Method and apparatus for encryption and pass-through handling of confidential information in software applications
Abstract
Methods and apparatus for securely transmitting sensitive information to a remote device at the request of an application program are provided. The application program generates a request to a secure channel provider to make a transmission to a remote device. A first message is passed from the from the application program to the secure channel provider containing insertion point codes indicating locations within the first message where the sensitive information should be inserted. Sensitive information is obtained from a source outside of the application program and the sensitive information is inserted into the first message at the locations in the first message indicated by the insertion point codes to form a second message containing the sensitive information. The second message is encrypted and this encrypted message is transmitted to the remote device. The sensitive information is unaccessed by the application program during the execution of the method.
Claims
exact text as granted — not AI-modifiedWhat is claimed is:
1 . A method of securely transmitting sensitive information to a remote device at the request of an application program, the method comprising:
generating a request, with the application program resident on a data processing device, to a secure channel provider to make a transmission to a remote device that includes the sensitive information; generating a first message for transmittal to the remote device; passing the first message out of the application program and the data processing device; obtaining the sensitive information from a source outside the data processing system; inserting the sensitive information, outside of the data processing device, into the first message at locations indicated by insertion point codes in the first message to form a second message containing the sensitive information; encrypting the second message including the sensitive information to form an encrypted unit; and transmitting the encrypted unit to the remote device, wherein the sensitive information is unaccessed in an unencrypted form by the application program during execution of the method.
2 . The method of claim 1 wherein the sensitive information replaces at least some of the insertion point codes.Join the waitlist — get patent alerts
Track US2013246793A1 — get alerts on status changes and closely related new filings.
We store only your email — no account needed. See our privacy policy.