Authorization method in data transfer systems
Abstract
The invention relates to a method and a device for Authorization in data transmission systems using a Transaction number (TAN) or a comparable password with the user in a 1st step on a data input device his Identifying and / or an identification ID of the data input device together with the invitation to generation or to choose a TAN or a comparable password from a sends file to the authorization computer, in a 2nd step the authorization computer which TAN or comparable password generates or selects from a file, in a third step of Authorization computer which TAN or comparable password via another transmission path as in step 1 to a receiver (Z. B. phone or pager) sends, in a step 4 of User this TAN or comparable password from the receiver accepts and enters in the data input device in a fifth step this TAN or comparable password again to the authorization computer is transmitted, in a sixth step the authorization computer the validity of the TAN or comparable password checks, then in a step 7. a connection establish between the data input device and a receiving unit or unlock.

Term
Term ended
Projected expiry passed 16 January 2018, 8.7 years ago.
- Priority
- Filed
- Published
- Projected expiry
- Today
23 claims: 23 independent, 0 dependent
- 1Procedure for authorization in data transmission systems using a transaction number (TAN) or a comparable password, thereby inthat the user in a 1st step via a data input device (1) his identification and / or Identification ID of the Dateneingäbegeräts (1) together with the invitation to generation or Selecting a TAN or a comparable password from a file to an authorization computer (2) sends,that in a second step the authorization computer (2) the TAN or comparable password generated or selecting from a file,that in a third step the authorization computer (3) the TAN or comparable password via a other transmission path as in step 1 to a Receiver (3) sends,that in a fourth step, the user this TAN or the comparable password from the receiver (3) accepts and inputs in the data input device (1),that this TAN or comparable in Step 5 Forgot again to the authorization computer (2) is transmitted,that in a sixth step the authorization computer (2) the validity of the TAN or the comparable Password checks, thenin a 7 step a connection between the data input device (1) and a receiving unit produce or unlock (4). Verfahren zur Autorisierung in Datenübertragungssystemen unter Verwendung einer Transaktionsnummer (TAN) oder eines vergleichbaren Paßworts, dadurch gekennzeichnet, - daß der Benutzer in einem 1.Schritt über ein Dateneingabegerät (1) seine Identifizierung und/oder eine Identifizierungs-Kennung des Dateneingäbegeräts (1) zusammen mit der Aufforderung zur Generierung oder zur Auswahl einer TAN oder eines vergleichbaren Paßworts aus einer Datei an einen Autorisierungsrechner (2) sendet,- daß in einem 2. Schritt der Autorisierungsrechner (2) die TAN oder das vergleichbare Paßwort generiert oder aus einer Datei auswählt,- daß in einem 3. Schritt der Autorisierungsrechner (3) die TAN oder das vergleichbare Paßwort über einen anderen Übertragungsweg als in Schritt 1 an einen Empfänger (3) sendet,- daß in einem 4. Schritt der Benutzer diese TAN oder das vergleichbare Paßwort von dem Empfänger (3) übernimmt und in das Dateneingabegerät (1) eingibt,- daß in einem 5. Schritt diese TAN oder das vergleichbare Paßwort wieder an den Autorisierungsrechner (2) übermittelt wird,- daß in einem 6. Schritt der Autorisierungsrechner (2) die Gültigkeit der TAN oder des vergleichbaren Paßworts prüft, um dann- in einem 7. Schritt einen Verbindungsaufbau zwischen dem Dateneingabegerät (1) und einer Empfangseinheit (4) herzustellen oder freizuschalten.
- 2A method according to claim 1), characterized in that it is a once only usable TAN or a comparable Forgot concerns. Verfahren nach Anspruch 1), dadurch gekennzeichnet, daß es sich um eine nur einmal verwendbare TAN oder eine vergleichbares Paßwort handelt.
- 3Method according to one or more of claims 1) to 2), characterized in that the validity of the TAN or the comparable password with predefined user time is. Verfahren nach einem oder mehreren der Ansprüche 1) bis 2), dadurch gekennzeichnet, daß die Gültigkeit der TAN oder des vergleichbaren Paßworts eine vordefinierte Benutzerzeit ist.
- 4Method according to one or more of claims 1) to 3), characterized in that the validity of the TAN or the comparable password from a predefined number of transferred files depends. Verfahren nach einem oder mehreren der Ansprüche 1) bis 3), dadurch gekennzeichnet, daß die Gültigkeit der TAN oder des vergleichbaren Paßworts von einer vordefinierten Anzahl der übertragenen Dateien abhängig ist.
- 5Method according to one or more of claims 1) to 4), characterized in that the validity of the TAN or the comparable password from a predefined size transferred files depends. Verfahren nach einem oder mehreren der Ansprüche 1) bis 4), dadurch gekennzeichnet, daß die Gültigkeit der TAN oder des vergleichbaren Paßworts von einer vordefinierten Größe der übertragenen Dateien abhängig ist.
