In this paper, we formulate precisely the requirements for privacy protecting biometric authentication systems. The secrecy capacity C_s is investigated for the discrete and the continuous case. We present, furthermore, a general algorithm that meets the requirements and achieves C_s as well as C_(id) (the identification capacity). Finally, we present some practical constructions of the general algorithm and analyze their properties.
展开▼