Download as pdf or txt
Download as pdf or txt
You are on page 1of 17

F. No.

HQ-13021/l/2021-Auth-t He
Government of India
Ministry of Electronics & lnformation Technology
Unique Identification Authority of India (UIDAI)
Authentication and Verifi cation Division
Third Floor, UIDAI Headquafters,
Bangla Sahib Road, Behind Kali Mandir,
Gole Market, New Delhi- I 10001
Date: ]ft41.2023

To

All AUA/KUAs/ASAs

Sub: Phase out of existing fingerprint L0 Registered Devices from Aadhaar authentication
ecosystem.

Dear Partners,

Please refer: (i) UIDAI letterNo. HQ-13021/l 12021-Auth-t HQ dated 25.04.2022and 3l .05.2022
(ii) LetterNo. HQ-130231t12020-Auth-l HQ/2084 dated 20.06.2022 and23.12.2022
(i i i ) Letter No. He- 1 3029 I I t2021 -Auth-t-He dated 23.1 2.2022

In order to enhance the security levels of finger print based authentication transaction, UIDAI
takes several security measures from time to time to ensure security of authentication
transactions and end
to end encryption during the authentication process. In this regard, fingerprint devices being used
in
Aadhaar authentication ecosystem have been upgraded from the currently used fingerprint
L0 RD to the
next generation fingerprint Ll RD. First batch of devices have already been certified on 30.10.2022
(website link:
devices.html). The key features of fingerprint Ll Registered Devices (RD) were communicated in details
vide letters at reference (i) to all authentication ecosystem paftners and also during various
Central/State
government level workshops organised by UIDAI since notification.

Roll out of fingerprint Ll RD

Since at present all fingerprint devices in the authentication ecosystem are ofL0 standards, the fingerprint
biometric authentication transactions shall for the time being continue both in L0 RD
and Ll RD.
However, to avoid any disruptions in the system, all the existing deployed fingerprint
L0 RD would be
phased out of the authentication ecosystem in a gradual manner. To provide sufficient period for this
transition, it has been decided that use of all the existing fingerprint L0 RD will
be discontinued by
30'06.2024 and thereafter only fingerprint Ll RD will be allowed to perform
Aadhaar based
authentications. Therefore, all AUA/KUAs may like to procure fingerprint Ll RD for use in their
authentication ecosystem.
3. Phase out of fineerPrint L0 RD

(a)UIDAIvidelettersNo.HQ-l3o23l1l2ozo-Auth.IHQ/2084dated20'06.2022and23)2.2002has
issued directions to all AUA/KUAs regarding removal
of old and deployed L0 RD' The devices whose
have
which there were nil or fewer transactions reported
STQC certification has not been renewed and on
reporting higher authentication transactions would
already been hot listed w.e.f 01.01.2023. The devices
be hot listed on 31.03.2024.

(b)UIDAIvideletterNo.HQ-|3o2gl|l2o2l.Auth-I.HQdated23,12.2022hasalsoaskedall
low authentication success rate (below 30%) or
AUA/KUA to identify the L0 registered devices having
such devices from the authentication ecosystem
in a
are more than five years old vintage and to remove
phased manner.

(c)TimelinesforphaseoutoffingerprintL0Registereddevicesareasfollows:

Rott out PIan of fingerPrint Ll


compliant Registered Device

n$rprtnt-m-O dePloYed be @claration,that


1.12.2014 ngerprint L0 RD dePloYed are of be

1.12.2014

@declaration, that
ngerp-no dePloYed be
of
int L0 RD dePloYed are be
1.12.2016
1.12.2016

that
3U1212023 lnge.print t-O nP dePloYed @declaration,
31.12.2019 ingerprint L0 RD dePloYed are of
1.12.2019

of fingerprint L0 RD ;uthentication transaction will be

fingerprint L0 RD

Iris L0 RD will continue to function as


4. As the iris devices are relatively more secure, all the
present.

5. This issues with the approval of competent authority'

eev Yadav)
-Director
(Auth-1)

Copy for information to:


'i. All Secretaries of Government of India Ministries/ Departments
2.. All Chief Secretaries of States/UT
3. DG, STQC
4.AllDDGs,UIDAI(HeadQuarters,TechCentre'Regionaloffices)
94/96
HQ-13021/1/2021-AUTH-I HQ
79650/2022/AUTH-I-HQ

F. No. HQ-13021111202I-AUTH-I HQ
Government of India
Ministry of lllcctronics & Information 'fechnology
L-lnique Idcntification Authority India (UIDAI)
o1'

Authentication Division

UIDAI Headquarters, Third Floor,


Bangla Saheb Road, Behind Kali Mandir.
Gole Market. New Delhi -- I10001
Date: 15 .04.2022

Tot
All AUA/KUAs, ASAs, Iliometric Device Vendors in Aadlaar Authentication Ecosystem

Sub: tJpgrade of existing L0 l'ingerprint Authentication Registered Devices to Ll


Compliant Fingerprint Authentication Registered Devices in Aadhaar Authentication
Ecosystem.

