Patent ReferencesCash dispensing system Cryptographic verification of operational keys used in communication networks Security system for electronic funds transfer system Method and apparatus for securing data transmissions End-to-end encryption system and method of operation Patent #: 4423287 InventorAssigneeApplicationNo. 06/558916 filed on 12/07/1983US Classes:705/71, Including key management380/277, KEY MANAGEMENT380/281, Using master key (e.g., key-encrypting-key)380/29, NBS/DES algorithm705/75, Transaction verification705/79, Including a payment switch or gateway902/2Protects transmitted data (e.g., encryption or decryption)ExaminersPrimary: Cangialosi, SalvatoreAssistant: Lewis, Aaron J. Attorney, Agent or FirmInternational ClassesG06Q 40/00 (20060101)G06Q 20/00 (20060101) G07F 7/10 (20060101) AbstractAn efficient end-to-end encryption system including key management procedures for providing secure, financial data communication between a system user at one of a plurality of transaction terminals of one of a plurality of acquirer institutions and one of a plurality of issuer institutions, with selected elements of the data being encrypted, decrypted, and processed using a onetime session key which is similarly encrypted with master keys and efficiently sent along with the specific segments of the request and response messages. A session key authentication code is utilized to prevent the replay of a previously used session key, thereby precluding undetected message replay or undetected message or data element substitution or insertion. | |