US2011281630A1PendingUtilityA1

Multifunction authentication systems

Assignee: OMAR RALPH MAHMOUDPriority: Jan 30, 2009Filed: Jan 29, 2010Published: Nov 17, 2011
Est. expiryJan 30, 2029(~2.5 yrs left)· nominal 20-yr term from priority
H04L 63/105H04L 63/0807G07F 17/329G06F 21/36H04L 2463/062G06F 21/33G07F 17/3241G07F 17/3262H04L 2209/80H04L 9/3218H04L 2209/56H04L 9/3213
28
PatentIndex Score
0
Cited by
0
References
0
Claims

Abstract

A method of generating a personal authenticated transaction ticket with a registered-user redemption functionality is described. The method is inplemented using a remote transaction information device and a central authentication server. The method comprises receiving data at the remote transaction information device from a user, the data including i. a symbol key comprising at least one symbol selected from a plurality of symbols, and ii. personal information identifying the user, the personal information including at least the user name, digitising and encrypting the symbol key and the personal information, transmitting the encrypted data to the central server, receiving a unique transaction number associated with the symbol key and personal information, and providing the unique transaction number to the user as part of the transaction ticket, the unique transaction number confirming the registration of the user and the authentication of the transaction ticket with the central server.

Claims

exact text as granted — not AI-modified
1 . A method of generating a personal authenticated transaction ticket with a registered-user redemption functionality, the method being implemented using a remote transaction information device and a central authentication system, the method comprising:
 receiving data at the remote transaction information device from a user, the data including:
 i. a symbol key comprising at least one symbol selected from a plurality of symbols; and 
 ii. personal information identifying the user, the personal information including at least the user name; 
   digitising and encrypting the symbol key and the personal information;   transmitting the encrypted data to the central server;   receiving a unique transaction number associated with the symbol key and personal information; and   providing the unique transaction number to the user as part of the transaction ticket, the unique transaction number confirming the registration of the user and the authentication of the transaction ticket with the central server.   
     
     
         2 . A method according to  claim 1 , further comprising selecting or enabling selection of transaction-specific data relating to a transaction; and the receiving step comprises receiving the transaction-specific data at the remote transaction information device and the digitizing and encrypting step comprises digitising and encrypting the transaction-specific data. 
     
     
         3 . A method according to  claim 1 , further comprising selecting a symbol key from a plurality of possible symbols and the receiving step comprises receiving a data element relating to the selected symbol key at the remote transaction information device. 
     
     
         4 . A method according to  claim 3 , wherein the plurality of possible symbols are provided on an opaque removable film with the corresponding data elements provided underneath the removable film, and the selecting step comprises selectively removing a portion of the film to reveal the corresponding data element and inputting the data element into the transaction information device. 
     
     
         5 . A method according to  claim 4 , wherein the removable film is provided on a removable peel-off layer and the method further comprises removing the removable peel-off layer after the inputting step to obscure knowledge of the selected symbol key. 
     
     
         6 . A method according to  claim 3 , wherein the transaction information device is arranged to display or print the plurality of possible symbols for user selection. 
     
     
         7 . A method according to  claim 3 , wherein the plurality of possible symbols comprises a set of images of readily recognisable people, cartoon characters, articles or locations. 
     
     
         8 . A method according to  claim 3 , wherein the data element comprises a machine-readable indicia, such as a barcode, and the providing step comprises scanning the machine-readable indicia into the transaction information device. 
     
     
         9 . A method according to  claim 1 , wherein the receiving step comprises scanning in or capturing an image of a machine-readable data entry slip. 
     
     
         10 . A method according to  claim 1 , wherein the personal information received in the receiving step comprises a user surname, initial and date of birth. 
     
     
         11 . A method according to  claim 1 , wherein the encryption step comprises applying a scrambling algorithm to the digitised symbol key and the personal user information, to transform the data into a form where each data element can only be understood by knowledge of the function of the scrambling algorithm. 
     