Dear Partners. t.
UIDAI is committed towards providing the highest quality of service in an

efficient and secured manner. To enhance the security levels, UIDAI has taken several
security measures to ensdre security of transactions and end to end traceability during the
authentication process. To make it more robust and secure, TJIDAI along with biometric
device vendors, STQC and C-DAC has worked on upgrade fiom existing I-0 compliant
Fingerprint Registered Devices to launch of Ll compliant F-ingerprint Authentication
Registered Devices in the Aadhaar Authentication Ecosystem.

2. The key features of Ll compliant Fingerprint Authentication Registered Devices are:

a) Device security with I-evel I con-rpliance of the signing and encryption of


biometric is implemcnted within the'frusted Execution Environment (TEE) where
host OS processes or host OS users do not have any mechanism to obtain the
private key or inject biometrics. In this case, management of private keys needs to
be fully within the TIIE:

X1
95/96
HQ-13021/1/2021-AUTH-I HQ
79650/2022/AUTH-I-HQ

in line with the key objectives of the UIDAI RD


Service
b) Secure system design
specifi cation (latest version)'

with RD Servtce
c) Implementation of RD Service and Management client in line
Specifi cation (latest version)'

d) AdditionallrngerprintlivenesscheckwithFIR-FMRSinglePIDblock
implementation.

provided by the biometric device


e) A standardized and certihed device driver
vendors. This device driver (exposed via
an SDl(/Service) encapsulates the
capture (such as preview)' and
biometric capture, any user experience while
The device driver must form the encrypted
signing and encryption all within TL,E,.
PID block before returning to the host application'

registered device are available tn the


0 The detailed specifications for L1 compliant
Technical Specification version 2.0
document "Aadhaar Registered Devices -
(Revision 7) January 2022" (attached as annexure)'

g)AllthedetailswithregardstoAadhaarAuthenticationAPlfbrLL+cornrp.liant
registereddevicesareavailablein..AadhaarauthenticationAPlspecification-
version2.5(Revision-1)January-2022,,(atlachedasannexure)'

Apl specifications are also revised and updated


to support Ll registered
3. The
device authentications. AUA/KUA',s
Authentication applications will also require
fingerprint
registered device sDK' Document
minor modifications to support the Ll compliant
,.Aadhaar authentication ApI specification - version 2.5 (Revision-l) January-2022"

may be referred for details'

all partner entities also need to be sensitized


as
4. The application development teams of
with
and backend servers to make it compatible
changes may be required in the application
Fingerprint Devices and.,Aadhaar Authentication Apr - version 2.5 (Revision-
L1 Registered
be tested thoroughly'
1) January-2022- and would need to
96/96
HQ-13021/1/2021-AUTH-I HQ
79650/2022/AUTH-I-HQ

5. A number of device vendors are ready with Ll RD device certification, UIDAI will
be launching Ll RD devices shortly. However, L0 RD Fingerprint and IRIS authentication
devices will continue to function as same and separate notification will be issued for L0 RD
authentication devices.

6. This issues with thc approval of compctent authority.

eev Yadav)
Director (Auth-l )
t,

Copy for information to:


I.CEO, UIDAI
2. DG, STQC
3. Sh. Rupinder Singh, DDG (Authentication Division, He UIDAI)
4. Sh. Anup Kumar, DDG (Tech Centre, UIDAI)
\ .i.&. fr,
t-_
F. No. HQ-13021/llzl2l-AUTH-l HQ
$TT(I[ ITCfi'r(

rrrcfi=q ftlers q{{r{ Trftfiwr twrl$wrqt


larfuwrum GlTr{r)

Xqr€fiqqr€ Tq{rcl $FH, ffi {frq,


EiT-dr wtq ng, 6.rfi {ft-( + fr&,
rfrf, {r+-c, T{ ffi- 11ooo1.

ftTi-d'31 .05.2022

To

All AUA/KUAs, ASAs, Biometric Device Vendors in Aadhaar Authentication Ecosystem

Sub: Upgrade of existing L,0 Fingerprint Authentication Registered Devices to Ll


Compliant Fingerprint Authentication Registered Devices in Aadhaar Authentication
Ecosystem

Dear Partners,
Please refer UIDAI Letter HQ-13021/112021-Auth-l HQ dated 25.04.2022.
UIDAI along with biometric device vendors, STQC, and, C-DAC has worked on upgrade
from existing L0 compliant Fingerprint Registered Devices to launch of Ll compliant

Fingerprint Authentication Registered Devices in the Aadhaar Authentication Ecosystem.


