Smart card transactions using wireless telecommunications network
First Claim
1. A method of loading value over a wireless telecommunications network onto a smart card, said method comprising:
- receiving at a mobile telephone handset with a subscriber identification module a request from a user to load a value into a stored-value application of said smart card inserted in said handset;
opening a second application on said smart card capable of funding said stored-value application;
generating a funds request message which includes said value and an authorization certificate;
sending said funds request message over said telecommunications network to a funds issuer computer arranged to authenticate said second application and to generate an authentication response certificate;
receiving through the mobile telephone handset to the smart card a response message which includes said authentication response certificate;
validating said authentication response certificate; and
loading said value onto said stored-value application of said smart card from said second application.
1 Assignment
0 Petitions
Accused Products
Abstract
A smart card transaction allows a consumer to load value onto a smart card and to make purchases using a smart card with a mobile telephone handset over the telecommunications network. For loading, the system includes: a mobile telephone handset including a card reader; a gateway computer; a funds issuer computer; and an authentication computer. The mobile telephone handset receives a request from a user to load a value onto the smart card. The handset generates a funds request message which includes the value and sends the funds request message to a funds issuer computer. The funds issuer computer debits an account associated with the user. Next, the handset generates a load request message with a cryptographic signature and sends the load request message to an authentication computer which authenticates the smart card. The handset receives a response message which includes a cryptographic signature and an approval to load. Finally, the handset validates the second cryptographic signature and loads the value onto the smart card. For payment, the system includes a merchant server and a payment server. First, the handset sends an order request message to the merchant server computer, and in return receives a purchase instruction message. The handset processes the purchase instruction message locally, and then sends a draw request message to a payment server computer. The payment server computer sends a debit message which includes a cryptographic signature and an approval to debit the smart card. Finally, the handset validates the cryptographic signature and debits the smart card.
98 Citations
3 Claims
-
1. A method of loading value over a wireless telecommunications network onto a smart card, said method comprising:
-
receiving at a mobile telephone handset with a subscriber identification module a request from a user to load a value into a stored-value application of said smart card inserted in said handset; opening a second application on said smart card capable of funding said stored-value application; generating a funds request message which includes said value and an authorization certificate; sending said funds request message over said telecommunications network to a funds issuer computer arranged to authenticate said second application and to generate an authentication response certificate; receiving through the mobile telephone handset to the smart card a response message which includes said authentication response certificate; validating said authentication response certificate; and loading said value onto said stored-value application of said smart card from said second application.
-
-
2. A method as recited in claim 1 wherein said response message is implemented as an alphanumeric message integrated within an Short Message Service (SMS) message of said telecommunications network, said alphanumeric message serving as a command input to said smart card used to control operation of said smart card.
-
3. A method as recited in claim 1 further comprising:
generating a transaction certificate to be used for irrepudiation.
Specification