Role of Biometric Standards in IdM


Published on

Brief delivered at the 2009 Identity Protection and Management Conference titled "Role of Biometric Standards in IdM"

  • Be the first to comment

  • Be the first to like this

Role of Biometric Standards in IdM

  1. 1. Role of Biometric Standards in Interoperability and Data Sharing Identity Protection and Management Conference Mr. Benji Hutchinson April 2009 UNCLASSIFIED UNCLASSIFIED
  2. 2. <ul><li>Purpose </li></ul><ul><li>Provide an overview of Biometrics Task Force (BTF) biometric standards initiatives that are underway and planned for the future in the Department of Defense (DoD) and across the United States Government (USG). </li></ul><ul><li>Goals </li></ul><ul><li>Demonstrate the importance of biometric standards in the DoD Biometrics Enterprise. </li></ul>Purpose and Goal of Brief UNCLASSIFIED
  3. 3. <ul><li>DoD Policy and Strategy </li></ul><ul><li>DoD Directive for Biometrics 8521.01E (England 2008) – Responsibilities of the Executive Agent for Biometrics (Director BTF): </li></ul><ul><ul><li>E4.3. – “Provide for the standardization of biometric data formats, technical interfaces, conformance methodologies, performance evaluations, and other related areas to permit interoperability…” </li></ul></ul><ul><ul><li>E4.3.1. – “Provide for participation on national and international standards bodies to influence and accelerate standards development.” </li></ul></ul><ul><ul><li>E4.3.2 – “Establish a DoD Biometric Standards Working Group [BSWG] to coordinate and build consensus on biometric standards development, recommend standards for DoD adoption, and provide guidance for consistent standards implementation.“ </li></ul></ul><ul><li>DoD Biometrics Enterprise Strategic Plan – 2008-2015 (DoD Biometrics EXCOM 2008): </li></ul><ul><ul><li>“ Objective 3.4 – Develop and facilitate adoption of biometric standards to enable interoperability” </li></ul></ul><ul><li>DoD Requirements </li></ul><ul><li>Initial Capabilities Document (ICD) Biometrics in Support of Identity Management (JROC 2008) </li></ul><ul><ul><li>Documents 21 capability gaps to be resolved in the 2009-2015 timeframe </li></ul></ul><ul><ul><li>6 of the 21 gaps describe DoD shortfalls in biometric standards. (Gaps #4, 5, 9, 12, 15, 17) </li></ul></ul>DoD Policy, Strategy, and Requirements for Biometric Standards UNCLASSIFIED
  4. 4. BTF Standards Initiatives/Activities <ul><li>To achieve interoperability and information sharing, BTF addresses five standards-related activities on behalf of DoD: </li></ul><ul><ul><li>Participation in Standards Bodies and Standards Development – Participant in 3 Standards Bodies; Sponsor and Editor of 6 standards; Developer of DoD EBTS </li></ul></ul><ul><ul><li>Standards Adoption & Implementation – 29 standards adopted for use in DoD since 2004 and 17 standards currently under review for adoption </li></ul></ul><ul><ul><li>Joint, Interagency & Multinational (JIM) Collaboration and Coordination – Coordinate across U.S. government and NATO, as needed </li></ul></ul><ul><ul><li>Interoperability Tools Development – Developer of Conformance Testing and Quality Measurement Tools (BioAPI, Face, Finger) </li></ul></ul><ul><ul><li>USG-wide and DoD Conformity Assessment Programs – DoD developing and coordinating a standardized, program for testing with partners </li></ul></ul>Standards Body Participation and Standards Development Test Methodologies and Tools Standards Adoption & Implementation JIM Collaboration & Coordination Conformity Assessment Program UNCLASSIFIED
  5. 5. BTF Led Biometric Standards Activities UNCLASSIFIED Voting members, Editors, Technical Contributors DoD Biometric Standards Working Group NSTC SC on Biometrics and IdM INCITS M1 & M1 TGs ISO/IEC JTC1 SC37 & SC37 WGs OASIS Chair and Coordinate Champion (Lead) and Coordinate Members of U.S. Expert Delegation, Editors, Technical Contributors Provide Technical Expertise DISR Security Information Assurance and Cryptography Technical Working Group NSTC SC Biometrics and IdM SCA WG DHS BCG