- 6Method according to one or more of claims 1) to 5), characterized in that the access to the data input device (1) and / or the receiver (3) and / or the Receiving unit (4) is protected by a password. Verfahren nach einem oder mehreren der Ansprüche 1) bis 5), dadurch gekennzeichnet, daß der Zugriff auf das Dateneingabegerät (1) und/oder der Empfänger (3) und/oder die Empfangseinheit (4) durch ein Passwort geschützt ist.
- 7Method according to one or more of claims 1) to 6), characterized in that the data of the input device (1) to the receiving unit (4) or vice versa transmitted Data are encrypted. Verfahren nach einem oder mehreren der Ansprüche 1) bis 6), dadurch gekennzeichnet, daß die von dem Dateneingabegerät (1) an die Empfangseinheit(4) oder umgekehrt übermittelten Daten verschlüsselt sind.
- 8Method according to one or more of claims 1) to 7), characterized in that the data of the input device (1) to the authorization computer (2) or vice versa transmitted data is encrypted. Verfahren nach einem oder mehreren der Ansprüche 1) bis 7), dadurch gekennzeichnet, daß die von dem Dateneingabegerät (1) an den Autorisierungsrechner (2) oder umgekehrt übermittelten Daten verschlüsselt sind.
- 9Device for carrying out the method according to one or more of claims 1) to 8), characterized in that that the receiver 3) is a pager (31). Vorrichtung zur Ausführung des Verfahrens nach einem oder mehreren der Ansprüche 1) bis 8), dadurch gekennzeichnet, daß der Empfänger 3) ein Pager (31) ist.
- 10Device for carrying out the method according to one or more of claims 1) to 8), characterized in that that the receiver 3) is a mobile phone (32). Vorrichtung zur Ausführung des Verfahrens nach einem oder mehreren der Ansprüche 1) bis 8), dadurch gekennzeichnet, daß der Empfänger 3) ein Handy (32) ist.
- 11Device for carrying out the method according to one or more of claims 1) to 8), characterized in that that the receiver 3) is a facsimile (33). Vorrichtung zur Ausführung des Verfahrens nach einem oder mehreren der Ansprüche 1) bis 8), dadurch gekennzeichnet, daß der Empfänger 3) ein Telefax (33) ist.
- 12Device for carrying out the method according to one or more of claims 1) to 8), characterized in that that the receiver 3) an e-mail or network address is. Vorrichtung zur Ausführung des Verfahrens nach einem oder mehreren der Ansprüche 1) bis 8), dadurch gekennzeichnet, daß der Empfänger 3) eine E-Mail- oder Netzwerkadresse ist.
- 13Device for carrying out the method according to one or more of claims 1) to 8), characterized in that that the receiver 3) is a voice output device. Vorrichtung zur Ausführung des Verfahrens nach einem oder mehreren der Ansprüche 1) bis 8), dadurch gekennzeichnet, daß der Empfänger 3) ein Sprachausgabegerät ist.
- 14Device according to claim 11), that the voice output device is a speaker (34). Vorrichtung nach Anspruch 11), dadurch gekennzeichnet, daß das Sprachausgabegerät ein Lautsprecher (34) ist.
- 15Device according to claim 11), that the voice output device is a telephone (35). Vorrichtung nach Anspruch 11), dadurch gekennzeichnet, daß das Sprachausgabegerät ein Telefon (35) ist.
- 16Device for carrying out the method according to one or more of claims 1) to 13), characterized in that that the receiver (3) has a data input device (1) built- Radio receiver, which the TAN or comparable Password on the display or monitor of the data input device (1) outputs. Vorrichtung zur Ausführung des Verfahrens nach einem oder mehreren der Ansprüche 1) bis 13), dadurch gekennzeichnet, daß der Empfänger (3) eine im Dateneingabegerät (1) eingebauter Funkempfänger ist, welcher die TAN oder das vergleichbare Paßwort auf dem Display oder Monitor des Dateneingabegeräts (1) ausgibt.
- 17Device according to claim 14), characterized in that that the radio receiver, a user identification element owns. Vorrichtung nach Anspruch 14), dadurch gekennzeichnet, daß der Funkempfänger ein Benutzer-Identifizierungelement besitzt.
- 18Device according to claim 15), that the user identification element is a magnetic or Smart card. Vorrichtung nach Anspruch 15), dadurch gekennzeichnet, daß das Benutzer-Identifizierungelement eine Magnet- oder Chipkarte ist.
- 19Device according to claim 15), that the user identification element with graphic Systems for verifying a fingerprint or works to an image identifying the user. Vorrichtung nach Anspruch 15), dadurch gekennzeichnet, daß das Benutzer-Identifizierungelement mit grafischen Einrichtungen zur Überprüfung eines Fingerabdruckes oder zu einer Bildidentifizierung des Benutzers arbeitet.
