EP2218044A1 - Procede et systeme pour transfert d'objets - Google Patents
Procede et systeme pour transfert d'objetsInfo
- Publication number
- EP2218044A1 EP2218044A1 EP08861672A EP08861672A EP2218044A1 EP 2218044 A1 EP2218044 A1 EP 2218044A1 EP 08861672 A EP08861672 A EP 08861672A EP 08861672 A EP08861672 A EP 08861672A EP 2218044 A1 EP2218044 A1 EP 2218044A1
- Authority
- EP
- European Patent Office
- Prior art keywords
- entity
- user
- information
- provider
- delivery
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Withdrawn
Links
Classifications
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06Q—INFORMATION AND COMMUNICATION TECHNOLOGY [ICT] SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES; SYSTEMS OR METHODS SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES, NOT OTHERWISE PROVIDED FOR
- G06Q20/00—Payment architectures, schemes or protocols
- G06Q20/08—Payment architectures
- G06Q20/12—Payment architectures specially adapted for electronic shopping systems
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06Q—INFORMATION AND COMMUNICATION TECHNOLOGY [ICT] SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES; SYSTEMS OR METHODS SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES, NOT OTHERWISE PROVIDED FOR
- G06Q20/00—Payment architectures, schemes or protocols
- G06Q20/02—Payment architectures, schemes or protocols involving a neutral party, e.g. certification authority, notary or trusted third party [TTP]
Definitions
- the present invention relates to methods and systems for transferring objects between a provider and a user.
- Transfer systems allow a user to purchase an item from a provider. In some existing systems, this transfer is anonymous, that is, you can not associate the user with the object. Specifically, the provider does not know who the object is supplied to.
- a trusted intermediary or certified intermediary means an entity with which one of the parties between the user and the supplier has entered into a contract for the provision of services. This contract results, for example, in an exchange of certificates or other identification mechanisms allowing a positive identification between the two parties.
- the subject of the present invention is a method of transferring an object between a provider entity capable of supplying an object and a user entity, the transfer being carried out through an intermediate entity comprising:
- the method furthermore comprises:
- the supplier entity knows the object without knowing the identity of the user entity that has identified the object and the intermediate entity knows the identity of the user entity wishing to be delivered the object, but does not know the nature of the object because it is hidden.
- the method further comprises a collection by the intermediate entity and from the user entity of a compensation for the object; and a transmission by the intermediate entity and to the entity providing the compensation.
- the transfer becomes a transaction.
- no entity has information to identify the object as well as the user entity because the compensation is transmitted by a mechanism similar to the object.
- the method simultaneously comprises transmitting transmission information from the user entity and to the intermediate entity of said second information. This allows the user entity to connect only once to the intermediate entity.
- the method comprises an identification by the user entity of the intermediate entity. This makes it possible to limit the risks of collusion between the supplier entity and the intermediate entity.
- the identification by the user entity of the intermediate entity includes the transmission by the user entity and to the provider entity of contact information relating to the intermediate entity.
- the method furthermore comprises a transmission by the supplier entity to the user entity of an anonymous purchasing identifier, a transmission by the user entity to the intermediate entity of this anonymous purchasing identifier and of identifying information relating to the provider entity, and a transmission by the intermediate entity and to the supplier entity of the anonymous purchasing identifier and contact information relating to the intermediate entity.
- said verification is performed by the intermediate entity. More specifically, the method comprises a transmission by the user entity and to the intermediate entity of the second piece of information, a transmission by the supplier entity and to the intermediate entity of the first piece of information and the said piece of checking is performed by the entity intermediate. Alternatively, said verification is performed by the supplier entity. More specifically, the method further comprises a transmission by the user entity and to an intermediate entity of the second information, a transmission by the intermediate entity and to the provider entity of said second information and said verification is performed by the supplier entity.
- the object is a physical object delivered in a physically masked form.
- the masked object corresponds to an encrypted electronic content by means of at least one encryption key and the method furthermore comprises a step of reception by the user entity of a decryption key capable of decrypting the encrypted object.
- determining the first information comprises implementing a unique number generator and possibly a public key and private key system.
- the invention also relates to a system for transferring an object between a provider entity capable of supplying an object to a user entity with the aid of an intermediate entity, said entities being connected to one another via a network, characterized in that
- the user entity comprises means: capable of establishing an anonymous connection of the user entity with the provider entity to identify the object;
- the supplier entity comprises means: capable of determining a first piece of information corresponding to the identified object; o able to transmit to the user entity said first information; and o able to transmit to the intermediate entity the object in masked form after receiving a delivery request;
- the intermediate entity includes means: o able to issue a delivery request to the supplier entity; and o able to deliver to the user entity the object received from the supplier, and in that the system comprises means able to compare the first information with a second information from the user entity, the issuing of the delivery request depending on the result of the comparison.