  6. 6. <ul><li>BTF is a voting member of the National Biometric Standards Body (INCITS M1) and a member of the U.S. Experts delegation to the International (JTC 1/SC 37) Biometric Standards Body: </li></ul><ul><ul><li>BTF maintains voting rights and advocates DoD interests with regard to international standards at the national level. </li></ul></ul><ul><ul><li>Coordinates DoD positions within M1 on national and international standards. </li></ul></ul><ul><ul><li>DoD influences the content and timeline of biometric standards under development. </li></ul></ul><ul><ul><li>Tracks biometric standards development activities and reports progress and outcomes to the DoD community through the DoD Biometric Standards Working Group (BSWG). </li></ul></ul><ul><ul><li>Provides editorship, technical contributions, leadership for Ad-Hoc and Special Groups, and serves as the SC 37 Liaison to SC 27 (International Security Techniques Standards Body). </li></ul></ul><ul><li>Also a member of Organi zation for the Advancement of Structured Information Standards (OASIS) – a standards body on Web services and service-oriented architectures (SOA) </li></ul>DoD Participation in Standards Development UNCLASSIFIED
  7. 7. <ul><li>DoD EBTS v2.0 </li></ul><ul><ul><li>Emerging multimodal transmission specification for all DoD biometric systems </li></ul></ul><ul><ul><li>DoD EBTS v2.0 published on 27 March 2009 and is now available! </li></ul></ul><ul><ul><li>BTF develops and maintains specifications and will perform conformance testing to this standard – current conformance testing conducted for v1.2 </li></ul></ul><ul><ul><li>DoD’s implementation of ANSI/NIST-ITL 1-2007 standard </li></ul></ul><ul><ul><li>Provides increased flexibility to multiple mission sets through application profiles </li></ul></ul><ul><ul><li>Leverages the Integrated Data Dictionary, which standardizes a broad range of data elements available for implementation in DoD biometric systems </li></ul></ul><ul><ul><li>V2.0 is currently under review to be included in DISR as ‘Emerging’ – v1.2 is currently ‘Mandated’ by DISR. </li></ul></ul><ul><li>Obtaining a Copy of DoD EBTS v2.0 </li></ul><ul><ul><li>Contact Mr. Dale Hapeman at: [email_address] or 304-326-3029. </li></ul></ul><ul><ul><li>DoD EBTS v2.0 is freely available to the general public. No restrictions apply. </li></ul></ul><ul><li>Next Steps </li></ul><ul><ul><li>Initiate development of DoD EBTS XML Version (Based on ANSI/NIST-ITL 2-2008 (XML)) </li></ul></ul><ul><ul><li>Consider best approach for BTF to use the National Information Exchange Model (NIEM) </li></ul></ul>DoD Electronic Biometric Transmission Specification (EBTS) Version 2.0 UNCLASSIFIED
  8. 8. <ul><li>High Priorities </li></ul><ul><li>Biometric Data Interchange Formats for Modalities </li></ul><ul><ul><li>Fingerprint/Palm (Image and template) </li></ul></ul><ul><ul><li>Face (2-D and 3-D) </li></ul></ul><ul><ul><li>Iris (Image and compact) </li></ul></ul><ul><ul><li>Voice </li></ul></ul><ul><ul><li>DNA </li></ul></ul><ul><ul><li>Vascular </li></ul></ul><ul><li>Biometric Transmission Specifications </li></ul><ul><ul><li>DoD EBTS XML </li></ul></ul><ul><li>National and International Testing Methodologies </li></ul><ul><ul><li>Conformance Testing for Data Interchange Formats </li></ul></ul><ul><ul><li>Conformance Testing for Technical Interfaces </li></ul></ul><ul><ul><li>Quality Measurement </li></ul></ul><ul><ul><li>Performance Testing </li></ul></ul><ul><li>Emerging Priorities </li></ul><ul><ul><li>Role of Biometrics in Identity Management </li></ul></ul><ul><ul><li>Security Techniques </li></ul></ul><ul><ul><li>Identification Cards </li></ul></ul>High Priority Biometrics Standards UNCLASSIFIED
