CN1140087C - 用于授权检验的方法 - Google Patents

用于授权检验的方法 Download PDF

Info

Publication number
CN1140087C
CN1140087C CNB988026678A CN98802667A CN1140087C CN 1140087 C CN1140087 C CN 1140087C CN B988026678 A CNB988026678 A CN B988026678A CN 98802667 A CN98802667 A CN 98802667A CN 1140087 C CN1140087 C CN 1140087C
Authority
CN
China
Prior art keywords
signature
mobile phone
encryption key
sim card
make
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Expired - Lifetime
Application number
CNB988026678A
Other languages
English (en)
Other versions
CN1248367A (zh
Inventor
�ء��ɵ�
罗伯特·雷纳蒂
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Clastres LLC
Telefonaktiebolaget LM Ericsson AB
Original Assignee
Telefonaktiebolaget LM Ericsson AB
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Telefonaktiebolaget LM Ericsson AB filed Critical Telefonaktiebolaget LM Ericsson AB
Publication of CN1248367A publication Critical patent/CN1248367A/zh
Application granted granted Critical
Publication of CN1140087C publication Critical patent/CN1140087C/zh
Anticipated expiration legal-status Critical
Expired - Lifetime legal-status Critical Current

Links

Images

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W12/00Security arrangements; Authentication; Protecting privacy or anonymity
    • H04W12/10Integrity
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06QINFORMATION AND COMMUNICATION TECHNOLOGY [ICT] SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES; SYSTEMS OR METHODS SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES, NOT OTHERWISE PROVIDED FOR
    • G06Q20/00Payment architectures, schemes or protocols
    • G06Q20/30Payment architectures, schemes or protocols characterised by the use of specific devices or networks
    • G06Q20/34Payment architectures, schemes or protocols characterised by the use of specific devices or networks using cards, e.g. integrated circuit [IC] cards or magnetic cards
    • G06Q20/341Active cards, i.e. cards including their own processing means, e.g. including an IC or chip
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06QINFORMATION AND COMMUNICATION TECHNOLOGY [ICT] SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES; SYSTEMS OR METHODS SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES, NOT OTHERWISE PROVIDED FOR
    • G06Q20/00Payment architectures, schemes or protocols
    • G06Q20/38Payment protocols; Details thereof
    • G06Q20/382Payment protocols; Details thereof insuring higher security of transaction
    • G06Q20/3825Use of electronic signatures
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06QINFORMATION AND COMMUNICATION TECHNOLOGY [ICT] SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES; SYSTEMS OR METHODS SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES, NOT OTHERWISE PROVIDED FOR
    • G06Q20/00Payment architectures, schemes or protocols
    • G06Q20/38Payment protocols; Details thereof
    • G06Q20/40Authorisation, e.g. identification of payer or payee, verification of customer or shop credentials; Review and approval of payers, e.g. check credit lines or negative lists
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06QINFORMATION AND COMMUNICATION TECHNOLOGY [ICT] SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES; SYSTEMS OR METHODS SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES, NOT OTHERWISE PROVIDED FOR
    • G06Q20/00Payment architectures, schemes or protocols
    • G06Q20/38Payment protocols; Details thereof
    • G06Q20/40Authorisation, e.g. identification of payer or payee, verification of customer or shop credentials; Review and approval of payers, e.g. check credit lines or negative lists
    • G06Q20/409Device specific authentication in transaction processing
    • G06Q20/4097Device specific authentication in transaction processing using mutual authentication between devices and transaction partners
    • GPHYSICS
    • G07CHECKING-DEVICES
    • G07FCOIN-FREED OR LIKE APPARATUS
    • G07F7/00Mechanisms actuated by objects other than coins to free or to actuate vending, hiring, coin or paper currency dispensing or refunding apparatus
    • G07F7/08Mechanisms actuated by objects other than coins to free or to actuate vending, hiring, coin or paper currency dispensing or refunding apparatus by coded identity card or credit card or other personal identification means
    • G07F7/0806Details of the card
    • G07F7/0813Specific details related to card security
    • G07F7/082Features insuring the integrity of the data on or in the card
    • GPHYSICS
    • G07CHECKING-DEVICES
    • G07FCOIN-FREED OR LIKE APPARATUS
    • G07F7/00Mechanisms actuated by objects other than coins to free or to actuate vending, hiring, coin or paper currency dispensing or refunding apparatus
    • G07F7/08Mechanisms actuated by objects other than coins to free or to actuate vending, hiring, coin or paper currency dispensing or refunding apparatus by coded identity card or credit card or other personal identification means
    • G07F7/10Mechanisms actuated by objects other than coins to free or to actuate vending, hiring, coin or paper currency dispensing or refunding apparatus by coded identity card or credit card or other personal identification means together with a coded signal, e.g. in the form of personal identification information, like personal identification number [PIN] or biometric data
    • G07F7/1008Active credit-cards provided with means to personalise their use, e.g. with PIN-introduction/comparison system
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L9/00Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
    • H04L9/32Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials
    • H04L9/3226Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials using a predetermined code, e.g. password, passphrase or PIN
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L9/00Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
    • H04L9/32Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials
    • H04L9/3234Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials involving additional secure or trusted devices, e.g. TPM, smartcard, USB or software token
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L9/00Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
    • H04L9/32Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials
    • H04L9/3247Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials involving digital signatures
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L2209/00Additional information or applications relating to cryptographic mechanisms or cryptographic arrangements for secret or secure communication H04L9/00
    • H04L2209/56Financial cryptography, e.g. electronic payment or e-cash
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L2209/00Additional information or applications relating to cryptographic mechanisms or cryptographic arrangements for secret or secure communication H04L9/00
    • H04L2209/80Wireless
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/12Applying verification of the received information
    • H04L63/123Applying verification of the received information received data contents, e.g. message integrity
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W12/00Security arrangements; Authentication; Protecting privacy or anonymity
    • H04W12/60Context-dependent security
    • H04W12/69Identity-dependent
    • H04W12/72Subscriber identity

