发明名称 Method and device for checking an electronic passport
摘要 The invention relates to a method for performing machine checking of electronically-stored personal data in a passport booklet. The data are transmitted in an obscured form to a reader device after the passport has been presented to this reader device, and the accuracy of the obscuring is first verified and the obscuring is then removed. A positive signal is issued in the event of a successful verification. The recovered personal data are subsequently checked for authenticity. The verification and removal of the obscuring, as well as the authenticity check, ensue in a time-staggered manner after the passport booklet has been removed from the reader device by a verifying person in order to conduct further checks.
申请公布号 US8857717(B2) 申请公布日期 2014.10.14
申请号 US200611990346 申请日期 2006.08.09
申请人 Giesecke & Devrient GmbH 发明人 Ness Werner
分类号 G06K7/06;G07C9/00 主分类号 G06K7/06
代理机构 Martine Penilla Group, LLP 代理人 Martine Penilla Group, LLP
主权项 1. A method for machine checking of personal data stored electronically in a passport booklet, comprising: upon presentation of the passport booklet at a reader device, the passport booklet obscuring the personal data to obtain obscured personal data, and transferring the obscured personal data to the reader device using a key that is negotiated between the passport booklet and the reader device, wherein the transfer of the obscured personal data to the reader device comprises a plurality of responses from the passport booklet, andwherein, for each response in the plurality of responses, the passport booklet forms a first message authentication code MAC, and transmits the first message authentication code MAC in the response to the reader device, the reader device performing a plausibility check of the obscured personal data arriving at the reader device, the reader device checking the obscuring in the received obscured personal data for correctness, wherein, for each response in the plurality of responses, the reader device generates a second message authentication code MAC*, and compares the generated second message authentication code MAC* with the first message authentication code MAC transferred in the response, andwherein the reader device performs the plausibility check prior to the checking of the obscuring for correctness, if the correctness of the obscuring is confirmed, removing the obscuring from the obscured personal data, thus obtaining recovered personal data, checking the recovered personal data for authenticity, and, upon successful checking of the recovered personal data for authenticity, issuing a positive signal, wherein the checking of the obscuring for correctness and the removal of the obscuring and the authenticity check occur only after all personal data to be read from the passport booklet are completely transferred to the reader device.
地址 München DE