     
         12 . A method according to  claim 11 , wherein the encrypting step comprises encrypting the scrambled data using a one-time encryption key, wherein the encryption process applied to the scrambled data is changed each time it is used. 
     
     
         13 . A method according to  claim 12 , wherein the encrypting step further comprises encrypting an identifier of the scrambling algorithm in an unscrambled form and combining this with the encrypted scrambled data to form the encrypted data. 
     
     
         14 . A method according to  claim 13 , wherein the scrambling algorithm identifier comprises an identifier of the remote transaction information device and a current date/time. 
     
     
         15 . A remote transaction information device arranged to be operable with a central authentication system to generate a personal authenticated transaction ticket with a registered-user redemption functionality, the device comprising:
 an inputting module for inputting data to the remote transaction information device, the data including:
 i. a symbol key comprising at least one symbol selected from a plurality of symbols; and 
 ii. personal information identifying the user, the personal information including at least the user name; 
   a digitising and encrypting module for digitising and encrypting the symbol key and the personal information;   a transmitter for transmitting the encrypted data to the central server;   a receiver for receiving a unique transaction number associated with the symbol key and personal information; and   an outputting module for outputting the unique transaction number to the user as part of the transaction ticket, the unique transaction number confirming the registration of the user and the authentication of the transaction ticket with the central server.   
     
     
         16 . A device according to  claim 15 , wherein the device comprises a lottery terminal, an automated teller machine or a vending machine, operatively connected to the central server via a communications link. 
     
     
         17 . A device according to  claim 15 , further comprising a module for selecting or enabling selection of transaction-specific data relating to a transaction; and the inputting module is arranged to receive the transaction-specific data and the digitizing and encryption module is arranged to digitise and encrypt the transaction-specific data. 
     
     
         18 . A device according to  claim 15 , further comprising a machine-readable data scanner or an image capture device for capturing an image of a machine-readable data entry slip. 
     
     
         19 . A device according to  claim 15 , further comprising a graphical display or a printer arranged to display or print the plurality of possible symbols for user selection. 
     
     
         20 . A method of generating a personal authenticated transaction ticket with a registered-user redemption functionality, the method being implemented using a remote transaction information device or devices and a central authentication system, the method comprising:
 a) a first stage of generating an non-registered ticket, comprising:
 receiving at a first remote transaction information device a unique transaction number from the central server which is to be associated with a symbol key and personal information identifying a user; and 
 providing the unique transaction number to the user as part of the non-registered transaction ticket, the unique transaction number providing the potential to identify the personal authenticated transaction ticket; and 
   b) a second stage of registering the transaction ticket, comprising:   receiving data at a second remote transaction information device from a user, the data including:
 i. the unique transaction number; 
 ii. a symbol key comprising at least one symbol selected from a plurality of symbols; and
 iii. personal information identifying the user, the personal information including at least the user name; 
 
   digitising and encrypting the transaction number, the symbol key and the personal information; and   transmitting the encrypted data to the central server for creation of a registered account.   
     
     
         21 . A method of registering a personal transaction ticket with a registered user redemption functionality, the method being implemented using a remote device and a central authentication system, the method comprising:
 receiving data in an encrypted format from the remote device, the data including:
 i. a symbol key comprising at least one symbol selected by a user from a plurality of symbols; and 
 ii. personal information identifying the user, the personal information comprising at least the user's name; 
   decrypting the symbol key and the personal information;   storing the received data in a user-specific account file;   generating a unique transaction number corresponding to received data in the account file, the unique transaction number confirming the registration of the user and the authentication of the transaction ticket with the central server; and   sending the unique transaction number associated with the account file to the remote device for provision to the user as part of the personal transaction ticket.   
     
     
         22 . A method according to  claim 21 , wherein the receiving step further comprises receiving encrypted user-selected transaction-specific data relating to a transaction; and the decrypting step comprises decrypting the transaction-specific data and the storing step comprises storing the transaction-specific data in the user-specific transaction file. 
     