2. The key features of I-1 compliant Fingerprint Authentication Registered Devices are:

a) Device security with Level 1 compliance of the signing and encryption of


biometric is implemented within the Trusted Execution Environment (TEE) where
host OS processes or host OS users do not have any mechanism to obtain the
private key or inject biometrics. In this case, management of private keys needs to
be fully within the TEE.
b) Secure system design in line with the key objectives of the UIDAI RD Service
specification (latest version).
c) Implementation of RD Service and Management Client in line with RD Service

Specifi cation (latest version).

d) Additional fingerprint liveness check with FMR-FIR Single PID block


implementation. All the I-1 registered devices will be rolled out in FMR+FIR
Single PID block capture capability only.
e) A standardized and certified device driver provided by the biometric device
vendors. This device driver (exposed via an SDK/Service) encapsulates the
biometric capture, any user experience while capture (such as preview), and
signing and encryption all within TEE. The device driver must form the encrypted
PID block before returning to the host application.
The detailed specifications for Ll compliant registered device are available in the
document "Aadhaar Registered Devices - Technical Specification Version 2.0
(Revision 7) January 2022" (attached as annexure).

s) All the details with regards to Aadhaar Authentication API for Ll compliant
registered devices are available in "Aadhaar authentication API specification -
version 2.5 (Revision-l) January-2022" (attached as annexure).

3. The use of L0 devices will be discontinued over a period of time and therefore all
future procurement of fingerprint authentication devices may preferably be done as per Ll
compliant specifications and guidelines.

4. It is hereby clarified that currently authentication shall continue both in L0 and Ll


& deployed L0 devices (where public device certificates issued
devices, however, all the old
by STQC have expired and have not been renewed) need to be phased out of the
authentication ecosystem. Directions for old & deployed L0 devices as well as final sunset
date of L0 devices are being issued separately.

5. AUA/KUA's will also require modification in their authentication application as well


as backend servers to support the Ll compliant registered devices. Therefore, it is suggested
that the respective AUA/KUA/ASA's technical teams should be ready for upgrade to the
latest Ll registered device specifications. The revised RD and API specifications have
already been circulated vide this office letter 11020119812017-UIDAI (Auth-l)/l dt
14.01.2022. The same are attached for readv reference.

This issues with the approval of competent authority.

Yadav)
(Auth-1)

Copy for information to:


l.DG, STQC
2. Sh. Anup Kumar, DDG (Tech Centre, UIDAI)

2
1 38/1 38
HQ-l3Os4 /s /?O?2-AUTH-| HQ
9618s / 20?2/AUTH-l-HQ

F. No. I{Q-l "l0li/l/2020-At l.l'l.|-l }lQi1084


x{r{fr Tf{-s-R
{*fiitaff qa qa-{T ffiffi ri?Tnq
qrdlq ftfQtu rjoqrq nTf{rfilr lqqn{dq*n-{i
o&r&&qm Besq
qir-*$q;r{ {qqrdq HrR, *trS qfkf,,
oi,ror wrlq {ts, mT-d rikt &' dl$,
rim qr&", T{ ffi- I I i_ri-ic l

"l'o
feqrff": ;-* .00:o::

Alli\t.]ArKIJi\s and ail I)uvicc vgrdnrr

Sub: llemor,ul ol' oltl nntl tltpllovcd devices from Aulhcnticatiou erlo$ystem for
strengthrning a uthentieation sccu ritl'
l)car []adners.
Pleascrel'er: (i)tllDAl ltttcrNn. li(lrl"ir{)2/:0ll-Auth-l-llQrlated i1.05.:02:
Your etttilv ltits hecrt itplroirttell ns an AtlAlKtlA hl'tlll)AI lirr availirrg thc Aaclhrar
atrtltcntictttion lucilit-r. lirr nr"rllrr:nticutitlrr ol'tlrc rcsidcnts usinlt thc atrthrrrrticllion l-{) dcviccs
([:ingr:r'l)rint and lris) t:r"rltillqd hv 5 lQ(]i t.llDAl.
l. tllDAl vicl: its li:ltcr i1.05.:0:2 ltas issucd an aclvisory to all autlrcntication ecosvstcrn
Fat'tltrrs r*gardirrg strcrtulltcninq ol'hirimclric authonticnli()n securitv hv rvhich AtlAiK[-]As rvere

