US2010325442A1PendingUtilityA1
System and method for nameless biometric authentication and non-repudiation validation
Assignee: AMERICAN EXPRESS TRAVEL RELATEPriority: Apr 19, 2005Filed: Aug 27, 2010Published: Dec 23, 2010
Est. expiryApr 19, 2025(expired)· nominal 20-yr term from priority
G07C 9/38G07C 9/37G06F 21/32
46
PatentIndex Score
0
Cited by
0
References
0
Claims
Abstract
A system, method, and computer program product for authenticating a requestor using a previously-stored biometric print. Records are stored in a database, where each record contains a previously-stored biometric print corresponding to an individual and is disassociated from an identity of the individual. An identifier and a biometric sample are requested from the requestor. The identifier is then used to locate one of the plurality of records corresponding to the requestor. The requestor is authenticated if the biometric sample matches the previously-stored biometric print.
Claims
exact text as granted — not AI-modified1 . An article of manufacture including a non-transitory, tangible computer readable medium having instructions stored thereon that, in response to execution by a computer-based system for authenticating a requestor using a previously-stored biometric print, cause the computer-based system to perform operations comprising:
encrypting, by the computer-based system, an identifier in response to receiving the identifier from the requestor to create an encrypted identifier; matching, by the computer-based system, the encrypted identifier with one of a plurality of records that corresponds to the requestor, wherein the encrypted identifier is associated with the one of the plurality of records corresponding to the requestor; and authenticating, by the computer-based system, the requestor in response to a biometric sample matching the previously-stored biometric print, wherein the authenticated requestor is permitted to perform a transaction, and wherein each record containing the previously-stored biometric print corresponding to an individual is disassociated from an identity of the individual stored in a customer database, the customer database and the biometric print database being de-linked.
2 . The medium of claim 1 , further comprising hashing the identifier.
3 . The medium of claim 1 , further comprising hashing the identifier and using the hashed identifier to locate one of the plurality of records containing the previously-stored biometric print.
4 . The medium of claim 1 , further comprising storing a log of an authentication request.
5 . The medium of claim 1 , wherein the records are stored in a biometric print database.
6 . The medium of claim 1 , further comprising requesting the user identifier and the biometric sample from the requestor.
7 . The medium of claim 1 , wherein a query engine requests the user identifier and the biometric sample from the requestor.
8 . The medium of claim 1 , wherein the encrypting the identifier is performed by an authentication engine.
9 . A method, comprising:
encrypting, by a computer-based system for authenticating a requestor using a previously-stored biometric print, an identifier in response to receiving the identifier from the requestor to create an encrypted identifier; matching, by the computer-based system, the encrypted identifier with one of a plurality of records that corresponds to the requestor, wherein the encrypted identifier is associated with the one of the plurality of records corresponding to the requestor; and authenticating, by the computer-based system, the requestor in response to a biometric sample matching the previously-stored biometric print, wherein the authenticated requestor is permitted to perform a transaction, and wherein each record containing the previously-stored biometric print corresponding to an individual is disassociated from an identity of the individual stored in a customer database, the customer database and the biometric print database being de-linked.
10 . The method of claim 9 , further comprising hashing the identifier.
11 . The method of claim 9 , further comprising hashing the identifier and using the hashed identifier to locate one of the plurality of records containing the previously-stored biometric print.
12 . The method of claim 9 , further comprising storing a log of an authentication request.
13 . The method of claim 9 , wherein the records are stored in a biometric print database.
14 . The method of claim 9 , further comprising requesting the user identifier and the biometric sample from the requestor.
15 . The method of claim 9 , wherein a query engine requests the user identifier and the biometric sample from the requestor.
16 . The method of claim 9 , wherein the encrypting the identifier is performed by an authentication engine.
17 . A system comprising:
a tangible, non-transitory memory communicating with a processor for authenticating a requestor using a previously-stored biometric print, the tangible, non-transitory memory having instructions stored thereon that, in response to execution by the processor, cause the processor to perform operations comprising:
encrypting, by the processor, an identifier in response to receiving the identifier from the requestor to create an encrypted identifier;
matching, by the processor, the encrypted identifier with one of a plurality of records that corresponds to the requestor, wherein the encrypted identifier is associated with the one of the plurality of records corresponding to the requestor; and
authenticating, by the processor, the requestor in response to a biometric sample matching the previously-stored biometric print, wherein the authenticated requestor is permitted to perform a transaction, and wherein each record containing the previously-stored biometric print corresponding to an individual is disassociated from an identity of the individual stored in a customer database, the customer database and the biometric print database being de-linked.Join the waitlist — get patent alerts
Track US2010325442A1 — get alerts on status changes and closely related new filings.
We store only your email — no account needed. See our privacy policy.