Provisioning of credentials on an electronic device using passwords communicated over verified channels

US10861090B2 · US · B2

Patent metadata
FieldValue
Publication numberUS-10861090-B2
Application numberUS-201414475273-A
CountryUS
Kind codeB2
Filing dateSep 2, 2014
Priority dateNov 27, 2013
Publication dateDec 8, 2020
Grant dateDec 8, 2020

How to read this patent

A practical reading order for non-experts. Skip the full description unless you need deep technical detail.

  1. Title

    What the patent document calls the invention.

  2. Abstract

    A short plain-language summary of the technical disclosure.

  3. Assignees and inventors

    Who owns or filed the patent and who is credited as inventor.

  4. Key dates

    Filing, priority, publication, and grant dates set the timeline.

  5. First independent claim

    The legal scope of protection — read this for what is actually claimed.

  6. CPC / IPC classifications

    Technology tags used to group this patent with similar filings.

  7. Citations and related patents

    Prior art links and similar publications in this corpus.

Abstract

Official abstract text for this publication.

Systems, methods, and computer-readable media for provisioning credentials on an electronic device are provided. In one example embodiment, a secure platform system may be in communication with an electronic device and a financial institution subsystem. The secure platform system may be configured to, inter alia, detect a selection of a particular commerce credential, access communication mechanism data indicative of at least one communication mechanism of the device, where the at least one mechanism is configured to receive a communication on the device, transmit information to the financial subsystem, where the information includes the mechanism data and the selection of the particular commerce credential, and instruct the financial subsystem to provision the particular commerce credential in a disabled state on the device and communicate credential enablement data to the device using a particular communication mechanism of the at least one communication mechanism indicated by the communication mechanism data.

First claim

Opening claim text (preview).

