CN102542452A - Method and system for verifying transaction passwords of point-of-sale (POS) machine terminal - Google Patents

Method and system for verifying transaction passwords of point-of-sale (POS) machine terminal Download PDF

Info

Publication number
CN102542452A
CN102542452A CN2011103532232A CN201110353223A CN102542452A CN 102542452 A CN102542452 A CN 102542452A CN 2011103532232 A CN2011103532232 A CN 2011103532232A CN 201110353223 A CN201110353223 A CN 201110353223A CN 102542452 A CN102542452 A CN 102542452A
Authority
CN
China
Prior art keywords
pos machine
card number
code
extra
password
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Pending
Application number
CN2011103532232A
Other languages
Chinese (zh)
Inventor
王筱雨
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Individual
Original Assignee
Individual
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Individual filed Critical Individual
Priority to CN2011103532232A priority Critical patent/CN102542452A/en
Publication of CN102542452A publication Critical patent/CN102542452A/en
Pending legal-status Critical Current

Links

Images

Landscapes

  • Cash Registers Or Receiving Machines (AREA)
  • Management, Administration, Business Operations System, And Electronic Commerce (AREA)

Abstract

The invention belongs to the technical field of financial transaction security, and relates to a method and a system for verifying transaction passwords of a point-of-sale (POS) machine terminal. The method for verifying transaction passwords of the POS machine terminal comprises obtaining card number information of a bank card to be traded through the POS machine terminal, obtaining the card number information of a mobile terminal which is bounded with a card number of the bank card, sending a verification short message to a mobile terminal which registers the card number of the mobile terminal, obtaining recovery short message sent by the mobile terminal, obtaining transaction password information contained in the recovery short message, and verifying whether the password are right. The method for verifying transaction passwords of the POS machine terminal sends a transaction password to a server in the mode of the short message through the mobile terminal, is convenient in operation, prevents possibility that a password is illegally intercepted because the password is sent to a mobile phone through the server, and increases self-help transaction security of a bank.

