[go: up one dir, main page]
More Web Proxy on the site http://driver.im/

EP1274971A2 - Procede de paiement securise de livraisons et de services dans des reseaux ouverts - Google Patents

Procede de paiement securise de livraisons et de services dans des reseaux ouverts

Info

Publication number
EP1274971A2
EP1274971A2 EP01935980A EP01935980A EP1274971A2 EP 1274971 A2 EP1274971 A2 EP 1274971A2 EP 01935980 A EP01935980 A EP 01935980A EP 01935980 A EP01935980 A EP 01935980A EP 1274971 A2 EP1274971 A2 EP 1274971A2
Authority
EP
European Patent Office
Prior art keywords
customer
payment
ticket
payment provider
provider
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Ceased
Application number
EP01935980A
Other languages
German (de)
English (en)
Inventor
Armin Sawusch
Holger Zimmermann
Ronald Schmieder
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
FDGS Group LLC
Original Assignee
Encorus Holdings Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Encorus Holdings Ltd filed Critical Encorus Holdings Ltd
Publication of EP1274971A2 publication Critical patent/EP1274971A2/fr
Ceased legal-status Critical Current

Links

Classifications

    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06QINFORMATION AND COMMUNICATION TECHNOLOGY [ICT] SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES; SYSTEMS OR METHODS SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES, NOT OTHERWISE PROVIDED FOR
    • G06Q30/00Commerce
    • G06Q30/06Buying, selling or leasing transactions
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06QINFORMATION AND COMMUNICATION TECHNOLOGY [ICT] SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES; SYSTEMS OR METHODS SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES, NOT OTHERWISE PROVIDED FOR
    • G06Q20/00Payment architectures, schemes or protocols
    • G06Q20/02Payment architectures, schemes or protocols involving a neutral party, e.g. certification authority, notary or trusted third party [TTP]
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06QINFORMATION AND COMMUNICATION TECHNOLOGY [ICT] SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES; SYSTEMS OR METHODS SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES, NOT OTHERWISE PROVIDED FOR
    • G06Q20/00Payment architectures, schemes or protocols
    • G06Q20/04Payment circuits
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06QINFORMATION AND COMMUNICATION TECHNOLOGY [ICT] SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES; SYSTEMS OR METHODS SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES, NOT OTHERWISE PROVIDED FOR
    • G06Q20/00Payment architectures, schemes or protocols
    • G06Q20/08Payment architectures
    • G06Q20/12Payment architectures specially adapted for electronic shopping systems
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06QINFORMATION AND COMMUNICATION TECHNOLOGY [ICT] SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES; SYSTEMS OR METHODS SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES, NOT OTHERWISE PROVIDED FOR
    • G06Q20/00Payment architectures, schemes or protocols
    • G06Q20/30Payment architectures, schemes or protocols characterised by the use of specific devices or networks
    • G06Q20/36Payment architectures, schemes or protocols characterised by the use of specific devices or networks using electronic wallets or electronic money safes
    • G06Q20/367Payment architectures, schemes or protocols characterised by the use of specific devices or networks using electronic wallets or electronic money safes involving electronic purses or money safes
    • G06Q20/3674Payment architectures, schemes or protocols characterised by the use of specific devices or networks using electronic wallets or electronic money safes involving electronic purses or money safes involving authentication
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06QINFORMATION AND COMMUNICATION TECHNOLOGY [ICT] SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES; SYSTEMS OR METHODS SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES, NOT OTHERWISE PROVIDED FOR
    • G06Q20/00Payment architectures, schemes or protocols
    • G06Q20/38Payment protocols; Details thereof
    • G06Q20/42Confirmation, e.g. check or permission by the legal debtor of payment
    • G06Q20/425Confirmation, e.g. check or permission by the legal debtor of payment using two different networks, one for transaction and one for security confirmation