     
         23 . A method according to  claim 21 , wherein at least part of the received data is in a scrambled format and the decrypting step comprises: applying an unscrambling algorithm to the received data to transform the data into a form where at least one of the data elements can be understood, the unscrambling algorithm utilising knowledge of the function applied to scramble the received data initially. 
     
     
         24 . A method according to  claim 22 , wherein at least part of the received data is in a scrambled format and the decrypting step comprises: applying an unscrambling algorithm to the received data to transform the data into a form where at least one of the data elements can be understood, the unscrambling algorithm utilising knowledge of the function applied to scramble the received data initially and wherein the applying step comprises applying the unscrambling algorithm to the scrambled user-selected transaction-specific information and the scrambled personal information. 
     
     
         25 . A method according to  claim 22 , wherein the decrypting and storing steps are implemented on a plurality of different secure processing centres, whereby none of the processing centres has access to all items of the received data in an unencrypted and unscrambled format. 
     
     
         26 . A method according to  claim 23 , further comprising applying a central scrambling algorithm to the decrypted symbol key to create an encoded version of the symbol key which is only able to be decoded by the central authentication system. 
     
     
         27 . A method according to  claim 26 , wherein the sending step comprises sending the encoded symbol key to the remote device with the unique transaction number for provision as part of the personal transaction ticket. 
     
     
         28 . A method according to  claim 26 , wherein the storing step comprises storing the encoded symbol key in the user-specific account file. 
     
     
         29 . A method according to  claim 23 , wherein the received data includes a scrambling algorithm identifier in an unscrambled format, and the method further comprises:
 using the scrambling algorithm identifier to retrieve a complimentary unscrambling algorithm to scrambling algorithm; and   applying the unscrambling algorithm to the received data.   
     
     
         30 . A method according to  claim 29 , wherein the received data includes the scrambling algorithm identifier in a scrambled format and in an unscrambled format, and the method further comprises: comparing the received unscrambled scrambling algorithm identifier with the results of applying the complimentary unscrambling algorithm to the scrambling algorithm identifier in a scrambled format. 
     
     
         31 . A method according to  claim 29 , wherein the scrambling algorithm identifier comprises an identifier of the remote transaction information device and a current date/time. 
     
     
         32 . A method according to  claim 21 , further comprising crosschecking the validity of the identity of the user by sending the decrypted personal information identifying the user to a secure personal identity database. 
     
     
         33 . A method according to  claim 32 , wherein the secure personal identity database comprises a government identity database and the personal information identifying the user comprises at least the user's surname. 
     
     
         34 . A method according to  claim 33 , wherein the personal information comprises a user's surname, initial and date of birth. 
     
     
         35 . A method according to  claim 32 , wherein the crosschecking step comprises confirming that the personal information relates to an owner of the ticket independently of the authentication of the ticket. 
     
     
         36 . A method according to  claim 32 , wherein the personal transaction ticket represents an entry item in both a short-term multiple-entry event and a long-term event, wherein:
 the receiving step comprises receiving a request for a user entry into the short-term multiple-entry event and implementing an authorisation event authorising the request,
 the storing step includes storing the unique transaction number and a timestamp relating to the request authorisation event in a database record relating to a first function of the ticket; and storing the user's personal information, the unique transaction number or an identifier uniquely associated with the ticket transaction number and the timestamp or a date associated with the timestamp, in a database record relating to a second function of the ticket, 
   wherein the first and second functions are executed on different timescales and the first function relates to the short-term event and the second function relates to the long-term event.   
     
     
         37 . A method according to  claim 21 , further comprising encrypting the unique transaction number associated with the account file prior to sending the same to the remote device. 
     
     
         38 . A method according to  claim 21 , wherein the personal transaction ticket comprises a multi-function personal transaction ticket, and the received data includes function specifying data identifying a user-selection function of the personal transaction ticket, the method further comprising:
 using the function specifying data to determine a specific function to be carried out on authentication of the personal transaction ticket at a future date.   
     