irtttr aliii askrd lr er'lsurc rlcplor.iril-i r.lc*'ires sLrpportins thc larcst OS Spccillcation {Wirrdorvs
l{)iAndrniclOS l0 irncl ahnr,c).
3. As per Aadhaar (Authcntication nnrj Ot'lline Veril'icatii:rnl Rcgulations- 2021. Rcgrtlatioris
no. l4 {d) reclur:stirtg crttitv is rcrlLrircd lo crnplov onlv those devices. cquiprrrcnt. or sotlrvarc"
ivhich arc riulv rcgistcrr":d rlitlr or approvrtl or certilled trv thc authoritv lilr this pllrpose arrd irrr:
itt accorrlancc uith tht stertdorr.ls urrd spccilicatiorr laicl clo*rr Lr1 thc luthoritr,. l.{<:rrvcvcr. it lras

bcctt rtotecl thitt surnc ol"thc i\tiAs,1l..llAs have still dcplol'cd ccrlain authcnticalion dcviccs
rvhose dr.'vicc ccrtillr:atr:s issLrccl br.SI'Q(. havc r:xpircd and havc no{ bccn r*ncwcd/recertitlcd
h-vthc dcvite mtnLrl:tctrrrcr. l.isl ol'such d.:r,iccs is attnchccl {'or reiidl,rclct'r.:nrc.
-1. 'l'lrcreli:rre" \'uu ort rccprcstcti to iti*ntil'r,nrd plrasr: oul such riqviccs in tinr* bouncl ntlr')lrcr
rlnd it rlal'be noted tlrat sun,iccs ril'such dcvirrs llrr:rr:aficr rvill lrc stoppccl liom 31.12.20]2 and

nn authenticatiorr rvill bc pcrnritted on lhcsc r"lcl'iucs.


-['his
isstrc-q rvit]i thr: irppror,tl tr{'cilrrrpctr.rrt autlruritt,. , _l
1il"
'dfl
tiafticcr Yatlar )
Director (Aurh- t . llQ Ut n,qt t
(lopv lbr irr{irrnraliorr to:
t.
lxi, s't'Q(l
2. l)D(i f 'l eclr ('cntre . LIll),\ I)
to
3
? @
Or ul 5 (l)
z
I \
@
N
o
e_i
co FP
N

I
o i.
Y6'
tp q
o
@
f. I
o
o>
Ht

.ic
..o) 63
-o oJ
m
a o
s.
f)
o
o-l
InI
3. <:L o,
t+ -o cr m I

=. (D
d o H
--{
rD
o
l+O
o_6 Io
o
o
CL
o
U*
=
f,
o
o-
(D =
f
:
o
o
:, g o
I-
E. o =
o,
:, o
o =
o
OJ
ts.
o c H

fo- o'
, -t, 0,

o
r
:-i

-+
tr
o r
o

P g
|d o
s@ {g K=P h€ o m o 3SP td
<N
=.N
:.N
+N
{ro ; sf ;q<l
q<1 +3
-o
zg :-+-
q:i'
o
-E
!'i o
\=
x9
S=
(4
o; 1 tsr.
P
o
o
o
o
6
93 0
o
o
U
i.e
.,x
uE'
i.o
.e E' :-.! -E
ex
D
a
o
o
o s.
(a
o Di.
Bct
hI
3P
=0)
(Qf
oo =6
rn! <;
Fl -'l
P
b
r\
o
o i,'d
o
;a
9p ia
s'p
(!

B
i!
3 =Ta
co
NJ o
=
g
CL
o
o
s6
=' rd
(a z rl
Q Q
Uo. -
re
o o
?- E? !- t
fD
a!9
i :
qJ

o
p
c
o()
\i. S. o
a)
HE(, ?
o
og.o
ETI 9
I;
T A)

fl
0a
fl
oq
ll
oa
o
fl
oa
fl
:,
oa
f
,!2
o=
-O
t,6-
r tFrx
E -}
(
t\)
o
P5.H
o o o
io o =
E
f,. =. o, S
=.
f f :f -1.
f =.
J \,< tFtSN)
r+
t
t ;>s
5'F
BE
;
q
+
FF}? = t
0 o!rHP
-9 -E -u I s -\l
o
s. Ub
9t
I
r..l
o o o o 6
o
6
o
o o \H.
o rD
E
5' i+
o E<
ao
d l{t
::: -; :: g-= O-
J
o_
=:
:, l
o-
5
EiSi >€
+a
5m
c:
xJ tt
rE
o or
9. 9. 9.
o_
9.
lga
o-oo
oo;' oo o
o_ qs t'cL
A -1.
o_ o_ o- o_ o-€
<o--
:(o
o_
o
o_
Aa
0a
Ep
r
I2.
(x !
(Dg
(D
ia-
=
-.?
N
l,P ro !
b
o
;6 NJ
iv
!n NJ
i! g
xw
N)
or- o o o.
o-o N
o P
!
NJ
NJ
:,