Definitions

  • the invention describes the secure payment of amounts of the most varied amounts for any goods, in particular for delivery via packet-oriented networks, taking into account conventional security standards.
  • a large number of solutions for relatively secure e-commerce on the Internet are known from the prior art.
  • the formation of a payment system with real-time verification and authentication with improved confidentiality and security for large to small amounts in a closed network with subnetworks via an open network is disclosed, for example, in the publication WO 99/66436.
  • the payment system includes nodes where customer data is stored, through which customers are connected to sellers to mediate secure electronic transactions.
  • the customer data can be registered by banks and other operators of payment systems. Operators of payment systems, such as business / shopping cards, can authorize the use by third parties within defined limits, so that monitoring and control is also ensured.
  • a central register of accounts operates a registry service that includes which node is connected to which customer.
  • the payment system includes a double-key transaction system, in which certified instructions are separate and completely independent of the customer and Sellers must come before the deal is done through a mutually accepted process.
  • the customer, the seller as well as assigned payment methods and payment systems are known within the payment system, whereby these and a limit are registered with an authorization management. Both the customer and the seller can choose the payment method and currency used to conclude the transaction, and payment is made within a closed system, without either party having access or knowledge of the other's payment system details.
  • Real-time test runs that affect everyone involved are implemented, in which the customer, seller and banks can track transactions, generate records and trigger repayments for such secure transactions.
  • the payment system is independent of the software and the hardware and can be implemented in any network configuration for any electronic or digital business using mobile phones, palmtops and digital television, and for payments of any kind of e-commerce.
  • the system has a customer trustee that securely communicates with a first money module and a merchant trustee that securely communicates with a second money module. Both trustees can establish a first encrypted secure session and both money modules can establish a second encrypted secure session.
  • the dealer trustee transfers electronic goods, for example to the customer trustee and the first money module transfers electronic money to the second money module.
  • the money module informs its trustees about the successful payment processing and the customer can use the electronic goods they have bought, for example by phone or receiving data.
  • This payment procedure requires the inclusion of several trustees with the temporary storage of the data, so that here too a considerable effort is required to realize them, whereby trustees must always be set up in the form of temporary stores for each customer and dealer.
  • the object of the invention is to develop, using conventional security standards and encryption methods, a method for the secure payment of amounts of different amounts for any goods, preferably when ordering and delivery via open networks, in particular the Internet by means of any virtual payments, for customers and Retailers easy to use, operate with standard Internet access software, regardless of the operating system, with short access times in real time and is open to everyone.
  • the essence of the invention is to secure the payment of deliveries and services via an open, package-oriented network, in particular the Internet, by a customer at a dealer or provider using any payment method with the help of the presence of a dealer-generated the merchant and the customer, the customer and a payment provider as well as the payment provider and the merchant transferred and validated in the interaction of the parties with each other, in that, after a customer request, there are preferably two tickets generated by the dealer in the form of random numbers in combination with further information, from which a ticket is returned to the customer, which after entering the required information about the customer and the desired delivery or service in one of payment confirmation form provided to a payment provider and transfer of ticket and form data to the payment provider for booking the corresponding amount to the merchant account.
  • An additional channel that is independent of the channel used to process the purchase and payment can also be used to transmit the information for the payment confirmation.
  • the booking process takes place after the customer data has been validated by the payment provider, as has the second ticket transmitted by the merchant in response to the request from the payment provider for the validation of the first ticket by the merchant, which the payment provider modifies with customer data was transferred to this.
  • the customer receives access to the delivery or service via the network after the second ticket transferred from the payment provider to the customer has been correlated and validated by the latter through interaction with the merchant and has given approval.
  • the first ticket can consist of a fixed index and a hash value via the index and a random number and only the second ticket, consisting of the index and the random number, is generated, with the hash value using the index and the random number for authentication and validation can be used.
  • At least the transmission of sensitive customer data to the payment provider takes place via a secure connection that Encrypted request from the payment provider for validation of the first ticket by the merchant.
