CN102509037B - Trading system, method and device - Google Patents

Trading system, method and device Download PDF

Info

Publication number
CN102509037B
CN102509037B CN201110305212.7A CN201110305212A CN102509037B CN 102509037 B CN102509037 B CN 102509037B CN 201110305212 A CN201110305212 A CN 201110305212A CN 102509037 B CN102509037 B CN 102509037B
Authority
CN
China
Prior art keywords
transaction
dynamic
transaction content
module
password
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Active
Application number
CN201110305212.7A
Other languages
Chinese (zh)
Other versions
CN102509037A (en
Inventor
吴雪春
朱华均
钮毅
陈剑星
李燕
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Beijing Higinet Technology Co Ltd
Original Assignee
Beijing Higinet Technology Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Family has litigation
First worldwide family litigation filed litigation Critical https://patents.darts-ip.com/?family=46221120&utm_source=google_patent&utm_medium=platform_link&utm_campaign=public_patent_search&patent=CN102509037(B) "Global patent litigation dataset” by Darts-ip is licensed under a Creative Commons Attribution 4.0 International License.
Application filed by Beijing Higinet Technology Co Ltd filed Critical Beijing Higinet Technology Co Ltd
Priority to CN201110305212.7A priority Critical patent/CN102509037B/en
Publication of CN102509037A publication Critical patent/CN102509037A/en
Application granted granted Critical
Publication of CN102509037B publication Critical patent/CN102509037B/en
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Abstract

The invention provides a trading system, a method and a device. The trading system comprises a trading terminal, a dynamic token and a remote server, wherein the trading terminal is used for receiving the trade content of a user, sending the trade content to the remote server and displaying a dynamic image; the dynamic token is used for receiving an optical signal sent by the dynamic image, obtaining the trade content according to the optical signal and generating a second dynamic password according to the trade content; the remote server is used for receiving the trade content, generating a first dynamic password according to the trade content, receiving the second dynamic password and verifying whether the first dynamic password and the second dynamic password are matched to judge whether to trade; the remote server stores a service strategy; and the service strategy determines the trading terminal or remote server to generate a dynamic image. According to the invention, the trade content can be quickly input into the dynamic token, the operation steps of the user are reduced, and the operation difficulty is reduced. Moreover, the risk of tampering the user trade is reduced.

