ISO/IEC 19785-4:2025
(Main)Information technology — Common Biometric Exchange Formats Framework — Part 4: Security block format specifications
Information technology — Common Biometric Exchange Formats Framework — Part 4: Security block format specifications
This document specifies security block (SB) formats (see ISO/IEC 19785-1) registered in accordance with ISO/IEC 19785-2 as formats defined by the Common Biometric Exchange Formats Framework (CBEFF) biometric organization ISO/IEC JTC 1/SC 37. This document also specifies registered SB format identifiers. NOTE The SB format identifier is recorded in the standard biometric header (SBH) of a patron format (or defined by that patron format as the only available SB format). The general-purpose SB format specifies whether the biometric data block (BDB) is encrypted or the SBH and BDB have integrity applied (or both). The general-purpose SB format can include ACBio instances (see ISO/IEC 24761). This SB provides all necessary security parameters, including those used for encryption or integrity. This document does not restrict the algorithms and parameters used for encryption or integrity, but it provides for the recording of such algorithms and parameter values. This document does not cover profiling to determine what algorithms and parameter ranges can be used by the generator of an SB for a particular application area, and hence what algorithms and parameter ranges have to be supported by the user of an SB. The second SB format is more limited but simpler. In particular, it cannot contain ACBio instances and does not support encryption of the BDB. The general-purpose SB format in XML provides for specification of whether the BDB is encrypted or the SBH and BDB have integrity applied (or both).
Technologies de l'information — Cadre de formats d'échange biométriques communs — Partie 4: Spécifications de format de bloc de sécurité
General Information
Relations
Buy Standard
Standards Content (Sample)
International
Standard
ISO/IEC 19785-4
Second edition
Information technology — Common
2025-07
Biometric Exchange Formats
Framework —
Part 4:
Security block format specifications
Technologies de l'information — Cadre de formats d'échange
biométriques communs —
Partie 4: Spécifications de format de bloc de sécurité
Reference number
© ISO/IEC 2025
All rights reserved. Unless otherwise specified, or required in the context of its implementation, no part of this publication may
be reproduced or utilized otherwise in any form or by any means, electronic or mechanical, including photocopying, or posting on
the internet or an intranet, without prior written permission. Permission can be requested from either ISO at the address below
or ISO’s member body in the country of the requester.
ISO copyright office
CP 401 • Ch. de Blandonnet 8
CH-1214 Vernier, Geneva
Phone: +41 22 749 01 11
Email: copyright@iso.org
Website: www.iso.org
Published in Switzerland
© ISO/IEC 2025 – All rights reserved
ii
Contents Page
Foreword .iv
Introduction .v
1 Scope . 1
2 Normative references . 1
3 Terms and definitions . 2
4 Abbreviated terms . 3
5 ASN.1 Security block format: general purpose . 3
5.1 Security block format owner .3
5.2 Security block format owner identifier .3
5.3 Security block format name .3
5.4 Security block format identifier .3
5.5 ASN.1 object identifier for this security block format .3
5.6 Domain of use .3
5.7 Version identifier .4
5.8 Format specification and conformance statement .4
5.8.1 General .4
5.8.2 Encryption .6
5.8.3 Integrity .7
5.8.4 Encryption and integrity .11
5.9 Encoding of abstract values .11
5.10 ASN.1 module for general-purpose security block format . 12
6 ASN.1 Security block format: signature only . 14
6.1 Security block format owner .14
6.2 Security block format owner identifier .14
6.3 Security block format name .14
6.4 Security block format identifier .14
6.5 ASN.1 object identifier for this security block format .14
6.6 Domain of use .14
6.7 Version identifier .14
6.8 Format specification and conformance statement .14
7 XML Security block format: general purpose .15
7.1 Security block format owner . 15
7.2 Security block format owner identifier . 15
7.3 Security block format name . . 15
7.4 Security block format identifier . 15
7.5 ASN.1 object identifier for this security block format . 15
7.6 Domain of use . 15
7.7 Version identifier . 15
7.8 Format specification and conformance statement .16
7.8.1 General .16
7.8.2 Element .16
7.8.3 Element .16
7.8.4 Element .17
7.8.5 Element .17
7.8.6 Encryption and integrity .17
7.8.7 XML schema of the security block .18
Bibliography .20
© ISO/IEC 2025 – All rights reserved
iii
Foreword
ISO (the International Organization for Standardization) and IEC (the International Electrotechnical
Commission) form the specialized system for worldwide standardization. National bodies that are
members of ISO or IEC participate in the development of International Standards through technical
committees established by the respective organization to deal with particular fields of technical activity.