  • the uniqueness of the random numbers generated by the dealer for the tickets is advantageously checked. After the end of the business transaction, when the customer has received the service or delivery, the generated tickets can be deleted.
  • the ticket can be provided with a time stamp, which limits its validity, which means that it can be used multiple times within the validity period and the system can be used to release a content area or a service over a specified period of time.
  • the payment can also be secured by linking different media or communication terminals such as, for example, a PC with a mobile phone or only with mobile phones which have a browser for tag-based markup languages, by placing an order with a dealer on the PC using conventional Internet access software or a mobile phone is triggered, the payment of which is activated by transmission of the customer identification data by mobile phone when using conventional security systems.
  • media or communication terminals such as, for example, a PC with a mobile phone or only with mobile phones which have a browser for tag-based markup languages, by placing an order with a dealer on the PC using conventional Internet access software or a mobile phone is triggered, the payment of which is activated by transmission of the customer identification data by mobile phone when using conventional security systems.
  • the advantages of the invention are, in particular, the simple but secure handling for dealers and customers. Payment of services or deliveries under real-time validations in packet-based networks with almost instant access for the customer using standard security standards with different end devices under any operating system as well as any usual access software as well as various payment methods for amounts of any amount according to the available limits. Access to sensitive customer data is not possible due to the secure connection between the customer and the payment provider.
  • the creation of usage profiles for individual customers is also made considerably more difficult, since only information on the payment process is transmitted to the payment provider and the merchant has no access to the payment information.
  • the secure payment described is open to any subscriber who also has only one communication connection with any terminal for network access of any provider, the billing system of which can be used to bill the usage fees. Small and very small amounts can be transferred at low cost to the customer.
  • Fig. 1 explained in more detail as a schematic representation of the course of a business transaction with payment and delivery of data over a network.
  • a customer 1 is connected to a terminal device, for example in the form of a PC, via a network 2, in particular the Internet, to a dealer 3 and a payment provider 4.
  • a browser installed on the customer's PC or a WAP browser on a mobile data
  • the terminal loads a website 3 of the dealer 3 with a link to a further page via which a purchase of a fee-based service 5 is provided, for example in the form of downloading files, the payment advantageously being made as a function of a data volume.
  • the dealer 3 After the customer 1 selects the chargeable service 5, the dealer 3 generates the data for two tickets, the uniqueness of which is subsequently checked.
  • a first ticket 6 ( ⁇ .l to 6.3) is sent indirectly to the payment provider 4 via the customer 1’s PC.
  • the latter sends a form 7 to the customer 1 via a secure channel.
  • the form 7 contains a binding offer from the dealer 3 for the customer 1, the form 7 again including the type and scope of the service 5 or the goods to be delivered Merchant 3 are listed and, on the other hand, specific authorization data can be entered by customer 1, which are necessary in order to authentically and securely authenticate customer 1 to payment provider 4 if this is not done implicitly, for example by means of the connection data.
  • the payment authorization can be carried out on a further channel, for example by means of an SMS message or by means of a call center call.
  • a completed form 8 is sent as payment authorization together with the first ticket 6 via a secure connection back to the payment provider 4, which undertakes the validation on the basis of the information provided by the customer 1 and a request 9 for validating the first ticket 6 generated to the dealer 3, which is sent encrypted.
  • the dealer 3 checks the amount for the chargeable service 5 selected by the customer 1 and validates the first ticket 6 if it matches the originally generated amount and the correct amount.
  • the payment Provider 4 a second ticket 10 (10.1 to 10.4), whereupon this second ticket 10 is both forwarded directly to the customer 1 and triggers the booking of the amount.
  • the second ticket 10 is forwarded by the customer 1 to the dealer 3, who, after a positive result of the check as to whether the ticket was issued by him, provides the customer with the fee-based service 5, for example for downloading, or arranges for the goods to be delivered to the customer. After the transfer of the chargeable service 5 or the delivery of the goods has been completed, the tickets 6; 10 can be deleted from the dealer.
  • different communication terminals that are independent of one another can also be used for secure payment in combination with one another, for example by sending the first ticket 6 from the dealer 3 to a mobile phone with WAP of the customer 1, which authorizes to send it to the payment provider 4 as a payment instruction and the download or the goods are delivered in the manner described.
  • dealer 3 and the payment provider 4 are identical, with billing systems with corresponding limits being used by a service provider for telecommunications, which also functions as a payment provider 4, to pay for services 5 that are subject to a fee can.

