EP2600560A2

Systems and methods for secure authentication of electronic transactions

Abstract

An online transaction system configured to implement authentication methods that allow for strong multi-factor authentication in online environments. The authentication methods can be combined with strong security methods (218) to further ensure that the authentication process is secure. Further, the strong multi-factor authentication can be implemented with zero adoption dependencies through the implementation of automated enrollment methods (210).

EP2600560A2, drawing sheet 1
Sheet 1 of 14

Term

Term ended

Projected expiry passed 28 August 2023, 3.1 years ago.

  1. Priority
  2. Filed
  3. Published
  4. Projected expiry
  5. Today

15 claims: 2 independent, 13 dependent

  1. 1
    A method for enrolling a token used in an electronic transaction, the method comprising:interfacing the token comprising a token identifier with a terminal through a standard input device and automatically installing client software included with the token, comprising: checking for existing client software installations;installing the client software when no existing client software installations are found;and when an existing installation is found, checking a serial number of the existing installation to see if it matches a serial number associated with the client software and installing the client software only when the serial number of the existing installation does not match;automatically establishing a connection with an enrollment authority;automatically checking the enrollment status of the token with the enrollment authority;when the status check shows that the token is not enrolled, then generating a personal identifier;and transmitting an enrollment message comprising the personal identifier to the enrollment authority.
  2. 8
    A terminal comprising a standard input device configured to receive a token comprising a token identifier and client software, the client software configured to cause the terminal to:automatically install the client software included with the token;check for existing client software installations;install the client software when no existing client software installations are found;and when an existing installation is found, check a serial number of the existing installation to see if it matches a serial number associated with the client software and install the client software only when the serial number of the existing installation does not match;automatically establish a connection with an enrollment authority;automatically check the enrollment status of the token with the enrollment authority;when the status check shows that the token is not enrolled, then generating a personal identifier;and transmit an enrollment message comprising the personal identifier to the enrollment authority.