US 12,476,800 B2
Method, apparatus, and computer-readable medium for authentication and authorization of networked data transactions
George Daniel Doney, Riva, MD (US); Ihor Yermakov, Arlington, VA (US); Ilya Shkapo, Kharkov (UA); and Oleksii Korzhuk, Kharkov (UA)
Assigned to DTCC DIGITAL (US) INC., Jersey City, NJ (US)
Filed by Securrency, Inc., Annapolis, MD (US)
Filed on Sep. 18, 2023, as Appl. No. 18/369,563.
Application 18/369,563 is a continuation in part of application No. 17/332,375, filed on May 27, 2021, granted, now 11,876,915.
Claims priority of provisional application 63/030,416, filed on May 27, 2020.
Prior Publication US 2024/0005316 A1, Jan. 4, 2024
Int. Cl. H04L 29/06 (2006.01); G06F 21/62 (2013.01); G06F 21/64 (2013.01); G06Q 20/36 (2012.01); G06Q 20/38 (2012.01); H04L 9/00 (2022.01); H04L 9/08 (2006.01); H04L 9/32 (2006.01)
CPC H04L 9/085 (2013.01) [G06F 21/6209 (2013.01); G06F 21/64 (2013.01); G06Q 20/3672 (2013.01); G06Q 20/3674 (2013.01); G06Q 20/3825 (2013.01); G06Q 20/389 (2013.01); H04L 9/3213 (2013.01); H04L 9/50 (2022.05); H04L 2209/46 (2013.01)] 11 Claims
OG exemplary drawing
 
1. A method for separating authentication and authorization of a transaction on a Distributed Ledger Technology (DLT) comprising:
an actor initiating a transaction on the DLT to exercise the authority of an entity;
authenticating the actor;
creating an access token including a cryptographic component needed to sign the transaction on the DLT, symmetrically encrypting the access token with a shared key, fragmenting the shared key to produce a plurality of key fragments, and disseminating the plurality of key fragments throughout an authority structure of the entity;
the actor acquiring the plurality of key fragments from the entity's authority structure;
assembling the shared key with the plurality of key fragments;
decrypting the access token with the shared key;
verifying a right of the actor to execute the transaction on behalf of the entity evidenced by the decrypted access token;
executing the transaction on the DLT through a signed transaction using the cryptographic component of the access token; and
publishing the transaction to the DLT.