| CPC H04L 9/3213 (2013.01) [H04L 9/3297 (2013.01)] | 20 Claims |

|
1. A method comprising:
transmitting, by a token requestor computer, a first authorization request message comprising a token and a first cryptogram for authorization of an interaction between a user and a resource provider to a server computer, wherein the token is associated with a credential;
receiving, by the token requestor computer, a first authorization response message comprising a response code from the server computer;
responsive to receiving the first authorization response message, generating, by the token requestor computer, a cryptogram request message comprising the token or a token identifier associated with the token and the response code;
transmitting, by the token requestor computer, the cryptogram request message to a token provider computer, wherein the token provider computer generates a second cryptogram, and provides the second cryptogram and the credential to the token requestor computer;
receiving, by the token requestor computer, the second cryptogram and the credential from the token provider computer;
generating, by the token requestor computer, a second authorization request message comprising the second cryptogram and the credential;
transmitting, by the token requestor computer, the second authorization request message to the server computer for the interaction; and
receiving a second authorization response message from the server computer in response to the second authorization request message, the second authorization response message indicating whether the interaction is authorized.
|