Patents by Inventor Anne M. Wheeler

Anne M. Wheeler has filed for patents to protect the following inventions. This listing includes patent applications that are pending as well as patents that have already been granted by the United States Patent and Trademark Office (USPTO).

  • Patent number: 6959381
    Abstract: A Central Key Authority (CKA) database includes PuK-linked account information of users, wherein the PuK-linked account information maintained in the database for each user includes, (a) a public key of a user device that generates digital signatures, (b) information securely linked with the public key of the device within a secure environment of the manufacture of the device, and (c) third-party account identifiers each of which identifies to a third-party an account of the user that is maintained with the third-party and that has been associated with the user's public key by the third-party.
    Type: Grant
    Filed: February 1, 2003
    Date of Patent: October 25, 2005
    Assignee: First Data Corporation
    Inventors: Anne M. Wheeler, Lynn Henry Wheeler
  • Patent number: 6957336
    Abstract: An initial Puk-linked account database is established by (a) maintaining the database in a secure environment, (b) recording in the database for each one of a plurality of devices manufactured in the secure environment, (i) a public key of a public-private key pair of the manufactured device, and in association therewith, (ii) a Security Profile of the manufactured device, the public key and Security Profile thereby being linked together, (c) distributing the manufactured devices from the secure environment to a plurality of users, and (d) identifying the database records of said distributed devices as the initial PuK-linked account database of the users. An initial Puk-linked account database record of a user is established with each one of a plurality of third-parties in similar manner.
    Type: Grant
    Filed: February 1, 2003
    Date of Patent: October 18, 2005
    Assignee: First Data Corporation
    Inventors: Anne M. Wheeler, Lynn Henry Wheeler
  • Patent number: 6952773
    Abstract: A method of requesting an account authority to execute an instruction with regard to an account maintained by the account authority includes, (a) for a first account, composing an electronic message including, an instruction regarding the first account and a first unique identifier by which a first account authority identifies the first account, digitally signing the electronic message using a private key of a public-private key pair for which the public key is associated by the first account authority with the first account, and sending the electronic message and digital signature to the first account authority, and (b) for a second account digitally signing a similar message of instruction using the same private key of the public-private key pair, and sending the electronic message and digital signature to the second account authority.
    Type: Grant
    Filed: February 1, 2003
    Date of Patent: October 4, 2005
    Assignee: First Data Corporation
    Inventors: Lynn Henry Wheeler, Anne M. Wheeler
  • Patent number: 6950940
    Abstract: Authenticating an entity for access to a controlled resource by an access authentication component for the controlled resource includes the steps of: the requesting entity initially opening a security account with the access authentication component, with the access authentication component establishing and maintaining a record including information pertaining to the account and being retrievable based on a unique identifier for the requesting entity, and associating a public key of a public-private key pair with the record; the requesting entity originating an electronic message and generating a digital signature using a private key of the key pair, and sending the digitally signed electronic message to the access authentication component with the unique identifier; authenticating the electronic message using the public key associated with the record identified by the unique identifier; and upon successful authentication, authenticating access to the controlled resource.
    Type: Grant
    Filed: January 31, 2003
    Date of Patent: September 27, 2005
    Assignee: First Data Corporation
    Inventors: Lynn Henry Wheeler, Anne M. Wheeler
  • Patent number: 6938156
    Abstract: A system in which a requesting entity seeking access to a controlled resource is authenticated by an access authentication component includes the requesting entity initially opening a security account with the access authentication component, the access authentication component establishing and maintaining a record including information pertaining to the account and being retrievable based on a unique identifier for the requesting entity, and associating a public key of a public-private key pair with record; the requesting entity originating an electronic message and generating a digital signature using a provide key of the key pair, and sending the digitally signed electronic message to the access authentication component with the unique identifier; authenticating the electronic message using the public key associated with the record identified by the unique identifier; and upon successful authentication, authenticating access to the controlled resource.
