JUCS - Journal of Universal Computer Science 15(5): 970-991, doi: 10.3217/jucs-015-05-0970
Security Mechanisms and Access Control Infrastructure for e-Passports and General Purpose e-Documents
expand article infoPablo Najera, Francisc Moyano, Javier López§
‡ University of Malaga, Malaga, Spain§ University of Málaga, Málaga, Spain
Open Access
Traditional paper documents are not likely to disappear in the near future as they are present everywhere in daily life, however, paper-based documentation lacks the link with the digital world for agile and automated processing. At the same time it is prone to cloning, alteration and counterfeiting attacks. E-passport defined by ICAO and implemented in 45 countries is the most relevant case of hybrid documentation (i.e. paper format with electronic capabilities) to date, but, as the advantages of hybrid documentation are recognized more and more will undoubtedly appear. In this paper, we present the concept and security requirements of general-use e-documents, analyze the most comprehensive security solution (i.e. ePassport security mechanisms) and its suitability for general-purpose e-documentation. Finally, we propose alternatives for the weakest and less suitable protocol from ePassports: the BAC (Basic Access Control). In particular, an appropriate key management infrastructure for access control to document memory is discussed in conjunction with a prototype implementation.
electronic documents, e-documents, e-Passport, RFID technology, RFID security, security mechanisms, access control infrastructure, pervasive computing, security