Description

Transaction system, method and device
Technical field
The present invention relates to field of information security technology, particularly a kind of transaction system, method and device.
Background technology
In order to the go-between solved in process of exchange revises the safety problem of transaction, existing solution is generally when conventional dynamic token generates dynamic password, using transaction content (as account and the amount of money etc.) as one of input factor producing dynamic password.
The shortcoming that prior art exists is that need on dynamic token, to increase numeric keypad to input transaction content, this method operation steps is many, and the complicated transaction content of input is as very difficult in Chinese character etc.
Summary of the invention
Object of the present invention is intended at least solve one of above-mentioned technological deficiency.
For achieving the above object, the embodiment of first aspect present invention proposes a kind of transaction system, comprising: transaction terminal, for receiving the transaction content of user, and the transaction content of described user is sent to remote server, and display dynamic image; Dynamic token, the light signal that the dynamic image for receiving the display of described transaction terminal sends, and the transaction content of described user is obtained according to described light signal, and generate the second dynamic password according to described transaction content; And remote server, for receiving the transaction content of described user, and generate the first dynamic password according to the described transaction content received, and receive the second dynamic password of described dynamic token generation, and verify whether described first dynamic password and the second dynamic password mate to judge whether to conclude the business, wherein, described remote server storage has service strategy, and described service strategy determines that described transaction terminal or described remote server generate described dynamic image.
According to the transaction system of the embodiment of the present invention, be input to dynamic token by the transaction content received by transaction terminal with the form of light signal, decrease user operation step and reduce input difficulty, improve the Consumer's Experience using dynamic token further.In addition, user by transaction field inspection and can confirm trading value, reduces the risk that customer transaction is tampered.
The embodiment of second aspect present invention proposes a kind of dynamic token, comprise: photosensitive receiver module, for the light signal that the dynamic image receiving transaction terminal display produces, and described light signal is converted to digital signal, wherein said light signal comprises transaction content; Signal processing module, for processing to obtain described transaction content to described digital signal; Transaction content display module, for showing described transaction content; Password computing module, for generating dynamic password according to described transaction content; With password display module, for showing the dynamic password that described password computing module generates.
According to the dynamic token of inventive embodiments, the light signal sent by light activated element reception transaction terminal, to obtain the transaction content of user, is decreased user operation step and reduces input difficulty, improving the Consumer's Experience using dynamic token further.In addition, device is simple, and be easy to manufacture, cost is lower.
The embodiment of third aspect present invention proposes a kind of transaction terminal, comprising: MIM message input module, for receiving the transaction content of user; Password load module, for inputting the dynamic password that dynamic token generates; Communication module, for communicating that with remote server the transaction content of described user and described dynamic password are sent to described remote server and receiving the dynamic image that described remote server sends; Coding module, during for determining that when described remote server described transaction terminal generates dynamic image, carries out encoding with information generated packet according to the transaction content of described user; Computer image genration module, for generating dynamic image according to described information packet; And display module, for showing described dynamic image.
According to the transaction terminal of the embodiment of the present invention, by the customer transaction content after coding is shown in the mode of dynamic image, transaction content can be input in dynamic token fast.
The embodiment of fourth aspect present invention proposes a kind of remote server, comprising: determination module, for generating dynamic image according to predetermined service strategy determination transaction terminal or remote server; Information receiving module, for receiving the transaction content of the user that transaction terminal sends; Coding module, during for determining that when described determination module described remote server generates dynamic image, carries out encoding with information generated packet according to the transaction content of described user; Computer image genration module, for generating described dynamic image according to described information packet; Image sending module, for being sent to transaction terminal by described dynamic image; Password generated module, for generating the first dynamic password according to the transaction content of described user; Password receiver module, for receiving the second dynamic password that dynamic token generates; And authentication module, for verifying whether described first dynamic password mates to judge whether to conclude the business with described second dynamic password.
By the remote server of the embodiment of the present invention, the generation of coding to transaction content and dynamic image can be realized, reduce the requirement to the processing power of transaction terminal, and determine whether transaction is carried out by verifying whether dynamic password mates, ensure the security of transaction.
The embodiment of fifth aspect present invention proposes a kind of method of commerce, comprises the following steps: transaction terminal receives the transaction content of user; The transaction content of described user is sent to remote server by described transaction terminal; Described remote server generates the first dynamic password according to described transaction content; Described remote server carries out coding information generated packet according to described transaction content, and generates dynamic image according to described information packet; Described dynamic image is sent to described transaction terminal by described remote server; Described transaction terminal shows described dynamic image; Dynamic token receives the light signal that described dynamic image produces; Described dynamic token obtains described transaction content according to described light signal; Described dynamic token generates the second dynamic password according to described transaction content; User judges that whether the transaction content that described dynamic token obtains is correct; If the transaction content that described dynamic token obtains is correct, then described second dynamic password is inputed to described transaction terminal by described user; Described second dynamic password is sent to described remote server by described transaction terminal; Whether the first dynamic password described in described remote server verification mates with described second dynamic password; And if described first dynamic password mates with described second dynamic password, then determine to conclude the business.
The embodiment of sixth aspect present invention also proposes another kind of method of commerce, comprises the following steps: transaction terminal receives the transaction content of user; Described transaction terminal carries out coding and information generated packet to described transaction content; Described transaction terminal is according to described information packet display dynamic image; The transaction content of described user is sent to remote server by described transaction terminal; Described remote server generates the first dynamic password according to the transaction content of described user; Dynamic token receives the light signal that described dynamic image produces; Described dynamic token obtains described transaction content according to described light signal; Described dynamic token generates the second dynamic password according to described transaction content; User judges that whether described transaction content is correct; If described transaction content is correct, then described second dynamic password is inputed to described transaction terminal by described user; Described second dynamic password is sent to described remote server by described transaction terminal; Whether the first dynamic password described in described remote server verification mates with described second dynamic password; And if described first dynamic password mates with described second dynamic password, then determine to conclude the business.