Description

A kind of method and system that the trading password at POS machine terminal is verified
[technical field]
The invention belongs to financial transaction safety technique field, relate to a kind of method and system that the trading password at POS machine terminal is verified.
[background technology]
Bank individual financial business self-service terminal equipment occurs like ATM (ATM), point of sells (POS) etc. in daily life in a large number, has made things convenient for people in daily life the small amount financial business to be handled.But, some potential safety hazards have just been stayed because ATM and POS machine are in a kind of open user mode.For example: in the use of present ATM; The user inserts bank card in the ATM earlier; Propose the input password according to the screen on the ATM then, during the input password, must import through keyboard on the ATM or the PIN PAD on the touch-screen; After password authentification is passed through, the operation of financial business such as can withdrawing deposit and transfer accounts.The user needn't just can handle relevant financial business through the sales counter that is queued in manual service, though be very easily, because ATM quantity is huge; And it is unattended; Be in a kind of open state again,, have some lawless persons that camera or some CRs and password register just stealthily are installed on ATM so just brought the problem of some securities; The password that people input on ATM is noted; And then obtain the card number information of this card of transacting business through additive method, through duplicating bank card, accomplish the work that cracks of the counterfeit and password of whole bank card; Thereby the money that will block is very easily taken away, brings property loss to the user of this card.Be that bank is equipped with the financial terminal to a kind of non-cash transaction of businessman such as the POS machine again; Can be used for non-cash consumption and transfer accounts; In when operation, with user's bank card at the card reading slot brush of POS machine down, the cipher input of inputing on the POS machine through the user is then imported password to the staff earlier; After password authentification is passed through, accomplish the financial transaction operation.Though the cipher input on the POS machine can move; To a certain degree limit the peeping and taking on the sly of lawless person; But may exist because the mismanagement of POS machine; Cause illegal businessman user's card number and password to be read out, and then reach the purpose of stealing fund on the subscriber card through duplicating bank card again through the POS machine of repacking.
So carrying out financial transaction through swiping the card, existing ATM machine and POS machine all have potential safety hazard; Main problem is that user's password is easy to stolen by the lawless person; And the existing potential safety hazard of POS machine is bigger; This is because the POS machine distributes extensively, is easy to be used for holding back user's the bank card information and the encrypted message of input after the repacking of illegal petty dealer family.
[summary of the invention]
The object of the invention is exactly in order to solve above-mentioned technical matters, to have proposed the method and system that a kind of new trading password to POS machine terminal is verified.The present invention sends to server with way of short messages with trading password through mobile phone, and is easy to operate, and because password sends to server through mobile phone, avoided password by the illegal possibility of intercepting and capturing, and improved the security of bank self-help transaction.
Concrete technical scheme of the present invention is following:
The present invention provides a kind of method that the trading password at POS machine terminal is verified, it is characterized in that this method comprises:
Obtain the card number information of bank card to be concluded the business through POS machine terminal;
Obtain the portable terminal card number information of binding with the card number of this bank card;
Portable terminal to this portable terminal card number of registration sends the checking note;
Obtain the answer short message that this portable terminal sends;
Obtain the trading password information that comprises in the said answer short message;
Verify whether said trading password is correct.
This method further comprises:
Send the whether correct message information of password to POS machine terminal and portable terminal.
This method further comprises:
Send the message information of password mistake to portable terminal;
Portable terminal to this portable terminal card number of registration sends the checking note once more.
Said checking note comprises extra-code information, and said POS machine terminal obtains the extra-code information that the user imports and sends to server authentication on POS machine terminal.
This method further comprises:
Send the message information of extra-code mistake to POS machine terminal;
POS machine terminal obtains the extra-code of user's input and sends to server and verifies once more.
This method further comprises:
After POS machine terminal obtains the card number information of bank card to be concluded the business, access the window that the trading password obtain manner is selected;
The portable terminal that passes through that POS machine terminal obtains user's selection obtains the instruction of trading password and this instruction is sent to server;
After server obtains said instruction, obtain the portable terminal card number information of binding with the card number of this bank card.
The present invention also provides a kind of system that the trading password at POS machine terminal is verified, it is characterized in that this system comprises:
POS machine terminal is used to read the card number information of transactional cards and said card number information is sent to server;
Server, said server comprises:
Memory storage is used to store the card number information and the said portable terminal card number information of bank card, and the card number information of said bank card is corresponding one by one with the card number information of portable terminal;
Reading device is used to read and bank card corresponding mobile terminal card number information to be concluded the business;
The note dispensing device; Be used for sending the checking note to said portable terminal;
The note receiving trap; Be used for the answer short message that mobile terminal receive sends;
The code extraction device is used for extracting trading password information from said answer short message;
