US2006013234A1PendingUtilityA1

Remote access and security system

Individually held — no corporate assignee on recordPriority: Oct 16, 1998Filed: Apr 18, 2005Published: Jan 19, 2006
Est. expiryOct 16, 2018(expired)· nominal 20-yr term from priority
G07C 9/00912G07C 9/00571G07C 2009/0092
37
PatentIndex Score
0
Cited by
0
References
0
Claims

Abstract

A method and system for remotely controlling access to a value unit. The system includes a central control means which includes control data relating to the control of access to one or more value units by associated access controllers. The system includes remote communication means between the central control means and operator control units, and between those units and access controllers. The control data includes an identity structure for the access controller that defines its permissible behaviour, and access control data defining operator control over the access controller. The access controller remains inaccessible until its identity structure is loaded and implemented. The identity structure may be encrypted so that only the central control means and the access controller can decipher it, thus creating a virtual configuration link between the central control means and the access controller via the operator control unit. The operator control unit only has access to the access control data.

Claims

exact text as granted — not AI-modified
1 - 24 . (canceled)  
     
     
         25 . A system for remotely enabling security to items of value across a communication network, the system comprising: 
 (a) a remote value node (RVN) for storing an identity structure and controlling access to a valuable unit;    (b) a personal access node (PAN) for providing access to the RVN, the PAN communicating with the RVN via an access layer and a virtual configuration link (VCL) layer, the access layer being for communicating security access and control data; and    (c) a centralised management node (CMN) for storing a plurality of identity structures, templates, configuration data and access/control data and controlling access to the RVN, the CMN communicating with the PAN via the access layer and the VCL layer, wherein the RVN and PAN do not contain information until an operator attempts access to the RVN, an identity layer is between the access layer and VCL layer and the VCL layer is created by encryption of data passing in the identity layer such that the access layer in the PAN cannot access data communicated in the VCL layer, and when a RVN is accessed a request for access passes from the PAN to the CMN via the access layer, the CMN generates and encrypts an application template and configuration data to be passed to the RVN via the PAN through the VCL layer, the RVN deciphers the encrypted application template and configuration data to make the decrypted application template and configuration data available to the access layer for processing to allow access.    
     
     
         26 . A system as recited in  claim 25 , wherein the configuration data is a PAN identification number, an operator identification, a RVN identification and operator entry combinations.  
     
     
         27 . A system as recited in  claim 25 , wherein the PAN includes a portable keypad device with a communication device for communicating with the CMN.  
     
     
         28 . A system as recited in  claim 25 , wherein the value unit is selected from the group consisting of a shipping container, a retail security cabinet, a vending machine, a building, a courier bag, a courier box, internet access, a smart card cash transfer, and an electronic database.  
     
     
         29 . A system as recited in  claim 25 , wherein the identity structure is configuration data and an application template.  
     
     
         30 . A system as recited in  claim 29 , wherein the identity structure is selected from the group consisting of a minimum, an access combination, a time, a location criteria, a date, a location, control criteria, an access window, an operator group access criteria, encryption criteria, decryption criteria and combination thereof.  
     
     
         31 . A method for remotely enabling security to items of value across a communication network having a remote value node (RVN) for storing an identity structure and controlling access to a valuable unit, a personal access node (PAN) for providing access to the RVN, the PAN communicating with the RVN via an access layer and a virtual configuration link (VCL) layer, the access layer being for communicating security access and control data and a centralised management node (CMN) for storing a plurality of identity structures, templates, configuration data and access/control data and controlling access to the RVN, the CMN communicating with the PAN via the access layer and the VCL layer, wherein an identity layer is between the access layer and VCL layer and the VCL layer is created by encryption of data passing in the identity layer such that the access layer in the PAN cannot access data communicated in the VCL layer and therefore the identity layer is not available to the PAN, the method comprising the steps of: 
 a) activating the PAN;    b) creating and encrypting an application template at the CMN in response to activation of the PAN;    c) passing the encrypted application template to the PAN and verifying identification of a user;    d) upon identification of the user, passing the encrypted application template to the RVN;    e) deciphering the encrypted application template by the RVN;    f) reconstructing the application template; and    g) processing the application template to allow access.    
     
     
         32 . A remote access control system adapted to enable access to at least one value unit by at least one operator, the remote access control system comprising: 
 an access controller operable to selectively prevent and enable access to a value unit;    a central controller operable to generate control data including an identity structure relating to permissible behavior of the access controller and access operator data relating to operator control over the access controller;    an operator control unit operable to enable communication between an operator and the central controller and the access controller, and receive and store access control data from the central controller; and    a transmitter system to provide communication between the central controller and the operator control unit, and the operator unit and the access controller, wherein the access controller prevents or enables access to the value unit based on the access control data and the identity structure, and when updating of an identity structure for the access controller is required, a virtual configuration link is created between the central controller and the access controller for the value unit, via the operator control unit, for the transfer of the identity structure from the central controller to the access controller, wherein communication and update of the identity structure occurs without operator intervention so that the operator cannot communicate access control data from the operator control unit to the access controller without updating the identity structure.    
     
     
         33 . A remote access control system as recited in  claim 32 , wherein data transmitted over the virtual configuration link is encrypted.  
     
     
         34 . A remote access control system as recited in  claim 32 , wherein the access controller and the operator control unit are operable to communicate data from the access controller to the central controller through the virtual configuration link.  
     
     
         35 . A remote access control system as recited in  claim 32 , wherein the operator control unit serves as part of the virtual configuration link between the central controller and the access controller.

Join the waitlist — get patent alerts

Track US2006013234A1 — get alerts on status changes and closely related new filings.

We store only your email — no account needed. See our privacy policy.