Abstract

用于检验授权的方法,包括向所述智能卡(SmartCard)传送加密密钥或等效密钥,并包含借助于加密密钥和至少一个数引起微处理器进行其结果包含签字的计算的方法,并包含使所述签字与所述数一同传送到对其显示授权的系统的方法,该系统包括其中存储加密密钥的一计算机,所述计算机被编程以执行所述计算以获得所述签字,并然后比较后一签字与第一次提到的签字。

Description

用于授权检验的方法
本发明涉及一种对具有诸如支付系统或数据系统的系统用户资格的个人的授权进行检验的方法。
现有的系统用来检验与支付相关的个人授权。一个这样的系统用于瑞典邮政服务中通过邮政转帐(postgirp)进行的支付。根据这一系统,顾客接受所谓智能卡及用于智能卡的读卡器。加密密钥存储在智能卡上,并在输入PIN代码之后能够由智能卡上的微处理器读取。
所述加密密钥不仅存储在智能卡上,而且存储在瑞典邮政服务邮政转帐部,在邮政转帐部密钥被链接到特定的个人。
当要作出支付时,用户键入所述PIN代码、支付要被送达的帐户号码和所涉及的数额。这里,微处理器根据所谓DEC(数据加密标准)算法基于数额、帐户号码和加密密钥进行计算,以此通过所述计算产生签字。在这完成之后,数额、帐户号码和签字以适当的方式,例如通过数据、邮件或传真,传输到邮政转帐部。
邮政转帐部接收信息,然后进行上述相同的计算并将结果与所传送的签字进行比较。如果比较的结果匹配,则断定被授权的人,即智能卡持有者已经定购了交易,由此执行这一交易。交易是通过从智能卡持有者的邮政转帐帐户向已确定的邮政转帐帐户转移款项而执行的。
这一支付系统是自动化的,并能够在白天夜晚任何时间用于进行支付。
显然,对于所描述的系统必能够由个人用来对邮政转帐或银行支付系统之外的系统显示授权。例如,应能够使个人通过输入他/她的PIN代码以及数额帐户及帐户号码之外的两个数而对数据系统显示授权,并然后将它们与签字一同向数据系统传送。如果数据系统包含加密密钥,则能够计算签字,并如果发现匹配,则能够断定发给了放智能卡的人就是输入信息项的人,并因而被授权。
然而,所述系统明显的缺陷在于,用户为了进行支付必须访问智能卡及专用的读卡器。
本发明解决了这一问题。
这样,本发明涉及用于检验授权的方法,该方法包含向所谓智能卡(SmartCard)传送加密密钥或等效的密钥的方法,并包含使微处理器使用加密密钥和至少一个数进行计算的方法,其计算结果包括签字,并包含使所述签字与所述数一同传送到对其显示授权的系统的方法,由此,这种系统包含在其中存储所述加密密钥的计算机,所述计算机被引导进行所述计算,以便获得所述签字,并包含由计算机对这后一签字与前面所述签字进行比较的方法,其特征在于,所述智能卡是要用于移动电话的所谓SIM卡,且在第一步骤向所述SIM卡中的存储器提供包含唯一标识的唯一信息,以便使用移动电话进行电话通信,并在于第二步骤中对SIM卡存储器提供所述加密密钥,并在于向对其显示授权的系统提供与SIM卡的标识链接的相同的加密密钥,并在于响应通过移动电话上的键盘的输入正确的代码和所述数,所述SIM卡上的微处理器被引导进行结果为所述签字的所述计算。
本发明不限于关于显示授权的任何特定领域。本发明可用于所有类型的系统,诸如支付系统、数据系统、在允许进入之前检验授权的系统等等。
然而以下对本发明的说明是对于通过邮政转帐提供支付的一系统。
以下部分参照附图上所示实施方式的一例,对该系统更为详细地进行说明,其中:
图1简略示出所包含的硬件。
图2示出SIM卡。
图3示出对其功能进行了说明的简示框图。
图4示出对其另一功能进行了说明的简示框图。
图1表示要用于GPS系统或等效的系统一种熟知的类型的移动电话,其中所谓智能卡(SmartCard)与移动电话一同使用以形成可使用的通信单元。在GPS系统中,智能卡是SIM卡。移动电话包括键盘2和显示器3。
图1还示出用于与移动电话1无线通信的基站4。此外,示出计算机5,它属于移动电话要与其通信的系统。
图2还示出把微处理器7与其存储器装在一起的SIM卡6。
本发明涉及用于检验授权的方法,  以此对所谓智能卡(SmartCard)提供加密密钥KEY或等效的密钥,并以此引导微处理器7基于加密密钥及至少一个数进行其结果包含签字的计算。所述数是从键盘输入到微处理器的。然后签字与所述数一同传送到要向其显示授权的系统,该系统包含其中已存储所述加密密钥的计算机5。计算机5被引导进行所述计算以便获得所述签字。然后计算机5对这后来的签字与先提到的签字进行比较。如果两个签字匹配,则用户的授权被证实。