(,
(,
(,
@
@
cf)

v
CO

o
C C
.: qE N
N
o PP N
!'6 o N
o *o N N
oJO ..i 0ro o o
=o N 6l c!
(J
'-u N
q +
q
.;L
;a
:c sl
q
ioJ ::oJ
o
o,
u-o l--
o ro
u-o (,)
N
(o
.c .c
.o .9
o c]

EO
.gF p -oo ] -o i
Eg o
3
o
3
o =o
E
'o '6--o 'o
-(f
'= -B o
t; E
c
-o
c ro E
L;C
:c:>
-o !
9E E
o C

:=
; c c
:=
a:i :
c c
5=
= =E:= = =
=

o
CL
F g 0) I o
c)
OJ
g OJ

o
0)

o o -o
o -o -o o !
o o I
OJ

I
I 'to F
(!
F F
G
F
lo a- .9
o
o-
i5
.9
o
o
I

I
F
:)
I
f\l >\. c c tr g
.C c c
AJ 'f 'a
o (!'i o_ o_ o- o
(v t, cL OJ OJ o) OJ qJ 0.) o
OL o0 bo 00 oo bo oo
<0,
<oo c c c .g c
DO
c c
ln i! iI iI L iI i! iI
L
+
r.6
o
ro
; o N
o
I E
o
(u
cqJ o-
L!

z .s
a OJ
ol
co
o
o o\ o o o
o)
^o- C)E sQr o r)
EI
o Eb
Fl Ol
O0J ro6
v1{lq
AJ N
tu o 3b
Oq
F
U
co.s lq !\$c
.\ N rng sc
o L-O HcO o NO <AJ
.9
co\
<r/) ccn o-u sfU >E:
o
!)
_q
EP
-oF
=e
Eq
€n
=;x
Ec'i
o-i Q-
,IN
mki
<Lu
N^
NY
U
C)
O
>>.
d.4 6
oaJc
ootr
:3$
rO
=
S
d
C)
o
c, €
0., o< Uc 9. Ic 5s N
o [.ts
o€q o^tu u c{
r3
,t 0J
IS
.t q).t:,
u St o':
os >iH3 LJ
-ci
c>u ;;s. d.
U
F
o
(,)

1' J J
J
o n P n
5 o- o-
o-
u TJ
(! ) .oJ
,o
.=
.g
rc
odj
<i
n b!
c(u
o-
o
o
f
I
;
.9 .u5
c c,
c c6-
.g
E o
o 9-
o o
E s(u qJ
F .! I
!L

I tr
o
-6 .gD
o
o
U
-E€
U6
I f
o .: o.9
I

I G.|
o) .q0
o :o E
o
oc
!l
F 't
I
! :z
G
E
o
o OJ:
l o .P c fotr
o o o (,o) c >8
qQ)
N
N
o z. t-
N
zC, 6 ol o
F{
F{
F{ H
m
d
rf rn
i{
ro
d Fl
@
G
ol
@
CO

tr)
(o

N
N
d
c{
Oi d
N
o
N
rl
c!
Eo o
..{
o
.! o
c!
o
c!
o
c!
o
..j
@ Ol rn ro
(J cO) cr.. e q d q
CI N N
d N d
N
fn
o-

c!
cc 3 *;
-;5€
OJ
-o !o
Eg 3 3 E
'o 3o -B
-Y6
;€
o ! o-(J ei
E; E OJ
-o
E
c
c
LC

E3= E -E .= E.:
c>
o ; trl
UC ; :=a:= €3 €ts
- t= = ==
o
CL qJ 0) OJ OJ o o) 0)
F o qJ o @ o, o (u OJ
o !(o
o
I
o
.u
i5
o
.9
o i-
o 0
i5 F
U
.4
o
I
.2
o
I
.9
o
o
o
I

I
F
l
I
GJ >\ c E c ,-C c
.C c
.C C E
'tr
AI o
o o'E o
to
o_ o- o- o_ o_
(\ O!
OJ
bo
o
oo
0.J
o!
OJ
oo
o
bo
o)
DO
o
bo
OJ
oo
<(l, C C .s
c.d ir ir 'lI .E
u
rn c iI i.r iI L

r
+
rn
o
rn
; .tr c;

o
I
q,
E
G
E
trr
LJ
U
z QB
o JO
'c,
tsub
o
Pste
A.)

o tU

{u
.c
o a6:EH
ln
) d:d
l
trb6:
(/)^:'=!

