Apparatus and methods for secure element transactions and management of assets

US2017278097A1 · US · A1

Patent metadata
FieldValue
Publication numberUS-2017278097-A1
Application numberUS-201715482478-A
CountryUS
Kind codeA1
Filing dateApr 7, 2017
Priority dateFeb 6, 2013
Publication dateSep 28, 2017
Grant date

How to read this patent

A practical reading order for non-experts. Skip the full description unless you need deep technical detail.

  1. Title

    What the patent document calls the invention.

  2. Abstract

    A short plain-language summary of the technical disclosure.

  3. Assignees and inventors

    Who owns or filed the patent and who is credited as inventor.

  4. Key dates

    Filing, priority, publication, and grant dates set the timeline.

  5. First independent claim

    The legal scope of protection — read this for what is actually claimed.

  6. CPC / IPC classifications

    Technology tags used to group this patent with similar filings.

  7. Citations and related patents

    Prior art links and similar publications in this corpus.

Abstract

Official abstract text for this publication.

Methods and apparatus for the deployment of financial instruments and other assets are disclosed. In one embodiment, a security software protocol is disclosed that guarantees that the asset is always securely encrypted, that one and only one copy of an asset exists, and the asset is delivered to an authenticated and/or authorized customer. Additionally, exemplary embodiments of provisioning systems are disclosed that are capable of, among other things, handling large bursts of traffic (such as can occur on a so-called “launch day” of a device).

First claim

Opening claim text (preview).

1 . (canceled) 2 . A method comprising: at a client device including a secure element: transmitting, to a remote server, a provisioning request for provisioning a virtualized medium of exchange (VME) to the client device; receiving, from the remote server, an asset identifier associated with the VME; requesting delivery of the VME, from the remote server, via a delivery request comprising the asset identifier associated with the VME; receiving, from the remote server, the VME; and sending the VME to the secure element. 3 . The method of claim 2 , further comprising: executing a transaction with a merchant device to charge a user account associated with the VME. 4 . The method of claim 2 , wherein the VME comprises a virtual credit card. 5 . The method of claim 2 , wherein the provisioning request comprises identifying information verifying that the secure element is associated with an account corresponding to the VME. 6 . The method of claim 2 , wherein the VME is encrypted using a key unique to the secure element. 7 . The method of claim 2 , further comprising: prior to the receiving the VME: obtaining, from the secure element, a device identifier corresponding to the client device; and transmitting, to the remote server, the device identifier. 8 . The method of claim 7 , further comprising: obtaining, from the secure element, a challenge value, wherein the challenge value comprises a one-time-use value preloaded on the secure element; and transmitting, to the remote server, the challenge value. 9 . An apparatus comprising: a memory; and one or more processors, wherein the memory includes instructions, that when executed by a processor of the one or more processors, cause the apparatus to perform operations comprising: transmitting, to a remote server, a provisioning request for provisioning a virtualized medium of exchange (VME) to the apparatus, wherein the provisioning request includes a one-time-use challenge value associated with the secure element, receiving, from the remote server, an asset identifier associated with the VME, requesting delivery of the VME, from the remote server, via a delivery request comprising the asset identifier associated with the VME, receiving, from the remote server, the VME, and sending the VME to a secure element, wherein the secure element is included in the apparatus. 10 . The apparatus of claim 9 , wherein the VME comprises a virtual credit card. 11 . The apparatus of claim 9 , wherein the operations further comprise: executing a transaction with a merchant device to charge a user account associated with the VME. 12 . The apparatus of claim 9 , wherein the VME is encrypted using a key unique to the secure element. 13 . The apparatus of claim 9 , wherein the operations further comprise: obtaining, from the VME, a received challenge value. 14 . The apparatus of claim 9 , wherein the operations further comprise: prior to the receiving the VME: obtaining, from the secure element, a device identifier corresponding to the apparatus; and transmitting, to the remote server, the device identifier. 15 . The apparatus of claim 14 , wherein the operations further comprise: obtaining, from the secure element, a challenge value, wherein the challenge value comprises a one-time use value preloaded on the secure element; and transmitting, to the remote server, the challenge value. 16 . A secure element comprising: a secure memory; and a secure processor, wherein the secure memory comprises instructions that when executed by the secure processor cause the secure element to perform operations comprising: sending, to an associated device processor, a stored device identifier that identifies a device containing the secure element and the associated device processor, receiving, from the associated device processor, a challenge request, performing a session handshake with a remote server, generating, subsequent to the session handshake, a challenge value, sending, to the associated device processor, the challenge value, and receiving, from the remote server, a data item comprising a virtualized medium of exchange (VME). 17 . The secure element of claim 16 , wherein the session handshake avoids exhaustion of challenge values in the event of a denial of service attack. 18 . The secure element of claim 16 , wherein the operations further comprise: prior to the sending the stored device identifier: receiving an identifier request; generating, based on the stored device identifier and responsive to the identifier request, a digital signature that uniquely identifies the secure element; and providing the stored device identifier and the digital signature to the associated device processor. 19 . The secure element of claim 16 , wherein the received challenge value is associated with the secure element. 20 . The secure element of claim 16 , wherein the operations further comprise: verifying that a received challenge value of the VME matches the generated challenge value. 21 . The secure element of claim 20 , wherein the operations further comprise: subsequent to the verifying: deleting the challenge value from a set of challenge values maintained by the secure element.

Assignees

Inventors

Classifications

  • using secure elements embedded in M-devices · CPC title

  • G06Q20/36Primary

    using electronic wallets or electronic money safes · CPC title

  • with control of digital rights management [DRM] · CPC title

  • Downloading or loading of personalisation data · CPC title

  • insuring higher security of transaction · CPC title

Patent family

Related publications grouped by family.

External sources

Frequently asked questions

Answers are generated from the same data shown on this page.

What does patent US2017278097A1 cover?
Methods and apparatus for the deployment of financial instruments and other assets are disclosed. In one embodiment, a security software protocol is disclosed that guarantees that the asset is always securely encrypted, that one and only one copy of an asset exists, and the asset is delivered to an authenticated and/or authorized customer. Additionally, exemplary embodiments of provisioning sys…
Who is the assignee on this patent?
Apple Inc
What technology area does this patent fall under?
Primary CPC classification G06Q20/36. Mapped technology areas include Physics.
When was this patent published?
Publication date Thu Sep 28 2017 00:00:00 GMT+0000 (Coordinated Universal Time) (A1). Legal status and post-grant events are not shown on this page.
What related patents are in patentsdb?
We list 8 related publications on this page (citations in our corpus or others sharing the same primary CPC).