US2005055581A1PendingUtilityA1

Financial transaction server with process-based security

Priority: Feb 1, 2002Filed: Aug 5, 2003Published: Mar 10, 2005
Est. expiryFeb 1, 2022(expired)· nominal 20-yr term from priority
Inventors:Vincent Larsen
G06F 2221/2141G06F 21/6218
32
PatentIndex Score
0
Cited by
0
References
0
Claims

Abstract

A system and method for performing a financial transaction over a network between a point-of-sale server and a financial server includes generating an identifier corresponding to a credit card number at a financial transaction server in communication with the point-of-sale server and the financial server. The transaction server sends the identifier to the point-of-sale server. When a customer chooses to use a stored credit card, the point-of-sale server sends the corresponding identifier to the transaction server. The transaction server retrieves the credit card number corresponding with said received identifier; and sends said retrieved credit card number to a financial server for processing.

Claims

exact text as granted — not AI-modified
1 . A method of performing a financial transaction over a network comprising the steps of: 
 generating an identifier corresponding to a credit card number at a financial transaction server;    sending said identifier to a point-of-sale server;    receiving said identifier at said financial transaction server from said point-of-sale server when a financial transaction is undertaken;    retrieving said credit card number corresponding with said received identifier; and    sending said retrieved credit card number to a financial server.    
   
   
       2 . The method of  claim 1 , further comprising the steps of: 
 generating a second identifier corresponding to said credit card number; and    sending said second identifier to said point-of-sale server, such that a subsequent financial transaction will use said second identifier.    
   
   
       3 . The method of  claim 1 , wherein said financial transaction server includes a process-based security system.  
   
   
       4 . The method of  claim 3 , wherein said process-based security system includes an operating system using process-based security.  
   
   
       5 . The method of  claim 4 , wherein said operating system intercepts a file call to read a file and determines an authorization of the file call before permitting the file to be read.  
   
   
       6 . The method of  claim 5 , wherein said authorization is determined by accessing a resource access table.  
   
   
       7 . The method of  claim 6 , wherein said resource access table indicates access authorization for a process, such that a process is unable to access a file unless the resource access table indicates authorization for that file.  
   
   
       8 . The method of  claim 1 , further comprising the step of authenticating the point-of-sale server at the financial transaction server and loading a resource access table associated with the authenticated point-of-sale server.  
   
   
       9 . The method of  claim 6 , further comprising the step of authenticating the point-of-sale server at the financial transaction server and loading a resource access table associated with the authenticated point-of-sale server.  
   
   
       10 . The method of  claim 9 , wherein said resource access table indicates access authorization for a process, such that a process is unable to access a file unless the resource access table indicates authorization for that file.  
   
   
       11 . A transaction server for performing a financial transaction over a network comprising: 
 a processor for executing processes;    a memory connected to said process;    a network connection for connecting the processor to a point-of-sale server and a financial server;    wherein said processor generates an identifier to correspond with a credit card number and stores the identifier and corresponding credit card number in memory, such that when a point-of-sale server transmits said identifier to said transaction server, said processor retrieves the credit card number corresponding to said identifier and transmits said credit card number to said financial server.    
   
   
       12 . The transaction server of  claim 11 , wherein said processor generates a second identifier corresponding to said credit card number; and sends said second identifier to said point-of-sale server, such that a subsequent financial transaction will use said second identifier.  
   
   
       13 . The transaction server of  claim 11 , wherein said transaction server includes a process-based security system.  
   
   
       14 . The transaction server of  claim 13 , wherein said process-based security system includes an operating system using process-based security.  
   
   
       15 . The transaction server of  claim 14 , wherein said operating system intercepts a file call to read a file and determines an authorization of the file call before permitting the file to be read.  
   
   
       16 . The transaction server of  claim 15 , wherein said authorization is determined by accessing a resource access table.  
   
   
       17 . The transaction server of  claim 16 , wherein said resource access table indicates access authorization for a process, such that a process is unable to access a file unless the resource access table indicates authorization for that file.  
   
   
       18 . The transaction server of  claim 11 , further comprising the step of authenticating the point-of-sale server at the financial transaction server and loading a resource access table associated with the authenticated point-of-sale server.  
   
   
       19 . The transaction server of  claim 16  wherein the point-of-sale server is authenticated by the transaction server and wherein said transaction server loads a resource access table associated with the authenticated point-of-sale server.  
   
   
       20 . The transaction server of  claim 19 , wherein said resource access table indicates access authorization for a process, such that a process is unable to access a file unless the resource access table indicates authorization for that file.

Join the waitlist — get patent alerts

Track US2005055581A1 — get alerts on status changes and closely related new filings.

We store only your email — no account needed. See our privacy policy.