- the invention also relates to an interface method between a user entity and a provider entity capable of providing an object to the user entity, characterized in that it comprises, at the intermediate entity level:
- the invention also relates to a computer program capable of being implemented on an entity, characterized in that it comprises code instructions for implementing the interface method when it is executed by the entity. Furthermore, the invention also relates to an entity capable of acting as an intermediary between a user entity and a provider entity for the transfer of an object, characterized in that it comprises:
- the invention also relates to a method of providing an object to a user of a user entity, characterized in that it comprises: an identification of an object to be supplied; a determination of a first piece of information corresponding to the identified object;
- the invention relates to a program for an entity capable of supplying an object, characterized in that it comprises code instructions for the implementation of the supply method, when it is executed by the entity .
- the invention also relates to an entity capable of supplying an object, characterized in that it comprises:
- FIG. 1 represents the architecture of the system used
- the transaction system comprises a supplier of goods or objects, as well as a user 4, and a delivery intermediary 6.
- the supplier 2 produces and delivers physical products
- the User 4 is an individual
- Intermediate 6 is a delivery company.
- the provider, the user, and the intermediary each have a respective entity, namely a supplier entity 2, a user entity 4, an intermediate entity 6.
- Each of the entities 2, 4 and 6 comprises at least one interface of telecommunication and a computer or server associated with memories operating under the control of a microprocessor.
- the user has an identity.
- Entities 2, 4 and 6 communicate via a telecommunication network 8 such as the internet network.
- the computer is associated with an IP type network address.
- the system comprises a hardware link 10 between the supplier 2 and the intermediate 6 and a hardware link 12 between the intermediate 6 and the user 4, so as to allow the transport and delivery of the object of the transaction.
- the provider 2 comprises a generator 14 of unique numbers, a system 16 of duplicate keys, private key and public key, as well as a shopping database 18.
- This method begins with a phase of determining the object of the transaction denoted 20.
- This phase begins with an anonymous connection 22 between the user and the provider.
- This connection is said to be anonymous, in the sense that it does not allow the provider to know the identity of the user.
- this step 22 may require the user to be authenticated to the provider via a valid user name only in the provider environment and which does not include any user identification information. real using this username.
- this connection is not associated with an account but only with a transaction. If the network address, or IP address, of the user is accessible, it must not be possible to identify the user.
- Such anonymous connections are conventional and this step 22 will not be described in more detail.
- the user identifies the object of the transaction, that is to say the object he wishes to obtain for example in exchange for compensation.
- the provider entity determines during a step 23 information corresponding to the object of the transaction.
- This information can be a certificate or assertion.
- the provider entity sends the assertion to the user entity in a step 24.
- This assertion does not identify the object of the transaction for an entity other than the provider. Indeed, the assertion is generated using the unique number generator 14 and optionally certified with the system 16 private key and public key provider. The assertion does not contain any description or information that enables a third party to identify the purpose of the transaction.
- the assertion includes an identifier of the object of the encrypted transaction, for example, using a password provided by the user and / or the key of the provider.
- the use of the private key and public key system 16 makes it possible to avoid the falsification of the assertion and in particular the generation of assertions by other entities of the system.
- the user entity After receiving this assertion, the user entity identifies the intermediary, which is not necessarily certified, during a step 26.
- this step 26 corresponds to the identification, in an Internet form of the server of the supplier entity, the intermediate entity and the provision of corresponding contact information relating to the intermediate entity.
- the method then comprises an intermediate verification phase 30, which starts with a transmission 32, by the user entity and to the intermediate entity of a user version of the assertion denoted VU.
- This user version constitutes a second piece of information corresponding to the object of the transaction.
- the user also transmits delivery information such as for example a delivery address.
- the supplier also sends the intermediary a supplier version of the assertion denoted VF.
- the intermediate third party 6 has a version of the assertion from the provider and a version of the assertion from the user.
- the intermediary then verifies the identity of the two versions of the assertion.
- the assertions do not contain an identifier of the object of the transaction or else in encrypted form, so that this step 36 does not allow the intermediary to know the object of the transaction.
- the assertion includes information corresponding to the nature of the compensation of the transaction, that is to say for example a monetary value.
- this delivery phase comprises firstly a payment request 42 issued by the intermediate entity to the attention of the user entity, and the return transmission of a compensation 44, by the entity user and to the intermediate entity.
- this compensation transmitted during step 44 corresponds to the compensation for the object of the transaction as well as to additional compensation for the intermediate entity.
