Invention Grant
- Patent Title: Securing data via multi-layer tokens
-
Application No.: US16725361Application Date: 2019-12-23
-
Publication No.: US11120439B2Publication Date: 2021-09-14
- Inventor: Jonathan K. Barnett , Roy D'Souza , John Jong Suk Lee , Christopher Arthur Holland McAlpine , Aleksandar Roskic , Douglas Edward William Watson , Zheng Xi , Shannon Rose Yeoman
- Applicant: The Toronto-Dominion Bank
- Applicant Address: CA Toronto
- Assignee: The Toronto-Dominion Bank
- Current Assignee: The Toronto-Dominion Bank
- Current Assignee Address: CA Toronto
- Agency: Graham Patent Law
- Main IPC: H04L29/06
- IPC: H04L29/06 ; H04L9/32 ; H04L9/08 ; G06Q20/38 ; G06Q20/28 ; G06Q20/40 ; H04L9/14 ; H04L9/30

Abstract:
A server includes a memory and a message processor. The memory stores a data record that includes a credential stored in association with an access restriction indicator, and further includes a cryptographic key. The processor is configured to receive from a network device an access request that includes the credential and a token. The token includes a first data layer and a second data layer that incorporates the first data layer and is encrypted with the cryptographic key. The processor is configured to determine that, prior to the access request, the credential was stored in the data record in association with the access restriction indicator; recover the first data layer from the token by (i) locating the cryptographic key in the data record, and (ii) decrypting the second encrypted data layer with the cryptographic key. The processor is configured to provide the network device with the first data layer.
Information query