Claims
- 1. A process for generating a unique, secure printable identity document and for authenticating the use of the document, comprising:
generating for an individual an identity certificate incorporating a pointer to biometric(s) and other identifying data for the individual, and including cryptographically hashed information and an encoded signature; storing said identity certificate and biometric(s) in a reference database; encoding said identity certificate; producing a machine-readable encoded identity record incorporating said identity certificate; and authenticating the use of said identity record by comparing said encoded identity certificate with said stored identity certificate to authenticate the individual holding said identity record.
- 2. The process of claim 1, wherein authenticating further includes detecting revocation of the identity certificate.
- 3. The process of claim 1, wherein encoding said identity certificate includes generating a barcode.
- 4. The process of claim 3, wherein producing a machine-readable encoded identity record includes printing said barcode for use by a holder in identity verification.
- 5. The process of claim 1, wherein comparing said encoded identity record with said stored identity certificate includes comparing encoded signatures.
- 6. The process of claim 5, wherein comparing said encoded identity record with said stored identity certificate includes comparing externally stored biometric(s) data with biometric(s) data available from a presenter of the identity record.
- 7. A process for generating a unique, secure printable privilege, comprising:
retrieving identity data for an individual, including an encoded signature, data for identity and pointers to biometric(s) data gathered from the remotely stored identity certificate of claim 1;generating for said individual a privilege certificate incorporating reference to said identity certificate, cryptographically hashed privilege information, a pointer to existing biometric(s) data, and an encoded signature; storing said privilege certificate and associated biometric(s) in a secure privilege database; producing a machine-readable encoded printable privilege document incorporating said privilege certificate; upon request for the granting of a privilege, comparing said encoded printable privilege document with said stored privilege certificate to biometrically authenticate the individual holding said printable privilege document; and detecting any revocation of the privilege prior to the granting of the requested privilege.
- 8. The process of claim 7, wherein producing a machine-readable encoded printable privilege includes printing said privilege for use by a holder in privilege verification.
- 9. The process of claim 7, wherein producing a machine-readable encoded printable privilege includes generating a barcode.
- 10. The process of claim 9, wherein producing a machine-readable encoded printed privilege further includes printing said barcode for use by a holder in privilege verification.
- 11. The process of claim 7, wherein comparing said encoded printable privilege with said stored privilege includes comparing encoded signatures.
- 12. The process of claim 11, wherein comparing said encoded printed privilege with said stored privilege includes comparing stored biometric(s) data with biometric(s) data available from a presenter of the printed privilege.
- 13. The process of claim 7, further including:
generating for said individual privilege certificate additional biometric(s) data; storing said additional biometric(s) data in said secure privilege database; and incorporating in said privilege certificate a pointer to said additional biometric(s) data, whereby additional biometrics may be added to a privilege certificate to enhance security.
- 14. The process of claim 7, further including forwarding a copy of said stored privilege certificate and associated biometric(s) to a locality where said privilege is to be exercised for comparison at said locality with said privilege document.
- 15. The process of claim 7, further including comparing said privilege certificate on said privilege document with said stored privilege certificate to detect tampering.
- 16. A process for generating a unique, secure privilege, comprising:
retrieving identity data for an individual, including an encoded signature, data for identity and pointers to biometric(s) data gathered from the remotely stored identity certificate of claim 1;generating for said individual a privilege certificate incorporating reference to said identity certificate, cryptographically hashed privilege information, a pointer to existing biometric(s) data, and an encoded signature; storing said privilege certificate and associated biometric(s) in a secure privilege database; producing a machine-readable encoded privilege record incorporating said privilege certificate; upon request for the granting of a privilege, comparing said encoded privilege record with said stored privilege certificate to biometrically authenticate the individual holding said privilege record; and detecting any revocation of the privilege prior to the granting of the requested privilege.
- 17. The process of claim 1, wherein producing a machine-readable identity record includes producing a printed identity document.
- 18. The process of claim 1, wherein producing a machine-readable identity record includes producing a stored record for delivery to the individual.
- 19. The process of claim 1, wherein producing a machine-readable identity record includes producing a printable identity document.
Parent Case Info
[0001] This application claims the benefit of U.S. Provisional Application No. 60/367,260, filed Mar. 26, 2002, the disclosure of which is hereby incorporated herein by reference.
Provisional Applications (1)
|
Number |
Date |
Country |
|
60367260 |
Mar 2002 |
US |