    Type: Grant
    Filed: January 31, 2003
    Date of Patent: August 30, 2005
    Assignee: First Data Corporation
    Inventors: Henry Lynn Wheeler, Anne M. Wheeler
  • Patent number: 6915430
    Abstract: Information of a device that generates digital signatures is reliably identified by (a) for each of a plurality of devices manufactured in an environment, (i) creating a public-private key pair within the environment, (ii) linking within the environment in a secure manner the public key with other information associated with the device, and (iii) before release of the device from the environment, storing the private key within the device for generating a digital signature for an electronic message, and (b) thereafter, when a said linked public key successfully authenticates a digitally signed message, identifying the other information associated with said linked public key as pertaining to the device to which belongs the private key utilized in digitally signing the message. Manufacturing the devices includes creating a public-private key pair within the secure environment, and storing the private key within the device against the possibility of divulgement thereof by the device.
    Type: Grant
    Filed: February 1, 2003
    Date of Patent: July 5, 2005
    Assignee: First Data Corporation
    Inventors: Anne M. Wheeler, Lynn Henry Wheeler
  • Patent number: 6892302
    Abstract: A method of providing for reliably identifying a Security Profile of a device that generates digital signatures includes (a) for each of a plurality of devices manufactured in a secure environment, recording together the public key with a Security Profile of the manufactured device and generating a digital signature therefor to collectively define a Security Certificate, the public key and Security Profile thereby being securely linked together, and (b) before each manufactured device is released from the secure environment, incorporating its respective Security Certificate into the manufactured device such that the Security Certificate is sent with a digital signature that is generated by the manufactured device using the private key.
    Type: Grant
    Filed: February 1, 2003
    Date of Patent: May 10, 2005
    Assignee: First Data Corporation
    Inventors: Anne M. Wheeler, Lynn Henry Wheeler
  • Patent number: 6851054
    Abstract: Authenticating a requesting entity for access to a controlled resource by an access authentication component for the controlled resource includes the steps of, the requesting entity initially opening a security account with the access authentication component, the access authentication component establishing and maintaining a record including information pertaining to the account and being retrievable based on a unique identifier for the requesting entity, and associating a public key of a public-private key pair with the record; the requesting entity originating an electronic message and generating a digital signature using a private key of the key pair, and sending the digitally signed electronic message to the access authentication component with the unique identifier; authenticating the electronic message using the public key associated with the record identified by the unique identifier; and upon successful authentication, authenticating access to the controlled resource.
    Type: Grant
    Filed: January 31, 2003
    Date of Patent: February 1, 2005
    Assignee: First Data Corporation
    Inventors: Lynn Henry Wheeler, Anne M. Wheeler
  • Patent number: 6820202
    Abstract: In a system for performing an action regarding an account in response to an electronic communication received from a sender by a receiver, wherein the electronic communication includes sender identity information associated with the account and a digital signature derived from an electronic message using a private key of a public-private key pair, and wherein the public key of the pair has been associated with the account by the receiver such that the public key is retrievable based on the sender identity information, a method of validating the identity of the sender for the electronic communication includes: (a) retrieving the public key based on the received sender identity information; and (b) comparing a function of the public key and the digital signature with a function of the electronic message. Neither a PIN nor a password is required to be transmitted to the receiver for validating the identity of the sender.
    Type: Grant
    Filed: November 9, 1998
    Date of Patent: November 16, 2004
    Assignee: First Data Corporation
    Inventors: Lynn Henry Wheeler, Anne M. Wheeler
  • Patent number: 6820199
    Abstract: In a system for performing an action regarding an account in response to an electronic communication received from a sender by a receiver, wherein the electronic communication includes sender identity information associated with the account and a digital signature derived using a private key of a public-private key pair, and wherein the public key has been associated with the account by the receiver such that the public key is retrievable based on the sender identity information, a method of validating the identity of the sender for the electronic communication includes: (a) retrieving the public key based on the received sender identity information; and (b) comparing a function of the public key and the digital signature with a function of the electronic message. The digital signature is derived from an electronic message possessed first by the sender before the receiver. The sender identity information is different from the electronic message.
