WO1997015032A1 - System for the safe authentication and management of registered credit instruments and documents - Google Patents

System for the safe authentication and management of registered credit instruments and documents Download PDF

Info

Publication number
WO1997015032A1
WO1997015032A1 PCT/EP1995/005015 EP9505015W WO9715032A1 WO 1997015032 A1 WO1997015032 A1 WO 1997015032A1 EP 9505015 W EP9505015 W EP 9505015W WO 9715032 A1 WO9715032 A1 WO 9715032A1
Authority
WO
WIPO (PCT)
Prior art keywords
documents
holder
document
instruments
credit
Prior art date
Application number
PCT/EP1995/005015
Other languages
French (fr)
Inventor
Ferdinando Antonio Bozzo
Original Assignee
Prima Officina Carte Valori Turati Lombardi E C. S.P.A.
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Prima Officina Carte Valori Turati Lombardi E C. S.P.A. filed Critical Prima Officina Carte Valori Turati Lombardi E C. S.P.A.
Priority to BR9510650-2A priority Critical patent/BR9510650A/en
Priority to AU43052/96A priority patent/AU4305296A/en
Priority to EP95941724A priority patent/EP0855070A1/en
Publication of WO1997015032A1 publication Critical patent/WO1997015032A1/en

Links

Classifications

    • GPHYSICS
    • G07CHECKING-DEVICES
    • G07FCOIN-FREED OR LIKE APPARATUS
    • G07F7/00Mechanisms actuated by objects other than coins to free or to actuate vending, hiring, coin or paper currency dispensing or refunding apparatus
    • G07F7/08Mechanisms actuated by objects other than coins to free or to actuate vending, hiring, coin or paper currency dispensing or refunding apparatus by coded identity card or credit card or other personal identification means
    • G07F7/10Mechanisms actuated by objects other than coins to free or to actuate vending, hiring, coin or paper currency dispensing or refunding apparatus by coded identity card or credit card or other personal identification means together with a coded signal, e.g. in the form of personal identification information, like personal identification number [PIN] or biometric data
    • G07F7/1008Active credit-cards provided with means to personalise their use, e.g. with PIN-introduction/comparison system
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06QINFORMATION AND COMMUNICATION TECHNOLOGY [ICT] SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES; SYSTEMS OR METHODS SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES, NOT OTHERWISE PROVIDED FOR
    • G06Q20/00Payment architectures, schemes or protocols
    • G06Q20/30Payment architectures, schemes or protocols characterised by the use of specific devices or networks
    • G06Q20/34Payment architectures, schemes or protocols characterised by the use of specific devices or networks using cards, e.g. integrated circuit [IC] cards or magnetic cards
    • G06Q20/341Active cards, i.e. cards including their own processing means, e.g. including an IC or chip
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06QINFORMATION AND COMMUNICATION TECHNOLOGY [ICT] SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES; SYSTEMS OR METHODS SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES, NOT OTHERWISE PROVIDED FOR
    • G06Q20/00Payment architectures, schemes or protocols
    • G06Q20/38Payment protocols; Details thereof
    • G06Q20/40Authorisation, e.g. identification of payer or payee, verification of customer or shop credentials; Review and approval of payers, e.g. check credit lines or negative lists
    • G06Q20/401Transaction verification
    • G06Q20/4014Identity check for transactions
    • G06Q20/40145Biometric identity checks
    • GPHYSICS
    • G07CHECKING-DEVICES
    • G07CTIME OR ATTENDANCE REGISTERS; REGISTERING OR INDICATING THE WORKING OF MACHINES; GENERATING RANDOM NUMBERS; VOTING OR LOTTERY APPARATUS; ARRANGEMENTS, SYSTEMS OR APPARATUS FOR CHECKING NOT PROVIDED FOR ELSEWHERE
    • G07C9/00Individual registration on entry or exit
    • G07C9/20Individual registration on entry or exit involving the use of a pass
    • G07C9/22Individual registration on entry or exit involving the use of a pass in combination with an identity check of the pass holder
    • G07C9/25Individual registration on entry or exit involving the use of a pass in combination with an identity check of the pass holder using biometric data, e.g. fingerprints, iris scans or voice recognition
    • G07C9/257Individual registration on entry or exit involving the use of a pass in combination with an identity check of the pass holder using biometric data, e.g. fingerprints, iris scans or voice recognition electronically

