WO2022096841A1 - Procede d'authentification securise par le decouplage structurel des identifiants personnels et de services - Google Patents
Procede d'authentification securise par le decouplage structurel des identifiants personnels et de services Download PDFInfo
- Publication number
- WO2022096841A1 WO2022096841A1 PCT/FR2021/051984 FR2021051984W WO2022096841A1 WO 2022096841 A1 WO2022096841 A1 WO 2022096841A1 FR 2021051984 W FR2021051984 W FR 2021051984W WO 2022096841 A1 WO2022096841 A1 WO 2022096841A1
- Authority
- WO
- WIPO (PCT)
- Prior art keywords
- identifier
- computer equipment
- user
- service
- equipment
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Ceased
Links
Classifications
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06Q—INFORMATION AND COMMUNICATION TECHNOLOGY [ICT] SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES; SYSTEMS OR METHODS SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES, NOT OTHERWISE PROVIDED FOR
- G06Q20/00—Payment architectures, schemes or protocols
- G06Q20/38—Payment protocols; Details thereof
- G06Q20/382—Payment protocols; Details thereof insuring higher security of transaction
- G06Q20/3829—Payment protocols; Details thereof insuring higher security of transaction involving key management
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F21/00—Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
- G06F21/60—Protecting data
- G06F21/62—Protecting access to data via a platform, e.g. using keys or access control rules
- G06F21/6218—Protecting access to data via a platform, e.g. using keys or access control rules to a system of files or objects, e.g. local or distributed file system or database
- G06F21/6245—Protecting personal data, e.g. for financial or medical purposes
- G06F21/6254—Protecting personal data, e.g. for financial or medical purposes by anonymising data, e.g. decorrelating personal data from the owner's identification
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06Q—INFORMATION AND COMMUNICATION TECHNOLOGY [ICT] SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES; SYSTEMS OR METHODS SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES, NOT OTHERWISE PROVIDED FOR
- G06Q20/00—Payment architectures, schemes or protocols
- G06Q20/38—Payment protocols; Details thereof
- G06Q20/382—Payment protocols; Details thereof insuring higher security of transaction
- G06Q20/3823—Payment protocols; Details thereof insuring higher security of transaction combining multiple encryption tools for a transaction
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06Q—INFORMATION AND COMMUNICATION TECHNOLOGY [ICT] SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES; SYSTEMS OR METHODS SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES, NOT OTHERWISE PROVIDED FOR
- G06Q20/00—Payment architectures, schemes or protocols
- G06Q20/38—Payment protocols; Details thereof
- G06Q20/40—Authorisation, e.g. identification of payer or payee, verification of customer or shop credentials; Review and approval of payers, e.g. check credit lines or negative lists
- G06Q20/401—Transaction verification
- G06Q20/4014—Identity check for transactions
Definitions
- the present invention relates to the field of authentication of a user carrying out electronic transactions using a terminal connected to computer equipment or access to a physical system.
- Biometric recognition techniques based on image capture systems coupled to a central database storing personal information constitute a path that comes up against harmful limits. Indeed, the biometric data may vary slightly. To take these variations into account, provision is made to retain only a small part of points considered to be invariant. However, this translates to:
- the invention therefore relates to the field of authentication excluding biometric data, and more specifically the field of electronic transactions activated using a reliable unique identifier such as for example a QrCode, an alphanumeric identifier, an email address , a unique identification number such as an IBAN or a social security number, and securing the process of registration of the identifier, storage and verification to reduce the risks in the event of computer attacks from a server of the transaction system.
- a reliable unique identifier such as for example a QrCode, an alphanumeric identifier, an email address , a unique identification number such as an IBAN or a social security number
- the method described in the invention comprises generating a one-time transaction request identification; the transaction manager linking this identification to banking information of a subscribed user; providing the transaction request identification to the subscribed user who is making a request to purchase a product or service of value from a merchant.