这样本发明是基于具有把用户唯一的标识与加密密钥结合在一起的智能卡的用户。事先假设,只有用户他/她本人使用智能卡。
根据本发明,所述智能卡是用于移动电话的所谓SIM卡6。在第一步骤,包含唯一标识(如GSM标准中所述IMSI)的唯一信息输入到所述SIM卡6中的存储器中,使得支持使用移动电话的电话通信。这与当前在GSM系统中使用的方式相同进行。
在第二步骤,对SIM卡6中的存储器提供所述加密密钥。这一存储器可以是现有的存储器7或另外的存储器。这是以同上述标识输入方式对应的方式完成的,但是这最好由控制对其显示授权的系统的人进行。
根据本发明,向对其显示授权的系统提供与SIM卡的标识链接的相同的和密密钥。这里,例如用于SIM卡的IMSI可作为其标识ID。另外,所述系统中的加密密钥可链接到某一其它标识,诸如用户电话号码、顾客号码或姓名。重要的是系统后来必须能够对确定的用户检索出正确的加密密钥。
本发明的特征还在于,当通过移动电话1上的键盘2与至少所述数一同输入适当的代码时,所述SIM卡上的微处理器被引导进行结果为所述签字的所述计算。微处理器可以是通常包含到SIM卡中的普通的微处理器,但也可以是SIM卡上分开的微处理器。然而在后者的情形下,分开的微处理器链接到SIM卡上普通的微处理器7。
例如,术语“适当的代码”是指,为了把移动电话置于微处理器被引导以进行签字计算的方式而被输入的代码。
那么显然,只要有移动电话并能够引导SIM卡中的微处理器使用加密密钥进行计算,以获得可传送到对其搜寻授权的系统的电子签字即可,以此所述系统进行等效的计算,从而确定授权是否可被证实。其结果是,如引言中所述,为了显示授权不需要其它的设备。
如上所述在证实了授权之后,能够使用移动电话,使系统在系统例如作为邮政转帐系统的部分的情形下进行诸如作出支付的服务。
根据一优选实施例,所述数包含至少两个数。这显著改进了安全性。当本发明用来进行例如通过邮政转帐作出的支付时,数之一能够包含接受支付的帐户号码,而另一数可以包含要付给的数额。
在图3中这由通过移动电话上的的键盘发送给移动电话中的微处理器的数D1和D2表示。当这些数被输入时,微处理器从存储器MEM检索加密密钥KEY,并进行其结果为所述签字SIG的上述计算。
根据优选实施例,由移动电话计算的签字以及至少所述的数,通过移动电话网络4被发送到所述系统。
根据另一实施例,由移动电话计算的签字以及至少所述的数,通过移动电话与系统之间诸如属于系统的计算机这样的接口,从移动电话直接传送到所述系统。接口可包括电缆8或红外线链路或某种其它适当的链路。
根据一优选实施例,引起移动电话在移动电话显示器上呈现所述签字。这种情形下,例如用户能够在属于系统的计算机的键盘上输入所述数和签字。
根据高度推荐的一个实施例,向SIM卡指定一个特定的PIN代码,其方式使得该代码可用来使卡能够进行对签字的所述计算。这一特征提高了安全性,因为用户必须a)知道他/她的PIN代码以便启动移动电话,且b)知道他/她的PIN代码以便访问和启动用来获得电子签字的计算过程。
例如为了便于进行正确的支付并根据优选实施例,使移动电话在其显示器上呈现所述数。例如可在计算签字之前显示帐户号码和帐户。
当已经计算出签字时,就向系统传送数据。以此,如图4所示,总是传送用户标识ID,诸如电话号码、IMSI或某些其它标识。还总要传送签字SIG。此外,还总要传送至少一个数D1或D2。如果涉及的是支付,则传送帐户号码D1和数额D2。当这传送发生时,系统计算机5从存储器MEM检索链接到标识ID的加密密钥KEY,并然后计算签字。当这完成时,计算机对计算的签字与从移动电话传送的签字SIG进行比较。如果两个签字匹配,则断定用户在进行支付9时具有所示的他/她的授权。
为了进一步提高安全性,可作为所示数之一包含一个序号。如果涉及的是支付,这时基于帐户号码、数额和序号进行计算。序号可从00到99。当进行第一个支付时,使用序号00,当进行第二个支付时,使用序号01等等。对应地,系统通过计数来源于同一用户的支付交易的次数,使序号递增。
这就是说,即使对同一帐户号码多次支付相同的量,每一笔支付交易都产生唯一的签字。
显然,本发明通过使用移动电话允许对于任意系统检验授权,并以良好的安全性在白天或夜晚任意时间,允许通过邮政转帐或银行的支付,并除了移动电话之外无需任何额外的设备。以上说明了数个不同的实施例。然而明显的是,基于其计算签字的数可以是不同于以上示例的那些数。此外,可从移动电话传向系统传送向上述信息添加的信息,以便检验授权。
这样,不应认为本发明限于以上所述实施例。而本发明是可在所附权利要求中所载的范围内改变的。

