IP Library › Granted Patent US 7,437,757
Granted Patent B2
US 7,437,757 · App. 10/346,708 · Granted Oct 14, 2008

Token for use in online electronic transactions

Assignee: US Encode Corporation
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 7,437,757
App. No.
10/346,708
Granted
Oct 14, 2008
Kind
B2
Abstract

An online transaction system configured to implement authentication methods that allow for strong multi-factor authentication in online environments. The authentication methods can be combined with strong security methods to further ensure that the authentication process is secure. Further, the strong multi-factor authentication can be implemented with zero adoption dependencies through the implementation of automated enrollment methods.

Claims (79)

1. A token configured to be interfaced with a terminal through a standard input device, the token comprising client software, which further comprises an autoplay module configured to initiate installation of the client software onto the terminal, configured to:

automatically enroll the token with an enrollment authority upon being interfaced with the terminal, wherein automatically enrolling the token comprises:

interfacing the token comprising a token identifier with the terminal through the standard input device,

automatically establishing a connection with an enrollment authority,

automatically checking the enrollment status of the token with the enrollment authority,

when the status check shows that the token is not enrolled, then generating a personal identifier and transmitting an enrollment message comprising the personal identifier to the enrollment authority, and

linking the personal identifier with account information stored on an enrollment authority server without requiring user intervention to begin the enrollment process; and

handle authentication requests received from an authentication authority by the terminal once the token is enrolled in the authentication program.

2. The token of claim 1 , further configured to be interfaced with the terminal through a CD drive.

3. The token of claim 1 , wherein the client software comprises a trigger module configured to act as a mediator between the client software and the authentication authority.

4. The token of claim 1 , further comprising an installation module configured to handle installation of the client software onto the terminal.

5. The token of claim 1 , further comprising an enrollment module configured to enroll the token with the enrollment authority.

6. The token of claim 1 , further comprising a communications module configured to interface the terminal with the enrollment authority and handle communications between the client software and the enrollment authority.

7. The token of claim 1 , wherein the client software further comprises a message format module configured to execute cryptogram extraction on messages received by the terminal and to format messages transmitted by the terminal.

8. The token of claim 1 , wherein the client software further comprises a cryptographic module configured generate cryptogram responses to cryptogram requests received by the terminal.

9. The token of claim 1 , further comprising a hole that allows the token to be interfaced with the terminal through the standard input device, wherein the hole is off center.

10. The token of claim 9 , further comprising a chip configured to enable the token to be read by a smart card reader, wherein the hole is positioned to accommodate the chip.

11. The token of claim 1 , further comprising a network address that can be used by the client software to automatically connect with the enrollment authority.

12. The token of claim 1 , further comprising a unique serial number that can be used by the client software to install the client software onto the terminal.

13. The token of claim 1 , further comprising unique information that can be used by the client software to enroll token.

14. The token of claim 1 , further comprising dynamic link libraries that can be installed on the terminal.

15. The token of claim 1 , further comprising advertising information that can be displayed on the terminal.

16. The method in claim 1 , wherein generating the personal identifier comprises receiving identifying information and including the identifying information in the enrollment message transmitted to the enrollment authority.

17. The method of claim 1 , wherein automatically enrolling the token further comprises automatically generating the personal identifier.

18. The method of claim 1 , wherein automatically enrolling the token further comprises acquiring unique information from the token and including the unique information in the enrollment message transmitted to the enrollment authority.

19. The method of claim 1 , wherein automatically enrolling the token further comprises prompting a user associated with the token to determine if the user wants to enroll the token, before generating the personal identifier.

20. The method of claim 1 , wherein automatically enrolling the token further comprises encrypting the enrollment message transmitted to the enrollment authority.

21. The method of claim 1 , wherein automatically enrolling the token further comprises automatically establishing a connection with the enrollment authority comprises accessing a network address stored on the token and using the network address to establish the connection with the enrollment authority.

22. The token of claim 1 , wherein the enrollment message is encrypted.

23. The token of claim 1 , further configured to be interfaced with the terminal through a DVD drive.

24. The token of claim 9 , further comprising an integrated circuit configured to enable the token to be read by a smart card reader, wherein the hole is positioned to accommodate the integrated circuit.

25. The token of claim 9 , further comprising a biometric configured to enable the token to be read by a Biometric Reader.

26. A token, comprising:

a hole that allows the token to be interfaced with a terminal through a standard input device, wherein the hole is off center; and

client software configured to:

automatically enroll the token with an enrollment authority upon being interfaced with the terminal; and

handle authentication requests received from an authentication authority by the terminal once the terminal is enrolled in the authentication program.

