IP Library Granted Patent US 11,139,984
Granted Patent B2
US 11,139,984 · App. 16/575,273 · Granted Oct 5, 2021

Information processing system, devices and methods

Inventor: Michael Cole (Amersham, GB)
Assignee: VOCALINK LIMITED
H04L9/3247G06F21/6245H04L9/3073H04L9/3234H04L9/3236
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,139,984
App. No.
16/575,273
Granted
Oct 5, 2021
Kind
B2
Abstract

A system for verifying information associated with a user can include at least three devices. The first device is configured to transmit, to the second device, user-associated information, a unique identifier associated with the user-associated information and an identity digital signature generated using an identity private key associated with the user and a message comprising a previously determined hash of a portion of the user-associated information combined with the unique identifier. The second device is configured to generate the hash of the portion of the user-associated information combined with the unique identifier and transmit the generated hash and the identity digital signature to the third device. The third device is configured to lookup the generated hash in a database, verify the identity digital signature using the identity public key related to the generated hash in the database, and upon successful verification, transmit a success response to the second device.

Claims (31)

1. A system for verifying information associated with a user, comprising a first information processor device, a second information processor device and a third information processor device, wherein:

the first information processor device is configured to transmit to the second information processor device: a first message comprising information associated with the user, a unique identifier uniquely associated with the user associated information and an identity digital signature generated using an identity private key of an identity private key and identity public key pair associated with the user and a message generated using a portion of the first message, wherein the first message comprises an identity token, the identity token being valid for a temporary communication session between the first information processor device and second information processor device within which the first message is transmitted from the first information processor device to the second information processor device;

the second information processor device is configured to:

generate a hash of a portion of the user associated information combined with the

unique identifier associated with the user associated information; and

validate the identity token;

transmit, to the third information processor device only if the identity token is successfully validated, a second message comprising the generated hash, the identity digital signature and the portion of the first message based on which the identity

digital signature is generated, wherein the portion of the first message based on which the identity digital signature is generated comprises the identity token; and

the third information processor device is configured:

to lookup the generated hash in a database relating a previously determined hash of the portion of the user associated information combined with the unique identifier associated with the user associated information with the identity public key of the identity private key and identity public key pair associated with the user,

to verify the identity digital signature using the identity public key related to the generated hash in the database, and

upon successful verification of the identity digital signature, to transmit a response to the second information processor device indicating the successful verification.

2. The system according to claim 1 , wherein:

the first information processor device is configured to generate the identity token based on a second portion of the first message and first session information valid for the temporary communication session between the first information processor device and second information processor device.

3. The system according to claim 1 , wherein:

the second information processor device is configured to validate the identity token based on a second portion of the first message and second session information valid for the temporary communication session between the first information processor device and second information processor device, the second session information corresponding to the first session information.

4. The system according to claim 1 , further comprising a fourth information processor device, wherein the fourth information processor device comprises circuitry configured:

to receive, from a first information processor device, the identity public key and user associated information; and

upon successful completion of a checking procedure for checking validity of the user associated information:

to generate the unique identifier associated with the user associated information; to determine the hash of the portion of the user associated information combined with the unique identifier associated with the user associated information, to transmit the hash of the portion of the user associated information combined with the unique identifier associated with the user associated information and the identity public key to the third information processor device, and

to transmit the unique identifier associated with the user associated information to the first information processor device.

5. The system according to claim 4 , wherein the third information processor device is configured to add the received hash of the portion of the user associated information combined with the unique identifier associated with the user associated information and the identity public key to the database.

6. A method comprising:

transmitting from a first information processor device to a second information processor device:

a first message comprising information associated with a user, a unique identifier uniquely associated with a user associated information and an identity digital signature generated using an identity private key of an identity private key and identity public key pair associated with the user and a message generated using a portion of the first message, wherein the first message comprises an identity token, the identity token being valid for a temporary communication session between the first information processor device and second information processor device within which the first message is transmitted from the first information processor device to the second information processor device;

generating, at the second information processor device, a hash of a portion of the user associated information combined with the unique identifier associated with the user associated information;

validating, at the second information processor device, the identity token;

transmitting, to a third information processor device only if the identity token is successfully validated, a second message comprising the generated hash, the identity digital signature and the portion of the first message based on which the identity digital signature is generated, wherein the portion of the first message based on which the identity digital signature is generated comprises the identity token; and

looking up the generated hash, at the third information processor device, in a database relating a previously determined hash of the portion of the user associated information combined with the unique identifier associated with the user associated information with the identity public key of the identity private key and identity public key pair associated with the user,

verifying, at the third information processor device, the identity digital signature using the identity public key related to the generated hash in the database, and

upon successful verification of the identity digital signature, transmitting a response from the third information processor device to the second information processor device indicating the successful verification.

Assignments (3)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Feb 10, 2023
From: VOCALINK LIMITED
To: VOCALINK INTERNATIONAL LIMITED
Reel/Frame 062657/0688 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Feb 6, 2023
From: VOCALINK LIMITED
To: VOCALINK INTERNATIONAL LIMITED
Reel/Frame 062605/0360 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Oct 10, 2019
From: COLE, MICHAEL
To: VOCALINK LIMITED
Reel/Frame 050683/0607 →
Priority Claims (1)
EP 18195366 · Sep 19, 2018 · regional
Continuity (1)
Related Publication 20200092107A1 · Mar 19, 2020
Cited By (1)
US 12,664,304