Definitions

  • This invention relates to a system for the safe authentication and management of registered credit instruments and documents. More particularly, this invention relates to a system suitable to identify with the utmost certainty the possessory title of a document which is univocally associated to the legitimate holder on the basis of a personalized card.
  • this invention relates to the apparatuses for issuing the personalized card and the document and for the validation of the latter, with the ascertainment of its authenticity on its utilization.
  • the same system of authentication and management may be utilized for any other credit instruments, such as cheques, share certificates, certificates of indebtedness, savings books and the like, as well as personal documents o r Dersonal identification documents, of the kind, for instance, of credit cards, passports, identity ca rds and driving licences.
  • the payment is through credit instruments, for instance bank cheques or bank drafts, relatively to which special cautions are adopted, to try to avoid their forgery or stealing and their illicit utilization.
  • Another form of payment is based on the use of credit cards, which authorize the holder to purchase goods or services with third parties having an arrangement with the issuer of said cards, to which the charge of the payment is transferred.
  • a personalized card integrating a microprocessor wherein a personal code and information are stored deriving from the application of a mathematical expression to the parameters referred to the fingerprint of at least 3 finger of the holder of the same card: based on such document, a credit instrument is issued, which can be associated only to the holder, and which may be, by way of example, a cheque for a given sum, validable with businesses that have stipulated an agreement with the issuer, on the conclusion of the commercial transaction.
  • said credit instrument provides guarantees of utmost security, as it cannot be utilized by a person other than the holder, and also the person who receives the payment has the utmost guarantees, as there is the certainty of the authenticity of the the instrument, substantially assimilable to cash.
  • Object of this invention is therefore to provide a system for the authentication and management of registered credit instruments and documents, such as to provide the utmost security quarantees, causing them to be utilizable only by the holder to whom they have been legitimately issued.
  • a further object of this invention is to provide said credit instruments associated to the economic transaction o r said registered documents o r identity documents with a security print indissolubly associated to the paper support forming said instrument o r document.
  • a further object of this invention is to realize simple apparatuses for carrying out the different stages of the system which allows to implement the above defined system.
  • a personalized document incorporating a microprocessor suitable to store a personal identification code of the holder and a numeric information associated to biometric characteristics of the same holder;
  • said issued instruments and documents comprising at least a security code univocally generated by utilizing the personal identification code as a cryptographic key
  • said information being associated to a mathematical expression of the data concerning the fingerprint of at least one live finger of the holder of said personalized instrument or document;
  • the recognition of the holder both for the issue of the instrument or document and for the related validation, being obtained by comparing the information got through the direct reading of the live finger of the holder and the application of the mathematical expression with the information stored in the personalized documents.
  • Fig. 1 shows the block diagram of the issue stage of the personalized card
  • Fig. 2 shows the block diagram of the issue stage of the credit instrument, based on said personalized card
  • Fig. 3 shows the block diagram of the validation stage of the credit instrument associated to the personalized card.
  • the system for the safe authentication and management of registered credit instruments and documents subject matter of this invention comprises basically a personalized document 10 and a paper support forming the credit instrument 12.
  • the personalized document or smartcard 10 formed, by way of example, by a card having dimensions similar to those of the conventional credit cards, incorporates a microprocessor wherein there are stored a personal identification code CIP and a mathematical expression associated to at least one fingerprint of the pe rson who requires of the issuing institution, for instance a bank, said card 10, to utilize the system subject matter of this invention referred to a credit instrument to perform commercial transactions.
  • the personal identification code CIP for instance in the form of an alphanumerical sequence univocally associated to each holder, is generated by the information system of the issuer SI and sent to the apparatus for the personalization of card 10, of which more will be said in the following.
  • the mathematical expression stored in the microprocessor of card 10 is advantageously formed by an algorithm of the DES type (Data Encryption Standard), which allows to transcode the parameters associated to the fingerprint of one o r more fingers of the applicant, forming therefore a unique feature of the same.
  • microprocessor of card 10 there are also stored, according to a preferred non critical embodiment, particulars and tax number of the applicant, as well as the current account number, complete with the bank co-ordinates, for the domiciliation of the credit instruments to be issued and negotiated.
  • the credit instrument 12 which is the means for the execution of the economic transaction through the system subject matter of this invention, is formed by a support, preferably from paper, whose scheme is shown in Figs, 2 and 3, shaped, by way of example, like bank cheques o r drafts; anyhow, said support may also be of diffent size, as the system of this invention concerns in general all of the credit instruments, is for instance savings books, share and deposit certificates, besides the mentioned personal documents or personal identification documents.
  • said support has the configuration of a conventional cheque, for instance from watermarked paper, which is authenticated on the basis of the data previously stored in the microprocessor of card 10.
  • a dot coding (not interpretable at sight) is provided, along a prefixed field, on the paper support forming the credit instrument. 12, which coding defines, for instance, the issuing date, the code of the issuing institution and the amount of said instrument.
  • the same data are also formed along a distinct field, expressed in cryptographic form through a key made up by the aforementioned personal identification code stored in card 10.
  • the support forming the credit instrument or security 12 is provided with a security print 14, of any shape and size, made up by two o r more zones with different light reflection; said zones are formed by an alternation of embossed and hollow sectors, circumscribed by approached lines differently oriented by groups relatively to one another. Impression 14 as a whole is obtained in reflecting or metallic ink, through offset and dry copperplate printing processes.
  • a credit instrument for the implementation of the system of this invention, by way of example and not critically referred to a credit instrument to carry out commercial transactions, specific apparatuses a re supplied, some of which have already been mentioned; there are , in particular, a first apparatus allowing to issue the personalized document, in the following referred to as card, and a second apparatus which, against the rocognition of the applicant through the parameters stored in the microprocessor of said card, allows to issue the credit instrument and to authenticate it univocally.
  • a third apparatus validates the instrument on its utilization, by means of a triangulation.
