US2024007475A1PendingUtilityA1

Method and system for remotely verifying identity prior to provisioning a data record for a service

Assignee: TORONTO DOMINION BANKPriority: Mar 10, 2021Filed: Sep 14, 2023Published: Jan 4, 2024
Est. expiryMar 10, 2041(~14.6 yrs left)· nominal 20-yr term from priority
H04L 63/102H04L 63/107H04L 63/0861H04L 63/08H04L 9/50H04L 2463/082H04L 9/321
57
PatentIndex Score
0
Cited by
0
References
0
Claims

Abstract

A server computer system comprises a communications module; a processor coupled with the communications module; and a memory coupled to the processor and storing processor-executable instructions which, when executed by the processor, configure the processor to receive, via the communications module and from a remote computing device, a signal including a request to provision a data record for a service; select digital identity network verification as a primary verification technique; attempt verification using the primary verification technique; determine that verification using the primary verification technique has failed; responsive to determining that verification using the primary verification technique has failed, attempt verification using a secondary verification technique; determine successful verification using the secondary verification technique; and responsive to successful verification using the secondary verification technique, provision the data record for the service.

Claims

exact text as granted — not AI-modified
What is claimed is: 
     
         1 . A server computer system comprising:
 a communications module;   a processor coupled with the communications module; and   a memory coupled to the processor and storing processor-executable instructions which, when executed by the processor, configure the processor to:
 select digital identity network verification via a digital identity network as a primary type of authentication; 
 determine that verification using the primary type of authentication has failed; 
 responsive to determining that verification using the primary type of authentication has failed, attempt verification using a secondary type of authentication that does not require the digital identity network; and 
 determine successful verification using the secondary type of authentication. 
   
     
     
         2 . The server computer system of  claim 1 , wherein the processor-executable instructions, when executed by the processor, further configure the processor to:
 receive, via the communications module and from a remote computing device, a signal including a request to provision a data record for a service; and   responsive to successful verification using the secondary type of authentication, provision the data record for the service.   
     
     
         3 . The server computer system of  claim 1 , wherein the processor-executable instructions, when executed by the processor, further configure the processor to:
 prior to selecting digital identity network verification as the primary type of authentication, determine that a user has one or more data records associated with one or more members of a digital identity network.   
     
     
         4 . The server computer system of  claim 3 , wherein the processor-executable instructions, when executed by the processor, further configure the processor to:
 send, via the communications module and to a remote computing device, a signal requesting confirmation that the user has the one or more data records associated with the one or more members of the digital identity network; and   receive, via the communications module and from the remote computing device, a signal including confirmation that the user has the one or more data records associated with the one or more members of the digital identity network.   
     
     
         5 . The server computer system of  claim 4 , wherein the signal requesting confirmation that the user has the one or more data records associated with the one or more members of the digital identity network causes the remote computing device to display a graphical user interface that includes at least one selectable option to confirm that the user has the one or more data records associated with the one or more members of the digital identity network. 
     
     
         6 . The server computer system of  claim 5  wherein the graphical user interface displays a list of all members of the digital identity network. 
     
     
         7 . The server computer system of  claim 1 , wherein the processor-executable instructions, when executed by the processor, further configure the processor to:
 send, via the communications module and to a server associated with the digital identity network, a request for verified identity data of a user.   
     
     
         8 . The server computer system of  claim 7 , wherein the processor-executable instructions, when executed by the processor, further configure the processor to:
 receive, via the communications module and from the server associated with the digital identity network, a signal indicating that the request for verified identity data of the user has failed; and   responsive to receiving the signal indicating that the request for verified identity data of the user has failed, determine that verification using the primary type of authentication has failed.   
     
     
         9 . The server computer system of  claim 1 , wherein when attempting verification using the secondary type of authentication, the processor-executable instructions, when executed by the processor, further configure the processor to:
 obtain, via the communications module and from a remote computing device, image data including a first image of a user and an image of an identity document that includes a second image of the user;   analyze the image data to determine that the first image of the user and the second image of the user correspond to a same user; and   responsive to determining that the first image of the user and the second image of the user correspond to the same user, determine successful verification.   
     
     
         10 . The server computer system of  claim 1 , wherein when attempting verification using the secondary type of authentication, the processor-executable instructions, when executed by the processor, further configure the processor to:
 obtain, via the communications module and from a remote computing device, an internet protocol address of the remote computing device;   determine a location of the remote computing device based at least on the internet protocol address; and   compare the determined location of the remote computing device to a known address of a user to determine successful verification.   
     
     
         11 . A computer-implemented method comprising:
 selecting digital identity network verification via a digital identity network as a primary type of authentication;   determining that verification using the primary type of authentication has failed;   responsive to determining that verification using the primary type of authentication has failed, attempting verification using a secondary type of authentication that does not require the digital identity network; and   determining successful verification using the secondary type of authentication.   
     
     
         12 . The computer-implemented method of  claim 11 , further comprising:
 receiving, via a communications module and from a remote computing device, a signal including a request to provision a data record for a service; and   responsive to successful verification using the secondary type of authentication, provision the data record for the service.   
     
     
         13 . The computer-implemented method of  claim 11 , further comprising:
 prior to selecting digital identity network verification as the primary type of authentication, determining that a user has one or more data records associated with one or more members of a digital identity network.   
     
     
         14 . The computer-implemented method of  claim 13 , further comprising:
 sending, via a communications module and to a remote computing device, a signal requesting confirmation that the user has the one or more data records associated with the one or more members of the digital identity network; and   receiving, via the communications module and from the remote computing device, a signal including confirmation that the user has the one or more data records associated with the one or more members of the digital identity network.   
     
     
         15 . The computer-implemented method of  claim 14 , wherein the signal requesting confirmation that the user has the one or more data records associated with the one or more members of the digital identity network causes the remote computing device to display a graphical user interface that includes at least one selectable option to confirm that the user has the one or more data records associated with the one or more members of the digital identity network. 
     
     
         16 . The computer-implemented method of  claim 15 , wherein the graphical user interface displays a list of all members of the digital identity network. 
     
     
         17 . The computer-implemented method of  claim 11 , further comprising:
 sending, via a communications module and to a server associated with the digital identity network, a request for verified identity data of a user.   
     
     
         18 . The computer-implemented method of  claim 17 , further comprising:
 receiving, via the communications module and from the server associated with the digital identity network, a signal indicating that the request for verified identity data of the user has failed; and   responsive to receiving the signal indicating that the request for verified identity data of the user has failed, determining that verification using the primary type of authentication has failed.   
     
     
         19 . The computer-implemented method of  claim 11 , wherein attempting verification using the secondary type of authentication comprises:
 obtaining, via a communications module and from a remote computing device, image data including a first image of a user and an image of an identity document that includes a second image of the user;   analyzing the image data to determine that the first image of the user and the second image of the user correspond to a same user; and   responsive to determining that the first image of the user and the second image of the user correspond to the same user, determining successful verification.   
     
     
         20 . A non-transitory computer readable storage medium comprising computer-executable instructions which, when executed, configure a processor to:
 select digital identity network verification via a digital identity network as a primary type of authentication;   determine that verification using the primary type of authentication has failed;   responsive to determining that verification using the primary type of authentication has failed, attempt verification using a secondary type of authentication that does not require the digital identity network; and   determine successful verification using the secondary type of authentication.

Join the waitlist — get patent alerts

Track US2024007475A1 — get alerts on status changes and closely related new filings.

We store only your email — no account needed. See our privacy policy.