CA2241834C - Procede et dispositif pour communiquer des donnees - Google Patents

Procede et dispositif pour communiquer des donnees Download PDF

Info

Publication number
CA2241834C
CA2241834C CA002241834A CA2241834A CA2241834C CA 2241834 C CA2241834 C CA 2241834C CA 002241834 A CA002241834 A CA 002241834A CA 2241834 A CA2241834 A CA 2241834A CA 2241834 C CA2241834 C CA 2241834C
Authority
CA
Canada
Prior art keywords
card
terminal
unit
user unit
session key
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Expired - Fee Related
Application number
CA002241834A
Other languages
English (en)
Other versions
CA2241834A1 (fr
Inventor
Anders Johansson
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
TDS TODOS DATA SYSTEMS AB
Original Assignee
TDS TODOS DATA SYSTEMS AB
TDS Todos Data System AB
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Priority claimed from SE9503841A external-priority patent/SE505353C2/sv
Application filed by TDS TODOS DATA SYSTEMS AB, TDS Todos Data System AB filed Critical TDS TODOS DATA SYSTEMS AB
Publication of CA2241834A1 publication Critical patent/CA2241834A1/fr
Application granted granted Critical
Publication of CA2241834C publication Critical patent/CA2241834C/fr
Anticipated expiration legal-status Critical
Expired - Fee Related legal-status Critical Current

Links

Classifications

    • GPHYSICS
    • G07CHECKING-DEVICES
    • G07FCOIN-FREED OR LIKE APPARATUS
    • G07F7/00Mechanisms actuated by objects other than coins to free or to actuate vending, hiring, coin or paper currency dispensing or refunding apparatus
    • G07F7/08Mechanisms actuated by objects other than coins to free or to actuate vending, hiring, coin or paper currency dispensing or refunding apparatus by coded identity card or credit card or other personal identification means
    • G07F7/10Mechanisms actuated by objects other than coins to free or to actuate vending, hiring, coin or paper currency dispensing or refunding apparatus by coded identity card or credit card or other personal identification means together with a coded signal, e.g. in the form of personal identification information, like personal identification number [PIN] or biometric data
    • G07F7/1008Active credit-cards provided with means to personalise their use, e.g. with PIN-introduction/comparison system
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06QINFORMATION AND COMMUNICATION TECHNOLOGY [ICT] SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES; SYSTEMS OR METHODS SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES, NOT OTHERWISE PROVIDED FOR
    • G06Q20/00Payment architectures, schemes or protocols
    • G06Q20/30Payment architectures, schemes or protocols characterised by the use of specific devices or networks
    • G06Q20/34Payment architectures, schemes or protocols characterised by the use of specific devices or networks using cards, e.g. integrated circuit [IC] cards or magnetic cards
    • G06Q20/341Active cards, i.e. cards including their own processing means, e.g. including an IC or chip
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06QINFORMATION AND COMMUNICATION TECHNOLOGY [ICT] SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES; SYSTEMS OR METHODS SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES, NOT OTHERWISE PROVIDED FOR
    • G06Q20/00Payment architectures, schemes or protocols
    • G06Q20/38Payment protocols; Details thereof
    • G06Q20/40Authorisation, e.g. identification of payer or payee, verification of customer or shop credentials; Review and approval of payers, e.g. check credit lines or negative lists
    • G06Q20/409Device specific authentication in transaction processing
    • G06Q20/4097Device specific authentication in transaction processing using mutual authentication between devices and transaction partners
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L9/00Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
    • H04L9/08Key distribution or management, e.g. generation, sharing or updating, of cryptographic keys or passwords
    • H04L9/0816Key establishment, i.e. cryptographic processes or cryptographic protocols whereby a shared secret becomes available to two or more parties, for subsequent use
    • H04L9/0819Key transport or distribution, i.e. key establishment techniques where one party creates or otherwise obtains a secret value, and securely transfers it to the other(s)
    • H04L9/0822Key transport or distribution, i.e. key establishment techniques where one party creates or otherwise obtains a secret value, and securely transfers it to the other(s) using key encryption key
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L9/00Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
    • H04L9/08Key distribution or management, e.g. generation, sharing or updating, of cryptographic keys or passwords
    • H04L9/0894Escrow, recovery or storing of secret information, e.g. secret key escrow or cryptographic key storage
    • H04L9/0897Escrow, recovery or storing of secret information, e.g. secret key escrow or cryptographic key storage involving additional devices, e.g. trusted platform module [TPM], smartcard or USB
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L2209/00Additional information or applications relating to cryptographic mechanisms or cryptographic arrangements for secret or secure communication H04L9/00
    • H04L2209/56Financial cryptography, e.g. electronic payment or e-cash