  • the first apparatus shown as a scheme in Fig. 1, allows to realize the starting stage of the system of this invention, issuing the document o r personalized card 10.
  • Said apparatus comprises a personal computer 16, connected to the information system SI of the issuing institution, for instance a bank, through a communication line 18; the information system SI checks, through the connection with the anagraphical file and current accounts file of the institution or body issuing card 10, the existence of the corresponding data (particulars and proprietors title of the applicant) relative to the person requiring said c ar d .
  • the apparatus comprises also a reader/encoder 20 of card 10 to be personalized, an a biometric identity sensor 22.
  • the reader/encoder 20 connected to the personal computer 16 and consequently to the information system Sl through line 18, receives from the latter the personal identification code CIP; the biometric sensor 22, connected to or integrated in the reader-encoder 20, senses and transcodes the Print or fingerprints of the applicant, who puts the finger or fingers in sequence on a special seat 24 obtained on the same sensor 22.
  • the latter is obviously provided with one or more openings (not shown) for the introduction and coming out of card 10 to be personalized.
  • the apparatus schematically shown in Fig. 2, which realizes the second stage of the system subject matter of this invention issuing the credit, instrument 12 based on the data of card 10, is substantially formed by the same components as the preceding apparatus, with the addition of a printer.
  • said apparatus comprises a personal computer 26 connected to theinformation system SI of the issuing institution through a communication line 28 and a software programme SW3, a reader 30 of the personalized smart-card 10, an identity reader or biometric sensor 32 having a seat 31 where the applicant puts the finger o r fingers, and a printer 36, preferably an ink jet printer with graphic printing modalities.
  • Said printer prints in cryptographied form, on the paper support forming the credit instrument 12 which is inserted in it, a security code formed on the basis of the data existing on card 10, authenticating said instrument.
  • Printer 36 is provided with a conventional opening(s) (not shown) for the introduction and coming out of the credit instrument 12 to be authenticated.
  • a third apparatus is provided, schematically shown in Fig. 3 analogous to the preceding one and provided with further functions, being utilized in the last stage on the utilization and validation of the credit instrument 12.
  • Said apparatus comprises a personal computer 40 connected to the information system SI of the issuing institution through a communication line 42 and a software programme SWC, a reader 14 of smart-card 10, a biometric identity sensor with a scat 50 where the applicant put the finger or fingers, and a printer 48.
  • the latter is. provided with a device which provides to the possible invalidation of the negotiated instrument 12.
  • the biometriec sensor comprised in all the above described apparatuses, is substantially made up by a terminal controlled by an built-in microprocessor specialized for the check of the identity based on the biometric ⁇ l data of the fingers and the technology of the card. Both the built-in application and the data reside in an internal PAM permanently fed by a lithium battery; the security is ensured by a built-in microprocessor and by a built-in tamper proof security microprocessor, with secrete keys, independent and unalterable, for the DCS crypto- graphy, permanently fed by the lithium battery.
  • the first stage is associated with the issue of card 10, which has preferably a temporary validity; through the apparatus schematically shown in Fig. 1, card 10 to be personalized is introduced, through a special slit (not shown), in the reader/encoder 20.
  • the connection is made with the information system SI of the issuing institution through the communication line 18, to record the issuing operation of card 10 and to receive from the same system the personal identification code CIP of the client .
  • Said code is stored in the microprcessor of card 10 by the reader-encoder 20 in a protested manner, preferably in the form of an alphanumerical sequance.
  • the applicant puts the finger on seat 24 of the biometric sensor 22; the print, or possibly several prints, corresponding to as many fingers, are stored in the microprocessor of card 10 in transcoded and protected form with the personal identification code CIP.
  • further indications are preferably stored in card 10, such as, for instance, the expiry date of the same card and the particulars of the client o r other data.
  • card 10 is univocally personalized and allows to start the second stage which, through the apparatus schematically shown in Fig. 2, causes the issuing of the credit instrument or document 12, introduced in printer 36.
  • the mentioned security print 14 in metallic or reflecting ink is already present on the paper support forming said instrument.
  • a security code is printed, for instance of the known type PDF 417, subdivided into two parts that are not interpretable at sight; the first part of said code includes all the data relating to the release of the instrument (for instance, data and place of issue, institution and branch, document number, etc.), while the second part of the code comprises the same data as the first one, expressed in cryptographied form by means of the key formed by the personal identification code CIP, which can be univocally associated as such to the person requiring the credit instrument 12.
  • the applicant puts the finger in correspondence of seat 34 of the biometric sensor 32 for the validation of his own print against the one stored in protected form in card 10 and sensed by reader 30.
  • Reader 30 autonomously provides to reading the data of card 10 through the mathematical expression or algorithn and the personal identification code CIP of the applicant: such code is therefore utilized as a cryptographic key to generate the security code which printer 36 prints on the paper support forming the credit instrument or security o r document 12. Also in this case, the details of the transaction are recorded through the communication line 20 in the information system SI of the issuing institution.
  • the third apparatus will be installed in the same institutions o r with a branch.
  • the owner of the personalized instrument 12 introduces preliminarily in reader 44 of said apparatus his card 10 and at the same time or immediately after, outs his finger on seat 50 of the biometric sensor 46, for the validation of his print against the one stored in protected form in the microprocessor of the same card.
  • reader 44 reads on card 10 the personal identification code CIP of the owner of instrument 12, which is adopted as a key to check the consistency between the two parts of the security code, utilizing the same mathematical expression of cryptography used on the issue of said instrument.
  • the operations concerning the issue stage of card 10 with the intervention of the first apparatus may comprise also the issue of a further card for a co-holder whose particulars a re obtained with the same modalities described above.
  • the same apparatus issuing the card may provide also to the renewal of the same, with the updating of the particulars on the client and/or the issue of a new personalized document.
  • the system for the authen- tication and management of registered credit instruments and documents subject matter of this invention provides guarantees of utmost security; in fact, the issued instruments can be exacted only by the legitimate holder based on a precise and univocal check.
  • the apparatus for the issue of the registered credit instrument or document and the apparatus for the related validation, and possibly also the first apparatus providing to issuing the personalized card might be incorporated in only apparatus; in the same way, the card reader and the biometric sensor comprised in the second and the third apparatus might be incorporated in one only station.