ISO and IEC technical committees collaborate in fields of mutual interest. Other international organizations,
governmental and non-governmental, in liaison with ISO and IEC, also take part in the work.
The procedures used to develop this document and those intended for its further maintenance are described
in the ISO/IEC Directives, Part 1. In particular, the different approval criteria needed for the different types
of document should be noted. This document was drafted in accordance with the editorial rules of the ISO/
IEC Directives, Part 2 (see www.iso.org/directives or www.iec.ch/members_experts/refdocs).
ISO and IEC draw attention to the possibility that the implementation of this document may involve the
use of (a) patent(s). ISO and IEC take no position concerning the evidence, validity or applicability of any
claimed patent rights in respect thereof. As of the date of publication of this document, ISO and IEC had not
received notice of (a) patent(s) which may be required to implement this document. However, implementers
are cautioned that this may not represent the latest information, which may be obtained from the patent
database available at www.iso.org/patents and https://patents.iec.ch. ISO and IEC shall not be held
responsible for identifying any or all such patent rights.
Any trade name used in this document is information given for the convenience of users and does not
constitute an endorsement.
For an explanation of the voluntary nature of standards, the meaning of ISO specific terms and expressions
related to conformity assessment, as well as information about ISO's adherence to the World Trade
Organization (WTO) principles in the Technical Barriers to Trade (TBT) see www.iso.org/iso/foreword.html.
In the IEC, see www.iec.ch/understanding-standards.
This document was prepared by Joint Technical Committee ISO/IEC JTC 1, Information technology,
Subcommittee SC 37, Biometrics.
This second edition cancels and replaces the first edition (ISO/IEC 19785-4:2010), which has been technically
revised. It also incorporates the Technical Corrigendum ISO/IEC 19785-4:2010/Cor. 1:2013.
The main changes are as follows:
— the SB formats in ASN.1 were specified in Clauses 5 and 6;
— the SB format for general purpose in XML was added as Clause 7;
— formats which were defined in ISO/IEC 19785-4:2010, but are now considered deprecated, have been
listed in the Introduction.
A list of all parts in the ISO/IEC 19785 series can be found on the ISO and IEC websites.
Any feedback or questions on this document should be directed to the user’s national standards
body. A complete listing of these bodies can be found at www.iso.org/members.html and
www.iec.ch/national-committees.
© ISO/IEC 2025 – All rights reserved
iv
Introduction
Biometric verification and identification are important techniques for the authentication and identification
of an individual. It is essential for biometric data used in biometric verification and identification to come
from a trusted source with no interference in transmission. This relates to the data's integrity. It can also be
necessary to keep the data secret. This relates to the encryption of the data depending on security policy.
This document provides for both the integrity and encryption of biometric data.
NOTE The term "security policy" in this context relates to security technology rather than contracts or law.
Security policy is determined in and applied to an organization or system.
To ensure interoperability, the Common Biometric Exchange Formats Framework (CBEFF) was specified in
ISO/IEC 19785-1 to associate metadata with one or more biometric data blocks (BDBs). In ISO/IEC 19785-1,
the options for integrity and encryption and the concept of a security block (SB) to contain security
information related to these options are defined, but the format and detailed content
...
FINAL DRAFT
International
Standard
ISO/IEC
FDIS
19785-4
ISO/IEC JTC 1/SC 37
Information technology — Common
Secretariat: ANSI
Biometric Exchange Formats
Voting begins on:
Framework —
2025-03-26
Part 4:
Voting terminates on:
2025-05-21
Security block format specifications
Technologies de l'information — Cadre de formats d'échange
biométriques communs —
Partie 4: Spécifications de format de bloc de sécurité
RECIPIENTS OF THIS DRAFT ARE INVITED TO SUBMIT,
WITH THEIR COMMENTS, NOTIFICATION OF ANY
RELEVANT PATENT RIGHTS OF WHICH THEY ARE AWARE
AND TO PROVIDE SUPPOR TING DOCUMENTATION.