    Type: Grant
    Filed: March 4, 2002
    Date of Patent: November 16, 2004
    Assignee: First Data Corporation
    Inventors: Henry Lynn Wheeler, Anne M. Wheeler
  • Patent number: 6789189
    Abstract: A method of managing accounts in a database in an ABDS system includes recording information pertaining to each of the accounts in the database, (b) assigning a respective unique identifier to each account such that information pertaining to each respective account is retrievable from the database based on its unique identifier, and associating the same public key of a public-private key pair with a plurality of unique identifiers.
    Type: Grant
    Filed: February 1, 2003
    Date of Patent: September 7, 2004
    Assignee: First Data Corporation
    Inventors: Lynn Henry Wheeler, Anne M. Wheeler
  • Publication number: 20040128508
    Abstract: A system for authenticating a requesting entity for access to a controlled resource using one or more authentication factors communicated electronically regarding a security account record in an access authentication component (11). Each record being retrievable based on a unique identifier associated with the requesting entity (30) and a public key of a respective public-private key pair of the requesting entity. The requesting entity originates a digitally signed electronic message including an access request and the unique identifier. The access authentication component (34) retrieves the public key by using the unique identifier to authenticate the electronic message. An access authentication signal can be used for granting access to the requesting entity. The message authentication can include authenticating a security profile of a device and one or more types of verification data of the requesting entity and combinations thereof (24).
    Type: Application
    Filed: February 3, 2003
    Publication date: July 1, 2004
    Inventors: Lynn Henry Wheeler, Anne M Wheeler
  • Publication number: 20040030901
    Abstract: A method in which information pertaining to a device (104) generating digital signatures (122) is reliably identified includes manufacturing (102) devices in a secure environment (114) and for each device (104) before it is released from the secure environment: creating a public-private key pair (116, 118); storing the private key (116) within the device (104) for utilization in generating a digital signature (122) for a message (122); and linking the public key (118) to a Security Profile (120) of the device (104). The devices (104) then are released from the secure environment (114) and a digital signature (122) is received from somewhere (108) in the world (106). The message (122) is authenticated using a suspect public key (124) and the suspect public key (124) is compared with the linked 114 public keys (118).
    Type: Application
    Filed: February 3, 2003
    Publication date: February 12, 2004
    Inventors: Lynn Henry Wheeler, Anne M Wheeler
  • Publication number: 20040005051
    Abstract: A current verification status of a device (256) is identified out of a plurality of predefined verification data input (250) into the device (256) and data prestored within the device.(254) The indicator (272) reveals neither the prestored data nor the verification data. One of the predefined verification statuses is representative of the verification data being the same as the prestored data, and another verification status is representative of the verification data being different from the prestored data. An identified verification status is used by one entity in determining risk regarding an electronic communication from another entity, especially where the electronic communication comprises a request. The prestored data is for a Secret or a biometric characteristic of the first entity.
    Type: Application
    Filed: February 3, 2003
    Publication date: January 8, 2004
    Inventors: Lynn Henry Wheeler, Anne M Wheeler
  • Publication number: 20030131234
    Abstract: Authenticating a requesting entity for access to a controlled resource by an access authentication component for the controlled resource includes the steps of, the requesting entity initially opening a security account with the access authentication component, the access authentication component establishing and maintaining a record including information pertaining to the account and being retrievable based on a unique identifier for the requesting entity, and associating a public key of a public-private key pair with the record; the requesting entity originating an electronic message and generating a digital signature using a private key of the key pair, and sending the digitally signed electronic message to the access authentication component with the unique identifier; authenticating the electronic message using the public key associated with the record identified by the unique identifier; and upon successful authentication, authenticating access to the controlled resource.