Claims (7)

1.一种用于检验授权的方法,该方法包含向智能卡传送加密密钥或等效的密钥的方法,并包含引导微处理器借助于加密密钥和至少一个数进行其结果包括签字的计算的方法,并包含使所述签字与所述数一同传送到对其显示授权的系统的方法,其中,所述系统包含在其中已存储所述加密密钥的计算机,并使所述系统进行其结果将包含所述签字的所述计算,并包含使计算机对这后来的签字与第一次提及的签字进行比较的方法,其特征在于,所述智能卡是要用于移动电话的SIM卡(6),并在于在第一步骤对所述SIM卡上的存储器(MEM)提供包含唯一标识的唯一信息,以便使用移动电话进行电话通信,并在于第二步骤中对SIM卡上的存储器提供所述加密密钥(KEY),并在于向对其显示授权的系统提供与SIM卡(6)的标识链接的相同的加密密钥(KEY),并在于当通过移动电话(1)的键盘(2)与至少所述数一同输入适当的代码(PIN)时,所述SIM卡上的微处理器被引导进行结果为所述签字(SIG)的所述计算,从而各种不同的数将生成各种不同的唯一的签字。
2.根据权利要求1的方法,特征在于所述数包含至少两个数。
3.根据权利要求1或2的方法,特征在于,使由移动电话(1,7)计算的签字(SIG)同至少所述数通过移动电话网被传送到所述系统(5)。
4.根据权利要求1或2的方法,特征在于,使由移动电话(1,7)计算的签字(SIG)同至少所述数通过移动电话与系统之间的接口,诸如属于系统的一计算机,直接从移动电话(1)向所述系统(5)传送。
5.根据权利要求1或2的方法,特征在于,使移动电话(1)在移动电话上的显示器(3)上呈现所述签字(SIG)。
6.根据权利要求1或2的方法,特征在于把特定的PIN代码传送到SIM卡(6),使其能够用于签字的所述计算。
7.根据权利要求1或2的方法,特征在于使移动电话(1)在其显示器(3)上呈现所述数。
CNB988026678A 1997-02-19 1998-02-05 用于授权检验的方法 Expired - Lifetime CN1140087C (zh)

Applications Claiming Priority (2)

Application Number Priority Date Filing Date Title
SE97005870 1997-02-19
SE9700587A SE508844C2 (sv) 1997-02-19 1997-02-19 Förfarande för behörighetskontroll med SIM-kort

Publications (2)

Publication Number Publication Date
CN1248367A CN1248367A (zh) 2000-03-22
CN1140087C true CN1140087C (zh) 2004-02-25

Family

ID=20405854

Family Applications (1)

Application Number Title Priority Date Filing Date
CNB988026678A Expired - Lifetime CN1140087C (zh) 1997-02-19 1998-02-05 用于授权检验的方法

Country Status (12)

Country Link
US (1) US6556680B1 (zh)
EP (1) EP0962071B1 (zh)
JP (1) JP2001513274A (zh)
CN (1) CN1140087C (zh)
AT (1) ATE383691T1 (zh)
AU (1) AU725952B2 (zh)
BR (1) BR9807372A (zh)
CA (1) CA2281816C (zh)
DE (1) DE69838974D1 (zh)
NO (1) NO993939L (zh)
SE (1) SE508844C2 (zh)
WO (1) WO1998037663A1 (zh)