(u
$ -qi
6tr;
rn
o ? o r! dEq o E,
C.\ \ Q.
o o o r-i t4 t d N o
OJ

G &s E 3 an o
co co
rf)
@ r;.t\ o
(J u N
:z
J
=
(Jst^E o- 6- z 6S{ F
E
J J
0, ; P i J
: d d o- J
;
!
I
.! !
.(o ) ro
) o-

,c c n E
o
o-
P
.g
E
o I a-
U
c d- s
o .9 U
.9
= OJ
oo u (o E
o E o .o o o) o,
o !, .9 o
c o
c
c E
-l tr
o
co
-c
I o0
E
OJ .9
.o
co
I .9 o C co o
o F f
:E
F .9 'o o -o
I
c
't
J I
0,)
f OJ
o E F
oo o d
(o
F
(o :z
N
N
N
o
N
zo @
rl
or
rl
o d (Y! sl
N
rn lO
@ vt
\o
Ol
ro
o) (/t UJ
5
gJ
ol u) l*l ?
I
ts o (I' oo
00 2
I N
o
5
t<
I

I\
,!
tu
o z I> o
oa
qt m x--tm I-o
l*
o
s.
c
-l
l-
o g lo o I
6'
ll
lo T
I

I
o
Vt
o
v\
-sf o
ad li
IO
lo
o
CL
o
T
a
o -:. lr
o
3 3
Ob .f,
o 3l
ol
! o o-
qa ll
! c trI
o' 0,
r o' 6l I

r l -o
I I cl
!l
fo- l+ ol
d' I
l_ ro
I
I

li
Io I
lm
l-z o IJ
C
o
T
c l< =E I =3
da ld
r
l=j tn lJl z z
o
o

a
o o
f
a\16
t^lo
al* IF IE;lQt 9: lB{
Ee' ;-
@
UJ
@
(x a'
o
a' l=-J(!l o o
5
ut T
Nl@
olo
olo =l 13< f< 5< NJ
(^) N
(! ol
o
o @
ls 9o 3o O U. c c cLl
ol
ol
00
--{
ul I or)
o@ o
oEof'') 9i!
f^ c C zl
ol x<m 0 C) 0, I
I
rh
N)
m
NJ
3t
al o
I
(,
I o
lJl
T l!
J
fl
f,
Tl
ft f f fI +
0a
o oa
o o
f,
oa 0q
o
f,
oq
f
o
f,
oa
:f
oa
Tl
f
T
= B< Lrr
o 0q
E
:_:.
f
:1.
::
o
:--.
!
=.
E
_-,
f
rD
E
o
E
f.
0q
rD
E
i8.
-" !J
f\.,
o
-1.
f :l f
j-. l\)
f, \. .< t\)
I

I
=.
C
-{
a a a a
-I
6',
o 6
o 6', 6' I s
o
o
o o 6
-0 -tr -o o T
(D
o o s.
o
rD
o
o
o
o
o
o
(D
(t o o
o
6'
o
o
6
o
{
o
o o t,o

s =: :i J

€> 5=a' =:>;


=: =:
--:P
+ -:
=; +a
>?'
\-=; E-.
e&80. =
o-
f f
= d.+ =:-f,
J=o f, oJ >::> -- =:
€>
o-.o-
o=:-.
o oo !lxY. (,ci
^.o-:'
-f
a- f
= d?=5': o=
oo o-f
#E"
€ € €d to- 9.
o- € Po.i90.
== oo dE
-o- ; o- €d gq

N
p F
I o N o
o o :
!
!o : : o
iv IN NJ
o
N o
!
A :
NJ

o
N
:J
!
o
r)
o o iu ie i!
N N @ o
NJ o o iu
o ie iu ts
N) IW NJ
N)
NJ
N
N] tv o
NJ o N
o
o,
N N) rv NJ
NJ s

(,
O)

O)
@
@
cf)

r\
(r)

.:
p
N
N
N
N
N
N
N
N
N N
N
N
N
o
.! o
.! o
c]
o
.!
r'.1
O O
q o
.!
t!
:q c.l N
n
N N
t, cF\ q q q q
o Ol
o cl) l-. r- Ol r\
o- N N o N o