    Type: Application
    Filed: January 31, 2003
    Publication date: July 10, 2003
    Applicant: First Data Corporation
    Inventors: Henry Lynn WHEELER , Anne M. Wheeler
  • Publication number: 20030131235
    Abstract: Authenticating an entity for access to a controlled resource by an access authentication component for the controlled resource includes the steps of: the requesting entity initially opening a security account with the access authentication component, with the access authentication component establishing and maintaining a record including information pertaining to the account and being retrievable based on a unique identifier for the requesting entity, and associating a public key of a public-private key pair with the record; the requesting entity originating an electronic message and generating a digital signature using a private key of the key pair, and sending the digitally signed electronic message to the access authentication component with the unique identifier; authenticating the electronic message using the public key associated with the record identified by the unique identifier; and upon successful authentication, authenticating access to the controlled resource.
    Type: Application
    Filed: January 31, 2003
    Publication date: July 10, 2003
    Applicant: First Data Corporation
    Inventors: Henry Lynn WHEELER , Anne M. Wheeler
  • Publication number: 20030126438
    Abstract: A system in which a requesting entity seeking access to a controlled resource is authenticated by an access authentication component includes the requesting entity initially opening a security account with the access authentication component, the access authentication component establishing and maintaining a record including information pertaining to the account and being retrievable based on a unique identifier for the requesting entity, and associating a public key of a public-private key pair with the record; the requesting entity originating an electronic message and generating a digital signature using a private key of the key pair, and sending the digitally signed electronic message to the access authentication component with the unique identifier; authenticating the electronic message using the public key associated with the record identified by the unique identifier; and upon successful authentication, authenticating access to the controlled resource.
    Type: Application
    Filed: January 31, 2003
    Publication date: July 3, 2003
    Applicant: First Data Corporation
    Inventors: Henry Lynn WHEELER , Anne M. Wheeler
  • Publication number: 20030126439
    Abstract: AA system in which a requesting entity seeking access to a controlled resource is authenticated by an access authentication component includes the requesting entity initially opening a security account with the access authentication component, the access authentication component establishing and maintaining a record including information pertaining to the account and being retrievable based on a unique identifier for the requesting entity, and associating a public key of a public-private key pair with the record; the requesting entity originating an electronic message and generating a digital signature using a private key of the key pair, and sending the digitally signed electronic message to the access authentication component with the unique identifier; authenticating the electronic message using the public key associated with the record identified by the unique identifier; and upon successful authentication, authenticating access to the controlled resource.
    Type: Application
    Filed: January 31, 2003
    Publication date: July 3, 2003
    Applicant: First Data Corporation
    Inventors: Henry Lynn WHEELER , Anne M. Wheeler
  • Publication number: 20030126437
    Abstract: Authenticating an entity for access to a controlled resource by an access authentication component for the controlled resource includes the steps of: the requesting entity initially opening a security account with the access authentication component, with the access authentication component establishing and maintaining a record including information pertaining to the account and being retrievable based on a unique identifier for the requesting entity, and associating a public key of a public-private key pair with the record; the requesting entity originating an electronic message and generating a digital signature using a private key of the key pair, and sending the digitally signed electronic message to the access authentication component with the unique identifier; authenticating the electronic message using the public key associated with the record identified by the unique identifier; and upon successful authentication, authenticating access to the controlled resource.
    Type: Application
    Filed: January 31, 2003
    Publication date: July 3, 2003
    Applicant: First Data Corporation
    Inventors: Henry Lynn WHEELER , Anne M. Wheeler
  • Publication number: 20030115463
    Abstract: A method of requesting an account authority to execute an instruction with regard to an account maintained by the account authority includes, (a) for a first account, composing an electronic message including, an instruction regarding the first account and a first unique identifier by which a first account authority identifies the first account, digitally signing the electronic message using a private key of a public-private key pair for which the public key is associated by the first account authority with the first account, and sending the electronic message and digital signature to the first account authority, and (b) for a second account digitally signing a similar message of instruction using the same private key of the public-private key pair, and sending the electronic message and digital signature to the second account authority.
    Type: Application
    Filed: February 1, 2003
    Publication date: June 19, 2003
    Applicant: First Data Corporation
    Inventors: Lynn Henry WHEELER , Anne M. Wheeler