Method and system for identifying and handling critical chip...

Registers – Systems controlled by data bearing records

Reexamination Certificate

Rate now

  [ 0.00 ] – not rated yet Voters 0   Comments 0

Details

C235S378000, C235S379000, C235S380000

Reexamination Certificate

active

06435405

ABSTRACT:

FIELD OF THE INVENTION
The present invention describes a method and a device for identifying and handling critical chip card commands (card commands), which are to be executed on a chip card.
BACKGROUND OF THE INVENTION
Most of the chip card readers available on the market have a simple reader command, by means of which any card commands (APDUs) can be transmitted to the card. The card command is executed in the chip card
16
of
FIG. 1 and a
reply is sent back to the chip card reader
14
. The chip card reader transmits the reply of the chip card to the application
12
.
In many applications, in particular payment applications, it is desirable for the chip card reader to forward certain card commands (i.e., critical card commands) to the chip card for execution only if defined conditions exist. This applies, for example, to applications for the electronic debiting of money by means of a banking chip card. This is not currently possible using ordinary chip card readers, as they do not have this kind of functionality. If the chip card reader is connected for example to a PC, which in turn has a connection to the internet, it is possible for a virus in the PC to use the chip card reader to send any commands to the card and initiate any transactions in the name of the card holder.
Examples of such transactions may be payment instructions or other declarations of intent (e.g., by means of digital signature) in the name of the card holder. However, the requirements of such chip card applications (for example German signature law) demand, with regard to the avoidance of misuse, that the transactions displayed to the user correspond to the transactions actually carried out with the card. Conventional chip card readers cannot satisfy these requirements.
An object of the present invention is therefore to provide a method and a device which identifies certain card commands (so-called critical card commands) and only releases them for execution on the chip card if certain events are present, without the chip card application itself having to or being able to exert influence on this process.
SUMMARY OF THE INVENTION
In accordance with the present invention, the chip card reader preferably contains a comparison device for identifying the critical card commands. Another implementation may consist in the fact that the comparison device is connected, in incoming or outgoing series, to the chip card reader. The comparison device checks the card commands to be executed for critical card commands and ensures that critical card commands are only executed if a user-defined condition, e.g. pressing of the confirmation key, has occurred. Templates with the critical card commands are preferably held for classification in the comparison device (e.g. in an EEPROM module) against which templates each card command to be executed is to be compared.


REFERENCES:
patent: 4910775 (1990-03-01), Yves et al.
patent: 5034596 (1991-07-01), Utsunomiya
patent: 5191611 (1993-03-01), Lang
patent: 5461217 (1995-10-01), Claus
patent: 5770844 (1998-06-01), Henn
patent: 5796831 (1998-08-01), Paradinas et al.
patent: 5811771 (1998-09-01), Dethloff
patent: 6016963 (2000-01-01), Ezawa et al.
patent: 6018724 (2000-01-01), Arent
patent: 6038551 (2000-03-01), Barlow et al.
patent: 6095412 (2000-08-01), Bertina et al.
patent: 6105008 (2000-08-01), Davis et al.

LandOfFree

Say what you really think

Search LandOfFree.com for the USA inventors and patents. Rate them and share your experience with other people.

Rating

Method and system for identifying and handling critical chip... does not yet have a rating. At this time, there are no reviews or comments for this patent.

If you have personal experience with Method and system for identifying and handling critical chip..., we encourage you to share that experience with our LandOfFree.com community. Your opinion is very important and Method and system for identifying and handling critical chip... will most certainly appreciate the feedback.

Rate now

     

Profile ID: LFUS-PAI-O-2968013

  Search
All data on this website is collected from public sources. Our data reflects the most accurate information available at the time of publication.