Biometrics .NET Solution
03.03.2009
Elatec latest information on Biometrics: Gemalto .NET Bio Solution
Biometrics are on the rise. More than 60 millionen devices with Biometrics will be shipped in 2009. The Forecast for 2011 are almost 200 million. The number of cumulative devices with Biometrics in the field by 2009 exceeds 300 million.
The market definitely reacts to these facts. Microsoft will introduce a Biometric Framework in Windows 7. The requests for Biometrics Match on Card (MoC) is becoming more and more a requirement in RFIs and RFPs.

Why Biometrics?
Identity:
Biometrics allow user authentication based on a unique physical personal characteristic. From a user perspective, there is a stronger perception of representation compared to usernames and passwords or PINs.
Security:
Security varies tremendously depending on the biometric solution and implementation, but undoubtedly biometrics (something tha you are) enhance the level of security of a solution when combined with other authentication factors, such as a smart card or token (something tha you have) or a password / PIN (something that you know)
Convenience:
Compared to Passwords, Biometrics cannot be forgotten. Users don’t have to keep track of them. They are always available, always with the user.
Why Biometrics Match on Card (MoC)?
Security:
Smart Cards are by definition an construction highly secure, non tampering devices. Storage and verification of biometric credentials on the smart card is safer than doing it on a non secure device or a network.
Smart Card and Biometrics combined provide a highly secure 3 Factor Authentication Solution.
Convenience:
Biometrics MoC introduce the benefit of Portability => Users can roam through all computers in the corporate network and logon using their smart card or token and biometric credentials.
Privacy:
Match performed on the card: Biometric credentials never leave the card
Compliancy:
Certain countries implement privacy protecting policies that prevent database storage of biometric information.
The higher values provided by the Gemalto .Net Bio Card:
- 2 Factor Authentication (FA): End user convenience (no need to remember PIN)
- 2 FA: Corporate Cost Savings (Elimination of “forgotten Passwords” help desk calls)
- 3FA: High End Security
- 2FA Solution in one device: OTP (One Time Password) and PKI
- Integrated with Microsoft Framework
- No middleware needed => significant ease of deployment
- Multiple Form Factors (Cards & Tokens)
The Features of the Gemalto .Net Bio Card:
- It’s fully integrated with Core Security components in Microsoft Operating System
- 4 operation modes:
ð PIN only
ð Fingerprint only
ð PIN or Fingerprint
ð PIN and Fingerprint - Fingerprint Enrolment and Operation Mode Switching Tools
- Up to 10 fingerprints can be stored on the card
- Independent retry counters for PIN and Fingerprint modes
Supported Use Cases – Secure desktop Scenarios
- Log on / Log off
- Lock / unlock
- Smart Card Unblock
- Fingerprint Enrolment
- Change operation modes
Applications supported
Microsoft Applications
- Outlook
- MS Word, Excel
- EFS
- RDP, VPN, …
3rd party applications with base CSP support
- E.g. Checkpoint VPN

