Nova Patents
EP1387239A2

Secure messaging

Abstract

A messaging method and system sends secure emails (14) by the email originator (10) removing the portion of the email (14) which is confidential (24) from the body of the email (14). The removed portion (24) is sent to a secure storage site (30). The residue (20) of the email (14) is sent to the intended recipient (12), together with a notification (22) that the confidential portion (24) is at the secure site (30). Secure storage site 30 then sends a SMS text message (38) to the recipient's mobile phone (44) which has an authentication code (38) which the recipient (12) uses to establish identity and retrieve the confidential portion (24) of the email message (14) from the secure store (30). The secure store (30) emails the originator with notification (60) when the recipient (12) retrieves the secure portion (24) of the email message (14).

EP1387239A2, drawing sheet 1
Sheet 1 of 13

Term

Term ended

Projected expiry passed 30 July 2023, 3.2 years ago.

  1. Priority
  2. Filed
  3. Published
  4. Projected expiry
  5. Today

48 claims: 12 independent, 36 dependent

  1. 1
    A method for secure electronic communication of an email message from an originator to a recipient, said method comprising the steps of:said originator removing a security sensitive portion of the message;said originator employing first communication means to send the removed portion to an external store, said external store being operative to grant access to said stored removed portion upon presentation of a two factor authentication comprising an authentication code and a reference code;said originator employing email to send the residue of the message, along with the reference code and notification that said removed portion is in said store, to said recipient;employing second communications means to send said authentication code to said recipient;said recipient accessing said external store;and said recipient employing third communication means to provide said external store with the necessary two factor authentication comprising said reference code and said authentication code and for said external store to grant access to said removed portion.
  2. 4
    A method, according to any one of the preceding claims, wherein said first communication means includes a secure Internet connection.
  3. 7
    A method, according to any one of the preceding claims, wherein said first communication means comprises a secure network connection.
  4. 9
    A method, according to any one of the preceding claims wherein said second communication means includes connection through a gateway.
  5. 18
    A method, according to any one of the preceding claims, wherein said authentication code is uniquely generated for each stored portion.
  6. 19
    A method, according to any one of the preceding claims, including the step of providing the originator's identity along with said authentication code.
  7. 20
    A method, according to any one of the preceding claims wherein said third means of communication includes a secure Internet connection from a web browser connecting via an encrypted link to a web server
  8. 21
    A method, according to any one of the preceding claims wherein said third means of communication includes a secure Internet connection from a web browser connecting via the URL HTTPS.
  9. 22
    A method, according to any one of the preceding claims wherein said third means of communication includes a secure Internet connection from a web browser connecting via a Secure Socket layer (SSL) to a web server.
  10. 23
    A method, according to any one of the preceding claims wherein said third means of communication includes a secure Internet connection from a web browser connecting via Transport Layer Security (TLS) to a web server.
  11. 24
    A method, according to any one of the preceding claims wherein said third means of communication includes a secure Internet connection from a mobile device's Wireless Access Protocol (WAP) browser connecting to a WAP gateway.
  12. 25
    A system for secure electronic communication of an email message from an originator to a recipient, said system comprising:removal means for said originator to remove at least a security sensitive portion of the message;first communication means for said originator to send the removed portion to an external store, said external store being operative to grant access to said stored removed portion upon presentation of an authentication comprising an authentication code and a reference code ;email means for said originator to send the residue of the message, with notification that said removed portion is in said store, to said recipient;second communications means to send said authentication to said recipient;accessing means for said recipient to access said external store;and third communication means for said recipient to provide said external store with said two factor authentication comprising said reference code and said authentication code for said external store to grant access to said removed portion.
  13. 28
    A system, according to any one of claims 25 to 27, wherein said first communication means includes a network connection.
  14. 31
    A system, according to any one of claims 25 to 30, wherein said first communication means comprises an Internet connection.
  15. 33
    A system, according to any one of the claims 25 to 32, wherein said second communication means includes means to connect through a gateway.
  16. 42
    A system, according to any one of claims 25 to 41, wherein said authentication code is uniquely generated for each stored portion.
  17. 43
    A system, according to any one of claims 25 to 42, including means to provide the identity of the originator along with said authentication code.
  18. 44
    A system, according to any one of claims 25 to 43, wherein said third means of communication includes a secure Internet connection from a web browser connecting via an encrypted link to a web server
  19. 45
    A system, according to any one of claims 25 to 44, wherein said third means of communication includes a secure Internet connection from a web browser connecting via the URL HTTPS.
  20. 46
    A system, according to any one of claims 25 to 45, wherein said third means of communication includes a secure Internet connection from a web browser connecting via a Secure Socket layer (SSL) to a web server.
  21. 47
    A system, according to any one of claims 25 to 46, wherein said third means of communication includes a secure Internet connection from a web browser connecting via Transport Layer Security (TLS) to a web server.
  22. 48
    A system, according to any one of claims 25 to 47, wherein said third means of communication includes a secure Internet connection from a mobile device's Wireless Access Protocol (WAP) browser connecting to a WAP gateway.
Independent claims22