H - Electricity – 04 – L
Patent
H - Electricity
04
L
H04L 9/32 (2006.01) H04L 12/22 (2006.01)
Patent
CA 2291430
A method and apparatus for verifying that the bearer of a user card is authorized to use the card. A dynamic personal identification number (PIN) is used to provide improved security. The PIN comprises an event identifier and a pseudo-random number sequence identifier. On each transaction, the user card generates a new PIN by generating a distinct pseudo-random number based on a private seed and the previous random number stored by the user card and incrementing the value of the event identifier. The PIN is then transmitted to an authentication server along with a pre-established user account name. The authentication server then retrieves the private seed, and previous event and pseudo-random identifiers from a secure account database associated with the account name. The authentication server ensures that the stored event identifier corresponds to the event identifier provided by the user by incrementing the event identifier if necessary and by generating a successive pseudo-random identifier each time the event identifier is incremented. Once the event identifiers correspond, the latest pseudo-random identifier is compared with the pseudo-random identifer transmitted by the user within the PIN. If authentication is successful, the authentication server will then complete the financial transaction associated with the user's request.
Bereskin & Parr
Lu Tao
LandOfFree
Internet transaction security system does not yet have a rating. At this time, there are no reviews or comments for this patent.
If you have personal experience with Internet transaction security system, we encourage you to share that experience with our LandOfFree.com community. Your opinion is very important and Internet transaction security system will most certainly appreciate the feedback.
Profile ID: LFCA-PAI-O-1720175