Methods for secure credential provisioning
US-11201743-B2 · Dec 14, 2021 · US
US11979406B2 · US · B2
| Field | Value |
|---|---|
| Publication number | US-11979406-B2 |
| Application number | US-202318108451-A |
| Country | US |
| Kind code | B2 |
| Filing date | Feb 10, 2023 |
| Priority date | May 10, 2022 |
| Publication date | May 7, 2024 |
| Grant date | May 7, 2024 |
A practical reading order for non-experts. Skip the full description unless you need deep technical detail.
What the patent document calls the invention.
A short plain-language summary of the technical disclosure.
Who owns or filed the patent and who is credited as inventor.
Filing, priority, publication, and grant dates set the timeline.
The legal scope of protection — read this for what is actually claimed.
Technology tags used to group this patent with similar filings.
Prior art links and similar publications in this corpus.
Official abstract text for this publication.
In a method for providing provisioning information, a central data processing system receives from a transaction data processing system, an encrypted user datum associated with a client user of the transaction data processing system; receives from at least one of a plurality of account administrator data processing systems, a response comprising a notification that a user account administrated by that account administrator data processing system is associated with the client user; receives an account administrator selection message including identification of a user-selected account administrator from an account administrator list; transmits to the account administrator data processing system associated with the user-selected account administrator, a provisioning request for client user account provisioning information; receives from the account administrator data processing system associated with the user-selected account administrator, the client user account provisioning information; and transmits to the transaction data processing system, the client user account provisioning information.
Opening claim text (preview).
What is claimed is: 1. A system for providing provisioning information to a transaction processor, the system comprising: a central data processor, wherein the central data processor is configured to: retrieve, from at least one of a plurality of account administrator data processing systems, one or more client user account provisioning information, store the one or more client user account provision information in a data storage unit, receive a request to share at least one of the account provisioning information with the transaction processor, transmit, to the transaction processor, a user datum request, receive, from the transaction processor, a user datum, determine whether the user datum is associated with at least one or more account provisioning data, transmit, to the transaction processor, an account administrator list identifying the at least one of the plurality of account administrator data processing systems associated with the at least one or more account provisioning data, receive, from the transaction data processing system, an account administrator selection message including identification of a user-selected account administrator from the account administrator list, receive, from the account administrator data processing system associated with the user-selected account administrator, client user authentication information, transmit, to the transaction data processing system, an authentication request, receive, from the transaction data processing system, an authentication response including at least one client user-supplied authentication credential, authenticate the account administrator selection message using the at least one client-user-supplied authentication credential and the client user authentication information, wherein the central data processor is configured to transmit to the plurality of account administrator data processing systems and the transaction data processing system, user datum encryption information, wherein the user datum is an encrypted user datum encrypted using the user datum encryption information and associated with a client user of the transaction data processing system, and the central data processor is further configured to: transmit, to each of the plurality of account administrator data processing systems, a user account query including the encrypted user datum, retrieve, from the data storage unit, the account provisioning data associated with user-selected account administrator, and transmit, to the transaction processor, the account provisioning data associated with the user-selected account administrator. 2. The system of claim 1 , wherein: the central data processor is configured to transmit to the account administrator data processing system associated with the user-selected account administrator, a provisioning request message including a request for client user account provisioning information, wherein the action of transmitting the provisioning request message is carried out only in response to a positive authentication of the account administrator selection message, and the at least one client user-supplied authentication credential is included in the provisioning request message with the request for client user account provisioning information. 3. The system of claim 1 , wherein the client user authentication information includes one of a phone number or an email address. 4. The system of claim 1 , wherein the client user account provisioning information includes at least one of a home address, a billing address, a mobile phone number, a home phone number, an Email address, a 16-digit credit card number, a 16-digit virtual card number, or a credit card expiration date. 5. The system of claim 1 , wherein the at least one client user-supplied authentication credential includes a personal identification number (PIN). 6. The system of claim 1 , wherein the central data processor is further configured to: transmit to a user device a message comprising a request for confirmation that the client user account provisioning information should be provisioned to the transaction processor, and receive from the user device a confirmation response including permission to provision to the transaction processor the client user account provisioning information. 7. The system of claim 1 , wherein the central data processor is further configured to receive from the transaction processor a message indicating whether the client user account provisioning information has been provisioned successfully to the transaction processor. 8. A method for providing provisioning information to a transaction processor, the method comprising: receiving, by a central data processor from at least one of a plurality of account administrator data processing systems, one or more client user account provisioning information; storing, by the central data processor, the one or more client user account provision information in a data storage unit; receiving, by the central data processor from a transaction processor, a request to share at least one of the account provisioning information with the transaction processor; transmitting, by the central data processor to the transaction processor, a user datum request; receiving, by the central data processor from the transaction processor, a user datum; determining, by the central data processor, whether the user datum is associated with at least one or more account provisioning data; transmitting, by the central data processor to the transaction processor, an account administrator list identifying the at least one of the plurality of account administrator data processing systems associated with the at least one or more account provisioning data; receiving, by the central data processor from the transaction data processing system, an account administrator selection message including identification of a user-selected account administrator from the account administrator list; receiving, by the central data processor from the account administrator data processing system associated with the user-selected account administrator, client user authentication information; transmitting, by the central data processor to the transaction data processing system, an authentication request; receiving, by the central data processor from the transaction data processing system, an authentication response including at least one client user-supplied authentication credential; authenticating, by the central data processor, the account administrator selection message using the at least one client-user-supplied authentication credential and the client user authentication information; transmitting, by the central data processor to the plurality of account administrator data processing systems and the transaction data processing system, user datum encryption information; wherein the user datum is an encrypted user datum encrypted using the user datum encryption information and associated with a client user of the transaction data processing system, and the method further comprises: transmitting, by the central data processor, to each of the plurality of account administrator data processing systems, a user account query including the encrypted user datum; retrieving, by the central data processor from the data storage unit, the account provisioning data associated with user-selected account administrator; and transmitting, by the central data processor to the transaction processor, the account provisioning data associated with the user-selected account administrator. 9. The method of claim 8 , wherein the method further comprises encrypting one or more client user account provisioning information. 10. The method of claim 8 , wherein the enc
Banking, e.g. interest calculation or account maintenance (credit or loans G06Q40/03) · CPC title
characterised in that multiple accounts are available, e.g. to the payer · CPC title
Identity check for transactions · CPC title
with the personal data of a user · CPC title
Establishing or using transaction specific rules · CPC title
Related publications grouped by family.
Answers are generated from the same data shown on this page.