Cited By (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102085346B (zh) * 2011-01-02 2012-02-15 刘晓云 一种治疗慢性阻塞性肺病的中药组合物

Families Citing this family (40)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US6925568B1 (en) 1998-01-16 2005-08-02 Sonera Oyj Method and system for the processing of messages in a telecommunication system
JP2002530772A (ja) * 1998-11-24 2002-09-17 テレフオンアクチーボラゲット エル エム エリクソン(パブル) 移動電話による自動pcログオン
FR2787273B1 (fr) * 1998-12-14 2001-02-16 Sagem Procede de paiement securise
AUPP818599A0 (en) * 1999-01-18 1999-02-11 Benson, Keith Apparatus & method relating to authorisation control
FI108813B (fi) * 1999-03-08 2002-03-28 Sonera Smarttrust Oy Menetelmä ja järjestelmä tietoliikennejärjestelmässä
SE513773C2 (sv) * 1999-03-19 2000-11-06 Ericsson Telefon Ab L M Metod och system för elektronisk handel
CN100468469C (zh) 1999-09-16 2009-03-11 松下电器产业株式会社 电子钱包
SE522260C2 (sv) 1999-10-01 2004-01-27 Ericsson Telefon Ab L M Metod, system och säkerhetsadapter för att exekvera säker dataöverföring i ett trådlöst nät
DK174672B1 (da) * 1999-11-09 2003-08-25 Orange As System til elektronisk udlevering af en personlig identifikationskode
AU780943B2 (en) * 1999-12-30 2005-04-28 International Business Machines Corporation Method of payment by means of an electronic communication device
US6760841B1 (en) * 2000-05-01 2004-07-06 Xtec, Incorporated Methods and apparatus for securely conducting and authenticating transactions over unsecured communication channels
FR2808947B1 (fr) * 2000-05-09 2002-10-18 Bull Cp8 Procede pour authentifier un objet portatif, objet portatif correspondant, et appareil pour mettre en oeuvre le procede
US20050178060A1 (en) * 2003-05-08 2005-08-18 Weder Donald E. Collapsible and/or erectable floral containers
JP2002232861A (ja) * 2001-01-30 2002-08-16 Hitachi Ltd 映像情報配信装置および操作装置
GB2372865B (en) * 2001-03-02 2004-06-16 Nokia Mobile Phones Ltd Electronic transactions
GB2372904B (en) * 2001-03-02 2004-09-08 Nokia Mobile Phones Ltd Electronic transactions
US7032047B2 (en) * 2001-03-12 2006-04-18 Motorola, Inc. Method of regulating usage and/or concession eligibility via distributed list management in a smart card system
FR2825543B1 (fr) * 2001-06-01 2003-09-26 Radiotelephone Sfr Procede et dispositif de certification d'une transaction
FR2827448B1 (fr) * 2001-07-12 2003-12-19 Gemplus Card Int Procede assurant une garantie de paiement pour le commerce electronique notamment par telephone mobile et systeme de mise en oeuvre
