Fuel dispensing payment system for secure evaluation of cardholder data

US10657524B2 · US · B2

Patent metadata
FieldValue
Publication numberUS-10657524-B2
Application numberUS-201615042947-A
CountryUS
Kind codeB2
Filing dateFeb 12, 2016
Priority dateDec 22, 2010
Publication dateMay 19, 2020
Grant dateMay 19, 2020

How to read this patent

A practical reading order for non-experts. Skip the full description unless you need deep technical detail.

  1. Title

    What the patent document calls the invention.

  2. Abstract

    A short plain-language summary of the technical disclosure.

  3. Assignees and inventors

    Who owns or filed the patent and who is credited as inventor.

  4. Key dates

    Filing, priority, publication, and grant dates set the timeline.

  5. First independent claim

    The legal scope of protection — read this for what is actually claimed.

  6. CPC / IPC classifications

    Technology tags used to group this patent with similar filings.

  7. Citations and related patents

    Prior art links and similar publications in this corpus.

Abstract

Official abstract text for this publication.

A secure evaluation assembly in which an encrypted communication of cardholder data from an input device to a remote host processing system may be securely evaluated. The secure evaluation assembly includes antitampering control electronics and a memory. The secure evaluation assembly memory contains information needed to decrypt data encrypted according to a first encryption method and information needed to encrypt data according to a second encryption method. Further, the secure evaluation assembly memory is encrypted according to a third encryption method. The antitampering control electronics are operative to decrypt the secure evaluation assembly memory and are further operative to decrypt cardholder data encrypted according to the first encryption method to produce unencrypted cardholder data. Finally, the antitampering control electronics are operative to evaluate the unencrypted cardholder data and encrypt the unencrypted cardholder data according to the second encryption method if the unencrypted cardholder data is payment cardholder data.

First claim

Opening claim text (preview).

What is claimed is: 1. A secure evaluation assembly in which an encrypted communication of cardholder data from an input device to a remote host processing system may be securely evaluated, comprising: a secure semiconductor chip; and a secure evaluation assembly memory, said secure evaluation assembly memory containing information needed to decrypt data encrypted according to a first encryption method and information needed to encrypt data according to a second encryption method; wherein said secure semiconductor chip is programmed to: encrypt, according to a third encryption method, said information contained in said secure evaluation assembly memory; receive cardholder data from the input device, the cardholder data encrypted according to said first encryption method; access said information contained in the secure evaluation assembly memory and decrypt said information contained in the secure evaluation assembly memory according to the third encryption method; decrypt the cardholder data received from the input device according to the first encryption method to produce unencrypted cardholder data; determine whether at least a portion of the unencrypted cardholder data comprises a primary account number (PAN); if said at least a portion of the unencrypted cardholder data comprises a PAN: encrypt said unencrypted cardholder data according to said second encryption method to produce second encrypted cardholder data; transmit the second encrypted cardholder data to a remote hosting system as part of an authorization request for a transaction; and receive an authorization response message from the remote hosting system; if said at least a portion of the unencrypted cardholder data does not comprise a PAN: transmit said unencrypted cardholder data to a local processing system in clear- text form. 2. A secure evaluation assembly as in claim 1 , wherein said first and second encryption methods are different. 3. A secure evaluation assembly as in claim 2 , wherein said secure evaluation assembly memory contains information needed to encrypt data according to more than one second encryption method. 4. A secure evaluation assembly as in claim 3 , wherein said secure control electronics selects the second encryption method after evaluating said unencrypted cardholder data. 5. A secure evaluation assembly as in claim 3 , wherein said secure evaluation assembly memory contains a site configuration file. 6. A secure evaluation assembly as in claim 1 , wherein said secure semiconductor chip is antitampering. 7. A secure evaluation assembly as in claim 1 , said secure semiconductor chip comprising an internal memory storing information needed to decrypt data encrypted according to said third encryption method. 8. A secure evaluation assembly as in claim 7 , wherein said third encryption method comprises AES-128. 9. A secure evaluation assembly as in claim 1 , further comprising a universal serial bus interface. 10. A secure evaluation assembly as in claim 9 , wherein said secure evaluation assembly is located at a cardholder data handling device. 11. A secure evaluation assembly as in claim 10 , wherein said cardholder data handling device is selected from the group consisting of a fuel dispenser control system, a POS, and a site controller. 12. A secure evaluation assembly as in claim 1 , wherein said secure semiconductor chip is further operative to evaluate said unencrypted cardholder data to perform transaction validation. 13. A secure evaluation assembly as in claim 12 , wherein said secure evaluation assembly memory contains a transaction log file. 14. A secure evaluation assembly as in claim 1 , wherein said secure evaluation assembly is implemented as an antitampering CPU.

Assignees

Inventors

Classifications

  • combining multiple encryption tools for a transaction · CPC title

  • G06Q20/40Primary

    Authorisation, e.g. identification of payer or payee, verification of customer or shop credentials; Review and approval of payers, e.g. check credit lines or negative lists · CPC title

  • wherein the volume is determined during delivery · CPC title

  • insuring higher security of transaction · CPC title

  • using cards, e.g. integrated circuit [IC] cards or magnetic cards · CPC title

Patent family

Related publications grouped by family.

External sources

Frequently asked questions

Answers are generated from the same data shown on this page.

What does patent US10657524B2 cover?
A secure evaluation assembly in which an encrypted communication of cardholder data from an input device to a remote host processing system may be securely evaluated. The secure evaluation assembly includes antitampering control electronics and a memory. The secure evaluation assembly memory contains information needed to decrypt data encrypted according to a first encryption method and informa…
Who is the assignee on this patent?
Gilbarco Inc, Gilbarco Srl
What technology area does this patent fall under?
Primary CPC classification G06Q20/3823. Mapped technology areas include Physics.
When was this patent published?
Publication date Tue May 19 2020 00:00:00 GMT+0000 (Coordinated Universal Time) (B2). Legal status and post-grant events are not shown on this page.
What related patents are in patentsdb?
We list 8 related publications on this page (citations in our corpus or others sharing the same primary CPC).