EP1274971A2 - Procede de paiement securise de livraisons et de services dans des reseaux ouverts - Google Patents
Procede de paiement securise de livraisons et de services dans des reseaux ouvertsInfo
- Publication number
- EP1274971A2 EP1274971A2 EP01935980A EP01935980A EP1274971A2 EP 1274971 A2 EP1274971 A2 EP 1274971A2 EP 01935980 A EP01935980 A EP 01935980A EP 01935980 A EP01935980 A EP 01935980A EP 1274971 A2 EP1274971 A2 EP 1274971A2
- Authority
- EP
- European Patent Office
- Prior art keywords
- customer
- payment
- ticket
- payment provider
- provider
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Ceased
Links
Classifications
-
- G—PHYSICS
- G06—COMPUTING; CALCULATING OR COUNTING
- G06Q—INFORMATION AND COMMUNICATION TECHNOLOGY [ICT] SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES; SYSTEMS OR METHODS SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES, NOT OTHERWISE PROVIDED FOR
- G06Q30/00—Commerce
- G06Q30/06—Buying, selling or leasing transactions
-
- G—PHYSICS
- G06—COMPUTING; CALCULATING OR COUNTING
- G06Q—INFORMATION AND COMMUNICATION TECHNOLOGY [ICT] SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES; SYSTEMS OR METHODS SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES, NOT OTHERWISE PROVIDED FOR
- G06Q20/00—Payment architectures, schemes or protocols
- G06Q20/02—Payment architectures, schemes or protocols involving a neutral party, e.g. certification authority, notary or trusted third party [TTP]
-
- G—PHYSICS
- G06—COMPUTING; CALCULATING OR COUNTING
- G06Q—INFORMATION AND COMMUNICATION TECHNOLOGY [ICT] SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES; SYSTEMS OR METHODS SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES, NOT OTHERWISE PROVIDED FOR
- G06Q20/00—Payment architectures, schemes or protocols
- G06Q20/04—Payment circuits
-
- G—PHYSICS
- G06—COMPUTING; CALCULATING OR COUNTING
- G06Q—INFORMATION AND COMMUNICATION TECHNOLOGY [ICT] SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES; SYSTEMS OR METHODS SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES, NOT OTHERWISE PROVIDED FOR
- G06Q20/00—Payment architectures, schemes or protocols
- G06Q20/08—Payment architectures
- G06Q20/12—Payment architectures specially adapted for electronic shopping systems
-
- G—PHYSICS
- G06—COMPUTING; CALCULATING OR COUNTING
- G06Q—INFORMATION AND COMMUNICATION TECHNOLOGY [ICT] SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES; SYSTEMS OR METHODS SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES, NOT OTHERWISE PROVIDED FOR
- G06Q20/00—Payment architectures, schemes or protocols
- G06Q20/30—Payment architectures, schemes or protocols characterised by the use of specific devices or networks
- G06Q20/36—Payment architectures, schemes or protocols characterised by the use of specific devices or networks using electronic wallets or electronic money safes
- G06Q20/367—Payment architectures, schemes or protocols characterised by the use of specific devices or networks using electronic wallets or electronic money safes involving electronic purses or money safes
- G06Q20/3674—Payment architectures, schemes or protocols characterised by the use of specific devices or networks using electronic wallets or electronic money safes involving electronic purses or money safes involving authentication
-
- G—PHYSICS
- G06—COMPUTING; CALCULATING OR COUNTING
- G06Q—INFORMATION AND COMMUNICATION TECHNOLOGY [ICT] SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES; SYSTEMS OR METHODS SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES, NOT OTHERWISE PROVIDED FOR
- G06Q20/00—Payment architectures, schemes or protocols
- G06Q20/38—Payment protocols; Details thereof
- G06Q20/42—Confirmation, e.g. check or permission by the legal debtor of payment
- G06Q20/425—Confirmation, e.g. check or permission by the legal debtor of payment using two different networks, one for transaction and one for security confirmation
Definitions
- the invention describes the secure payment of amounts of the most varied amounts for any goods, in particular for delivery via packet-oriented networks, taking into account conventional security standards.
- a large number of solutions for relatively secure e-commerce on the Internet are known from the prior art.
