Method and system for provisioning access data to mobile device
US-10959093-B2 · Mar 23, 2021 · US
US11895491B2 · US · B2
| Field | Value |
|---|---|
| Publication number | US-11895491-B2 |
| Application number | US-202017006501-A |
| Country | US |
| Kind code | B2 |
| Filing date | Aug 28, 2020 |
| Priority date | May 8, 2014 |
| Publication date | Feb 6, 2024 |
| Grant date | Feb 6, 2024 |
A practical reading order for non-experts. Skip the full description unless you need deep technical detail.
What the patent document calls the invention.
A short plain-language summary of the technical disclosure.
Who owns or filed the patent and who is credited as inventor.
Filing, priority, publication, and grant dates set the timeline.
The legal scope of protection — read this for what is actually claimed.
Technology tags used to group this patent with similar filings.
Prior art links and similar publications in this corpus.
Official abstract text for this publication.
A method and system for provisioning access data in a second application on a mobile device using a first application on the mobile device. Authentication data may be input into the first application, and an authentication code may be requested from a remote server. After the authentication code is received by the first application in the mobile device, it can pass the authentication code to a second application that initiates an access data provisioning process.
Opening claim text (preview).
What is claimed is: 1. A method comprising: receiving, by a validation entity computer from an authorization computer system, a first authentication code, after the authorization computer system validates authentication data of a user from a first application on a mobile device, wherein the authorization computer system also transmits a second authentication code to the first application on the mobile device, which provides the second authentication code to a second application on the mobile device; receiving, by the validation entity computer, the second authentication code from the second application on the mobile device; verifying, by the validation entity computer, that the first authentication code matches the second authentication code; and instructing a provisioning server computer to provision the second application on the mobile device with access data related to an account number. 2. The method of claim 1 , wherein the first authentication code and the second authentication code each comprise a first portion comprising encrypted information and a second portion comprising unencrypted information, the unencrypted information comprising a key index and the encrypted information including an encrypted account number, a date and time when the authentication data was validated, and an authorization code. 3. The method of claim 2 , wherein the method further comprises: locating, by the validation entity computer, a key using the key index in the second authentication code; decrypting the encrypted information with the key to determine the account number, the date and time when the authentication data was validated, and the authorization code; and determining that the second authentication code is valid using at least the first authentication code received from the authorization computer system, the authorization code, and the date and time when the authentication data was validated. 4. The method of claim 1 , wherein the access data comprises a payment token. 5. The method of claim 1 wherein the first application is an online banking application. 6. The method of claim 1 wherein the mobile device is a mobile phone. 7. The method of claim 1 wherein the access data is account data permitting the mobile device to conduct a transaction. 8. The method of claim 1 , wherein receiving, by the validation entity computer, the second authentication code from the second application on the mobile device comprises receiving the second authentication code from the second application on the mobile device via a digital wallet computer. 9. The method of claim 1 , wherein the first application is a mobile banking application and the second application is a digital wallet application. 10. A validation entity computer comprising: a processor; and a non-transitory computer readable medium, the non-transitory computer readable medium comprising code, executable by the processor to implement a method comprising receiving, from an authorization computer system, a first authentication code, after the authorization computer system validates authentication data of a user from a first application on a mobile device, wherein the authorization computer system also transmits a second authentication code to the first application on the mobile device, which provides the second authentication code to a second application on the mobile device; receiving the second authentication code from the second application on the mobile device, the second authentication code; verifying that the first authentication code matches the second authentication code; and instructing a provisioning server computer to provision the second application on the mobile device with access data related to an account number. 11. The validation entity computer of claim 10 , wherein the first authentication code and the second authentication code each comprise a first portion comprising encrypted information and a second portion comprising unencrypted information, the unencrypted information comprising a key index and the encrypted information including an encrypted account number, a date and time when the authentication data was validated, and an authorization code, and wherein the method further comprises: locating a key using the key index in the second authentication code; decrypting the encrypted information in the second authentication code with the key to determine the account number, the date and time when the authentication data was validated, and the authorization code; and determining that the second authentication code is valid using at least the first authentication code received from the authorization computer system, the authorization code, and the date and time when the authentication data was validated, wherein the key is a symmetric key. 12. The validation entity computer of claim 11 , wherein the unencrypted information comprises a version component that identifies a format or version of the second authentication code. 13. The validation entity computer of claim 11 , wherein the account number is 16 digits long. 14. The validation entity computer of claim 11 , wherein the key is a private key of a public private key pair. 15. The validation entity computer of claim 11 , wherein the access data comprises a payment token and the mobile device is a mobile phone. 16. The validation entity computer of claim 11 , wherein the encrypted information is in ASCII text. 17. A method comprising: receiving, by a mobile device, user authentication data at a first application on the mobile device, wherein the first application is a mobile banking application; transmitting, by the mobile device, the user authentication data to an authorization computer system, which validates the user authentication data, and then generates a second authentication code; receiving, by the mobile device, from the authorization computer system, an authentication code; providing, by mobile device, the second authentication code to a validation entity computer, and which then instructs a provisioning server computer to provision the mobile device with access data related to an account number after comparing the second authentication code to a first authentication code received from the authorization computer system; and receiving, by the mobile device and from the provisioning server computer in communication with the validation entity computer, the access data, the access data related to the account number. 18. The method of claim 17 , wherein the mobile device is a mobile phone. 19. The method of claim 17 , wherein the access data comprises a payment token.
Authentication · CPC title
using mobile network messaging services for payment, e.g. SMS · CPC title
characterised by activation or deactivation of payment capabilities · CPC title
characterised by personalisation for use · CPC title
using electronic wallets or electronic money safes · CPC title
Related publications grouped by family.
Answers are generated from the same data shown on this page.