DocumentCode :
1456823
Title :
Information Leakage in Fuzzy Commitment Schemes
Author :
Ignatenko, Tanya ; Willems, Frans M J
Author_Institution :
Dept. of Electr. Eng., Eindhoven Univ. of Technol., Eindhoven, Netherlands
Volume :
5
Issue :
2
fYear :
2010
fDate :
6/1/2010 12:00:00 AM
Firstpage :
337
Lastpage :
348
Abstract :
In 1999, Juels and Wattenberg introduced the fuzzy commitment scheme. This scheme is a particular realization of a binary biometric secrecy system with chosen secret keys. It became a popular technique for designing biometric secrecy systems, since it is convenient and easy to implement using standard error-correcting codes. This paper investigates privacy- and secrecy-leakage in fuzzy commitment schemes. The analysis is carried out for four cases of biometric data statistics, i.e., memoryless totally symmetric, memoryless input-symmetric, memoryless, and stationary ergodic. First, the achievable regions are determined for the cases when data statistics are memoryless totally symmetric and memoryless input-symmetric. For the general memoryless and stationary ergodic cases, only outer bounds for the achievable rate-leakage regions are provided. These bounds, however, are sharpened for systematic parity-check codes. Given the achievable regions (bounds), the optimality of fuzzy commitment is assessed. The analysis shows that fuzzy commitment is only optimal for the memoryless totally symmetric case if the scheme operates at the maximum secret-key rate. Moreover, it is demonstrated that for the general memoryless and stationary ergodic cases, the scheme leaks information on both the secret and biometric data.
Keywords :
biometrics (access control); cryptography; error correction codes; fuzzy set theory; parity check codes; statistics; achievable rate leakage regions; binary biometric secrecy system; biometric data statistics; fuzzy commitment schemes; information leakage; memoryless input symmetric; memoryless totally symmetric; standard error correcting codes; systematic parity check codes; Biometric secrecy systems; privacy; secret key; security;
fLanguage :
English
Journal_Title :
Information Forensics and Security, IEEE Transactions on
Publisher :
ieee
ISSN :
1556-6013
Type :
jour
DOI :
10.1109/TIFS.2010.2046984
Filename :
5439854
Link To Document :
بازگشت