IP Library Granted Patent US 9,730,065
Granted Patent B1
US 9,730,065 · App. 15/213,152 · Granted Aug 8, 2017

Credential management

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 9,730,065
App. No.
15/213,152
Granted
Aug 8, 2017
Kind
B1
Abstract

In general, one aspect of the subject matter described in this specification can be embodied in methods that include receiving a registration request from a mobile device to create a credential management account for a user associated with the mobile device; generating a public key and a paired private key associated with the credential management account; transmitting a certificate signing request to a certificate authority system; receiving a digital certificate from the certificate authority system; receiving a request to retrieve a credential for the user from a credential issuing organization; transmitting a request for the credential for the user to the credential issuing organization system; receiving, from the credential issuing organization; transmitting the decrypted data to the credential issuing organization; receiving data for the credential for the user from the credential issuing organization system; and transmitting data encoding a portion of a badge representing the credential.

Claims (41)

1. A method, performed by a user device including one or more processors, comprising:

transmitting, a request for a requested credential to a credential issuing organization system, the requested credential providing access to a physical location, the request for the requested credential comprising a digital certificate which includes a public key and a unique identifier for the user, wherein the public key is associated with a credential management account of the user that is maintained by a credential management system;

receiving a token, different from the digital certificate, identifying the requested credential and a location of the public key from the credential issuing organization system;

transmitting a request to retrieve the requested credential to the credential management system, the request to retrieve the requested credential comprising the token and information identifying the credential management account;

receiving data encoding a portion of a badge representing the requested credential from the credential management system;

in response to receiving the data from the credential management system, presenting the badge on a display of the user device, wherein the badge is a graphical representation of the requested credential which is read by a sensor and validated by a validation device; and

in response to validating the badge, providing the user access to the physical location.

2. The method of claim 1 , further comprising: transmitting a registration request to the credential management system to create the credential management account, the registration request comprising a unique identifier for the user device; and determining the public key associated with the credential management account.

3. The method of claim 2 , wherein determining the public key comprises:

generating the public key and a paired private key; and

storing the public key and the private key.

4. The method of claim 1 , wherein the unique identifier for the user is a government issued identification number.

5. The method of claim 1 , further comprising:

receiving data encoding a portion of a second badge representing a second credential from the credential management system.

6. The method of claim 5 , wherein the second credential is issued by the credential issuing organization system.

7. One or more non-transitory machine-readable media configured to store instructions that are executable by the one or more processors to perform operations comprising:

transmitting, by a user device, a request for a requested credential to a credential issuing organization system, the requested credential providing access to a physical location, the request for the requested credential comprising a digital certificate which includes a public key and a unique identifier for the user, wherein the public key is associated with a credential management account of the user that is maintained by a credential management system;

receiving a token, different from the digital certificate, identifying the requested credential and a location of the public key from the credential issuing organization system;

transmitting a request to retrieve the requested credential to the credential management system, the request to retrieve the requested credential comprising the token and information identifying the credential management account;

receiving data encoding a portion of a badge representing the requested credential from the credential management system;

in response to receiving the data from the credential management system, presenting the badge on a display of the user device, wherein the badge is a graphical representation of the requested credential which is read by a sensor and validated by a validation device; and

in response to validating the badge, providing the user access to the physical location.

8. The one or more non-transitory machine-readable media of claim 7 , the operations further comprising: transmitting a registration request to the credential management system to create the credential management account, the registration request comprising a unique identifier for the user device; and determining the public key associated with the credential management account.

9. The one or more non-transitory machine-readable media of claim 8 , wherein determining the public key comprises:

generating the public key and a paired private key; and

storing the public key and the private key.

10. The one or more non-transitory machine-readable media of claim 7 , wherein the unique identifier for the user is a government issued identification number.

11. An electronic system comprising:

a user device comprising one or more processors; and

one or more machine-readable media configured to store instructions that are executable by the one or more processors to perform operations comprising:

transmitting, by the user device, a request for a requested credential to a credential issuing organization system, the requested credential providing access to a physical location, the request for the requested credential comprising a digital certificate which includes a public key and a unique identifier for the user, wherein the public key is associated with a credential management account of the user that is maintained by a credential management system;

receiving a token, different from the digital certificate, identifying the requested credential and a location of the public key from the credential issuing organization system;

transmitting a request to retrieve the requested credential to the credential management system, the request to retrieve the requested credential comprising the token and information identifying the credential management account;

receiving data encoding a portion of a badge representing the requested credential from the credential management system;

in response to receiving the data from the credential management system, presenting the badge on a display of the user device, wherein the badge is a graphical representation of the requested credential which is read by a sensor and validated by a validation device; and

in response to validating the badge, providing the user access to the physical location.

12. The electronic system of claim 11 , further comprising: transmitting a registration request to the credential management system to create the credential management account, the registration request comprising a unique identifier for the user device; and determining the public key associated with the credential management account.

13. The electronic system of claim 12 , wherein determining the public key comprises:

generating the public key and a paired private key; and

storing the public key and the private key.

14. The electronic system of claim 11 , wherein the unique identifier for the user is a government issued identification number.

Assignments (5)
CHANGE OF NAME Recorded Sep 19, 2025
From: MICROSTRATEGY INCORPORATED
To: STRATEGY INC
Reel/Frame 072909/0779 →
TERMINATION AND RELEASE OF PATENT SECURITY AGREEMENT AT REEL/FRAME: 056647/0687, REEL/FRAME: 057435/0023, REEL/FRAME: 059256/0247, REEL/FRAME: 062794/0255 AND REEL/FRAME: 066663/0713 Recorded Sep 26, 2024
From: U.S. BANK TRUST COMPANY, NATIONAL ASSOCIATION, AS SUCCESSOR IN INTEREST TO U.S. BANK NATIONAL ASSOCIATION, IN ITS CAPACITY AS COLLATERAL AGENT FOR THE SECURED PARTIES
To: MICROSTRATEGY INCORPORATED; MICROSTRATEGY SERVICES CORPORATION
Reel/Frame 069065/0539 →
SECURITY INTEREST Recorded Jun 22, 2021
From: MICROSTRATEGY INCORPORATED
To: U.S. BANK NATIONAL ASSOCIATION, AS COLLATERAL AGENT
Reel/Frame 056647/0687 →
CORRECTIVE ASSIGNMENT TO CORRECT THE ASSIGNMENT DOCUMENT FILED PREVIOUSLY RECORDED ON REEL 041866 FRAME 0587. ASSIGNOR(S) HEREBY CONFIRMS THE ASSIGNMENT. Recorded May 2, 2017
From: CHEN, GANG
To: MICROSTRATEGY INCORPORATED
Reel/Frame 042384/0234 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Apr 5, 2017
From: CHEN, GANG
To: MICROSTRATEGY INCORPORATED
Reel/Frame 041866/0587 →