- the purchase request consists of providing the identification of the transaction request to the merchant.
- the merchant sends a payment request to the transaction manager for a transfer of funds equal to the value from the user to the merchant; the payment request including the identification of the transaction request and the value.
- the transaction manager verifies the validity of the identification of the transaction request, then it invalidates the reuse of this identification. If the identification of the transaction request is valid, an electronic funds transfer request is sent to a financial institution in order to allow the transfer of the cashed value from the user to the merchant, the electronic funds transfer request comprising banking information.
- European patent EP2839603B1 describes a user authentication method comprising the execution, by a processing system, of the following operations:
- the stored record comprising at least code value complexity preference data that defines a user-preferred level of complexity for a user in validating user input received in response to the presentation of security matrices, and a user-defined keyword consisting of an ordered sequence of symbols comprising members of a predetermined symbol set selected from one or more symbol sets supported by the processing, where the symbols of the ordered sequence have been previously selected by the user regardless of other user selections,
- One of the sources of vulnerability lies in the management of identifiers. Knowing the identifier makes it possible to go through a first step in the authorization procedure for a service, the information being used for the next step, which is the authentication of the user who has transmitted — legally or fraudulently — a valid identifier. .
- the security of the identifier depends on the measures taken by the user to keep it secret, and if necessary on the electronic means provided on the physical support of the identifier when it is recorded on a key, a card or a portable equipment such as a telephone.
- a third drawback lies in the risk of data interception and fraudulent reuse of this data.
- a fourth disadvantage lies in the risk of creating a false account to access the services of a third party user.
- the present invention relates, in its most general sense, to a secure transaction method for a security identifier, in particular without a token, consisting in recording on a first computer equipment B a unique digital identifier ID ⁇ associated with a unique user.
- said profile ID ⁇ being associated with at least one service identifier ID S ⁇ associated with a service S ⁇ , recorded on a second computer equipment S distinct from said first computer equipment B, said service S ⁇ being accessible by the user U ⁇ , and, during a transaction, to acquire the digital identifier ID ⁇ of a user U ⁇ , to transmit it to said first computer equipment B for comparison with the registered identifiers ID and to search and activate on the computer equipment S at least one service associated with the identifier of the user U ⁇ , characterized in that the step of registering a new user comprises the steps known living:
- a step of generating at least one reference identifier IDSEx calculated by applying a non-reversible FSE reference cryptographic function, distinct from the FR function, to said temporary random key, and recording in a computer table of the unique couple (ID S ⁇ , IDSEx) recorded on a computer equipment S, in that the execution of a transaction comprises the following steps:
- it also comprises, at the time of reception by a central computer equipment of an identifier ID ⁇ , a step of generating an identifier of IDPEx reference calculated by applying a non-reversible FPE cryptographic function, distinct from the FR and FSE reference functions, to said random key X and recording in a computer table of the pair (ID P ⁇ , IDPEx), where IDpi is a personal information identifier P ⁇ associated with the user U ⁇ and accessible to the latter, stored on a third computer equipment P distinct from said first and second computer equipment B and S, and at the time the transaction is carried out, the search for personal information P ⁇ on said third computer equipment P by applying the function FPE to said temporary random key, in order to calculate the identifier IDPEx and obtain the identifier IP p ⁇ associated with the personal information P ⁇ .
- IDpi is a personal information identifier P ⁇ associated with the user U ⁇ and accessible to the latter
- the invention also relates to a set of computer equipment for carrying out secure transactions of a tokenless security identifier, characterized in that said set of computer equipment comprises computer equipment allowing access to a first computer equipment B and to at least one second service computer equipment S, and a key computer equipment forming the support for said non-reversible functions.
- the assembly further comprises computer processing equipment for carrying out the control, security and plausibility processing of the information coming from the users' equipment.
