WO1999060533A1 - Terminal de transaction financiere avec limitation d'acces - Google Patents

Terminal de transaction financiere avec limitation d'acces Download PDF

Info

Publication number
WO1999060533A1
WO1999060533A1 PCT/CA1999/000431 CA9900431W WO9960533A1 WO 1999060533 A1 WO1999060533 A1 WO 1999060533A1 CA 9900431 W CA9900431 W CA 9900431W WO 9960533 A1 WO9960533 A1 WO 9960533A1
Authority
WO
WIPO (PCT)
Prior art keywords
financial transaction
transaction terminal
terminal
housing
access port
Prior art date
Application number
PCT/CA1999/000431
Other languages
English (en)
Inventor
David Henry Groves
Fraser Hardman
John Richard Spence
Ki Sheung Yuen
Yiu Kong Wong
Original Assignee
Ivi Checkmate Limited
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Priority claimed from CA 2237666 external-priority patent/CA2237666A1/fr
Priority claimed from US09/084,999 external-priority patent/US6097606A/en
Application filed by Ivi Checkmate Limited filed Critical Ivi Checkmate Limited
Priority to AU38060/99A priority Critical patent/AU3806099A/en
Priority to EP99920492A priority patent/EP1078335A1/fr
Publication of WO1999060533A1 publication Critical patent/WO1999060533A1/fr

Links

Classifications

    • GPHYSICS
    • G07CHECKING-DEVICES
    • G07FCOIN-FREED OR LIKE APPARATUS
    • G07F7/00Mechanisms actuated by objects other than coins to free or to actuate vending, hiring, coin or paper currency dispensing or refunding apparatus
    • G07F7/08Mechanisms actuated by objects other than coins to free or to actuate vending, hiring, coin or paper currency dispensing or refunding apparatus by coded identity card or credit card or other personal identification means
    • G07F7/10Mechanisms actuated by objects other than coins to free or to actuate vending, hiring, coin or paper currency dispensing or refunding apparatus by coded identity card or credit card or other personal identification means together with a coded signal, e.g. in the form of personal identification information, like personal identification number [PIN] or biometric data
    • G07F7/1008Active credit-cards provided with means to personalise their use, e.g. with PIN-introduction/comparison system
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06QINFORMATION AND COMMUNICATION TECHNOLOGY [ICT] SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES; SYSTEMS OR METHODS SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES, NOT OTHERWISE PROVIDED FOR
    • G06Q20/00Payment architectures, schemes or protocols
    • G06Q20/30Payment architectures, schemes or protocols characterised by the use of specific devices or networks
    • G06Q20/34Payment architectures, schemes or protocols characterised by the use of specific devices or networks using cards, e.g. integrated circuit [IC] cards or magnetic cards
    • G06Q20/341Active cards, i.e. cards including their own processing means, e.g. including an IC or chip
    • GPHYSICS
    • G07CHECKING-DEVICES
    • G07FCOIN-FREED OR LIKE APPARATUS
    • G07F7/00Mechanisms actuated by objects other than coins to free or to actuate vending, hiring, coin or paper currency dispensing or refunding apparatus
    • G07F7/08Mechanisms actuated by objects other than coins to free or to actuate vending, hiring, coin or paper currency dispensing or refunding apparatus by coded identity card or credit card or other personal identification means
    • G07F7/0873Details of the card reader
    • G07F7/088Details of the card reader the card reader being part of the point of sale [POS] terminal or electronic cash register [ECR] itself
    • G07F7/0886Details of the card reader the card reader being part of the point of sale [POS] terminal or electronic cash register [ECR] itself the card reader being portable for interacting with a POS or ECR in realizing a payment transaction