According to the method for commerce of the embodiment of the present invention, be input to dynamic token by the transaction content received by transaction terminal with the form of light signal, decrease user operation step and reduce input difficulty, improve the Consumer's Experience using dynamic token further.In addition, user by transaction field inspection and can confirm trading value, reduces the risk that customer transaction is tampered.
The aspect that the present invention adds and advantage will part provide in the following description, and part will become obvious from the following description, or be recognized by practice of the present invention.
Accompanying drawing explanation
The present invention above-mentioned and/or additional aspect and advantage will become obvious and easy understand from the following description of the accompanying drawings of embodiments, wherein:
Fig. 1 is the schematic diagram of the transaction system of one embodiment of the invention;
Fig. 2 is the structural representation of the transaction terminal of one embodiment of the invention;
Fig. 3 is the schematic diagram of the remote server of one embodiment of the invention;
Fig. 4 is the display interface of the transaction terminal of one embodiment of the invention;
Fig. 5 is the sequential chart of the transaction terminal transmission data of one embodiment of the invention;
Fig. 6 is the schematic diagram of the information packet of one embodiment of the invention;
Fig. 7 is the schematic diagram of the dynamic token of one embodiment of the invention;
Fig. 8 is the schematic diagram of the photosensitive receiver module of one embodiment of the invention;
Fig. 9 is the schematic diagram of the signal processing module of one embodiment of the invention;
Figure 10 is the sequential chart of the dynamic token reception data of one embodiment of the invention;
Figure 11 is the schematic diagram of the transaction terminal of one embodiment of the invention;
Figure 12 is the schematic diagram of the remote server of one embodiment of the invention;
Figure 13 is the process flow diagram of the method for commerce of one embodiment of the invention; And
Figure 14 is the process flow diagram of the method for commerce of another embodiment of the present invention.
Embodiment
Be described below in detail embodiments of the invention, the example of described embodiment is shown in the drawings, and wherein same or similar label represents same or similar element or has element that is identical or similar functions from start to finish.Being exemplary below by the embodiment be described with reference to the drawings, only for explaining the present invention, and can not limitation of the present invention being interpreted as.
Fig. 1 is the structural representation of the transaction system of the embodiment of the present invention.As shown in Figure 1, this transaction system comprises: transaction terminal 1, dynamic token 2 and remote server 3.
Wherein, transaction content for receiving the transaction content of user, and is sent to remote server 3 by transaction terminal 1, and display dynamic image.The light signal that dynamic token 2 sends for the dynamic image receiving transaction terminal 1 display, and the transaction content of user is obtained according to described light signal, and generate the second dynamic password according to transaction content.Remote server 3 receives the transaction content of the user that transaction terminal 1 sends, and generate the first dynamic password according to the transaction content of the user received, and receive the second dynamic password of dynamic token 2 generation, and verify whether the first dynamic password and the second dynamic password mate to judge whether to conclude the business, wherein, remote server 3 stores service strategy, can determine that transaction terminal 1 generates dynamic image or remote server 3 generates dynamic image according to this service strategy.
The transaction system of the embodiment of the present invention is described in detail below in conjunction with Fig. 2 to Figure 10.
Fig. 2 is the schematic diagram of the transaction terminal of one embodiment of the invention.As shown in Figure 2, this transaction terminal 1 can comprise: MIM message input module 110, password load module 120, communication module 130, second coding module 140, second Computer image genration module 150 and display module 160.
Particularly, MIM message input module 110 is for receiving the transaction content of user, and in an embodiment of the present invention, transaction content can comprise account, dealing money etc.The second dynamic password that password load module 120 generates for inputting dynamic token 2.The second dynamic password that communication module 130 receives with the transaction content of user MIM message input module 110 received and password load module 120 for communicating with remote server 3 is sent to remote server 3 and receives the dynamic image that remote server 3 sends.Second coding module 140, for when remote server 3 determines that transaction terminal 1 generates dynamic image, carries out encoding with information generated packet according to the transaction content of user.Second Computer image genration module 150 is for generating dynamic image according to information packet.Display module 160 is for showing dynamic image.Should be understood that the transaction content of user and the second dynamic password are only sent to remote server 3 by communication module 130 when service strategy determination transaction terminal 1 generates dynamic image.
Fig. 3 is the schematic diagram of the remote server of one embodiment of the invention.As shown in Figure 3, this remote server 3 can comprise: determination module 310, information receiving module 320, first coding module 330, first Computer image genration module 340, image sending module 350, password generated module 360, password receiver module 370 and authentication module 380.
Particularly, determination module 310 is for generating dynamic image according to service strategy determination transaction terminal 1 or remote server 3.Information receiving module 320 is for receiving the transaction content of the user of transaction terminal 1 transmission.First coding module 330 is connected with determination module 310 and information receiving module 320 respectively, for when determination module 310 determines that remote server 3 generates dynamic image, to encode and according to coding result information generated packet to transaction content.First Computer image genration module 340 is connected with the first coding module 330, for generating dynamic image according to information packet.Image sending module 350 is connected with the first Computer image genration module 340, for generated dynamic image is sent to transaction terminal 1.Password generated module 360 is connected with information receiving module 320, for generating the first dynamic password according to the transaction content of the user received, particularly can according to traditional dynamic password generating algorithm generate dynamic password time using the transaction content of user as one of input factor, repeat no more herein.Password receiver module 370 is connected with transaction terminal 1, for receiving the second dynamic password that dynamic token 2 generates.Authentication module 380 is connected with password generated module 360 and password receiver module 370 respectively, for verifying whether the first dynamic password and the second dynamic password mate, and when the first dynamic password and the second dynamic password coupling, determine to conclude the business, otherwise abort operation.
Fig. 4 is the display interface of the transaction terminal 1 of one embodiment of the invention.As shown in Figure 4, this transaction terminal 1 is made up of four viewing areas, and wherein a region of upper left is used as synchronizing function, and three regions of upper right, lower-left and bottom right are used as data function.When data transmit, retaining zone black and white Alternation Display, data area display needs the data bit transmitted.As needed the data bit transmitted to be 1, then display white; As needed the data bit transmitted to be 0, then show black.
