Smartcards: Hot to Put them to Use in a User-Centric System

  • Authors:
  • Tage Stabell-Kulø

  • Affiliations:
  • -

  • Venue:
  • HUC '00 Proceedings of the 2nd international symposium on Handheld and Ubiquitous Computing
  • Year:
  • 2000

Quantified Score

Hi-index 0.00

Visualization

Abstract

Unlike many other classes of hardware, smartcards do not have the ability to communicate securely with the user. Deprived of means to keep the owner informed, the positive properties of smartcards are difficult to utilize. We explore the area at the border between smartcards and other, more powerful (and thus more useful), machines. On the other side of this border we find the Personal Digital Assistant (PDA). In our view, to be useful as an extension of the users' private sphere, a machine must at least have enough functionality and resources to create trustworthy digital signatures (to speak for the user, as it were). A less resourceful machine can merely act as a memory prothesis, helping the owner remembering addresses and phone numbers. Smartcards are designed to be tamper resistant, and as such they seem ideal as a minimal machine. However, trustworthy digital signatures can not be created by smartcards alone, simply because the user does not know what is given to the card for signing. In order to be trusted--that is, being able to make trustworthy digital signatures--a smartcard must be supported by some infrastructure outside the card proper. We explore what must be included in such an infrastructure, and demonstrate that trustworthy digital signatures can in fact be made using a standard smartcard. We argue that based on this fact, nontrivial distributed systems can be constructed by utilizing smartcards; a nontrivial system is one where holders of smartcards are "first class citizens". Asserting that a smartcard can act as a trusted machine gives new opportunities for designers of user-centric systems. Assuming that smartcards are here to stay, finding ways to apply them in constructive manners is prudent.