What is claimed is: 1. A method comprising: receiving, with a financial institution subsystem, a selection of a particular commerce credential to be enabled on an electronic device; receiving, with the financial institution subsystem, communication mechanism data indicative of at least one communication technique of the electronic device; identifying, with the financial institution subsystem, a particular communication technique of the at least one communication technique indicated by the received communication mechanism data that matches a verified communication technique associated with the particular commerce credential; transmitting provisioning data associated with the particular commerce credential from the financial institution subsystem to the electronic device using an other particular communication technique that is different than the particular communication technique; responsive to transmitting the provisioning data, generating, based at least in part on the provisioning data, credential enablement data associated with the particular commerce credential from the financial institution subsystem; and transmitting the credential enablement data to the electronic device using the particular communication technique, wherein the transmitted credential enablement data is configured to update on the electronic device the transmitted provisioning data on the electronic device for updating the particular commerce credential on the electronic device from a disabled state on the electronic device to an enabled state on the electronic device. 2. The method of claim 1 , wherein the particular communication technique comprises one of a text messaging communication technique or an e-mail messaging communication technique. 3. The method of claim 1 , wherein the transmitting the provisioning data to the electronic device using the other particular communication technique comprises communicating the provisioning data to the electronic device via a commercial entity subsystem. 4. The method of claim 3 , wherein the transmitting the credential enablement data to the electronic device comprises transmitting one of a text message communication to the electronic device or an e-mail message communication to the electronic device. 5. The method of claim 1 , wherein: the receiving the selection of the particular commerce credential comprises receiving selection data from the electronic device; and the selection data is generated by an interaction of a user of the electronic device with an online resource running on the electronic device. 6. The method of claim 5 , wherein: the online resource comprises one of an application or a website; and the online resource is related to financial institution subsystem. 7. The method of claim 5 , wherein the transmitting the provisioning data comprises transmitting the provisioning data to the online resource running on the electronic device using the other particular communication technique. 8. The method of claim 1 , wherein the transmitted credential enablement data is configured to be utilized by the electronic device to update on the electronic device the transmitted provisioning data on the electronic device for updating the particular commerce credential on the electronic device from the disabled state on the electronic device to the enabled state on the electronic device automatically. 9. The method of claim 1 , wherein the transmitted credential enablement data is configured to be utilized by the electronic device to update, on the electronic device and responsive to receipt of the credential enablement data, the transmitted provisioning data on the electronic device for updating the particular commerce credential on the electronic device from the disabled state on the electronic device to the enabled state on the electronic device. 10. The method of claim 1 , wherein the transmitted credential enablement data is configured to be utilized by the electronic device to update, on the electronic device the transmitted provisioning data on the electronic device for updating the particular commerce credential on the electronic device from the disabled state on the electronic device to the enabled state on the electronic device. 11. The method of claim 1 , wherein the provisioning data comprises a locked passcode for an applet provisioned on the electronic device for the particular commerce credential. 12. The method of claim 11 , wherein the credential enablement data comprises a password operative to unlock the locked passcode. 13. The method of claim 1 , wherein generating, based at least in part on the provisioning data, the credential enablement data comprises: generating, based at least in part on a provisioning data element of the provisioning data, the credential enablement data, wherein the credential enablement data is configured to interact with the provisioning data element. 14. The method of claim 13 , wherein the provisioning data element comprises a specific reciprocal data element corresponding to the credential enablement data. 15. The method of claim 1 , wherein the received communication mechanism data comprises a hash of a communication address and identifying, with the financial institution subsystem, the particular communication technique of the at least one communication technique indicated by the received communication mechanism data that matches the verified communication technique associated with the particular commerce credential comprises: hashing the verified communication technique associated with the particular commerce credential; and verifying that the hash of the communication address matches the hashed verified communication technique. 16. A financial entity system in communication with an electronic device, the financial entity system comprising: a processor circuit; a memory circuit; and one or more communications circuits coupled to the processor circuit and to the memory circuit, the financial entity system configured to: receive, with any of the one or more communications circuits, a selection of a particular commerce credential to be enabled on an electronic device; receive, with any of the one or more communications circuits, communication mechanism data indicative of at least one communication technique of the electronic device; identify, with the processor circuit, a particular communication technique of the at least one communication technique indicated by the received communication mechanism data that matches a verified communication technique associated with the particular credential; transmit, with any of the one or more communications circuits, provisioning data associated with the particular commerce credential from the financial entity system to the electronic device using an other particular communication technique that is different than the particular communication technique, wherein the transmitted provisioning data is configured to add on the electronic device a disabled pass associated with the particular commerce credential; and responsive to transmission of the provisioning data, transmit, with any of the one or more communications circuits, components, credential enablement data associated with the particular commerce credential from the financial entity system to the electronic device using the particular communication technique, wherein the transmitted credential enablement data is configured to update on the electronic device the disabled pass associated with the particular commerce credential to an enabled pass associated with the particular commerce credential. 17. The

Assignees

Inventors

Classifications

  • E-mail addresses · CPC title

  • based on the identity of the terminal or configuration, e.g. MAC address, hardware or software configuration or device fingerprint · CPC title

  • Business processing using cryptography · CPC title

  • Product, service or business identity fraud · CPC title

  • Electronic credentials · CPC title

Patent family

Related publications grouped by family.

External sources

Frequently asked questions

Answers are generated from the same data shown on this page.

What does patent US10861090B2 cover?
Systems, methods, and computer-readable media for provisioning credentials on an electronic device are provided. In one example embodiment, a secure platform system may be in communication with an electronic device and a financial institution subsystem. The secure platform system may be configured to, inter alia, detect a selection of a particular commerce credential, access communication mecha…
Who is the assignee on this patent?
Apple Inc
What technology area does this patent fall under?
Primary CPC classification G06Q40/02. Mapped technology areas include Physics.
When was this patent published?
Publication date Tue Dec 08 2020 00:00:00 GMT+0000 (Coordinated Universal Time) (B2). Legal status and post-grant events are not shown on this page.
What related patents are in patentsdb?
We list 1 related publication on this page (citations in our corpus or others sharing the same primary CPC).