Method and system for provisioning access data to mobile device

US10798571B2 · US · B2

Patent metadata
FieldValue
Publication numberUS-10798571-B2
Application numberUS-201816057361-A
CountryUS
Kind codeB2
Filing dateAug 7, 2018
Priority dateMay 8, 2014
Publication dateOct 6, 2020
Grant dateOct 6, 2020

How to read this patent

A practical reading order for non-experts. Skip the full description unless you need deep technical detail.

  1. Title

    What the patent document calls the invention.

  2. Abstract

    A short plain-language summary of the technical disclosure.

  3. Assignees and inventors

    Who owns or filed the patent and who is credited as inventor.

  4. Key dates

    Filing, priority, publication, and grant dates set the timeline.

  5. First independent claim

    The legal scope of protection — read this for what is actually claimed.

  6. CPC / IPC classifications

    Technology tags used to group this patent with similar filings.

  7. Citations and related patents

    Prior art links and similar publications in this corpus.

Abstract

Official abstract text for this publication.

A method and system for provisioning access data in a second application on a mobile device using a first application on the mobile device. Authentication data may be input into the first application, and an authentication code may be requested from a remote server. After the authentication code is received by the first application in the mobile device, it can pass the authentication code to a second application that initiates an access data provisioning process.

First claim

Opening claim text (preview).

What is claimed is: 1. A method comprising: receiving, by an authorization computer system and from a mobile device, authentication data from a first application on the mobile device; validating, by the authorization computer system, the authentication data; in response to determining that the authentication data are valid, creating, by the authorization computer system, an authentication code, by concatenating a first portion comprising encrypted information and a second portion comprising unencrypted information, the unencrypted information comprising a key index and the encrypted information including an encrypted account number, a date and time when the authentication data was validated, and an authorization code; providing, by the authorization computer system, the authentication code to a validation entity computer using a communication path that does not involve the mobile device; and transmitting, by the authorization computer system, the authentication code to the validation entity computer via the first application and a second application on the mobile device, the validation entity computer locating a key using the key index in the authentication code, decrypting the encrypted information with the key to determine the account number, the date and time when the authentication data was validated, and the authorization code, determining that the authentication code is valid using at least the authentication code received from the authorization computer system, the authorization code, and the date and time when the authentication data was validated, and then instructing a provisioning server computer to provision the second application on mobile device with access data related to the account number. 2. The method of claim 1 wherein the access data is account data permitting the mobile device to conduct a transaction. 3. The method of claim 1 wherein the unencrypted information comprises information regarding a type of authentication code. 4. The method of claim 1 wherein the mobile device is a mobile phone. 5. The method of claim 1 , wherein the access data comprises a payment token. 6. The method of claim 1 , wherein the account number if a primary account number that is sixteen digits long. 7. The method of claim 1 , wherein the first application is an online banking application and the second application is a digital wallet application. 8. The method of claim 1 , wherein the authentication data is a password. 9. The method of claim 1 , wherein the key is a private key of a public private key pair. 10. An authorization computer system comprising: a processor; and a computer readable medium, the computer readable medium comprising code, executable by the processor to implement a method comprising receiving, by the authorization computer system and from a mobile device, authentication data from a first application on the mobile device; validating, by the authorization computer system, the authentication data; in response to determining that the authentication data are valid, creating, by the authorization computer system, an authentication code, by concatenating a first portion comprising encrypted information and a second portion comprising unencrypted information, the unencrypted information comprising a key index and the encrypted information including an encrypted account number, a date and time when the authentication data was validated, and an authorization code; providing, by the authorization computer system, the authentication code to a validation entity computer using a communication path that does not involve the mobile device; and transmitting, by the authorization computer system, the authentication code to the validation entity computer via the first application and a second application on the mobile device, the validation entity computer validating the authentication code, locating a key using the key index in the authentication code, decrypting the encrypted information with the key to determine the account number, the date and time when the authentication data was validated, and the authorization code, determining that the authentication code is valid using at least the authentication code received from the authorization computer system, the authorization code, and the date and time when the authentication data was validated, and then instructing a provisioning server computer to provision the second application on the mobile device with access data related to the account number. 11. The authorization computer system of claim 10 wherein the access data is account data permitting the mobile device to conduct a transaction. 12. The authorization computer system of claim 10 wherein the unencrypted information comprises information regarding a type of authentication code.

Assignees

Inventors

Classifications

  • characterised by personalisation for use · CPC title

  • characterised by activation or deactivation of payment capabilities · CPC title

  • Managing security policies for mobile devices or for controlling mobile applications · CPC title

  • Protecting application or service provisioning, e.g. securing SIM application provisioning · CPC title

  • Use of certificates or encrypted proofs of transaction rights · CPC title

Patent family

Related publications grouped by family.

External sources

Frequently asked questions

Answers are generated from the same data shown on this page.

What does patent US10798571B2 cover?
A method and system for provisioning access data in a second application on a mobile device using a first application on the mobile device. Authentication data may be input into the first application, and an authentication code may be requested from a remote server. After the authentication code is received by the first application in the mobile device, it can pass the authentication code to a …
Who is the assignee on this patent?
Visa Int Service Ass
What technology area does this patent fall under?
Primary CPC classification H04W12/06. Mapped technology areas include Electricity.
When was this patent published?
Publication date Tue Oct 06 2020 00:00:00 GMT+0000 (Coordinated Universal Time) (B2). Legal status and post-grant events are not shown on this page.
What related patents are in patentsdb?
We list 5 related publications on this page (citations in our corpus or others sharing the same primary CPC).