Service activation using algorithmically defined key

US9426659B2 · US · B2

Patent metadata
FieldValue
Publication numberUS-9426659-B2
Application numberUS-201514857568-A
CountryUS
Kind codeB2
Filing dateSep 17, 2015
Priority dateJun 10, 2009
Publication dateAug 23, 2016
Grant dateAug 23, 2016

How to read this patent

A practical reading order for non-experts. Skip the full description unless you need deep technical detail.

  1. Title

    What the patent document calls the invention.

  2. Abstract

    A short plain-language summary of the technical disclosure.

  3. Assignees and inventors

    Who owns or filed the patent and who is credited as inventor.

  4. Key dates

    Filing, priority, publication, and grant dates set the timeline.

  5. First independent claim

    The legal scope of protection — read this for what is actually claimed.

  6. CPC / IPC classifications

    Technology tags used to group this patent with similar filings.

  7. Citations and related patents

    Prior art links and similar publications in this corpus.

Abstract

Official abstract text for this publication.

Systems and methods for service activation using algorithmically defined keys are disclosed. A consumer who has a relationship with a first party may wish to enroll in a service provided by a third party. The first party can maintain control of such enrollments through the use of algorithmically defined keys. The algorithmically defined keys also allow the third party service provider to verify data provided by the consumer as matching data stored by the first party. The verification provides for data synchronization without requiring the third party to have access to the first parties data systems.

First claim

Opening claim text (preview).

What is claimed is: 1. A method comprising: receiving, by an issuer computer, a request message from a mobile device to provision a previously issued account on the mobile device for conducting transactions; identifying, by the issuer computer, that a user associated with the mobile device is authorized to provision the previously issued account on the mobile device; retrieving, by the issuer computer, data associated with the user, wherein the data associated with the user was provided as part of a relationship between the user and the issuer, and wherein only the data associated with the user agreed to by the issuer and the service provider is retrieved; generating, by the issuer computer, a first activation code by encrypting a first message block including the data associated with the user using a first key; and sending, by the issuer computer, the first activation code to the mobile device, wherein the user sends the first activation code and the data associated with the user to the service provider computer, and wherein the service provider computer generates a second message block, and decrypts the first activation code using a second key associated with the first key to obtain the first message block, and wherein the service provider computer provisions the account associated with the user to the mobile device in response to obtaining the first message block and determining that the first message block and the second message block match. 2. The method of claim 1 , wherein the user sends the first activation code and the data associated with the user to the service provider computer using the mobile device. 3. The method of claim 1 , wherein the user is authorized to provision the account associated with user to the mobile device based on issuer-specified criteria established by an issuer associated with the issuer computer. 4. The method of claim 1 , wherein the data associated with the user that is used to generate the first activation code is retrieved from a database associated with the issuer computer and is not received from the user. 5. The method of claim 4 , wherein the data associated with the user was retrieved by the issuer computer from the database prior to generating the first activation code. 6. The method of claim 1 , wherein the service provider computer is a payment processing network server computer. 7. A server computer comprising: a processor; and a tangible non-transitory computer readable medium coupled to the processor, the computer readable medium comprising code, executable by the processor for implementing a method comprising: receiving a request message from a mobile device to provision a previously issued account on the mobile device for conducting transactions; identifying that a user associated with the mobile device is authorized to provision the previously issued account on the mobile device; retrieving data associated with the user, wherein the data associated with the user was provided as part of a relationship between the user and the issuer, and wherein only the data associated with the user agreed to by the issuer and the service provider is retrieved; generating a first activation code by encrypting a first message block including the data associated with the user using a first key; and sending the first activation code to the mobile device, wherein the user sends the first activation code and the data associated with the user to the service provider computer, and the service provider computer generates a second message block, and decrypts the first activation code using a second key associated with the first key to obtain the first message block, and wherein the service provider computer provisions the account associated with the user to the mobile device in response to obtaining the first message block and determining that the first message block and the second message block match. 8. The server computer of claim 7 , wherein the user sends the first activation code and the data associated with the user to the service provider computer using the mobile device. 9. The server computer of claim 7 , wherein the user is authorized to provision the account associated with user to the mobile device based on issuer-specified criteria established by an issuer associated with the issuer computer. 10. The server computer of claim 7 , wherein the data associated with the user that is used to generate the first activation code is retrieved from a database associated with the issuer computer and is not received from the user. 11. The server computer of claim 10 , wherein the data associated with the user was retrieved by the issuer computer from the database prior to generating the first activation code. 12. A payment processing network comprising the server computer of claim 7 . 13. A method comprising: receiving, by a service provider computer, data associated with a user from a mobile device; receiving, by the service provider computer, a first activation code from the mobile device, the first activation code based on the data associated with the user, wherein the activation code was generated by an issuer computer when the user is identified as authorized to provision a previously issued account associated with the user to the mobile device, wherein the data associated with the user was provided to an issuer associated with the issuer computer as part of a relationship between the user and the issuer, and wherein only the data associated with the user agreed to by the issuer and the service provider was retrieved, wherein the first activation code was generated using a first message block; generating, by the service provider computer, a second message block; decrypting, by the service provider computer, the first activation code to obtain the first message block; and authorizing, by the service provider computer, the previously issued account associated with the user to be provisioned on the mobile device after decrypting the first activation code and determining that the first message block and the second message block match. 14. The method of claim 13 , wherein the first activation code was generated by encrypting the first message block including the data associated with the user using a first key. 15. The method of claim 14 , wherein decrypting the first activation code comprises using a second key associated with the first key to decrypt the first activation code. 16. The method of claim 13 , wherein the user is identified as authorized to provision the previously issued account associated with the user to the mobile device based on issuer-specified criteria established by an issuer associated with the issuer computer. 17. The method of claim 13 , wherein the service provider computer is a payment processing network server computer. 18. The method of claim 13 , further comprising: providing, by the service provider computer, an application to the mobile device. 19. The method of claim 18 , wherein the provisioned account is accessible for conducting transactions by the application. 20. A service provider computer comprising: a processor; and a tangible non-transitory computer readable medium coupled to the processor, the computer readable medium comprising code, executable by the processor for implementing the method comprising: receiving data associated with a user from a mobile device; receiving, by the service provider computer, a first activation code from the mobile device, the first activation code based on the data associated with the user, wherein

Assignees

Inventors

Classifications

  • Generation of secret information including derivation or calculation of cryptographic keys or passwords · CPC title

  • Remote solvency checks · CPC title

  • Access security · CPC title

  • Key management, e.g. using generic bootstrapping architecture [GBA] · CPC title

  • involving a neutral party, e.g. certification authority, notary or trusted third party [TTP] · CPC title

Patent family

Related publications grouped by family.

External sources

Frequently asked questions

Answers are generated from the same data shown on this page.

What does patent US9426659B2 cover?
Systems and methods for service activation using algorithmically defined keys are disclosed. A consumer who has a relationship with a first party may wish to enroll in a service provided by a third party. The first party can maintain control of such enrollments through the use of algorithmically defined keys. The algorithmically defined keys also allow the third party service provider to verify…
Who is the assignee on this patent?
Visa Int Service Ass
What technology area does this patent fall under?
Primary CPC classification H04W12/06. Mapped technology areas include Electricity.
When was this patent published?
Publication date Tue Aug 23 2016 00:00:00 GMT+0000 (Coordinated Universal Time) (B2). Legal status and post-grant events are not shown on this page.
What related patents are in patentsdb?
We list 8 related publications on this page (citations in our corpus or others sharing the same primary CPC).