发明名称 Method and apparatus for integrating a dynamic token generator into a mobile device
摘要 A method for integrating a dynamic token generator into a mobile device is provided. The method may include displaying a display. The method may also include transmitting a serial number to a provider. The method may also include receiving a quick response (“QR”) code from the provider. The QR code may contain token activation information. The token activation information may relate to the validated token serial number. The token activation information may include the serial number, an activation code, and an activation password. A dynamic token generator may be configured to internally recognize and scan in the quick response code displayed in the display. The dynamic token generator may also be configured to activate an OTP seed application using at least some of the information stored in the quick response code.
申请公布号 US9038157(B1) 申请公布日期 2015.05.19
申请号 US201414176100 申请日期 2014.02.09
申请人 Bank of America Corporation 发明人 Santiago, Jr. Milton;Rosendahl Mary R.;Mallory Darin G.;Arredia Michael C.;McAteer Jonathan F.
分类号 G06F21/34;H04L29/06;G06F21/36 主分类号 G06F21/34
代理机构 Weiss & Arons LLP 代理人 Weiss & Arons LLP ;Spring, Esq. Michael A.
主权项 1. Apparatus for integrating a dynamic token generator into a mobile device comprising: a display; a transmitter configured to transmit a serial number to a provider for validation, said validation configured to transform the serial number to a validated token serial number; a receiver configured to receive a quick response (“QR”) code which contains token activation information relating to the validated token serial number, said token activation information comprising the validated token serial number, an activation code and an activation password; a processor which is configured to internally recognize and scan in the quick response code displayed on the display; the processor is further configured to activate a onetime password (“OTP”) seed application using at least some of the information stored in the quick response code; the processor is further configured to generate a post-activation request in response to the activation of the OTP seed application, said post-activation request comprising: an identifier;an encrypted server nonce;an initial vector; andan OTP the transmitter is further configured to transmit the post-activation request to the provider; the receiver is further configured to receive a successful activation message from the provider, in response to the provider: validating the nonce;validating the OTP;deriving a token blob;determining the existence of other passwords associated with the user and deactivating any other token associated with the user; andflagging the OTP seed application as activated.
地址 Charlotte NC US