- 20Device for carrying out the method according to one or more of claims 1) to 17), characterized in that that matching in the authorization computer (2) and the receiver (3) Encryption modules are available. Vorrichtung zur Ausführung des Verfahrens nach einem oder mehreren der Ansprüche 1) bis 17), dadurch gekennzeichnet, daß im Autorisierungsrechner (2) und im Empfänger (3) übereinstimmende Verschlüsselungs-Module vorhanden sind.
- 21Device for carrying out the method according to one or more of claims 1) to 18), characterized in that that the receiving unit (4) is a door closing mechanism. Vorrichtung zur Ausführung des Verfahrens nach einem oder mehreren der Ansprüche 1) bis 18), dadurch gekennzeichnet, daß die Empfangseinheit (4) ein Türschließ-Mechanismus ist.
- 22Device for carrying out the method according to one or more of claims 1) to 19), characterized in that that the authorization computer (2) and the receiver unit (4) are integrated in one device. Vorrichtung zur Ausführung des Verfahrens nach einem oder mehreren der Ansprüche 1) bis 19), dadurch gekennzeichnet, daß der Autorisierungsrechner (2) und die Empfangseinheit (4) in einem Gerät integriert sind.
- 23Device for carrying out the method according to one or more of claims 1) to 19), characterized in that that the data input device, the authorization computer (2) and the receiving unit (4) integrated in one device are. Vorrichtung zur Ausführung des Verfahrens nach einem oder mehreren der Ansprüche 1) bis 19), dadurch gekennzeichnet, daß das Dateneingabegerät, der Autorisierungsrechner (2) und die Empfangseinheit (4) in einem Gerät integriert sind.
Independent claims23
39 paragraphs in 1 section, as filed
The invention relates to a method for authorization in data communications systems.
It is known that when telebanking the user permanent addition to his Password (PIN) for each transaction additionally a transaction number (TAN) is required. Such TAN's are received in the mail in larger blocks to the user. There is therefore the risk that third parties of such TANs become aware and in conjunction with the password abuse can make. The risk is increased by the fact that Such TAN's virtually an unlimited validity have.
Also known are call-back systems in which the called System is stored by a callback when a rule Number verifies that the calling system is authorized and not a foreign system impersonates a legitimate system. The disadvantage of the call-back systems is that a unauthorized user, which is any one of a source a functional access to the legitimate calling system has given, among these unlawfully obtained permission problems can work, as the call-back system only checks whether called by a legitimate principle system has been.
The invention has for its object a process for authorization to create in the data transmission, in which the security is increased. This method is according to the invention by the characterizing Part of claim 1) dissolved.
Wireless telecommunications devices such as mobile phones or Pagers often have the ability to short (alpha-) numeric messages (Z. B. the Short Message Service = SMS service) to receive and display on their display. The present invention uses this possibility, a TAN or a comparable password to transfer.
According to the present invention, the user transmitted via a Data input device his identification (user ID, password o. Ä.) and / or an identification ID of the data input device together with a request to generate a TAN (or a comparable password) to a computer, which the Authorization process takes over and then briefly authorization computer is called. This is authorization computer by a random alphanumeric or numeric only TAN (or a comparable password) or calculated taken from a file. Then, by the authorization computer parallel to the existing connection with the data input device, via another transmission TAN (or an equivalent Password) is transmitted to a receiver. This receiver For example,<sl><li>a) a radio receiver with a display or monitor such. B. a cell phone, a pager (z. B. a pager receiver)</li><li>b) a specially crafted reception card within the Data input device which via radio or a fixed Wiring is addressed,</li><li>c) a mailbox,</li><li>d) a fax or</li><li>d) a voice output device such as a fixed instalierter speakers or a (voice) telephone</li></sl>be. For this purpose, the authorization computer the requisite (s) Telephone, paging or fax numbers, e-mail or network address (es). The relevant data are usually in the authorization computer stored. However, it is possible that the authorization computer in turn, these data from a database obsolete, which is located on another computer. in this respect can the authorization computer using the inventive Process is by itself an access to these make another computer.
The authorized user can then forwarded him TAN (or Enter the comparable password) into his data input device manually and send back to the authorization computer. at automated process takes place according to the invention an automatic Transmission of the TAN (or the comparable password). The authorization computer now verified the correspondence between all (awarded by him) valid TAN's (or comparable Passwords) and allows for this authorization check a Release of the data flow between the data input device and a Receiving unit.
When TAN (or the comparable password) may be a act only once usable TAN. However, there are other limitations as the user time and / or the number or size of the transferred files for the validity of the TAN (or comparable Password) possible.
After authorized in the aforementioned way connecting, now data from the data input device to the receiving unit (Or vice versa; Volldublex) are received.
It is obvious that, for additional security, these data can also be encrypted.
Both the data entry device, and the authorization computer and the receiving unit may be computer normal (human). The invention works platform independent, ie it is independent of processor types, operating systems and / or control electronics (Z. B. the receiver unit) and / or input / output units (Z. B. the data input device and the receiving unit).