Abstract

System for the safe authentication and management of registered credit instruments or documents comprising: a personalized document (10) provided with a microprocessor to store an identification code CIP of the holder and information on biometric characteristics of the same; means for releasing said document (10) to the holder; means for issuing registered credit instruments (12) or documents; means for validating the credit instruments (12), all of said means being provided with a device for acquiring at least one biometric characteristic of the holder; said credit instruments (12) comprising at least a security code univocally generated by utilizing the personal identification code CIP as a cryptographic key; said information being associated to a mathematical expression of the data of the fingerprint of at least a finger of the holder of said document (10); the recognition for the issue of the credit instrument (12) and the validation being obtained by comparing the information got by direct reading of the finger of the holder and the application of the mathematical expression with the one stored in the document (10).

Description

SYSTEM FOR THE SAFE AUTHENTICATION AND MANAGEMENT OF REGISTERED CREDIT INSTRUMENTS AND DOCUMENTS
This invention relates to a system for the safe authentication and management of registered credit instruments and documents. More particularly, this invention relates to a system suitable to identify with the utmost certainty the possessory title of a document which is univocally associated to the legitimate holder on the basis of a personalized card.
Besides, this invention relates to the apparatuses for issuing the personalized card and the document and for the validation of the latter, with the ascertainment of its authenticity on its utilization.
Connering registered documents, special reference is made to a specific credit instrument utilizable for commercial transactions which are executed with the utmost security, as the possibility of an illicit use of said instrument by third parties - due to loss or stealing - is excluded.
Anyhow, the same system of authentication and management may be utilized for any other credit instruments, such as cheques, share certificates, certificates of indebtedness, savings books and the like, as well as personal documents o r Dersonal identification documents, of the kind, for instance, of credit cards, passports, identity ca rds and driving licences.
Several methods a re known for the execution of the commercial transactions that involve the transfer of money between persons. Many transactions take place without any material transfer of currency, for instance through a bank which sees directly, upon request by the concerned person, to crediting the indicated person with a given sum.
In other cases, the payment is through credit instruments, for instance bank cheques or bank drafts, relatively to which special cautions are adopted, to try to avoid their forgery or stealing and their illicit utilization.
Another form of payment is based on the use of credit cards, which authorize the holder to purchase goods or services with third parties having an arrangement with the issuer of said cards, to which the charge of the payment is transferred.
But also this form of payment is not tree from risks, as the credit card may get lost or be stealed and unlawfully utilized, even though temporarily, by non authorized third parties.
The aforementioned payment forms, widely adopted, allow to limit the supply of cash, which however is still the more practical and direct and sometimes compulsory system to execute commercial transactions whose amount is not always small, Obviously the possession of cash gives rise to fairly serious security problems; in fact, stealed or lost currency be easily used by anyone, generally without problems, as not even the guarantees exist that safeguard somehow or other the circulation of cheques and credit cards.
With an earlier patent application, the same applicant has intended to protect a system for commercial transactions suitable to obviate the aforementioned drawbacks, providing for the use of a personalized card integrating a microprocessor wherein a personal code and information are stored deriving from the application of a mathematical expression to the parameters referred to the fingerprint of at least 3 finger of the holder of the same card: based on such document, a credit instrument is issued, which can be associated only to the holder, and which may be, by way of example, a cheque for a given sum, validable with businesses that have stipulated an agreement with the issuer, on the conclusion of the commercial transaction. Thanks to the provision of the personal code and especially the tran- scoding of the fingerprint integrated in the card, said credit instrument provides guarantees of utmost security, as it cannot be utilized by a person other than the holder, and also the person who receives the payment has the utmost guarantees, as there is the certainty of the authenticity of the the instrument, substantially assimilable to cash.
It has been stressed that this system is susceptible of modifications which can furtherly improve its already high level of global security, allowing at the same time to create simple apparatuses for the validation of the oredit instrument or securities whose circulation is limited, by way of example, within the frame of this invention, to banks.
Object of this invention is therefore to provide a system for the authentication and management of registered credit instruments and documents, such as to provide the utmost security quarantees, causing them to be utilizable only by the holder to whom they have been legitimately issued.
A further object of this invention is to provide said credit instruments associated to the economic transaction o r said registered documents o r identity documents with a security print indissolubly associated to the paper support forming said instrument o r document.
A further object of this invention is to realize simple apparatuses for carrying out the different stages of the system which allows to implement the above defined system.
These and still further objects are reached by the system for the safe authetication and management of registered credit instruments and documents subject matter of this invention, compri s i ng :
- a personalized document incorporating a microprocessor suitable to store a personal identification code of the holder and a numeric information associated to biometric characteristics of the same holder;
- first means for releasing said personalized document to the holder;
second means for issuing registered credit instruments or documents; and
- third means to validate the use of the instruments or documents, all of said means being associated to an information system and provided with a device allowing to acquire at least a biometric characteristic of the holder ;
said issued instruments and documents comprising at least a security code univocally generated by utilizing the personal identification code as a cryptographic key;
said information being associated to a mathematical expression of the data concerning the fingerprint of at least one live finger of the holder of said personalized instrument or document;
the recognition of the holder, both for the issue of the instrument or document and for the related validation, being obtained by comparing the information got through the direct reading of the live finger of the holder and the application of the mathematical expression with the information stored in the personalized documents.
The characteristics of the system for the safe authentication and management of registered credit instruments and documents subject matter of this invention will be better understood from the following description, wherein reference is made to the attached drawings which show schematically a preferred non limitative embodiment of the same system, referred by way of example to a credit instrument, and wherein:
Fig. 1 shows the block diagram of the issue stage of the personalized card;
Fig. 2 shows the block diagram of the issue stage of the credit instrument, based on said personalized card;
Fig. 3 shows the block diagram of the validation stage of the credit instrument associated to the personalized card.
With reference to the aforementioned figures, the system for the safe authentication and management of registered credit instruments and documents subject matter of this invention comprises basically a personalized document 10 and a paper support forming the credit instrument 12. The personalized document or smartcard 10, formed, by way of example, by a card having dimensions similar to those of the conventional credit cards, incorporates a microprocessor wherein there are stored a personal identification code CIP and a mathematical expression associated to at least one fingerprint of the pe rson who requires of the issuing institution, for instance a bank, said card 10, to utilize the system subject matter of this invention referred to a credit instrument to perform commercial transactions. The personal identification code CIP, for instance in the form of an alphanumerical sequence univocally associated to each holder, is generated by the information system of the issuer SI and sent to the apparatus for the personalization of card 10, of which more will be said in the following. The mathematical expression stored in the microprocessor of card 10 is advantageously formed by an algorithm of the DES type (Data Encryption Standard), which allows to transcode the parameters associated to the fingerprint of one o r more fingers of the applicant, forming therefore a unique feature of the same.
In the microprocessor of card 10 there are also stored, according to a preferred non critical embodiment, particulars and tax number of the applicant, as well as the current account number, complete with the bank co-ordinates, for the domiciliation of the credit instruments to be issued and negotiated.
The credit instrument 12, which is the means for the execution of the economic transaction through the system subject matter of this invention, is formed by a support, preferably from paper, whose scheme is shown in Figs, 2 and 3, shaped, by way of example, like bank cheques o r drafts; anyhow, said support may also be of diffent size, as the system of this invention concerns in general all of the credit instruments, is for instance savings books, share and deposit certificates, besides the mentioned personal documents or personal identification documents. According to a preferred embodiment, said support has the configuration of a conventional cheque, for instance from watermarked paper, which is authenticated on the basis of the data previously stored in the microprocessor of card 10. In particular , through an apparatus of which more will be said in the following, a dot coding (not interpretable at sight) is provided, along a prefixed field, on the paper support forming the credit instrument. 12, which coding defines, for instance, the issuing date, the code of the issuing institution and the amount of said instrument. The same data are also formed along a distinct field, expressed in cryptographic form through a key made up by the aforementioned personal identification code stored in card 10.
According to a further characteristic of the invention, the support forming the credit instrument or security 12 is provided with a security print 14, of any shape and size, made up by two o r more zones with different light reflection; said zones are formed by an alternation of embossed and hollow sectors, circumscribed by approached lines differently oriented by groups relatively to one another. Impression 14 as a whole is obtained in reflecting or metallic ink, through offset and dry copperplate printing processes. The characteristics of the mentioned security print with which the support forming the credit instrument 12 is advantageously provided a re not described in detail , being the subject matter of an autonomous patent application registered in Italy by the same applicant.
