background image

StarSign® Bio Token 3.0 M

USB Token

Reference Manual
Edition 10.2005

Summary of Contents for StarSign Bio Token 3.0 M

Page 1: ...StarSign Bio Token 3 0 M USB Token Reference Manual Edition 10 2005 ...

Page 2: ...ined is copyrighted Any use not explicitly per mitted by copyright law requires prior consent of Giesecke Devrient GmbH This applies to any repro duction revision translation storage on microfilm as well as its import and processing in electronical systems in particular Subject to technical changes StarSign Bio Token is a registered trademark of Giesecke Devrient GmbH ...

Page 3: ...ty test Radiated Emission Verification In compliance with the Essential Requisites for the EMC Directive 89 336 EEC FCC ID TIJ BIOTOKEN M Giesecke Devrient GmbH StarSign Bio Token 3 0 M Supply 5V DC Absorption 250 mA This device complies with Part 15 of the FCC Rules Operation is subject to the following two conditions 1 this device may not cause harmful interference and 2 this device must accept ...

Page 4: ... Document 2 1 Basics 3 1 1 General Introduction to Biometrics 4 1 2 Biometrics Smart Cards and Tokens 5 1 3 LED Status 6 2 Command Reference 9 2 1 ENROLL FINGERPRINT 10 2 2 VERIFY FINGERPRINT 12 2 3 VERSION INFO 14 Appendix 15 A Overview of Status Bytes 16 B Technical Specifications 18 C Reference Literature 19 D Glossary 20 Index 23 ...

Page 5: ...Contents Reference Manual StarSign Bio Token 3 0 M Edition 10 2005 ID No 30017639 ...

Page 6: ... require non repudiation StarSign Bio Token 3 0 M also comprises an independent flash drive Features Features of StarSign Bio Token 3 0 M include Based on STARCOS 3 0 operating system On token sensor image processing and biometric verification on card matching Supported by StarSign middleware use with all public key applica tions supporting MS CAPI CSP or PKCS 11 Security system according to 7816 ...

Page 7: ...gy and actions Should you feel that this is not the case it is suggested that you refer to your Windows manuals first Notation In order to facilitate access to required information and to provide quick orientation the following graphical aids and notations have been used Notes comprise hints and recommendations useful when working with StarSign Bio Token 3 0 M Please read warnings carefully they a...

Page 8: ... 3 0 M Edition 10 2005 3 of 23 ID No 30017639 1 Basics This chapter provides you with background information on StarSign Bio Token 3 0 M Contents 1 1 General Introduction to Biometrics 4 1 2 Biometrics Smart Cards and Tokens 5 1 3 LED Status 6 ...

Page 9: ...n During verification the characteristic data of the biometric trait is captured again and compared to the previously stored reference data If both data sets coincide to a sufficient level access is granted Biometric Error Rates In contrast to a PIN or password comparison two different photos or characteristic data sets captured of the same biometric trait will always differ a bit due to positioni...

Page 10: ...o cessor environment reliably protecting sensitive personal data against unauthorized access Access Rules An individual access rule is assigned to each elementary file on the smart card processor As a consequence elementary files can be accessed read write update by cryptographic authentication PIN verification bi ometric authentication or a combination of all three Applications The paramount appl...

Page 11: ...7639 1 3 LED Status LED Arrangement StarSign Bio Token 3 0 M contains two bicolor LEDs on the top side for visually signalizing its current status and operation to the user Left LED Illuminates in either green or yellow Right LED Illuminates in either red or yellow Fig 1 Arrangement of the LEDs ...

Page 12: ...inger Left yellow LED blinks Wait for finger Busy Red LED blinks quickly StarSign Bio Token 3 0 M is busy Success Green LED illuminated Enrollment verification suc cessful Reject Red LED illuminated Enrollment verification failed Boot Green and red LED illumi nated Booting device TEST mode Both yellow LEDs flash Allow diagnostic com mands ADMIN mode Left yellow LED flashes red LED illuminated Allo...

Page 13: ...Basics LED Status 8 of 23 Reference Manual StarSign Bio Token 3 0 M Edition 10 2005 ID No 30017639 ...

Page 14: ...3 0 M Edition 10 2005 9 of 23 ID No 30017639 2 Command Reference This chapter describes the StarSign Bio Token 3 0 M command set The commands are listed in alphabetical order Contents 2 1 ENROLL FINGERPRINT 10 2 2 VERIFY FINGERPRINT 12 2 3 VERSION INFO 14 ...

Page 15: ...ata on the smart card operating system For details see STARCOS 3 0 reference manual edition 06 2005 or later Command P2 Specifies the merge parameter Several templates can be merged into one large template before sending the master template to the smart card processor 00 Final enroll command 01 Non final enroll command Non final enroll commands grab images but extracted characteristic fea tures ar...

