Interagency Advisory Board Meeting Agenda, Wednesday, June 29, 2011

Similar documents
Interagency Advisory Board Meeting Agenda, February 2, 2009

Interagency Advisory Board Meeting Agenda, Wednesday, May 23, 2012

TWIC / CAC Wiegand 58 bit format

FICAM Configuration Guide

Multiple Credential formats & PACS Lars R. Suneborn, Director - Government Program, HIRSCH Electronics Corporation

Interagency Advisory Board Meeting Agenda, Wednesday, February 27, 2013

Interagency Advisory Board Meeting Agenda, Tuesday, November 1, 2011

Unified PACS with PKI Authentication, to Assist US Government Agencies in Compliance with NIST SP (HSPD 12) in a Trusted FICAM Platform

Mandate. Delivery. with evolving. Management and credentials. Government Federal Identity. and. Compliance. using. pivclasss replace.

Interagency Advisory Board Meeting Agenda, February 2, 2009

Identiv FICAM Readers

Secure Solutions. EntryPointTM Access Readers TrustPointTM Access Readers EntryPointTM Single-Door System PIV-I Compatible Cards Accessories

g6 Authentication Platform

Next Generation Physical Access Control Systems A Smart Card Alliance Educational Institute Workshop

Securing Federal Government Facilities A Primer on the Why, What and How of PIV Systems and PACS

Unlocking The CHUID. Practical Considerations and Lessons Learned for PIV Deployments. Eric Hildre 07/18/2006

The Leader in Unified Access and Intrusion

Revision 2 of FIPS 201 and its Associated Special Publications

Interagency Advisory Board Meeting Agenda, July 28, 2010

Interagency Advisory Board Meeting Agenda, February 2, 2009

IAB Minutes Page 1 of 6 April 18, 2006

An Overview of Draft SP Derived PIV Credentials and Draft NISTIR 7981 Mobile, PIV, and Authentication

Guidelines for the Use of PIV Credentials in Facility Access

Interagency Advisory Board Meeting Agenda, Wednesday, July 27, 2011

FIPS and NIST Special Publications Update. Smart Card Alliance Webinar November 6, 2013

pivclass How to Order Guide

Leveraging HSPD-12 to Meet E-authentication E

Interagency Advisory Board HSPD-12 Insights: Past, Present and Future. Carol Bales Office of Management and Budget December 2, 2008

Veridt Reader Terminal Installation Guide Compliance Statements

TWIC Update to Sector Delaware Bay AMSC 8 June 2018

Physical Access Control Systems and FIPS 201

Using PIV Technology Outside the US Government

Interagency Advisory Board Meeting Agenda, April 27, 2011

Single Secure Credential to Access Facilities and IT Resources

MAESON MAHERRY. 3 Factor Authentication and what it means to business. Date: 21/10/2013

Transportation Worker Identification Credential (TWIC) Steve Parsons Deputy Program Manager, TWIC July 27, 2005

Physical Access Control Systems and FIPS 201 Physical Access Council Smart Card Alliance December 2005

Physical Access Control System (PACS) in a Federal Identity, Credentialing and Access Management (FICAM) Framework

Velocity Certificate Checking Service Installation Guide & Release Notes

Interagency Advisory Board (IAB) Meeting. August 09, 2005

AXIAD IDS CLOUD SOLUTION. Trusted User PKI, Trusted User Flexible Authentication & Trusted Infrastructure

Interagency Advisory Board Meeting Agenda, August 25, 2009

Velocity 3.6 SP2.1 Product Release Bulletin. August 2017

Managing PIV Life-cycle & Converging Physical & Logical Access Control

To be covered: S&T Intro TTWG. Research/Pilots. Scope Goals Report

pivclass FIPS-201 Reader Operation and Output Selections APPLICATION NOTE , F.0 February Barranca Parkway Irvine, CA 92618

Strategies for the Implementation of PIV I Secure Identity Credentials

(PIV-I) Trusted ID across States, Counties, Cities and Businesses in the US

Using the Prototype TWIC for Access A System Integrator Perspective

Corporate Commitment to Excellence

TWIC Reader Technology Phase

Power LogOn s Features - Check List

Smart Card Alliance Comments and Considerations on Federal Identity, Credential, and Access Management (FICAM) Roadmap and Implementation Guidance

000027

INNOMETRIKS INC. Rhino Quick Start Guide

State of the Industry and Councils Reports. Access Control Council

Technical Bulletin: CAC Data Model Change in 144K Dual Interface Cards

Interagency Advisory Board Meeting Agenda, December 7, 2009

Considerations for the Migration of Existing Physical Access Control Systems to Achieve FIPS 201 Compatibility

Interagency Advisory Board Meeting Agenda, March 5, 2009

Strategies for the Implementation of PIV I Secure Identity Credentials

Smart Cards & Credentialing in the Federal Government

I N F O R M A T I O N S E C U R I T Y

Smart Card Alliance Update. Update to the Interagency Advisor Board (IAB) June 27, 2012

ENTRUST DATACARD DERIVED PIV CREDENTIAL SOLUTION

hidglobal.com HID ActivOne USER FRIENDLY STRONG AUTHENTICATION

Biometric Use Case Models for Personal Identity Verification

Interagency Advisory Board Meeting Agenda, Wednesday, April 24, 2013

Secure Lightweight Activation and Lifecycle Management

Identiv TS Readers. Ordering Guide. October 2016

TWIC Transportation Worker Identification Credential. Overview

Technical Implementation Guidance: Smart Card Enabled Physical Access Control Systems Draft Version 2.3E