The security of this system is that only an authorization the devices have a data transfer from the data input device to the receiving unit by the authorization computer will be shown. This is through the use of separate transmission paths between the file player and the authorization computer einseits and the authorization computer and the TAN transfer On the other hand, is achieved. To that extent, the different Invention of call-back systems in which only one review the data input device and the authorization computer takes place.
The inventive method allows to perform various security levels.
At the lowest level of security according to the invention is in the data input device as a receiver, a radio receiver, for example, incorporated in the form of a plug-in card, so that only with this specific device a data transmission to the receiving unit possible is. To increase this reliability can be provided, that this radio receiver with a user identification element, operated, for example, a magnetic or chip card can be. The user identification element can also graphical methods such as checking a fingerprint or Image identifying the user work.
The additional security level according to the invention is that the authorization computer which TAN (or the comparable password) sent to a pager or a similar device. In this Case, one of authorization only if the data input device and the pager in accessing the same person. Only then is it is possible that the image displayed on the display of the pager TAN (or a comparable password) entered in the data input device and is sent back to the authorization computer from there.
At a pager transmitted data are known to be, however, be intercepted. Another security level according to the invention can be obtained in such a way that the authorization computer and in the pager matching encryption modules in use are.
Instead of pagers or mobile phones can also in inventive Way be another receiver provided. This can be a Mailbox, be a fax or a voice output device. As voice output device are inventively fixed speaker or the transfer of the language to a defined telephone extension possible. In the speech output devices is a language Issue of TAN (or the comparable password).
It is obvious that also the transmission to such Receivers can be encrypted.
If instead of a pager, a mobile phone, in particular a GSM mobile phone, is in use, then it is possible as a result of encryption of the relevant Transmission technology according to the invention to other encryption mechanisms without. In this case, the display is TAN (or the comparable password) on the display the phone.
Another security level of the invention can achieved by be that of the data input device and the authorization computer a connection is only established if the data input device transmits a corresponding password. This password can present invention have a much longer time Validity own as the TAN.
Another security level of the invention can achieved by be that even the use of the data input device also requires a password.
It is obvious that a combination of the aforementioned is safety levels.
The invention is universal in the field of data transmission systems usable. This applies for example also for the Internet and intra-networks, Local Area Networks (LAN), Wide Area Networks (WAN) etc ..
The system in question is outside the classical computer, for example, used in physical access control. The user gives this example on a mounted near the door Keyboard (= data input device) his personal password. Of the Authorization computer checks the password, if necessary. Also in connection with access on the concrete - for concrete Period. If the relevant password is valid (still), transmitted the authorization computer to a mobile phone or the Special door locking system konzepierte, functional with a Pager similar device, the TAN (or the comparable password). Then this is TAN (or the comparable password) manually by the user via the keyboard attached to doors entered and automatically forwarded to the authorization computer. After successful verification is done by the authorization computer a signal for the release of the door locking mechanism. This release may possibly. Be temporary. The receiving unit in this case, simple in technical terms its nature, since it only the signal for the release of the door locking mechanism so has to process that question electrical mechanics the door opening releases.
Thus it is possible to construct a system in which different People different permission to different apprehended have spaces.
The specific application fields include, for example:<ul><li>data center</li><li>airports</li><li>ministries</li><li>inch</li><li>Border crossings</li><li>Security areas</li><li>banks</li><li>safes</li><li>garages</li><li>Park homes</li><li>cars</li></ul>
The whole system gets its security from the combination several different basic principles and factors:<sl><li>(1) "what-you-have" (which does not want to duplicate (GSM) smart card) So a physical one-off that is not lossless can be passed.</li><li>(2) "what-you-know" (the PIN of GSM smart card and the own user name in the data input device and / or authentication server), So know-how that is not inadvertently can be passed or accidentally</li><li>(3) DES encryption and cryptographic authentication in the GSM network itself, characterized resistance to eavesdropping and spoofing attacks</li></sl>
This is to system compromise combining at least three - each very unlikely for themselves - Events from emergencies:<sl><li>a) physical loss of (mobile) chip card, the pager or a stranger access to the mailbox, the fax or, Voice output device,</li><li>b) publication of the PIN of the recipient (eg. B. from the smart card or the phone) and</li><li>c) knowledge of the transmitted TAN or comparable Password.</li></sl>
An accidental coincidence of these factors is virtually ruled out especially as in this case, the successful attack on the system, the intimate knowledge of the access method and Userid presupposes that not in an attack in the normal case given is. In addition, the user has the option, his user id at losing his chip card into the authentication server immediately block or be blocked.
Another advantage of the support on GSM is that the user during the authorization process at all times is, eg in access problems or doubts as to its Identity from the system administrator can be called directly.
This solution has the advantage of being very safe, cost-effective and with conventional, widespread and secure hardware can be realized.