     
         39 . A method according to  claim 38 , wherein the user-selection function comprises a prize-incentive function and the user-selected transaction-specific information comprises user-selected prize draw numbers. 
     
     
         40 . A method according to  claim 21 , wherein the symbol key is a floating symbol key which is valid for a specified period of time, and the method further comprises sending a notification to the user to select a replacement symbol key and communicate the same to the central server. 
     
     
         41 . A method according to  claim 21 , further comprising in response to occurrence of the receiving step, sending an update signal to a live prize fund account to update the prize fund account thereby facilitating the updating of a real-time prize fund account which can be communicated back to the user. 
     
     
         42 . A method according to  claim 41 , further comprising: in response to occurrence of the receiving step, sending an update signal to a live prize fund account thereby facilitating the updating of a real-time prize fund account which can be communicated back to the user. 
     
     
         43 . A method according to  claim 42 , further comprising: transmitting over a feedback channel the current value of the live prize fund account thereby facilitating the updating of a real-time prize fund account which can be communicated back to the user. 
     
     
         44 . A method of securely authenticating a remote second user in order to provide access for the remote second user to a resource transmission service, using two remote transaction devices operating in different countries over a multi-national communications network and a central authentication system connectable to both remote transaction devices, the method comprising:
 generating a unique transaction number for a first user at a first remote transaction device by:   receiving data at the first remote transaction information device from a first user, the data including:
 i. a symbol key relating to the second user comprising at least one symbol selected from a plurality of symbols; 
 ii. personal information identifying the second user, the personal information including at least the second user's name; and 
 iii. the amount of resource to be transmitted from the first user to the second user; 
   transmitting the received data to the central server;   receiving, at the first remote transaction device, a unique transaction number generated by the central server, which is associated with the symbol key and personal information; and   providing the unique transaction number to the user, the unique transaction number confirming the registration of the second user and the associated symbol key with the central server;   validating the second user at the second remote transaction device by:   inputting at the second transaction device the unique transaction number and the symbol key by a second remote user;   transmitting the input data to the central server;   receiving, access to the resource transmitted from the first user to the second user if the input symbol key and the input unique transaction number correspond and are authorised by the central server.   
     
     
         45 . A method according to  claim 44 , wherein the data received in the receiving data step comprises:
 iv. a second symbol key relating to the first user, comprising at least one symbol selected from a plurality of symbols; and   v. personal information identifying the first user, the personal information including at least the first user's name.   
     
     
         46 . A method according to  claim 45 , wherein the transaction number receiving step comprises receiving a customer number which relates to the first user and the first user's symbols key. 
     
     
         47 . A method according to  claim 44 , further comprising providing the second remote user with a resource credit ticket having a value equivalent to the amount of resource that has been transmitted, the use of the ticket requiring the second remote user to provide the second user symbol key. 
     
     
         48 . A method according to  claim 44 , wherein the second remote transaction device comprises an automated teller machine. 
     
     
         49 . A method according to  claim 44 , wherein the step of receiving data at the first remote transaction information device from a first user comprises receiving information identifying an on-line resource location where the resource to be transferred is available. 
     
     
         50 . A system for securely authenticating a remote second user in order to provide access for the remote second user to a resource transmission service, the system comprising two remote transaction devices operating in different countries over a multi-national communications network and a central authentication system connectable to both remote transaction devices, wherein the central server comprises:
 a receiver for receiving data from the first remote transaction information device from a first user, the data including:
 i. a symbol key relating to the second user comprising at least one symbol selected from a plurality of symbols; 
 ii. personal information identifying the second user, the personal information including at least the second user's name; and 
 iii. the amount of resource to be transmitted from the first user to the second user; 
   a data store for storing the received data in a user-specific account file;   a generating module for generating a unique transaction number corresponding to received data in the account file, the unique transaction number confirming the registration of the second user personal information and the second user's symbol key and the authentication of resource transmission service with the central server; and   a sending module for sending the unique transaction number associated with the account file to the first remote device for provision to the first user;   wherein the receiver is also arranged to receive from a second remote transaction information device the second user's symbol key and the second user's personal information identifying the second user; and   the central server further comprises a validating module for validating the second user at the second remote transaction device by comparing the received information and on validation providing access to the resource transmitted from the first user to the second user.   
     