Password authentication device is used to verify whether said trading password is correct.
Said server also comprises:
The extra-code generating apparatus is used for generating at random extra-code and said extra-code is joined the checking note.
Said server also comprises:
The extra-code verifying attachment is used to obtain the extra-code information of POS machine terminal or portable terminal transmission and judge whether this extra-code is correct.
Beneficial technical effects of the present invention is:
The present invention obtains trading password through portable terminal, has avoided obtaining in the process of password through POS machine terminal, and trading password has been improved the security of transaction by the illegal problem of intercepting and capturing.
The present invention adopts way of short messages to obtain trading password; Because nearly all portable terminal all has the function of sending note, possess special hardware device and also need not portable terminal and special software is installed is realized through portable terminal input trading password, applied range so need not portable terminal; Technology popularization is got up very easy; Upgrade cost is low, and easy to operate, and universality is better.
The present invention is through being provided with extra-code and obtaining the extra-code that the user imports through POS machine terminal; The extra-code that server sends POS machine terminal is verified; Not only can reduce password in the illegal risk of intercepting and capturing of network transmission process quilt; Simultaneously can also avoid the lawless person to peep the problem of trading password, improve security.
[description of drawings]
Fig. 1 is the method flow diagram of the embodiment of the invention 1;
Fig. 2 is the system architecture diagram of the embodiment of the invention 1;
Fig. 3 is the method flow diagram of the embodiment of the invention 2;
Fig. 4 is the system architecture diagram of the embodiment of the invention 2;
Fig. 5 is the method flow diagram of the embodiment of the invention 3;
Fig. 6 is the system architecture diagram of the embodiment of the invention 3.
[embodiment]
The present invention provides a kind of method and system that the trading password at POS machine terminal is verified.The present invention sends to server with way of short messages with trading password through portable terminal, and is easy to operate, and because password sends to server through mobile phone, avoided password by the illegal possibility of intercepting and capturing, and improved the security of bank self-help transaction.
Below in conjunction with specific embodiment and Figure of description the present invention is done further to set forth and explanation:
Embodiment 1
As shown in Figure 1, present embodiment provides a kind of method that the trading password at POS machine terminal is verified, this method comprises the steps:
S11: the card number information that obtains bank card to be concluded the business through POS machine terminal;
This step is specially: when the user carried out bankcard consumption through the POS machine, the card number information of the bank card of user's brush was read at POS machine terminal, and gave the server of network side through Network Transmission with said card number information.
S12: obtain the portable terminal card number information of binding with the card number of this bank card;
This step is specially: server obtains the card number information of said bank card, and from the data in server storehouse, searches out the card number information of the mobile phone card that becomes corresponding relation with this bank card.Store the card number information collection of bank card and the card number information collection of mobile phone card in the said database, the integrated mapping one by one of card number information of the card number information set mobile phone card of said bank card.
S13: the portable terminal to this portable terminal card number of registration sends the checking note;
This step is specially: when server finds the card number information with the card number corresponding mobile phone card of this bank card from the data in server storehouse, through the sending short message by mobile phone of mobile radio communication to this mobile phone card of registration.For example: server can be to sending short message by mobile phone: " R. S. V. P. input password ", if user's trading password is 335876, it is 335876 that user then need import correct content.
S14: obtain the answer short message that this portable terminal sends;
This step is specially: after the user comprised the short message content of trading password information through the mobile phone answer, server obtained the answer short message that this mobile phone sends.
S15: obtain the trading password information that comprises in the said answer short message;
This step is specially: from answer short message, extract extra-code and the trading password information that comprises.
S16: verify whether said trading password is correct;
This step is specially: the correct trading password that trading password that will from the numeral of answer short message, extract and user reserve in server compares, and judges whether the trading password information that comprises in the answer short message is correct.
S17: send the whether correct message information of trading password to POS machine terminal and portable terminal.
This step is specially: if in the above-mentioned steps; Verify that said trading password is wrong trading password; S171 then: the information of trading password mistake is sent to portable terminal and POS machine terminal; After portable terminal and POS machine terminal receive said information, it is presented on the display screen.If in the above-mentioned steps; Verify that said trading password is correct trading password; S172 then: the information that trading password is correct sends to portable terminal and POS machine terminal; After portable terminal and POS machine terminal receive said information, it is presented on the display screen, and guides user gets into the operation of next step transaction.
As shown in Figure 2, present embodiment also provides a kind of system that the trading password at POS machine terminal is verified, this system comprises:
POS machine terminal 1 is used to read the card number information of transactional cards and said card number information is sent to server;
Said POS machine terminal comprises:
Card number reading device 11 is used to read the card number information of transactional cards;
Card number information dispensing device 12 is used for said card number information is sent to server;
Server 2, said server comprises:
