AR018624A1 - MUTUAL AUTHENTICATION SYSTEM AND METHOD BETWEEN A CI CARD AND A CARD READER AND CI CARD USED - Google Patents

MUTUAL AUTHENTICATION SYSTEM AND METHOD BETWEEN A CI CARD AND A CARD READER AND CI CARD USED

Info

Publication number
AR018624A1
AR018624A1 ARP990102624A AR018624A1 AR 018624 A1 AR018624 A1 AR 018624A1 AR P990102624 A ARP990102624 A AR P990102624A AR 018624 A1 AR018624 A1 AR 018624A1
Authority
AR
Argentina
Prior art keywords
card
security module
random number
mutual authentication
identification signal
Prior art date
Application number
Other languages
Spanish (es)
Original Assignee
Landis & Gyr Comm Sarl
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Landis & Gyr Comm Sarl filed Critical Landis & Gyr Comm Sarl
Publication of AR018624A1 publication Critical patent/AR018624A1/en

Links

Classifications

    • GPHYSICS
    • G07CHECKING-DEVICES
    • G07FCOIN-FREED OR LIKE APPARATUS
    • G07F7/00Mechanisms actuated by objects other than coins to free or to actuate vending, hiring, coin or paper currency dispensing or refunding apparatus
    • G07F7/08Mechanisms actuated by objects other than coins to free or to actuate vending, hiring, coin or paper currency dispensing or refunding apparatus by coded identity card or credit card or other personal identification means
    • G07F7/10Mechanisms actuated by objects other than coins to free or to actuate vending, hiring, coin or paper currency dispensing or refunding apparatus by coded identity card or credit card or other personal identification means together with a coded signal, e.g. in the form of personal identification information, like personal identification number [PIN] or biometric data
    • G07F7/1008Active credit-cards provided with means to personalise their use, e.g. with PIN-introduction/comparison system
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06QINFORMATION AND COMMUNICATION TECHNOLOGY [ICT] SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES; SYSTEMS OR METHODS SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES, NOT OTHERWISE PROVIDED FOR
    • G06Q20/00Payment architectures, schemes or protocols
    • G06Q20/30Payment architectures, schemes or protocols characterised by the use of specific devices or networks
    • G06Q20/34Payment architectures, schemes or protocols characterised by the use of specific devices or networks using cards, e.g. integrated circuit [IC] cards or magnetic cards
    • G06Q20/341Active cards, i.e. cards including their own processing means, e.g. including an IC or chip
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06QINFORMATION AND COMMUNICATION TECHNOLOGY [ICT] SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES; SYSTEMS OR METHODS SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES, NOT OTHERWISE PROVIDED FOR
    • G06Q20/00Payment architectures, schemes or protocols
    • G06Q20/38Payment protocols; Details thereof
    • G06Q20/40Authorisation, e.g. identification of payer or payee, verification of customer or shop credentials; Review and approval of payers, e.g. check credit lines or negative lists
    • G06Q20/409Device specific authentication in transaction processing
    • G06Q20/4097Device specific authentication in transaction processing using mutual authentication between devices and transaction partners
    • G06Q20/40975Device specific authentication in transaction processing using mutual authentication between devices and transaction partners using encryption therefor
    • GPHYSICS
    • G07CHECKING-DEVICES
    • G07FCOIN-FREED OR LIKE APPARATUS
    • G07F7/00Mechanisms actuated by objects other than coins to free or to actuate vending, hiring, coin or paper currency dispensing or refunding apparatus
    • G07F7/08Mechanisms actuated by objects other than coins to free or to actuate vending, hiring, coin or paper currency dispensing or refunding apparatus by coded identity card or credit card or other personal identification means
    • G07F7/0806Details of the card
    • G07F7/0813Specific details related to card security
    • G07F7/082Features insuring the integrity of the data on or in the card