!!
E 1f
o
E' E
'O'-
E
= !o'olF
cc E
0.J

TX
(U
!zX
0)
!
o,
E
!X
OJ
.o
EX
'o3E G\
frE cJf, dr.E E=
oJ
EX
oJ OJ OJ *o: :o5
i
t;
o U
E= -o
U
EJ
i.C
u
EJ
!.C
u
EJ
OC
E:
U
!.C
EJ
U
&-EP
:=5
a€e
=5
o
=
:= := ;=
= E
=
tl.
AJ

F-
V1
o
CL q) L
OJ
F rJ) o o t\
o o o o o o
o o
',
U 6- o- a_ a- L a_
U
.9
o
I
.9
o
F
- o
o
L
0J
L
T !
I
F
f G
I

(\
C\J >\ .C .C c C
'tr 'tr
c c .C \a
L'
o
N
(!'i
!o
o_
q,
o_
!
OJ o, qJ
o_
o) 0l
o
OJ
o_
o
\o
OL u0 oo oo oo 60 oo u0 bD
<0J .g .c .= .E .q .c S
rn thl I u iI u iI r
c L I a)
U
L
{'
ljt
a)

o o + ,:.i
ro
oh .c
cl
>b ox {x
o;
d
6a
o
E
aO
Eo-
VI;
>E ;8-
_.!n

Xrn .=il >5 th


U
-o !
- (E Eq xFo
O
Bo E6 -C. 6 u N
z =Ps
auc
n>g x>g Ig
;!:
3.8 ;3 xuc xa
X-
.?u
3.E
PC U
o
V.t
9U
o
1'
o d*i r3: rlo
!'l L
r{o L
dc
o
rn o
m ': lu

isi dp k!!.= ng. "'l,-(l,


< :!. '0
6P :(U os
o psu ts-
<: JF 63 o.
Ji;
o o 4,9
sb
Efrg $nl RDE.E 9u $nt ooo U AP
o
a
';d.=
>P- .9>
.96
;e* oco> .9>
EU
.:!
o
C'
'60
CU
co :e
PC
:
()
tr .:.9
^.
$.q2
A)
>(J ou >(J
c
a sa
VUL

! \E
YP

s,
\*uu

J LvqJAJ
c.l

ro
88.!a
U
(u
CL
) s()ior
h q.dx !
, E PE e H
c
o
OJ

0)
o-
.s
U
tq;
E.,!:=
$
o E
o
c
E
F (o d.QEi
.tclS!
I o =o E
I G=.: >
I o
u
:c3 {S
a{<q
S-d!'L
GrO
F
l
'5 ) $i!\
o
o bEgg
EEEE
N
N
o
bIC=
'< gPd
N o ..tsFi
z @
(n o) o
sl
F{ N
st
m
a t$ S,atas
.o
Z D:=':=
oo
G
a^
-5
Or
Urgent / Immediate Action

lr No. tlQ- l3}23l 12020-AUTll-l llQ/2084


1
' Covernment of lndia
Ministry of Electronics & Information Technology
LJnique Identification Authority of lndia (UIDAI)
Authentication Division

IDAI I'leadquarters,'l'hird l'-loor,


L.J

Bangla Sahib Road. Behind Kali Mandir.


Gole Market. New Delhi-110001
Dare: .Q? .12.2022

'l'o
All AI.JA/KI.JAs and all Device Vendors

ecosystem lbr strengthening


Sub: Removal of old and deployed devices I'rom Authentication
authentication securitY

Dear Partners

Please refer: (i) l.JlDAl lcttcr No. l3o2llll2o2l-Auth-l HQ dated 25'04'2022


(ii) I.JlDAl letterNo. l3o2ll1l2o2l-Auth-l HQ dated 31.05.2022
(iii) uIDAI letter No. 13023/01/2020-Auth-l HQ/2084 dated 20'06'2022

your entity has becrr appointed as an AIJA/KUA by I.JIDAI for availing the Aadhaar
authcrrtication tacility fbr authcntication of the residents using
the authentication L0 deviccs
(Authentication :and Otfline
(1.'inger print & lris) certiljed by S1QC. As per Aadhaar
is required to employ only
veriflcation) Regulation-2021. Regulation no l4 (d) requesting entity
with approved or certified by
those devices, equipmcnt or software. which are duly registered
standards and specifications laid
the authority for this purposc and are in accordance with the
down by the authoritY.
list of
UIDAI vide its letter dated 20.06.2022 (letter attached) has circulated the
old
Z.
deployed biometric authentication dcvices (Finger Print & Iris)
by AI.JAs/KUAs whose device
certificates issued by s'rec rras expirea ano not got renewed/recertit-ied by the device
manufacturer.

