IP Library › Patent Application 14170556
Patent Application
App. No. 14/170,556

SYSTEMS AND METHODS FOR ENROLLING A TOKEN IN AN ONLINE AUTHENTICATION PROGRAM

Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US None
App. No.
14/170,556
Abstract

An online transaction system configured to implement authentication methods that allow for strong multi-factor authentication in online environments. The authentication methods can be combined with strong security methods to further ensure that the authentication process is secure. Further, the strong multi-factor authentication can be implemented with zero adoption dependencies through the implementation of automated enrollment methods.

Claims (51)

1 . An Internet enabled mobile device, comprising:

a radio communication interface;

a user interface;

a browser application configured to enable the Internet enabled mobile device to engage in an online transaction;

a standard input device configured to interface with a token that comprises transaction information;

an application configured to:

capture the transaction information from the token via the standard input device,

prompt a user of the device to input a personal identifier via the user interface,

provide the transaction information and the personal identifier to an authentication authority for verification of the presence of the token and the identity of the user, and

after verification, provide the transaction information to the browser application in order to complete an online transaction.

2 . The Internet enabled mobile device of claim 1 , wherein the personal identifier is a PIN.

3 . The Internet enabled mobile device of claim 2 , wherein the PIN is a graphical PIN.

4 . The Internet enabled mobile device of claim 1 , wherein the personal identifier at least partially comprises a biometric.

5 . The Internet enabled mobile device of claim 4 , wherein the biometric includes a fingerprint.

6 . The Internet enabled mobile device of claim 1 , wherein the transaction information is included in a cryptogram when provided to the browser application.

7 . The Internet enabled mobile device of claim 1 , wherein the transaction information is included in a cryptogram when provided to the authentication authority.

8 . The Internet enabled mobile device of claim 1 , wherein the transaction information includes account related information.

9 . The Internet enabled mobile device of claim 8 , wherein the account information is credit card account information.

10 . The Internet enabled mobile device of claim 1 , wherein the personal identifier includes a secret shared by the Internet enabled mobile device and the authentication authority.

11 . The Internet enabled mobile device of claim 1 , wherein the Internet enabled mobile device is configured to engage in a transaction.

12 . The Internet enabled mobile device of claim 11 , wherein the transaction is aided via the token.

13 . An Internet enabled mobile device, comprising:

a radio communication interface;

a user interface;

a browser application configured to enable the Internet enabled mobile device to engage in an online transaction;

a standard input device configured to interface with a token that comprises identity information;

an application configured to:

capture the identity information from the token via the standard input device,

prompt a user of the device to input a personal identifier via the user interface,

provide the identity information and the personal identifier to an authentication authority for verification of the presence of the token and the identity of the user, and

after verification, provide the identity information to the browser application in order to complete an online transaction.

14 . The Internet enabled mobile device of claim 13 , wherein the personal identifier is a PIN.

15 . The Internet enabled mobile device of claim 14 , wherein the PIN is a graphical PIN.

16 . The Internet enabled mobile device of claim 13 , wherein the personal identifier at least partially comprises a biometric.

17 . The Internet enabled mobile device of claim 16 , wherein the biometric includes a fingerprint.

18 . The Internet enabled mobile device of claim 13 , wherein the identity information is included in a cryptogram when provided to the browser application.

19 . The Internet enabled mobile device of claim 13 , wherein the identity information is included in a cryptogram when provided to the authentication authority.

20 . The Internet enabled mobile device of claim 13 , wherein the identity information includes account related information.

21 . The Internet enabled mobile device of claim 20 , wherein the account information is bank account information.

22 . A method of engaging in a transaction using an Internet enabled mobile device, comprising:

capturing transaction information from a token via a standard input device included in the Internet enabled mobile device,

prompting a user of the Internet enable mobile device to input a personal identifier via a user interface included in the Internet enable mobile device,

provide the transaction information and the personal identifier to an authentication authority via a radio interface included in the Internet enabled mobile device for verification of the presence of the token and the identity of the user, and

after verification, provide the transaction information in order to complete an online transaction.

23 . The method of claim 22 , wherein the personal identifier is a PIN.

24 . The method of claim 23 , wherein the PIN is a graphical PIN.

25 . The method of claim 22 , wherein the personal identifier at least partially comprises a biometric.

26 . The method of claim 25 , wherein the biometric includes a fingerprint.

27 . The method of claim 22 , wherein the transaction information is included in a cryptogram when provided to the authentication authority.

28 . The method of claim 22 , wherein the transaction information includes account related information.

29 . The method of claim 28 , wherein the account information is credit card account information.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Oct 21, 2016
From: HOLDSWORTH, JOHN
To: U.S. ENCODE CORPORATION
Reel/Frame 040090/0022 →