for the implementation of the system of this invention, by way of example and not critically referred to a credit instrument to carry out commercial transactions, specific apparatuses a re supplied, some of which have already been mentioned; there are , in particular, a first apparatus allowing to issue the personalized document, in the following referred to as card, and a second apparatus which, against the rocognition of the applicant through the parameters stored in the microprocessor of said card, allows to issue the credit instrument and to authenticate it univocally. A third apparatus, described in detail later on, validates the instrument on its utilization, by means of a triangulation.
The first apparatus, shown as a scheme in Fig. 1, allows to realize the starting stage of the system of this invention, issuing the document o r personalized card 10. Said apparatus comprises a personal computer 16, connected to the information system SI of the issuing institution, for instance a bank, through a communication line 18; the information system SI checks, through the connection with the anagraphical file and current accounts file of the institution or body issuing card 10, the existence of the corresponding data (particulars and proprietors title of the applicant) relative to the person requiring said c ar d . The apparatus comprises also a reader/encoder 20 of card 10 to be personalized, an a biometric identity sensor 22. The reader/encoder 20, connected to the personal computer 16 and consequently to the information system Sl through line 18, receives from the latter the personal identification code CIP; the biometric sensor 22, connected to or integrated in the reader-encoder 20, senses and transcodes the Print or fingerprints of the applicant, who puts the finger or fingers in sequence on a special seat 24 obtained on the same sensor 22. The latter is obviously provided with one or more openings (not shown) for the introduction and coming out of card 10 to be personalized.
The apparatus schematically shown in Fig. 2, which realizes the second stage of the system subject matter of this invention issuing the credit, instrument 12 based on the data of card 10, is substantially formed by the same components as the preceding apparatus, with the addition of a printer. In detail, said apparatus comprises a personal computer 26 connected to theinformation system SI of the issuing institution through a communication line 28 and a software programme SW3, a reader 30 of the personalized smart-card 10, an identity reader or biometric sensor 32 having a seat 31 where the applicant puts the finger o r fingers, and a printer 36, preferably an ink jet printer with graphic printing modalities. Said printer prints in cryptographied form, on the paper support forming the credit instrument 12 which is inserted in it, a security code formed on the basis of the data existing on card 10, authenticating said instrument. Printer 36 is provided with a conventional opening(s) (not shown) for the introduction and coming out of the credit instrument 12 to be authenticated.
For the implementation of the system subject matter of this invention a third apparatus is provided, schematically shown in Fig. 3 analogous to the preceding one and provided with further functions, being utilized in the last stage on the utilization and validation of the credit instrument 12. Said apparatus comprises a personal computer 40 connected to the information system SI of the issuing institution through a communication line 42 and a software programme SWC, a reader 14 of smart-card 10, a biometric identity sensor with a scat 50 where the applicant put the finger or fingers, and a printer 48. The latter is. provided with a device which provides to the possible invalidation of the negotiated instrument 12.
The biometriec sensor , comprised in all the above described apparatuses, is substantially made up by a terminal controlled by an built-in microprocessor specialized for the check of the identity based on the biometricαl data of the fingers and the technology of the card. Both the built-in application and the data reside in an internal PAM permanently fed by a lithium battery; the security is ensured by a built-in microprocessor and by a built-in tamper proof security microprocessor, with secrete keys, independent and unalterable, for the DCS crypto- graphy, permanently fed by the lithium battery.
The system for the safe authentication and management of registered credit instruments and documents subject matter of this invention is articulated, as concerns the development of the operations, according to the following modalities. Distinction is made, as specified above, between three different operating stages:
- issuing of the personalized smart-card 10:
- issuing of the instrument, o r security 12 with security apposition;
- treatment of instrument 12 with authentication of the holder. The first stage is associated with the issue of card 10, which has preferably a temporary validity; through the apparatus schematically shown in Fig. 1, card 10 to be personalized is introduced, through a special slit (not shown), in the reader/encoder 20. Now, the connection is made with the information system SI of the issuing institution through the communication line 18, to record the issuing operation of card 10 and to receive from the same system the personal identification code CIP of the client . Said code is stored in the microprcessor of card 10 by the reader-encoder 20 in a protested manner, preferably in the form of an alphanumerical sequance. At the same time, the applicant puts the finger on seat 24 of the biometric sensor 22; the print, or possibly several prints, corresponding to as many fingers, are stored in the microprocessor of card 10 in transcoded and protected form with the personal identification code CIP. During this stage, performed by the biometric sensor 22, further indications are preferably stored in card 10, such as, for instance, the expiry date of the same card and the particulars of the client o r other data.
Following this operation, card 10 is univocally personalized and allows to start the second stage which, through the apparatus schematically shown in Fig. 2, causes the issuing of the credit instrument or document 12, introduced in printer 36. The mentioned security print 14 in metallic or reflecting ink is already present on the paper support forming said instrument. During this issuing stage, through printer 36 a security code is printed, for instance of the known type PDF 417, subdivided into two parts that are not interpretable at sight; the first part of said code includes all the data relating to the release of the instrument (for instance, data and place of issue, institution and branch, document number, etc.), while the second part of the code comprises the same data as the first one, expressed in cryptographied form by means of the key formed by the personal identification code CIP, which can be univocally associated as such to the person requiring the credit instrument 12. The applicant puts the finger in correspondence of seat 34 of the biometric sensor 32 for the validation of his own print against the one stored in protected form in card 10 and sensed by reader 30. Reader 30 autonomously provides to reading the data of card 10 through the mathematical expression or algorithn and the personal identification code CIP of the applicant: such code is therefore utilized as a cryptographic key to generate the security code which printer 36 prints on the paper support forming the credit instrument or security o r document 12. Also in this case, the details of the transaction are recorded through the communication line 20 in the information system SI of the issuing institution.
Now the applicant has a univocally personalized credit instrument 12, which he can use in case of need giving his card, also personalised, to the personnel who performs the treatment and authentication of the same instrument through the third apparatus schematically shown in Fig. 3.
Supposing that the system subject matter of this invention be limited to the credit institutions where the two first apparatu ses a re installed, also the third apparatus will be installed in the same institutions o r with a branch. The owner of the personalized instrument 12 introduces preliminarily in reader 44 of said apparatus his card 10 and at the same time or immediately after, outs his finger on seat 50 of the biometric sensor 46, for the validation of his print against the one stored in protected form in the microprocessor of the same card. In case of positive recognition, reader 44 reads on card 10 the personal identification code CIP of the owner of instrument 12, which is adopted as a key to check the consistency between the two parts of the security code, utilizing the same mathematical expression of cryptography used on the issue of said instrument. The poritive recognition, based on the univocal aspect of the fingerprint, with the contextual activation of the other two elements, confings the validity of document 12, exluding any illicit utilization of the same, Now printer 48 can provide to the invalidation of instrument 12, while the personnel of the branch assigns the sum of money corresponding to the value of said instrument, or validates the authentication of the person. The invalidation stage of the credit instrument is made by printing on the paper support forming the same instrument a writing, for instance "negotiated" or "paid" through said printer 48. Through the communication line 42, connected to the information system SI, also this ending stage of the transaction is recorded.
One should anticipate that the operations concerning the issue stage of card 10 with the intervention of the first apparatus may comprise also the issue of a further card for a co-holder whose particulars a re obtained with the same modalities described above. One should also anticipate that the same apparatus issuing the card may provide also to the renewal of the same, with the updating of the particulars on the client and/or the issue of a new personalized document.
As can be understood from the above, the system for the authen- tication and management of registered credit instruments and documents subject matter of this invention provides guarantees of utmost security; in fact, the issued instruments can be exacted only by the legitimate holder based on a precise and univocal check.
The advantages of said system, which, as described above, may be adopted to prevent the risk connected to the circulation of any registered credit instrument or document, are especially evident if said instrument attributes the holder the ready availability of a given amount of money; in fact, the same holder can readily cash the corresponding sum with any body having entered an agreement with the issuer, disposing therefore of cash in hand, without running any risk.
Even in the unlikely hypothesis of a contemporaneous loss or stealing of the personalized credit instrument and the card, the money cannot be cashed by third parties as on the check made before paying, there would be no correspondence between the fingerprint of the holder and the one stored in the card microprocessor.
Anyhow the invention, as described hereabove and claimed hereafter, has been proposed by way of example, being obvious that the same may be susceptible of many changes and variants, all of them falling however withing the invention concept.
For instance, the apparatus for the issue of the registered credit instrument or document and the apparatus for the related validation, and possibly also the first apparatus providing to issuing the personalized card, might be incorporated in only apparatus; in the same way, the card reader and the biometric sensor comprised in the second and the third apparatus might be incorporated in one only station.
Lastly, while the system has been proposed by way of example for a realization within the bank ciruit, further possibilities are not to be excluded in this regard; in fact, the basic need of having several places available for the fruition of the system may be satisfied by different bodies for instance Post Offices, Communes or local administrations in general.