     
         51 . A system according to  claim 50 , further comprising a module for accessing a first user specified on-line resource location to provide the amount of specified resource available for the resource transmission service. 
     
     
         52 . A central authentication system arranged to be operable with a remote transaction information device to generate a personal authenticated transaction ticket with a registered-user redemption functionality, the system comprising:
 a receiver for receiving data in an encrypted format from the remote device, the data including:
 i. a symbol key comprising at least one symbol selected by a user from a plurality of symbols; and 
 ii. personal information identifying the user, the personal information comprising at least the user's name; 
   a decrypting module for decrypting the symbol key and the personal information;   a data store for storing the received data in a user-specific account file;   a generating module for generating a unique transaction number corresponding to received data in the account file, the unique transaction number confirming the registration of the user and the authentication of the transaction ticket with the central server; and   a sending module for sending the unique transaction number associated with the account file to the remote device for provision to the user as part of the personal transaction ticket.   
     
     
         53 . A method of generating an anonymous validated transaction ticket with a bearer redemption functionality, the method being implemented using a remote device and a central authentication system, the method comprising:
 receiving at the remote device from a user, user-selected transaction-specific information relating to the transaction and an unregistered symbol key comprising at least one symbol selected by a user from a plurality of symbols;   transmitting an encrypted version of the unregistered symbol key and the transaction information to the central server;   receiving a unique transaction number associated with the symbol key and the transaction information; and   providing the unique transaction number to the user as part of the transaction ticket, the unique transaction number confirming the association of the transaction ticket with the symbol key such that any subsequent redemption of the transaction ticket requires authentication of the user by expression of the associated symbol key.   
     
     
         54 . A remote transaction information device arranged to be operable with a central authentication system to generate an anonymous validated transaction ticket with a bearer redemption functionality, the device comprising:
 a input module for inputting into the remote transaction information device, user-selected transaction-specific information relating to the transaction and a symbol key comprising at least one symbol selected by a user from a plurality of symbols;   a transmitter for transmitting an encrypted version of the symbol key and the transaction information to the central server;   a receiver for receiving a unique transaction number associated with the symbol key and the transaction information; and   a providing module for providing the unique transaction number to the user as part of the transaction ticket, the unique transaction number confirming the association of the transaction ticket with the symbol key such that any subsequent redemption of the transaction ticket requires authentication of the user by expression of the associated symbol key.   
     
     
         55 . A method of generating a unique authentication identifier for authentication of an anonymous transaction ticket with a bearer redemption functionality, the method being implemented using a remote device and a central authentication system, the method comprising:
 receiving data in an encrypted format from the remote device, the data including:
 i. user-selected transaction-specific information relating to the transaction; and 
 ii. a symbol key comprising at least one symbol selected by a user from a plurality of symbols; 
   decrypting the transaction information and the symbol key;   generating a unique authentication identifier corresponding to the received data, the authentication identifier enabling confirmation of the authentication of the transaction ticket and the user with the central server; and   sending the unique authentication identifier to the remote device for provision to the user as part of the transaction ticket, the unique authentication identifier confirming the association of the transaction ticket with the symbol key such that any subsequent redemption of the transaction ticket requires authentication of the user by expression of the associated symbol key.   
     
     
         56 . A method according to  claim 55 , further comprising storing a representation of the symbol key and the authentication identifier in an anonymous data record in a data store, and referencing the corresponding anonymous data record during a redemption authentication event. 
     
