Information technology - Test methods for on-card biometric comparison applications - Part 1: General principles and specifications

This document establishes conformance testing for the requirements described in ISO/IEC 24787-1, which are: - framework for on-card biometric comparison, both in sensor-off-card systems and as part of Biometric System-on-Card; - security policies for on-card biometric comparison. Measuring the performance of on-card biometric comparison algorithms such as error rates or speed is not within the scope of this document.

Technologies de l'information — Méthodes d'essai pour les applications de comparaison biométrique sur carte — Partie 1: Principes généraux et spécifications

General Information

Status
Published
Publication Date
28-May-2025
Current Stage
6060 - International Standard published
Start Date
29-May-2025
Due Date
11-Jul-2025
Completion Date
29-May-2025
Ref Project

Relations

Overview

ISO/IEC 18584-1:2025 - "Information technology - Test methods for on-card biometric comparison applications - Part 1: General principles and specifications" defines a conformance testing framework for on-card biometric comparison implementations. The standard specifies how to test that an integrated circuit card (ICC) or Biometric System-on-Card (BSoC) meets the requirements set out in ISO/IEC 24787-1, focusing on the framework and security policies for on-card comparison. It does not cover measurement of biometric algorithm performance (error rates or speed).

Key topics and technical requirements

  • Scope and objective
    • Establishes conformance tests against ISO/IEC 24787-1 requirements for sensor-off-card devices and BSoC.
    • Emphasizes maintaining the biometric reference inside the ICC to enhance privacy and security.
  • Test methodology
    • Defines a test environment with a Device Under Test (DUT, the ICC) and a Test Apparatus (IFD).
    • Distinguishes test flows for sensor-off-card devices (samples through IFD) versus BSoC (samples to ICC).
  • Test case structure
    • Each test case includes: ID, Version, Purpose, Reference, Profile, Precondition, Scenario, Expected result, Postcondition.
    • Results recorded as Pass, Fail, or Not applicable in a test report.
  • ICC configuration profile
    • Test cases reference specific ICC feature profiles; tests may be out-of-scope if a DUT lacks required features.
  • Data and process test areas
    • Data formats and objects: CBEFF-3 BIDO (biometric information data object), biometric functionality information, and biometric comparison parameters.
    • Process testing: enrolment, biometric verification, re‑enrolment, and termination behaviors.
  • Security policies
    • Tests cover retry counter management and specific security policy behaviors (labelled SP1, SP2 in the standard) with dedicated test cases.

Practical applications and who uses this standard

  • Smart card and BSoC manufacturers-to validate conformance before product release.
  • Testing and certification laboratories-to structure test plans, perform conformance evaluations, and produce standardized test reports.
  • System integrators and solution architects-to ensure on-card biometric components meet required security and interoperability policies.
  • Government ID and e‑passport programs-to specify compliant secure biometric verification for identity documents.
  • Card OS and IFD vendors-to align implementations with ICC configuration profiles and command/response behaviors.

Related standards

  • ISO/IEC 24787-1 (requirements for on-card biometric comparison)
  • ISO/IEC 19785-3 (CBEFF-3 Patron format)
  • ISO/IEC 7816-4, ISO/IEC 7816-11 (ICC commands and biometric verification)
  • ISO/IEC 17839-3 (BSoC information interchange)
  • ISO/IEC 19794, ISO/IEC 29794, ISO/IEC 2382-37 (biometric data formats, quality, vocabulary)

Keywords: ISO/IEC 18584-1:2025, on-card biometric comparison, conformance testing, ICC, Biometric System-on-Card, sensor-off-card, security policy, CBEFF-3 BIDO, biometric verification, enrolment.

Standard
ISO/IEC 18584-1:2025 - Information technology — Test methods for on-card biometric comparison applications — Part 1: General principles and specifications Released:29. 05. 2025
English language
19 pages
sale 15% off
Preview
sale 15% off
Preview

Standards Content (Sample)


International
Standard
ISO/IEC 18584-1
First edition
Information technology — Test
2025-05
methods for on-card biometric
comparison applications —
Part 1:
General principles and
specifications
Technologies de l'information — Méthodes d'essai pour les
applications de comparaison biométrique sur carte —
Partie 1: Principes généraux et spécifications
Reference number
© ISO/IEC 2025
All rights reserved. Unless otherwise specified, or required in the context of its implementation, no part of this publication may
be reproduced or utilized otherwise in any form or by any means, electronic or mechanical, including photocopying, or posting on
the internet or an intranet, without prior written permission. Permission can be requested from either ISO at the address below
or ISO’s member body in the country of the requester.
ISO copyright office
CP 401 • Ch. de Blandonnet 8
CH-1214 Vernier, Geneva
Phone: +41 22 749 01 11
Email: copyright@iso.org
Website: www.iso.org
Published in Switzerland
© ISO/IEC 2025 – All rights reserved
ii
Contents Page
Foreword .iv
Introduction .v
1 Scope . 1
2 Normative references . 1
3 Terms and definitions . 1
4 Abbreviated terms . 2
5 Test methodology . 2
5.1 Test environment .2
5.2 Test case .3
5.3 Test report .3
6 ICC configuration profile . 3
7 Summary of the test cases . 4
8 Common test requirement . 5
9 Test requirements related to framework for on-card biometric comparison . 6
9.1 Data for on-card biometric comparison — CBEFF-3 BIDO .6
9.1.1 General .6
9.1.2 Test case: CBF_001 .6
9.2 Data for on-card biometric comparison — Biometric functionality information .7
9.2.1 General .7
9.2.2 Test case: BFI_001 .7
9.3 Data for on-card biometric comparison — Biometric comparison parameters .9
9.3.1 General .9
9.3.2 Test case: BCP_001 .9
9.3.3 Test case: BCP_002 .11
9.4 Processes .11
9.4.1 Enrolment .11
9.4.2 Biometric verification . 12
9.4.3 Re-enrolment . 12
9.5 Termination .14
9.5.1 General .14
9.5.2 Test case: TMN_001 .14
9.5.3 Test case: TMN_002 . 15
10 Security policy .15
10.1 Retry counter management . 15
10.1.1 General . 15
10.1.2 Test case: RCM_001 .16
10.1.3 Test case: RCM_002 .16
10.1.4 Test case: RCM_003 .17
10.2 Security policy for SP1 .17
10.2.1 General .17
10.2.2 Test case: SP1_001 .17
10.3 Security policy for SP2 .18
10.3.1 General .18
10.3.2 Test case: SP2_001 .18

© ISO/IEC 2025 – All rights reserved
iii
Foreword
ISO (the International Organization for Standardization) and IEC (the International Electrotechnical
Commission) form the specialized system for worldwide standardization. National bodies that are
members of ISO or IEC participate in the development of International Standards through technical
committees established by the respective organization to deal with particular fields of technical activity.
ISO and IEC technical committees collaborate in fields of mutual interest. Other international organizations,
governmental and non-governmental, in liaison with ISO and IEC, also take part in the work.
The procedures used to develop this document and those intended for its further maintenance are described
in the ISO/IEC Directives, Part 1. In particular, the different approval criteria needed for the different types
of document should be noted. This document was drafted in accordance with the editorial rules of the ISO/
IEC Directives, Part 2 (see www.iso.org/directives or www.iec.ch/members_experts/refdocs).
ISO and IEC draw attention to the possibility that the implementation of this document may involve the
use of (a) patent(s). ISO and IEC take no position concerning the evidence, validity or applicability of any
claimed patent rights in respect thereof. As of the date of publication of this document, ISO and IEC had not
received notice of (a) patent(s) which may be required to implement this document. However, implementers
are cautioned that this may not represent the latest information, which may be obtained from the patent
database available at www.iso.org/patents and https://patents.iec.ch. ISO and IEC shall not be held
responsible for identifying any or all such patent rights.
Any trade name used in this document is information given for the convenience of users and does not
constitute an endorsement.
For an explanation of the voluntary nature of standards, the meaning of ISO specific terms and expressions
related to conformity assessment, as well as information about ISO's adherence to the World Trade
Organization (WTO) principles in the Technical Barriers to Trade (TBT) see www.iso.org/iso/foreword.html.
In the IEC, see www.iec.ch/understanding-standards.
This document was prepared by Joint Technical Committee ISO/IEC JTC 1, Information technology,
Subcommittee SC 17, Cards and security devices for personal identification.
This first edition of ISO/IEC 18584-1, together with ISO/IEC 18584-2, cancels and replaces
ISO/IEC 18584:2015.
A list of all parts in the ISO/IEC 18584 series can be found on the ISO and IEC websites.
Any feedback or questions on this document should be directed to the user’s national standards
body. A complete listing of these bodies can be found at www.iso.org/members.html and
www.iec.ch/national-committees.

© ISO/IEC 2025 – All rights reserved
iv
Introduction
On-card biometric comparison provides a more secure biometric verification method than off-card biometric
comparison, as the comparison is executed inside the integrated circuit card (ICC) and the biometric
reference is never revealed outside the ICC. ISO/IEC 24787-1 specifies a set of requirements for implementing
biometric comparison inside the ICC. An ICC application that claims conformance to ISO/IEC 24787-1 fulfils
a set of requirements outlined in this document. The requirements are established for on-card biometric
comparison in both a sensor-off card and a Biometric System-on-Card, as defined in ISO/IEC 24787-1.

© ISO/IEC 2025 – All rights reserved
v
International Standard ISO/IEC 18584-1:2025(en)
Information technology — Test methods for on-card
biometric comparison applications —
Part 1:
General principles and specifications
1 Scope
This document establishes conformance testing for the requirements described in ISO/IEC 24787-1, which are:
— framework for on-card biometric comparison, both in sensor-off-card systems and as part of Biometric
System-on-Card;
— security policies for on-card biometric comparison.
Measuring the performance of on-card biometric comparison algorithms such as error rates or speed is not
within the scope of this document.
2 Normative references
The following documents are referred to in the text in such a way that some or all of their content constitutes
requirements of this document. For dated references, only the edition cited applies. For undated references,
the latest edition of the referenced document (including any amendments) applies.
ISO/IEC 2382-37, Information technology — Vocabulary — Part 37: Biometrics
ISO/IEC 7816-4, Identification cards — Integrated circuit cards — Part 4: Organization, security and commands
for interchange
ISO/IEC 7816-11, Identification cards — Integrated circuit cards — Part 11: Personal verification through
biometric methods
ISO/IEC 17839-3, Information technology — Identification cards — Biometric System-on-Card — Part 3: Logical
information interchange mechanism
ISO/IEC 19785-3:2020, Information technology — Common Biometric Exchange Formats Framework — Part 3:
Patron format specifications
ISO/IEC 19794 (all parts), Information technology — Biometric data interchange formats
ISO/IEC 24787-1:2024, Information technology — On-card biometric comparison — Part 1: General principles
and specifications
ISO/IEC 29794 (all parts), Information technology — Biometric sample quality
3 Terms and definitions
For the purposes of this document, the terms and definitions given in ISO/IEC 2382-37 and
ISO/IEC 24787-1 apply.
ISO and IEC maintain terminology databases for use in standardization at the following addresses:
— ISO Online browsing platform: available at https:// www .iso .org/ obp

© ISO/IEC 2025 – All rights reserved
— IEC Electropedia: available at https:// www .electropedia .org/
4 Abbreviated terms
For the purposes of this document, the abbreviated terms given in ISO/IEC 24787-1 and the following apply.
BSoC Biometric System-on-Card
DUT device under test
COS card operating system
IFD interface device
N/A not applicable
BIDO biometric information data object
CBEFF-3 Common Biometric Exchange Formats Framework — Part 3 — Patron format specification (ISO/
IEC 19785-3)
5 Test methodology
5.1 Test environment
Figure 1 and Figure 2 illustrate a typical test environment, which comprises a DUT and a test apparatus.
DUT is an ICC that is either a sensor-off-card device or a BSoC. Test apparatus is an IFD that sends command
messages to the DUT and receives response messages from the DUT. A DUT and a test apparatus are
connected by a physical interface that exchanges the messages. When a sensor-off-card device is evaluated
as a DUT, biometric samples are presented from a card holder to the test apparatus (see Figure 1). On the
other hand, when a BSoC is evaluated as a DUT, biometric samples are presented from a card holder to the
DUT (see Figure 2).
Figure 1 — Test environment for sensor-off-card device

© ISO/IEC 2025 – All rights reserved
Figure 2 — Test environment for BSoC
5.2 Test case
Each test case is introduced with the following information.
ID Introduces a unique test case identifier.
Version Specifies version number of the test case.
Purpose Specifies functionalities to be evaluated by this test.
Reference Introduces the references to the base requirements that bring this test case.
Introduces an ICC configuration profile to be tested, which is a set of specific features
Profile to be supported by the ICC. When the ICC does not support any of the features, this test
case is out of scope for evaluation of the ICC.
Precondition Specifies an internal state of the ICC to be transited before the scenario is performed.
Scenario Specifies test steps to be performed.
Expected result Specifies pass criteria for each test step of the test scenario.
Postcondition Specifies an internal state of the ICC to be transited after the scenario is performed.
An ID of each test case has a prefix label of test category which forms three digits of alphabet or number.
Test category is a set of test cases that is grouped by the same subject to be evaluated.
5.3 Test report
A test report shall be provided to analyse the detail of evaluation. The test report captures all test cases by
recording its ID. When a test case is applied to an evaluation, result of the test case is also recorded. Test
results are categorized into either "Pass" or "Fail". "Pass" is applied if the expected result of the test case
matches with all actual behaviours of the DUT and if the postcondition of the test case is fulfilled by the
actual internal state of the DUT after the scenario performed. "Fail" is applied if the expected result of the
test case does not match with any actual behaviour of the DUT or if the postcondition of the test case is not
fulfilled by the actual internal state of the DUT after the scenario is performed. The method to verify each
postcondition is not specified in this document since it depends on the specification of the DUT. If a test case
is not applied during evaluation because a DUT does not meet the profile of the test case, the test report will
record that the test case was not applicable.
6 ICC configuration profile
Each test case introduces an ICC configuration profile, which requires a specific feature list to be supported
by the ICC. All specific features to be used in this document are listed below:

© ISO/IEC 2025 – All rights reserved
(A) CBEFF-3 BIDOs are retrievable from ICC
(B) A biometric functionality information DO is retrievable from the ICC.
(C) A biometric comparison parameters DO is retrievable from the ICC.
(D) A biometric reference has already been stored.
(E) A biometric reference has not been stored yet.
(F) Work-sharing is not supported.
(G) Re-enrolment is supported.
(H) Re-enrolment is prohibited.
(I) A re-enrolment capability DO'83' is retrievable from the ICC.
(J) Termination of an on-card biometric comparison application is supported.
(K) Mechanism to reset a retry counter is supported to unblock the on-card biometric comparison.
(L) Global biometric comparison parameters and retry counter for the shared biometric reference (SP1)
(M) Independent biometric comparison parameters and retry counter for the shared biometric reference
(SP2)
(N) A biometric comparison parameters DO is updateable.
(O) Independent biometric comparison parameters and retry counter for application-specific biometric
reference (SP3)
7 Summary of the test cases
Table 1 introduces summary of test cases for framework defined in this clause.
Table 1 — Test case summary
Profile
ID Summary
A B C D E F G H I J K L M N
CBF_001 CBEFF-3 BIDO retrieval X X
BFI_001 Biometric functionality information retrieval X
BCP_001 Biometric comparison parameters retrieval X X
BCP_002 Biometric comparison parameters compatibility X X X
ENR_001 Enrolment capability  X
VER_001 Biometric verification functionality  X X
REN_001 Security rules applied to re-enrolment  X X
REN_002 Re-enrolment capability (supported) X X X X
REN_003 Re-enrolment capability (prohibited) X X  X X
TMN_001 Application termination (biometric verification denied)  X   X
TMN_002 Application termination (re-enrolment denied)  X X X
RCM_001 Retry counter reset by successful verification  X
Application blocked by retry counter reaching the maxi-
RCM_002  X
mum limit
NOTE SP3 is evaluated by applying the test categories other than SP1 and SP2 to each of multiple on-card biometric comparison
applications.
© ISO/IEC 2025 – All rights reserved
TTabablele 1 1 ((ccoonnttiinnueuedd))
Profile
ID Summary
A B C D E F G H I J K L M N
RCM_003 Application unblocked by resetting retry counter  X   X
A biometric comparison parameters DO is not updated by
SP1_001 X X    X X
any application independently in SP1
A biometric comparison parameters DO is updated by
SP2_001 X X    X X
only the associated application in SP2
NOTE SP3 is evaluated by applying the test categories other than SP1 and SP2 to each of multiple on-card biometric comparison
applications.
8 Common test requirement
To avoid redundancy of description in relevant tests, the common test requirements are listed as below.
These requirements are referenced from the following relevant sections:
(1) Value of a biometric data DO is in a format as defined in ISO/IEC 7816-11.
(See ISO/IEC 24787-1:2024, 8.3.2)
(2) If PBO command is used for enrolment, re-enrolment, or verification with externally-
captured biometric data, the command data field forms either DO'7F2E' (see
Table 4), DO'7F60' (see Table 3), or DO'7F61' (see Table 2) to transfer the biometric data.
(See ISO/IEC 24787-1:2024, 8.4.1, 8.4.2)
(3) Regardless of the command, the biometric data is encapsulated in either a DO'5F2E' or DO'7F2E' if the
biometric data is transferred in a biometric information template DO'7F60' (see Table 3).
(See ISO/IEC 24787-1:2024, 8.3.1 Table 2, 8.3.2)
(4) All biometric data are enciphered for transmission to the ICC unless the trusted environment is
established to keep confidentiality including guaranteeing cardholders' privacy.
(See ISO/IEC 24787-1:2024, 8.4.1, 9.1.2 Item d)
Table 2 — Biometric data transferred on DO'7F61'
T L V Presence
'7F61' Var. Biometric information template group template Mandatory
T L V —
'7F60' Var. Biometric information template (see Table 3) Mandatory
NOTE Any other DO can be included within this structure (see ISO/IEC 24787-1).
Table 3 — Biometric data transferred on DO'7F60'
T L V Presence
'7F60' Var. Biometric information template Mandatory
T L V —
Biometric data (Primitive/constructed) (see Table 4
'5F2E' or '7F2E' Var. Mandatory
for DO'7F2E')
NOTE Any other DO can be included within this structure (see ISO/IEC 24787-1).

© ISO/IEC 2025 – All rights reserved
Table 4 — Biometric data transferred on DO'7F2E'
T L V Presence
'7F2E' Var. Biometric data Mandatory
T L V —
Biometric data in standardized format
'81' or 'A1' Var. Mandatory
(Primitive/constructed)
NOTE Any other DO can be included within this structure (see ISO/IEC 24787-1).
9 Test requirements related to framework for on-card biometric comparison
9.1 Data for on-card biometric comparison — CBEFF-3 BIDO
9.1.1 General
This test category is applied if CBEFF-3 BIDOs are retrievable from ICC. The ICC is evaluated by the format
of CBEFF-3 BIDOs are structured properly. Also, general requirements regarding message integrity and
security are evaluated by this test category. When the ICC supports multiple applications hosted by multiple
DFs, this test category is also applied to multiple CBEFF-3 DOs associated with each application.
9.1.2 Test case: CBF_001
ID CBF_001
Version 1
Purpose To check that the following requirements are implemented.
— CBEFF-3 BIDOs are located within the required DO structure.
— ICC does not send out any biometric reference.
— Message integrity is assured in the retrieval of the DOs within a biometric information
template.
Reference ISO/IEC 24787-1:2024, 8.3.1, 9.1.2 Item a), 9.1.2 Item c)
Profile (A)  CBEFF-3 BIDOs are retrievable from ICC.
(D)  A biometric reference has already been stored.
Precondition — A DF including a CBEFF-3 BIDOs is selected.
— Security attributes associated with retrieval of CBEFF-3 BIDOs are satisfied.
— If necessary, a secure channel is established.
a, b
Scenario (1) Send a command(s) to retrieve CBEFF-3 BIDOs .
Expected result (1-1) The ICC returns SW1-SW2 as '9000'.
(1-2) The response data field includes a full or a part of the structure specified in Table 5
b
that contains CBEFF-3 BIDOs.
(1-3) Message integrity of any data objects in the response data field, which are found in
Table 5, is assured.
(1-4) Any biometric data is not included in the response data field.
Postcondition N/A
a
According to the implementation of the DUT, the scenario is composed of a command(s) to retrieve a whole structure
specified in Table 5 or to retrieve a part of the structure of Table 5 that includes CBEFF-3 BIDOs (e.g. by READ BINARY or GET
DATA command).
b
Each of the mandatory tags in Table 5 appears in a command(s) of Scenario (1) to indicate a path to retrieve the CBEFF-3
BIDOs or in a response data as a component of a template DO that stores CBEFF-3 BIDOs.

© ISO/IEC 2025 – All rights reserved
Table 5 — Container of CBEFF-3 BIDOs
T L V Presence
'7F60' Var. Biometric information template Mandatory
T L V —
'A1' Var. Biometric information DOs specified by other than ISO/IEC
Mandatory
7816-11
T L V —
'78' Var. Compatible tag allocation authority Mandatory
T L V —
Object identifier of the patron
'06' Var. format specified in ISO/IEC Mandatory
19785-3:2020, Clause 19
'70' Var. Biometric information DOs specified by the com-
Mandatory
patible tag allocation authority
T L V —
'XX' Var. CBEFF-3 BIDO Mandatory
: : : :
NOTE Any other DO can be included within this structure except for biometric data (see ISO/IEC 24787-1).
9.2 Data for on-card biometric comparison — Biometric functionality information
9.2.1 General
This test category is applied if a biometric functionality information DO is retrievable from the ICC. This
test category evaluates that the format of a biometric functionality information DO is structured properly.
Also, general requirements regarding message integrity and security are evaluated by this test category.
When the ICC supports multiple biometric modalities, this test category is also applied to multiple biometric
functionality information DOs associated with each biometric modality.
9.2.2 Test case: BFI_001
ID BFI_001
Version 1
Purpose To check that the following requirements are implemented.
— a biometric functionality information DO is located within the required DO structure.
— ICC does not send out any biometric reference.
— Message integrity is assured in the retrieval of the DOs within a biometric information
template.
Reference ISO/IEC 24787-1:2024, 8.3.1, 8.3.3.2 Table 7, 9.1.2 Item a), 9.1.2 Item c)
Profile (B)  A biometric functionality information DO is retrievable from ICC.
NOTE When this test case applied to an ICC with multiple biometric modalities, check that each biometric modality has its own
biometric
...

Questions, Comments and Discussion

Ask us and Technical Secretary will try to provide an answer. You can facilitate discussion about the standard in here.

Loading comments...

Frequently Asked Questions

ISO/IEC 18584-1:2025 is a standard published by the International Organization for Standardization (ISO). Its full title is "Information technology - Test methods for on-card biometric comparison applications - Part 1: General principles and specifications". This standard covers: This document establishes conformance testing for the requirements described in ISO/IEC 24787-1, which are: - framework for on-card biometric comparison, both in sensor-off-card systems and as part of Biometric System-on-Card; - security policies for on-card biometric comparison. Measuring the performance of on-card biometric comparison algorithms such as error rates or speed is not within the scope of this document.

This document establishes conformance testing for the requirements described in ISO/IEC 24787-1, which are: - framework for on-card biometric comparison, both in sensor-off-card systems and as part of Biometric System-on-Card; - security policies for on-card biometric comparison. Measuring the performance of on-card biometric comparison algorithms such as error rates or speed is not within the scope of this document.

ISO/IEC 18584-1:2025 is classified under the following ICS (International Classification for Standards) categories: 35.240.15 - Identification cards. Chip cards. Biometrics. The ICS classification helps identify the subject area and facilitates finding related standards.

ISO/IEC 18584-1:2025 has the following relationships with other standards: It is inter standard links to ISO/IEC 18584:2015. Understanding these relationships helps ensure you are using the most current and applicable version of the standard.

You can purchase ISO/IEC 18584-1:2025 directly from iTeh Standards. The document is available in PDF format and is delivered instantly after payment. Add the standard to your cart and complete the secure checkout process. iTeh Standards is an authorized distributor of ISO standards.

The ISO/IEC 18584-1:2025 standard presents a vital framework for on-card biometric comparison applications, establishing comprehensive conformance testing aligned with ISO/IEC 24787-1. Its primary scope encompasses the principles and specifications necessary for evaluating the integrity and security of biometric systems operating on-card, ensuring that both sensor-off-card systems and Biometric System-on-Card are adequately addressed. One of the key strengths of this standard is its well-defined structure that promotes consistency in the assessment of biometric technologies. By focusing on the security policies relevant to on-card biometric comparisons, this standard enhances the trust and reliability that users can place in such systems. The emphasis on conformance testing not only aids developers in creating compliant products but also protects consumers and organizations by setting clear criteria for operational safety. Moreover, the document's intent to separate performance measurement, such as error rates and speed, from its main focus allows for a more precise evaluation of security methodologies and operational protocols. This highlights its relevance in a landscape where biometric technology is increasingly deployed in sensitive applications, necessitating robust security measures. Overall, the ISO/IEC 18584-1:2025 standard plays a crucial role in advancing the field of biometric technology by ensuring that on-card biometric comparison applications meet stringent security requirements, thus fostering innovation while safeguarding user data and privacy.

ISO/IEC 18584-1:2025は、情報技術におけるカード上生体比較アプリケーションのテスト方法に関する重要な規格であり、その一般原則と仕様を策定しています。この文書は、ISO/IEC 24787-1で記述された要件に対する適合性テストを確立し、センサーオフカードシステムとカード上生体システムの一部としてのカード上生体比較のフレームワークを明確に示しています。 本規格の強みは、その適用範囲の広さと明確なセキュリティポリシーの設定にあります。カード上生体比較に関するセキュリティポリシーは、データ保護とプライバシーの観点から極めて重要であり、この分野の標準化を推進する役割を果たしています。特に、セキュリティが重視される現代の情報技術環境において、この文書は必要不可欠なガイドラインを提供しています。 しかしながら、パフォーマンス測定、例えばエラーレートや速度に関しては、この文書の適用範囲には含まれないことが明示されています。そのため、開発者や導入者は、別途パフォーマンスに関する基準を考慮する必要があります。これにより、規格の焦点が明確になり、利用者が特定の要件に基づいて評価を行いやすくなっています。 ISO/IEC 18584-1:2025は、カード上生体比較技術の標準化を通じて、より安全で効果的なシステムの実現を目指しており、その重要性は今後ますます高まっていくと考えられます。この文書は、生体認証技術の進展において欠かせない基盤を提供し、業界全体の信頼性の向上に寄与するでしょう。

ISO/IEC 18584-1:2025 표준은 카드 내 생체 인식 비교 응용 프로그램을 위한 시험 방법에 대한 기본 원칙과 사양을 제시하는 중요한 문서입니다. 이 표준의 범위는 ISO/IEC 24787-1에서 설명한 요구 사항에 대한 적합성 테스트를 수립하는 것입니다. 특히, 카드 내 생체 인식 비교를 위한 프레임워크를 마련하고, 비접촉 시스템과 카드 내 생체 시스템의 일환으로 적용될 수 있는 보안 정책을 다루고 있습니다. 이 표준의 강점 중 하나는 생체 인식 기술의 발전을 염두에 두고, 다양한 카드 기반 응용 프로그램에서 생체 인식 비교의 신뢰성과 보안을 보장하기 위해 필요한 구체적인 요구 사항을 상세히 규명하고 있다는 점입니다. 또한, 다양한 생체 인식 시스템이 증가함에 따라 관련 보안 정책을 정립하는 것이 그 중요성을 더욱 부각시킵니다. 하지만, 이 문서에서는 카드 내 생체 인식 비교 알고리즘의 성능 측정(예: 오류율 또는 속도)은 다루지 않기 때문에, 성능 측정이 필요할 경우 별도의 기준이나 문서를 참조해야 합니다. 그럼에도 불구하고 ISO/IEC 18584-1은 카드를 이용한 생체 인식 기술의 표준화에 중대한 기여를 하며, 생체 인식 시스템의 구축 및 운영에 있어 필수적인 지침을 제공합니다.

Le document ISO/IEC 18584-1:2025 présente un cadre essentiel pour les applications de comparaison biométriques sur carte, en se concentrant sur les principes généraux et les spécifications nécessaires à la conformité des exigences établies dans ISO/IEC 24787-1. Ce standard joue un rôle crucial dans l'uniformisation des méthodes de test pour les systèmes biométriques intégrés dans des dispositifs de carte, et il est fondamental pour le développement de solutions sécurisées utilisant des politiques de sécurité adaptées à ces applications. Parmi les points forts de la norme, on note sa capacité à définir un cadre clair pour la comparaison biométrique sur carte, tant pour les systèmes hors carte que pour les systèmes sur carte. Cela facilite non seulement l'interopérabilité entre les différentes technologies et dispositifs, mais assure également que les usages respectent des standards de sécurité rigoureux, ce qui est primordial dans un contexte de protection des données personnelles. La norme ISO/IEC 18584-1:2025 est particulièrement pertinente dans un monde où la sécurité des données et la vérification d'identité sont de plus en plus au centre des préoccupations. Elle guide les développeurs et les fabricants dans l'implémentation de systèmes de comparaison biométrique sur carte fiables et conformes, sans entrer dans les détails relatifs à la performance des algorithmes de comparaison, ce qui permet de maintenir une clarté dans les attentes et les directives. En définitive, l'ISO/IEC 18584-1:2025 s'affirme comme un cadre de référence essentiel pour toute organisation impliquée dans la technologie de l'information, garantissant que les méthodes de test pour les applications biométriques soient à la fois standardisées et sécurisées.

Die Norm ISO/IEC 18584-1:2025 behandelt die Testmethoden für Anwendungen der biometrischen Vergleichsanalyse auf Karten und legt die allgemeinen Grundsätze und Spezifikationen fest. Der Umfang dieser Norm konzentriert sich auf die Konformitätsprüfung der Anforderungen, die in ISO/IEC 24787-1 beschrieben sind, und bietet damit einen entscheidenden Rahmen für sowohl die biometrische Vergleichsanalyse auf der Karte als auch die Integration in Systeme mit Sensoren außerhalb der Karte. Eine der größten Stärken dieser Norm ist die klare Definition der Sicherheitsrichtlinien für biometrische Vergleiche auf der Karte. Dies ist besonders relevant in einer Zeit, in der der Schutz sensibler biometrischer Daten von höchster Priorität ist. Durch die Festlegung dieser Richtlinien trägt die Norm dazu bei, das Vertrauen in biometrische Systeme zu stärken und die Benutzer von solchen Technologien zu schützen. Ein weiterer positiver Aspekt der ISO/IEC 18584-1:2025 ist ihre umfassende Ausrichtung auf die Konformität. Diese Norm bietet eine strukturierte Methode, um sicherzustellen, dass unterschiedliche Systeme, die biometrische Vergleichsanwendungen nutzen, einheitliche Standards erfüllen. Dies ermöglicht nicht nur die Interoperabilität zwischen verschiedenen Systemen, sondern erleichtert auch die Bewertung und Implementierung neuer Technologien im Bereich der biometrischen Identifizierung. Es ist wichtig zu beachten, dass die Norm nicht die Leistung von Algorithmen zur biometrischen Vergleichsanalyse, wie Fehlerquoten oder Geschwindigkeit, bewertet. Dieser Fokus auf die Rahmenbedingungen und Sicherheitsrichtlinien erlaubt es Entwicklern und Anbietern, sich auf die Integration und den sicheren Betrieb der Systeme zu konzentrieren, während die Leistung separat evaluiert werden kann. Insgesamt bietet die ISO/IEC 18584-1:2025 einen entscheidenden Beitrag zur Standardisierung der Testmethoden für biometrische Anwendungen auf Karten und stellt sicher, dass Sicherheitsaspekte und Konformität im Vordergrund stehen. Dadurch bleibt die Norm sowohl für Entwickler als auch für Anbieter in einem zunehmend sicherheitsbewussten Umfeld von großer Relevanz.