Payment Terminal Management via Gateway Intermediary
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Payment terminals operating in closed-network environments face challenges in receiving updates and managing encryption keys/certificates due to security constraints, limiting their ability to communicate with external entities for software updates and security monitoring.
Innovation Solution
A terminal management computing system facilitates communication between payment terminals in a closed-network and external entities through an open-network, enabling the management of encryption keys/certificates, software updates, and remote monitoring, allowing for the push or pull of updated certificates and software patches.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If payment terminals operate in closed-network environments for security, then security is improved, but the ability to receive updates and manage encryption keys is worsened
Solution Approach 1:
A gateway server acts as an intermediary between the closed-network payment terminals and the open-network external entities. The gateway server receives update requests from external entities, forwards them to the appropriate payment terminals through the closed network, and manages the distribution of software updates and encryption key updates without requiring direct communication between terminals and external entities.
2Adaptability or versatility
If payment terminals communicate with external entities for updates, then adaptability is improved, but security constraints are worsened
Solution Approach 1:
The system segments communication functionality by separating update management from transaction processing. The gateway server handles all external communications for updates, while payment terminals focus on secure transaction processing within the closed network. This segmentation allows adaptability for updates without compromising the security constraints of the transaction environment.
3Reliability
If encryption keys are updated frequently for security compliance, then security is improved, but operational continuity is worsened
Solution Approach 1:
The system performs preliminary actions by pre-coordinating encryption key updates with the payment terminal's operational schedule. The gateway server manages key updates in advance, ensuring that updates are applied during appropriate time windows without causing operational disruptions. This allows security compliance to be maintained while minimizing impact on operational continuity.
Data Source
AI summary
Systems, methods and apparatus are disclosed for remote management of payment terminals. Public keys, or other security elements can be received from a certification authority and distributed to the payment terminals. A merchant, or other entity affiliated with the payment terminals, can monitor the status of the software and security elements of the payment terminals.