CN100508448C (zh) * 2001-10-12 2009-07-01 松下电器产业株式会社 内容处理装置
US20030088794A1 (en) * 2001-11-05 2003-05-08 Aladdin Knowledge Systems Ltd. Method and system for rendering secure pin entry
WO2003050774A1 (en) * 2001-12-10 2003-06-19 Beamtrust A/S A method of distributing a public key
US7245902B2 (en) 2002-01-16 2007-07-17 2 Ergo Limited Secure messaging via a mobile communications network
BR0308965A (pt) * 2002-04-03 2005-02-01 Swivel Secure Ltd Sistema e método para transação segura com cartão de crédito e/ou débito
WO2003094438A1 (en) * 2002-05-01 2003-11-13 Telefonaktiebolaget Lm Ericsson (Publ) System, apparatus and method for sim-based authentication and encryption in wireless local area network access
WO2004036513A1 (en) * 2002-10-17 2004-04-29 Vodafone Group Plc Facilitating and authenticating transactions
EG23422A (en) * 2002-11-24 2005-07-10 Ashraf Kamal Salem Mashhour Scheme for spreading and easy use of electronic services and remote payments.
DE10311249A1 (de) * 2003-03-14 2004-09-23 Robert Bosch Gmbh Mikroprozessorsystem und Verfahren zum Erfassen des Austauschs von Bausteinen des Systems
KR20040082822A (ko) * 2003-03-20 2004-09-30 엘지전자 주식회사 원격제어를 위한 사용자 인증방법 및 원격제어장치
CN100369504C (zh) * 2003-04-10 2008-02-13 中兴通讯股份有限公司 在机卡分离的phs手机上防止被并机盗打的方法
US7978707B2 (en) * 2004-04-01 2011-07-12 Alcatel Lucent Method and apparatus for securely establishing L3-SVC connections
CN100355314C (zh) * 2004-06-28 2007-12-12 华为技术有限公司 一种应用通用鉴权框架的方法
FR2876478B1 (fr) * 2004-10-12 2007-01-05 David Bensimon Systeme securise personnalisable de reconnaissance et d'utilisation conditionnelle d'appareils electriques ou electroniques et procede d'utilisation
US20070186115A1 (en) * 2005-10-20 2007-08-09 Beijing Watch Data System Co., Ltd. Dynamic Password Authentication System and Method thereof
US7926713B2 (en) * 2007-02-16 2011-04-19 Sony Corporation Settlement server, settlement request server and settlement execution terminal
WO2008150060A1 (en) * 2007-06-04 2008-12-11 Lg Electronics Inc. Contactless management using envelope format
CN101127954B (zh) * 2007-09-21 2010-08-18 冯卫东 一种基于手机拨号通讯或gprs分组通讯技术实现数据传送的方法
DE102008017630A1 (de) * 2008-04-04 2009-10-08 Deutsche Telekom Ag Verfahren, mobiles Telekommunikationsendgerät und System zur Authentisierung
FR2958102B1 (fr) * 2010-03-23 2012-08-17 Ingenico Sa Procede et systeme de validation d'une transaction, terminal transactionnel et programme correspondants.
GB2611806A (en) * 2021-10-15 2023-04-19 Mastercard International Inc Chip authentication

