×

System and method for secure trading mechanism combining wireless communication and wired communication

  • US 6,826,395 B2
  • Filed: 08/01/2001
  • Issued: 11/30/2004
  • Est. Priority Date: 08/03/2000
  • Status: Expired due to Fees
First Claim
Patent Images

1. A method for a secure trading mechanism combining wireless communication and wired communication, comprising the steps of:

  • (1) registering at a trading host, wherein a user inputs data including a unique identity identification code, a personal identification number and a device identification code dedicated for a wireless two-way communication device of the user, and stores the data in a memory unit of the trading host;

    (2) inputting the user'"'"'s identity identification code, the personal identification number, a trading host code and a trading type code to the wireless two-way communication device;

    (3) using the personal identification number as a key for being encrypted by an encryption method of DES (data encryption standard), so as to acquire an encrypted personal identification number key to be stored in a memory unit of the wireless two-way communication device;

    (4) encrypting the device identification code of the wireless two-way communication device by the personal identification number key so as to generate an encrypted device identification code, and incorporating the personal identification number key and the encrypted device identification code, for being digitally signed by a one-way hash function so as to acquire a digital signature;

    (5) incorporating the personal identification number key, the encrypted device identification code and the digital signature, for being symmetrically encrypted by the encrypted personal identification number key so as to acquire re-encrypted data;

    (6) incorporating the trading host code, the trading type code, the identification code and the re-encrypted data obtained from step (5), for being transmitted, by the wireless two-way communication device to the trading host;

    (7) acquiring via the trading host a set of keys, including a trading host key and a trading data key, relating to the identity identification code from the memory unit of the trading host according to the identity identification code;

    (8) using the device identification code of the wireless two-way communication device and the personal identification number key as keys for symmetrically encrypting the trading host key and the trading data key sequentially;

    (9) incorporating the encrypted trading host key and trading data key to form a trading result for being digitally signed by the one-way hash function so as to generate digitally signed data;

    (10) incorporating the identity identification code, the trading result and the digitally signed data, for being transmitted by the trading host to the wireless two-way communication device;

    (11) initiating trading between the trading host and the wireless two-way communication device, in a manner that the wireless two-way communication device acquires information of the user about to perform e-commerce, verifies the user in correct identity, and transmits the set of keys stored in the trading host to a smart card of the wireless two-way communication device for storage; and

    (12) performing the trading between the wireless two-way communication device and the trading host, in a manner that after the user inputs related trading data to the wireless two-way communication device, the related trading data are encrypted by the set of keys and transmitted to the trading host, wherein the wading data is merely able to be decrypted by the trading host so as to assure security of the trading data in transmission.

View all claims
  • 1 Assignment
Timeline View
Assignment View
    ×
    ×