Claims

1 A system for the safe authentication and management of registered credit instruments and documents, comprising:
- a personalized document (10) incorporating a microprocessor suitable to store a personal identification code CIP of the holder and a numeric information associated to biometric characteristics of the same holder;
- first means for issuing said personalized document (10) to the holder;
- second means for issuing registered credit instruments (12) or documents; and
- third means for validating the use of the registered instruments (12) or documents, all of said means being either associated or not associated to an information system SI and provided with a device for acquiring at least one biometric cha rac t e r i stic of the holder;
said r roistered instruments (12) or documents issued comprising at least a security code univocally generated utilizing the personal identification code CIP as a cryptographic key;
said information being associated to a mathematical expression or algorithm of the data related to the fingerprint of at least a live finger of the holder of said personalized document (10); the recognition of the holder, both for the issue of the registered instrument or document and for the related validation, being obtained by comparing the information got through the direct reading of the finger of the holder and the application of the mathematical expression with the one stored in the personalized document (10).
2. The system according to claim 1, characterized in that said mathematical expression is formed by an algorithm of the DES type .
3. The system according to claims 1 and 2, characterized in that said means for the release of the personalized document (10) comprise a personal computer (16) connected to a reader/encoder (20) for storing in protected form in the microprocessor of the document (10) said personal identification code CIP of the holder supplied by the information system SI of the issuing institution through a communication line (18), and a biometric sensor (22) for storing in transcoded form in the same microprocessor, to form said numeric information or algorith, at least a finger print of the holder, who puts the finger in correspondence of a set (24) of said sensor.
4. The system according to claims 1 and 2, characterized in that said means for issuing credit instruments or documents (12) comprise a personal computer (26) connected to the information system of the issuing institution through a communication line (28), a reader ( 30 ) of the personalired document (10), a biometric sensor (32) and a printer (36) provided with graphic modality for printing on said credit instruments (12) a security code not interpretable at sight, generated by said personal identification code CIP, utilized as a cryptographic key and sensed by sensor (32) in case of positive recognition following the comparison between the fingerprint of the holder, who puts the live finger on a seat (34) of said sensor, and the one stored in protected form, forming the numeric information, in the microprcessor of the document (10).
5. The system according to one or more of the preceding claims, characterized in that said means for validating the use of the credit, instruments o r documents (12) comprise a personal computer (401 connected to the information system SI of the issuing institution through a communication line (42), a reader of the personalized document (10), a biometric sensor (46) and a printer (48) provided with graphic modality for invalidating said credit instruments (12) in case of positive recognition following the comparison between the print of the holder, who puts the live finger on a seat (50) of the same sensor, and the one stored in protected form, forming the numeric information, in the microprocessor of the document (10).
6 . The system according to one or more of the preceding claims, chararterized in that said credit instruments or documents (12) are made up by a paper support on which there is obtained a security print (14) in reflecting o r me t a l l i c ink , havi ng two o r mo re zone s w i t h d i f f e re n t l i gh t reflection, said zones being formed by alternating embossed or hollow sectors, circumscribed by approached lines differently oriented by groups relatively to one another.
7 The system according to one o r more of the preceding claims, charactericed in that said means for the release of the personalized document (10) the issue of registered credit instruments or documents (12) and the validation to the use of the same registered instruments or documents are independent on or integrated in one o r more apparatuses.
8. The system according to one or more of the preceding claims, characterized in that said means for the release of the personalized document (10), the issue of registered credit instruments or documents (12) and the validation of the same registered credit instruments o r documents are combined with one another depending on the card (10), the same registered credit instruments or documents (12) and/or the related paper support.
PCT/EP1995/005015 1995-10-13 1995-12-18 System for the safe authentication and management of registered credit instruments and documents WO1997015032A1 (en)

