A Face Based Fuzzy Vault Scheme for Secure Online Authentication

Biometric template protection is becoming a hot research recently. Fuzzy vault is a key binding biometric cryptosystem scheme. It binds a key with the biometric template and obtains the helper data. The main problem of fuzzy vault is that it can not provide the diversity and revocability. In this paper we propose a face based fuzzy vault scheme for online authentication. At the user side, the user’s identity, the transformed template and key generated from user’s password are always provided to the server. At the registration stage, fuzzy vault encoding is implemented using both key and transformed template. And then the fuzzy vault is encrypted using digital signature. At the authentication stage, by the identity claimed by user, the corresponding fuzzy vault will be checked, If it has been changed, the authentication will be failed. Otherwise, the key is recovered from the transformed template using fuzzy vault decoding, in which the nearest distance is computed for point matching. If the recovered key is same as that provided by user, the authentication will be successful. Otherwise it will be failed. The contribution of this paper include: the transformed template instead of face template is used, which will enable the system to provide diversity and revocability. The nearest distance based matching algorithm tolerates the much intra-class variation. The digital signature can be used to check if the fuzzy vault has been changed. The experimental results show that the proposed scheme achieves promising results.

[1]  J. Fierrez-Aguilar,et al.  Cryptographic key generation using handwritten signature , 2006, SPIE Defense + Commercial Sensing.

[2]  Sang-Ho Lee,et al.  Authentication Protocol using Fuzzy Eigenface Vault based on MoC , 2007, The 9th International Conference on Advanced Communication Technology.

[3]  C. Busch,et al.  Multi-algorithm fusion with template protection , 2009, 2009 IEEE 3rd International Conference on Biometrics: Theory, Applications, and Systems.

[4]  Pong C. Yuen,et al.  Protecting Face Biometric Data on Smartcard with Reed-Solomon Code , 2006, 2006 Conference on Computer Vision and Pattern Recognition Workshop (CVPRW'06).

[5]  Kang Ryoung Park,et al.  Biometric Key Binding: Fuzzy Vault Based on Iris Images , 2007, ICB.

[6]  Yongjin Wang,et al.  Fuzzy Vault for Face Based Cryptographic Key Generation , 2007, 2007 Biometrics Symposium.

[7]  Anil K. Jain,et al.  Hardening Fingerprint Fuzzy Vault Using Password , 2007, ICB.

[8]  T. Charles Clancy,et al.  Secure smartcardbased fingerprint authentication , 2003, WBMA '03.

[9]  Anil K. Jain,et al.  Biometric Template Security , 2008, EURASIP J. Adv. Signal Process..

[10]  Martin Wattenberg,et al.  A fuzzy commitment scheme , 1999, CCS '99.

[11]  Madhu Sudan,et al.  A Fuzzy Vault Scheme , 2006, Des. Codes Cryptogr..