Regional sites:    Specialized sites:
.NET Bio   In Production
 
Biometric Match on Card Solution on Windows XP, Vista and Seven, based on Protiva .NET smart cards  
 

Gemalto .NET Bio is an innovative software solution that provides fingerprint biometric support for Gemalto .NET smart cards integrated with Microsoft Windows XP and Vista.

The Gemalto .NET Bio solution enables fingerprint Match-on-Card user authentication as an alternative or complement to smart card PIN verification. This in turn gives access to the digital certificates on the card, that can then be used for logon, digital signature, file encryption, secure VPN access among other services. This solution provides a secure two or three factor authentication system that is convenient for users, easy to deploy and manage, and fully compatible with the smart card security components available in Windows Operating Systems. It is also compatible, with the vast majority of fingerprint sensors available in the market.

Features and Benefits
Features:
  • Fingerprint storage and fingerprint verification performed on-card
  • 4 different modes modes for card authentication: PIN only, Fingerprint Only, PIN or Fingerprint, PIN and Fingerprint
  • Storage for up to 10 fingerprint templates
  • Compatible with standard fingerprint sensors representing 90 % of the market
  • Integrated with Microsoft Operating Systems, Microsoft applications and 3rd party applications that support Microsoft's Windows Smart Card Framework (and Windows Biometric Framework for the Windows 7 version)
  • User experience consistent with Microsoft OS.

 

Benefits:

  • Security: Optional Three-Factor Authentication: Token, PIN and Fingerprint
  • Security: Biometric credentials securely stored on smart card. Not susceptible to service outages and Man-in-the-middle attacks
  • Convenience: Roaming --> User can use fingerprints and certificates stored on the card to authenticate on any computer
  • Convenience: Fingerprints used instead of the smart card PIN – Easier to use, no forgotten PIN issues --> Better user acceptance and adoption
  • Privacy: Match performed on the card: Biometric credentials never leave the card
  • Non repudiation: User cannot deny having operate the application or the transaction
  • Compliancy: Certain countries have regulations preventing storage of biometric data in central repositories.
  • Technology: Maturity, accuracy and performance
  • Cost-savings: Eliminating expensive and complex password administration.
News
February 2010 New PKCS#11 libraries version v2.1.3: The new v2.1.3 libraries now support the biometric authentication on Windows 7 and Server 2008 R2, Firefox 3.5, the No_PIN type and the following OS:
- Windows (32 and 64 bits):
XP Pro up to SP3, Vista SP1/SP2, Seven, Server 2003, 2008 and 2008 R2
- Mac OS
10.6 Snow Leopard (32 and 64bits): The Tokend libraries are not supplied in this package (on request).
- Solaris v10 SPARC and Intel
The
Linux distributions such as Red Hat v5, Ubuntu v9.05, Debian v5 and Suze v11 are not part of this release. They are still supported by the v2.1.1 release (see below).
The libraries, their associated User Guides and Release Notes are available from Download / Libraries.
January 2010 Product launch of the .NET Bio Solution for Windows 7:
-
Product launch main page: What's new, Download, Usefull links, How to try it, samples, readers, etc
November 2009 Update of the .NET and .NET Bio cards Minidriver (MD) dll: This MD is available from the Microsoft Update Catalog that lists all the certified MDs. There is now only one MD for all the Windows OS and all the 32/64 bit platforms. This MD complies with the Microsoft Base CSP and MD specifications v7 and supports all the existing .NET v2+ cards.

NET Bio smart card samples now available from the webstore. See the Ordering Procedure section. These samples work only with Windows XP and Vista. For Windows 7 samples, please contact the Product Marketing Manager.
 

October 2009 New PKCS#11 library version v2.1.2 for Windows: The new v2.1.2 library now supports:
- Windows 7 and Server 2008 R2
- Mozilla Firefox 3.5 and Adobe Acrobat 9.x
- PINpad readers compliant with PC/SC v2.0: Verify PIN function only supported.
The library and its associated User Guides are available from Download / Libraries
August 2009 New PKCS#11 libraries version v2.1.1: The new v2.1.1 libraries now support the biometric authentication on Windows, the Single Sign On function (if the option is selected in the .NET card) and the following OS:
- Windows (32 and 64 bits):
XP Pro up to SP3, Vista SP1/SP2, Server 2003  and 2008
- Linux distributions (32 bits):
Red Hat v5, Ubuntu v9.05, Debian v5 and Suze v11
- Mac OS
10.5 (32 bits): A Tokend v1.1 component is added to the PKCS#11 libs to provide extented cryptographic support to Apple's native applications such as Safari, Mail and Logon, as well as 3rd party applications. 
- Solaris v10 SPARC and Intel: On request.
The libraries and their associated User Guides are available from Download / Libraries.

 
April 2009 New documents:
- .NET Bio v1.1 for Windows XP and Vista SP1 middleware: Download / Libraries 
- Press Release announcing the launch of .NET Bio Solution. PR available in English and in French
- Administrator Guides for .NET Bio v1.1 (Windows XP and Vista SP1):  Download / Technical Document 
 

Technical Specifications

System requirements:

• Windows XP, Vista SP1 and Windows 7
• PC/SC smart card reader
• Fingerprint devices supported (to be confirmed for Windows 7):
        - UPEK sensors: TCS1, TCS2, TCS3, TCS4
        - AuthenTec sensors: AES2501, AES2550, AES2801
        - Precise Biometrics readers 200MC, 250MC and 100XS
        - Broadcom CVU with swipe sensors

• Gemalto .NET  Bio v2+ smart card

Disclaimer:
Please note that not all implementations of above mentioned sensors are reference implementations. We are utilizing the latest dll:s from UPEK and AuthenTec and for the solution to recognize the sensors, it’s important that the latest drivers are installed. Additional sensor support is added continuously and is also available upon request.
For all UPEK sensors we are utilizing BSAPI.dll version 3.5.
For AuthenTec sensors we are utilizing the runtime AT8.4min and the drivers included in this.
Broadcom CVU is not a reference implementation of the sensors. We are compatible with CVUsr1fc with the latest drivers.

Compatibility
SOLUTION TYPE PARTNER SOLUTION Version Smart card support through .NET Bio
Operating System logon Microsoft Windows 7   BaseCSP Yes
Microsoft Windows Vista   BaseCSP Yes
Microsoft Windows XP   BaseCSP Yes
Desktop applications Microsoft Word   BaseCSP Yes
Microsoft Excel   BaseCSP Yes
Microsoft Powerpoint   BaseCSP Yes
E-Mail clients Microsoft Outlook   BaseCSP Yes
Web browsers Microsoft Internet Explorer   BaseCSP Yes
  Checkpoint VPN-1 SecureClient NGX R60 BaseCSP Yes
Bio Match on Card Precise Biometrics Biomatch   BaseCSP Yes
Certification Authority Microsoft CA Cert Srv   BaseCSP Yes
CMS Microsoft ILM  2007 BaseCSP Yes
 
Next Steps

Useful links

  • .NET Utilities A set of online tools that allow you to manage samples of Gemalto .NET cards
  • Microsoft Upgrade: Download the latest certified v7 .NET card minidriver dll
  • .NET Forum A moderated forum for exchange of information about programming, features and uses of  Gemalto .NET cards
  • .NET card main page
  • .NET Bio Solution for Windows 7 Product launch page
     

Exclusive information for Gemalto Enterprise Partners

Additional information about this product is available exclusively to Gemalto Enterprise Partners. Click here to access it through the Enterprise Partner Portal.

 
EU Commitments | Sitemap | Disclaimer | © 2006-2010 Gemalto NV