Fig. 5 is the sequential chart of one embodiment of the invention, and wherein high level represents display white, low level representative display black.When needing the data transmitted to be 101010 ... time, three regions of upper right, lower-left and bottom right first show white, black, white, then show black, white, black, by that analogy.
In the above-described embodiments, three data areas are adopted to be to accelerate data transfer rate.Should be understood that the data area that can also adopt other quantity, such as one, two, four or more.Should also be understood that dynamic image region also can other colors of Alternation Display, do not limit in the present invention, as long as its size of current ensureing that dynamic token 2 exports according to the difference of color different (after a while detailed description).In addition, in order to ensure that dynamic token 2 correctly can receive data, first should show data area, then showing retaining zone.
It should be noted that, in order to ensure correct transmission and receive data, except above-mentioned correct data bit transmits except sequential, between transaction terminal 1 and dynamic token 2, also need a reliable data transfer protocol.Because dynamic token 2 needs the dynamic image viewing area ability reception information of aiming at transaction terminal 1, therefore the information displaying of transaction terminal 1 and the receives information of dynamic token 1 can not be just at once synchronous when data transmit at the beginning, primary need ceaselessly circulates at transaction terminal 1 and sends packet for this reason, and secondary need introduces initial code, preamble code and cyclic redundancy check (CRC) code when data transmit.
Be illustrated in figure 6 the schematic diagram of the information packet of one embodiment of the invention.This information packet comprises: initial code, preamble code, transaction content code length, transaction content coding and cyclic redundancy check (CRC) code.Wherein, transaction content coding comprises transaction field information and trading value information.Particularly, can specify the coding that each transaction field is corresponding in advance, thus, dynamic token 2 after receiving the data, can obtain the trading value that each transaction field is corresponding.
Should be understood that in embodiments of the present invention, transaction terminal 1 can be computer, also can be mobile phone, TV etc.Should also be understood that the generation of coding and dynamic image can be carried out at transaction terminal 1, also can carry out at remote server 3.When carrying out at remote server 3, can reduce the requirement of the data-handling capacity of transaction terminal 1, this is favourable for such as the transaction terminals such as mobile phone 1.
Fig. 7 is the schematic diagram of the dynamic token 2 of one embodiment of the invention.As shown in Figure 7, this dynamic token 2 can comprise: photosensitive receiver module 210, signal processing module 220, transaction content display module 230, password computing module 240 and password display module 250.
The light signal that photosensitive receiver module 210 produces for the dynamic image receiving transaction terminal 1, and light signal is converted to digital signal.Signal processing module 220 is connected with photosensitive receiver module 210, for processing to obtain transaction content to digital signal.Transaction content display module 230 is connected with signal processing module 220, for showing transaction content.Password computing module 240 is connected with signal processing module 220, for generating the second dynamic password according to transaction content.Password display module 250 is connected with password computing module 240, for showing described second dynamic password.
Particularly, as shown in Figure 8, photosensitive receiver module 210 can comprise phototriode 211 and resistance 212.The light signal that phototriode 211 produces for receiving dynamic image, and according to light signal output photoelectric stream.Resistance 212 is connected between phototriode 211 and signal processing module 220, inputs to signal processing module 220 for photocurrent being converted to voltage signal.
There is the black-white colors figure flashed on the display screen of transaction terminal 1 after, by the position alignment figure of phototriode 211, now phototriode 211 will collect the conversion of color, different electric currents is exported according to the difference of color, such as, the electric current of white can be larger, and the electric current of black can be smaller.Particularly, when light is radiated at the base of phototriode 211, excite the electron-hole pair of generation to add the concentration of minority carrier, the reverse saturation current of collector junction is increased greatly, this just makes the collector junction generation current of phototriode 211.This pulse current injectingt emitter junction amplifies, and becomes the electric current between the collector of phototriode 211 and emitter, i.e. the photocurrent of phototriode 211.Then, this photocurrent converts voltage to by resistance 212 and exports to signal processing module 220.
Because the response time of phototriode 211 is enough fast, therefore in one embodiment of the invention, adopt time interval Alternation Display white light and the black of about 30ms, phototriode 211 can receive the high-low voltage in the same time interval, after high-low voltage is converted to low and high level, just can receive the data message of transaction terminal 1.
Fig. 9 is the schematic diagram of the signal processing module of one embodiment of the invention.As shown in Figure 9, signal processing module 220 can comprise: filtering circuit 221, edging trigger unit 222, sampling unit 223, reading unit 224 and converting unit 225.
Filtering circuit 221 is for processing the digital signal received.In reality transmission and receiving course, owing to being subject to the interference of the factors such as external environment condition, can not receive the oscillogram same with transaction terminal 1 at dynamic token 2, the oscillogram that dynamic token 2 receives often has some burrs and pulse signal to occur, needs to be filtered.
Edging trigger unit 222, for when the level of synchronizing signal changes, produces edge triggered interruption.Sampling unit 223, for when producing edge triggered interruption, is sampled to data-signal with predetermined sampling interval, and wherein sampling interval is less than the time interval of dynamic image display.The code word of sampled value determination transaction terminal 1 current transmission of reading unit 224 for obtaining according to sampling unit.Converting unit 225 is for carrying out binary to decimal conversion to obtain transaction content to the data received.
As shown in Figure 10, line synchro and data line have pulse to exist, but width is all very narrow, when transaction terminal 1 adopts the time interval of about 30ms, generally 5ms can not be greater than, for this reason, in DRP data reception process, after the embodiment of the present invention adopts synchronous edge mode triggered interrupts, if the interruption produced produces interruption again in 5ms, this terminal can be ignored, filter out by synchronizing pulse.Due within a time interval, general pulse occurs at most two, so useful high-low level time width generally all can at more than 20ms, within this time interval, adopt the mode of sampling to read the low and high level value of data area, when the value read be 1 number of times more time, receiving data is 1, on the contrary, when read value be 0 number of times more time, receive data be 0.Thus, efficiently avoid factor data regional pulse to exist and the situation of false readings.
In addition, dynamic token 2 of the present invention also can be introduced circulation when there is any mistake and again receive and the function of timeout (time-out judge) mechanism, ensures success ratio and the garbled-reception in particular cases of reception.
By the transaction system of the embodiment of the present invention, fast transaction content can be input to dynamic token, and the transaction content comprising Chinese character can be inputted, decrease user operation step and reduce input difficulty, improve the Consumer's Experience using dynamic token further.Further, user by transaction field inspection and can confirm trading value, reduces the risk that customer transaction is tampered.