- Such a method of compensation for intermediary services makes it possible to avoid the instigation of a customer / supplier relationship between supplier 2 and intermediary 6, thus reducing the risk of collusion between these two entities.
- the intermediate entity After receiving the compensation, the intermediate entity transmits the compensation corresponding to the object of the transaction to the supplier entity during a step 46.
- the compensation is transmitted simultaneously with the supplier version. the assertion that is returned to the provider entity to allow it to retrieve, in its internal database 18, the object of the transaction.
- the provider entity then transmits, during a step 48, the object of the transaction to the intermediate entity.
- This object is transmitted in a masked form, so that the intermediary can not have access to the object and can not identify its nature.
- the intermediate entity delivers it to the user entity during a step 50.
- step 24 of assertion transmission by the provider entity to the user entity is followed by transmission of an anonymous purchase identifier.
- step 26 of identification of the intermediate by the user entity and to the provider entity is not performed.
- the user entity transmits to the intermediate entity the anonymous purchase identifier received from the supplier entity, in a step 31.
- This purchase identifier comprises identification information. provider entity and allows the intermediate entity to contact the supplier entity.
- the intermediate entity transmits the purchase identifier during a step 33 at the same time as information enabling the provider entity to identify it, that is to say, to identify the intermediary.
- the provider entity transmits the provider version of the assertion to the intermediary and the method resumes at step 34, as described above with reference to FIG.
- none of the entities simultaneously has information identifying the user and information identifying the object of the transaction.
- the intermediary does not need to be part of a circle of trust and is chosen by the user.
- the provider entity 2 provides objects including hardware, software, digital content such as a movie, encryption keys, and so on.
- the intermediate entity 6 is a network connection platform, and the system makes it possible to transfer objects anonymously.
- the transferred content should be encrypted so that the intermediary can not access it.
- the method comprises an additional step of transmission by the provider entity and to the user entity of a decryption key, for example during the transmission of the assertion.
- the assertion is time stamped and its lifetime is limited in time so that the transaction is lapsed if it is not performed in a given period of time and the assertion can not be reused later by the user entity or by the intermediate entity.
- the object is not compensated.
- the invention relates to a method and a transfer system.
- the invention is implemented by various programs executed by the microprocessors of the elements of the system and in particular by an interface program executed at a server of the intermediate entity.
Landscapes
- Business, Economics & Management (AREA)
- Accounting & Taxation (AREA)
- Engineering & Computer Science (AREA)
- Strategic Management (AREA)
- Physics & Mathematics (AREA)
- General Business, Economics & Management (AREA)
- General Physics & Mathematics (AREA)
- Theoretical Computer Science (AREA)
- Finance (AREA)
- Computer Security & Cryptography (AREA)
- Data Exchanges In Wide-Area Networks (AREA)
- Information Transfer Between Computers (AREA)
Abstract
Description
Claims
Applications Claiming Priority (2)
| Application Number | Priority Date | Filing Date | Title |
|---|---|---|---|
| FR0708542A FR2924880A1 (fr) | 2007-12-07 | 2007-12-07 | Procede et systeme pour transfert d'objets |
| PCT/FR2008/052191 WO2009077705A1 (fr) | 2007-12-07 | 2008-12-03 | Procede et systeme pour transfert d'objets |
Publications (1)
| Publication Number | Publication Date |
|---|---|
| EP2218044A1 true EP2218044A1 (fr) | 2010-08-18 |
Family
ID=39938256
Family Applications (1)
| Application Number | Title | Priority Date | Filing Date |
|---|---|---|---|
| EP08861672A Withdrawn EP2218044A1 (fr) | 2007-12-07 | 2008-12-03 | Procede et systeme pour transfert d'objets |
Country Status (3)
| Country | Link |
|---|---|
| EP (1) | EP2218044A1 (fr) |
| FR (1) | FR2924880A1 (fr) |
| WO (1) | WO2009077705A1 (fr) |
Families Citing this family (1)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| US9621680B2 (en) | 2013-10-21 | 2017-04-11 | Globalfoundries Inc. | Consistent data masking |