Another inventive solution is that the authorization computer and receiving unit, a device is.
Further advantages and possible applications of the invention from the hereinafter mentioned embodiment in connection with the drawing.
An authorized user operates a data input device 1). here About it sends the request to generate or select and Returning a TAN (or a comparable password) to an authorization computer 2). The authorization computer 2) generates the TAN (or a comparable password). The authorization computer 2) is the number or data address, z. B. the E-mail or the recipient (3) network address of the user's Data input device 1) is known. He sends to a receiver 3) (Not shown in detail) TAN (or an equivalent Password). The receiver 3), a pager 31) or a mobile phone 32) be. However, the receiver 3) can also be the E-mail address of a Mailbox (not shown), a facsimile machine 33) or a voice output device be. The voice output device may be a permanently installed be speaker 34) or a telephone 35). The user reads this TAN (or a comparable password) from the receiver 3) from, or she hears the voice and gives them manually in the data input device 1). transmitted the data input device 1) now the TAN (or a comparable password) to the Authorization computer 2). The authorization computer 2) is checked, whether these TAN (or the comparable password) is still valid. To this purpose, the authorization computer be programmed to that the validity of the TAN (or the comparable password) between they were sent to the receiver 3) and transmission via the data input device 1) is limited in time. The temporal Limiting example, can take two minutes. If the TAN (or the comparable password) is valid, then provides the Authorization computer 2) a compound to a receiving unit 4) forth. Now the user for the duration of the maintenance this compound capable of data from the data input device 1) to be transmitted to the receiving unit 4) and / or receive.
It is obvious that this data for further securing can be encrypted.
It is also conceivable that not only the TAN (or comparable Password) for its validity for a time limit has, but also that the duration of the maintenance of the connection between the data input device 1) and the receiving unit 4) is limited. In this way it can be avoided that a "Leased line" between the data input unit 1) and the receiving unit 4) is produced, which in turn a vulnerability could represent.
The authorization computer 2) and the receiving unit 4) can have a his only computer. In this case, a first access is made to a data processing program which the authorization process (Generation and transmission of the TAN) in the manner described above performs. In a second step, the data is transmitted.
It can even the data input device (1), the authorization computer 2) and the receiving unit 4) can be a single computer. In this case is carried out a first access to a data processing program, which the authorization process (generation and transmission TAN performs to the recipient) in the manner described above. It was only after the authorization of the user receives a full or limited to certain areas of computer access.
LIST OF REFERENCE NUMBERS
<dl tsize="22" compact="compact"><dt>The data input device</dt><dd>1)</dd><dt>authorization computer</dt><dd>2)</dd><dt>receiver</dt><dd>3)</dd><dt>pager</dt><dd>31)</dd><dt>mobile</dt><dd>32)</dd><dt>Fax machine</dt><dd>33)</dd><dt>speaker</dt><dd>34)</dd><dt>phone</dt><dd>35)</dd><dt>receiving unit</dt><dd>4)</dd></dl>
2 sheets
Sheet 1 Sheet 2
Every citation, both ways
| Document | Relation | Office | Cited during |
|---|---|---|---|
| US7254390B2 | Cited by | United States of America | Applicant |
| WO0213154A1 | Cited by | World Intellectual Property Organization (WIPO) | International search |
| US8295834B2 | Cited by | United States of America | Applicant |
| US7020773B1 | Cited by | United States of America | Applicant |
| WO0227680A2 | Cited by | World Intellectual Property Organization (WIPO) | International search |
| EP1075161A3 | Cited by | European Patent Office (EPO) | Search report |
| WO0159569A3 | Cited by | World Intellectual Property Organization (WIPO) | International search |
| EP1445917A2 | Cited by | European Patent Office (EPO) | Search report |
| US6986040B1 | Cited by | United States of America | Applicant |
| US8756162B2 | Cited by | United States of America | Applicant |
| WO02077934A2 | Cited by | World Intellectual Property Organization (WIPO) | International search |