     
         57 . A central authentication system arranged to be operable with a remote transaction information device to generate an anonymous transaction ticket with a bearer redemption functionality, the system comprising:
 a receiver for receiving data in an encrypted format from the remote device, the data including:
 i. user-selected transaction-specific information relating to the transaction; and 
 ii. a symbol key comprising at least one symbol selected by a user from a plurality of symbols; and 
   a decrypting module for decrypting the transaction information and the symbol key;   a generating module for generating a unique authentication identifier corresponding to the received data, the authentication identifier enabling confirmation of the authentication of the transaction ticket and the user with the central server; and   a sending module for sending the unique authentication identifier to the remote device for provision to the user as part of the transaction ticket, the unique authentication identifier confirming the association of the transaction ticket with the symbol key such that any subsequent redemption of the transaction ticket requires authentication of the user by expression of the associated symbol key.   
     
     
         58 . A system according to  claim 57 , further comprising a data store for storing a representation of the symbol key and the authentication identifier in an anonymous data record in the data store, the system being arranged to reference the corresponding anonymous data record during a redemption authentication event. 
     
     
         59 . A combination of a central authentication system according to  claim 57  and a remote transaction information device according to  claim 54 . 
     
     
         60 . A combination of a central authentication system according to  claim 52  and a remote transaction information device according to  claim 15 . 
     
     
         61 . A low-cost mass-produced transaction ticket for use in providing entry into an instantaneous prize event and a longer term event, the transaction ticket comprising:
 a first portion relating to the instantaneous prize event, the portion having a plurality of scratch-off portions for selection and removal in order to take part in the instantaneous prize event;   a second portion relating to a user-selectable symbol key, the portion displaying a plurality of different symbols, each symbol having a corresponding machine enterable data element which is exposed by the removal of the corresponding symbol, and
 a unique serial number; 
   wherein, in use, the second portion enables a symbol key to be selected and linked to the serial number such that the transaction ticket can be securely linked to the user and registered by communication of the user-selected symbol key and the serial number to an authentication system and the symbol key can be used to verify the authenticity of the user in any action regarding the long-term event.   
     
     
         62 . A transaction ticket according to  claim 61 , further comprising a third portion relating to the longer term event, the third portion having a feature enabling selection of a set of longer-term event data. 
     
     
         63 . A transaction ticket according to  claim 62 , wherein the third portion comprises a plurality of scratch-off portions for selection and removal in order to select the set of longer-term event data. 
     
     
         64 . A transaction ticket according to  claim 61 , wherein the plurality of different symbols are provided on an opaque removable film with the corresponding data elements provided underneath the removable film, and the selecting step comprises selectively removing a portion of the film to reveal the corresponding data element. 
     
     
         65 . A transaction ticket according to  claim 64 , wherein the removable film is provided on a removable peel-off layer. 
     
     
         66 . A transaction ticket according to  claim 61 , wherein the plurality of possible symbols comprises a set of images of readily recognisable people, articles or locations. 
     
     
         67 . A transaction ticket according to  claim 61 , wherein the data element comprises a machine-readable indicia, such as a 2D-barcode. 
     
     
         68 . A transaction ticket according to  claim 61 , wherein the longer-term event comprises a long-term financial instrument. 
     
     
         69 . A terminal-generated reminder ticket for use with a method according to  claim 1 , the reminder ticket comprising:
 a first portion providing a set of possible symbols from some of which the symbol key is composed;   a second portion providing a key for number translation onto a blank key pad of a terminal; and   a third portion providing a key for letter translation onto a blank key pad of a terminal, wherein the keys replicate the format of the key pad of the terminal.   
     
     
         70 . A terminal-generated reminder ticket according to  claim 69 , further comprising a fourth portion providing a set of possible user pseudonyms from some of which a user pseudonym is composed. 
     
     
         71 . A device according to  claim 15 , wherein the device comprises a portable mobile telecommunications device such as a mobile phone. 
     
     
         72 . A transaction ticket according to  claim 61 , wherein the instant game comprises a spot-the-ball type of game.

Join the waitlist — get patent alerts

Track US2011281630A1 — get alerts on status changes and closely related new filings.

We store only your email — no account needed. See our privacy policy.