- the invention further comprises a computer program for controlling the execution on a computer equipment of the realization of a secure transaction of a security identifier without token characterized in that it consists of a code controlling the acquisition of a digital identifier coming from remote equipment, the processing of said identifiers in accordance with the aforementioned method and the execution of the data exchange protocol between remote equipment and computer equipment for the operation of said.
- FIG. 1 represents the hardware architecture of computer equipment for the implementation of the invention
- FIG. 2 shows the block diagram of one invention
- FIG. 3 figure 3 represents the diagram of data exchanges for the enrollment procedure of a new user
- FIG. 4 figure 4 represents the data exchange diagram for the enrollment procedure of a user to a new service
- FIG. 5 represents the data exchange diagram for the service access procedure by an enrolled user.
- Figure 1 shows a block diagram of the hardware architecture of a system for implementing the invention.
- the user has a unique identifier which can be simply memorized, or recorded on a device in the possession of the user and transferred to a control terminal by entering it on a keyboard or a touch screen, or transmitting it from a memory by a physical link such as a connector or an optical or radiofrequency link.
- the input and output computer equipment (0) receives the information flows from the user equipment, manages the queues, for on-the-fly distribution on the processing computer equipment (1) and the returns to input terminals or identifier transmission equipment.
- This input and output equipment (0) also carries out control, security and plausibility, and transmission processing in order to verify that the information transmitted is indeed of a compliant nature. These include checking whether the identifier of the terminal or of the equipment transmitting the identifier (for example its IP address) is on a terminal registered on a blacklist, or whether the information presents anomalies representative attempted attacks, saturation or fraud.
- the computer equipment (0) opens a transactional session to interact with the equipment (1) giving access to the equipment (2 to 4) to obtain the user profiles, services and personal information and to react with the equipment (0) to exchange with the user concerned by a transactional session managed in synchronous or asynchronous mode.
- the computer equipment (2 to 4) manages the consolidated access to the user profiles, services and personal information, by interacting with a key computer equipment (5) forming the support for the non-reversible functions implemented by the method according to the invention.
- the computer equipment (6) makes it possible to administer the entire system, in particular keeping track of all the transactions, in order to allow the auditing of transactions and in the event of a physical crash, the restoration of transactions.
- FIG. 2 represents an example of a functional diagram
- the new user first proceeds to an enrollment via a computer equipment (0) as illustrated by FIG. 3. He opens a session with the computer equipment (1) and transmits a digital file corresponding to an enrollment request.
- This file contains an identifier, profile data and personal data. It may be transmitted in encrypted form.
- the customer accesses the service via computer equipment (0) which includes a means of entering or transmitting an identifier, for example a keyboard, a QRCode reader, a radiofrequency module, a connector for receiving a identifier registration device or an application in charge of transmitting the identifier.
- This equipment (0) is connected to a network to open a session with the system (100) which hosts the set of computer equipment constituting the hardware architecture of the invention.
- the first function (10) consists in recovering, controlling and transmitting the information necessary for the transaction, in particular the digital identifier acquired by the equipment computer (0) as well as associated information (for example the geolocation of the terminal, the identifiers of the terminal or of the application in charge of transmitting the identifier (IP address, various identifiers such as SIM card, etc.) or 1 'timestamp) , as well as information on the nature of the transaction.
- This information comes from the identifier of the supplier/terminal pair, for example when it is a terminal from a supplier made available to users, or from the identification of the service access application.
- Function (10) also opens a transactional session for each user.
- the user enrolled as explained above then proceeds to an enrollment in services via his computer equipment (0) as illustrated by FIG. 4. He opens a session with the computer equipment (1) and transmits a digital file corresponding to a service registration request.
- This file contains a service identifier, profile data and personal data. It may be transmitted in encrypted form.
- This process (11) is integrated into a processing chain linked to a transactional session opened for each user by the function (10).
- each transactional session consists in transmitting, controlling and reconciling the user profiles, the service identifiers and the personal information provided by the function (11), then in obtaining the service selected by the customer.