| WO02077934A3 | Cited by | World Intellectual Property Organization (WIPO) | International search |
| EP1065634A1 | Cited by | European Patent Office (EPO) | Search report |
| EP1282044A4 | Cited by | European Patent Office (EPO) | Search report |
| EP1075161A2 | Cited by | European Patent Office (EPO) | Search report |
| EP1139630A1 | Cited by | European Patent Office (EPO) | Search report |
| WO0103083A1 | Cited by | World Intellectual Property Organization (WIPO) | International search |
| US7203477B2 | Cited by | United States of America | Applicant |
| EP1980967A2 | Cited by | European Patent Office (EPO) | Search report |
| EP2110768A1 | Cited by | European Patent Office (EPO) | Search report |
| US10346814B2 | Cited by | United States of America | Applicant |
| WO0173700A2 | Cited by | World Intellectual Property Organization (WIPO) | International search |
| EP2953076A1 | Cited by | European Patent Office (EPO) | Examiner |
| WO0173700A3 | Cited by | World Intellectual Property Organization (WIPO) | International search |
| EP1445917A3 | Cited by | European Patent Office (EPO) | Search report |
| EP1980967A3 | Cited by | European Patent Office (EPO) | Search report |
| DE10343566A1 | Cited by | Germany | Search report |
| US6993658B1 | Cited by | United States of America | Applicant |
| US7822410B2 | Cited by | United States of America | Applicant |
| WO0192999A2 | Cited by | World Intellectual Property Organization (WIPO) | International search |
| US7293176B2 | Cited by | United States of America | Applicant |
| US7203485B2 | Cited by | United States of America | Applicant |
| EP1282044A1 | Cited by | European Patent Office (EPO) | Search report |
| WO0159569A2 | Cited by | World Intellectual Property Organization (WIPO) | International search |
| WO0192999A3 | Cited by | World Intellectual Property Organization (WIPO) | International search |
| DE102008045119A1 | Cited by | Germany | Search report |
| EP2110768A1 | Cited by | European Patent Office (EPO) | Search report |
| WO0227680A3 | Cited by | World Intellectual Property Organization (WIPO) | International search |
| EP0416482A2 | Cites | European Patent Office (EPO) | Search report |
| EP0745961A2 | Cites | European Patent Office (EPO) | Search report |
| US3938091A | Cites | United States of America | Search report |
| WO9519593A1 | Cites | World Intellectual Property Organization (WIPO) | Search report |
| WO9600485A2 | Cites | World Intellectual Property Organization (WIPO) | Search report |
18 members in 11 offices
Priority claims5
| Document | Office | Kind | Date |
|---|---|---|---|
| 19718103 | Germany | A | |
| 19718103 | Germany | A | |
| 19718103 | Germany | – | |
| 19718103 | – | – | – |
| DE1997118103 | – | – | – |
Members18
| Document | Office | Kind | |
|---|---|---|---|
| DE19718103A1 | Germany | A1 | |
| EP0875871A2This record | European Patent Office (EPO) | A2 | |
| AU6354598A | Australia | A | |
| JPH10341224A | Japan | A | |
| CN1207533A | China | A | |
| EP0875871A3 | European Patent Office (EPO) | A3 | |
| AR009872A1 | Argentina | A1 | |
| US6078908A | United States of America | A | |
| TW425804B | Taiwan Province of China | B | |
| BR9801177A | Brazil | A | |
| EP0875871B1 | European Patent Office (EPO) | B1 | |
| AT226346T | Austria | T | |
| ATE226346T1 | Austria | T1 | |
| DE59805939D1 | Germany | D1 | |
| ES2186019T3 | Spain | T3 | |
| CN1149504C | China | C | |
| JP4204093B2 | Japan | B2 | |
| BR9801177B1 | Brazil | B1 |
98 legal events, as 7 offices reported them to INPADOC
Over the term
Point at a mark for the eventEvents
| Event | Code | Office | |
|---|---|---|---|
| Opt-out of the competence of the unified patent court (upc) registeredP01 | P01 | EP | |
| Ep patent has been removed from the registerECNC | ECNC | SE | |
| Lapsed in a contracting state [announced via postgrant information from national office to epo]LapsedPG25 | PG25 | EP | |
| Annual fee paid to national office [announced via postgrant information from national office to epo]GrantedPGFP | PGFP | EP | |
| Annual fee paid to national office [announced via postgrant information from national office to epo]GrantedPGFP | PGFP | EP | |
| Annual fee paid to national office [announced via postgrant information from national office to epo]GrantedPGFP | PGFP | EP | |
| Annual fee paid to national office [announced via postgrant information from national office to epo]GrantedPGFP | PGFP | EP | |
| Ep patent has been removed from the registerECNC | ECNC | SE | |