Priority Applications (3)

Application Number Priority Date Filing Date Title
BR9510650-2A BR9510650A (en) 1995-10-13 1995-12-18 System for secure authentication and management of registered credit instruments and documents
AU43052/96A AU4305296A (en) 1995-10-13 1995-12-18 System for the safe authentication and management of registered credit instruments and documents
EP95941724A EP0855070A1 (en) 1995-10-13 1995-12-18 System for the safe authentication and management of registered credit instruments and documents

Applications Claiming Priority (2)

Application Number Priority Date Filing Date Title
IT95MI002105A IT1277257B1 (en) 1995-10-13 1995-10-13 SYSTEM FOR THE SECURITY AUTHENTICATION AND MANAGEMENT OF SECURITIES AND NAME DOCUMENTS
ITMI95A002105 1995-10-13

Publications (1)

Publication Number Publication Date
WO1997015032A1 true WO1997015032A1 (en) 1997-04-24

Family

ID=11372360

Family Applications (1)

Application Number Title Priority Date Filing Date
PCT/EP1995/005015 WO1997015032A1 (en) 1995-10-13 1995-12-18 System for the safe authentication and management of registered credit instruments and documents

Country Status (9)

Country Link
EP (1) EP0855070A1 (en)
AR (1) AR000830A1 (en)
AU (1) AU4305296A (en)
BR (1) BR9510650A (en)
CA (1) CA2234577A1 (en)
IT (1) IT1277257B1 (en)
MX (1) MX9802873A (en)
TN (1) TNSN96070A1 (en)
WO (1) WO1997015032A1 (en)

Cited By (7)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
WO1999049379A2 (en) * 1998-03-06 1999-09-30 Fargo Electronics, Inc. Security printing and unlocking mechanism for high security printers
WO2000022769A1 (en) * 1998-10-14 2000-04-20 Sonera Smarttrust Oy Method and system for the application of a safety marking
WO2000046770A1 (en) * 1999-02-08 2000-08-10 Pulse Systems, Inc. System and method for evaluating a document and creating a record of the evaluation process and an associated transaction
WO2000048135A1 (en) * 1999-02-11 2000-08-17 Image Data, Llc Positive identity verification system and method including biometric user authentication
US7107245B1 (en) * 2000-04-20 2006-09-12 Gaming System Technologies, Llc Biometric gaming access system
US7278581B2 (en) 2000-02-16 2007-10-09 Yong Kin Ong Electronic credit card-ecc
US8322606B2 (en) 2000-02-16 2012-12-04 Ong Yong Kin Michael Electronic credit card—ECC

Families Citing this family (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN113808307B (en) * 2021-09-19 2022-11-22 安徽江淮汽车集团股份有限公司 Emergency unlocking control method based on credit vehicle locking function

Citations (7)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
GB1369537A (en) * 1971-04-21 1974-10-09 Ostertag Werke Ag System for dispensing units of value
EP0097110A2 (en) * 1982-06-08 1983-12-28 Michel Bonnaval-Lamothe Method of testing the use of reserved documents
FR2581776A1 (en) * 1985-05-09 1986-11-14 Bertin & Cie Method and device for establishing and checking a document which is reserved for use by its holder, and document thus established
US5157726A (en) * 1991-12-19 1992-10-20 Xerox Corporation Document copy authentication
GB2256170A (en) * 1991-05-02 1992-12-02 William Robert Brandes Integrated circuit card with fingerprint verification.
EP0590224A2 (en) * 1992-09-29 1994-04-06 Franco Russi Improved method for making credit documents in general and device for detecting property marks thereon
WO1996005576A1 (en) * 1994-08-10 1996-02-22 Prima Officina Carte Valori Turati Lombardi & C.S.P.A. Credit document connected to a document or customised card, independent customised credit card and associated issuance and validation equipment

Patent Citations (7)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
GB1369537A (en) * 1971-04-21 1974-10-09 Ostertag Werke Ag System for dispensing units of value
EP0097110A2 (en) * 1982-06-08 1983-12-28 Michel Bonnaval-Lamothe Method of testing the use of reserved documents
FR2581776A1 (en) * 1985-05-09 1986-11-14 Bertin & Cie Method and device for establishing and checking a document which is reserved for use by its holder, and document thus established
GB2256170A (en) * 1991-05-02 1992-12-02 William Robert Brandes Integrated circuit card with fingerprint verification.
US5157726A (en) * 1991-12-19 1992-10-20 Xerox Corporation Document copy authentication
EP0590224A2 (en) * 1992-09-29 1994-04-06 Franco Russi Improved method for making credit documents in general and device for detecting property marks thereon
WO1996005576A1 (en) * 1994-08-10 1996-02-22 Prima Officina Carte Valori Turati Lombardi & C.S.P.A. Credit document connected to a document or customised card, independent customised credit card and associated issuance and validation equipment

