Abstract:
Systems and methods are provided for use in provisioning a biometric template to a biometric device. One exemplary method includes interacting, at a terminal associated with a banking institution, with a biometric device associated with a user and capturing a biometric of the user. The method also includes transmitting, by the terminal, an image of the captured biometric to a repository including a data structure of multiple biometric references, thereby permitting the repository to confirm the captured biometric against one of the multiple biometric references associated with the user. The method further includes receiving, at the terminal, a confirmation of the captured biometric matching the one of the multiple biometric references, converting the captured biometric to a biometric template upon such confirmation, and provisioning the biometric template to the biometric device, thereby permitting the user to be authenticated in connection with a transaction using the biometric device.
Abstract:
Described are user-wearable devices utilizing encryption authentication techniques to ensure security of any data transmission to and from these devices. In order to provide privacy and security of user-wearable device signals, unique encryption technology is employed together with the use of biometrics associated with each user. The user-wearable devices may be electronic and can include one or more circuits, power sources, displays, and transceivers with biometric data transceiver portions. The devices can establish communications with a counterpart communication device or system in order to provide the ability to perform specific secured transactions. The biometric data transceivers are capable of reading a user's encrypted biometric data and then transmitting the encrypted data to a user identity validation distributed auto-synchronous array (DASA) database which allows for decryption, identification, and authentication of both the user(s) and the transaction(s).
Abstract:
본 발명은 얼음 음료 제공이 가능한 스마트 벤딩 머신에 관한 것이다. 본 발명에 따른 벤딩 머신은, 원료와 물을 혼합하여 음료를 추출하는 추출부; 물을 공급받아 얼음을 생성하는 제빙장치; 상기 음료의 종류를 표시하는 디스플레이패널; 음료의 주문정보에 대응하는 결제를 수행하는 결제부; 및 상기 디스플레이패널 또는 상기 결제부를 통해 상기 주문정보가 수신되는 것에 대한 응답으로, 상기 주문정보에 대응하는 음료가 생성되도록 상기 추출부 및 상기 제빙장치 중 적어도 어느 하나를 제어하고, 상기 결제부에 의해, 신용카드 또는 휴대용 단말기로부터 결제정보를 수신하여 결제처리를 수행하는 제어부를 포함하는 것을 특징으로 한다. 이에 의하여, 종래의 자동 판매기에 없던 제빙장치를 탑재함으로써 얼음 음료의 제공이 가능한 이점이 있으며, 주문 및/또는 결제 과정이 구매자의 휴대용 단말기에서 실행되는 애플리케이션과의 통신을 통해 이루어질 수 있으므로 구매자의 편의를 도모할 수 있는 이점이 있다.
Abstract:
The present invention relates to a method for authorising access to goods and/or services (11, 12) at a point of sale (10), in which access to goods and/or services (11, 12) is authorised based on an identification of the user, in which an access voucher (AV), comprising at least an identification of the user is issued by a voucher issuing means (22), the access voucher (AV) is presented to a reading means (16) of the point of sale (10), at least the identification of the user being read and transferred by the reading means (16) to an internal processing unit (18) of the point of sale (10), at least one good (11) and/or service (12) of the point of sale (10) is selected by the user and the corresponding identification is transferred to the internal processing unit (18), the identification of the user and the identification of goods and/or services (11, 12) is transferred by the internal processing unit (18) to a centralised processing unit (30) which compares the transferred identification of the user with the at least one stored identification of the user (31) and the transferred identification of the goods and/or services with the at least one stored identification of goods and/or services (32), and in which, if the transferred identification of the user matches an identification of the user stored in the centralised processing unit (30) and if the transferred identification of the goods and/services matches an identification of the goods/and services stored in the centralised processing unit (30), the centralised processing unit (30) retrieves user profile data and the access parameter for the goods and/or services (11, 12), and an authorisation for accessing the selected goods and/or services (11, 12) is transferred to the point of sale (10) by the centralised processing unit (30) if the user profile data correspond to the access parameter for the goods and/or services (11, 12). Also, the present invention relates to a corresponding system and a corresponding point of sale (10).
Abstract:
A method for secure passcode entry is disclosed. The method, in one embodiment, includes: receiving a request for authenticating a user; in response to the request, generating a passcode entry interface including buttons corresponding to character options for composing a passcode entry, wherein the passcode entry interface is used to receive the passcode entry to authenticate a user of the payment card; identifying, on a touchscreen of the electronic device, a traffic region that experienced touch events prior to receiving the request; and displaying the passcode entry interface on the touchscreen such that at least a portion of the passcode entry interface is positioned in the traffic region.
Abstract:
Mechanisms are provided to manage personal identification numbers and data objects residing in a communication system. In particular, solutions are described which allow a PIN associated with a data object to be stored with the data object for later authentication and verification purposes without disclosing the pin. In at least one embodiment, an operation is performed wherein a signature or digest of a data object is altered utilizing a user's entered pin. The altered signature is then stored. Upon verification and authentication, an operation is performed on the stored altered signature and the result is compared to a signature of the data object. If both signatures match, then the PIN can be used to authenticate and verify the data object.
Abstract:
A system and method for secure transmission of sensitive end-user information from an Internet portal operated by a distrusted domain. The method operates by receiving a request for a sensitive data form from the distrusted domain, sending a trusted data form from a second domain to a web browser of the end-user, receiving information from the trusted data form input by the end-user, and sending information to the trusted data form in the web browser. The trusted data form is inserted into a sensitive data interface provided by the distrusted domain in the web browser of the end-user, and the end-user can interact/generate information intended for the distrusted domain. The distrusted domain has no access to any information in the trusted data form from the second domain due to cross site scripting protection security standard of web browsers. The trusted data form forwards the information to a frame residing in the distrusted domain, and the information in the frame is accessible to the distrusted domain.
Abstract:
Bei einem Verfahren zum Authentisieren eines portablen Datenträgers (10) gegenüber einer Ternimaleinrichtung werden ein öffentlicher Schlüssel (PKG) und ein geheimer Schlüssels (SK1) des Datenträgers (10) sowie ein öffentlicher Sitzungsschlüssel (ΡΚ T ) und ein geheimer Sitzungsschlüssel (SK T ) der Terminaleinrichtung verwendet. Der Datenträger (10) verwendet als öffentlichen Schlüssel einen öffentlicher Gruppenschlüssel (PKG). Als geheimen Schlüssel verwendet der Datenträger (10) einen Schlüssel (SK1), welcher aus einem dem öffentlichen Gruppenschlüssel (PKG) zugeordneten geheimen Gruppenschlüssel (SKG) abgeleitet worden ist.