There is an increasing desire and need to combine the logical access and physical access functions of major organizations.

iclass SE Platform Solutions The New Standard in Access Control

Who s Protecting Your Keys? August 2018

Strong Authentication for Physical Access using Mobile Devices

Operated by Los Alamos National Security, LLC for the U.S. Department of Energy's NNSA

Credentialing Project Technical Architecture

The Benefits of EPCS Beyond Compliance August 15, 2016

DHS ID & CREDENTIALING INITIATIVE IPT MEETING

IAB Minutes Page 1 of 6 January 18, 2006

CertiPath TrustVisitor and TrustManager. The need for visitor management in FICAM Compliant PACS

DATA SHEET. ez/piv CARD KEY FEATURES:

Cryptologic and Cyber Systems Division

U.S. E-Authentication Interoperability Lab Engineer

Helping Meet the OMB Directive

TWIC Reader Hardware And Card Application Specification May 30, 2008

FiXs - Federated and Secure Identity Management in Operation

Leveraging the LincPass in USDA

Interfaces for Personal Identity Verification Part 1: PIV Card Application Namespace, Data Model and Representation

I N F O R M A T I O N S E C U R I T Y

CA3000 Plug-in Manual. Codebench, Inc 6820 Lyons Technology Circle Ste. 140 Coconut Creek, FL 33073

Mobile Access is the Killer App The Path to Flexible, Secure Credentials Brandon Arcement Senior Director, Product Marketing April 8, 2019

The epassport: What s Next?

PKI and FICAM Overview and Outlook

SYSTEM GALAXY HARDWARE. 635-Series

Next Generation Physical Access Control Systems A Smart Card Alliance Educational Institute Workshop. Scalability: Dimensions for PACS System Growth

SAP Single Sign-On 2.0 Overview Presentation

INNOMETRIKS INC. Rhino Implementation Guide

Mobile Validation Solutions

Transcription:

Interagency Advisory Board Meeting Agenda, Wednesday, June 29, 2011 1. Opening Remarks (Mr. Tim Baldridge, IAB Chair) 2. Using PKI to Mitigate Leaky Documents (John Landwehr, Adobe) 3. The Digital Identity Ecosystem of the States: Leveraging Federal Initiatives (Doug Robinson, NASCIO) 4. Achieving Federal Identity Compliance in PACS Without a Rip-and-Replace Investment (Dave Adams, HID) 5. Aviation Credentialing and the New RTCA Standard 230C (Christer Wilkerson, AECOM) 6. Closing Remarks (Mr. Tim Baldridge, IAB Chair)

Achieving Federal Identity Compliance in PACS Without a Rip-and-Replace Investment Dave Adams Date June 29, 2011

Agenda New Requirements What to do about them PIV-I Questions

New Requirements

Factors driving change in physical access Two major problems to be solved Improved security (token & issuance process) Interoperability Move to PKI based identity credentials Central issuance of credentials All previous systems involved local issuance Standardization of credentials All previous systems were proprietary User benefits PKI based smartcard credentials more secure Standardized credentials key to interoperable Standards based products lead to choice and cost savings

Required PACS Changes for PIV World Head-End New unique identifier Validation at enrollment PACS Admin Panel Door Controller New card New profile User card Read new card Readers Strike Where to validate at time of access?

What we re doing about it

What HID is doing about it HID Global US Federal Identity Initiative Physical Access Control Mobile Authentication PIV-I pivclass Authentication Ecosystem pivman Mobile PIV I Card production PIV-I Services

pivclass Authentication Module Approach Authorization Integration FACL pivclass Validation Service Validation Authorities Authentication PAM Wiegand RS-485 Service Functions Path discovery Path validation Revocation checking Construct FACL PAM and Reader Functions Signature checks Private key challenge Conformity & freshness checks PIN & BIO checks

Supported Cards and Auth Modes Card Types PIV PIV-I Legacy CAC CAC NG CAC EP TWIC FRAC (iclass to be added) Others TBD Auth Modes FASC-N (unsigned CHUID) CHUID Card Auth (CAK) PIV Auth + PIN CHUID + BIO (TWIC mode) Card Auth + BIO (TWIC mode) PIV Auth + PIN + BIO iclass and others to support transition

Flexibility to Mitigate Multiple Threat Levels Secures against cards that are Auth Modes Revoked Counterfeit or Altered Copied or Cloned Lost or Stolen Auth Factors SP 800-116 Security Area FASC-N None Uncontrolled CHUID+VIS 1 Controlled CAK 1 Controlled PIV+PIN 2 Limited PIV+PIN+BIO 3 Exclusion Performing signature checks and private key challenges at enrollment is not sufficient to achieve these levels of assurance. They must also be done at the time-of-access. Revocation checking for FASC-N and CHUID modes must be done using the PIV certificate CRL.

PIV-I

HID s New PIV-I Services

HID s New PIV-I Services

Contact Info: Dave William Adams Senior Product Marketing Manager Office: (952) 828-5984 Mobile: (763) 350-5283 Email: DWAdams@hidglobal.com