CA2647713C

System and method for remotely assigning and revoking access credentials using a near field communication equipped mobile phone

Abstract

The present invention is generally directed toward a mobile device that can be used in a secure access system. More specifically, the mobile device can have credential data loaded thereon remotely updated, enabled, disabled, revoked, or otherwise altered with a message sent from, for example, a control panel and/or controller in the system.

CA2647713C, drawing sheet 1
Sheet 1 of 6

Term

Term ended

Expired 20 April 2026, 0.4 years ago.

  1. Priority
  2. Filed
  3. Granted
  4. Expired
  5. Today

36 claims: 3 independent, 33 dependent

  1. 1
    CA 02647713 2013-05-08 THE EMBODIMENTS OF THE INVENTION FOR WHICH AN EXCLUSIVE PROPERTY OR PRIVILEGE IS CLAIMED ARE DEFINED AS FOLLOWS:1. A method of remotely maintaining a secure access system, comprising: storing, at a secure access system controller, a first set of credential data for at least one user of the secure access system, the secure access system controller in communication with a plurality of readers;receiving, at the secure access system controller, a credential update for the at least one user of the secure access system;and in response to receiving the credential update, the controller replacing the first set of credential data with a second set of credential data that is different from the first set of credential data and the controller further automatically initiating a system update process, the system update process comprising: generating a message comprising information representing the controller’s replacement of the first set of credential data with the second set of credential data;determining at least one target for the message, wherein the at least one target comprises at least one mobile device associated with the at least one user;transmitting the message to the at least one target;receiving the message at the at least one mobile device;and modifying at least a portion of memory of the at least one mobile device according to the updated credential information, wherein the modifying comprises at least one of disabling, revoking, and re-writing at least a portion of the memory.
  2. 13
    A secure access system, comprising:at least one mobile device comprising memory, wherein the memory comprises credential information;a controller in communication with a plurality of readers that secure one or more assets, the controller being configured to receive a credential update for at least one user of the secure access system, the credential update impacting the at least one user’s permissions for accessing the one or more assets secured by the plurality of readers and, in response to receiving the credential update, automatically initiate a system update process, wherein during the system update process the controller automatically causes a message to be generated that comprises the updated credential, and causes the message to be transmitted to the at least one mobile device associated with the at least one user, wherein the plurality of readers are configured to determine an authenticity of the at least one mobile device, and wherein credential information on the memory is at least one of disabled, revoked, and re-written in response to receiving the message;and a database which maintains information related to the system, wherein the controller is further operable to cause a second message to be generated that comprises the updated credential and causes the second message to be transmitted to at least one of the database and the plurality of readers.
  3. 28
    A mobile device for use by a user in a secure access system, comprising:a memory, wherein the memory comprises credential information;and an interface operable to communicate with a reader and further operable to receive messages relating to updated-credential information, wherein, upon receipt of a first message, the credential information for the user is automatically changed from a first state to a second state and wherein the messages relating to updated-credential information are received without the at least one user transmitting a request for the messages, wherein in the event that the first message is not received, the credential information is maintained in the first state and as a result becomes obsolete, and wherein the reader is operable to determine an authenticity of the mobile device based at least in part upon the credential information, and upon presentation of the mobile device to the reader, the authenticity of the mobile device is determined to be invalid. CA 02647713 2013-05-08