- This processing (11) is carried out by the computer equipment (1), by interacting with the computer equipment (2 to 4) and (5).
- the system (100) also integrates administration functions and functions in charge of traceability and security protocols.
- the user enrolled as explained above can then proceed to requests for access to previously enrolled services as illustrated by FIG. 5. He opens a session with the computer equipment (1) and transmits a digital file corresponding to a request for access to the service.
- This file contains an identifier and profile data. It may be transmitted in encrypted form.
- This request is checked by the equipment (1) to check whether the user is actually enrolled, and whether the requested service is enrolled. If this is the case, it transmits the access request to the computer equipment (2) corresponding to the requested service.
- This equipment (2) extracts the identifier IDR X from the identifier ID and performs a check of the profile recorded in the request. In case of erroneous control, the task is stopped by an interruption procedure and optionally a notification to the equipment (1) which transmits it to the equipment (0) of the user. If the check is positive, the computer equipment concerned (2) opens a session with the computer equipment (5) to obtain the public key KR then proceeds to calculate the source value X from a decryption function F - 1 (KV,Y) as discussed in more detail below.
- This source value thus calculated is controlled by the equipment 2, and transmitted to the equipment (1).
- the equipment then makes a request for access to the service (X) by a session with the equipment (4), which opens a session with the equipment (5) to transmit a request access to the KSE key.
- the equipment (5) extracts the identifier IDS ⁇ and the service data to transmit them to the equipment (1) which transmits them via the session initially opened to the equipment (0) of the 'user.
- One of the important aims of the invention is to guarantee data security natively integrated into its architecture ("by design") because the reference identifier of the digital identifier and the reference identifiers of the services are structurally different, their generation being managed by an algorithm based on a one-way cryptographic function so as to be able to perform reconciliations on the fly according to transactional needs.
- the proposed mechanism is based on the use of cryptographic protocols such as AES with keys of size greater than 128 bits, for example RSA with a key of 2048 bits.
- the computer equipment (1) draws a random value X at random, for example using a hash function to statistically avoid collisions.
- the computer equipment (2 to 4) interact with the computer equipment (5) to obtain the public keys KR, KPE and KSE to respectively manage the exchanges concerning the identification information, the services and the personal information.
- the IT equipments (2 to 5) manufacture the IDR reference identifier and at least one IDSE service identifier, as well as an IDPE personal information identifier, if applicable, according to the following simple rules (in the event of a collision with an existing identifier, a new X value will be generated):
- IDPE FPE(KPE, X)
- IDSE FSE(KSE, X) .
Landscapes
- Engineering & Computer Science (AREA)
- Business, Economics & Management (AREA)
- Accounting & Taxation (AREA)
- Theoretical Computer Science (AREA)
- Computer Security & Cryptography (AREA)
- General Physics & Mathematics (AREA)
- Physics & Mathematics (AREA)
- Strategic Management (AREA)
- Finance (AREA)
- General Business, Economics & Management (AREA)
- Health & Medical Sciences (AREA)
