发明名称 Method and system for secure credit card transactions
摘要 A customer making a credit card transaction inserts their smart card into a card reader attached to the merchant's system. The card reader activates the customer's card and passes certain merchant information. The merchant's system then requests a "billing digest" from the customer's card. The billing digest is returned to the merchant's card reader that forwards it (and the transaction information which includes customer information and merchant information) to the corresponding credit card issuer, which maintains the customer's credit card account. In one embodiment, the customer information and the merchant information are encrypted. Upon receiving the billing digest, transaction information is decrypted if necessary and the credit card issuer looks up the customer's master key using the customer's account number. The credit card issuer then uses the transaction information to re-compute the billing digest (an authentication billing digest) and compares this new value with the billing digest submitted by the merchant. If authentic, the billing digest and authentication billing digest values are equivalent, then funds are transferred and an acceptance notification is returned to the merchant. If not authentic, a denial notification is returned to the merchant. Security is further enhanced by utilizing a unique reference for each transaction in the unique customer information used for creating the billing digest.
申请公布号 US7024395(B1) 申请公布日期 2006.04.04
申请号 US20000598777 申请日期 2000.06.16
申请人 STORAGE TECHNOLOGY CORPORATION 发明人 MCCOWN STEVEN H.;HUGHES JAMES P.;LEONHARDT MICHAEL L.;MILLIGAN CHARLES A.
分类号 主分类号
代理机构 代理人
主权项
地址