| Lapsed in a contracting state [announced via postgrant information from national office to epo]LapsedPG25 | PG25 | EP | |
| Lapsed in a contracting state [announced via postgrant information from national office to epo]LapsedPG25 | PG25 | EP | |
| Patent revokedRevoked27W | 27W | EP | |
| Gb: patent revoked under art. 102 of the ep convention designating the uk as contracting stateRevokedGBPR | GBPR | EP | |
| Patent ceasedCeasedPL | PL | CH | |
| Patent revokedRevokedORIGINAL CODE: 0009271RDAG | RDAG | EP | |
| Information on the status of an ep patent application or granted ep patentGrantedSTATUS: PATENT REVOKEDSTAA | STAA | EP | |
| Appeal procedure closedAppealORIGINAL CODE: EPIDOSNNOA9OAPBU | APBU | EP | |
| Opposition withdrawnWithdrawnORIGINAL CODE: 0009264PLBP | PLBP | EP | |
| Annual fee paid to national office [announced via postgrant information from national office to epo]GrantedPGFP | PGFP | EP | |
| Annual fee paid to national office [announced via postgrant information from national office to epo]GrantedPGFP | PGFP | EP | |
| Annual fee paid to national office [announced via postgrant information from national office to epo]GrantedPGFP | PGFP | EP | |
| Date of receipt of statement of grounds of appeal recordedAppealORIGINAL CODE: EPIDOSNNOA3OAPBQ | APBQ | EP | |
| Appeal reference modifiedAppealORIGINAL CODE: EPIDOSCREFNOAPAH | APAH | EP | |
| Appeal reference recordedAppealORIGINAL CODE: EPIDOSNREFNOAPBM | APBM | EP | |
| Date of receipt of notice of appeal recordedAppealORIGINAL CODE: EPIDOSNNOA2OAPBP | APBP | EP | |
| Information modified related to despatch of communication that patent is revokedRevokedORIGINAL CODE: EPIDOSCREV1RDAD | RDAD | EP | |
| Opposition filed (corrected)OppositionR26 | R26 | EP | |
| Opposition filed (corrected)OppositionR26 | R26 | EP | |
| Opposition data, opponent's data or that of the opponent's representative modifiedOppositionORIGINAL CODE: 0009299OPPOPLAB | PLAB | EP | |
| Opposition filedOpposition26 | 26 | EP | |
| Opposition filedOpposition26 | 26 | EP | |
| Appeal procedure closedAppealORIGINAL CODE: EPIDOSNNOA9OAPBU | APBU | EP | |
| Opposition filed (corrected)OppositionR26 | R26 | EP | |
| Opposition filed (corrected)OppositionR26 | R26 | EP | |
| Opposition filedOppositionORIGINAL CODE: 0009260PLBI | PLBI | EP | |
| Opposition data, opponent's data or that of the opponent's representative modifiedOppositionORIGINAL CODE: 0009299OPPOPLAB | PLAB | EP | |
| Opposition filed (corrected)OppositionR26 | R26 | EP | |
| Opposition filed (corrected)OppositionR26 | R26 | EP | |
| Opposition data, opponent's data or that of the opponent's representative modifiedOppositionORIGINAL CODE: 0009299OPPOPLAB | PLAB | EP | |
| Date of receipt of statement of grounds of appeal recordedAppealORIGINAL CODE: EPIDOSNNOA3OAPBQ | APBQ | EP | |
| Appeal reference modifiedAppealORIGINAL CODE: EPIDOSCREFNOAPAH | APAH | EP | |
| Date of receipt of notice of appeal recordedAppealORIGINAL CODE: EPIDOSNNOA2OAPBP | APBP | EP | |
| Communication despatched that patent is revokedRevokedORIGINAL CODE: EPIDOSNREV1RDAF | RDAF | EP | |
| Application for restoration allowed (sect. 28/1977)728Y | 728Y | GB | |
| Notification of lapseLapsedST | ST | FR | |
| Lapsed in a contracting state [announced via postgrant information from national office to epo]LapsedPG25 | PG25 | EP | |
| Application for restoration filed (sect. 28/1977)728V | 728V | GB | |
| Announcement of lapse in spainLapsedFD2A | FD2A | ES | |
| Reply of patent proprietor to notice(s) of opposition receivedOppositionORIGINAL CODE: EPIDOSNOBS3PLBB | PLBB | EP | |
| Information related to reply of patent proprietor to notice(s) of opposition deletedOppositionORIGINAL CODE: EPIDOSDOBS3PLAS | PLAS | EP | |
| Reply of patent proprietor to notice(s) of opposition receivedOppositionORIGINAL CODE: EPIDOSNOBS3PLBB | PLBB | EP | |
| Notice of opposition and request to file observation + time limit sentOppositionORIGINAL CODE: EPIDOSNOBS2PLAX | PLAX | EP | |
| Nl: lapsed or anulled due to non-payment of the annual feeLapsedNLV4 | NLV4 | EP | |
| Opposition filedOpposition26 | 26 | EP | |
| Opposition filedOpposition26 | 26 | EP | |
| Opposition filedOpposition26 | 26 | EP | |
| Gb: european patent ceased through non-payment of renewal feeCeasedGBPC | GBPC | EP | |
| Notice of opposition and request to file observation + time limit sentOppositionORIGINAL CODE: EPIDOSNOBS2PLAX | PLAX | EP | |
| Lapsed in a contracting state [announced via postgrant information from national office to epo]LapsedPG25 | PG25 | EP | |
