CN101833822B - Security protection method for electric power prepaid system - Google Patents

Security protection method for electric power prepaid system Download PDF

Info

Publication number
CN101833822B
CN101833822B CN201010144161XA CN201010144161A CN101833822B CN 101833822 B CN101833822 B CN 101833822B CN 201010144161X A CN201010144161X A CN 201010144161XA CN 201010144161 A CN201010144161 A CN 201010144161A CN 101833822 B CN101833822 B CN 101833822B
Authority
CN
China
Prior art keywords
card
terminal
information
swiping
electric power
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Active
Application number
CN201010144161XA
Other languages
Chinese (zh)
Other versions
CN101833822A (en
Inventor
赵智维
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Guangdong Topway Network Co ltd
Foshan Power Supply Bureau of Guangdong Power Grid Corp
Original Assignee
Shenzhen Clou Electronics Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Shenzhen Clou Electronics Co Ltd filed Critical Shenzhen Clou Electronics Co Ltd
Priority to CN201010144161XA priority Critical patent/CN101833822B/en
Publication of CN101833822A publication Critical patent/CN101833822A/en
Application granted granted Critical
Publication of CN101833822B publication Critical patent/CN101833822B/en
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Images

Abstract

The invention relates to the field of prepaid management of an electric power system, disclosing a security protection method for an electric power prepaid system. The security protection method comprises the following steps of: (s1) encrypting key information to form check bits and writing to an electricity purchasing card by a prepaid system; (s2) validating encrypted check information by a card swiping terminal when the electricity purchasing card is swiped; and (s3) reading electricity purchasing information and feeding the electricity purchasing information back to a prepaid master station. In the invention, the modern encryption technology and terminal communication technology are fully utilized in the prepaid management process of the electrical power system, the problem of low security of card type prepaid information is effectively solved, and technical assurance is provided for security transfer of the prepaid information of electric power companies.

