EP1547298B1

Systems and methods for secure authentication of electronic transactions

Abstract

This record has no abstract on file.

EP1547298B1, drawing sheet 1
Sheet 1 of 13

Term

Term ended

Expired 28 August 2023, 3.1 years ago.

  1. Priority
  2. Filed
  3. Granted
  4. Expired
  5. Today

19 claims: 2 independent, 17 dependent

  1. 1
    A method for secure authentication, comprising:automatically enrolling a token (106) with an enrollment authority (306) upon the token (106) being interfaced with a terminal (102), wherein automatically enrolling the token (106) comprises: interfacing the token (106) comprising a token identifier with the terminal (102) through a standard input device (104), automatically establishing a connection with an enrollment authority (306), automatically checking the enrollment status of the token (106) with the enrollment authority (306), and when the status check shows that the token (106) is not enrolled, then obtaining a personal identifier from a user, linking the personal identifier with an account associated with the token identifier, and transmitting an enrollment message comprising the personal identifier to the enrollment authority (306), receiving an authentication request message at a terminal (102) from an authentication authority (110);prompting the user to interface the token (106) with the terminal (102);extracting unique information from the token (106) once the token (106) is interfaced with the terminal (102);prompting the user for the personal identifier;and generating a response to the authentication request message based on the personal identifier and the unique information.
  2. 10
    A terminal (102) configured for secure authentication, the terminal (102) comprising client software (222) configured to cause the terminal (102) to perform operations comprising:automatically enrolling a token (106) with an enrollment authority (306) upon the token (106) being interfaced with the terminal (102), wherein automatically enrolling the token (106) comprises: interfacing the token (106) comprising a token identifier with the terminal (102) through a standard input device (104), automatically establishing a connection with an enrollment authority (306), automatically checking the enrollment status of the token (106) with the enrollment authority (306), and when the status check shows that the token (106) is not enrolled, then obtaining a personal identifier from a user, linking the personal identifier with an account associated with the token identifier, and transmitting an enrollment message comprising the personal identifier to the enrollment authority (306), receiving an authentication request message from an authentication authority (110);prompting the user to interface the token (106) with the terminal (102);extracting unique information from the token (106) once it is interfaced with the terminal (102);prompting the user for the personal identifier;and generating a response to the authentication request message based on the personal identifier and the unique information.