IP Library Granted Patent US 10,503,916
Granted Patent B2
US 10,503,916 · App. 15/715,784 · Granted Dec 10, 2019

Method and system for identity and credential protection and verification via blockchain

Inventors: Anthony Paul Murphy (Singapore, SG); Timothy Warren Mattingly (Chesterfield, MO); Peter Flor (O'Fallon, MO)
Assignee: MASTERCARD INTERNATIONAL INCORPORATED
G06F21/602G06F21/6245H04L9/0637H04L9/30H04L9/3239H04L9/3247H04L63/06H04L63/0442H04L63/102H04L67/104
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 10,503,916
App. No.
15/715,784
Granted
Dec 10, 2019
Kind
B2
Abstract

A method for distributed storage of identity data includes: receiving entity data for a plurality of entities, the data including an associated public key, associated attributes, and a geographic jurisdiction, and where one entity is a subordinate; generating a data file for each entity including the associated attributes and public key, and where the subordinate entity's data file includes a digital signature associated with a superior entity; generating an identity value for each entity via hashing the associated data file; and storing, in a distributed hash table, a key-value pair for each entity, wherein the key is the associated identity value, the value comprises the associated attributes, and the key-value pair is stored in a physical data storage device located in a geographic area corresponding to the associated geographic jurisdiction.

Claims (27)

1. A method for distributed storage of identity data, comprising:

receiving, by a receiving device of a processing server, entity data for a plurality of entities, wherein the entity data includes at least an associated public key, one or more associated attributes, and a geographic jurisdiction, and where at least one of the plurality of entities is indicated as being a subordinate;

generating, by a generation module of the processing server, a data file for each of the plurality of entities, wherein each data file includes at least the one or more associated attributes and the associated public key, and where the data file for an entity indicated as a subordinate includes a digital signature associated with a superior entity that is superior to the entity indicated as a subordinate;

generating, by a hashing module of the processing server, an identity value for each of the plurality of entities via application of one or more hashing algorithms to the data file generated for the each of the plurality of entities; and

executing, by a querying module of the processing server, a query on a distributed hash table to store, for each of the plurality of entities, a key-value pair comprised of a key and a value, wherein the key in the key-value pair is the identity value for the each of the plurality of entities and the value in the key-value pair comprises at least each of the one or more associated attributes for the each of the plurality of entities, wherein

the distributed hash table is stored across a plurality of physical data storage devices, each data storage device being located in an associated geographic area, and where each key-value pair is stored in a physical data storage device where the associated geographic area corresponds to the geographic jurisdiction included in the entity data for the each of the plurality of entities.

2. The method of claim 1 , wherein the entity data for each of the plurality of entities indicated as a subordinate includes the digital signature associated with the superior entity.

3. The method of claim 1 , wherein the indication as a subordinate is the digital signature associated with the superior entity.

4. The method of claim 1 , wherein

the superior entity is one of the plurality of entities, and

the digital signature associated with the superior entity is generated using a private key corresponding to the associated public key included in the entity data for the superior entity.

5. The method of claim 4 , wherein the entity data for the superior entity includes the associated digital signature.

6. A system for distributed storage of identity data, comprising:

a plurality of physical data storage devices, each data storage device being located in a geographic area; and

a processing server, the processing server including a receiver, processor, and non-transitory computer-readable media storing program code, wherein

the receiver receives entity data for a plurality of entities, wherein the entity data includes at least an associated public key, one or more associated attributes, and a geographic jurisdiction, and where at least one of the plurality of entities is indicated as being a subordinate,

the processor executes the program code causing the processing server to

generate a data file for each of the plurality of entities, wherein each data file includes at least the one or more associated attributes and the associated public key, and where the data file for an entity indicated as a subordinate includes a digital signature associated with a superior entity that is superior to the entity indicated as a subordinate,

generate an identity value for each of the plurality of entities via application of one or more hashing algorithms to the data file generated for the each of the plurality of entities, and

execute a query on a distributed hash table to store, for each of the plurality of entities, a key-value pair comprised of a key and a value, wherein the key in the key-value pair is the identity value for the each of the plurality of entities and the value in the key-value pair comprises at least each of the one or more associated attributes for the each of the plurality of entities, and

the distributed hash table is stored across the plurality of physical data storage devices and where each key-value pair is stored in a physical data storage device where the associated geographic area corresponds to the geographic jurisdiction included in the entity data for the each of the plurality of entities.

7. The system of claim 6 , wherein the entity data for each of the plurality of entities indicated as a subordinate includes the digital signature associated with the superior entity.

8. The system of claim 6 , wherein the indication as a subordinate is the digital signature associated with the superior entity.

9. The system of claim 6 , wherein

the superior entity is one of the plurality of entities, and

the digital signature associated with the superior entity is generated using a private key corresponding to the associated public key included in the entity data for the superior entity.

10. The system of claim 9 , wherein the entity data for the superior entity includes the associated digital signature.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Sep 26, 2017
From: MURPHY, ANTHONY PAUL; MATTINGLY, TIMOTHY WARREN; FLOR, PETER
To: MASTERCARD INTERNATIONAL INCORPORATED
Reel/Frame 044013/0858 →
Continuity (2)
Provisional Application 62404885 · Oct 6, 2016
Related Publication 20180101684A1 · Apr 12, 2018
Cited By (1)
US 12,261,852