Description

The method for security protection of electric power prepaid system
Technical field
The present invention relates to the pre-payment management field of electric system, particularly a kind of method for security protection of electric power prepaid system.
Background technology
Along with the development process of power industry information system, modern electric energy information acquisition system can not be satisfied with this basic function of electricity consumption data of gathering the user, also need utilize the user data that collects to carry out some ADVANCED APPLICATIONS.At this wherein, the application of cassette prepayment electric expense has accounted for ratio greatly.The pre-payment electricity consumption is meant pay tariff earlier a kind of power mode of electricity consumption again of user, user elder generation prepayment electric expense, and power supply enterprise charges into the on-the-spot metering outfit of user through payment system with user's paying situation, through these metering outfit metering user electricity consumptions.When supplementing with money of user runs low, send acousto-optic warning notice user and pay dues as early as possible, and, let power supply enterprise simultaneously the user urged expense these information notice power supply enterprises.Use up when the user supplements with money, on-the-spot WT-MSR will be taked certain margining electric method through mode automatic or that request is confirmed.But the encryption method of card type prepayment system is weak at present, is easy to crack.
Summary of the invention
In order to solve the problems of the prior art, the invention provides a kind of method for security protection of electric power prepaid system, solve prior art intermediate champing payment system and have the problem that encryption method is weak, be easy to crack.
The present invention solves the technical scheme that the prior art problem adopted: design and make a kind of method for security protection of electric power prepaid system, may further comprise the steps, (S1) payment system is encrypted key message, forms check bit and write to purchase in the electricity card; (S2) check information after swiping the card the terminal checking being encrypted when swiping the card through purchasing electricity card; (S3) terminal of swiping the card is read to purchase and will be purchased electrical information after the electrical information and feed back to the pre-payment main website.
The present invention further improves: said step (S1) further may further comprise the steps: (S201) payment system extracts the key message of purchasing the electricity card; (S202) payment system reads the multiple close spoon that configures in advance; (S203) payment system is tentatively encrypted key message according to the multiple close spoon that reads, and the ciphertext after the encryption is carried out the encryption of SHA SHA level again; (S204) payment system extracts the result that the SHA SHA is encrypted, and this result simplified is check code; (S205) payment system writes check code and key message together and purchases in the electricity card.
The present invention further improves: said key message comprises user number, user name at least, purchases electric odd numbers, purchases electric weight and purchases electric temporal information.
The present invention further improves: said multiple close spoon is by specify in many ways simultaneously, and folk prescription can't be known the close spoon that other side is specified.
The present invention further improves: said step (S2) further may further comprise the steps: (S301) swipe the card terminal or payment system normally read purchases the electricity card, and blocks the encryption detection that carries; (S302) key message in the card is read at the payment system or the terminal of swiping the card; (S303) payment system or the terminal of swiping the card are read in the close spoon information that configures in advance and are generated check code; (S305) payment system or the terminal of swiping the card compare check code that generates and the check code of purchasing in the electricity card, if unanimity then jump to step (S3), otherwise would provide information.
The present invention further improves: said step (S3) further may further comprise the steps: the terminal of (S401) swiping the card is read in and is purchased purchasing electrical information and carrying out the legitimacy detection in the electricity card; (S402) terminal of swiping the card is extracted to purchase the key message on the electricity card and to form the feedback message and is sent back to the pre-payment main website; (S403) the pre-payment main website receives the feedback message that send on the terminal of swiping the card, and extracts key message wherein, and the record that has existed in these key messages and the database is compared.
The present invention further improves: said terminal and the pre-payment main website of swiping the card carries out data transmission through wired or wireless mode.
The present invention further improves: the feedback information that send on the said terminal of swiping the card is the truth of swiping the card in the terminal.
The present invention further improves: reflect in the feedback information that the said card information of purchasing in the electricity card can send on the terminal of swiping the card; The said card information that was modified in the electricity card of purchasing can reflect in said feedback information.
The present invention further improves: the method for security protection of said electric power prepaid system also comprises: (S4) the pre-payment main website reads when purchasing the electricity card next time, verifies check bit once more.
The invention has the beneficial effects as follows: the present invention is in the pre-payment management process of electric system; Make full use of modern encryption technology, terminal communication technology; Effectively solved the not high problem of card type prepayment information privacy degree, technical guarantee is provided the safe transfer of Utilities Electric Co.'s prepayment information.
Description of drawings
Fig. 1 is the process flow diagram of the method for security protection of electric power prepaid system of the present invention.
Fig. 2 is that the check code of the method for security protection of electric power prepaid system of the present invention generates synoptic diagram.
Fig. 3 is the method for security protection checking procedure synoptic diagram of electric power prepaid system of the present invention.
Fig. 4 is the method for security protection of the electric power prepaid system of the present invention terminal feedback synoptic diagram of swiping the card.
Embodiment
Below in conjunction with accompanying drawing the present invention is described further.
As shown in Figure 1, a kind of method for security protection of electric power prepaid system may further comprise the steps, and the S1 payment system is encrypted key message, forms check bit and write to purchase in the electricity card; Check information after S2 swipes the card the terminal checking is encrypted when swiping the card through purchasing electricity card; S3 reads to purchase and will purchase electrical information after the electrical information and feed back to the pre-payment main website at the terminal of swiping the card; S4 pre-payment main website reads when purchasing the electricity card next time, verifies check bit once more.
Said step S1 further may further comprise the steps: the S201 payment system extracts the key message of purchasing the electricity card; The S202 payment system reads the multiple close spoon that configures in advance; The S203 payment system is tentatively encrypted key message according to the multiple close spoon that reads, and the ciphertext after the encryption is carried out the encryption of SHA (being Secure Hash Algorithm SHA) level again; The S204 payment system extracts the result that the SHA SHA is encrypted, and this result simplified is check code; The S205 payment system writes check code and key message together and purchases in the electricity card.