Definitions

  • TITLE FINANCIAL TRANSACTION TERMINAL WITH LIMITED ACCESS
  • the present invention relates to financial transaction terminals capable of cooperating with smart cards stored in an accessible part of the access terminal.
  • the application is directed to improvements in security of such terminals .
  • SIM Security Identity Module
  • SAM Secure Access Module
  • I/O pad configurations and capabilities as a standard ISO (CNet) smart card.
  • the SIM or SAM cards because of their small size, can be installed inside a financial transaction terminal for verification, password, registration, billing information or as an electronic purse, where monetary values can be transferred to and from the smart card.
  • Both the SIM and SAM cards have special adapters for attachment to a circuit board for receiving the card and electrically connecting the card with the circuit board. In this way, the circuit board communicates directly with the card which is removable.
  • the user may need to replace the SIM or SAM card and as such, requires access to the acceptors.
  • these cards can be used as an electronic purse which is replaced by the user, when the old one is full.
  • Financial terminals which are smart card compatible have become increasingly popular for point of sale transactions .
  • debit fund transfer systems are becoming quite common. A single terminal which is compatible with both systems would be desired.
  • PIN entry is required as a means to identify the legitimate user.
  • This PIN is protected by encrypting the PIN and data which is received by the unit or sent by the unit.
  • the common standards such as INTERAC and VISA, require certain physical security to protect against unauthorized entry to the unit.
  • Financial transaction terminals for debit card transactions have an electronic switch arrangement which shuts down the unit if the housing of the financial transaction terminal is separated exposing the enclosed circuitry and software.
  • the debit card security approach is desirable, however, it is also desirable to have a device with SIM or SAM cards for recordal of certain information directly in the device while allowing a user access to these cards.
  • the present invention combines these two capabilities and while providing effective security for the financial transaction device.
  • a financial transaction terminal is capable of cooperating with smart cards and includes a housing enclosing electronic circuitry which cooperates with a visual display and a key pad.
  • the housing includes a slot entry for receiving a smart card and forming an electronic circuit between a received smart card and the enclosed circuitry.
  • the key pad arrangement allows a user to enter information into the financial terminal and the terminal includes at least one accessible secure module located in an access port of the housing.
  • the housing includes an electrical switch seal arrangement about the access port to prevent unauthorized entry into the financial transaction terminal through the port.
  • the financial transaction terminal allows access to the secure module while the seal arrangement about the port provides additional security for the terminal.
  • the device includes two security identity modules attached to the circuit board of the electronic circuitry.
  • the circuit board about the access port includes a series of connection terminals and the housing includes a zebra connector having alternating conducting and non conducting layers extending between the series of connection terminals and electrically connecting some of said terminals to form a security structure about the access port.
  • the two security modules are readily accessible and the housing arid the components of the terminal not exposed in the access port remain protected from authorized access through the access port.
  • the housing is a mechanically secured split housing having an electronic circuit for providing a signal if unauthorized entry to the terminal is attempted by separation of the split housing.
  • the two security modules are miniature SIM card acceptors or miniature SAM card acceptors.
  • the terminal accepts both debit or smart cards for completing financial transactions.
  • Figure 1 is a perspective view of a financial transaction terminal
  • Figure 2 is a perspective view of the rear of a financial transaction terminal showing an access port with the cover thereof removed;
  • Figure 3 is a rear perspective view with the back housing removed
  • Figure 4 is a partial sectional view showing part of the housing in contact with a circuit board which is an electrical connection with a miniature smart card acceptor;
  • Figure 5 is a top view showing various seals provided around an access port.
  • Figure 1 shows a financial transaction terminal 2 which can be used with both debit cards and smart cards .
  • a debit card typically has a magnetic strip which is read by the financial transaction terminal, and the user then enters a PIN as part of the authorization process .
  • the terminal electronically connects with a financial institute to complete the transaction.
  • the transaction terminal 2 includes a visual display 4, a key pad 6, and a slot 8 for receiving the smart or debit card.
  • the hand held terminal includes an electrical connection 10 to connect the terminal with other devices and for communication signals with a financial institute. These debit terminals are used at many point of sale counters. As part of the security, the transmitted and received signals are encrypted. The terminal then interprets the receiver's signal using software and encrypting keys maintained within the terminal.
  • the terminal 2 has a housing generally shown as 12 which in this case, is a two-part casing having a front housing 14 and a back housing 16. Basically, the casing 12 is horizontally split into the two parts and suitable electronic circuitry arrangements can be provided to alert the terminal that the casing has been opened.
