84
L. Hanzlik and M. Kutyłowski
created together with a patient’s eID is required in order to witness a medical
transaction.
• Owner–eID–PC: Example: signature creation.
An eID may enable us to create digital signatures that are legally equivalent
to handwritten signatures. In this case the eID holds signing keys and creates
signatures provided that the eID owner explicitly gives their consent.
5.1.3 Goals of Protocol Execution
The execution of a protocol with an eID may serve different purposes. Below we
list those that are either currently in operation or claimed as a near target:
• identity data confirmation: confirming data regarding the owner that are either
printed on the eID or otherwise available for the verifier (e.g., a face image of the
eID holder),
• attribute confirmation: an eID shows no identification information (including
indirect ones such as the eID’s serial number), instead it presents (authenticated)
attributes of the eID owner,
• key exchange: the eID and the terminal establish a mutually authenticated secret
key for establishing secure communication,
• authentication and proof of eID’s presence: a volatile or non-volatile proof of
the eID presence, in the second case the proof can be used against third parties,
• authentication and proof of user’s presence: we check that the owner holds an
eID participating in a protocol (the difference with the previous case is that the
eID holder is involved in the process, for instance through biometric or password
verification),
• terminal authentication: authentication of the (remote) terminal concerning its
identity and access rights,
• confirming owner’s consent: providing an (implicit) proof that the owner of the
eID has agreed to something.
5.2 Threats and Security Requirements
5.2.1 Assets
The first type of asset concerns secret and private information:
• password: a password or a PIN number used to activate the electronic layer of
the eID or used in a password authentication protocol,
• secret key: a secret key used for eID or terminal authentication,
L. Hanzlik and M. Kutyłowski
created together with a patient’s eID is required in order to witness a medical
transaction.
• Owner–eID–PC: Example: signature creation.
An eID may enable us to create digital signatures that are legally equivalent
to handwritten signatures. In this case the eID holds signing keys and creates
signatures provided that the eID owner explicitly gives their consent.
5.1.3 Goals of Protocol Execution
The execution of a protocol with an eID may serve different purposes. Below we
list those that are either currently in operation or claimed as a near target:
• identity data confirmation: confirming data regarding the owner that are either
printed on the eID or otherwise available for the verifier (e.g., a face image of the
eID holder),
• attribute confirmation: an eID shows no identification information (including
indirect ones such as the eID’s serial number), instead it presents (authenticated)
attributes of the eID owner,
• key exchange: the eID and the terminal establish a mutually authenticated secret
key for establishing secure communication,
• authentication and proof of eID’s presence: a volatile or non-volatile proof of
the eID presence, in the second case the proof can be used against third parties,
• authentication and proof of user’s presence: we check that the owner holds an
eID participating in a protocol (the difference with the previous case is that the
eID holder is involved in the process, for instance through biometric or password
verification),
• terminal authentication: authentication of the (remote) terminal concerning its
identity and access rights,
• confirming owner’s consent: providing an (implicit) proof that the owner of the
eID has agreed to something.
5.2 Threats and Security Requirements
5.2.1 Assets
The first type of asset concerns secret and private information:
• password: a password or a PIN number used to activate the electronic layer of
the eID or used in a password authentication protocol,
• secret key: a secret key used for eID or terminal authentication,
