The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
Sep. 14, 2021

Filed:

Dec. 23, 2019
Applicant:

The Toronto-dominion Bank, Toronto, CA;

Inventors:

Jonathan K. Barnett, Oakville, CA;

Roy D'Souza, Oakville, CA;

John Jong Suk Lee, Waterloo, CA;

Christopher Arthur Holland McAlpine, Toronto, CA;

Aleksandar Roskic, Toronto, CA;

Douglas Edward William Watson, Toronto, CA;

Zheng Xi, Toronto, CA;

Shannon Rose Yeoman, Toronto, CA;

Assignee:
Attorney:
Primary Examiner:
Int. Cl.
CPC ...
H04L 29/06 (2006.01); H04L 9/32 (2006.01); H04L 9/08 (2006.01); G06Q 20/38 (2012.01); G06Q 20/28 (2012.01); G06Q 20/40 (2012.01); H04L 9/14 (2006.01); H04L 9/30 (2006.01);
U.S. Cl.
CPC ...
G06Q 20/3829 (2013.01); G06Q 20/28 (2013.01); G06Q 20/385 (2013.01); G06Q 20/401 (2013.01); H04L 9/0861 (2013.01); H04L 9/14 (2013.01); H04L 9/30 (2013.01); H04L 9/3215 (2013.01); H04L 9/3226 (2013.01); H04L 9/3247 (2013.01); G06Q 2220/00 (2013.01); H04L 2209/56 (2013.01);
Abstract

A server includes a memory and a message processor. The memory stores a data record that includes a credential stored in association with an access restriction indicator, and further includes a cryptographic key. The processor is configured to receive from a network device an access request that includes the credential and a token. The token includes a first data layer and a second data layer that incorporates the first data layer and is encrypted with the cryptographic key. The processor is configured to determine that, prior to the access request, the credential was stored in the data record in association with the access restriction indicator; recover the first data layer from the token by (i) locating the cryptographic key in the data record, and (ii) decrypting the second encrypted data layer with the cryptographic key. The processor is configured to provide the network device with the first data layer.


Find Patent Forward Citations

Loading…