IN ADDITION TO THEIR EVALUATION AS
BEING ACCEPTABLE FOR INDUSTRIAL, TECHNO
LOGICAL, COMMERCIAL AND USER PURPOSES, DRAFT
INTERNATIONAL STANDARDS MAY ON OCCASION HAVE
TO BE CONSIDERED IN THE LIGHT OF THEIR POTENTIAL
TO BECOME STAN DARDS TO WHICH REFERENCE MAY BE
MADE IN NATIONAL REGULATIONS.
Reference number
ISO/IEC FDIS 197854:2025(en) © ISO/IEC 2025
FINAL DRAFT
ISO/IEC FDIS 19785-4:2025(en)
International
Standard
ISO/IEC
FDIS
19785-4
ISO/IEC JTC 1/SC 37
Information technology — Common
Secretariat: ANSI
Biometric Exchange Formats
Voting begins on:
Framework —
Part 4:
Voting terminates on:
Security block format specifications
Technologies de l'information — Cadre de formats d'échange
biométriques communs —
Partie 4: Spécifications de format de bloc de sécurité
RECIPIENTS OF THIS DRAFT ARE INVITED TO SUBMIT,
WITH THEIR COMMENTS, NOTIFICATION OF ANY
RELEVANT PATENT RIGHTS OF WHICH THEY ARE AWARE
AND TO PROVIDE SUPPOR TING DOCUMENTATION.
© ISO/IEC 2025
IN ADDITION TO THEIR EVALUATION AS
All rights reserved. Unless otherwise specified, or required in the context of its implementation, no part of this publication may
BEING ACCEPTABLE FOR INDUSTRIAL, TECHNO
LOGICAL, COMMERCIAL AND USER PURPOSES, DRAFT
be reproduced or utilized otherwise in any form or by any means, electronic or mechanical, including photocopying, or posting on
INTERNATIONAL STANDARDS MAY ON OCCASION HAVE
the internet or an intranet, without prior written permission. Permission can be requested from either ISO at the address below
TO BE CONSIDERED IN THE LIGHT OF THEIR POTENTIAL
or ISO’s member body in the country of the requester.
TO BECOME STAN DARDS TO WHICH REFERENCE MAY BE
MADE IN NATIONAL REGULATIONS.
ISO copyright office
CP 401 • Ch. de Blandonnet 8
CH-1214 Vernier, Geneva
Phone: +41 22 749 01 11
Email: copyright@iso.org
Website: www.iso.org
Published in Switzerland Reference number
ISO/IEC FDIS 197854:2025(en) © ISO/IEC 2025
© ISO/IEC 2025 – All rights reserved
ii
ISO/IEC FDIS 19785-4:2025(en)
Contents Page
Foreword .iv
Introduction .v
1 Scope . 1
2 Normative references . 1
3 Terms and definitions . 2
4 Abbreviated terms . 3
5 ASN.1 Security block format: general purpose . 3
5.1 Security block format owner .3
5.2 Security block format owner identifier .3
5.3 Security block format name .3
5.4 Security block format identifier .3
5.5 ASN.1 object identifier for this security block format .3
5.6 Domain of use .3
5.7 Version identifier .3
5.8 Format specification and conformance statement .4
5.8.1 General .4
5.8.2 Encryption .5
5.8.3 Integrity .7
5.8.4 Encryption and integrity .10
5.9 Encoding of abstract values .10
5.10 ASN.1 module for general-purpose security block format .10
6 ASN.1 Security block format: signature only .13
6.1 Security block format owner . 13
6.2 Security block format owner identifier . 13
6.3 Security block format name . 13
6.4 Security block format identifier . 13
6.5 ASN.1 object identifier for this security block format . 13
6.6 Domain of use . 13
6.7 Version identifier . 13
6.8 Format specification and conformance statement . 13
7 XML Security block format: general purpose . 14
7.1 Security block format owner .14
7.2 Security block format owner identifier .14
7.3 Security block format name . .14
7.4 Security block format identifier .14
7.5 ASN.1 object identifier for this security block format .14
7.6 Domain of use .14
7.7 Version identifier .14
7.8 Format specification and conformance statement .14
7.8.1 General .14
7.8.2 Element . 15
7.8.3 Element . 15
7.8.4 Element . 15
7.8.5 Element .16
7.8.6 Encryption and integrity .16
7.8.7 XML schema of the security block .16
Bibliography .18
© ISO/IEC 2025 – All rights reserved
iii
ISO/IEC FDIS 19785-4:2025(en)
Foreword
ISO (the International Organization for Standardization) and IEC (the International Electrotechnical
Commission) form the specialized system for worldwide standardization. National bodies that are
members of ISO or IEC participate in the development of International Standards through technical
committees established by the respective organization to deal with particular fields of technical activity.