Card number information receiving trap 21 is used to receive the card number information that send at POS machine terminal;
Memory storage 22 is used to store the card number information and the said portable terminal card number information of bank card, and the card number information of said bank card is corresponding one by one with the card number information of portable terminal;
Reading device 23 is used to read and bank card corresponding mobile terminal card number information to be concluded the business;
Note dispensing device 24; Be used for sending the checking note to said portable terminal 3;
Note receiving trap 25; Be used for the answer short message that mobile terminal receive sends;
Trading password extraction element 26 is used for extracting trading password information from said answer short message;
Trading password demo plant 27 is used to verify whether said trading password is correct.
Whether correct message information dispensing device 28 be used for sending trading password message information to POS machine terminal;
Said POS machine terminal also comprises, whether correct message information receiving trap 13 be used to receive trading password that said server sends message information.
Display device 14 shows the information that extra-code and trading password be whether correct.
Embodiment 2
On the basis of the foregoing description 1, present embodiment adopts the method for extra-code and trading password simultaneous verification, and than only adopting the trading password checking, its security is higher.Concrete, as shown in Figure 3, present embodiment provides a kind of method that the trading password at POS machine terminal is verified, and this method comprises the steps:
S21: the card number information that obtains bank card to be concluded the business through POS machine terminal;
This step is specially: when the user withdrew the money transaction through ATM, the card number information of the bank card of user's insertion was read at POS machine terminal, and gave the server of network side through Network Transmission with said card number information.
S22: obtain the portable terminal card number information of binding with the card number of this bank card;
This step is specially: server obtains the card number information of said bank card, and from the data in server storehouse, searches out the card number information of the mobile phone card that becomes corresponding relation with this bank card.Store the card number information collection of bank card and the card number information collection of mobile phone card in the said database, the integrated mapping one by one of card number information of the card number information set mobile phone card of said bank card.The bindings of the card number of said mobile phone card and the card number of bank card is just to accomplish in advance.
S23: the portable terminal to this portable terminal card number of registration sends the checking note, and said checking note comprises extra-code information;
This step is specially: when server found the card number information with the card number corresponding mobile phone card of this bank card from the data in server storehouse, through the sending short message by mobile phone of mobile radio communication to this mobile phone card of registration, short message content comprised extra-code information.Said extra-code changes at any time, sends to mobile phone at random, and for example: server can be to sending short message by mobile phone: " R. S. V. P. password; extra-code is 34 ", if user's trading password is 335876, it is 335876 that user then need import correct content at portable terminal; And need import extra-code " 34 " and user on the POS machine when concluding the business next time; Server might be to sending short message by mobile phone: " R. S. V. P. password, extra-code are 324 ", if user's trading password is 335876; Then the user need to import correct content at portable terminal be 335876, and need on the POS machine, import extra-code " 324 ".
S24: obtain the answer short message that this portable terminal sends;
This step is specially: after the user comprised the short message content of trading password information through the mobile phone answer, server obtained the answer short message that this mobile phone sends.
S25: obtain the trading password information that comprises in the said answer short message;
S26: whether checking institute trading password is correct;
S27: said POS machine terminal obtains the extra-code information that the user imports and sends to server authentication on POS machine terminal;
S28: send the whether correct message information of extra-code to POS machine terminal;
This step is specially: if in the above-mentioned steps; Verify that said extra-code is wrong extra-code, then the information with the extra-code mistake sends to POS machine terminal, after POS machine terminal receives said information; It is presented on the display screen, to give the user with prompting.And the prompting user re-enters extra-code, and POS machine terminal obtains the extra-code of user's input and sends to server and verifies once more.If in the above-mentioned steps; Verify that said extra-code is correct extra-code, then that extra-code is correct information sends to POS machine terminal, after POS machine terminal receives said information; It is presented on the display screen, and guides user gets into the operation of next step transaction.
As shown in Figure 4, present embodiment also provides a kind of system that the trading password at POS machine terminal is verified, this system comprises:
POS machine terminal 1 is used to read the card number information of transactional cards and said card number information is sent to server;
Said POS machine terminal comprises:
Card number reading device 11 is used to read the card number information of transactional cards;
Card number information dispensing device 12 is used for said card number information is sent to server;
Server 2, said server comprises:
Card number information receiving trap 21 is used to receive the card number information that send at POS machine terminal;
Memory storage 22 is used to store the card number information and the said portable terminal card number information of bank card, and the card number information of said bank card is corresponding one by one with the card number information of portable terminal;
Reading device 23 is used to read and bank card corresponding mobile terminal card number information to be concluded the business;
Extra-code generating apparatus 29 is used for generating at random extra-code and said extra-code is joined the checking note;
Note dispensing device 24; Be used for sending the checking note to said portable terminal 3;