According to above-described embodiment, the present invention also proposes a kind of dynamic token.
See Fig. 7 to Figure 10, this dynamic token comprises: photosensitive receiver module 210, signal processing module 220, transaction content display module 230, password computing module 240 and password display module 250.
Wherein, the light signal that photosensitive receiver module 210 produces for the dynamic image receiving transaction terminal 1, and light signal is converted to digital signal.Signal processing module 220 is connected with photosensitive receiver module 210, for processing to obtain transaction content to digital signal.Transaction content display module 230 is connected with signal processing module 220, for showing transaction content.Password computing module 240 is connected with signal processing module 220, for generating the second dynamic password according to transaction content.Password display module 250 is connected with password computing module 240, for showing described second dynamic password.
Particularly, photosensitive receiver module 210 can comprise phototriode 211 and resistance 212.The light signal that phototriode 211 produces for receiving dynamic image, and according to light signal output photoelectric stream.Resistance 212 is connected between phototriode 211 and signal processing module 220, inputs to signal processing module 220 for photocurrent being converted to voltage signal.
Signal processing module 220 can comprise filtering circuit 221, edging trigger unit 222, sampling unit 223, reading unit 224 and converting unit 225.Filtering circuit 221 is for processing the digital signal received.Edging trigger unit 222, for when the level of synchronizing signal changes, produces edge triggered interruption.Sampling unit 223, for when producing edge triggered interruption, is sampled to data-signal with predetermined sampling interval, and wherein sampling interval is less than the predetermined time interval of dynamic image display.The code word of sampled value determination transaction terminal 1 current transmission of reading unit 224 for obtaining according to sampling unit.Converting unit 225 is for carrying out binary to decimal conversion to obtain transaction content to the data received.
According to the dynamic token of the embodiment of the present invention, the light signal sent by light activated element reception transaction terminal, to obtain the transaction content of user, is decreased user operation step and reduces input difficulty, improving the Consumer's Experience using dynamic token further.In addition, device is simple, and be easy to manufacture, cost is lower.
According to above-described embodiment, the present invention also proposes a kind of transaction terminal.
Figure 11 is the schematic diagram of the transaction terminal of one embodiment of the invention.As shown in figure 11, this transaction terminal comprises: MIM message input module 410, password load module 420, communication module 430, coding module 440, Computer image genration module 450 and display module 460.
Wherein, MIM message input module 410 is for receiving the transaction content of user, and in an embodiment of the present invention, transaction content can comprise account, dealing money etc.The dynamic password that password load module 420 generates for inputting dynamic token.Communication module 430 communicates with remote server and is sent to remote server with the dynamic password transaction content of user and dynamic token generated and receives the dynamic image that remote server sends.Coding module 440, for when remote server determination transaction terminal generates dynamic image, carries out encoding with information generated packet according to the transaction content of user.Computer image genration module 450 is for generating dynamic image according to information packet.Display module 460 is connected with Computer image genration module 450, for showing dynamic image.
In one embodiment of the invention, information packet comprises: initial code, preamble code, transaction content code length, transaction content coding and cyclic redundancy check (CRC) code, and wherein said transaction content coding comprises transaction field information and trading value information.
According to the transaction terminal of the embodiment of the present invention, by transaction content is shown in the mode of dynamic image, transaction content can be input in dynamic token fast.
According to above-described embodiment, the present invention also proposes a kind of remote server.
Figure 12 is the schematic diagram of the remote server of one embodiment of the invention.As shown in figure 12, this remote server comprises: determination module 510, information receiving module 520, coding module 530, Computer image genration module 540, image sending module 550, password generated module 560, password receiver module 570 and authentication module 580.
Wherein, determination module 510 is for generating dynamic image according to predetermined service strategy determination remote server or transaction terminal.Information receiving module 520 is for receiving the transaction content of the user of transaction terminal transmission.Coding module 530 is connected with information receiving module 520 with determination module 510 respectively, during for determining that when determination module 510 remote server generates dynamic image, to encode and according to coding result information generated packet to transaction content.Computer image genration module 540 is connected with coding module 530, for generating dynamic image according to information packet.Image sending module 550 is connected with Computer image genration module 540, for generated dynamic image is sent to transaction terminal.Password generated module 560 is connected with information receiving module 520, for generating the first dynamic password according to the transaction content of the user received.Password receiver module 570 is connected with transaction terminal, for receiving the second dynamic password of the dynamic token generation sent by transaction terminal.Authentication module 580 is connected with password generated module 560 and password receiver module 570 respectively, for verifying whether the first dynamic password and the second dynamic password mate, and when the first dynamic password and the second dynamic password coupling, determine to conclude the business, otherwise abort operation.
By the remote server of the embodiment of the present invention, the generation of coding to transaction content and dynamic image can be realized, reduce the requirement to the processing power of transaction terminal, and determine whether transaction is carried out by verifying whether dynamic password mates, ensure the security of transaction.
For realizing above-described embodiment, the present invention also proposes a kind of method of commerce.
Figure 13 is the process flow diagram of the method for commerce of one embodiment of the invention.In this embodiment, transaction terminal can be computer, also can be mobile phone, TV etc.As shown in figure 13, this method of commerce comprises the following steps:
Step S101, transaction terminal receives the transaction content of user.
In one embodiment of the invention, the transaction content of user can comprise account and dealing money etc.
Step S102, the transaction content of user is sent to remote server by transaction terminal.
Step S103, remote server generates the first dynamic password according to the transaction content of user.
Can refer to traditional dynamic password generating algorithm particularly, repeat no more herein.
Step S104, remote server carries out coding information generated packet according to the transaction content of user.
Wherein, information packet can comprise: initial code, preamble code, transaction content code length, transaction content coding and cyclic redundancy check (CRC) code, and wherein said transaction content coding comprises transaction field information and trading value information.Thus, dynamic token, after receiving transaction content, can be shown to the trading value that each transaction field of user is corresponding respectively.
Step S105, remote server generates dynamic image according to information packet.
Step S106, dynamic image is sent to transaction terminal by remote server.
Step S107, transaction terminal display dynamic image.
Wherein, dynamic image has two kinds of different colors, such as black and white.When data are 1, display white; When data are 0, display black.