ISO and IEC technical committees collaborate in fields of mutual interest. Other international organizations,
governmental and non-governmental, in liaison with ISO and IEC, also take part in the work.
The procedures used to develop this document and those intended for its further maintenance are described
in the ISO/IEC Directives, Part 1. In particular, the different approval criteria needed for the different types
of document should be noted. This document was drafted in accordance with the editorial rules of the ISO/
IEC Directives, Part 2 (see www.iso.org/directives or www.iec.ch/members_experts/refdocs).
ISO and IEC draw attention to the possibility that the implementation of this document may involve the
use of (a) patent(s). ISO and IEC take no position concerning the evidence, validity or applicability of any
claimed patent rights in respect thereof. As of the date of publication of this document, ISO and IEC had not
received notice of (a) patent(s) which may be required to implement this document. However, implementers
are cautioned that this may not represent the latest information, which may be obtained from the patent
database available at www.iso.org/patents and https://patents.iec.ch. ISO and IEC shall not be held
responsible for identifying any or all such patent rights.
Any trade name used in this document is information given for the convenience of users and does not
constitute an endorsement.
For an explanation of the voluntary nature of standards, the meaning of ISO specific terms and expressions
related to conformity assessment, as well as information about ISO's adherence to the World Trade
Organization (WTO) principles in the Technical Barriers to Trade (TBT) see www.iso.org/iso/foreword.html.
In the IEC, see www.iec.ch/understanding-standards.
This document was prepared by Joint Technical Committee ISO/IEC JTC 1, Information technology,
Subcommittee SC 37, Biometrics.
This second edition cancels and replaces the first edition (ISO/IEC 19785-4:2010), which has been technically
revised. It also incorporates the Technical Corrigendum ISO/IEC 19785-4:2010/Cor. 1:2013.
The main changes are as follows:
— the SB formats in ASN.1 were specified in Clauses 5 and 6;
— the SB format for general purpose in XML was newly added as Clause 7;
— formats which were defined in ISO/IEC 19785-4:2010, but are now considered deprecated, have been
listed in the Introduction.
A list
...
Date: 2024-09-09
ISO/IEC DIS FDIS 19785-4.2:2024(en)
ISO/IEC JTC 1/SC 37/WG 2
Secretariat: ANSI
Date: 2025-03-12
Information technology — Common biometric exchange formats
framework — Biometric Exchange Formats Framework —
Part 4:
Security block format specifications
Technologies de l'information — Cadre de formats d'échange biométriques communs — Partie 4:
Spécifications de format de bloc de sécurité
Partie 4: Spécifications de format de bloc de sécurité
FDIS stage
ISO/IEC DISFDIS 19785-4:20242025(en)
© ISO/IEC 2025
All rights reserved. Unless otherwise specified, or required in the context of its implementation, no part of this publication
may be reproduced or utilized otherwise in any form or by any means, electronic or mechanical, including photocopying,
or posting on the internet or an intranet, without prior written permission. Permission can be requested from either ISO
at the address below or ISO’s member body in the country of the requester.
