Consumer authentication system and method

US2018374090A1 · US · A1

Patent metadata
FieldValue
Publication numberUS-2018374090-A1
Application numberUS-201816117975-A
CountryUS
Kind codeA1
Filing dateAug 30, 2018
Priority dateJun 19, 2006
Publication dateDec 27, 2018
Grant date

How to read this patent

A practical reading order for non-experts. Skip the full description unless you need deep technical detail.

  1. Title

    What the patent document calls the invention.

  2. Abstract

    A short plain-language summary of the technical disclosure.

  3. Assignees and inventors

    Who owns or filed the patent and who is credited as inventor.

  4. Key dates

    Filing, priority, publication, and grant dates set the timeline.

  5. First independent claim

    The legal scope of protection — read this for what is actually claimed.

  6. CPC / IPC classifications

    Technology tags used to group this patent with similar filings.

  7. Citations and related patents

    Prior art links and similar publications in this corpus.

Abstract

Official abstract text for this publication.

A method for authenticating a consumer. The method includes receiving an authorization request message associated with a consumer conducting a transaction with a portable consumer device. A challenge message is sent to the consumer, where the challenge message is dynamic or semi-dynamic. A challenge response message is received from the consumer, and an authorization response message is sent to the consumer. The authorization response message indicates whether or not the transaction is authorized.

First claim

Opening claim text (preview).

What is claimed is: 1 . A method comprising: receiving, by a server computer from a merchant, an authorization request message associated with a consumer conducting a transaction with a portable consumer device, wherein the authorization request message is generated by an access device at the merchant after the consumer uses the portable consumer device to interact with the access device; determining, by the server computer, if a challenge message is needed; sending, by the server computer, the challenge message to the consumer, wherein the challenge message is dynamic and is based on a transaction history of the consumer; receiving, by the server computer, a challenge response message from the consumer, the challenge response message responsive to the challenge message that is dynamic and that is based upon the transaction history of the consumer; and sending, by the server computer, an authorization response message to the access device or to the consumer, wherein the authorization response message indicates whether or not the transaction is authorized, wherein the authorization request message comprises a transaction amount associated with the transaction. 2 . The method of claim 1 wherein the portable consumer device is in the form of a card or a mobile phone. 3 . The method of claim 1 wherein the challenge message includes a question. 4 . The method of claim 1 wherein the server computer is in a payment processing network, and wherein the method further comprises: forwarding the authorization request message to an issuer computer operated by an issuer of the portable consumer device; and receiving the authorization response message from the issuer computer before sending the authorization response message to the consumer. 5 . The method of claim 1 , wherein the authorization request message is received at an issuer computer, and the issuer computer sends the challenge message to the consumer, and receives the challenge response message from the consumer, and wherein the issuer computer further analyzes the challenge response message from the consumer to determine if the consumer provides a correct challenge response message before sending the authorization response message to the consumer. 6 . The method of claim 1 , wherein the challenge message includes a question, and uses a location of the consumer to create the challenge message. 7 . The method of claim 1 , wherein sending, by the server computer, the authorization response message to the consumer comprises sending the authorization response message to the access device being used by the consumer. 8 . The method of claim 7 , wherein the access device is a POS terminal. 9 . The method of claim 1 , wherein sending, by the server computer, the challenge message to the consumer comprises sending the challenge message to a mobile device of the consumer. 10 . The method of claim 1 , wherein the authorization request message comprises a primary account number of an account of the consumer. 11 . A server computer comprising: a processor; and a computer readable medium coupled to the processor, the computer readable medium comprising code, executable by the processor, to implement a method comprising: receiving, from a merchant, an authorization request message associated with a consumer conducting a transaction with a portable consumer device, wherein the authorization request message is generated by an access device at the merchant after the consumer uses the portable consumer device to interact with the access device; determining if a challenge message is needed; sending the challenge message to the consumer, wherein the challenge message is dynamic and is based on a transaction history of the consumer; receiving a challenge response message from the consumer, the challenge response message responsive to the challenge message that is dynamic and that is based upon the transaction history of the consumer; and sending an authorization response message to the access device or the consumer, wherein the authorization response message indicates whether or not the transaction is authorized, wherein the authorization request message comprises a transaction amount associated with the transaction. 12 . The server computer of claim 11 , wherein the portable consumer device is in the form of a card or a mobile phone. 13 . The server computer of claim 11 , wherein the challenge message includes a question. 14 . The server computer of claim 11 , wherein the server computer is in a payment processing network, and wherein the method further comprises: forwarding the authorization request message to an issuer computer operated by an issuer of the portable consumer device; and receiving the authorization response message from the issuer computer before sending the authorization response message to the consumer. 15 . The server computer of claim 11 , wherein the server computer is an issuer computer. 16 . The server computer of claim 11 , wherein the challenge message includes a question, and uses a location of the consumer to create the challenge message. 17 . The server computer of claim 11 , wherein sending, by the server computer, the authorization response message to the consumer comprises sending the authorization response message to the access device being used by the consumer. 18 . The server computer of claim 11 , wherein the access device is a POS terminal. 19 . The server computer of claim 11 , wherein sending, by the server computer, the challenge message to the consumer comprises sending the challenge message to a mobile device of the consumer. 20 . The server computer of claim 11 , wherein the authorization request message comprises a primary account number of an account of the consumer.

Assignees

Inventors

Classifications

  • involving programming of a portable memory device, e.g. IC cards, "electronic purses" · CPC title

  • Authorisation, e.g. identification of payer or payee, verification of customer or shop credentials; Review and approval of payers, e.g. check credit lines or negative lists · CPC title

  • Financial cryptography, e.g. electronic payment or e-cash · CPC title

  • Electronic credentials · CPC title

  • involving authentication · CPC title

Patent family

Related publications grouped by family.

External sources

Frequently asked questions

Answers are generated from the same data shown on this page.

What does patent US2018374090A1 cover?
A method for authenticating a consumer. The method includes receiving an authorization request message associated with a consumer conducting a transaction with a portable consumer device. A challenge message is sent to the consumer, where the challenge message is dynamic or semi-dynamic. A challenge response message is received from the consumer, and an authorization response message is sent to…
Who is the assignee on this patent?
Hammad Ayman, Faith Patrick, Carlson Mark
What technology area does this patent fall under?
Primary CPC classification G06Q20/085. Mapped technology areas include Physics.
When was this patent published?
Publication date Thu Dec 27 2018 00:00:00 GMT+0000 (Coordinated Universal Time) (A1). Legal status and post-grant events are not shown on this page.
What related patents are in patentsdb?
We list 8 related publications on this page (citations in our corpus or others sharing the same primary CPC).