Browse > Article
http://dx.doi.org/10.3745/KIPSTC.2003.10C.6.747

Multi User-Authentication System using One Time-Pseudo Random Number and Personal DNA STR Information in RFID Smart Card  

Sung, Soon-Hwa (충남대학교 대학원 컴퓨터공학과)
Kong, Eun-Bae (충남대학교 컴퓨터공학과)
Abstract
Thia paper suggests a milti user-authentication system comprises that DNA biometric informatiom, owner's RFID(Radio Frequency Identification) smartcard of hardware token, and PKI digital signqture of software. This system improved items proposed in [1] as follows : this mechanism provides one RFID smartcard instead of two user-authentication smartcard(the biometric registered seal card and the DNA personal ID card), and solbers user information exposure as RFID of low proce when the card is lost. In addition, this can be perfect multi user-autentication system to enable identification even in cases such as identical twins, the DNA collected from the blood of patient who has undergone a medical procedure involving blood replacement and the DNA of the blood donor, mutation in the DNA base of cancer cells and other cells. Therefore, the proposed system is applied to terminal log-on with RFID smart card that stores accurate digital DNA biometric information instead of present biometric user-authentication system with the card is lost, which doesn't expose any personal DNA information. The security of PKI digital signature private key can be improved because secure pseudo random number generator can generate infinite one-time pseudo randon number corresponding to a user ID to keep private key of PKI digital signature securely whenever authenticated users access a system. Un addition, this user-authentication system can be used in credit card, resident card, passport, etc. acceletating the use of biometric RFID smart' card. The security of proposed system is shown by statistical anaysis.
Keywords
RFID Smart Card; DNA STR Information; DNA Personal ID; One-time Pseudo Random Number; PKI Digital Signature Private Key;
Citations & Related Records
Times Cited By KSCI : 1  (Citation Analysis)
연도 인용수 순위
1 Tsujii, S., Itakura, Y., Yamaguchi, H., Kituzawa, A., Saito. S., Kasa-hara, M., A public key encryption method having a structure in which biological information is embedded in a secret key, Technical Report of IEICE, SCIS 2000, D07, 2000
2 http://www.itl.nist.gov/fipspubs/fipl80-1.htm
3 http://www.e-smartcom.net/product/produet-smartcard eCOS%20CARD.htm
4 http://members.tripod.Iycos.co.kr/temafu/postal/RFID-1_ 2.htm
5 P. Gutmann, 'Software Generation of Practically Strong Random Numbers, extended version,' available at http://www.cryptoengines.com/peter/06random.pdf, june, 2000
6 3GPP TSG SA WG3 Security-S3 # 15, 'Report on the Evaluation of 3GPP Standard Confidentiality and Integrity Algorithms,' Sep., 2000
7 3GPP TS 35.201 ; F8 and F9 Algorithms Specification ; this is available at http://www.etsi.org/dvbandca/3gpp/3gppspecs.htm
8 B. E. Jung, H. Ryu, K. Kim, K. Y. Chang and O. Y Yi, 'Analysis and Implementation for 3GPP Authentication Mechanism,' Proceeding of WISA, pp.87-102, 2001
9 http://csrc.nist.gov/CryptoToolkit/aes
10 송정환,현진수, 구본욱, 장구영, '블록 암호 알고리즘 기반의사난수 발생기 제안과 안전성 분석', 정보처리학회논문지C, 제9-C권 제6호, 2002   과학기술학회마을   DOI
11 Yukio Itakura, Masaki Hashiyada, Toshio nagashima, Shigeo Tsujii, 'Proposal on personal identifiers generated from the STR information of DNA,' Int. Journal Information Security, pp.149-160, April, 2002   DOI
12 http://www.kisa.or.kr
13 CSI/FBI Computer Crime & Security Survey Report, 2000
14 CSI/FBI Computer Crime & Security Survey Report, 1998
15 Itakura, Y., Nagashima, T., Tsujii, S., Statistical verification of DNA information for personal identification, Information Processing Society of Japan. CSS 2000, pp. 121-126. 2000
16 Brown TA(2000) Genome, trans. Muramatsu M. Medical Science International, p.154