Landscapes

  • Business, Economics & Management (AREA)
  • Accounting & Taxation (AREA)
  • Engineering & Computer Science (AREA)
  • Theoretical Computer Science (AREA)
  • Strategic Management (AREA)
  • Physics & Mathematics (AREA)
  • General Business, Economics & Management (AREA)
  • General Physics & Mathematics (AREA)
  • Finance (AREA)
  • Computer Security & Cryptography (AREA)
  • Development Economics (AREA)
  • Economics (AREA)
  • Marketing (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Financial Or Insurance-Related Operations Such As Payment And Settlement (AREA)
  • Management, Administration, Business Operations System, And Electronic Commerce (AREA)

Abstract

La présente invention concerne un procédé de paiement sécurisé de différents montants, au moyen d'une méthode de calcul quelconque, concernant n'importe quel type de produits, notamment la fourniture de services payants (5) à un client (1), par l'intermédiaire d'un réseau ouvert (2), notamment Internet, mettant en oeuvre des normes de sécurité et des procédés de codage courants, avec des logiciels d'accès courants, indépendamment du système d'exploitation. Selon ce procédé, une paire de tickets (6; 10) est produite en réponse à une requête de client adressée par un commerçant (3), un premier ticket (6) est indirectement transmis par un client (1) à un organisme de paiement (4) et un formulaire (7) d'attestation de paiement est transmis par l'organisme de paiement (4) au client (1). Une fois que les indications nécessaires concernant le client et le service souhaité (6) ont été enregistrées et que le formulaire rempli a été transmis avec le premier ticket (6), ceux-ci sont considérés comme une autorisation de paiement auprès d'un organisme de paiement (4), de façon que le montant correspondant est inscrit sur le compte du commerçant. Le processus d'écriture sur le compte est effectué lorsque les données concernant le client sont validées par l'organisme de paiement (4) et lorsque le second ticket (10), transmis à l'organisme de paiement (4) par le commerçant (3), est présenté par le commerçant (3) comme réponse à la requête de l'organisme de paiement (4) pour valider le premier ticket (6) qui a été transmis modifié au commerçant par l'organisme de paiement (4), avec des données concernant le client. Après paiement, le client (1) reçoit l'accès au service (5) sur le réseau (2), lorsque le second ticket (10) transmis au client (1) par l'organisme de paiement (4) est corrélé et validé par le commerçant (3), par interaction avec ce dernier, et que l'autorisation est fournie.
EP01935980A 2000-04-20 2001-04-14 Procede de paiement securise de livraisons et de services dans des reseaux ouverts Ceased EP1274971A2 (fr)

Applications Claiming Priority (3)

Application Number Priority Date Filing Date Title
DE10019884 2000-04-20
DE10019884A DE10019884A1 (de) 2000-04-20 2000-04-20 Verfahren zur sicheren Bezahlung von Lieferungen und Leistungen in offenen Netzwerken
PCT/DE2001/001484 WO2001081875A2 (fr) 2000-04-20 2001-04-14 Procede de paiement securise de livraisons et de services dans des reseaux ouverts

Publications (1)

Publication Number Publication Date
EP1274971A2 true EP1274971A2 (fr) 2003-01-15

Family

ID=7639638

Family Applications (1)

Application Number Title Priority Date Filing Date
EP01935980A Ceased EP1274971A2 (fr) 2000-04-20 2001-04-14 Procede de paiement securise de livraisons et de services dans des reseaux ouverts

Country Status (6)

Country Link
US (1) US20030172038A1 (fr)
EP (1) EP1274971A2 (fr)
AU (1) AU6204201A (fr)
DE (2) DE10019884A1 (fr)
ES (1) ES2190906T1 (fr)
WO (1) WO2001081875A2 (fr)

Families Citing this family (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
SE0002811D0 (sv) * 2000-08-03 2000-08-03 Ticketanywhere Europ Ab Method for handling electronic tickets
EP2438563A4 (fr) * 2009-06-04 2013-05-01 Mobile Messenger Global Inc Procédé et système de fourniture d'accès en temps réel à une preuve de confirmation d'achat de commerce mobile
US20150039435A1 (en) * 2013-07-31 2015-02-05 Mostafa SHAHEE DayMal.com
US11250484B2 (en) * 2019-11-18 2022-02-15 Verizon Patent And Licensing Inc. Systems and methods for secure assisted order generation

Family Cites Families (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US5822737A (en) * 1996-02-05 1998-10-13 Ogram; Mark E. Financial transaction system
US6085976A (en) * 1998-05-22 2000-07-11 Sehr; Richard P. Travel system and methods utilizing multi-application passenger cards

Non-Patent Citations (1)

* Cited by examiner, † Cited by third party
Title
See references of WO0181875A2 *

Also Published As

Publication number Publication date
DE10019884A1 (de) 2001-11-22
ES2190906T1 (es) 2003-09-01
US20030172038A1 (en) 2003-09-11
WO2001081875A2 (fr) 2001-11-01
DE10191579D2 (de) 2003-03-27
AU6204201A (en) 2001-11-07
WO2001081875A8 (fr) 2002-03-21