- General Health & Medical Sciences (AREA)
- Bioethics (AREA)
- Medical Informatics (AREA)
- General Engineering & Computer Science (AREA)
- Software Systems (AREA)
- Computer Hardware Design (AREA)
- Databases & Information Systems (AREA)
- Financial Or Insurance-Related Operations Such As Payment And Settlement (AREA)
Abstract
Description
Claims
Priority Applications (2)
| Application Number | Priority Date | Filing Date | Title |
|---|---|---|---|
| EP21819918.0A EP4241190A1 (fr) | 2020-11-09 | 2021-11-09 | Procede d'authentification securise par le decouplage structurel des identifiants personnels et de services |
| US18/035,848 US12417451B2 (en) | 2020-11-09 | 2021-11-09 | Authentication method secured by structural decoupling of personal and service identifiers |
Applications Claiming Priority (2)
| Application Number | Priority Date | Filing Date | Title |
|---|---|---|---|
| FRFR2011468 | 2020-11-09 | ||
| FR2011468A FR3116132A1 (fr) | 2020-11-09 | 2020-11-09 | Procede de d’authentification securise par le decouplage structurel des identifiants personnels et de services |
Publications (1)
| Publication Number | Publication Date |
|---|---|
| WO2022096841A1 true WO2022096841A1 (fr) | 2022-05-12 |
Family
ID=75746680
Family Applications (1)
| Application Number | Title | Priority Date | Filing Date |
|---|---|---|---|
| PCT/FR2021/051984 Ceased WO2022096841A1 (fr) | 2020-11-09 | 2021-11-09 | Procede d'authentification securise par le decouplage structurel des identifiants personnels et de services |
Country Status (4)
| Country | Link |
|---|---|
| US (1) | US12417451B2 (fr) |
| EP (1) | EP4241190A1 (fr) |
| FR (1) | FR3116132A1 (fr) |
| WO (1) | WO2022096841A1 (fr) |
Citations (3)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| EP1488359A1 (fr) | 2002-03-04 | 2004-12-22 | Creative On-line Technologies Limited | Systeme de transfert electronique |
| FR3033205A1 (fr) * | 2015-02-27 | 2016-09-02 | Daniel Krob | Procede de transaction sans support physique d'un identifiant de securite et sans jeton, securise par decouplage structurel des identifiants personnels et de services. |
| EP2839603B1 (fr) | 2010-11-30 | 2019-10-23 | Forticode Ltd | Mots de passe uniques abstraits et randomisés pour une authentification de transaction |
Family Cites Families (31)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| US6154879A (en) | 1994-11-28 | 2000-11-28 | Smarttouch, Inc. | Tokenless biometric ATM access system |
| US5764789A (en) | 1994-11-28 | 1998-06-09 | Smarttouch, Llc | Tokenless biometric ATM access system |
| GB9923802D0 (en) | 1999-10-08 | 1999-12-08 | Hewlett Packard Co | User authentication |
| GB2368422B (en) * | 2000-05-10 | 2003-03-26 | Sony Corp | Electronic settlement system, settlement management device, store device, client, data storage device, computer program, and storage medium |
| US20030158960A1 (en) * | 2000-05-22 | 2003-08-21 | Engberg Stephan J. | System and method for establishing a privacy communication path |
| US7027408B2 (en) * | 2001-03-05 | 2006-04-11 | Qwest Communications International, Inc | Method and system for dynamic service profile integration by a service controller |
| FR2822002B1 (fr) * | 2001-03-12 | 2003-06-06 | France Telecom | Authentification cryptographique par modules ephemeres |
| US7414981B2 (en) * | 2001-04-25 | 2008-08-19 | Qwest Communications International, Inc. | Method and system for event and message registration by an association controller |
| EP1417555A2 (fr) * | 2001-06-18 | 2004-05-12 | Daon Holdings Limited | Coffre-fort de donnees electroniques fournissant des signatures electroniques protegees par biometrie |
| CN1894923A (zh) * | 2003-10-08 | 2007-01-10 | 史蒂芬·J·英格博格 | 用改进保密性技术来建立通讯的方法和系统 |