Cited By (14)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US6650430B2 (en) 1998-03-06 2003-11-18 Fargo Electronics, Inc. Security printing and unlocking mechanism for high security printers
WO1999049379A3 (en) * 1998-03-06 1999-12-09 Fargo Electronics Inc Security printing and unlocking mechanism for high security printers
WO1999049379A2 (en) * 1998-03-06 1999-09-30 Fargo Electronics, Inc. Security printing and unlocking mechanism for high security printers
WO2000022769A1 (en) * 1998-10-14 2000-04-20 Sonera Smarttrust Oy Method and system for the application of a safety marking
CN1336051B (en) * 1998-10-14 2013-05-08 桑纳拉斯麦脱信托有限公司 Method and system for the application of a safety marking
US7010694B2 (en) 1998-10-14 2006-03-07 Harri Vatanen Method and system for application of a safety marking
CN1336051A (en) * 1998-10-14 2002-02-13 桑纳拉斯麦脱信托有限公司 Method and system for the application of a safety marking
WO2000046770A1 (en) * 1999-02-08 2000-08-10 Pulse Systems, Inc. System and method for evaluating a document and creating a record of the evaluation process and an associated transaction
US6341169B1 (en) 1999-02-08 2002-01-22 Pulse Systems, Inc. System and method for evaluating a document and creating a record of the evaluation process and an associated transaction
WO2000048135A1 (en) * 1999-02-11 2000-08-17 Image Data, Llc Positive identity verification system and method including biometric user authentication
US7278581B2 (en) 2000-02-16 2007-10-09 Yong Kin Ong Electronic credit card-ecc
US7533828B2 (en) 2000-02-16 2009-05-19 Ong Yong Kin Michael Electronic credit card—ECC
US8322606B2 (en) 2000-02-16 2012-12-04 Ong Yong Kin Michael Electronic credit card—ECC
US7107245B1 (en) * 2000-04-20 2006-09-12 Gaming System Technologies, Llc Biometric gaming access system

Also Published As

Publication number Publication date
EP0855070A1 (en) 1998-07-29
MX9802873A (en) 1998-11-29
AR000830A1 (en) 1997-08-06
BR9510650A (en) 2000-10-31
CA2234577A1 (en) 1997-04-24
IT1277257B1 (en) 1997-11-05
AU4305296A (en) 1997-05-07
ITMI952105A0 (en) 1995-10-13
TNSN96070A1 (en) 1998-12-31
ITMI952105A1 (en) 1997-04-13

Similar Documents

Publication Publication Date Title
US7124934B2 (en) Document authentication method and apparatus
US6575362B1 (en) Secure money order issuing kiosk
US5943423A (en) Smart token system for secure electronic transactions and identification
US5673320A (en) Method and apparatus for image-based validations of printed documents
US20020163421A1 (en) Personal fingerprint authentication method of bank card and credit card
CA2088321A1 (en) Multiple cross-check document verification system
CA2197070A1 (en) Credit document connected to a document or customised card, independent customised credit card and associated issuance and validation equipment
US7353398B2 (en) Article, method, system and apparatus for decentralized creation, distribution, verification and transfer of valuable documents
US8684263B1 (en) Automated banking machine that operates responsive to data bearing records
WO1998001820A1 (en) Identification storage medium and system and method for providing access to authorised users
JP2007122529A (en) Automatic cash receiving and payment system and apparatus
US20050197945A1 (en) Optical banking card
US20030046555A1 (en) Identity verification using biometrics
WO1997015032A1 (en) System for the safe authentication and management of registered credit instruments and documents
US20060092476A1 (en) Document with user authentication
KR19990078671A (en) Exchange System by Finger-print Proof
JP2003296691A (en) Recording medium, personal identification method, financial transaction method and device
AU779543B2 (en) Document authentication method and apparatus
CN1430178A (en) Smart card
RU2208247C2 (en) Method for authenticating plastic card user
KR20000018119A (en) Electronic Money Exchange System Using Fingerprint Identification
KR20050037272A (en) On-line ticket operating system with pki certificate and 2d barcode
WO2023038734A1 (en) Image authentication
JP2021043751A (en) Information processor and program
KR20020033274A (en) Sytem for the acceptance of payment through IC typed credit card and identifier of fingerprint

Legal Events

Date Code Title Description
AK Designated states

Kind code of ref document: A1

Designated state(s): AM AU BB BG BR BY CA CN CZ EE FI GE HU IS JP KG KP KR KZ LK LR LT LV MD MG MN MX NO NZ PL RO RU SG SI SK TJ TT UA UG US UZ VN

AL Designated countries for regional patents

Kind code of ref document: A1

Designated state(s): KE LS MW SD SZ UG AT BE CH DE DK ES FR GB GR IE IT LU MC NL PT SE BF BJ CF CG CI CM GA GN ML MR NE SN TD TG

DFPE Request for preliminary examination filed prior to expiration of 19th month from priority date (pct application filed before 20040101)
121 Ep: the epo has been informed by wipo that ep was designated in this application
WWE Wipo information: entry into national phase

Ref document number: 1995941724

Country of ref document: EP

ENP Entry into the national phase

Ref document number: 2234577

Country of ref document: CA

Ref country code: CA

Ref document number: 2234577

Kind code of ref document: A

Format of ref document f/p: F

WWE Wipo information: entry into national phase

Ref document number: PA/a/1998/002873

Country of ref document: MX

WWP Wipo information: published in national office

Ref document number: 1995941724

Country of ref document: EP

NENP Non-entry into the national phase

Ref country code: JP

Ref document number: 97515437

Format of ref document f/p: F

WWW Wipo information: withdrawn in national office

Ref document number: 1995941724

Country of ref document: EP