US20090030843A1

Smart card load and purchase transactions using wireless telecommunications network

Claim Score by NHIP

Read claim 17, the broadest

Abstract

A smart card transaction allows a consumer to load value onto a smart card and to make purchases using a smart card with a mobile telephone handset over the telecommunications network. For loading, the system includes: a mobile telephone handset including a card reader; a gateway computer; a funds issuer computer; and an authentication computer. The mobile telephone handset receives a request from a user to load a value onto the smart card. The handset generates a funds request message which includes the value and sends the funds request message to a funds issuer computer. The funds issuer computer debits an account associated with the user. Next, the handset generates a load request message with a cryptographic signature and sends the load request message to an authentication computer which authenticates the smart card. The handset receives a response message which includes a cryptographic signature and an approval to load. Finally, the handset validates the second cryptographic signature and loads the value onto the smart card. For payment, the system includes a merchant server and a payment server. First, the handset sends an order request message to the merchant server computer, and in return receives a purchase instruction message. The handset processes the purchase instruction message locally, and then sends a draw request message to a payment server computer. The payment server computer sends a debit message which includes a cryptographic signature and an approval to debit the smart card. Finally, the handset validates the cryptographic signature and debits the smart card.

US20090030843A1, drawing sheet 1
Sheet 1 of 10

Term

Term ended

Projected expiry passed 31 May 2020, 6.3 years ago.

  1. Priority
  2. Filed
  3. Published
  4. Projected expiry
  5. Today

25 claims: 4 independent, 21 dependent

  1. 1
    A method of loading value onto a subscriber identification module (SIM) located within a mobile telephone handset of a user, said method comprising:sending a funds request message from said SIM to a bank system that controls an account of said user, said funds request message including a load value and a funding account identifier that identifies said account of said user;sending a funds response message from said bank system to said SIM indicating an approval to debit said user account by said load value;sending a load request message from said SIM to an issuer system, said load request message including a first cryptographic signature, wherein said first cryptographic signature is generated using a first cryptographic key shared between said SIM and an issuer;validating said first cryptographic signature by said issuer system and authenticating said SIM;sending a load response message from said issuer system to said SIM including a second cryptographic signature, wherein said second cryptographic signature is generated using a second cryptographic key shared between said SIM and said issuer;validating, by said SIM, said second cryptographic signature;and loading said load value into a stored-value application of said SIM.
  2. 7
    A method of loading value over a wireless telecommunications network onto a subscriber identification module (SIM) located within a mobile telephone handset, said method comprising:receiving at said SIM within said mobile telephone handset a request from a user to load a load value onto said SIM;generating, by said SIM, a cryptographic signature S 1 using a first cryptographic key shared between said SIM and an issuer;preparing a load data message that includes said load value, a funding account identifier, and said cryptographic signature S 1 ;sending said load data message over said telecommunications network from said SIM of said handset to a gateway server computer;receiving an approval response message from said gateway server computer at said SIM of said handset, said approval response message including a cryptographic signature S 2 and an approval to load said load value, wherein said cryptographic signature S 2 is generated using a second cryptographic key shared between said SIM and said issuer;validating, by said SIM, said cryptographic signature S 2 ;and loading said load value into a stored-value application of said SIM.
  3. 12
    A method of purchasing an item from a merchant by a user over a wireless telecommunications network using a mobile telephone handset, said method comprising:formulating a draw request message at a subscriber identification module (SIM) of said handset that includes a purchase amount of said item;sending said draw request message over said telecommunications network from said SIM of said handset to a payment server computer associated with said merchant;generating a first cryptographic signature at said payment server computer using a first cryptographic key shared between said SIM and an issuer;sending a debit message from said payment server computer to said SIM in said handset including said second cryptographic signature and an approval to debit said SIM by said purchase amount;verifying said first cryptographic signature at said SIM using said first shared cryptographic key;debiting a stored-value application of said SIM by said purchase amount;sending a debit result message from said SIM to said payment server computer that includes a second cryptographic signature, said second cryptographic signature being generated using a second cryptographic key shared between said SIM and said issuer, said second cryptographic signature uniquely identifying said SIM and indicating that said stored-value application of said SIM has been debited by said purchase amount;verifying said second cryptographic signature from said SIM using said second shared cryptographic key;and sending a confirmation message from said payment server computer to said merchant indicating that said SIM has been debited by said purchase amount, whereby said merchant releases said item to said user.
  4. 17
    Broadest claimClaim Score 41, average(NHIP)A method of purchasing an item from a merchant server computer by a user over a wireless telecommunications network using a mobile telephone handset, said method comprising:formulating a draw request message at said handset that includes a purchase amount of said item;sending said draw request message over said telecommunications network from a subscriber identification module (SIM) of said handset to a payment server computer associated with said merchant server computer;receiving a debit message at said handset from said payment server computer that includes a cryptographic signature S 2 and an approval to debit said SIM by said purchase amount, said cryptographic signature S 2 being generated using a first cryptographic key shared between said SIM and an issuer;verifying said cryptographic signature S 2 at said SIM using said first shared cryptographic key;debiting a stored-value application of said SIM by said purchase amount;sending a debit result message from said SIM to said payment server computer that includes a cryptographic signature S 3 , said cryptographic signature S 3 being generated using a second cryptographic key shared between said SIM and said issuer, said signature S 3 uniquely identifying said SIM and indicating that said stored-value application of said SIM has been debited by said purchase amount;and receiving said item by said user.