27. The token of claim 26 , further configured to be interfaced with the terminal through a CD drive.

28. The token of claim 26 , wherein the client software comprises a trigger module configured to act as a mediator between the client software and the authentication authority.

29. The token of claim 26 , wherein the client software comprises an autoplay module configured to initiate installation of the client software onto the terminal.

30. The token of claim 26 , further comprising an installation module configured to handle installation of the client software onto the terminal.

31. The token of claim 26 , further comprising an enrollment module configured to enroll the token with the enrollment authority.

32. The token of claim 26 , further comprising a communications module configured to interface the terminal with the enrollment authority and handle communications between the client software and the enrollment authority.

33. The token of claim 26 , wherein the client software further comprises a message format module configured to execute cryptogram extraction on messages received by the terminal and to format messages transmitted by the terminal.

34. The token of claim 26 , wherein the client software further comprises a cryptographic module configured generate cryptogram responses to cryptogram requests received by the terminal.

35. The token of claim 26 , further comprising a chip configured to enable the token to be read by a smart card reader, wherein the hole is positioned to accommodate the chip.

36. The token of claim 26 , further comprising a network address that can be used by the client software to automatically connect with the enrollment authority.

37. The token of claim 26 , further comprising a unique serial number than can be used by the client software to install the client software onto the terminal.

38. The token of claim 26 , further comprising unique information that can be used by the client software to enroll token.

39. The token of claim 26 , further comprising dynamic link libraries that can be installed on the terminal.

40. The token of claim 26 , further comprising advertising information that can be displayed on the terminal.

41. The token of claim 26 , wherein the enrollment message is encrypted.

42. The token of claim 26 , further configured to be interfaced with the terminal through a DVD drive.

43. The token of claim 26 , further comprising an integrated circuit configured to enable the token to be read by a smart card reader, wherein the hole is positioned to accommodate the integrated circuit.

44. The token of claim 26 , further comprising a biometric configured to enable the token to be read by a Biometric Reader.

45. A token, comprising;

dimensions that are compliant with the ISO 7811 standard for plastic cards and comprising a hole that allows the token to be interfaced with a terminal through a standard input device; and

client software comprising an autoplay module configured to initiate installation of the client software onto the terminal, configured to:

automatically enroll the token with an enrollment authority upon being interfaced with the terminal; and

handle authentication requests received from an authentication authority by the terminal once the terminal is enrolled in the authentication program.

46. The token of claim 45 , further configured to be interfaced with the terminal through a CD drive.

47. The token of claim 45 , wherein the client software comprises a trigger module configured to act as a mediator between the client software and the authentication authority.

48. The token of claim 45 , further comprising an installation module configured to handle installation of the client software onto the terminal.

49. The token of claim 45 , further comprising an enrollment module configured to enroll the token with the enrollment authority.

50. The token of claim 45 , further comprising a communications module configured to interface the terminal with the enrollment authority and handle communications between the client software and the enrollment authority.

51. The token of claim 45 , wherein the client software further comprises a message format module configured to execute cryptogram extraction on messages received by the terminal and to format messages transmitted by the terminal.

52. The token of claim 45 , wherein the client software further comprises a cryptographic module configured generate cryptogram responses to cryptogram requests received by the terminal.

53. The token of claim 45 , further comprising a chip configured to enable the token to be read by a smart card reader, wherein the hole is positioned to accommodate the chip.

54. The token of claim 45 , further comprising a network address that can be used by the client software to automatically connect with the enrollment authority.

55. The token of claim 45 , further comprising a unique serial number than can be used by the client software to install the client software onto the terminal.

56. The token of claim 45 , further comprising unique information that can be used by the client software to enroll token.

57. The token of claim 45 , further comprising dynamic link libraries that can be installed on the terminal.

58. The token of claim 45 , further comprising advertising information that can be displayed on the terminal.

59. The token of claim 45 , wherein the token comprises a thickness of approximately 0.78 millimeters.

60. The token of claim 45 , wherein the token comprises an overall thickness of approximately 1.2 millimeters.

61. The token of claim 45 , wherein the enrollment message is encrypted.

62. The token of claim 45 , further configured to be interfaced with the terminal through a DVD drive.

63. The token of claim 45 , further comprising an integrated circuit configured to enable the token to be read by a smart card reader, wherein the hole is positioned to accommodate the integrated circuit.

64. The token of claim 45 , further comprising a biometric configured to enable the token to be read by a Biometric Reader.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded May 5, 2003
From: HOLDSWORTH, JOHN
To: U.S. ENCODE CORPORATION
Reel/Frame 014018/0782 →
Continuity (3)
Continuation 1033882200 · Jan 7, 2003
Provisional Application 6040942200 · Sep 9, 2002
Related Publication 20050044393A1 · Feb 24, 2005