Note receiving trap 25; Be used for the answer short message that mobile terminal receive sends;
Trading password extraction element 26 is used for extracting trading password information from said answer short message;
Extra-code extraction element 210 is used to obtain the extra-code information that the POS machine sends;
Trading password demo plant 27 is used to verify whether said trading password is correct;
Extra-code demo plant 211 is used to verify whether said extra-code is correct;
Whether correct message information dispensing device 28 be used for sending extra-code and trading password message information to POS machine terminal;
Said POS machine terminal also comprises, whether correct message information receiving trap 13 be used to receive extra-code that said server sends and trading password message information.
When POS machine terminal receives extra-code for wrong message information, can allow the user to import extra-code once more and verify through POS machine terminal, so said POS machine terminal also comprises:
Display device 14 is used to transfer the extra-code input frame and the extra-code that displays it;
Extra-code deriving means 15 is used to obtain the extra-code of user's input and sends to server and verifies once more.
When POS machine terminal receives trading password for wrong message information, can allow the user to import trading password once more and verify through mobile phone.
When to receive extra-code and trading password be correct message information at POS machine terminal, it is presented on the display screen, and guides user gets into next step operation.So said display device 14 also is used to show the information that extra-code and trading password be whether correct.
Embodiment 3
On the basis of embodiment 2, the selection window that the trading password input mode is set on POS machine terminal supplies the user to select, and combines actual conditions to select server to obtain the mode of trading password to make things convenient for the user.For example work as the user and leave behind mobile phone, when perhaps the user does not have mobile phone, can allow the user to select through POS machine terminal input trading password.Concrete, as shown in Figure 5, present embodiment provides a kind of method that the trading password at POS machine terminal is verified, and this method comprises the steps:
S31: the card number information that obtains bank card to be concluded the business through POS machine terminal;
This step is specially: when the user withdrew the money transaction through ATM, the card number information of the bank card of user's insertion was read at POS machine terminal, and gave the server of network side through Network Transmission with said card number information.Server is judged this bank card through the card number information of bank card and whether has been bound the mobile phone card; If said bank card binding has the mobile phone card; Then get into the operation of next step,, then directly access the password input frame and supply user's input if bank card is not bound the mobile phone card.
S32: access the window that the trading password obtain manner is selected;
This step is specially: obtain the card number information of bank card to be concluded the business at ATM after; ATM accesses the window confession user operation that the trading password obtain manner is selected;, the user can select when leaving behind mobile phone or do not have mobile phone through ATM input trading password; When the user selected through ATM, ATM accessed the password input frame and supplies user's input.When the user selects through mobile phone input trading password, carry out next step operation.
The portable terminal that passes through that S33:POS machine terminal obtains user's selection obtains the instruction of trading password and this instruction is sent to server;
S34: obtain the portable terminal card number information of binding with the card number of this bank card;
This step is specially: after server obtained said instruction, server obtained the card number information of said bank card, and from the data in server storehouse, searched out the card number information of the mobile phone card that becomes corresponding relation with this bank card.Store the card number information collection of bank card and the card number information collection of mobile phone card in the said database, the integrated mapping one by one of card number information of the card number information set mobile phone card of said bank card.The bindings of the card number of said mobile phone card and the card number of bank card is just to accomplish in advance.
S35: the portable terminal to this portable terminal card number of registration sends the checking note;
This step is specially: when server found the card number information with the card number corresponding mobile phone card of this bank card from the data in server storehouse, through the sending short message by mobile phone of mobile radio communication to this mobile phone card of registration, short message content comprised extra-code information.Said extra-code changes at any time, sends to mobile phone at random, and for example: server can be to sending short message by mobile phone: " R. S. V. P. extra-code 34+ password "; If user's trading password is 335876; It is 34335876 that user then need import correct content, and the user is when concluding the business next time, and server might be to sending short message by mobile phone: " R. S. V. P. extra-code 324+ password "; If user's trading password is 335876, then the user need to import correct content be 324335876.And putting in order of extra-code and trading password also can change, and for example: server can be to sending short message by mobile phone: " R. S. V. P. password+extra-code 32, if user's trading password is 335876, then the user need to import correct content be 33587632.Owing to adopted the extra-code of change and putting in order of trading password, trading password is difficult to intercepted and captured by illegal, even the content of answer short message is intercepted and captured by illegal, the lawless person also is difficult to obtain trading password information accurately.
S36: obtain the answer short message that this portable terminal sends;
This step is specially: after the user included the short message content of extra-code and trading password information through the mobile phone answer, server obtained the answer short message that this mobile phone sends.
S37: obtain the extra-code and the trading password information that comprise in the said answer short message;
