-
41.
公开(公告)号:US20150058191A1
公开(公告)日:2015-02-26
申请号:US14092205
申请日:2013-11-27
Applicant: Apple Inc.
Inventor: Ahmer A. Khan , David T. Haggerty , George R. Dicker , Jerrold V. Hauck , Joakim Linde , Mitchell D. Adler , Zachary A. Rosen , Yousuf H. Vaid , Christopher Sharp
CPC classification number: G06Q20/42 , G06F21/35 , G06Q20/32 , G06Q20/3226 , G06Q20/40 , G06Q20/4016
Abstract: Systems, methods, and computer-readable media for provisioning credentials on an electronic device are provided. In one example embodiment, a secure platform system may be in communication with an electronic device and a financial institution subsystem. The secure platform system may be configured to, inter alia, receive user account information from the electronic device, authenticate a user account with a commercial entity using the received user account information, detect a commerce credential associated with the authenticated user account, run a commercial entity fraud check on the detected commerce credential, commission the financial institution subsystem to run a financial entity fraud check on the detected commerce credential based on the results of the commercial entity fraud check, and facilitate provisioning of the detected commerce credential on the electronic device based on the results of the financial entity fraud check. Additional embodiments are also provided.
Abstract translation: 提供了用于在电子设备上提供凭证的系统,方法和计算机可读介质。 在一个示例性实施例中,安全平台系统可以与电子设备和金融机构子系统通信。 安全平台系统可以被配置为特别地从电子设备接收用户帐户信息,使用接收到的用户帐户信息向商业实体验证用户帐户,检测与经认证的用户帐户相关联的商业凭证,运行商业广告 实体欺诈检查检测到的商业凭证,委托金融机构子系统根据商业实体欺诈检查的结果对检测到的商业凭证进行金融实体欺诈检查,并促进在电子设备上提供检测到的商业凭证 关于金融实体欺诈检查的结果。 还提供了另外的实施例。
-
公开(公告)号:US20140143826A1
公开(公告)日:2014-05-22
申请号:US14085951
申请日:2013-11-21
Applicant: Apple Inc.
Inventor: Christopher B. Sharp , Yousuf H. Vaid , Li Li , Jerrold V. Hauck , Arun G. Mathias , Xiangying Yang , Kevin P. McLaughlin
IPC: G06F21/60
CPC classification number: G06F21/604 , H04L63/102 , H04L63/105 , H04L63/20 , H04W12/08
Abstract: A policy-based framework is described. This policy-based framework may be used to specify the privileges for logical entities to perform operations associated with an access-control element (such as an electronic Subscriber Identity Module) located within a secure element in an electronic device. Note that different logical entities may have different privileges for different operations associated with the same or different access-control elements. Moreover, the policy-based framework may specify types of credentials that are used by the logical entities during authentication, so that different types of credentials may be used for different operations and/or by different logical entities. Furthermore, the policy-based framework may specify the security protocols and security levels that are used by the logical entities during authentication, so that different security protocols and security levels may be used for different operations and/or by different logical entities.
Abstract translation: 描述了基于策略的框架。 该基于策略的框架可以用于指定逻辑实体执行与位于电子设备中的安全元件内的访问控制元素(例如电子订户身份模块)相关联的操作的权限。 注意,对于与相同或不同的访问控制元素相关联的不同操作,不同的逻辑实体可以具有不同的权限。 此外,基于策略的框架可以指定在认证期间由逻辑实体使用的凭证的类型,使得不同类型的凭证可以用于不同的操作和/或由不同的逻辑实体使用。 此外,基于策略的框架可以指定在认证期间由逻辑实体使用的安全协议和安全级别,使得不同的安全协议和安全级别可以用于不同的操作和/或不同的逻辑实体。
-