- the formation of a payment system with real-time verification and authentication with improved confidentiality and security for large to small amounts in a closed network with subnetworks via an open network is disclosed, for example, in the publication WO 99/66436.
- the payment system includes nodes where customer data is stored, through which customers are connected to sellers to mediate secure electronic transactions.
- the customer data can be registered by banks and other operators of payment systems. Operators of payment systems, such as business / shopping cards, can authorize the use by third parties within defined limits, so that monitoring and control is also ensured.
- a central register of accounts operates a registry service that includes which node is connected to which customer.
- the payment system includes a double-key transaction system, in which certified instructions are separate and completely independent of the customer and Sellers must come before the deal is done through a mutually accepted process.
- the customer, the seller as well as assigned payment methods and payment systems are known within the payment system, whereby these and a limit are registered with an authorization management. Both the customer and the seller can choose the payment method and currency used to conclude the transaction, and payment is made within a closed system, without either party having access or knowledge of the other's payment system details.
- Real-time test runs that affect everyone involved are implemented, in which the customer, seller and banks can track transactions, generate records and trigger repayments for such secure transactions.
- the payment system is independent of the software and the hardware and can be implemented in any network configuration for any electronic or digital business using mobile phones, palmtops and digital television, and for payments of any kind of e-commerce.
- the system has a customer trustee that securely communicates with a first money module and a merchant trustee that securely communicates with a second money module. Both trustees can establish a first encrypted secure session and both money modules can establish a second encrypted secure session.
- the dealer trustee transfers electronic goods, for example to the customer trustee and the first money module transfers electronic money to the second money module.
- the money module informs its trustees about the successful payment processing and the customer can use the electronic goods they have bought, for example by phone or receiving data.
- This payment procedure requires the inclusion of several trustees with the temporary storage of the data, so that here too a considerable effort is required to realize them, whereby trustees must always be set up in the form of temporary stores for each customer and dealer.
- the object of the invention is to develop, using conventional security standards and encryption methods, a method for the secure payment of amounts of different amounts for any goods, preferably when ordering and delivery via open networks, in particular the Internet by means of any virtual payments, for customers and Retailers easy to use, operate with standard Internet access software, regardless of the operating system, with short access times in real time and is open to everyone.
- the essence of the invention is to secure the payment of deliveries and services via an open, package-oriented network, in particular the Internet, by a customer at a dealer or provider using any payment method with the help of the presence of a dealer-generated the merchant and the customer, the customer and a payment provider as well as the payment provider and the merchant transferred and validated in the interaction of the parties with each other, in that, after a customer request, there are preferably two tickets generated by the dealer in the form of random numbers in combination with further information, from which a ticket is returned to the customer, which after entering the required information about the customer and the desired delivery or service in one of payment confirmation form provided to a payment provider and transfer of ticket and form data to the payment provider for booking the corresponding amount to the merchant account.
- An additional channel that is independent of the channel used to process the purchase and payment can also be used to transmit the information for the payment confirmation.
- the booking process takes place after the customer data has been validated by the payment provider, as has the second ticket transmitted by the merchant in response to the request from the payment provider for the validation of the first ticket by the merchant, which the payment provider modifies with customer data was transferred to this.
- the customer receives access to the delivery or service via the network after the second ticket transferred from the payment provider to the customer has been correlated and validated by the latter through interaction with the merchant and has given approval.
- the first ticket can consist of a fixed index and a hash value via the index and a random number and only the second ticket, consisting of the index and the random number, is generated, with the hash value using the index and the random number for authentication and validation can be used.
- At least the transmission of sensitive customer data to the payment provider takes place via a secure connection that Encrypted request from the payment provider for validation of the first ticket by the merchant.
- the uniqueness of the random numbers generated by the dealer for the tickets is advantageously checked. After the end of the business transaction, when the customer has received the service or delivery, the generated tickets can be deleted.
- the ticket can be provided with a time stamp, which limits its validity, which means that it can be used multiple times within the validity period and the system can be used to release a content area or a service over a specified period of time.
- the payment can also be secured by linking different media or communication terminals such as, for example, a PC with a mobile phone or only with mobile phones which have a browser for tag-based markup languages, by placing an order with a dealer on the PC using conventional Internet access software or a mobile phone is triggered, the payment of which is activated by transmission of the customer identification data by mobile phone when using conventional security systems.