ISO copyright office
CP 401 • Ch. de Blandonnet 8 • CP 401
CH-1214 Vernier, Geneva, Switzerland
Tel.Phone: + 41 22 749 01 11
Fax + 41 22 749 09 47
E-mail: copyright@iso.org
www.iso.org
Website: www.iso.org
Published in Switzerland
© ISO/IEC 2024 2025 – All rights reserved
iii
ISO/IEC DIS FDIS 19785-4.2:2023(E:2025(en)
Contents Page
Foreword . vi
Introduction . viii
1 Scope . 1
2 Normative references . 1
3 Terms and definitions . 2
4 Abbreviated terms . 3
5 ASN.1 Security block format: general purpose. 3
5.1 Security block format owner . 3
5.2 Security block format owner identifier . 3
5.3 Security block format name . 3
5.4 Security block format identifier . 3
5.5 ASN.1 object identifier for this security block format . 3
5.6 Domain of use . 4
5.7 Version identifier . 4
5.8 Format specification and conformance statement . 4
5.9 Encoding of abstract values . 15
5.10 ASN.1 module for general-purpose security block format . 15
6 ASN.1 Security block format: signature only . 20
6.1 Security block format owner . 20
6.2 Security block format owner identifier . 20
6.3 Security block format name . 20
6.4 Security block format identifier . 20
6.5 ASN.1 object identifier for this security block format . 20
6.6 Domain of use . 21
6.7 Version identifier . 21
6.8 Format specification and conformance statement . 21
7 XML Security block format: general purpose . 21
7.1 Security block format owner . 21
7.2 Security block format owner identifier . 21
7.3 Security block format name . 22
7.4 Security block format identifier . 22
7.5 ASN.1 object identifier for this security block format . 22
7.6 Domain of use . 22
7.7 Version identifier . 22
7.8 Format specification and conformance statement . 22
Bibliography . 28
Foreword . v
Introduction . vii
1 Scope . 1
2 Normative references . 1
© ISO/IEC 2023 – All rights reserved
iv
© ISO/IEC 2025 – All rights reserved
iv
ISO/IEC DISFDIS 19785-4:20242025(en)
3 Terms and definitions . 2
4 Abbreviated terms . 3
5 ASN.1 Security block format: general purpose. 3
5.1 Security block format owner . 3
5.2 Security block format owner identifier . 3
5.3 Security block format name . 3
5.4 Security block format identifier . 3
5.5 ASN.1 object identifier for this security block format . 4
5.6 Domain of use . 4
5.7 Version identifier . 4
5.8 Format specification and conformance statement . 4
5.8.1 General . 4
5.8.2 Encryption . 6
5.8.3 Integrity . 7
5.8.4 Encryption and integrity . 11
5.9 Encoding of abstract values . 12
5.10 ASN.1 module for general-purpose security block format . 12
6 ASN.1 Security block format: signature only . 14
6.1 Security block format owner . 14
6.2 Security block format owner identifier . 14
6.3 Security block format name . 14
6.4 Security block format identifier . 14
6.5 ASN.1 object identifier for this security block format . 14
6.6 Domain of use . 14
6.7 Version identifier . 15
6.8 Format specification and conformance statement . 15
7 XML Security block format: general purpose . 15
7.1 Security block format owner . 15
7.2 Security block format owner identifier . 15
7.3 Security block format name . 15
7.4 Security block format identifier . 15
7.5 ASN.1 object identifier for this security block format . 15
7.6 Domain of use . 16
7.7 Version identifier . 16
7.8 Format specification and conformance statement . 16
7.8.1 General . 16
7.8.2 Element . 16
7.8.3 Element . 17
7.8.4 Element . 17
7.8.5 Element . 17
7.8.6 Encryption and integrity . 18
7.8.7 XML schema of the security block . 18
Bibliography . 20
© ISO/IEC 2024 2025 – All rights reserved
v
ISO/IEC DIS FDIS 19785-4.2:2023(E:2025(en)
Foreword
ISO (the International Organization for Standardization) and IEC (the International Electrotechnical
Commission) form the specialized system for worldwide standardization. National bodies that are members
of ISO or IEC participate in the development of International Standards through technical committees
esta
...
Questions, Comments and Discussion
Ask us and Technical Secretary will try to provide an answer. You can facilitate discussion about the standard in here.