Said key message comprises user number, user name at least, purchases electric odd numbers, purchases electric weight and purchases electric temporal information.
Said multiple close spoon is by specify in many ways simultaneously, and folk prescription can't be known the close spoon that other side is specified.
Said step S2 further may further comprise the steps: swipe the card terminal or payment system of S301 normally reads and purchases the electricity card, and blocks the encryption detection that carries; The key message in the card is read at the S302 payment system or the terminal of swiping the card; The S303 payment system or the terminal of swiping the card are read in the close spoon information that configures in advance and are generated check code; The S305 payment system or the terminal of swiping the card compare check code that generates and the check code of purchasing in the electricity card, if unanimity then jump to step S3, otherwise would provide information.
Said step S3 further may further comprise the steps: S401 reads in and purchases purchasing electrical information and carry out legitimacy and detect in the electricity card at the terminal of swiping the card; S402 extracts to purchase the key message on the electricity card and to form the feedback message and sends back to the pre-payment main website at the terminal of swiping the card; S403 pre-payment main website receives the feedback message that send on the terminal of swiping the card, and extracts key message wherein, and the record that has existed in these key messages and the database is compared.
Said terminal and the pre-payment main website of swiping the card carries out data transmission through wired or wireless mode.
The feedback information that send on the said terminal of swiping the card is the truth of swiping the card in the terminal.
Reflect in the feedback information that the said card information of purchasing in the electricity card can send on the terminal of swiping the card; The said card information that was modified in the electricity card of purchasing can reflect in said feedback information.
In embodiments of the present invention, through the key message in the prepaid card being carried out form check code, can detect any modification of after card is gone up built-in encryption system and is cracked, card information being carried out through check code based on the variant algorithm for encryption of SHA.In addition, the electrical information of purchasing through sending on the active reading terminals in the embodiment of the invention, and compare and detect any modification that prepaid card information is carried out with information in the main website database.
Fig. 2 and for example; The process that check code generates in the card type prepayment security of system protection mechanism; In step, pre-payment software extracts the key message of purchasing the electricity card at the S201 of Fig. 2, and these key messages comprise: user number, user name, purchase electric odd numbers, purchase electric weight, purchase the electricity time etc.
S202 is in the step, and system reads the multiple key that sets in advance, and these keys are specified by the multidigit system manager simultaneously, and one of them people can't learn the key that other people are specified.
S203 is in the step, and system tentatively encrypts key message according to the multiple key that reads, and the ciphertext after the encryption is carried out the encryption of SHA algorithm level again.
S204 is in the step, and system extracts the result that SHA encrypts, and this result is simplified as last check code.
In S205 step, system will last check code with purchase electrical information and be written to together and purchase during electricity blocks.
In above-mentioned steps, because key is provided by many people respectively, institute thinks that the hacker cracks whole encryption system and increased difficulty.And because at S203 step and S205 during the step, to having carried out encrypting once more with data encrypted before the SHA algorithm for encryption, whole AES has not belonged to the SHA system, thinking to crack has increased difficulty, has improved its security.
Fig. 3 described prepaid terminal and pre-payment main website read have check information purchase the electricity card time checking procedure and the alerting pattern of abnormal information.In step, terminal or payment system carry out normal Card Reader, and block the encryption detection that carries at S301, and these testing processes all are built in prepaid card and the corresponding card reader.
In S302 step, the key message in the card is read at payment system or terminal, and these information comprise: user number, user name, purchase electric odd numbers, purchase electric weight, purchase the electricity time etc.
In step, the key information that sets is in advance read at payment system or terminal at S303 and S304, and generates check code according to the process shown in Fig. 2.
In S305 step, payment system or terminal compare check code that generates and check code in the card, if consistent then proceed following pre-payment affairs, if inconsistent then provide information.
Fig. 4 has described the step of prepaid terminal feedback information and the detection mode of main website.In step, the electrical information of purchasing in the card is read at the terminal at S401, and equally carries out necessary legitimacy as Fig. 3 and detect.
After the detection in S401 step was passed through fully, the key message on the card was extracted at the terminal, and formation feedback message sends back to main website.
In step, main website receives the feedback message that send on the terminal at S403, extracts key message wherein, and the record that has existed in these key messages and the database is compared.Operator notified is further handled if both are inconsistent.
In above-mentioned steps, finally want incoming terminal owing to purchase electrical information, so can reflect the truth of swiping the card in the terminal the most truly by the feedback information that send on the terminal.Reflect in the feedback information that the card information of revising necessarily can send on the terminal.After the terminal is successfully read in and purchased electrical information, should key message be fed back to the pre-payment main website, finally verify for main website.All can carry out verification during each Card Reader, effectively stop the behavior that the hacker changes key message in the card privately the information in the card.
The electricity card of purchasing in this system has nothing to do with the card media that payment system is adopted, and can in the system that uses any card media, realize in theory; The AES that this method adopted has strict theoretical foundation, belongs to the variant of irreversible HASH AES, and the cracker can't derive expressly through the ciphertext in the card; The method that is adopted is not conflicted with the original encryption system of card, and both can concur; Encrypt used key message by preserving in many ways, be not easy to reveal.
In sum, the invention solves in the existing card type prepayment technology card information and revised easily, the confidentiality of card information too depends on the problem of the secret system of building in the card, for the practical application of present payment system very strong directive significance is arranged.
Above content is to combine concrete preferred implementation to the further explain that the present invention did, and can not assert that practical implementation of the present invention is confined to these explanations.For the those of ordinary skill of technical field under the present invention, under the prerequisite that does not break away from the present invention's design, can also make some simple deduction or replace, all should be regarded as belonging to protection scope of the present invention.

