My view is that the scenarios described in the paper basically amount to "computer authentication", and smartcards would be completely warranted (and not at all unreasonable to implement) here.