  • the front and the back housing are typically mechanically secured and if released, the terminal detects this release and protects or eliminates any critical information.
  • the back of the housing as shown in Figures 2 and 3 has an access port 18 which exposes part of the circuit board 22.
  • SIM or SAM type acceptors 20 and 21 are secured on the circuit board 22 within the access port 18.
  • the user such as a merchant, has ready access to the acceptors 20 and 21 and can insert the appropriate SIM or SAM cards.
  • a releasable cover 24 protects the access port 18.
  • the SIM or SAM cards are examples of two of the most common user inserted modules that record information and financial transactions for example. Other modules can be used and the terminal is not limited to these particular modules .
  • the housing 16 includes side walls extending downwardly and contacting the circuit board 17 to provide a boundary area about the access port 18. In this way, access is provided to the* port, yet access to the rest of the terminal is restricted.
  • Critical parts are mounted on the circuit board 22 at a position which is interior to the housing and preferrably remotely located, relative to the access port 18.
  • An electrical switch seal arrangement 28 is provided, as generally shown in Figures 4 and 5.
  • the back housing 16, as shown in the sectional view of Figure 4, has a series of zebra strip connectors generally shown as 30 in contact with the circuit board 22.
  • the left hand side of the drawing shows two such zebra strip connectors which merely provide additional protection.
  • Each zebra strip connector, as illustrated in Figure 5, has alternating conducting and non conducting layers . The spacing of these layers which are extending horizontally is such that they will make contact with opposed terminals 32,33 or 34 provided on the circuit board 22 and these alternating layers separate adjacent terminals by at least one non conducting strip.
  • Each side of the circuit board, adjacent the access port 18, has a series of logic switches formed by these terminals 32 and terminals 33 or 34.
  • terminals 34 are connected to the ground whereas terminal 33 are connected to a 5 volt supply.
  • the zebra strip connector electrically connect each terminal 32 with opposed terminals 33 or 34.
  • logic switches SW7 , SW5, SW3 and SW1 are shorted to ground.
  • the terminals 33 associated with SW2, SW4 and SW6, are connected to a 5 volt power source. As such, these switches are closed, i.e. the circuit is live.
  • different logic patterns of ones (5V) and zeros (ground) can be detected by a processing arrangement 39 on the circuit board.
  • the zebra strip connector is resilient and the pressure of mechanically joining the two housings is sufficient to ensure some compression of the zebra strip connector and a good electrical connection between the terminals 32, and opposed terminals 33 and -84. If the housing is opened or tampered with, at least some of the logic switches change status as the circuit will be broken.
  • the zebra strip connectors have a series of conducting and non conducting layers, allows each of the switches to be isolated from the adjacent switch by at least one non conducting strip and preferrably two non conducting strips and it also ensures that an effective electrical connection between terminals is provided without the need for precision location of the connectors .
  • the logic switches defined a logic high, in this case, 5 volts, and a logic low, i.e., ground.
  • the multiple switches form a code of highs and lows used to detect a change in security status of the case.
  • the additional zebra strip connector shown as 30a in Figure 4 provides enhanced protection.
  • the zebra strip connectors 30 are located immediately adjacent the access port and if there is any attempt to pry up the housing adjacent the access port, this action will open or change the logic of at least some of the switches . Once the status of the switches is changed, the terminal will become inactive and therefore, even if the housing is broken into, the critical information will have been eliminated, or the device rendered inactive. Additional zebra strip connectors further away from the access port provide additional protection against unauthorized entry into the casing.
  • the security * action may require two or more switches to change. For example, dropping of a terminal might momentarily change the status of one switch and it may be desirable to require change in status of more switches or changes in status for a certain time duration before taking security action.
  • the present arrangement allows for these types of changes in design to customize the security for a particular application.
  • the security switch arrangement provides protection about the access port, it also provides protection against unauthorized opening of the casing by separating the housings.
  • the present invention allows the simple formation of terminals on a circuit board to provide switch information or switch logic through a multiple series of switches using a zebra strip connector having the alternating layers orientated by across the surface of the connector connections. The switches are isolated one from the other and it is not necessary to precisely locate the zebra strip connectors. The separation between the layers is such that any placement of a zebra strip connector in the housing and over the terminals will be sufficient to provide the necessary electrical connection and electrical isolation of terminals on the surface of the circuit board.
  • the terminal is designed using an outer housing to protect the components with a recessed covered access port to allow a user to insert or remove certain modules in electrical contact with the internal processing circuitry. Although the access part is within the housing, electrical security sales are provided about the access port. With this arrangement, the security of the terminal is uncompromised and the convenience of limited user access is realized.

