DocumentCode :
3440186
Title :
Service Authentication via Electronic Identification Cards: VoIP Service Authentication through the DNIe
Author :
Ruiz-Agundez, Igor ; Bringas, Pablo G.
fYear :
2012
fDate :
24-27 July 2012
Firstpage :
602
Lastpage :
607
Abstract :
User authentication is one of the most popular techniques used in access control systems. It provides with trustful confirmation about the identity of a person when she attempts to use a service. It ensures that a user is who she claims to be verifying by that she is allowed to use a certain service. Different governments and agencies have attempted to create a universal authentication device to allow easy access to e-government services and potentially to any corporative service. Authentication contributes to the unequivocal identification of the user. In this research, we focus on the Spanish electronic identification card (also known as DNIe). In our research we focus on authentication through the DNIe because it provides with two levels of security. Authenticating with the DNIe implies having the electronic identification card (eID card) and knowing the card holder´s verification password. We implement a methodology that integrates DNIe authentication in any application through a service library component seamlessly. This authentication methodology takes advantage of all the DNIe capabilities and includes the following steps: connection to the eID card, load of user certificates, generation of a verification challenge, signing and verification of this challenge by using cryptographic techniques, and finally, accepting or rejecting user identification. In order to validate this methodology, we integrate our seamless authentication library in a Voice over IP application. Currently, this methodology is being used in call-centres that need to unequivocally validate the identity of the operators in each call and operation they perform.
Keywords :
Internet telephony; authorisation; cryptography; digital signatures; government data processing; DNIe authentication; Spanish electronic identification card; VoIP service authentication; Voice over IP application; access control system; call-centre; card holder verification password; corporative service; cryptographic technique; e-government service; eID card; person identity; seamless authentication library; security level; service library component; signing; trustful confirmation; universal authentication device; user authentication; user certificate; user identification; Authentication; Internet telephony; Public key; Smart cards; Standards; DNIe; VoIP; electronic identification card; service authentication;
fLanguage :
English
Publisher :
ieee
Conference_Titel :
SRII Global Conference (SRII), 2012 Annual
Conference_Location :
San Jose, CA
ISSN :
2166-0778
Print_ISBN :
978-1-4673-2318-5
Electronic_ISBN :
2166-0778
Type :
conf
DOI :
10.1109/SRII.2012.73
Filename :
6311043
Link To Document :
بازگشت