  9. 9. DoD Standards Coordination: Biometric Standards Working Group <ul><li>BTF chairs and coordinates the DoD Biometric Standards Working Group (BSWG), which is the primary forum that leads, consolidates, and coordinates biometric standards development and adoption activities within DoD and across USG. </li></ul><ul><ul><li>Contribute DoD technical input to standards development bodies </li></ul></ul><ul><ul><li>Coordinate DoD voting positions with federal partners for standards bodies </li></ul></ul><ul><li>On behalf of DoD, the BSWG empowers stakeholders with standards updates </li></ul><ul><ul><li>Documents available on BTF maintained in the DoD Biometric Expert Knowledgebase System (DBEKS) Web site accessible at: </li></ul></ul><ul><ul><li>Meeting minutes, activities documents, and standards development status updates </li></ul></ul><ul><li>Membership: Service branches, CENTCOM, SOCOM, NORTHCOM, MEPCOM, BTF, DMDC, DISA, DISR, NSA, ASD(NII) </li></ul><ul><li>Interagency Partners/Liaisons: OSTP, IC, DHS, FBI, NIST, DOT, FAA </li></ul><ul><li>DoD BSWG interested in expanding roster to include members of international organizations, foreign partners, and other federal agencies! </li></ul>UNCLASSIFIED
  10. 10. NSTC Subcommittee on Biometrics and Identity Management <ul><li>BTF participates in the National Science and Technology Council (NSTC) Subcommittee on Biometrics and Identity Management </li></ul><ul><ul><li>For more information on this organization and their work, go to: & </li></ul></ul><ul><li>BTF leads DoD participation in the NSTC Standards and Conformity Assessment Working Group (SCA WG) </li></ul><ul><ul><li>For more information on this working group and its work, go to: </li></ul></ul><ul><li>BTF is a primary contributor to 5 policies regarding USG standards under development in the NSTC SCA WG: </li></ul><ul><ul><li>“ Registry of USG Recommended Biometric Standards” – version 2.0 expected 2009 </li></ul></ul><ul><ul><li>“ Registry of Active Biometric Testing Programs” – expected 2009 </li></ul></ul><ul><ul><li>“ USG Agency Action Plan and Timeline for the Development, Adoption and Use of Biometric Standards” – expected 2009 </li></ul></ul><ul><ul><li>“ Supplemental Information on the USG Agency Action Plan for the Development, Adoption and Use of Biometric Standards” – expected 2009 </li></ul></ul><ul><ul><li>“ USG Policy for Use, Development and Adoption of Biometric Standards” –published 2007 </li></ul></ul>UNCLASSIFIED
  11. 11. DoD Standards Adoption Strategy for Biometrically Enabled Capabilities * This list of DoD biometrically enabled systems is not comprehensive. Taken from the DoD Integrated Data Dictionary (Nov 2008). As of April 2009 – 29 Biometric Standards Adopted in DoD UNCLASSIFIED Current Categories of Biometric Standards Adopted in 2009 Legacy Biometrically Enabled Systems* in 2009 Future Biometrics and Identity Management Standards (2010 – Beyond) Future Biometrically Enabled Capabilities (2010 – Beyond) <ul><li>Transmission Specifications (DoD EBTS) </li></ul><ul><li>Multimodal (ANSI/NIST ITL) </li></ul><ul><li>Data interchange Formats (Face, Finger, and Iris) </li></ul><ul><li>Application Profiles </li></ul><ul><li>Technical Interfaces (BioAPI, CBEFF) </li></ul><ul><li>Testing (Performance, Conformance, and Quality) </li></ul><ul><li>Biometrics Automated Toolset (BAT) </li></ul><ul><li>Detainee Reporting System (DRS) </li></ul><ul><li>Biometrics Intelligence Resource (BIR) </li></ul><ul><li>Biometrics Identification System for Access (BISA) </li></ul><ul><li>Defense Biometrics Identification System (DBIDS) </li></ul><ul><li>DoD Automated Biometric Identification System (ABIS) </li></ul><ul><li>Next Generation Automated Biometric Identification System (NG-ABIS) </li></ul><ul><li>Expanded Maritime Interception Operations (EMIO) System </li></ul><ul><li>Special Operation Command (SOCOM) </li></ul><ul><li>DoD EBTS Application Profiles for Specific DoD Systems </li></ul><ul><li>Maintenance of existing categories of national and international biometric standards in DISR </li></ul><ul><li>Web Services and Service Oriented Architecture (SOA) Standards </li></ul><ul><li>Extensible Markup Language (XML) Representations of Existing Standards </li></ul><ul><li>Integration of Security into Standards </li></ul><ul><li>Identity Management (IdM) Standards </li></ul>Programs of Record via two Capability Development Documents (CDD): 1. Biometrically Enabled Capability (BEC) – authoritative source(s) 2. Joint Personnel Identification (JPI) – tactical collection device(s)