Landscapes

  • Engineering & Computer Science (AREA)
  • Physics & Mathematics (AREA)
  • General Physics & Mathematics (AREA)
  • Business, Economics & Management (AREA)
  • Microelectronics & Electronic Packaging (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Accounting & Taxation (AREA)
  • Strategic Management (AREA)
  • General Business, Economics & Management (AREA)
  • Theoretical Computer Science (AREA)
  • Storage Device Security (AREA)

Abstract

Ce terminal de transaction financière, qui est conçu pour recevoir des cartes à microprocesseur ainsi que des cartes de débit, comporte une porte d'accès dans laquelle on introduit des modules de sécurité tels que des cartes SAM ou SIM, ces cartes pouvant également être retirées de cette porte d'accès. Un dispositif de commutation de sécurité installé au niveau de cette porte d'accès protège les composants désormais accessibles du terminal. Ce type de terminal allie la sécurité physique inaltérable d'un terminal de débit à la souplesse et aux capacités d'un terminal pour cartes à microprocesseur.
PCT/CA1999/000431 1998-05-14 1999-05-14 Terminal de transaction financiere avec limitation d'acces WO1999060533A1 (fr)

Priority Applications (2)

Application Number Priority Date Filing Date Title
AU38060/99A AU3806099A (en) 1998-05-14 1999-05-14 Financial transaction terminal with limited access
EP99920492A EP1078335A1 (fr) 1998-05-14 1999-05-14 Terminal de transaction financiere avec limitation d'acces

Applications Claiming Priority (4)

Application Number Priority Date Filing Date Title
CA2,237,666 1998-05-14
CA 2237666 CA2237666A1 (fr) 1998-05-14 1998-05-14 Terminal de transaction financiere avec acces limite
US09/084,999 1998-05-28
US09/084,999 US6097606A (en) 1998-05-28 1998-05-28 Financial transaction terminal with limited access

Publications (1)

Publication Number Publication Date
WO1999060533A1 true WO1999060533A1 (fr) 1999-11-25

Family

ID=25680202

Family Applications (1)

Application Number Title Priority Date Filing Date
PCT/CA1999/000431 WO1999060533A1 (fr) 1998-05-14 1999-05-14 Terminal de transaction financiere avec limitation d'acces

Country Status (3)

Country Link
EP (1) EP1078335A1 (fr)
AU (1) AU3806099A (fr)
WO (1) WO1999060533A1 (fr)

Cited By (7)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
WO2004102494A1 (fr) * 2003-05-19 2004-11-25 Above-Net Importação, Comércio De Informática, Telecomunicação E Serviços Ltda. Terminal multifonctions pour transactions commerciales
US6994261B2 (en) 2000-08-10 2006-02-07 Novo Nirdisk A/S Support for a cartridge for transferring an electronically readable item of information from the cartridge to an electronic circuit
WO2013143725A1 (fr) * 2012-03-27 2013-10-03 Zf Friedrichshafen Ag Sous-ensemble
US8967468B2 (en) 2002-01-11 2015-03-03 Hand Held Products, Inc. Terminal including imaging assembly
US8994382B2 (en) 2006-04-12 2015-03-31 Novo Nordisk A/S Absolute position determination of movably mounted member in medication delivery device
US9522238B2 (en) 2005-05-10 2016-12-20 Novo Nordisk A/S Injection device comprising an optical sensor
US9950117B2 (en) 2009-02-13 2018-04-24 Novo Nordisk A/S Medical device and cartridge

Citations (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
EP0128672A1 (fr) * 1983-05-13 1984-12-19 Ira Dennis Gale Dispositif de sécurité pour informations
DE9105960U1 (fr) * 1991-05-14 1992-06-11 Siemens Nixdorf Informationssysteme Ag, 4790 Paderborn, De
WO1998010368A1 (fr) * 1996-09-06 1998-03-12 Datacard Corporation Terminal transactionnel modulaire