Similar Documents

Publication Publication Date Title
EP1203357B1 (fr) Commerce electronique pour services d'envoi de messages courts
EP0986275B1 (fr) Procédé pour acheter des articles ou des services avec un téléphone mobile
EP1178444A1 (fr) Paiement électronique utilisant des SMS
EP1446778A2 (fr) Protocole de paiement et procede et dispositif de transmission de donnees pour executer des transactions de paiement
DE102008035391A1 (de) Verfahren zur Authentifizierung
WO2013067561A1 (fr) Procédé et dispositif pour effectuer des paiements scripturaux
WO2000045350A1 (fr) Procede, systeme et station mobile pour effectuer des operations financieres par virement
EP1665184A1 (fr) Procede pour effectuer une transaction electronique
WO2004006198A1 (fr) Procede pour le paiement electronique d'une marchandise ou d'une prestation de service par utilisation d'un reseau de telephonie mobile et ensemble pour l'execution de ce procede
EP1081919B1 (fr) Méthode pour donner une autorisation pour le payment de biens et/ou services achetés sur Internet dans des réseaux de transmission de données
DE19641776C2 (de) Computerprogrammgesteuertes Verfahren zum gesicherten Aufbau einer Wähl-Leitungsverbindung und zur gesicherten Datenübertragung zwischen einem Chipkarten-Terminal und einer zentralen Datenverarbeitungsanlage
DE60122912T2 (de) Verfahren zum liefern von identifikationsdaten einer bezahlkarte an einen anwender
WO2001081875A2 (fr) Procede de paiement securise de livraisons et de services dans des reseaux ouverts
DE10049164A1 (de) Verfahren zur gesicherten Durchführung einer Transaktion im elektronischen Zahlungsverkehr
EP1277185B1 (fr) Procede pour reduire les risques dans des transactions de commerce electronique
DE10008280C1 (de) Verfahren und System zur automatischen Abwicklung von bargeldlosen Kaufvorgängen
EP1512273A1 (fr) Procede, programme informatique et systeme informatique pour service de telecommunication prepaye
DE10065067B4 (de) Verfahren zum Verifizieren nutzerspezifischer Informationen in einem Daten- und/oder Kommunikationssystem sowie Daten- und/oder Kommunikationssystem
EP1371038B1 (fr) Procede et dispositif permettant d'effectuer au moins une transaction a titre onereux
DE10229619A1 (de) Verfahren zur Durchführung eines Zahlungsvorganges
DE102013000967B4 (de) Verfahren zur Autorisierung einer elektronischen Transaktion
DE10210792B4 (de) Verfahren und System zur Freischaltung eines kostenpflichtigen Mobilfunk- oder Online-Dienstes
WO2003070493A2 (fr) Systeme informatique et procede pour la transmission electronique de paiements
WO2005008608A1 (fr) Systeme de paiement, terminal de systeme de paiement et procede pour realiser un paiement electronique
WO2003091860A1 (fr) Procede pour authentifier et/ou autoriser une personne

Legal Events

Date Code Title Description
PUAI Public reference made under article 153(3) epc to a published international application that has entered the european phase

Free format text: ORIGINAL CODE: 0009012

17P Request for examination filed

Effective date: 20021011

AK Designated contracting states

Kind code of ref document: A2

Designated state(s): AT BE CH CY DE DK ES FI FR GB GR IE IT LI LU MC NL PT SE TR

AX Request for extension of the european patent

Free format text: AL PAYMENT 20021011;LT PAYMENT 20021011;LV PAYMENT 20021011;MK PAYMENT 20021011;RO PAYMENT 20021011;SI PAYMENT 20021011

TCNL Nl: translation of patent claims filed
GBC Gb: translation of claims filed (gb section 78(7)/1977)
EL Fr: translation of claims filed
IECL Ie: translation for ep claims filed
REG Reference to a national code

Ref country code: GR

Ref legal event code: PP

Ref document number: 20030300014

Country of ref document: GR

RAP1 Party data changed (applicant data changed or rights of an application transferred)

Owner name: FIRST DATA MOBILE HOLDINGS LIMITED

17Q First examination report despatched

Effective date: 20100525

RAP1 Party data changed (applicant data changed or rights of an application transferred)

Owner name: FDGS GROUP, LLC

REG Reference to a national code

Ref country code: DE

Ref legal event code: R003

STAA Information on the status of an ep patent application or granted ep patent

Free format text: STATUS: THE APPLICATION HAS BEEN REFUSED

18R Application refused

Effective date: 20160815