This step is specially: according to the rule of predefined return information, from answer short message, extract extra-code and the trading password information that comprises.For example; If the reply content of setting is the trading password that the extra-code of 2 figure places adds 6 figure places before; And extra-code then need extract the front two of the numeral in the short message content and verify as extra-code in the front of trading password, verifies as trading password for back 6; If the digit in the short message content must be right certainly, then judges has been imported wrong extra-code or trading password.
S38: verify whether said extra-code and trading password be correct;
This step is specially: the extra-code that comprises in the numeral that will from the numeral of answer short message, extract contrasts; Judge whether the extra-code of replying is correct; The correct trading password that trading password that will from the numeral of answer short message, extract and user reserve in server compares, and judges whether the trading password information that comprises in the answer short message is correct.
After whether checking said extra-code and trading password be correct, to the whether correct message information of POS machine terminal transmission extra-code and trading password.
This step is specially: if in the above-mentioned steps; Verify that said extra-code and trading password are wrong extra-code and trading password, then the information with extra-code and trading password mistake sends to ATM, after ATM receives said information; It is presented on the display screen; Giving the user with prompting, and inform that the user gets into the operation that next step re-enters, S393: ATM is transferred the extra-code input frame and is displayed it and imports extra-code once more for the user when ATM sends the message information of extra-code mistake; After the user imports extra-code once more; The S394:ATM machine sends to server with the extra-code that obtains and verifies once more, if the trading password mistake, S391: the message information that sends the trading password mistake to ATM sends the checking note to this mobile phone simultaneously once more.If in the above-mentioned steps; Verify that said extra-code and trading password are correct extra-code and trading password; S392 then: extra-code and the correct information of trading password are sent to ATM; ATM is presented at it on display screen after receiving said information, and guides user gets into the operation of next step transaction.
As shown in Figure 6, present embodiment also provides a kind of system that the trading password at POS machine terminal is verified, this system comprises:
POS machine terminal 1 is used to read the card number information of transactional cards and said card number information is sent to server;
Said POS machine terminal comprises:
Card number reading device 11 is used to read the card number information of transactional cards;
Card number information dispensing device 12 is used for said card number information is sent to server;
Server 2, said server comprises:
Card number information receiving trap 21 is used to receive the card number information that send at POS machine terminal;
Analysis and judgement device 212 is used for judging this bank card through the card number information of bank card and whether has bound the mobile phone card;
Dispensing device 213 as a result, and the result who is used for whether bank card is bound the mobile phone card sends to POS machine terminal;
Command reception device 214 is used to receive the instruction that portable terminal 3 obtains trading password of passing through of POS machine terminal transmission;
Memory storage 22 is used to store the card number information and the said portable terminal card number information of bank card, and the card number information of said bank card is corresponding one by one with the card number information of portable terminal;
Reading device 23 is used to read and bank card corresponding mobile terminal card number information to be concluded the business;
Extra-code generating apparatus 29 is used for generating at random extra-code and said extra-code is joined the checking note;
Note dispensing device 24; Be used for sending the checking note to said portable terminal;
Note receiving trap 25; Be used for the answer short message that mobile terminal receive sends;
Trading password extraction element 26 is used for extracting trading password information from said answer short message;
Extra-code extraction element 210 is used for extracting extra-code information from said answer short message;
Trading password demo plant 27 is used to verify whether said trading password is correct;
Extra-code demo plant 211 is used to verify whether said extra-code is correct;
Whether correct message information dispensing device 28 be used for sending extra-code and trading password message information to POS machine terminal;
Said POS machine terminal also comprises, whether correct message information receiving trap 13 be used to receive extra-code that said server sends and trading password message information.
When POS machine terminal receives extra-code for wrong message information, can allow the user to import extra-code once more and verify through POS machine terminal, so said POS machine terminal also comprises:
Display device 14 is used to transfer the extra-code input frame and the extra-code that displays it;
Extra-code deriving means 15 is used to obtain the extra-code of user's input and sends to server and verifies once more.
When POS machine terminal receives trading password for wrong message information, can allow the user to import trading password once more and verify through mobile phone.
When to receive extra-code and trading password be correct message information at POS machine terminal, it is presented on the display screen, and guides user gets into next step operation.So said display device 14 also is used to show the information that extra-code and trading password be whether correct.
Said POS machine terminal also comprises:
Receiving trap 16 as a result, and whether the bank card that is used for the reception server transmission binds the result of mobile phone card;
Instruction deriving means 17 is used for generating password input mode according to the result whether said bank card binds the mobile phone card and selects window, and generates the instruction of obtaining trading password through portable terminal according to user's selection.
Need to prove; Those skilled in the art can also expect other technical scheme easily to the above embodiments; As long as these technical schemes in concept of the present invention, should be equal to the technical scheme of this patent, belong to the protection domain of this patent.