Claims (9)

1. the method for security protection of an electric power prepaid system is characterized in that, may further comprise the steps, and (S1) payment system is encrypted key message, forms check code and write to purchase in the electricity card; (S2) swipe the card the terminal at the check information of purchasing after verifying encryption when the electricity card is swiped the card; (S3) terminal of swiping the card is read to purchase and will be purchased electrical information after the electrical information and feed back to the pre-payment main website;
Said step (S1) further may further comprise the steps: (S201) payment system extracts the key message of purchasing the electricity card; (S202) payment system reads the multiple close spoon that configures in advance; (S203) payment system is tentatively encrypted key message according to the multiple close spoon that reads, and the ciphertext after the encryption is carried out the encryption of SHA SHA again; (S204) payment system extracts the result that the SHA SHA is encrypted, and this result simplified is check code; (S205) payment system writes check code and key message together and purchases in the electricity card.
2. according to the method for security protection of the said electric power prepaid system of claim 1, it is characterized in that: said key message comprises user number, user name at least, purchases electric odd numbers, purchases electric weight and purchases electric temporal information.
3. according to the method for security protection of the said electric power prepaid system of claim 1, it is characterized in that: said multiple close spoon is by specify in many ways simultaneously, and folk prescription can't be known the close spoon that other side is specified.
4. according to the method for security protection of the said electric power prepaid system of claim 1, it is characterized in that: said step (S2) further may further comprise the steps: the terminal of (S301) swiping the card is normally read and is purchased the electricity card, and blocks the encryption detection that carries; (S302) key message in the card is read at the terminal of swiping the card; (S303) terminal of swiping the card is read in the close spoon information that configures in advance and is generated check code; (S305) terminal of swiping the card compares check code that generates and the check code of purchasing in the electricity card, if unanimity then jump to step (S3), otherwise would provide information.
5. according to the method for security protection of the said electric power prepaid system of claim 1, it is characterized in that: said step (S3) further may further comprise the steps: the terminal of (S401) swiping the card is read in and is purchased purchasing electrical information and carrying out the legitimacy detection in the electricity card; (S402) terminal of swiping the card is extracted to purchase the key message on the electricity card and to form the feedback message and is sent back to the pre-payment main website; (S403) the pre-payment main website receives the feedback message that send on the terminal of swiping the card, and extracts key message wherein, and the record that has existed in these key messages and the database is compared.
6. according to the method for security protection of the said electric power prepaid system of claim 1, it is characterized in that: said terminal and the pre-payment main website of swiping the card carries out data transmission through wired or wireless mode.
7. according to the method for security protection of the said electric power prepaid system of claim 5, it is characterized in that: the feedback information that send on the said terminal of swiping the card is the truth of swiping the card in the terminal.
8. according to the method for security protection of the said electric power prepaid system of claim 7, it is characterized in that: reflect in the feedback information that the said card information of purchasing in the electricity card can send on the terminal of swiping the card; The said card information that was modified in the electricity card of purchasing can reflect in said feedback information.
9. according to the method for security protection of the said electric power prepaid system of claim 1, it is characterized in that: the method for security protection of said electric power prepaid system also comprises: (S4) the pre-payment main website reads when purchasing the electricity card next time, verifies check information once more.
CN201010144161XA 2010-04-02 2010-04-02 Security protection method for electric power prepaid system Active CN101833822B (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201010144161XA CN101833822B (en) 2010-04-02 2010-04-02 Security protection method for electric power prepaid system

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201010144161XA CN101833822B (en) 2010-04-02 2010-04-02 Security protection method for electric power prepaid system

Publications (2)

Publication Number Publication Date
CN101833822A CN101833822A (en) 2010-09-15
CN101833822B true CN101833822B (en) 2012-05-23

