ECCA 2014 Conference Santander 26.05.2014
Introducing -Technology For Strong Authentication Section 3- IT-Systems, Softwareintegration Department 6 Information And Communication Services
Dezernat6 - Informations- und Kommunikationsdienste 3
History 1964 electromechanical 1974 optically readable (OCR-B) 1997 cards with cryptographic functionality 4
Card Issue For students: during matriculation For employees: on demand 5
6
Statistics As of November 2013-45.500 Cards Students 42.000 Cards in use Employees 3.500 7
Certificate Use Cases Certificates Authentication Signature (Encryption) 8
Are Smartcards still appropriate? Use cases Handling certificates is a complex matter. (issue, renewal, user acceptance, ) Electronic Signature is no success story (yet). Security Expenses 9
What do we really need? Mandatory Identity card with a photo for campus use and bonus programs Cryptographic identity card for digital services No dependency from any card issuer (bank, public transport, payment distributors, etc.) Optional Electronic signature / encryption Payment facilities Ticket for public transport system Goal: strong authentication 10
Trends Processes (totally digital integrated) Privacy & IT Security Mobility (BYOD, Smartphones, Tablets) 11
Near Field Communication Advantages of Lower expenses for cards No certificates Strong authentication 12
what s new? Standard Our Approach Backend ID:123345. X ID:123345. Backend Communication Card specific Keys 13
Strong Authentication CardID PIN Backend PIN 14
Comparison of Authentication Methods security level convenience mobility Smart Card (Certicates) Login / Passwort Card expenses infrastructure integration 15
Strong Authentication 16
Conclusions Strong Authentication Expenses Handling Mobility Electronic Signature Card Card Specific Keys (AES 128) Cost Saving Revocation List - Devices + Low Complex Client Not Available Smart Card Card Specific Keys (RSA 2048) PKI Certificate Renewal - Available 17
RUHR-UNIVERSITÄT BOCHUM Introducing -Technology For Strong Authentication http://rub.de/nfc haiko.teneues@uv.rub.de 18