Patent Citations (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
EP0128672A1 (fr) * 1983-05-13 1984-12-19 Ira Dennis Gale Dispositif de sécurité pour informations
DE9105960U1 (fr) * 1991-05-14 1992-06-11 Siemens Nixdorf Informationssysteme Ag, 4790 Paderborn, De
WO1998010368A1 (fr) * 1996-09-06 1998-03-12 Datacard Corporation Terminal transactionnel modulaire

Cited By (8)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US6994261B2 (en) 2000-08-10 2006-02-07 Novo Nirdisk A/S Support for a cartridge for transferring an electronically readable item of information from the cartridge to an electronic circuit
US8967468B2 (en) 2002-01-11 2015-03-03 Hand Held Products, Inc. Terminal including imaging assembly
US9734493B2 (en) 2002-01-11 2017-08-15 Hand Held Products, Inc. Terminal including imaging assembly
WO2004102494A1 (fr) * 2003-05-19 2004-11-25 Above-Net Importação, Comércio De Informática, Telecomunicação E Serviços Ltda. Terminal multifonctions pour transactions commerciales
US9522238B2 (en) 2005-05-10 2016-12-20 Novo Nordisk A/S Injection device comprising an optical sensor
US8994382B2 (en) 2006-04-12 2015-03-31 Novo Nordisk A/S Absolute position determination of movably mounted member in medication delivery device
US9950117B2 (en) 2009-02-13 2018-04-24 Novo Nordisk A/S Medical device and cartridge
WO2013143725A1 (fr) * 2012-03-27 2013-10-03 Zf Friedrichshafen Ag Sous-ensemble

Also Published As

Publication number Publication date
EP1078335A1 (fr) 2001-02-28
AU3806099A (en) 1999-12-06

Similar Documents

Publication Publication Date Title
US6097606A (en) Financial transaction terminal with limited access
US6917299B2 (en) Point of sale (POS) terminal security system
US5093862A (en) Data carrier-controlled terminal in a data exchange system
US7270275B1 (en) Secured pin entry device
US6921988B2 (en) Anti-spoofing elastomer membrane for secure electronic modules
US4985921A (en) Portable data carrying device
US9996713B2 (en) Secure smartcard reader
US9240291B2 (en) Rugged keypad
US9213869B2 (en) Magnetic stripe reading device
US20070016963A1 (en) PIN entry terminal having security system
US20070271544A1 (en) Security sensing module envelope
US20090127336A1 (en) Enhanced security magnetic card reader especially useful in point of sale devices
WO1999060533A1 (fr) Terminal de transaction financiere avec limitation d'acces
EP2806409A1 (fr) Clavier de chiffrement de code PIN
US5982888A (en) Programmable key and receptacle system and method therefor
JP2819445B2 (ja) Icカード処理装置
CA2271617C (fr) Terminal de transaction financiere avec acces limite
CA2237666A1 (fr) Terminal de transaction financiere avec acces limite
KR101586189B1 (ko) 보안기능을 구비한 카드결제 처리장치
CA2133902A1 (fr) Sceau code
KR102206146B1 (ko) 전자 기기의 보안 장치
JPH11272829A (ja) 電子マネーカード
WO2016086970A1 (fr) Module de mémoire de dispositif point de vente et de connecteurs de carte de commande électronique
DE202004008380U1 (de) Sicherer Kartenleser
JP2004362366A (ja) 情報処理端末、その制御方法、及びその制御プログラム

Legal Events

Date Code Title Description
AK Designated states

Kind code of ref document: A1

Designated state(s): AU BR CN JP

AL Designated countries for regional patents

Kind code of ref document: A1

Designated state(s): AT BE CH CY DE DK ES FI FR GB GR IE IT LU MC NL PT SE

121 Ep: the epo has been informed by wipo that ep was designated in this application
DFPE Request for preliminary examination filed prior to expiration of 19th month from priority date (pct application filed before 20040101)
WWE Wipo information: entry into national phase

Ref document number: 1999920492

Country of ref document: EP

WWP Wipo information: published in national office

Ref document number: 1999920492

Country of ref document: EP

WWW Wipo information: withdrawn in national office

Ref document number: 1999920492

Country of ref document: EP