- media or communication terminals such as, for example, a PC with a mobile phone or only with mobile phones which have a browser for tag-based markup languages, by placing an order with a dealer on the PC using conventional Internet access software or a mobile phone is triggered, the payment of which is activated by transmission of the customer identification data by mobile phone when using conventional security systems.
- the advantages of the invention are, in particular, the simple but secure handling for dealers and customers. Payment of services or deliveries under real-time validations in packet-based networks with almost instant access for the customer using standard security standards with different end devices under any operating system as well as any usual access software as well as various payment methods for amounts of any amount according to the available limits. Access to sensitive customer data is not possible due to the secure connection between the customer and the payment provider.
- the creation of usage profiles for individual customers is also made considerably more difficult, since only information on the payment process is transmitted to the payment provider and the merchant has no access to the payment information.
- the secure payment described is open to any subscriber who also has only one communication connection with any terminal for network access of any provider, the billing system of which can be used to bill the usage fees. Small and very small amounts can be transferred at low cost to the customer.
- Fig. 1 explained in more detail as a schematic representation of the course of a business transaction with payment and delivery of data over a network.
- a customer 1 is connected to a terminal device, for example in the form of a PC, via a network 2, in particular the Internet, to a dealer 3 and a payment provider 4.
- a browser installed on the customer's PC or a WAP browser on a mobile data
- the terminal loads a website 3 of the dealer 3 with a link to a further page via which a purchase of a fee-based service 5 is provided, for example in the form of downloading files, the payment advantageously being made as a function of a data volume.
- the dealer 3 After the customer 1 selects the chargeable service 5, the dealer 3 generates the data for two tickets, the uniqueness of which is subsequently checked.
- a first ticket 6 ( ⁇ .l to 6.3) is sent indirectly to the payment provider 4 via the customer 1’s PC.
- the latter sends a form 7 to the customer 1 via a secure channel.
- the form 7 contains a binding offer from the dealer 3 for the customer 1, the form 7 again including the type and scope of the service 5 or the goods to be delivered Merchant 3 are listed and, on the other hand, specific authorization data can be entered by customer 1, which are necessary in order to authentically and securely authenticate customer 1 to payment provider 4 if this is not done implicitly, for example by means of the connection data.
- the payment authorization can be carried out on a further channel, for example by means of an SMS message or by means of a call center call.
- a completed form 8 is sent as payment authorization together with the first ticket 6 via a secure connection back to the payment provider 4, which undertakes the validation on the basis of the information provided by the customer 1 and a request 9 for validating the first ticket 6 generated to the dealer 3, which is sent encrypted.
- the dealer 3 checks the amount for the chargeable service 5 selected by the customer 1 and validates the first ticket 6 if it matches the originally generated amount and the correct amount.
- the payment Provider 4 a second ticket 10 (10.1 to 10.4), whereupon this second ticket 10 is both forwarded directly to the customer 1 and triggers the booking of the amount.
- the second ticket 10 is forwarded by the customer 1 to the dealer 3, who, after a positive result of the check as to whether the ticket was issued by him, provides the customer with the fee-based service 5, for example for downloading, or arranges for the goods to be delivered to the customer. After the transfer of the chargeable service 5 or the delivery of the goods has been completed, the tickets 6; 10 can be deleted from the dealer.
- different communication terminals that are independent of one another can also be used for secure payment in combination with one another, for example by sending the first ticket 6 from the dealer 3 to a mobile phone with WAP of the customer 1, which authorizes to send it to the payment provider 4 as a payment instruction and the download or the goods are delivered in the manner described.
- dealer 3 and the payment provider 4 are identical, with billing systems with corresponding limits being used by a service provider for telecommunications, which also functions as a payment provider 4, to pay for services 5 that are subject to a fee can.