Landscapes

  • Engineering & Computer Science (AREA)
  • Business, Economics & Management (AREA)
  • Physics & Mathematics (AREA)
  • General Physics & Mathematics (AREA)
  • Accounting & Taxation (AREA)
  • Computer Security & Cryptography (AREA)
  • Strategic Management (AREA)
  • General Business, Economics & Management (AREA)
  • Theoretical Computer Science (AREA)
  • Finance (AREA)
  • Microelectronics & Electronic Packaging (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Financial Or Insurance-Related Operations Such As Payment And Settlement (AREA)
  • Control Of Vending Devices And Auxiliary Devices For Vending Devices (AREA)
  • Storage Device Security (AREA)

Abstract

Un sistema que comprende un lector de tarjetas (1) con un terminal (3) y un modulo de seguridad (4) acepta una tarjeta CI portátil precargada (2) que tieneun circuito integrado (8) con una cerradura (9) para impedir el uso no autorizado de la tarjetaCI (2), y un contenido del contador de unidades de valorefectivo (10), que representa el valor efectivo y es devaluado durante una transaccion en un punto de venta autonomo. La tarjeta CI (2) genera un numeroaleatorio de la tarjeta, en tanto que elmodulo de seguridad (4) genera un numero aleatorio del modulo de seguridad. La tarjeta CI (2) codifica el numeroaleatorio del modulo de seguridad en una senal de identificacion de la tarjeta, y el modulo de seguridad (4) decodifica la senal de identificacion de latarjeta nuevamente para verificar la autenticidad de la tarjeta CI (2). El modulo de seguridad (4) crea una senal de identificacion del modulo de seguridad apartir del numero aleatorio de la tarjeta, que es decodificada por la tarjeta CI (2) para verificar la autenticidad del modulo de seguridad (4). Si laautenticacion mutua es positiva, la cerradura (9) permite que se efectue la transaccion de pago. Tarjeta CI utilizado en dicho sistema y método deautenticacion mutua entre dicha tarjeta CI y un lector de tarjetas mediante el uso de dicho sistema.A system comprising a card reader (1) with a terminal (3) and a security module (4) accepts a preloaded portable IC card (2) that has an integrated circuit (8) with a lock (9) to prevent unauthorized use of the IC card (2), and a content of the counter of cash value units (10), which represents the effective value and is devalued during a transaction at an autonomous point of sale. The IC card (2) generates a random number of the card, while the security module (4) generates a random number of the security module. The CI card (2) encodes the random number of the security module in a card identification signal, and the security module (4) decodes the card identification signal again to verify the authenticity of the CI card (2). The security module (4) creates a security module identification signal from the random number of the card, which is decoded by the CI card (2) to verify the authenticity of the security module (4). If the mutual authentication is positive, the lock (9) allows the payment transaction to take place. CI card used in said system and mutual authentication method between said IC card and a card reader through the use of said system.

ARP990102624 1998-06-05 1999-06-03 MUTUAL AUTHENTICATION SYSTEM AND METHOD BETWEEN A CI CARD AND A CARD READER AND CI CARD USED AR018624A1 (en)

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
EP98110350 1998-06-05

Publications (1)

Publication Number Publication Date
AR018624A1 true AR018624A1 (en) 2001-11-28

Family

ID=8232071

Family Applications (1)

Application Number Title Priority Date Filing Date
ARP990102624 AR018624A1 (en) 1998-06-05 1999-06-03 MUTUAL AUTHENTICATION SYSTEM AND METHOD BETWEEN A CI CARD AND A CARD READER AND CI CARD USED

Country Status (5)

Country Link
EP (1) EP1082710A1 (en)
AR (1) AR018624A1 (en)
AU (1) AU3841999A (en)
TW (1) TW413799B (en)
WO (1) WO1999064996A1 (en)