| Opposition filedOppositionORIGINAL CODE: 0009260PLBI | PLBI | EP | |
| European patents designating ireland treated as always having been voidFD4D | FD4D | IE | |
| Unpublished change to opponent dataORIGINAL CODE: EPIDOS OPPOPLBQ | PLBQ | EP | |
| Opposition filedOppositionORIGINAL CODE: 0009260PLBI | PLBI | EP | |
| Unpublished change to opponent dataORIGINAL CODE: EPIDOS OPPOPLBQ | PLBQ | EP | |
| Fr: translation filedET | ET | EP | |
| Definitive protectionFG2A | FG2A | ES | |
| Gb: translation of ep patent filed (gb section 77(6)(a)/1977)GBT | GBT | EP | |
| New agentNV | NV | CH | |
| Lapsed in a contracting state [announced via postgrant information from national office to epo]LapsedPG25 | PG25 | EP | |
| Lapsed in a contracting state [announced via postgrant information from national office to epo]LapsedPG25 | PG25 | EP | |
| Annual fee paid to national office [announced via postgrant information from national office to epo]GrantedPGFP | PGFP | EP | |
| Lapsed in a contracting state [announced via postgrant information from national office to epo]LapsedPG25 | PG25 | EP | |
| Lapsed in a contracting state [announced via postgrant information from national office to epo]LapsedPG25 | PG25 | EP | |
| Lapsed in a contracting state [announced via postgrant information from national office to epo]LapsedPG25 | PG25 | EP | |
| Corresponds to:REF | REF | EP | |
| European patents granted designating irelandGrantedGERMANFG4D | FG4D | IE | |
| European patent takes effect as a national patent in ch/liEP | EP | CH | |
| Designated contracting statesAK | AK | EP | |
| European patent grantedGrantedNOT ENGLISHFG4D | FG4D | GB | |
| Lapsed in a contracting state [announced via postgrant information from national office to epo]LapsedPG25 | PG25 | EP | |
| Lapsed in a contracting state [announced via postgrant information from national office to epo]LapsedPG25 | PG25 | EP | |
| Corresponds to:REF | REF | EP | |
| (expected) grantORIGINAL CODE: 0009210GRAA | GRAA | EP | |
| Information provided on other rights and legal means of execution20020129 AT BE CH DE DK ES FI FR GB GR IE IT LI LU NL PT SE111Z | 111Z | EP | |
| Despatch of communication of intention to grant a patentORIGINAL CODE: EPIDOS IGRAGRAH | GRAH | EP | |
| Despatch of communication of intention to grantORIGINAL CODE: EPIDOS AGRAGRAG | GRAG | EP | |
| Despatch of communication of intention to grant a patentORIGINAL CODE: EPIDOS IGRAGRAH | GRAH | EP | |
| Title (correction)AUTHORIZATION METHOD AND SYSTEM IN DATA TRANSFER SYSTEMSRTI1 | RTI1 | EP | |
| Despatch of communication of intention to grantORIGINAL CODE: EPIDOS AGRAGRAG | GRAG | EP | |
| First examination report despatched17Q | 17Q | EP | |
| Designated contracting states (corrected)RBV | RBV | EP | |
| Designation fees paidAT BE CH DE DK ES FI FR GB GR IE IT LI LU MC NL PTAKX | AKX | EP | |
| Request for examination filed17P | 17P | EP | |
| Designated contracting statesAK | AK | EP | |
| Request for extension of the european patentAL;LT;LV;MK;RO;SIAX | AX | EP | |
| Search report despatchedORIGINAL CODE: 0009013PUAL | PUAL | EP | |
| Designated contracting statesAK | AK | EP | |
| Request for extension of the european patentAL;LT;LV;MK;RO;SIAX | AX | EP | |
| Public reference made under article 153(3) epc to a published international application that has entered the european phaseORIGINAL CODE: 0009012PUAI | PUAI | EP |
Numbers
- Publication
- 0875871
- Publication, DOCDB
- 0875871
- Publication, EPODOC
- EP0875871
- Application
- 98100688
- Application, DOCDB
- 98100688
- Application, EPODOC
- EP19980100688
Titles3
- German
- Verfahren zur Autorisierung in Datenübertragungssystemen
- English
- Authorization method in data transfer systems
- French
- Méthode d'authorisation dans des systèmes de transfert de données
Classification
- CPC, 14
- G06F21/335
- G06Q20/401
- G06F21/42
- G06F21/43
- G06F2221/2103
- G06F2221/2153
- G06Q20/04
- G06Q20/385
- G06Q20/425
- H04L63/083
- H04L63/18
- H04L2463/102
- H04W12/06
- H04W12/08
- IPC, 15
- E05B49 00
- G06F12 00
- G06F21 33
- G06F21 42
- G06F21 43
- G06Q20 00
- G07C9 00
- G07F7 10
- G07F19 00
- G09C1 00
- H04L9 32
- H04L29 06
- H04M11 00
- H04N1 44
- H04W12 06
Designated states24
- Contracting states, 18
- Austria
- Belgium
- Switzerland
- Germany
- Denmark
- Spain
- Finland
- France
- United Kingdom
- Greece
- Ireland
- Italy
- Liechtenstein
- Luxembourg
- Monaco
- Netherlands (Kingdom of the)
- Portugal
- Sweden
- Extension states, 6
- Albania
- Lithuania
- Latvia
- North Macedonia
- Romania
- Slovenia