IP Library Granted Patent US 10,025,920
Granted Patent B2
US 10,025,920 · App. 13/490,677 · Granted Jul 17, 2018

Enterprise triggered 2CHK association

Inventors: Peter George Tapling (Park Ridge, IL); Andrew Robert Rolfe (East Dundee, IL); Ravi Ganesan (West Palm, FL)
Assignee: Early Warning Services, LLC
G06F21/42H04L9/3226H04L9/3234H04L9/3247H04L63/0428H04L63/083H04L63/18
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 10,025,920
App. No.
13/490,677
Granted
Jul 17, 2018
Kind
B2
Abstract

A method of operating a security server to securely transact business between a user and an enterprise via a network includes receiving, at the security server from an enterprise with which the user is currently connected via the network, a request of the enterprise to activate a secure communications channel over the network between the user and the security server. The request includes contact information for contacting the user via other than the network. The security server, in response, transmits an activation code for delivery to the user via other than the network and in a manner corresponding to the received contact information. The security server receives, from the user via the network, an activation code and compares the received activation code with the transmitted activation code to validate the received activation code. The secure communications channel is then activated based on the validation of the received activation code.

Claims (39)

1. A method of operating a security server to securely transact business between a user and an enterprise via a network, comprising:

receiving, at the security server from an enterprise with which the user is currently connected via the network, a request of the enterprise to activate a secure communications channel over the network between the user and the security server, wherein the request includes contact information for contacting the user via other than the network;

transmitting, by the security server in response to the received activation request, an activation code for delivery to the user via other than the network and corresponding to the received contact information; receiving, at the security server from the user via the network, an activation code;

comparing, at the security server, the received activation code with the transmitted activation code to validate the received activation code;

activating the secure communications channel based on the validation of the received activation code, wherein the activated secure communications channel is a channel in which data is encrypted based on the validated received activation code;

receiving, at the security server, transaction information including an identifier for identifying the enterprise;

generating, at the security server based on the received transaction information, a one-time password for use by the user as a transaction signature, wherein:

the one-time-password is generated as a function of the identifier and a secret known only by the security server and the enterprise;

and the secret comprises a predetermined value agreed upon by both the security server and the enterprise to be used for generating all additional one-time passwords for all additional users transacting business with the enterprise;

transmitting the generated one time password from the security server to the user via the secure communications channel;

receiving, by the enterprise, the transmitted one time password to the enterprise from the user;

comparing, by the enterprise, the received one time password and a calculated one time password calculated by the enterprise using the secret and the identifier;

and transacting, by the enterprise, the business when the comparison is a match.

2. The method of claim 1 , further comprising:

transmitting the received transaction information, from the security server to the user via the secure communications channel, wherein the transaction information comprises an identifier of the enterprise and details of a transaction which the user desires to enter into with the enterprise.

3. The method of claim 2 , wherein the enterprise is a first enterprise, the transaction information is first transaction information, and further comprising:

receiving, at a security server, second transaction information including an identifier of a second enterprise and details of a second transaction which the user desires to enter into with the second enterprise; and

transmitting the second transaction information, from the security server to the user via the secure communications channel.

4. The method of claim 3 , wherein a valid user signature on the second transaction is required by the second enterprise, further comprising: generating, at the security server based on the received second transaction information, a second one-time password for use by the user as a transaction signature; transmitting the generated second one time password from the security server to the user via the secure communications channel; receiving, at the security server from the second enterprise, confirmation of receipt by the second enterprise from the user of the second transaction validly signed with the transmitted second one time password; and transmitting, from the security server to the user via the secure communications channel, confirmation that the second enterprise received the validly signed second transaction.

5. The method of claim 2 , further comprising:

incorporating, at the security server, the received transaction information into at least one of a voice stream and an image;

wherein the transmitted transaction information is the transaction information incorporated into the at least one of the voice stream and the image.

6. The method of claim 5 , wherein the voice stream is a voice stream having a voice recognizable by the user and the image is an image having a background known to the user.

