AP1369A

System and method for electronic transmission, storage and retrieval of authenticated documents.

Abstract

Methods and apparatus are provided that implement digital signing and/or encryption for the electronic transmission, storage, and retrieval of authenticated documents and that enable the establishment of the identity of the originator of an electronic document and of the integrity of the information contained in such a document. Together these provide irrevocable proof of authenticity of the document. The methods and apparatus make it possible to provide "paper-less" commercial transactions, such as real estate transactions and the financial transactions secured by real estate. A Certification Authority provides tools for initializing and managing the cryptographic material required to sign and seal electronic documents. An Authentication Center provides "third party" verification that a document is executed and transmitted by the document's originator. The methods and apparatus eliminate the need for "hard copies" of original documents as well as hard copy storage. Retrieval of an authenticated document from the Authentication Center may be done by any number of authorized parties at any time by on-line capability.

AP1369A, drawing sheet 1
Sheet 1 of 16

Term

No projected expiry on record.

  1. Priority
  2. Filed
  3. Granted
  4. Today

42 claims: 14 independent, 28 dependent

  1. 1
    WHAT iS CLAIMED IS:1, A. method of executing a transaction electronically by transferring auf - '.:··? information objects having respective verifiable evidence trails, compris r.c stews of: retrieving, by a first party from a trusted repository, an authenticated information object, wherein the authenticated information object includes e first digiiai signature of the first party, a first certificate relating at least an idenw. , a cryptographic key to the first party, date and time stamps and a second ;applied by the trusted repository, and a digital signature of the trusted rep. the first digital signature and first certificate have been validated by the trusted repository;the second certificate- relates at least an identity and a cryptogfkey to the trusted -repository;and ine authenticated information object has :. stored u.naer the control of the trusted repository;attaching instructions to a retrieved authenticated object;transmitting the retrieveo authenticated object and the attached ir ;to a second party, receiving, by the second party, a transmitted retrieved authentica*- * , t and attached instructions;presenting, by the second party to the trusted repository-, a receiveo transmitted retrieved authenticated object and attached instructions;and executing the transaction «ccording to the instructions presented to ins trusted repository,
  2. 2
    2 The method of ciaim 1, wherein the instructions cause the ,,,w-r repository to transfer ownership of the authenticated information object from the first party to the second party,
  3. 3
    3 The method of ciairn 2, wherein the trusted repository van,.:digital signature of the second party included with the presented object, apoims aate and time stamps to the presented object, and signs the stamped presentee object with its digital signature. £0020,00 ZJZdV
  4. 4
    4 The method wherein the transfer of ownership of toe c . .· ·„ s . ’‘•wmation obif-m .. das formation of a second authenticated - * tor evideric.r;cent in a verifiable evidence trail in
  5. 5
    5 ΑΡ δ ο 13 6 9 -295. The method of claim 1, further comprising the step of transmitting the retrieved authenticated object and the attached instructions by the trusted repository to each of a plurality of second parties in accordance with the attached instructions.
  6. 19
    21. “he method of ciaim 1, wherein the first party applies a signature to the retrieved authenticated object and the instructions before the second party presents the object and instructions to the trusted repositci · · -fo terminating further execution of the transaction. £0020/00 /4/dV APC 0 1369 tr
  7. 23
    25. A method of executing a transaction by transferring authenticated information objects having respective verifiable evidence trails, comprising the steps of:retrieving, by a first party from a trusted repository, an authenticated information object, wherein the authenticated information object includes a first digital signature of the first party, a first certificate relating at least an identity and a cryptographic key to the first party, date and time stamps and a second certificate applied by the trusted repository, and a digital signature of the trusted repository;the first digital signature and first certificate have been validated by the trusted repository;the second certificate relates at least an identity and a cryptographic key to the trusted repository;and the authenticated information object has been stored under the control of the trusted repository;attaching first instructions to a retrieved authenticated object;transmitting the retrieved authenticated object and the first instructions to a second party;receiving, by the second party, a transmitted retrieved authenticated object and first instructions;communicating, by the second party to the first party, a response to a received transmitted retrieved authenticated object and first instructions;sending second instructions from the first party to the trusted repository;and executing the transaction according to the second instructions.
  8. 24
    26. £0020,00 /4/dV The method of claim 25, wherein the instructions cause the trusted APO01369 -32repository to transfer ownership of the authenticated information object is am the first party to the second party
  9. 25
    27. The method of ciaim 26, wherein the transfer of ownership of the authenticated information object includes formation of a second authenticated information object for evidencing payment in a verifiable evidence trail ι - ' . Ww
  10. 26
    28. The method ot claim 25, wherein the first party applies c. :·: mt signature to the retrieved authenticated object and the instructions befc. · · . are transmitted to the second party.
  11. 28
    30 The method of cairn 29, wherein the syndicated transact···c. relates to a set of authenticated information objects, the first instruction p , ,;at least one second party to accept at least one authenticated information object ;r the set, and ownership of authenticated information objects not accepted by the at least one second party is retained by the first party.
  12. 29
    31 The method of ciaim 30, wherein acceptance by the at least one second party transfers to the at least one second party rights to a revenue stream and a corresponding default risk. 3.2 The method of claim 25, wherein the instructions cause the trusted repository to transfer control of the authenticated information object from the trusted repository to a second trusted repository.
  13. 30
    33. The method of ciaim 25, wherein the instructions cause the hasted repository io transfer possession of the authenticated information object re a second trusted repository.
  14. 31
    34. The method ot ciaim 25, wherein the trusted repository implements a subscriber-based membership system governing the granting of access authorization to an authenticated information object based on established assurance levels in identifying certificate holders and in business rule or :·« - an;t 0 0 i ο I o o ZJ/dV APO01369
  15. 40
    44. The method cfi ciaim 39, wherein the instructions cause to be performed an action of displaying an authenticated name conveyed in a certificate with an authenticated information object.
  16. 41
    45. The method of ciaim 44, where the authenticated information object includes at least one digital signature.
  17. 42
    46. A method of oh-iine executing a transaction by transfer' . ^ast one authenticated information object, instruction, and connection informs ,· - κ a verifiable evidence trail, comprising the steps of:establishing a secure communication session between a second party and a trusted custodial utility (TCU);retrieving, by the second party from the TCU, an authenticated miennation object and at least one instruction, wherein the authenticated information anc instruction include a first digital signature of a first party, a first certificate relating at least an identity and a cryptographic key to the first party, date a· ·α time stamps and a second certificate applied by the TCU, and a digital signature of the TCU: the first digital signature and first certificate have been validated by the TCU;the second certificate relates at least an identity and a cryptographic key to the TCU, and the authenticated information object has been stored under the control of the TCU: displaying a retrieved authenticated information object;using at ieast one retrieved instruction to control actions that th? .: ,;d parry can perform on the retrieved authenticated information object;adding, by the second party to the retrieved authenticated information object, an information object and a third digital signature of the second party and a third certificate relating at ieast an identity and a cryptographic key to the second party: transmitting to the TCU at least the retrieved information object, adned information object, third digital signature, and third certificate in accorda . i the retrieved instructions.