Family Cites Families (9)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US5283828A (en) * 1991-03-01 1994-02-01 Hughes Training, Inc. Architecture for utilizing coprocessing systems to increase performance in security adapted computer systems
US5335278A (en) * 1991-12-31 1994-08-02 Wireless Security, Inc. Fraud prevention system and process for cellular mobile telephone networks
US5327497A (en) * 1992-06-04 1994-07-05 Integrated Technologies Of America, Inc. Preboot protection of unauthorized use of programs and data with a card reader interface
US5596718A (en) * 1992-07-10 1997-01-21 Secure Computing Corporation Secure computer network using trusted path subsystem which encrypts/decrypts and communicates with user through local workstation user I/O devices without utilizing workstation processor
WO1994011849A1 (en) 1992-11-11 1994-05-26 Telecom Finland Oy Mobile telephone systems and a method for carrying out financial transactions by means of a mobile telephone system
US5537474A (en) * 1994-07-29 1996-07-16 Motorola, Inc. Method and apparatus for authentication in a communication system
US5608778A (en) * 1994-09-22 1997-03-04 Lucent Technologies Inc. Cellular telephone as an authenticated transaction controller
FI100137B (fi) 1994-10-28 1997-09-30 Vazvan Simin Reaaliaikainen langaton telemaksujärjestelmä
SE506506C2 (sv) 1995-04-11 1997-12-22 Au System Elektronisk transaktionsterminal, telekommunikationssystem innefattande en elektronisk transaktionsterminal, smart kort som elektronisk transaktionsterminal samt metod för överföring av elektroniska krediter

