 / 24761 /
12、24761: (ACBio); (BPU).4.3 / 9798-6 / 9798-6: (MAC).4.4 RFC 3852 RFC 3852:* (CRL).5 5.1 / 1/375.2 257 (0101Hex). /1/37 / 19785-2.5.3 ISO/IEC JTC 1/SC 37 CBEFF general-purpose security block format5.4 1 (0001 Hex). / 19785-2 DER (. / 8825-1).2 (0002 Hex). / 19785-2 PER (. / 8825-2).3 (0003 Hex). / 19785-2 XER (. / 8825-3).5.5 .1 5.5.1 DERiso registrationauthority c