US 9,270,450 B2
Method and device for mutual authentication
Andrew William Roscoe, Oxford (GB)
Assigned to Isis Innovation Limited, Oxford (GB)
Appl. No. 12/520,475
Filed by Andrew William Roscoe, Oxford (GB)
PCT Filed Dec. 21, 2007, PCT No. PCT/GB2007/004963
§ 371(c)(1), (2), (4) Date Dec. 10, 2009,
PCT Pub. No. WO2008/078101, PCT Pub. Date Jul. 3, 2008.
Claims priority of application No. 0625851.1 (GB), filed on Dec. 22, 2006.
Prior Publication US 2010/0115277 A1, May 6, 2010
Int. Cl. H04L 9/08 (2006.01); H04L 9/32 (2006.01)
CPC H04L 9/0844 (2013.01) [H04L 9/3215 (2013.01); H04L 2209/56 (2013.01)] 22 Claims
OG exemplary drawing
 
1. A method of performing a financial transaction agreed between a customer and a merchant comprising authenticating the merchant to the customer by authenticating communication between the customer and the merchant over an insecure, high bandwidth communications network, in which the customer (C) authenticates the merchant (M) using a communications protocol comprising a first communications phase through a first communications channel over the insecure, high bandwidth communications network to establish a secure mode of communications between the customer and merchant, followed by a second communications phase of receiving information from the merchant over a second communications channel, and enabling a user to make a human comparison of the information received from the merchant with information generated by the customer thereby enabling the user to authenticate the merchant in the event that the information from both the customer and the merchant agrees and thereby enabling appropriate instructions to a third party, via the communication network thereby to enable completion of the financial transaction, the method comprising the step of agreeing to a key for communication between the customer and the merchant.