Landscapes
- Business, Economics & Management (AREA)
- Accounting & Taxation (AREA)
- Engineering & Computer Science (AREA)
- Theoretical Computer Science (AREA)
- Strategic Management (AREA)
- Physics & Mathematics (AREA)
- General Business, Economics & Management (AREA)
- General Physics & Mathematics (AREA)
- Finance (AREA)
- Computer Security & Cryptography (AREA)
- Development Economics (AREA)
- Economics (AREA)
- Marketing (AREA)
- Computer Networks & Wireless Communication (AREA)
- Financial Or Insurance-Related Operations Such As Payment And Settlement (AREA)
- Management, Administration, Business Operations System, And Electronic Commerce (AREA)
Abstract
Applications Claiming Priority (3)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
DE10019884 | 2000-04-20 | ||
DE10019884A DE10019884A1 (de) | 2000-04-20 | 2000-04-20 | Verfahren zur sicheren Bezahlung von Lieferungen und Leistungen in offenen Netzwerken |
PCT/DE2001/001484 WO2001081875A2 (fr) | 2000-04-20 | 2001-04-14 | Procede de paiement securise de livraisons et de services dans des reseaux ouverts |
Publications (1)
Publication Number | Publication Date |
---|---|
EP1274971A2 true EP1274971A2 (fr) | 2003-01-15 |
Family
ID=7639638
Family Applications (1)
Application Number | Title | Priority Date | Filing Date |
---|---|---|---|
EP01935980A Ceased EP1274971A2 (fr) | 2000-04-20 | 2001-04-14 | Procede de paiement securise de livraisons et de services dans des reseaux ouverts |
Country Status (6)
Country | Link |
---|---|
US (1) | US20030172038A1 (fr) |
EP (1) | EP1274971A2 (fr) |
AU (1) | AU6204201A (fr) |
DE (2) | DE10019884A1 (fr) |
ES (1) | ES2190906T1 (fr) |
WO (1) | WO2001081875A2 (fr) |
Families Citing this family (4)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
SE0002811D0 (sv) * | 2000-08-03 | 2000-08-03 | Ticketanywhere Europ Ab | Method for handling electronic tickets |
EP2438563A4 (fr) * | 2009-06-04 | 2013-05-01 | Mobile Messenger Global Inc | Procédé et système de fourniture d'accès en temps réel à une preuve de confirmation d'achat de commerce mobile |
US20150039435A1 (en) * | 2013-07-31 | 2015-02-05 | Mostafa SHAHEE | DayMal.com |
US11250484B2 (en) * | 2019-11-18 | 2022-02-15 | Verizon Patent And Licensing Inc. | Systems and methods for secure assisted order generation |
Family Cites Families (2)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
US5822737A (en) * | 1996-02-05 | 1998-10-13 | Ogram; Mark E. | Financial transaction system |
US6085976A (en) * | 1998-05-22 | 2000-07-11 | Sehr; Richard P. | Travel system and methods utilizing multi-application passenger cards |
-
2000
- 2000-04-20 DE DE10019884A patent/DE10019884A1/de not_active Withdrawn
-
2001
- 2001-04-14 DE DE10191579T patent/DE10191579D2/de not_active Expired - Fee Related
- 2001-04-14 WO PCT/DE2001/001484 patent/WO2001081875A2/fr active Application Filing
- 2001-04-14 AU AU62042/01A patent/AU6204201A/en not_active Abandoned
- 2001-04-14 EP EP01935980A patent/EP1274971A2/fr not_active Ceased
- 2001-04-14 ES ES01935980T patent/ES2190906T1/es active Pending
- 2001-04-14 US US10/258,098 patent/US20030172038A1/en not_active Abandoned
Non-Patent Citations (1)
Title |
---|
See references of WO0181875A2 * |
Also Published As
Publication number | Publication date |
---|---|
DE10019884A1 (de) | 2001-11-22 |
ES2190906T1 (es) | 2003-09-01 |
US20030172038A1 (en) | 2003-09-11 |
WO2001081875A2 (fr) | 2001-11-01 |
DE10191579D2 (de) | 2003-03-27 |
AU6204201A (en) | 2001-11-07 |
WO2001081875A8 (fr) | 2002-03-21 |
Similar Documents
Publication | Publication Date | Title |
---|---|---|
EP1203357B1 (fr) | Commerce electronique pour services d'envoi de messages courts | |
EP0986275B1 (fr) | Procédé pour acheter des articles ou des services avec un téléphone mobile | |
EP1178444A1 (fr) | Paiement électronique utilisant des SMS | |
EP1446778A2 (fr) | Protocole de paiement et procede et dispositif de transmission de donnees pour executer des transactions de paiement | |
DE102008035391A1 (de) | Verfahren zur Authentifizierung | |