In addition, in one embodiment of the invention, dynamic image can comprise four image-regions, and one of them image-region is for showing synchronous code, and other three regions are for showing described information packet.Thus, the transfer rate of data can be accelerated.
It will also be appreciated that to ensure that dynamic token correctly can receive data, in one embodiment of the invention, first showing data area, then showing retaining zone.
Step S108, the light signal that the dynamic image that dynamic token receives transaction terminal display produces.
Step S109, dynamic token obtains the transaction content of user according to light signal.
Such as, when after black-white colors figure transaction terminal occurring flash, by the phototriode position alignment image of dynamic token, now triode will collect the change of color, export different electric currents according to the difference of color, the electric current of such as white can be comparatively large, and the electric current of black can be less.The electric current of different size can export the high-low voltage varied in size by resistance.Again high-low voltage is converted into low and high level, just can receives the data message of transaction terminal.
Step S110, dynamic token generates the second dynamic password according to transaction content.
Similar with step S103, can refer to traditional dynamic password generating algorithm particularly, repeat no more herein.
Step S111, user judges that whether the transaction content that dynamic token obtains is correct.
After dynamic token gets transaction content, can show on the viewing area of dynamic token.Thus, user can judge that whether the transaction content that dynamic token gets is correct.
Step S112, if the transaction content that dynamic token obtains is correct, then the second dynamic password is inputed to transaction terminal by user.If judge that transaction content is incorrect, then abort operation.Thus, the risk that customer transaction is tampered is reduced.
Step S113, the second dynamic password is sent to remote server by transaction terminal.
Step S114, whether remote server verification first dynamic password mates with the second dynamic password.
Step S115, if the first dynamic password mates with the second dynamic password, then determines to perform transaction.
If the first dynamic password does not mate with the second dynamic password, then abort operation.
It should be understood that the execution of some step in this method embodiment there is no obvious sequencing, such as, first can perform step S103, then perform step S104.Again such as, just the first dynamic password is generated according to the transaction content of user when remote server needs to carry out password authentication after receiving the second dynamic password.
According to the method for commerce of the embodiment of the present invention, be input to dynamic token by the transaction content received by transaction terminal with the form of light signal, decrease user operation step and reduce input difficulty, improve the Consumer's Experience using dynamic token further.In addition, user by transaction field inspection and can confirm trading value, reduces the risk that customer transaction is tampered.
Due to the coding of transaction content with generate dynamic image and can carry out at remote server, also can realize at transaction terminal, therefore the present invention also proposes another kind of method of commerce.
Figure 14 is the process flow diagram of the method for commerce of another embodiment of the present invention.As shown in figure 14, in another embodiment of the present invention, this method of commerce comprises the following steps:
Step S201, transaction terminal receives the transaction content of user.
In one embodiment of the invention, the transaction content of user can comprise account and dealing money etc.
Step S202, transaction terminal carries out coding and information generated packet to transaction content.
Wherein, information packet can comprise: initial code, preamble code, transaction content code length, transaction content coding and cyclic redundancy check (CRC) code, and wherein said transaction content coding comprises transaction field information and trading value information.Thus, dynamic token, after receiving transaction content, can be shown to the trading value that each transaction field of user is corresponding respectively.
Step S203, transaction terminal shows dynamic image according to information packet.
Wherein, dynamic image has two kinds of different colors, such as black and white.When data are 1, display white; When data are 0, display black.
In addition, in one embodiment of the invention, dynamic image can comprise four image-regions, and one of them image-region is for showing synchronous code, and other three regions are for showing described information packet.Thus, the transfer rate of data can be accelerated.
It will also be appreciated that to ensure that dynamic token correctly can receive data, in one embodiment of the invention, first showing data area, then showing retaining zone.
Step S204, the transaction content of user is sent to remote server by transaction terminal.
Step S205, remote server generates the first dynamic password according to the transaction content of user.
Can refer to traditional dynamic password generating algorithm particularly, repeat no more herein.
Step S206, the light signal that dynamic token receiving dynamic image produces.
Step S207, dynamic token obtains transaction content according to light signal.
Such as, when after black-white colors figure transaction terminal occurring flash, by the phototriode position alignment image of dynamic token, now triode will collect the change of color, export different electric currents according to the difference of color, the electric current of such as white can be comparatively large, and the electric current of black can be less.The electric current of different size can export the high-low voltage varied in size by resistance.Again high-low voltage is converted into low and high level, just can receives the data message of transaction terminal.
Step S208, dynamic token generates the second dynamic password according to transaction content.
Similar with step S205, be not described in detail herein.
Step S209, user judges that whether transaction content is correct.
After dynamic token gets transaction content, can show on a display screen.Thus, user judges that whether transaction content is correct.
Step S210, if transaction content is correct, then the second dynamic password is inputed to transaction terminal by user.
If transaction content is incorrect, then abort operation.Thus, the risk that customer transaction is tampered is reduced.
Step S211, the second dynamic password is sent to remote server by transaction terminal.
Step S212, whether remote server verification first dynamic password mates with the second dynamic password.
Step S213, if the first dynamic password mates with the second dynamic password, then determines to conclude the business.
If the first dynamic password does not mate with the second dynamic password, then abort operation.
It should be understood that the execution of some step in this method embodiment there is no obvious sequencing, such as, first can perform step S204, then perform step S202.Again such as, just the first dynamic password is generated according to the transaction content of user when remote server needs to carry out password authentication after receiving the second dynamic password.
According to the method for commerce of the embodiment of the present invention, be input to dynamic token by the transaction content received by transaction terminal with the form of light signal, decrease user operation step and reduce input difficulty, improve the Consumer's Experience using dynamic token further.In addition, user by transaction field inspection and can confirm trading value, reduces the risk that customer transaction is tampered.
Should be understood that the coding in embodiment of the method for the present invention, data transmission, dynamic image display and data receiver etc. can be identical with the description in system embodiment of the present invention, herein for simplicity, repeat no more.
Although illustrate and describe embodiments of the invention, for the ordinary skill in the art, be appreciated that and can carry out multiple change, amendment, replacement and modification to these embodiments without departing from the principles and spirit of the present invention, scope of the present invention is by claims and equivalency thereof.

