ZDNet UK


Skip to Main Content

ZDNet.co.uk - Winner of Best Business Website 2007
  1. Home
  2. News
  3. Blogs
  4. Reviews
  5. Prices
  6. Resources
  7. Community
  8. My ZDNet

 

ZDNet UK RSS Feeds


IT Jobs

Security threats Toolkit

MP: ID card scheme is 'doomed to failure'

Tom Espiner ZDNet.co.uk

Published: 15 Jan 2007 13:36 GMT

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

The UK government's ID cards scheme has attracted heavy criticism from a senior Liberal Democrat MP, following the publication last month of an official report into a pilot biometrics programme.

Nick Clegg MP, the Liberal Democrat Shadow Home Secretary, said that the official study on trials of iris-recognition equipment at airports had highlighted major failures in the technology. Clegg warned that this is further evidence that the ID cards scheme is "doomed to failure".

"Yet again the government has tried to bury another piece of bad news about its doomed identity cards project," Clegg told eGov Monitor.

Liberal Democrat Home Affairs advisor Polly MacKenzie claimed the government tried to bury the report by bringing it out during the Christmas slow-down, and depositing it straight into the House of Commons library without telling anyone it had been published.

The Liberal Democrats maintain that the study, entitled "Project IRIS Pilot Review Report", shows serious problems with the proposed ID cards scheme, which will rely on biometric identification.

"With each successive announcement it becomes more obvious that the technology simply isn't good enough to sustain such an expensive, illiberal and unnecessary scheme," said Clegg.

Problems experienced during the iris-recognition pilot included:

  • extension of the pilot due to problems with the usability of the iris recognition barrier,
  • insufficient passengers being enrolled to prove the pilot, due to enrolment room closure,
  • and the pilot being further extended due to system instability.

However, the Home Office said that the pilot scheme had been a success.

"This is a fundamental misunderstanding of the report," said a Home Office spokesperson. "There were teething problems at the beginning but now the technology works perfectly well."

At this stage, it's not clear which biometric data will be used by the ID card scheme. The Home Office told ZDNet UK on Friday that the government does not plan to include iris recognition in the initial scheme. This is because it builds on the existing introduction of biometric passports and biometric immigration documents, and there are no plans to include iris recognition in passports.

"It certainly does not mean the iris biometric has been 'ruled out'," said a Home Office spokesperson.

But critics at No2ID, the anti-ID card pressure group, have accused the government of reducing the role of iris recognition following the publication of the iris-recognition pilot study. According to No2ID, the government initially trumpeted iris recognition as being one of the more secure biometrics, but only included two short references to iris recognition in its Strategic Plan for the National Identity Scheme, published in December 2006.

A dirty database?
As well as the alleged poor performance of biometrics technology, the Liberal Democrats have numerous other concerns regarding the technology behind the ID Cards scheme.

One is the government's decision to use three existing databases — those of the Department of Work and Pensions (DWP), the Identity and Passport Service and the Immigration and Nationality Directorate (IND) — to store people's biometric and biographic information on the proposed National Identity Register, instead of one new, clean database, according to the Liberal Democrats' MacKenzie.

"The advantage of a new database is that it's clean," MacKenzie told ZDNet UK. "If the government plans to use existing databases, they're not clean — they're full of errors and fraudulent details. Plus, organised criminals are good at planting people to steal data from government departments, as happened at the Department of Work and Pensions."

However, the Home Office said that although existing databases would be used to store the ID card data, the data collected would be fresh.

"We won't be using the information already on the systems," said the Home Office spokesperson. "In effect we'll still be using a clean database because we're creating it from scratch. It's like renting shelf space in a filing cabinet. We'll have our own shelf and key, and will generate [information assurance] to our own standards."

However, Phil Booth, national coordinator of the No2ID campaign, said that the Home Office explanation of how it would use the databases differed from previous Home Office explanations.

"That's bollocks," said Booth. "The filing cabinet is a fine analogy but what the Home Office has said in essence is that rather than use a new clean database they're going to tag personal details at the individual field of data level. Each field of data will be identified as part of the National Identity Register, then role-based access will be applied to each field of data, because these databases are in use by a variety of staff. In theory, a person will only be able to access data appropriate to them. However, we're talking a dramatically more complex system than setting up a new database, leading to many more possible routes to failure. For example, there is the possibility of misfiling or tag mis-selection leading to inappropriate access."

  • Email
  • Trackback
  • Clip Link
  • Print friendly Print with HP

Did you find this article useful?
21 out of 21 people found this useful


Full Talkback thread

0 comments


Company/Topic Alerts

Create a new alert from the list below:



Related Jobs

Test Lead - Pensions experience required

My client is looking for a Test Analyst with strong Pensions (ideally final salary pensions experience). You will understand the technical aspects of ...

Test Analyst - Life and Pensions - APPLY HERE!

Are you a Test Analyst wanting to be put forward for a long contract with a life and pensions client? I am working very closely with my life and ...

S53700: Pensions Team Lead

Pensions Team Lead Chesterfield 25,000 - 29,000 If you join Accenture you can make great ideas happen for some of the world's most dynamic companies. ...

Sentry Posts Blog

Mobile Linux Better For Mobile Busines...

Mobile Linux Better For Mobile Business Apps? Author: Eric Everson, MyMobiSafe.com As mobile Linux is carving it’s footprint on the future of mobile application development, the... More

Post a comment

DWP downplays security breach

The Department for Work and Pensions (DWP) has admitted that some of its staff have been forwarding passwords with password protected material. An email that was leaked on the 'Dizzy... More

Post a comment

How many headshots does one chairperso...

We got a strange request last week from the head of PR from Russian security experts Kaspersky. It seems although the company was very happy with the interview we recently carried with... More

Post a comment

Featured Talkback

On the contrary, if vendors were forced to stand behind their products it should increase innovation. It would force more, and better , testing before hitting the sales floor, resulting in fewer updates and less downtime for the consumer. At present the EULA removes responsibility from the vendor, and moves it to the user, which is a step backward. Make the vendor responsibility for their code.

By: ator1940

Read full story:
RSA: Vendor liability may stifle innovation