GB/T 28826.4-2022 Information technology—Common biometric exchange formats framework—Part 4:Security block format specifications
GB/T 28826.4-2022 Information technology—Common biometric exchange formats framework—Part 4:Security block format specifications
Basic Information
Scope
This document presents two security block formats defined by the CBEFF biometric identification organization ISO/IEC JTC 1/SC 37 and registered according to ISO/IEC 197852, along with their registered security block format identifiers. Note: The security block format identifiers are recorded in the maintainer's format SBH (or defined as the only available security block format by this maintainer's format). The universal security block format specifies whether BDB is encrypted and whether SBH and BDB require integrity checks. This format adopts the International RFC series cryptographic message syntax and can also contain ACBio instances compliant with ISO/IEC 24761. The security block contains all necessary security parameters for encryption and/or integrity. It does not limit the algorithms and parameters used for encryption or integrity, but provides a method for recording such algorithms and parameter values. For specific application fields, determining which algorithm and parameter ranges can be used by security block generators and which ranges security block users should support is an analytical problem beyond the scope of this document. The security block format containing only signatures is similar to the universal security block format, but more limited and simpler, especially in that it cannot contain ACBio instances and does not support BDB encryption. This document also presents a security block format defined by SAC/TC28/SC37 and registered according to GB/T 28826.2-2020: the Domestic Commercial Cryptography Universal Security Block Format.