Page 16: ...ot enough memory space 90 00 Successful operation A7 00 General ARM7 error A7 01 Unknown instruction A7 02 Length error A7 11 Timeout error A7 12 Sweep too slow A7 13 Sweep too fast A7 14 Sweep not straight A7 15 Sweep too short A7 16 Too many defect lines on sensor A7 17 Image quality too bad A7 18 Too few features A7 19 Merge failed A7 1A Try again error A7 1B Resync error A7 1C Maximum number o...

Page 17: ...ometric threshold retry counter and access rules have to be configured in the file system of STARCOS For details see STARCOS 3 0 reference manual edition 06 2005 or later Command P2 Specifies the Key Identifier KID used to reference the biometric data stored in the smart card processor during the enrollment phase see 2 1 ENROLL FINGERPRINT on page 10 Response Status Bytes This command may return o...

Page 18: ... A7 11 Timeout error A7 12 Sweep too slow A7 13 Sweep too fast A7 14 Sweep not straight A7 15 Sweep too short A7 16 Too many defect lines on sensor A7 17 Image quality too bad A7 18 Too few features A7 19 Merge failed A7 1A Try again error A7 1B Resync error A7 20 General verify fingerprint error A7 81 Invalid parameter Code Description ...

Page 19: ...rmation Command P2 Specifies the item tag of the version information 01 StarSign Bio Token 3 0 M firmware version build date and time 02 Key info CRC of currently valid authentication key Le Specifies the expected length 00 length 80 00 Returns the maximum available data Response Status Bytes This command may return one of the following status bytes CLA INS P1 P2 Le A0 8A 00 DATA SW1 SW2 Response ...

Page 20: ... 3 0 M Edition 10 2005 15 of 23 ID No 30017639 Appendix The appendix contains additional information on StarSign Bio Token 3 0 M Contents A Overview of Status Bytes 16 B Technical Specifications 18 C Reference Literature 19 D Glossary 20 Index 23 ...

Page 21: ...ilure 69 82 Security status not satis fied 69 85 Conditions of use not sat isfied 69 86 Command not allowed no current EF 6A 84 Not enough memory space in the file A7 00 SW_ARM7 General error A7 01 SW_UNKNOWN_INSTRUCTION Unknown instruction A7 02 SW_LENGTH_ERROR Length error A7 11 SW_TIMEOUT Timeout error A7 12 SW_SWEEP_TOO_SLOW Sweep too slow A7 13 SW_SWEEP_TOO_FAST Sweep too fast A7 14 SW_SWEEP_...

Page 22: ...of 23 ID No 30017639 A7 1B SW_IO_ERROR Resync error A7 1C SW_MAX_MERGE Maximum number of merges exceeded A7 20 SW_VERIFY_FP General verify fingerprint error A7 81 SW_INVALID_PARAMETER Invalid parameter A7 84 SW_GET_CHALLENGE_FAILED General get challenge er ror Status Bytes Error code Description ...

Page 23: ... M supports the following interfaces USB 1 1 PKCS 11 with middleware MS CAPI 1 0 CSP with middleware Sensor Atmel swipe sensor Operating System StarSign Bio Token 3 0 M uses the following operating system with listed characteristics STARCOS 3 0 72 kB EEPROM symmetric encryption DES 3DES asymmetric encryption RSA CRT with up to 2048 bits security system in accordance with ISO 7816 4 up to 8 DF leve...

Page 24: ...s cards with contacts Part 3 Electronic signals and transmission pro tocols ISO IEC 1997 http www iso org ISO IEC 7816 4 Information technology Identification cards Integrated circuit s cards with contacts Part 4 Interindustry commands for interchange ISO IEC 1995 http www iso org ISO IEC FDIS 19794 2 Information technology Biometric data interchange formats Part 2 Finger minutiae data ISO IEC 200...

Page 25: ...c algorithm specified as DEA in ISO 873 1 An algorithm for symmetric cryptography Now used as triple DES in EMV operations e g ARQC generation where data is encrypted us ing the first half of a double length key is decrypted using the second half then re encrypted using the first half again EF Elementary File EFs represent the actual data storage in the file tree of a smart card EFs contain one of...

Page 26: ...ables the implementation of various applications e g electronic purse access control to data networks and digital signatures Smart card operating systems control the data transfer the storage areas and process information they manage the resources and supply all necessary functions for the operation and administration of a random number of applications USB Universal Serial Bus Port not only for co...

Page 27: ...Appendix Glossary 22 of 23 Reference Manual StarSign Bio Token 3 0 M Edition 10 2005 ID No 30017639 ...

Page 28: ...cs 1 conventions 2 E ENROLL FINGERPRINT 10 enrollment 4 error rates 4 F features 1 fingerprint verification 4 L LED status 6 N notational conventions 2 O on card matching 5 operating system 18 R required knowledge 2 return codes 16 S standards 1 status bytes 16 system requirements 18 T target group 2 V verification 4 VERIFY FINGERPRINT 12 VERSION INFO 14 ...

Reviews: