Personal identification - European guide for biometric recognition applications based on ID documents (ERG)

This document defines requirements and provides guidance on:
•   capturing of facial images to be used for verification or identification purposes in applications based on reference images in identity or similar documents and traveller or visa databases;
•   capturing of fingerprint images to be used for verification or identification purposes in applications based on reference images in identity or similar documents and traveller or visa databases;
•   data quality maintenance for biometric data captured by/for verification or identification applications;
•   data authenticity maintenance for biometric data captured by/for verification or identification ap-plications.
This document addresses the following aspects which are specific for biometric data capturing:
•   biometric data quality and interoperability assurance;
•   data authenticity assurance;
•   morphing and other presentation attacks and biometric data injection attacks;
•   accessibility and usability;
•   recognition algorithms and their evaluation;
•   privacy and data protection;
•   optimal process design.
The following aspects are out of scope:
•   other aspects of IT security;
•   data capturing for ID document enrolment purposes, e.g. passport or ID card enrolment.

Persönliche Identifikation - Europäischer Leitfaden für Verifikationsanwendungen auf der Grundlage von ID-Dokumenten (EVG)

Identification des personnes - Guide européen pour les applications de reconnaissance biométrique basées sur des documents d'identité (ERG)

Osebna identifikacija - Evropski vodnik za aplikacije biometričnega prepoznavanja na podlagi osebnih dokumentov (ERG)

General Information

Status
Published
Public Enquiry End Date
03-Feb-2025
Publication Date
15-Jun-2025
Technical Committee
Current Stage
6060 - National Implementation/Publication (Adopted Project)
Start Date
15-May-2025
Due Date
20-Jul-2025
Completion Date
16-Jun-2025

Buy Standard

Technical specification
TS CEN/TS 18139:2025 - BARVE
English language
30 pages
sale 10% off
Preview
sale 10% off
Preview
e-Library read for
1 day

Standards Content (Sample)


SLOVENSKI STANDARD
01-julij-2025
Osebna identifikacija - Evropski vodnik za aplikacije biometričnega
prepoznavanja na podlagi osebnih dokumentov (ERG)
Personal identification - European guide for biometric recognition applications based on
ID documents (ERG)
Persönliche Identifikation - Europäischer Leitfaden für Verifikationsanwendungen auf der
Grundlage von ID-Dokumenten (EVG)
Identification des personnes - Guide européen pour les applications de reconnaissance
biométrique basées sur des documents d'identité (ERG)
Ta slovenski standard je istoveten z: CEN/TS 18139:2025
ICS:
35.240.15 Identifikacijske kartice. Čipne Identification cards. Chip
kartice. Biometrija cards. Biometrics
2003-01.Slovenski inštitut za standardizacijo. Razmnoževanje celote ali delov tega standarda ni dovoljeno.

CEN/TS 18139
TECHNICAL SPECIFICATION
SPÉCIFICATION TECHNIQUE
April 2025
TECHNISCHE SPEZIFIKATION
ICS 35.240.15
English Version
Personal identification - European guide for biometric
recognition applications based on ID documents (ERG)
Identification des personnes - Guide européen pour les Persönliche Identifikation - Europäischer Leitfaden für
applications de reconnaissance biométrique basées sur Verifikationsanwendungen auf der Grundlage von ID-
des documents d'identité (ERG) Dokumenten (EVG)
This Technical Specification (CEN/TS) was approved by CEN on 7 March 2025 for provisional application.

The period of validity of this CEN/TS is limited initially to three years. After two years the members of CEN will be requested to
submit their comments, particularly on the question whether the CEN/TS can be converted into a European Standard.

CEN members are required to announce the existence of this CEN/TS in the same way as for an EN and to make the CEN/TS
available promptly at national level in an appropriate form. It is permissible to keep conflicting national standards in force (in
parallel to the CEN/TS) until the final decision about the possible conversion of the CEN/TS into an EN is reached.

CEN members are the national standards bodies of Austria, Belgium, Bulgaria, Croatia, Cyprus, Czech Republic, Denmark, Estonia,
Finland, France, Germany, Greece, Hungary, Iceland, Ireland, Italy, Latvia, Lithuania, Luxembourg, Malta, Netherlands, Norway,
Poland, Portugal, Republic of North Macedonia, Romania, Serbia, Slovakia, Slovenia, Spain, Sweden, Switzerland, Türkiye and
United Kingdom.
EUROPEAN COMMITTEE FOR STANDARDIZATION
COMITÉ EUROPÉEN DE NORMALISATION

EUROPÄISCHES KOMITEE FÜR NORMUNG

CEN-CENELEC Management Centre: Rue de la Science 23, B-1040 Brussels
© 2025 CEN All rights of exploitation in any form and by any means reserved Ref. No. CEN/TS 18139:2025 E
worldwide for CEN national Members.

Contents Page
European foreword . 3
Introduction . 4
1 Scope . 5
2 Normative references . 5
3 Terms and definitions . 6
4 Abbreviated terms . 8
5 Overview of biometric recognition systems . 9
5.1 Concept . 9
5.2 Biometric references . 9
5.3 Types of identity documents . 9
5.3.1 General. 9
5.3.2 ePassport . 10
5.3.3 National identity cards. 10
5.3.4 Schengen visa . 10
5.3.5 Driving licence . 10
5.3.6 Residence permit . 10
5.4 Topologies of identity recognition systems . 11
6 Data protection and privacy . 11
6.1 General. 11
6.2 Obligation to provide information about data processing . 11
6.3 Right of access and right to erasure . 12
6.4 Sharing data with third countries and international organizations . 12
6.5 Saving data for statistical reasons . 12
7 Biometric systems used for recognition . 12
7.1 General requirements and recommendations . 12
7.1.1 Usability and accessibility . 12
7.1.2 Quality or score driven approaches . 14
7.1.3 Evaluation . 16
7.1.4 Biometric security functions . 16
7.1.5 Interoperability assurance . 19
7.1.6 Biometric data quality . 19
7.1.7 Data authenticity assurance . 19
7.1.8 Logging . 20
7.2 Recommendations for biometric systems . 20
7.2.1 Recommendations for face biometrics . 20
7.2.2 Requirements and recommendations for fingerprint biometrics . 24
7.3 Contexts for recognition via biometrics . 26
7.3.1 Automated border control. 26
7.3.2 Manual border control . 27
7.3.3 Mobile recognition . 27
7.3.4 Passenger flow facilitation . 27
Bibliography . 29
European foreword
This document (CEN/TS 18139:2025) has been prepared by Technical Committee CEN/TC 224 “Personal
identification, electronic signature and cards and their related systems and operations”, the secretariat
of which is held by AFNOR.
Attention is drawn to the possibility that some of the elements of this document may be the subject of
patent rights. CEN shall not be held responsible for identifying any or all such patent rights.
Any feedback and questions on this document should be directed to the users’ national standards body.
A complete listing of these bodies can be found on the CEN website.
According to the CEN/CENELEC Internal Regulations, the national standards organisations of the follow-
ing countries are bound to announce this Technical Specification: Austria, Belgium, Bulgaria, Croatia, Cy-
prus, Czech Republic, Denmark, Estonia, Finland, France, Germany, Greece, Hungary, Iceland, Ireland, It-
aly, Latvia, Lithuania, Luxembourg, Malta, Netherlands, Norway, Poland, Portugal, Republic of North Mac-
edonia, Romania, Serbia, Slovakia, Slovenia, Spain, Sweden, Switzerland, Türkiye and the United King-
dom.
Introduction
Biometric reference data for ID documents meanwhile are highly standardized by ISO, ICAO, and CEN.
Within CEN, this work is done by TC 224/WG 18 in close cooperation with the Article 6 Technical Sub-
group and FRONTEX. Several International Standards, in particular ISO/IEC 19794 series and
ISO/IEC 39794 series, achieve technical interoperability of biometric data.
With CEN/TS 17661 [1] the enrolment of biometric data for identity documents has been profiled specif-
ically for European needs. However, biometric data is captured in many other situations as well, even in
the context of ID documents, in particular for verification applications like automated or manual border
control, or temporary enrolment into entry/exit systems. This gap shall be addressed by this TS.
During the development of the TS, a close cooperation between WG18 and the EU has been maintained
to ensure that the needs of the Member States are exactly met.
The document gives recommendations for
• Capturing of facial images for verification applications mainly using reference data stored in identity
documents or traveller/visa databases, covering data quality and interoperability, data authenticity,
morphing and presentation attack detection in several environments,
• Capturing of fingerprint images for verification applications mainly using reference data stored in
identity documents or traveller/visa databases, covering data quality and interoperability, data au-
thenticity, and presentation attack detection in several environments, and
• Processes handling such biometric data for verification and identification purposes considering se-
curity as well as privacy aspects.
This document covers biometric recognition applications based on ID documents. Biometric recognition
applications within the frame of this document are corresponding to the definition of biometric recogni-
tion systems in ISO/IEC 2382-37:2022 encompassing identification and verification systems. This means
that biometric recognition applications should be considered as a subsystem of a complete identity veri-
fication system. Identity verification systems can be ABC gates, inspection systems, mobile phones etc.
1 Scope
This document defines requirements and provides guidance on:
• capturing of facial images to be used for verification or identification purposes in applications based
on reference images in identity or similar documents and traveller or visa databases;
• capturing of fingerprint images to be used for verification or identification purposes in applications
based on reference images in identity or similar documents and traveller or visa databases;
• data quality maintenance for biometric data captured by/for verification or identification applica-
tions;
• data authenticity maintenance for biometric data captured by/for verification or identification ap-
plications.
This document addresses the following aspects which are specific for biometric data capturing:
• biometric data quality and interoperability assurance;
• data authenticity assurance;
• morphing and other presentation attacks and biometric data injection attacks;
• accessibility and usability;
• recognition algorithms and their evaluation;
• privacy and data protection;
• optimal process design.
The following aspects are out of scope:
• other aspects of IT security;
• data capturing for ID document enrolment purposes, e.g. passport or ID card enrolment.
2 Normative references
The following documents are referred to in the text in such a way that some or all of their content consti-
tutes requirements of this document. For dated references, only the edition cited applies. For undated
references, the latest edition of the referenced document (including
...

Questions, Comments and Discussion

Ask us and Technical Secretary will try to provide an answer. You can facilitate discussion about the standard in here.