7. A method of operating a security server to securely transact business between a user and an enterprise via a network, comprising:

receiving, at the security server from the user, a request of the user, including contact information for contacting, the user via other than the network, to activate a secure communications channel over the network between the user and the security server;

transmitting, by the security server to the user via the network response to the received activation request, notification that the secure communications channel is quasi activated;

receiving, at the security server, transaction information including an identifier of an enterprise and details of a transaction which the user desires to enter into with the enterprise;

transmitting, by the security server in response to the received transaction information, an activation code for delivery to the user via other than the network and corresponding to the received contact information;

receiving, at the security server from the user via the network, an activation code;

comparing, at the security server, the received activation code with the transmitted activation code to validate the received activation code;

activating the secure communications channel based on the validation of the received activation code, wherein the activated secure communications channel is a channel in which data is encrypted based on the validated received activation code;

transmitting the transaction information, from the security server to the user via the activated secure communications channel;

generating, at the security server based on the received transaction information, a one-time-password for use by the user as a transaction signature, wherein:

the one-time-password is generated as a function of the identifier and a secret known only by the security server and the enterprise;

and the secret comprises a predetermined value agreed upon by both the security server and the enterprise to be used for generating all additional one-time passwords for all additional users transacting business with the enterprise;

transmitting the generated one time password from the security server to the user via the secure communications channel;

receiving, by the enterprise, the transmitted one time password to the enterprise from the user;

comparing, by the enterprise, the received one time password and a calculated one time, password calculated by the enterprise using the secret and the identifier;

and transacting, by the enterprise, the business when the comparison is a match.

Assignments (11)
CHANGE OF NAME Recorded Mar 13, 2025
From: PAYFONE, INC.
To: PROVE IDENTITY, INC.
Reel/Frame 070499/0580 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jul 8, 2020
From: EARLY WARNING SERVICES, LLC
To: PAYFONE, INC.
Reel/Frame 053148/0191 →
CONFIRMATORY GRANT OF SECURITY INTEREST IN PATENTS Recorded Jun 18, 2020
From: PAYFONE, INC.
To: JPMORGAN CHASE BANK, N.A.
Reel/Frame 052984/0061 →
CORRECTIVE ASSIGNMENT TO CORRECT THE ASSIGNEE NAME FROM AUTHENTIFY INC. TO AUTHENTIFY, INC. AND THE STREET NAME IN THE ASSIGNEE ADDRESS FROM HAGGINS TO HIGGINS PREVIOUSLY RECORDED ON REEL 028334 FRAME 0759. ASSIGNOR(S) HEREBY CONFIRMS THE ASSIGNMENT OF ASSIGNORS INTEREST. Recorded Apr 20, 2020
From: TAPLING, PETER GEORGE; ROLFE, ANDREW ROBERT; GANESAN, RAVI
To: AUTHENTIFY, INC.
Reel/Frame 052631/0971 →
CORRECTIVE ASSIGNMENT TO CORRECT THE NAME OF THE RECEIVING PARTY ON THE RELEASE OF SECURITY INTEREST AGREEMENT FROM AUTHENTIFY INC. TO AUTHENTIFY, INC. PREVIOUSLY RECORDED ON REEL 037147 FRAME 0213. ASSIGNOR(S) HEREBY CONFIRMS THE RELEASE OF SECURITY INTEREST. Recorded Apr 20, 2020
From: JMI SERVICES, LLC
To: AUTHENTIFY, INC.
Reel/Frame 052448/0075 →
CORRECTIVE ASSIGNMENT TO CORRECT THE ASSIGNOR NAME PREVIOUSLY RECORDED AT REEL: 041610 FRAME: 0944. ASSIGNOR(S) HEREBY CONFIRMS THE ASSIGNMENT . Recorded Aug 23, 2017
From: AUTHENTIFY, LLC
To: EARLY WARNING SERVICES, LLC
Reel/Frame 043649/0549 →
MERGER AND CHANGE OF NAME Recorded Jul 25, 2017
From: AUTHENTIFY, INC.; AUTHENTIFY, LLC
To: AUTHENTIFY, LLC
Reel/Frame 043325/0945 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Mar 17, 2017
From: AUTHENTIFY, INC.
To: EARLY WARNING SERVICES, LLC
Reel/Frame 041610/0944 →
RELEASE OF SECURITY INTEREST Recorded Nov 19, 2015
From: JMI SERVICES , LLC
To: AUTHENTIFY, INC.
Reel/Frame 037147/0213 →
SECURITY INTEREST Recorded Mar 31, 2014
From: AUTHENTIFY, INC.
To: JMI SERVICES, LLC
Reel/Frame 032565/0531 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jun 7, 2012
From: TAPLING, PETER GEORGE; ROLFE, ANDREW ROBERT; GANESAN, RAVI
To: AUTHENTIFY, INC.
Reel/Frame 028334/0759 →
Continuity (1)
Related Publication 20130333006A1 · Dec 12, 2013