Landscapes

  • Engineering & Computer Science (AREA)
  • Business, Economics & Management (AREA)
  • Physics & Mathematics (AREA)
  • General Physics & Mathematics (AREA)
  • Computer Security & Cryptography (AREA)
  • Accounting & Taxation (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Theoretical Computer Science (AREA)
  • General Business, Economics & Management (AREA)
  • Strategic Management (AREA)
  • Signal Processing (AREA)
  • Finance (AREA)
  • Microelectronics & Electronic Packaging (AREA)
  • Storage Device Security (AREA)

Abstract

L'invention concerne un procédé et un système permettant un transfert de données en mode protégé entre un terminal commandé par une carte à circuit intégré (1) et une unité centrale (3), par exemple un ordinateur central dans une banque. La carte à circuit intégré (1) comprend une information de programme spécifique de la carte qui est utilisée pour la commade de l'interaction de la carte avec le terminal (2) en mode protégé et une information secrète spécifique de la carte qui est utilisée pour protéger par un cryptage des transferts de données en mode protégé entre le terminal (2) et l'unité centrale (3). L'information secrète spécifique de la carte est enregistrée de manière à ce qu'elle ne puisse pas être lue à partir de la carte. L'information de programme spécifique de la carte est transférée de la carte au terminal pour effectuer ladite commande.
CA002241834A 1995-10-31 1996-10-31 Procede et dispositif pour communiquer des donnees Expired - Fee Related CA2241834C (fr)

Applications Claiming Priority (3)

Application Number Priority Date Filing Date Title
SE9503841A SE505353C2 (sv) 1995-10-31 1995-10-31 Förfarande och anordning vid datakommunikation
SE9503841-0 1995-10-31
PCT/SE1996/001396 WO1997016904A1 (fr) 1995-10-31 1996-10-31 Procede et dispositif pour communiquer des donnees

Publications (2)

Publication Number Publication Date
CA2241834A1 CA2241834A1 (fr) 1997-05-09
CA2241834C true CA2241834C (fr) 2006-08-08

Family

ID=36791762

Family Applications (1)

Application Number Title Priority Date Filing Date
CA002241834A Expired - Fee Related CA2241834C (fr) 1995-10-31 1996-10-31 Procede et dispositif pour communiquer des donnees

Country Status (1)

Country Link
CA (1) CA2241834C (fr)

Also Published As

Publication number Publication date
CA2241834A1 (fr) 1997-05-09

Similar Documents

Publication Publication Date Title
US4438824A (en) Apparatus and method for cryptographic identity verification
US4799258A (en) Apparatus and methods for granting access to computers
US5694471A (en) Counterfeit-proof identification card
JP4638990B2 (ja) 暗号鍵情報の安全な配布と保護
EP0005179B1 (fr) Authentification de l'identité d'un utilisateur d'un système d'information
JP2689383B2 (ja) 暗号化通信システム
US4747139A (en) Software security method and systems
EP0266044B1 (fr) Système de télécommunication de sécurité et module de mémoire des mots-clef associé
US4969188A (en) Process and apparatus for the protection of secret elements in a network of encrypting devices with open key management
US5485519A (en) Enhanced security for a secure token code
JPS63229541A (ja) データ交換システム
IL94633A (en) A data transfer system encoded in a key between computers
JP2000222362A (ja) 多重セキュリティ・チェック・ポイントを可能にする方法及び装置
JPS61139878A (ja) 電子資金転送装置の安全保護モジユ−ル
JPH0242261B2 (fr)
AU711237B2 (en) Method and device for data communication
JPH09179951A (ja) 携帯可能情報記憶媒体及びそのシステム
CA2241834C (fr) Procede et dispositif pour communiquer des donnees
JP3549657B2 (ja) 秘密鍵の保持管理方法
JPH09106445A (ja) 情報記録媒体のキー変更方法および情報記録媒体
EP0254565B1 (fr) Méthodes et appareils pour former des données d'identification
JP3797531B2 (ja) ディジタルデータの不正コピー防止システム
JPS60112176A (ja) ポケット端末器、保証されている銀行業務取引の方法及びシステム
JPH0664635B2 (ja) Icカ−ドシステム
JPH08255232A (ja) 個人認証システムおよび個人認証システムにおける暗証番号の管理方法

Legal Events

Date Code Title Description
EEER Examination request
MKLA Lapsed