Provisioning of access credentials using device codes

US11620647B2 · US · B2

Patent metadata
FieldValue
Publication numberUS-11620647-B2
Application numberUS-202117167344-A
CountryUS
Kind codeB2
Filing dateFeb 4, 2021
Priority dateMay 7, 2015
Publication dateApr 4, 2023
Grant dateApr 4, 2023

How to read this patent

A practical reading order for non-experts. Skip the full description unless you need deep technical detail.

  1. Title

    What the patent document calls the invention.

  2. Abstract

    A short plain-language summary of the technical disclosure.

  3. Assignees and inventors

    Who owns or filed the patent and who is credited as inventor.

  4. Key dates

    Filing, priority, publication, and grant dates set the timeline.

  5. First independent claim

    The legal scope of protection — read this for what is actually claimed.

  6. CPC / IPC classifications

    Technology tags used to group this patent with similar filings.

  7. Citations and related patents

    Prior art links and similar publications in this corpus.

Abstract

Official abstract text for this publication.

Systems and methods are described for provisioning access credentials to a mobile device using device and authorization codes. Once provisioned, a mobile device can be used to conduct a transaction.

First claim

Opening claim text (preview).

What is claimed: 1. A method comprising: receiving, by a provisioning server computer, a provisioning request message; receiving, by the provisioning server computer, an authorization code, the authorization code generated using at least a device code associated with a mobile device, wherein the device code is derived from a device identifier that specifically identifies the mobile device; validating, by the provisioning server computer, the authorization code; and responsive to validating the authorization code, provisioning, by the provisioning server computer, an access credential to the mobile device, wherein the authorization code is derived from the device code and the access credential. 2. The method of claim 1 , wherein the provisioning request message is received from the mobile device. 3. The method of claim 1 , wherein the provisioning request message is received from the mobile device via an intermediate server computer. 4. The method of claim 1 , wherein the access credential is configured to gain access to a location. 5. The method of claim 1 , wherein the provisioning request message comprises an account identifier. 6. The method of claim 1 , wherein the mobile device is a smartphone. 7. The method of claim 1 , further comprising: transmitting, by a communication device to an authorization computer, the device code; and receiving, by the communication device, the authorization code. 8. The method of claim 7 , wherein the communication device is a laptop computer, and the mobile device is a mobile phone. 9. The method of claim 1 , wherein the authorization code is generated by an authorization computer using a cryptographic key that is shared with the provisioning server computer. 10. The method of claim 1 , wherein the authorization code is formed from the device code, the access credential, a shared secret, and a salt. 11. The method of claim 1 , wherein the provisioning request message is a token request message. 12. The method of claim 1 , wherein the access credential comprises a token. 13. The method of claim 1 , further comprising: transmitting, by the provisioning server computer, the device code to the mobile device. 14. The method of claim 1 , further comprising: determining, by the provisioning server computer, a risk associated with provisioning the access credential to the mobile device. 15. A provisioning server computer comprising: a processor; and a computer readable medium, the computer readable medium comprising code, executable by the processor to implement actions including: receiving a provisioning request message; receiving an authorization code, the authorization code generated using at least a device code associated with a mobile device, wherein the device code is derived from a device identifier that specifically identifies the mobile device; validating the authorization code; and responsive to validating the authorization code, provisioning, an access credential to the mobile device, wherein the authorization code is derived from the device code and the access credential. 16. The provisioning server computer of claim 15 , wherein the actions further comprise: transmitting, by the provisioning server computer, the device code to the mobile device. 17. The provisioning server computer of claim 15 , wherein the actions further comprise determining, by the provisioning server computer, a risk associated with provisioning the access credential to the mobile device.

Assignees

Inventors

Classifications

  • using tickets, e.g. Kerberos (cryptographic mechanisms or cryptographic arrangements for entity authentication using tickets or tokens H04L9/3213) · CPC title

  • Transaction verification · CPC title

  • involving authentication · CPC title

  • Aspects of commerce using mobile devices [M-devices] · CPC title

  • Access security · CPC title

Patent family

Related publications grouped by family.

External sources

Frequently asked questions

Answers are generated from the same data shown on this page.

What does patent US11620647B2 cover?
Systems and methods are described for provisioning access credentials to a mobile device using device and authorization codes. Once provisioned, a mobile device can be used to conduct a transaction.
Who is the assignee on this patent?
Visa Int Service Ass
What technology area does this patent fall under?
Primary CPC classification G06Q20/38215. Mapped technology areas include Physics.
When was this patent published?
Publication date Tue Apr 04 2023 00:00:00 GMT+0000 (Coordinated Universal Time) (B2). Legal status and post-grant events are not shown on this page.
What related patents are in patentsdb?
We list 10 related publications on this page (citations in our corpus or others sharing the same primary CPC).