Claims (11)

1. a transaction system, is characterized in that, comprising:
Transaction terminal, for receiving the transaction content of user, and the transaction content of described user is sent to remote server, and display dynamic image, wherein, described transaction terminal generates described dynamic image according to the first color of high level and low level second color;
Dynamic token, the light signal that the dynamic image for receiving the display of described transaction terminal sends, and the transaction content of described user is obtained according to described light signal, and generate the second dynamic password according to described transaction content; With
Remote server, for receiving the transaction content of described user, and generate the first dynamic password according to the described transaction content received, and receive the second dynamic password of described dynamic token generation, and verify whether described first dynamic password and the second dynamic password mate to judge whether to conclude the business, wherein, described remote server storage has service strategy, described service strategy determines that described transaction terminal or described remote server generate described dynamic image, described dynamic image is that described transaction terminal or described remote server generate according to information packet, described information packet is that described transaction terminal or described remote server carry out according to the transaction content of described user generation of encoding, wherein, described information packet comprises: initial code, preamble code, transaction content code length, transaction content coding and cyclic redundancy check (CRC) code, wherein said transaction content coding comprises transaction field information and trading value information.
2. transaction system according to claim 1, is characterized in that, described remote server comprises further:
Determination module, for determining that according to described service strategy described transaction terminal or described remote server generate dynamic image;
Information receiving module, for receiving the transaction content of described user;
First coding module, during for determining that when described determination module described remote server generates dynamic image, carries out encoding with information generated packet according to the transaction content of described user;
First Computer image genration module, for generating described dynamic image according to described information packet;
Image sending module, for being sent to described transaction terminal by described dynamic image;
Password generated module, for generating the first dynamic password according to the transaction content of described user;
Password receiver module, for receiving the second dynamic password that described dynamic token generates; With
Authentication module, for verifying whether described first dynamic password mates to judge whether to conclude the business with described second dynamic password.
3. transaction system according to claim 1, is characterized in that, described transaction terminal comprises further:
MIM message input module, for receiving the transaction content of described user;
Password load module, for inputting the second dynamic password that described dynamic token generates;
Communication module, for communicating that with described remote server the transaction content of described user and described second dynamic password are sent to described remote server and receiving the dynamic image that described remote server sends;
Second coding module, during for determining that when described remote server described transaction terminal generates dynamic image, carries out encoding with information generated packet according to the transaction content of described user;
Second Computer image genration module, for generating described dynamic image according to described information packet; With
Display module, for showing described dynamic image.
4. transaction system according to claim 1, is characterized in that, described dynamic token comprises further:
Photosensitive receiver module, for receiving the light signal that described dynamic image produces, and described light signal is converted to digital signal, wherein said light signal comprises transaction content;
Signal processing module, for processing to obtain described transaction content to described digital signal;
Transaction content display module, for showing described transaction content;
Password computing module, for generating the second dynamic password according to described transaction content; With
Password display module, for showing the second dynamic password that described password computing module generates.
5. transaction system according to claim 4, is characterized in that, described signal processing module comprises:
Filtering circuit, for carrying out filtering to described digital signal, wherein said digital signal comprises synchronizing signal and data-signal;
Edging trigger unit, for when the level of described synchronizing signal changes, produces edge triggered interruption;
Sampling unit, for when producing described edge triggered interruption, samples to described data-signal with predetermined sampling interval;
Reading unit, for the code word of the current transmission of sampled value determination transaction terminal obtained according to described sampling unit; With
Converting unit, the code word conversion for sending described transaction terminal obtains described transaction content.
6. a transaction terminal, is characterized in that, comprising:
MIM message input module, for receiving the transaction content of user;
Password load module, for inputting the dynamic password that dynamic token generates;
Communication module, for communicating that with remote server the transaction content of described user and described dynamic password are sent to described remote server and receiving the dynamic image that described remote server sends;
Coding module, during for determining that when described remote server described transaction terminal generates dynamic image, carry out encoding with information generated packet according to the transaction content of described user, wherein, described information packet comprises: initial code, preamble code, transaction content code length, transaction content coding and cyclic redundancy check (CRC) code, and wherein said transaction content coding comprises transaction field information and trading value information;
Computer image genration module, for generating dynamic image according to described information packet, wherein, described Computer image genration module generates described dynamic image according to the first color of high level and low level second color; With
Display module, for showing described dynamic image.
7. a dynamic token, is characterized in that, comprising:
Photosensitive receiver module, for the light signal that the dynamic image receiving transaction terminal display sends, wherein, described transaction terminal generates described dynamic image according to the first color of high level and low level second color, described dynamic image is that described transaction terminal generates according to information packet, described information packet is that described transaction terminal carries out according to the transaction content of user generation of encoding, wherein, described information packet comprises: initial code, preamble code, transaction content code length, transaction content coding and cyclic redundancy check (CRC) code, wherein said transaction content coding comprises transaction field information and trading value information, and described light signal is converted to digital signal, wherein said light signal comprises transaction content,
Signal processing module, for processing to obtain described transaction content to described digital signal;
Transaction content display module, for showing described transaction content;
Password computing module, for generating dynamic password according to described transaction content; With
Password display module, for showing the dynamic password that described password computing module generates.
8. dynamic token according to claim 7, is characterized in that, described signal processing module comprises:
Filtering circuit, for carrying out filtering to described digital signal, wherein said digital signal comprises synchronizing signal and data-signal;
Edging trigger unit, for when the level of described synchronizing signal changes, produces edge triggered interruption;
Sampling unit, for when producing described edge triggered interruption, samples to described data-signal with predetermined sampling interval;
Reading unit, for the code word of the current transmission of sampled value determination transaction terminal obtained according to described sampling unit; With
Converting unit, the code word conversion for sending described transaction terminal obtains described transaction content.
9. a remote server, is characterized in that, comprising:
Determination module, for generating dynamic image according to predetermined service strategy determination transaction terminal or remote server;
Information receiving module, for receiving the transaction content of the user that transaction terminal sends;
Coding module, during for determining that when described determination module described remote server generates dynamic image, carry out encoding with information generated packet according to the transaction content of described user, wherein, described information packet comprises: initial code, preamble code, transaction content code length, transaction content coding and cyclic redundancy check (CRC) code, and wherein said transaction content coding comprises transaction field information and trading value information;
Computer image genration module, for generating described dynamic image according to described information packet, wherein, described Computer image genration module generates described dynamic image according to the first color of high level and low level second color;
Image sending module, for being sent to transaction terminal by described dynamic image;
Password generated module, for generating the first dynamic password according to the transaction content of described user;
Password receiver module, for receiving the second dynamic password that dynamic token generates; With
Authentication module, for verifying whether described first dynamic password mates to judge whether to conclude the business with described second dynamic password.
10. a method of commerce, is characterized in that, comprises the following steps:
Transaction terminal receives the transaction content of user;
The transaction content of described user is sent to remote server by described transaction terminal;
Described remote server generates the first dynamic password according to described transaction content;
Described remote server carries out coding information generated packet according to described transaction content, and generate dynamic image according to described information packet, wherein, described information packet comprises: initial code, preamble code, transaction content code length, transaction content coding and cyclic redundancy check (CRC) code, wherein said transaction content coding comprises transaction field information and trading value information, and described remote server generates described dynamic image according to the first color of high level and low level second color;
Described dynamic image is sent to described transaction terminal by described remote server;
Described transaction terminal shows described dynamic image;
Dynamic token receives the light signal that described dynamic image produces;
Described dynamic token obtains described transaction content according to described light signal;
Described dynamic token generates the second dynamic password according to described transaction content;
User judges that whether the transaction content that described dynamic token obtains is correct;
If the transaction content that described dynamic token obtains is correct, then described second dynamic password is inputed to described transaction terminal by described user;
Described second dynamic password is sent to described remote server by described transaction terminal;
Whether the first dynamic password described in described remote server verification mates with described second dynamic password; And
If described first dynamic password mates with described second dynamic password, then determine to conclude the business.
11. 1 kinds of method of commerce, is characterized in that, comprise the following steps:
Transaction terminal receives the transaction content of user;
Described transaction terminal carries out coding and information generated packet to described transaction content, wherein, described information packet comprises: initial code, preamble code, transaction content code length, transaction content coding and cyclic redundancy check (CRC) code, and wherein said transaction content coding comprises transaction field information and trading value information;
Described transaction terminal is according to described information packet display dynamic image, and wherein, described transaction terminal generates described dynamic image according to the first color of high level and low level second color;
The transaction content of described user is sent to remote server by described transaction terminal;
Described remote server generates the first dynamic password according to the transaction content of described user;
Dynamic token receives the light signal that described dynamic image produces;
Described dynamic token obtains described transaction content according to described light signal;
Described dynamic token generates the second dynamic password according to described transaction content;
User judges that whether described transaction content is correct;
If described transaction content is correct, then described second dynamic password is inputed to described transaction terminal by described user;
Described second dynamic password is sent to described remote server by described transaction terminal;
Whether the first dynamic password described in described remote server verification mates with described second dynamic password; And
If described first dynamic password mates with described second dynamic password, then determine to conclude the business.
CN201110305212.7A 2011-10-10 2011-10-10 Trading system, method and device Active CN102509037B (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201110305212.7A CN102509037B (en) 2011-10-10 2011-10-10 Trading system, method and device