| US20060212407A1 (en) * | 2005-03-17 | 2006-09-21 | Lyon Dennis B | User authentication and secure transaction system |
| DE602005018548D1 (de) | 2005-04-22 | 2010-02-04 | Daon Holdings Ltd | System und verfahren zum schutz der privatsphäre u |
| CA2672735A1 (fr) * | 2006-12-13 | 2008-06-19 | Quickplay Media Inc. | Plate-forme multimedia mobile |
| US9124650B2 (en) * | 2006-12-13 | 2015-09-01 | Quickplay Media Inc. | Digital rights management in a mobile environment |
| US20090281949A1 (en) * | 2008-05-12 | 2009-11-12 | Appsware Wireless, Llc | Method and system for securing a payment transaction |
| CA2777102A1 (fr) * | 2009-10-09 | 2011-04-14 | Quickplay Media Inc. | Gestion des droits numeriques dans un environnement mobile |
| US8788429B2 (en) * | 2009-12-30 | 2014-07-22 | First Data Corporation | Secure transaction management |
| FR2962571B1 (fr) | 2010-07-08 | 2012-08-17 | Inside Contactless | Procede d'execution d'une application securisee dans un dispositif nfc |
| US20130212024A1 (en) * | 2012-02-10 | 2013-08-15 | Protegrity Corporation | Tokenization in distributed payment environments |
| US9141823B2 (en) * | 2013-03-15 | 2015-09-22 | Veridicom, Sa De Cv | Abstraction layer for default encryption with orthogonal encryption logic session object; and automated authentication, with a method for online litigation |
| US11120436B2 (en) * | 2015-07-17 | 2021-09-14 | Mastercard International Incorporated | Authentication system and method for server-based payments |
| US9729925B2 (en) * | 2015-08-31 | 2017-08-08 | Opentv, Inc. | Automatically loading user profile to show recently watched channels |
| CN106603461A (zh) * | 2015-10-14 | 2017-04-26 | 阿里巴巴集团控股有限公司 | 一种业务认证的方法、装置和系统 |
| KR102536202B1 (ko) * | 2016-08-26 | 2023-05-25 | 삼성전자주식회사 | 서버 장치, 그 제어 방법 및 컴퓨터 판독가능 기록 매체 |
| US10477345B2 (en) * | 2016-10-03 | 2019-11-12 | J2B2, Llc | Systems and methods for identifying parties based on coordinating identifiers |
| CN108667780B (zh) * | 2017-03-31 | 2021-05-14 | 华为技术有限公司 | 一种身份认证的方法、系统及服务器和终端 |
| US11216809B2 (en) * | 2018-01-17 | 2022-01-04 | Tzero Ip, Llc | Multi-approval system using M of N keys to restore a customer wallet |
| US10489781B1 (en) * | 2018-10-02 | 2019-11-26 | Capital One Services, Llc | Systems and methods for cryptographic authentication of contactless cards |
| EP3661222A1 (fr) * | 2018-11-27 | 2020-06-03 | TP Vision Holding B.V. | Système de télévision et procédé de commande du système de télévision |
| EP3892021A1 (fr) * | 2018-12-06 | 2021-10-13 | Convida Wireless, Llc | Gestion de cycle de vie de sécurité de dispositifs dans un réseau de communication |
| US11589094B2 (en) * | 2019-07-22 | 2023-02-21 | At&T Intellectual Property I, L.P. | System and method for recommending media content based on actual viewers |
-
2020
- 2020-11-09 FR FR2011468A patent/FR3116132A1/fr active Pending
-
2021
- 2021-11-09 WO PCT/FR2021/051984 patent/WO2022096841A1/fr not_active Ceased
- 2021-11-09 EP EP21819918.0A patent/EP4241190A1/fr active Pending
- 2021-11-09 US US18/035,848 patent/US12417451B2/en active Active
Patent Citations (4)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| EP1488359A1 (fr) | 2002-03-04 | 2004-12-22 | Creative On-line Technologies Limited | Systeme de transfert electronique |
| EP2839603B1 (fr) | 2010-11-30 | 2019-10-23 | Forticode Ltd | Mots de passe uniques abstraits et randomisés pour une authentification de transaction |
| FR3033205A1 (fr) * | 2015-02-27 | 2016-09-02 | Daniel Krob | Procede de transaction sans support physique d'un identifiant de securite et sans jeton, securise par decouplage structurel des identifiants personnels et de services. |
