Nova Patents
EP0791901A2

Network transaction system

Abstract

When a card holder who owns a payment card purchases merchandise from a seller via online communications through a network, he transmits order data relative to the purchase to the seller, that order data including parts relevant to respective ones of parties other than the card holder, e.g. the seller, a card manager, and a delivery service company, and which parts are encrypted by the terminal of the card holder using respective common cryptokeys which are effective only between the card holder and the respective other parties. The data is transmitted through the terminal of the seller to the terminals of the other parties. The other parties, on receipt of the transmitted data, decrypt that part of the data relevant to them using the relevant common cryptokeys.

EP0791901A2, drawing sheet 1
Sheet 1 of 4

Term

Term ended

Projected expiry passed 21 February 2017, 9.6 years ago.

  1. Priority
  2. Filed
  3. Published
  4. Projected expiry
  5. Today

12 claims: 5 independent, 7 dependent

  1. 1
    A system for conducting transactions via online communications on a network between terminals of parties including a card holder having a data card, a card manager for managing transactions performed using such a data card and a third party, the card holder terminal comprising:means for encrypting with a first cryptokey, common to the card holder terminal and the card manager terminal, a first part of the data produced when a card holder terminal initiates a transaction using the data card;means for encrypting with a second cryptokey, common to the card holder terminal and the third party terminal, a second part of said data;andmeans for transmitting said data, including the encrypted first and second parts, onto the network;the card manager terminal comprising:means for receiving and decrypting the first part of said data using the first cryptokey;andmeans for authorising the transaction by transmitting an authentication of the card holder to the third party terminal based on the decrypted, first part of the data;andthe third party terminal comprising:means for receiving and decrypting the second part of said data using the second cryptokey;andmeans for allowing the transaction between the card holder terminal and the third party terminal to proceed based on the decrypted, second part of the data when card holder authentication has been received from the card manager terminal.
  2. 3
    An electric commerce system for conducting commercial transactions via online communications on a network between terminals of parties including at least a seller, a card holder who uses a payment card to purchase merchandise from the seller, and a card manager for managing payments made by the payment card, comprising:means in the terminal of the card holder, for encrypting partial data with respect to the parties other than the card holder with common cryptokeys which are effective only between the card holder and the parties other than the card holder, among order data produced when said card holder purchases merchandise from said seller using the payment card, and then transmitting encrypted order data including the encrypted partial data through the terminal of the seller to the parties other than the card holder;means in the terminals of the parties other than the card holder, for decrypting only the encrypted partial data with respect to the parties other than the card holder, among said encrypted order data, using the respective common cryptokeys;means in the terminal of the card manager, for allowing commercial transactions, including issuance of an authentication of said card holder to the seller, to be made with respect to said card manager, based on the partial data decrypted by the terminal of said card manager;andmeans in the terminal of the seller, for allowlng commercial transactions, including delivery of the merchandise, to be made with respect to said seller, based on the partial data decrypted by the terminal of said seller and the authentication of said card holder issued from said card manager.
  3. 8
    The card holder terminal of the system of any one of claims 1 to 7.
  4. 9
    The card manager terminal of the system of any one of claims 1 to 7.
  5. 11
    A method of conducting transactions via online communications on a network between terminals of parties including a card holder having a data card, a card manager for managing transactions performed using such a data card and a third party, the method comprising:encryption by the card holder terminal with a first cryptokey, common to the card holder terminal and the card manager terminal, of a first part of data produced when a card holder terminal initiates a transaction using the data card;encryption by the card holder terminal with a second cryptokey, common to the card holder terminal and the third party terminal, of a second part of said data;transmission onto the network by the card holder terminal of the encrypted first part of said data for use by the card manager terminal and the encrypted second part of said data for use by the third party terminal;decryption by the card manager terminal of the first part of said data using the first cryptokey;transmission of an authorization of the card holder by the card manager terminal to the third party, the authorization being given based on the decrypted, first part of the data;decryption by the third party terminal of the second part of said data using the second cryptokey;allowing the transaction between the card holder terminal and the third party terminal to proceed based on the decrypted, second part of the data when card holder authentication has been received.