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201110305212.7A CN102509037B (en) 2011-10-10 2011-10-10 Trading system, method and device

Publications (2)

Publication Number Publication Date
CN102509037A CN102509037A (en) 2012-06-20
CN102509037B true CN102509037B (en) 2015-05-20

Family

ID=46221120

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201110305212.7A Active CN102509037B (en) 2011-10-10 2011-10-10 Trading system, method and device

Country Status (1)

Country Link
CN (1) CN102509037B (en)

Families Citing this family (9)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102377784B (en) 2011-11-24 2014-06-04 飞天诚信科技股份有限公司 Dynamic password identification method and system
CN102761360B (en) * 2012-06-29 2015-07-22 飞天诚信科技股份有限公司 Optical signal processing method and device
CN103346891A (en) * 2013-07-16 2013-10-09 北京旋极信息技术股份有限公司 Method for generating command in dkey tpass by light sensation
CN103368744A (en) * 2013-07-16 2013-10-23 北京旋极信息技术股份有限公司 Method and system for outputting password in dynamic token
CN103473678A (en) * 2013-08-30 2013-12-25 北京宏基恒信科技有限责任公司 Transaction system, method and device using human-computer interface
CN105721155B (en) * 2014-12-05 2019-01-25 北京握奇智能科技有限公司 A kind of data processing method and system of dynamic token
JP6495157B2 (en) * 2015-12-16 2019-04-03 Kddi株式会社 Communication system and communication method
WO2018082930A1 (en) * 2016-11-02 2018-05-11 Skeyecode Method for securely performing a sensitive operation using a non-secure terminal
CN108337035B (en) * 2018-02-05 2020-12-01 北京电子工程总体研究所 Satellite remote-measuring interruption processing method for remote-measuring downlink hot backup and seamless connection

Citations (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN1601911A (en) * 2004-10-10 2005-03-30 海信集团有限公司 Digital coding method using light flashing frequence to express information
CN102075547A (en) * 2011-02-18 2011-05-25 北京天地融科技有限公司 Dynamic password generating method and device and authentication method and system

Family Cites Families (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101046870A (en) * 2006-04-27 2007-10-03 陈龙军 Method for raising safety of transaction process using two-dimensional code for identifying local cipher
CN101106563A (en) * 2006-07-14 2008-01-16 Ge医疗系统环球技术有限公司 Service system
CN101710372B (en) * 2009-04-27 2012-03-28 深圳市江波龙电子有限公司 Method for verifying identity

Patent Citations (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN1601911A (en) * 2004-10-10 2005-03-30 海信集团有限公司 Digital coding method using light flashing frequence to express information
CN102075547A (en) * 2011-02-18 2011-05-25 北京天地融科技有限公司 Dynamic password generating method and device and authentication method and system

Also Published As

Publication number Publication date
CN102509037A (en) 2012-06-20

Similar Documents

Publication Publication Date Title
CN102509037B (en) Trading system, method and device
CN102377784B (en) Dynamic password identification method and system
CN100483361C (en) Terminal user interface testing method and device
CN103218740A (en) Trading system, method and device using two-dimension codes
CN103023643A (en) Dynamic password card and dynamic password generating method
CN102387020B (en) Dynamic password generating device as well as dynamic password implementing method and system
CN202650073U (en) Transaction system and dynamic token
CN101296441A (en) Method and device for scanning two-dimension bar code and transmitting message
CN109767205A (en) A kind of payment two-dimension code safe payment methods and system without re-authentication
CN201557173U (en) Set-top box applied to IPTV system
CN113596832A (en) Network connection establishing method and device, storage medium and electronic device
WO2014166255A1 (en) Method, device, and terminal for determining user interface language display of sim card
CN107122972B (en) A kind of working method and system of bluetooth card
CN114257443B (en) Special inter-intranet signature system, method and equipment for court
CN101478376A (en) Receiving method for satellite transmitted disaster pre-alarm information
CN109377209A (en) A kind of safe payment method and system based on visualization two dimensional code
US20180063710A1 (en) Authentication for device connection using visible patterns
CN104700305A (en) Method for acquiring two-dimensional code from optional input frame of Android platform
US7058308B2 (en) Method for communicating multimedia data between electronic devices by means of IR ray
CN111414604B (en) Authentication method, device, system and storage medium
CN202013593U (en) Electronic coupons system
CN111263344A (en) Method and system for connecting wireless local area network based on NFC message transmission and projection equipment
CN203706230U (en) Collector and mobile terminal
CN217157327U (en) Billing system based on information interaction between mobile terminal and self-service terminal
CN109801050A (en) A kind of mobile payment SDK and method of payment for online store

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
C14 Grant of patent or utility model
GR01 Patent grant