WO2013067561A1 (fr) | Procédé et dispositif pour effectuer des paiements scripturaux | |
WO2000045350A1 (fr) | Procede, systeme et station mobile pour effectuer des operations financieres par virement | |
EP1665184A1 (fr) | Procede pour effectuer une transaction electronique | |
WO2004006198A1 (fr) | Procede pour le paiement electronique d'une marchandise ou d'une prestation de service par utilisation d'un reseau de telephonie mobile et ensemble pour l'execution de ce procede | |
EP1081919B1 (fr) | Méthode pour donner une autorisation pour le payment de biens et/ou services achetés sur Internet dans des réseaux de transmission de données | |
DE19641776C2 (de) | Computerprogrammgesteuertes Verfahren zum gesicherten Aufbau einer Wähl-Leitungsverbindung und zur gesicherten Datenübertragung zwischen einem Chipkarten-Terminal und einer zentralen Datenverarbeitungsanlage | |
DE60122912T2 (de) | Verfahren zum liefern von identifikationsdaten einer bezahlkarte an einen anwender | |
WO2001081875A2 (fr) | Procede de paiement securise de livraisons et de services dans des reseaux ouverts | |
DE10049164A1 (de) | Verfahren zur gesicherten Durchführung einer Transaktion im elektronischen Zahlungsverkehr | |
EP1277185B1 (fr) | Procede pour reduire les risques dans des transactions de commerce electronique | |
DE10008280C1 (de) | Verfahren und System zur automatischen Abwicklung von bargeldlosen Kaufvorgängen | |
EP1512273A1 (fr) | Procede, programme informatique et systeme informatique pour service de telecommunication prepaye | |
DE10065067B4 (de) | Verfahren zum Verifizieren nutzerspezifischer Informationen in einem Daten- und/oder Kommunikationssystem sowie Daten- und/oder Kommunikationssystem | |
EP1371038B1 (fr) | Procede et dispositif permettant d'effectuer au moins une transaction a titre onereux | |
DE10229619A1 (de) | Verfahren zur Durchführung eines Zahlungsvorganges | |
DE102013000967B4 (de) | Verfahren zur Autorisierung einer elektronischen Transaktion | |
DE10210792B4 (de) | Verfahren und System zur Freischaltung eines kostenpflichtigen Mobilfunk- oder Online-Dienstes | |
WO2003070493A2 (fr) | Systeme informatique et procede pour la transmission electronique de paiements | |
WO2005008608A1 (fr) | Systeme de paiement, terminal de systeme de paiement et procede pour realiser un paiement electronique | |
WO2003091860A1 (fr) | Procede pour authentifier et/ou autoriser une personne |
Legal Events
Date | Code | Title | Description |
---|---|---|---|
PUAI | Public reference made under article 153(3) epc to a published international application that has entered the european phase |
Free format text: ORIGINAL CODE: 0009012 |
|
17P | Request for examination filed |
Effective date: 20021011 |
|
AK | Designated contracting states |
Kind code of ref document: A2 Designated state(s): AT BE CH CY DE DK ES FI FR GB GR IE IT LI LU MC NL PT SE TR |
|
AX | Request for extension of the european patent |
Free format text: AL PAYMENT 20021011;LT PAYMENT 20021011;LV PAYMENT 20021011;MK PAYMENT 20021011;RO PAYMENT 20021011;SI PAYMENT 20021011 |
|
TCNL | Nl: translation of patent claims filed | ||
GBC | Gb: translation of claims filed (gb section 78(7)/1977) | ||
EL | Fr: translation of claims filed | ||
IECL | Ie: translation for ep claims filed | ||
REG | Reference to a national code |
Ref country code: GR Ref legal event code: PP Ref document number: 20030300014 Country of ref document: GR |
|
RAP1 | Party data changed (applicant data changed or rights of an application transferred) |
Owner name: FIRST DATA MOBILE HOLDINGS LIMITED |
|
17Q | First examination report despatched |
Effective date: 20100525 |
|
RAP1 | Party data changed (applicant data changed or rights of an application transferred) |
Owner name: FDGS GROUP, LLC |
|
REG | Reference to a national code |
Ref country code: DE Ref legal event code: R003 |
|
STAA | Information on the status of an ep patent application or granted ep patent |
Free format text: STATUS: THE APPLICATION HAS BEEN REFUSED |
|
18R | Application refused |
Effective date: 20160815 |