Families Citing this family (25)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US7249108B1 (en) 1997-07-15 2007-07-24 Silverbrook Research Pty Ltd Validation protocol and system
US7702926B2 (en) 1997-07-15 2010-04-20 Silverbrook Research Pty Ltd Decoy device in an integrated circuit
US6473743B1 (en) * 1999-12-28 2002-10-29 Pitney Bowes Inc. Postage meter having delayed generation of cryptographic security parameters
AU2004201740B2 (en) * 2000-02-15 2005-06-23 Silverbrook Research Pty Ltd Validation chip
AU2006252277B2 (en) * 2000-02-15 2008-09-04 Silverbrook Research Pty Ltd An Apparatus for Validating a Device
US7685423B1 (en) * 2000-02-15 2010-03-23 Silverbrook Research Pty Ltd Validation protocol and system
SG127734A1 (en) 2000-02-15 2006-12-29 Silverbrook Res Pty Ltd Consumables validation chip
JP2003534585A (en) 2000-03-15 2003-11-18 マスターカード インターナシヨナル インコーポレーテツド Secure payment method and system over computer network
DE10015098A1 (en) * 2000-03-28 2001-10-25 Giesecke & Devrient Gmbh Process and terminal for data transactions using smart card used in network system
DE10060912A1 (en) * 2000-12-07 2002-06-27 Infineon Technologies Ag Data carriers and methods for their cancellation
FR2820231B1 (en) * 2001-01-26 2005-01-21 Gemplus Card Int INTEGRATED CIRCUIT BOARD (S) OR CHIP CARD (S) INCORPORATING A SECURITY LAYER AND COMMUNICATION DEVICE COOPERATING WITH SUCH A CARD
US7249256B2 (en) 2001-07-11 2007-07-24 Anoto Ab Encryption protocol
SE0102474L (en) * 2001-07-11 2003-01-12 Anoto Ab encryption Protocol
MXPA04008973A (en) * 2002-03-19 2005-02-17 Mastercard International Inc Method and system for conducting a transaction using a proximity device.
US7844747B2 (en) * 2002-06-05 2010-11-30 Stmicroelectronics, Inc. Performance tuning using encoded performance parameter information
DE10340181A1 (en) * 2003-09-01 2005-03-24 Giesecke & Devrient Gmbh Method for cryptographically securing communication with a portable data carrier
EP1515507A1 (en) 2003-09-09 2005-03-16 Axalto S.A. Authentication in data communication
JP4706220B2 (en) 2004-09-29 2011-06-22 ソニー株式会社 Information processing apparatus and method, recording medium, and program
CN101164048B (en) * 2005-02-07 2010-06-16 桑迪士克股份有限公司 Safety system applied in memory card
US8966284B2 (en) 2005-09-14 2015-02-24 Sandisk Technologies Inc. Hardware driver integrity check of memory card controller firmware
EP1873963A1 (en) * 2006-06-29 2008-01-02 Incard SA Authentication method for IC cards
DE602007014347D1 (en) * 2007-06-15 2011-06-16 Research In Motion Ltd A method and apparatus for providing secure data backup from a mobile communication device to an external computing device
US8484464B2 (en) 2007-06-15 2013-07-09 Research In Motion Limited Method and devices for providing secure data backup from a mobile communication device to an external computing device
TW201040844A (en) * 2009-05-14 2010-11-16 Bao Ruh Electronic Co Ltd Non-contact chip card read/write module with concurrent validation by multiple secure access module
CN111292089A (en) * 2020-02-12 2020-06-16 北京智慧云测科技有限公司 PSAM card protection management method and PSAM card