Family Cites Families (4)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| EP1219088A2 (fr) * | 1999-04-28 | 2002-07-03 | Unicate B.V. | Procede et systeme de transactions pour reseaux de donnees, tels que l'internet |
| US7346577B1 (en) * | 2000-08-28 | 2008-03-18 | Javien Digital Payment Solutions, Inc. | Third-party billing system and method |
| EP1388797A3 (fr) * | 2002-08-08 | 2004-10-13 | Fujitsu Limited | Procédé, appareil et cadre pour l'achat de biens et de services |
| US7324976B2 (en) * | 2004-07-19 | 2008-01-29 | Amazon Technologies, Inc. | Automatic authorization of programmatic transactions |
-
2007
- 2007-12-07 FR FR0708542A patent/FR2924880A1/fr active Pending
-
2008
- 2008-12-03 WO PCT/FR2008/052191 patent/WO2009077705A1/fr not_active Ceased
- 2008-12-03 EP EP08861672A patent/EP2218044A1/fr not_active Withdrawn
Non-Patent Citations (1)
| Title |
|---|
| See references of WO2009077705A1 * |
Also Published As
| Publication number | Publication date |
|---|---|
| WO2009077705A1 (fr) | 2009-06-25 |
| FR2924880A1 (fr) | 2009-06-12 |
Similar Documents
| Publication | Publication Date | Title |
|---|---|---|
| EP2514166B1 (fr) | Accès a un réseau de distribution de contenu numérique | |
| EP1442557B1 (fr) | Systeme et procede pour creer un reseau securise en utilisant des justificatifs d'identite de lots de dispositifs | |
| EP1153376B1 (fr) | Procede de telepaiement et systeme pour la mise en oeuvre de ce procede | |
| US7853782B1 (en) | Secure intermediation system and method | |
| US20130061055A1 (en) | Apparatus and Methods for Providing Scalable, Dynamic, Individualized Credential Services Using Mobile Telephones | |
| US20060168663A1 (en) | Secure transaction protocol | |
| EP1104921A2 (fr) | Procédé de transmission d'information et serveur le mettant en oeuvre | |
| EP1327345A1 (fr) | Procede de controle d'acces a des adresses de sites internet | |
| AU2001266614A1 (en) | Secure transaction protocol | |
| US7660981B1 (en) | Verifiable chain of transfer for digital documents | |
| EP3857413B1 (fr) | Procede de traitement d'une transaction, dispositif, systeme et programme correspondant | |
| WO2017103472A1 (fr) | Procede de transmission d'une information numerique | |
| FR3049137A1 (fr) | Procede permettant de gerer des contrats intelligents associes ou non a une identite digitale a travers un reseau informatique decentralise | |
| EP2218044A1 (fr) | Procede et systeme pour transfert d'objets | |
| US9172679B1 (en) | Secure intermediation system and method | |
| EP4359986B1 (fr) | Procédé et dispositif de paiement par chaînes de blocs | |
| WO2001073706A1 (fr) | Systeme de paiement permettant de ne pas divulguer d'information bancaire sur le reseau public et quasi-public | |
| CA2237441C (fr) | Mecanisme pour soumissionner en toute securite dans un reseau electronique ouvert | |
| Kravitz | Highly scalable on-line payments via task decoupling | |
| EP3371760A1 (fr) | Procédé de verification d'identité lors d'une virtualisation | |
| EP1258844A1 (fr) | Procédé et système pour l'établissement de la preuve d'une transaction électronique | |
| WO2002065411A2 (fr) | Methode et systeme de securisation d'une transaction commerciale au moyen d'une carte a memoire | |
| WO2017005644A1 (fr) | Procédé et système de contrôle d'accès à un service via un média mobile sans intermediaire de confiance | |
| FR2830395A1 (fr) | Systeme de controle d'une signature electronique | |
| FR2831361A1 (fr) | Jeton informatique |
Legal Events
| Date | Code | Title | Description |
|---|---|---|---|
| PUAI | Public reference made under article 153(3) epc to a published international application that has entered the european phase |
Free format text: ORIGINAL CODE: 0009012 |
|
| 17P | Request for examination filed |
Effective date: 20100618 |
|
| AK | Designated contracting states |
Kind code of ref document: A1 Designated state(s): AT BE BG CH CY CZ DE DK EE ES FI FR GB GR HR HU IE IS IT LI LT LU LV MC MT NL NO PL PT RO SE SI SK TR |
|
| AX | Request for extension of the european patent |
Extension state: AL BA MK RS |
|
| 17Q | First examination report despatched |
Effective date: 20101227 |
|
| DAX | Request for extension of the european patent (deleted) | ||
| GRAP | Despatch of communication of intention to grant a patent |
Free format text: ORIGINAL CODE: EPIDOSNIGR1 |
|
| RIC1 | Information provided on ipc code assigned before grant |
Ipc: G06Q 20/12 20120101ALI20120302BHEP Ipc: G06Q 20/02 20120101AFI20120302BHEP |
|
| STAA | Information on the status of an ep patent application or granted ep patent |
Free format text: STATUS: THE APPLICATION IS DEEMED TO BE WITHDRAWN |
|
| 18D | Application deemed to be withdrawn |
Effective date: 20120823 |