Authentication - Verification of Authenticator Satisfaction of Biometric Sensor and Performance Requirements, v1.0

All biometric sensors and processes used as part of an authenticator must meet performance requirements specified in NIST 800-63-3

Assessment Step

1
Biometric Compliance (BiometricCompliance)
Do all biometric sensors and biometric processing used as part of the authentication scheme adhere to the a href="https://pages.nist.gov/800-63-3/sp800-63b.html#biometric_use">Biometric Requirements in NIST 800-63-3? Note that this is a requirement for AAL3 and recommended for AAL2.
Artifact
A1
Provide evidence (e.g. policies, operational details) that the use of biometrics within the authentication scheme adheres to all NIST requirements.

Conformance Criteria (1)

C1
When a biometric factor is used in authentication at AAL3 (or optionally at AAL2), the verifier SHALL make a determination that the biometric sensor and subsequent processing meet the performance requirements stated in Biometric Requirements in NIST 800-63-3.
Citation
NIST SP 800-63B
Section 4.3.2, Paragraph 7 and Section 4.2.2, Paragraph 5