Some of the devicc vendors mentioned in the list circulated


with letter dated 70.06'2022
3. Revised list of old deployed
have renewed/recertified their biomctric authentication devices.
whose device certificates
biometric authentication devices (Finger Print & Iris) by AUAs/KUAs
red by the device manufacturer is
issued by S1eC has cxpircd and have not been renewed/recertif
posted at Ljll)AI website at link :

Devices-S1'OC-Public:[)e
i.,ttor,//***.ridai.gov.in/irnages/resource/Biornctric=Authentication
v ice.C erti flcate*Val i d itv:[:xpi red. pd f'
4. To ensure continuity of'services, UIDAI had given a sr.rfllcient period till 31.12.2022to
either recertify or replace such devices. As devices have not been rccertifled. it is assumed that
device vendors are not interested in recertificalion / continuation o1'services of such devices. It
has also been noticed that there has been no transactions on these devices fbr more than last six
months. Therefore, you would appreciate that such device can not be allowed to continue in the
systenr on account of saf'ety and security of transactions and will be deactivated w.e.f
0t.0r.2023.

5. Further ref-er to UIDAI letter dated 31.05.2022 vide which rollout o1'L.l RD biometric
authentication devices (Finger Print) was intimated to ecosystem partners.'l-he ST'QC issued list
of t.l RD biometric authentication devices is availablc at UIDAI website at link:
https://uidai.sov.in/en/ccosystern/authentication-devices-documents/biometric-devices.html .

WK
(Dr. Mandcep Singh t.amba)
I)cfluty Dircctor (Auth-1, FIQ UIDAI)

Copy fbr Infbrmation to:


r. DG. STQC
2. DDC (T'ech Center, tJIDAI)
Deactivation of RD Service from 01.01.2023

S. No. Device Vendor (Model)


I VI/s Bharat lrlcctronics Ltd. (BI,ll, POS with MSO CBME2)
\4/s l)atarnini 'l'cchnologics India f .td. (1'POS7 with MSO CBMFI2
2 & MSO CI}MI.] 3 )
l M/s Gernalto Digital Sccurities Pvt. Ltd.(CSD200/ CSD200i)

4 M/s Prccision Biomctric India Pvt Ltd (PB-300)


) M/s Precis on Biomctr c India Pvt t,td (PB:400)

wrt>2>
HQ- t 3O2 I I 1 |2O2L-AUTH-r-HQ
fdqdFfi G u{n dq}nfi {rrffi
qgqlq srB'o.wr
"irrfrn frRrqe
eTreidfuqrc fufts{
asf,ql?rq,

qrrtrq qfitrT qrBorel Tttqtttzl,


f4Rtq-c
dwr ffiq ts, o.rd qffi + fit,
rila qrftfu, r{ frffi 11oooL-
fr{i6: 2g .L2.2022
To,
All AUAs/KUAs

Subject: Issue of UIDN LO RD Senrice provisional Certificate


Dear Madam/Sir,
Your entity has been appointed as an AUA/KUA by UIDAI for availing
the Aadhaar authentication facility for authentication of the residents. The
Aadhaar based biometric authentication is extensively used by AUA/KUA
across the country with Finger print as the main biometric modality on L0
registered devices as certified by STQC. It has come to our notice that some
of the AUA/KUAs are still performing the biometric authentications
transactions on the L0 registered devices whose STQC issued certiflcates
have expired.
2. In this regard under Regulation 14 (1) of The Aadhaar (Authentication and
Offline verification) Regulations-202l, UIDAI hereby issues following
directions to AUAs for immediate compliance:
a) L0 Registered Device (RD) service certiflcates will not be issued for such
devices whose STQC issued public device certiflcates have expired.
Therefore, such devices will be removed by AUA/KUA from their
authentication ecosystem.
b) AUA/KUA shall identify the registered devices having low authentication
success rate (below 30%) or are more than five years old vintage. Such
devices will be removed by AUA/KUA from the authentication ecosystem in
phased manner. To begin with, devices older than 31.12.2OL4 should be
immediately replaced in order to achieve better authentication success rate.
3. In view of aforesaid, all AUAs/KUAs shall submit the certificate of
confirmation with respect to Para 2(a) and (b).
This issues with the approval of CEO, UIDAI.

Yadav
(Auth)

Copy for Information to:


1. DG, STQC
2. DDG (Tech Center, UIDAI)
3. All Device vendors

You might also like