Family Cites Families (16)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
FR2266222B1 (en) 1974-03-25 1980-03-21 Moreno Roland
JPS61139873A (en) 1984-12-13 1986-06-27 Casio Comput Co Ltd Authorization system
FR2580834B1 (en) 1985-04-17 1989-09-22 Grandmougin Michel MEMORY CARD, WITH PROTECTION RESISTANCE
EP0398545A1 (en) * 1989-05-19 1990-11-22 Delco Electronics Corporation Method and apparatus for storing data in a non-volatile memory
FR2681165B1 (en) * 1991-09-05 1998-09-18 Gemplus Card Int METHOD FOR TRANSMITTING CONFIDENTIAL INFORMATION BETWEEN TWO CHIP CARDS.
JPH07505270A (en) * 1992-03-30 1995-06-08 テルストラ コーポレイション リミティド Encrypted communication method and system
ATE161348T1 (en) 1992-12-01 1998-01-15 Landis & Gyr Tech Innovat PROCEDURE FOR COMPENSATION FOR SERVICES AND/OR GOODS AND FACILITY FOR IMPLEMENTING THE PROCESS
GB9307623D0 (en) 1993-04-13 1993-06-02 Jonhig Ltd Data writing to eeprom
US5761309A (en) * 1994-08-30 1998-06-02 Kokusai Denshin Denwa Co., Ltd. Authentication system
DE4442357A1 (en) * 1994-11-29 1996-06-05 Deutsche Telekom Ag Protecting data passing between data processing device and terminal device connected via telecommunications network
DE19506921C2 (en) * 1995-02-28 1997-03-20 Orga Kartensysteme Gmbh Method for performing a secret code comparison on a microprocessor-based, portable data carrier
CH689812A5 (en) 1995-12-01 1999-11-30 Ip Tpg Holdco Sarl Process at a use of synchronously operated smart card.
US5602918A (en) * 1995-12-22 1997-02-11 Virtual Open Network Environment Corp. Application level security system and method
DE19604349A1 (en) * 1996-02-07 1997-08-14 Deutsche Telekom Ag Process for billing electronic wallet systems with chip cards
US6073236A (en) * 1996-06-28 2000-06-06 Sony Corporation Authentication method, communication method, and information processing apparatus
JPH10222618A (en) * 1997-01-31 1998-08-21 Toshiba Corp Ic card and ic card processing system

Also Published As

Publication number Publication date
WO1999064996A1 (en) 1999-12-16
EP1082710A1 (en) 2001-03-14
AU3841999A (en) 1999-12-30
TW413799B (en) 2000-12-01

Similar Documents

Publication Publication Date Title
AR018624A1 (en) MUTUAL AUTHENTICATION SYSTEM AND METHOD BETWEEN A CI CARD AND A CARD READER AND CI CARD USED
ES2444650T3 (en) Contactless data support.
UY27970A1 (en) SECURE BIOMETRIC VERIFICATION OF IDENTIFICATION
ES2098686T3 (en) INSERTABLE CARD FOR MICROCOMPUTER THAT CONSTITUTES A CARD READER WITH FLAT CONTACTS.
BR9907002A (en) Transaction system
FR2722596B1 (en)
EA200301199A1 (en) SAFE SYSTEM ONLINE PAYMENT
ES2180142T3 (en) TRANSACTION PROCEDURE WITH A PORTABLE IDENTIFICATION ELEMENT.
NO974960D0 (en) Device for transparent interaction between an IC card and a remote terminal
DK0680411T4 (en) Document with doped optical security features, layer combination to produce the same and document authentication device
BR0008045A (en) Processes for authorization without magnetic indication of a reward transaction between an issuer and a recipient and for processing transfer of electronic reward units without magnetic indication for a recipient, and, device for transaction without magnetic indication of electronic transfer of reward units for a receiver
CY1114612T1 (en) PAYMENT SYSTEM WITHOUT CARD
SE8106354L (en) IDENTITY ELEMENT
ES2069613T3 (en) PROCEDURE AND DEVICE TO SIMPLIFY THE USE OF A LARGE NUMBER OF CREDIT CARDS AND THE LIKE.
ES2109660T3 (en) PROCEDURE AND CIRCUIT OF ENCRYPTION AND AUTHENTICATION FOR SYNCHRONOUS MEMORY CARD.
SE8604600L (en) DEVICE FOR CHECKING ACCOUNT CARDS
TR200100381U (en) Card verification device
US20060179481A1 (en) System and method for automatic verification of the holder of an authorisation document
ES2403336B1 (en) Verification of the identity of a person making a transaction
ES2149385T3 (en) GAME CARD CONTROL POSITION.
ATE207639T1 (en) REMOVABLE PLUG-IN CARD AS A CHIP CARD READER FOR MICRO COMPUTERS
JPH0335708B2 (en)
EP0356125A3 (en) Portable memory device
ITAR930018A1 (en) SECURITY COMPASS WITH BIOMETRIC IDENTIFIER
SE9702216D0 (en) security module