Provisioning multiple secure credentials on an electronic device

US2016358172A1 · US · A1

Patent metadata
FieldValue
Publication numberUS-2016358172-A1
Application numberUS-201615175723-A
CountryUS
Kind codeA1
Filing dateJun 7, 2016
Priority dateJun 7, 2015
Publication dateDec 8, 2016
Grant date

How to read this patent

A practical reading order for non-experts. Skip the full description unless you need deep technical detail.

  1. Title

    What the patent document calls the invention.

  2. Abstract

    A short plain-language summary of the technical disclosure.

  3. Assignees and inventors

    Who owns or filed the patent and who is credited as inventor.

  4. Key dates

    Filing, priority, publication, and grant dates set the timeline.

  5. First independent claim

    The legal scope of protection — read this for what is actually claimed.

  6. CPC / IPC classifications

    Technology tags used to group this patent with similar filings.

  7. Citations and related patents

    Prior art links and similar publications in this corpus.

Abstract

Official abstract text for this publication.

Systems, methods, and computer-readable media for provisioning multiple credentials of a multi-scheme card on an electronic device for selective use in a secure transaction are provided.

First claim

Opening claim text (preview).

What is claimed is: 1 . An electronic device comprising: pass data representative of a multi-scheme card for a first credential and a second credential; a secure element comprising: a first applet comprising a first application identifier (“AID”) and a first primary account number (“PAN”) associated with the first credential; and a second applet comprising a second AID associated with the second credential; link information operative to associate the pass data to the first applet and the second applet; and at least one processor operative to: select the multi-scheme card of the pass data for use in a transaction with a provider subsystem based at least in part on the link information; obtain activated credential data based on the selection; and communicate the activated credential data to the provider subsystem, wherein the activated credential data comprises the first PAN and the second AID. 2 . The electronic device of claim 1 , wherein the link information is operative to instruct the at least one processor not to enable selection of a particular one of the first credential and the second credential of the multi-scheme card. 3 . The electronic device of claim 2 , wherein the at least one processor is operative to select the multi-scheme card responsive to a received instruction. 4 . The electronic device of claim 2 , wherein: the second applet further comprises a second PAN associated with the second credential; and the activated credential data further comprises the first AID and the second PAN. 5 . The electronic device of claim 1 , wherein the link information is operative to instruct the processor to enable selection of one of the first credential and the second credential of the multi-scheme card. 6 . The electronic device of claim 5 , wherein the at least one processor is operative to select the multi-scheme card based at least in part on a received user instruction. 7 . The electronic device of claim 1 , wherein the at least one processor is operative to obtain the activated credential data based on the selection by: determining, with the at least one processor, that the second applet is identified by the selection; sending, with the at least one processor, processor command data to the second applet based on the determination; and receiving, with the at least one processor, response data from the second applet comprising the first PAN and the second AID. 8 . The electronic device of claim 7 , wherein the second applet is operative to: receive the processor command data from the at least one processor; and fetch at least the first PAN from the first applet in response to receiving the processor command data. 9 . A method for providing a multi-scheme card on an electronic device comprising a secure element, the method comprising: at a transaction entity subsystem: receiving, from the electronic device, credential provisioning request data comprising request primary account number (“PAN”) information indicative of a request PAN associated with the multi-scheme card; identifying a plurality of credentials associated with the request PAN information of the received credential provisioning request data; acquiring, from an issuer subsystem, first credential provisioning information for a first credential of the identified plurality of credentials; acquiring, from the issuer subsystem, second credential provisioning information for a second credential of the identified plurality of credentials; and provisioning, on the electronic device, credential data based on the acquired first credential provisioning information and the acquired second credential provisioning information, wherein the provisioning comprises: storing, on the secure element of the electronic device, a first applet comprising a first PAN and a first application identifier (“AID”) associated with the first credential; storing, on the secure element of the electronic device, a second applet comprising a second AID associated with the second credential; and storing, on the electronic device, link information operative to associate the first applet with the second applet. 10 . The method of claim 9 , wherein: the provisioning the credential data further comprises storing, on the electronic device, pass data comprising pass information associated with the request PAN of the multi scheme card; and the pass information is operative to be presented on a display of the electronic device. 11 . The method of claim 10 , wherein the pass information is operative to be presented for enabling, based on the link information, one of: selection of one of the first credential and the second credential of the multi-scheme card to be used by the electronic device in a transaction; and selection of the multi-scheme card to be used by the electronic device in a transaction. 12 . The method of claim 9 , wherein the storing the link information comprises storing at least a portion of the link information on the secure element. 13 . The method of claim 9 , wherein the storing the link information comprises storing at least a portion of the link information in a global registry of the secure element. 14 . The method of claim 9 , wherein: the provisioning the credential data further comprises storing, on the electronic device, pass data comprising pass information associated with the request PAN of the multi-scheme card; and the storing the link information comprises storing at least a portion of the link information in a file of the pass data. 15 . The method of claim 9 , wherein the stored second applet does not comprise a PAN. 16 . A method for providing a multi-scheme card on an electronic device comprising a secure element, the method comprising: at the electronic device: transmitting, to a transaction entity subsystem, credential provisioning request data comprising request primary account number (“PAN”) information indicative of a request PAN of the multi-scheme card; receiving, from the transaction entity subsystem, credential data for a plurality of credentials associated with the request PAN information of the transmitted credential provisioning request data; storing, on the secure element, a first applet comprising: a first application identifier (“AID”) of the credential data that is associated with a first credential of the plurality of credentials; and a first PAN of the credential data; storing, on the secure element, a second applet comprising a second AID of the credential data that is associated with a second credential of the plurality of credentials; and storing, on the electronic device, link information of the credential data that associates the first applet with the second applet. 17 . The method of claim 16 , wherein the storing the link information comprises storing at least a portion of the link information in the second applet. 18 . The method of claim 16 , further comprising: storing, on the electronic device, pass data associated with the credential data, wherein the pass data comprises pass information associated with the request PAN of the multi scheme card; and storing at least a portion of the link information in a file of the pass data. 19 . The method of claim 16 , further comprising, at the electronic device: storing pass data associated with the credential data, wherein the pass data is representative of the multi-scheme card; selecting the multi-scheme card of the stored pass data for use in a transaction with a provider subsystem based at least in p

Assignees

Inventors

Classifications

  • RFID or NFC payments by means of M-devices · CPC title

  • for key distribution, e.g. centrally by trusted party (cryptographic mechanisms or cryptographic arrangements for key distribution involving a central third party H04L9/0819) · CPC title

  • G06Q20/227Primary

    characterised in that multiple accounts are available, e.g. to the payer · CPC title

  • Electronic credentials · CPC title

  • applying security measure for e-commerce · CPC title

Patent family

Related publications grouped by family.

External sources

Frequently asked questions

Answers are generated from the same data shown on this page.

What does patent US2016358172A1 cover?
Systems, methods, and computer-readable media for provisioning multiple credentials of a multi-scheme card on an electronic device for selective use in a secure transaction are provided.
Who is the assignee on this patent?
Apple Inc
What technology area does this patent fall under?
Primary CPC classification G06Q20/227. Mapped technology areas include Physics.
When was this patent published?
Publication date Thu Dec 08 2016 00:00:00 GMT+0000 (Coordinated Universal Time) (A1). Legal status and post-grant events are not shown on this page.
What related patents are in patentsdb?
We list 8 related publications on this page (citations in our corpus or others sharing the same primary CPC).