Biometric Verification Rules Table for Payment Devices
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Payment device issuers lack control over the biometric authentication process and the type/level of biometric authentication required for transactions, as well as how verification failures are handled, especially in environments with unreliable or unavailable communications infrastructure.
Innovation Solution
A biometric verification rules table is stored on transaction devices, allowing issuers to specify the level and type of biometric authentication and define alternative authentication steps in case of failure, enabling control over the authentication process even in offline transactions.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Ease of operation
If biometric authentication is implemented using terminal-controlled processes, then authentication can be performed at transaction locations, but payment device issuers lose control over the authentication process and verification failure handling
Solution Approach 1:
The patent stores biometric verification rules, authentication types, and failure handling procedures in advance on the payment device itself during personalization. This preliminary configuration enables the device to autonomously execute issuer-defined authentication protocols without real-time terminal control, preserving issuer authority while enabling distributed authentication.
2Reliability
If biometric authentication requires reliable communications infrastructure, then centralized control can be maintained, but authentication fails in environments with unreliable or unavailable communications
Solution Approach 1:
The patent enables the payment device to independently perform biometric authentication by storing verification rules and processing biometric data locally. The device self-determines authentication requirements and executes verification without external communication, eliminating dependency on communications infrastructure while maintaining issuer-defined security policies.
3Reliability
If multiple biometric verification requirements are enforced, then security is improved, but device complexity and processing time increase
Solution Approach 1:
The patent stores multiple biometric verification rules in a rules table that can be dynamically selected and executed based on transaction context. The system adaptively applies different verification sequences (single biometric, multiple biometrics, alternative pathways) according to stored rules, enabling flexible security enforcement without rigid complexity.
Data Source
AI summary
Methods, systems and apparatus for verifying a cardholder during a transaction involving a payment device and a terminal are provided. In some embodiments, the payment device transmits a first biometric information template to a terminal, receives a first sample template, determines that a match occurs between the first sample template and a first biometric reference template, and determines that a verification sequence applies to the transaction requiring satisfaction of a second biometric rule. In an implementation, the payment device then transmits a second biometric information template, receives a second sample template, determines that a match occurs between the second sample template and a second biometric reference template, and transmits a verification status of the cardholder.