Cited By (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102085346B (zh) * 2011-01-02 2012-02-15 刘晓云 一种治疗慢性阻塞性肺病的中药组合物

Also Published As

Publication number Publication date
CN1248367A (zh) 2000-03-22
WO1998037663A1 (en) 1998-08-27
AU6126898A (en) 1998-09-09
ATE383691T1 (de) 2008-01-15
SE508844C2 (sv) 1998-11-09
DE69838974D1 (de) 2008-02-21
NO993939L (no) 1999-10-19
CA2281816C (en) 2007-09-18
EP0962071A1 (en) 1999-12-08
CA2281816A1 (en) 1998-08-27
NO993939D0 (no) 1999-08-17
BR9807372A (pt) 2000-03-14
AU725952B2 (en) 2000-10-26
EP0962071B1 (en) 2008-01-09
JP2001513274A (ja) 2001-08-28
SE9700587L (sv) 1998-08-20
US6556680B1 (en) 2003-04-29
SE9700587D0 (sv) 1997-02-19

Similar Documents

Publication Publication Date Title
CN1140087C (zh) 用于授权检验的方法
CN1252640C (zh) 电子信用卡
CA2407513C (en) Identification barcode assigning method, identity verifying method, identification barcode assigning device, identity verifying device, and portable terminal device
US5657389A (en) Positive identification system and method
US6202055B1 (en) Positive identification display device and scanner for low cost collection and display of graphic and text data in a secure manner
US7177849B2 (en) Method for validating an electronic payment by a credit/debit card
US6424249B1 (en) Positive identity verification system and method including biometric user authentication
US20030191945A1 (en) System and method for secure credit and debit card transactions
US20020073044A1 (en) Method and apparatus for an integrated identity security and payment system
MXPA04009725A (es) Sistema y metodo para transacciones de tarjeta de credito y debito seguras.
CN1319219A (zh) 用于支付商品或服务款项的方法和系统
GB2370398A (en) Card verification system and card verification method
WO2003003320A1 (en) Apparatus and method for electronic payment with strengthened authentification capability and vending machine equiped with the same apparatus
CN1299108A (zh) 销售和付款终端之间结算的电子结算系统
KR20020078989A (ko) 휴대단말기를 이용한 신용카드 거래인증 시스템 및 그 방법
CN1418355A (zh) 执行交易的方法
NZ553502A (en) Web-based automated code delivery
WO2002021354A1 (en) Payment system
CN1620676A (zh) 用于借助移动电话终端设备来进行使用权检验过程和 /或支付过程的方法和系统、移动电话终端设备、询问站、用于移动电话终端设备的控制程序和用于查询站的控制程序
US20020078360A1 (en) Method of conducting transactions
EP1408435A1 (en) Electronic currency transfer settling system
KR200279242Y1 (ko) 신용카드 조회단말기
US20050010813A1 (en) Security in data communication networks
KR20030002959A (ko) 신용결제시스템

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
C14 Grant of patent or utility model
GR01 Patent grant
ASS Succession or assignment of patent right

Owner name: CLUSTER CO., LTD.

Free format text: FORMER OWNER: LM ERICSSON TELECOMMUNICATIONS AB

Effective date: 20150430

Owner name: OPTIS WIRELESS TECHNOLOGY LLC

Free format text: FORMER OWNER: CLUSTER CO., LTD.

Effective date: 20150430

C41 Transfer of patent application or patent right or utility model
TR01 Transfer of patent right

Effective date of registration: 20150430

Address after: Texas, USA

Patentee after: Telefonaktiebolaget LM Ericsson (publ)

Address before: Delaware

Patentee before: Clastres LLC

Effective date of registration: 20150430

Address after: Delaware

Patentee after: Clastres LLC

Address before: Stockholm

Patentee before: LM Ericsson Telecom

CX01 Expiry of patent term
CX01 Expiry of patent term

Granted publication date: 20040225