Management of reloadable credentials on an electronic device using an online resource

    公开(公告)号:US11120442B2

    公开(公告)日:2021-09-14

    申请号:US14502109

    申请日:2014-09-30

    Applicant: Apple Inc.

    Abstract: Systems, methods, and computer-readable media for using an online resource to manage reloadable credentials on an electronic device are provided. In one example embodiment, a method, at an electronic device, includes, inter alia, receiving selection data via an online resource, where the selection data may be indicative of a particular credential applet stored on a secure element of the electronic device, in response to the receiving the selection data, accessing validation data from the particular credential applet on the secure element, transmitting initialization results comprising the accessed validation data to a remote subsystem associated with the online resource, in response to the transmitting, receiving reload data from the remote subsystem, and adjusting a balance of the particular credential applet based on the received reload data. Additional embodiments are also provided.

    Multiple-Key Verification Information for Mobile Device Identity Document

    公开(公告)号:US20210160081A1

    公开(公告)日:2021-05-27

    申请号:US17033564

    申请日:2020-09-25

    Applicant: Apple Inc.

    Abstract: Techniques are disclosed relating to authenticating a user with a mobile device. In various embodiments, a mobile device receives a request to provision the mobile device with identification information from an identification document issued by an authority to a user for establishing an identity of the user. In response to the received request, the mobile device issues a request for verification information signed by the authority and usable to verify the identification information. The issued request identifies multiple public keys of the mobile device, each having a respective corresponding private key for generating a signature usable to verify the identification information. The mobile device receives and stores the signed verification information, the signed verification information including the plurality of public keys. In some embodiments, the mobile device receives a request provide, at least, a portion of the identification information and selects one of the private keys to generate a signature.

    Provisioning of credentials on an electronic device using passwords communicated over verified channels

    公开(公告)号:US10861090B2

    公开(公告)日:2020-12-08

    申请号:US14475273

    申请日:2014-09-02

    Applicant: Apple Inc.

    Abstract: Systems, methods, and computer-readable media for provisioning credentials on an electronic device are provided. In one example embodiment, a secure platform system may be in communication with an electronic device and a financial institution subsystem. The secure platform system may be configured to, inter alia, detect a selection of a particular commerce credential, access communication mechanism data indicative of at least one communication mechanism of the device, where the at least one mechanism is configured to receive a communication on the device, transmit information to the financial subsystem, where the information includes the mechanism data and the selection of the particular commerce credential, and instruct the financial subsystem to provision the particular commerce credential in a disabled state on the device and communicate credential enablement data to the device using a particular communication mechanism of the at least one communication mechanism indicated by the communication mechanism data.

    Apparatuses and methods for using a random authorization number to provide enhanced security for a secure element

    公开(公告)号:US10546293B2

    公开(公告)日:2020-01-28

    申请号:US14475375

    申请日:2014-09-02

    Applicant: Apple Inc.

    Abstract: A system for provisioning credentials onto an electronic device is provided. The system may include a payment network subsystem, a service provider subsystem, and one or more user devices that can be used to perform mobile transactions at a merchant terminal. The user device may communicate with the service provider subsystem in order to obtained commerce credentials from the payment network subsystem. The user device may include a secure element and a corresponding trusted processor. The trusted processor may generate a random authorization number and inject that number into the secure element. Mobile payments should only be completed if the random authorization number on the secure element matches the random authorization number at the trusted processor. The trusted processor may be configured to efface the previous random authorization number and generate a new random authorization number when detecting a potential change in ownership at the user device.

    MULTI-PATH COMMUNICATION OF ELECTRONIC DEVICE SECURE ELEMENT DATA FOR ONLINE PAYMENTS
    88.
    发明申请
    MULTI-PATH COMMUNICATION OF ELECTRONIC DEVICE SECURE ELEMENT DATA FOR ONLINE PAYMENTS 审中-公开
    用于在线支付的电子设备安全元数据的多路通信

    公开(公告)号:US20170011395A1

    公开(公告)日:2017-01-12

    申请号:US15274841

    申请日:2016-09-23

    Applicant: Apple Inc.

    Abstract: Systems, methods, and computer-readable media for communicating electronic device secure element data over multiple paths for online payments are provided. In one example embodiment, a method includes, inter alia, at a commercial entity subsystem, receiving, from an electronic device, device transaction data that includes credential data indicative of a payment credential on the electronic device for funding a transaction with a merchant subsystem, accessing a transaction identifier, deriving a transaction key based on transaction key data that includes the accessed transaction identifier, transmitting, to one of the merchant subsystem and the electronic device, merchant payment data that includes a first portion of the credential data and the accessed transaction identifier, and sharing, with a financial institution subsystem using the transaction key, commercial payment data that includes a second portion of the credential data that is different than the first portion of the credential data. Additional embodiments are also provided.

    Abstract translation: 提供了用于在多个路径上传送电子设备安全元件数据以用于在线支付的系统,方法和计算机可读介质。 在一个示例实施例中,一种方法尤其包括在商业实体子系统处,从电子设备接收设备交易数据,该交易数据包括在电子设备上指示支付凭证的凭证数据,用于资助与商家子系统的交易, 访问交易标识符,基于包括所访问的交易标识符的交易密钥数据导出交易密钥,向所述商家子系统和所述电子设备之一发送包括所述证书数据的第一部分和所访问的交易的商家支付数据 标识符和共享,与使用交易密钥的金融机构子系统相结合,商业支付数据包括不同于证书数据的第一部分的证书数据的第二部分。 还提供了另外的实施例。

Patent Agency Ranking