| EP3262553B1 (fr) * | 2015-02-27 | 2019-04-10 | A3Bc Ip | Procede de transaction sans support physique d'un identifiant de securite et sans jeton, securise par le decouplage structurel des identifiants personnels et de services |
Also Published As
| Publication number | Publication date |
|---|---|
| EP4241190A1 (fr) | 2023-09-13 |
| US12417451B2 (en) | 2025-09-16 |
| US20230410098A1 (en) | 2023-12-21 |
| FR3116132A1 (fr) | 2022-05-13 |
Similar Documents
| Publication | Publication Date | Title |
|---|---|---|
| US11392940B2 (en) | Multi-approval system using M of N keys to perform an action at a customer device | |
| EP3547270B1 (fr) | Procédé de vérification d'une authentification biométrique | |
| US9892404B2 (en) | Secure identity authentication in an electronic transaction | |
| EP0055986B1 (fr) | Procédé et dispositif de sécurité pour communication tripartite de données confidentielles | |
| EP3547203A1 (fr) | Méthode et système de gestion d'accès à des données personnelles au moyen d'un contrat intelligent | |
| EP2614458B1 (fr) | Procede d'authentification pour l'acces a un site web | |
| EP3731116B1 (fr) | Procédé d'authentification d'un document d'identité d'un individu et d'authentification dudit individu | |
| CH633379A5 (fr) | Installation de securite notamment pour l'execution d'operations bancaires. | |
| EP2048814A1 (fr) | Procédé d'authentification biométrique, programme d'ordinateur, serveur d'authentification, terminal et objet portatif correspondants. | |
| CN110533417B (zh) | 一种数字资产管理装置、发行方法及系统 | |
| FR3098947A1 (fr) | Procédé de traitement d’une transaction émise depuis une entité de preuve | |
| US20240073697A1 (en) | Subscriber identity module (sim) card feature-based non-fungible token (nft) | |
| US20250150835A1 (en) | Resource exchange event verification based on subscriber identity module (sim) card feature comparison | |
| EP3686788A1 (fr) | Procédé de vérification d'une authentification biométrique | |
| EP2509025A1 (fr) | Procédé d'accès à une ressource protégée d'un dispositif personnel sécurisé | |
| FR3004561A1 (fr) | Methode et systeme d'amelioration de la securite des transactions electroniques | |
| EP3262553B1 (fr) | Procede de transaction sans support physique d'un identifiant de securite et sans jeton, securise par le decouplage structurel des identifiants personnels et de services | |
| WO2022096841A1 (fr) | Procede d'authentification securise par le decouplage structurel des identifiants personnels et de services | |
| CN120770137A (zh) | 生物识别集成币 | |
| Raina | Integration of Biometric authentication procedure in customer oriented payment system in trusted mobile devices. | |
| FR2984047A1 (fr) | Procede d'echange de donnee chiffree entre un terminal et une machine | |
| FR3150007A3 (fr) | Procede d’identification | |
| CN119272258A (zh) | 基于能源的数字身份管理方法及系统、设备、介质 | |
| CN118690423A (zh) | 指纹认证鼠标 | |
| FR3143143A1 (fr) | Procédé de connexion à un compte personnel sur un service en ligne au moyen d’une chaîne de blocs |
Legal Events
| Date | Code | Title | Description |
|---|---|---|---|
| 121 | Ep: the epo has been informed by wipo that ep was designated in this application |
Ref document number: 21819918 Country of ref document: EP Kind code of ref document: A1 |
|
| WWE | Wipo information: entry into national phase |
Ref document number: 2021819918 Country of ref document: EP |
|
| NENP | Non-entry into the national phase |
Ref country code: DE |
|
| ENP | Entry into the national phase |
Ref document number: 2021819918 Country of ref document: EP Effective date: 20230609 |
|
| WWG | Wipo information: grant in national office |
Ref document number: 18035848 Country of ref document: US |