Skip to Main content Skip to Navigation
Journal articles

Biometric Systems Private by Design: Reasoning about privacy properties of biometric system architectures

Julien Bringer 1 Hervé Chabanne 1, 2, 3 Daniel Le Métayer 4 Roch Lescuyer 1
3 SSH - Secure and Safe Hardware
LTCI - Laboratoire Traitement et Communication de l'Information
4 PRIVATICS - Privacy Models, Architectures and Tools for the Information Society
Inria Grenoble - Rhône-Alpes, CITI - CITI Centre of Innovation in Telecommunications and Integration of services
Abstract : The goal of the work presented in this paper is to show the applicability of the privacy by design approach to biometric systems and the benefit of using formal methods to this end. We build on a general framework for the definition and verification of privacy architectures introduced at STM 2014 and show how it can be adapted to biometrics. The choice of particular techniques and the role of the components (central server, secure module, biometric terminal, smart card, etc.) in the architecture have a strong impact on the privacy guarantees provided by a biometric system. Some architectures have already been analysed but on a case by case basis, which makes it difficult to draw comparisons and to provide a rationale for the choice of specific options. In this paper, we describe the application of a general privacy architecture framework to specify different design options for biometric systems and to reason about them in a formal way.
Document type :
Journal articles
Complete list of metadata
Contributor : Daniel Le Métayer <>
Submitted on : Thursday, November 29, 2018 - 6:29:47 PM
Last modification on : Tuesday, September 21, 2021 - 2:16:05 PM


Files produced by the author(s)


  • HAL Id : hal-01939841, version 1


Julien Bringer, Hervé Chabanne, Daniel Le Métayer, Roch Lescuyer. Biometric Systems Private by Design: Reasoning about privacy properties of biometric system architectures. Transactions on Data Privacy, IIIA-CSIC, 2018, 11 (2), pp.111-137. ⟨hal-01939841⟩



Record views


Files downloads