Family

ID=42717882

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201010144161XA Active CN101833822B (en) 2010-04-02 2010-04-02 Security protection method for electric power prepaid system

Country Status (1)

Country Link
CN (1) CN101833822B (en)

Families Citing this family (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102306423B (en) * 2011-08-19 2012-10-31 江西省电力科学研究院 Electricity consumption interactive terminal prepaid system
CN103679954B (en) * 2012-09-14 2016-07-20 深圳市金正方科技股份有限公司 A kind of intelligent correction method and system based on IC-card charge
CN104036432A (en) * 2014-06-12 2014-09-10 国家电网公司 Method for implementing power purchase of power purchase card reader

Family Cites Families (6)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN2227858Y (en) * 1994-12-10 1996-05-22 合肥工业大学 Intelligent pre-charging fee counter for electricity consumption
JPH09134413A (en) * 1995-11-08 1997-05-20 Tokin Corp Non-contact type data carrier system
CN2496029Y (en) * 2001-08-18 2002-06-19 潍坊五洲鼎嘉维高科技有限公司 Uniphase intelligence card electric meter
CN100535887C (en) * 2003-06-19 2009-09-02 北京握奇数据系统有限公司 Security measure management method of prepay IC card meter based on ESAM module
CN100440262C (en) * 2006-06-12 2008-12-03 潘铁军 Paying apparatus and method for prepaying meter
CN201387642Y (en) * 2009-02-18 2010-01-20 青岛乾程电子科技有限公司 Single-phase electronic type multi-rate prepayment electric energy meter

Also Published As

Publication number Publication date
CN101833822A (en) 2010-09-15

Similar Documents

Publication Publication Date Title
CN103065102B (en) Data encryption mobile storage management method based on virtual disk
CN101807994B (en) Method and system for application data transmission of IC card
CN201387642Y (en) Single-phase electronic type multi-rate prepayment electric energy meter
Das Wireless communication system for energy meter reading
CN104408825B (en) Encrypted card swiping public charging pile and charging method
CN102694782B (en) Security information exchange device based on internet and method
CN104217327A (en) Financial IC (integrated circuit) card Internet terminal and trading method thereof
CN104050567A (en) Data interaction method under off-line mode, terminal and server
CN103544786B (en) Tax control tray
CN107332671A (en) A kind of safety mobile terminal system and method for secure transactions based on safety chip
CN104851206A (en) USBKEY (universal serial bus key)-based online electric charge payment system
CN102693385A (en) Embedded terminal based on SD (secure digital) trusted computing module and implementation method thereof
CN103401277B (en) A kind of intelligent power and utilize this intelligent power to realize the method for mobile payment
CN104574652A (en) Method for increasing and deducting pollution discharge data of IC card and IC card
CN104502693A (en) Intelligent electric meter
CN114884649A (en) Intelligent gas meter and system
CN101833822B (en) Security protection method for electric power prepaid system
CN104579675A (en) Safety module, data reading-writing system for parking lot and safety setting method
CN104579659A (en) Device for safety information interaction
CN101673434A (en) Secret key management method of IC card terminal
CN101127013A (en) Enciphered mobile storage apparatus and its data access method
CN104103132A (en) Mobile uKey [USB (universal serial bus) Key] and card-less cash withdrawal System and mobile uKey and card-less cash withdrawal method
CN203070422U (en) Multipurpose integrated circuit (IC) card internet terminal
CN101576949B (en) Movable storage device and method for safely transferring tax-controlled data
CN101251885A (en) Method and apparatus for protecting software program safety in MCU

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
C14 Grant of patent or utility model
GR01 Patent grant
TR01 Transfer of patent right
TR01 Transfer of patent right

Effective date of registration: 20220921

Address after: 528000 No. 1 South Fenjiang Road, Chancheng District, Guangdong, Foshan

Patentee after: FOSHAN POWER SUPPLY BUREAU OF GUANGDONG POWER GRID Co.,Ltd.

Patentee after: GUANGDONG TOPWAY NETWORK Co.,Ltd.

Address before: Five, T2 building, 518057 South District, Nanshan District science and Technology Park, Guangdong, Shenzhen

Patentee before: SHENZHEN CLOU ELECTRONICS Co.,Ltd.