  12. 12. DoD Adoption and Implementation Process <ul><li>BTF Standards Branch works closely with the Defense Information Systems Agency (DISA), the Executive Agent for standards within DoD </li></ul><ul><li>BTF submits published, high-priority standards to DISA for inclusion in the DoD Information Technology Registry (DISR): (requires a CAC) </li></ul><ul><ul><li>All change requests originate in the DoD BSWG and are submitted to the Security, Information Assurance and Cryptography, with Biometrics, Technical Working Group (SIAC TWG) for formal vetting by DISA. </li></ul></ul><ul><li>For a current list of biometric standards adopted within DoD, go to the BTF website: </li></ul><ul><ul><li>Access to BSWG materials requires a DBEKS user account </li></ul></ul><ul><ul><li>To qualify for access to DBEKS, you must be a U.S. government or military employee or be capable of providing a valid U.S. government or military sponsor. </li></ul></ul><ul><ul><li>BTF Standards Development Status Update – published quarterly and posted to BSWG Web site. </li></ul></ul>UNCLASSIFIED
  13. 13. Interoperability Tools Development <ul><li>To ensure interoperability, BTF is developing unique biometric conformance testing and image quality measurement algorithms and tools. </li></ul><ul><ul><li>Developed and publicly released the BioAPI CTS (first USG conformance testing tool) – Feb 2006 </li></ul></ul><ul><ul><li>Finger Image Quality Measurement (FIQM) – NIST testing complete </li></ul></ul><ul><ul><li>Facial Image Quality Measurement (FaceQM) – NIST Phase I testing complete, planning for Phase II testing underway </li></ul></ul><ul><ul><li>Iris Image Quality Measurement – BTF coordinating with West Virginia University to establish a joint development project </li></ul></ul><ul><li>Development of Quality Measurement algorithms and tools is driven by DoD operational needs. </li></ul><ul><ul><li>Quality of biometric samples can be used to predict the accuracy of matching </li></ul></ul><ul><ul><li>The tools are vendor-agnostic and suitable for use with any matching system </li></ul></ul><ul><ul><li>The tools can be integrated with biometric enrollment applications </li></ul></ul><ul><ul><li>Tools have been distributed to NSA, CIA, Navy, Air Force, IDProTECT Protoype Team, Army G-2, and others </li></ul></ul><ul><li>BTF Quality Measurement Tools are available to all government agencies. </li></ul><ul><ul><li>To obtain the quality tools, contact Dr. Robert Yen at: [email_address] or 703-984-0434 </li></ul></ul><ul><ul><li>To obtain the tools, you must be a U.S. government or military employee or be capable of providing a valid U.S. government or military sponsor </li></ul></ul>UNCLASSIFIED
  14. 14. <ul><li>Expand collaboration and coordination with Joint, Interagency, and Multinational partners. </li></ul><ul><li>Continue participation in standards development bodies and expand participation in development of Identity Management standards. </li></ul><ul><li>Expand adoption and implementation of international biometric and identity management standards. </li></ul><ul><li>Participate in establishing the USG-wide biometrics conformity assessment program. </li></ul>DoD Biometrics Standards Strategy Moving Forward UNCLASSIFIED
  15. 15. Mr. Dale Hapeman BTF/Booz Allen Hamilton 304-326-3029 [email_address] MAJ Craig White Branch Chief Standards Branch [email_address] Dr. Bob Yen BTF/Booz Allen Hamilton 703-984-0434 [email_address] Mr. Alexander Montgomery BTF/Booz Allen Hamilton 703-607-1959 [email_address] Mr. Gregory Zektser BTF/Booz Allen Hamilton 703-984-0432 [email_address] Mr. Benji Hutchinson BTF/Booz Allen Hamilton 703-607-1951 [email_address] Mr. William Zimmerman Division Chief Capabilities Integration Division [email_address] Mr. Don Waymire BTF/Booz Allen Hamilton 703-984-0429 [email_address] BTF Standards Branch Contact Information UNCLASSIFIED