Mobile device over-the-air (ota) registration and point-of-sale (pos) payment
Abstract
A method for enabling secure registration of a mobile device OTA and for conducting a financial transaction at a point-of-sale (POS) has been described herein. In one embodiment, a method of mobile device registration over-the-air (OTA) comprises enabling a pre-loaded payment application having payment account information; enabling a certificate request; receiving payment credentials; associating the payment credentials with the payment account information; transmitting the payment account information and the certificate request OTA; and receiving a certificate of registration of the mobile device OTA.
Claims
exact text as granted — not AI-modified1 . Method of mobile device registration over-the-air (OTA) comprising:
enabling a pre-loaded payment application having payment account information; enabling a certificate request; receiving payment credentials; associating the payment credentials with the payment account information; transmitting the payment account information and the certificate request OTA; and receiving a certificate of registration by the mobile device OTA.
2 . The method of claim 1 , further comprising unlocking the payment credentials prior to receiving the payment credentials.
3 . The method of claim 2 , wherein unlocking the payment credentials further comprising receiving a biometric input.
4 . The method of claim 3 , wherein the biometric input includes one of a fingerprint, a retinal scan, or voice recognition.
5 . The method of claim 1 , wherein enabling the certificate request includes one of invoking a simple certificate enrollment protocol (SCEP) or a certificate request message format (CRMF).
6 . The method of claim 1 , wherein the payment credentials are one of a user name or a password.
7 . The method of claim 1 , further comprising transmitting a counter or a timestamp along with the payment account information and the certificate request.
8 . The method of claim 1 , wherein at least a portion of the OTA is via near field communication.
9 . An apparatus for registration over-the-air (OTA) comprising:
a mobile device adapted to enable a pre-loaded payment application having payment account information; enable a certificate request; receive payment credentials; associate the payment credentials with the payment account information; transmit the payment account information and the certificate request OTA; and receive a certificate of registration for the mobile device.
10 . The apparatus of claim 9 , wherein the mobile device is adapted to unlock the payment credentials prior to receipt of the payment credentials.
11 . The apparatus of claim 10 , wherein the mobile device is adapted to unlock the payment credentials upon receipt of a biometric input.
12 . The apparatus of claim 11 , wherein the biometric input includes one of a fingerprint, a retina scan, or voice recognition.
13 . The apparatus of claim 9 , wherein the certificate request includes one of a simple certificate enrollment protocol (SCEP) or a certificate request message format (CRMF).
14 . The apparatus of claim 9 , wherein the payment credentials are one of a user name or a password.
15 . The apparatus of claim 9 , wherein the mobile device is adapted to transmit a counter or a timestamp along with the payment account information and the certificate request.
16 . The apparatus of claim 9 , wherein at least a portion of the OTA is via near field communication.
17 . A method of payment instrument deployment to a mobile device for payment at a point-of-sale (POS) comprising:
transmitting a payment instrument request from a mobile device; receiving data including a payment instrument and a card verification value (CVV) by the mobile device; and storing the payment instrument and card verification value in a secure element of the mobile device for payment at a POS.
18 . The method of claim 17 , wherein the payment instrument is a payment account number.
19 . The method of claim 17 , wherein the payment instrument and the CVV is encrypted using a public key of the mobile device and signed using a private key of a payment/service provider system.
20 . The method of claim 17 , wherein the data further includes counter or timestamp information to prevent replay attacks.Join the waitlist — get patent alerts
Track US2009307140A1 — get alerts on status changes and closely related new filings.
We store only your email — no account needed. See our privacy policy.