Claims (9)

1. method that the trading password at POS machine terminal is verified is characterized in that this method comprises:
Obtain the card number information of bank card to be concluded the business through POS machine terminal;
Obtain the portable terminal card number information of binding with the card number of this bank card;
Portable terminal to this portable terminal card number of registration sends the checking note;
Obtain the answer short message that this portable terminal sends;
Obtain the trading password information that comprises in the said answer short message;
Verify whether said trading password is correct.
2. the method that the trading password at POS machine terminal is verified according to claim 1 is characterized in that this method further comprises:
Send the whether correct message information of password to POS machine terminal and portable terminal.
3. the method that the trading password at POS machine terminal is verified according to claim 2 is characterized in that this method further comprises:
Send the message information of password mistake to portable terminal;
Portable terminal to this portable terminal card number of registration sends the checking note once more.
4. according to the arbitrary described method that the trading password at POS machine terminal is verified of claim 1-3; It is characterized in that; Said checking note comprises extra-code information, and said POS machine terminal obtains the extra-code information that the user imports and sends to server authentication on POS machine terminal.
5. the method that the trading password at POS machine terminal is verified according to claim 4 is characterized in that this method further comprises:
Send the message information of extra-code mistake to POS machine terminal;
POS machine terminal obtains the extra-code of user's input and sends to server and verifies once more.
6. the method that the trading password at POS machine terminal is verified according to claim 4 is characterized in that this method further comprises:
After POS machine terminal obtains the card number information of bank card to be concluded the business, access the window that the trading password obtain manner is selected;
The portable terminal that passes through that POS machine terminal obtains user's selection obtains the instruction of trading password and this instruction is sent to server;
After server obtains said instruction, obtain the portable terminal card number information of binding with the card number of this bank card.
7. system that the trading password at POS machine terminal is verified is characterized in that this system comprises:
POS machine terminal is used to read the card number information of transactional cards and said card number information is sent to server;
Server, said server comprises:
Memory storage is used to store the card number information and the said portable terminal card number information of bank card, and the card number information of said bank card is corresponding one by one with the card number information of portable terminal;
Reading device is used to read and bank card corresponding mobile terminal card number information to be concluded the business;
The note dispensing device; Be used for sending the checking note to said portable terminal;
The note receiving trap; Be used for the answer short message that mobile terminal receive sends;
The code extraction device is used for extracting trading password information from said answer short message;
Password authentication device is used to verify whether said trading password is correct.
8. the system that the trading password at POS machine terminal is verified according to claim 7 is characterized in that said server also comprises:
The extra-code generating apparatus is used for generating at random extra-code and said extra-code is joined the checking note.
9. the system that the trading password at POS machine terminal is verified according to claim 8 is characterized in that said server also comprises:
The extra-code verifying attachment is used to obtain the extra-code information of POS machine terminal or portable terminal transmission and judge whether this extra-code is correct.
CN2011103532232A 2011-11-09 2011-11-09 Method and system for verifying transaction passwords of point-of-sale (POS) machine terminal Pending CN102542452A (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN2011103532232A CN102542452A (en) 2011-11-09 2011-11-09 Method and system for verifying transaction passwords of point-of-sale (POS) machine terminal

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN2011103532232A CN102542452A (en) 2011-11-09 2011-11-09 Method and system for verifying transaction passwords of point-of-sale (POS) machine terminal

Publications (1)

Publication Number Publication Date
CN102542452A true CN102542452A (en) 2012-07-04

Family

ID=46349290

Family Applications (1)

Application Number Title Priority Date Filing Date
CN2011103532232A Pending CN102542452A (en) 2011-11-09 2011-11-09 Method and system for verifying transaction passwords of point-of-sale (POS) machine terminal

Country Status (1)

Country Link
CN (1) CN102542452A (en)

Cited By (13)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN103679460A (en) * 2013-12-10 2014-03-26 阮桂芳 Secure network transaction method
CN103903336A (en) * 2014-03-27 2014-07-02 深圳钱盒信息技术有限公司 Card-swiping payment method, card-swiping payment system, merchant client side and payment server
WO2014146286A1 (en) * 2013-03-22 2014-09-25 Wong Hoiling Secure payment system and method for bank card by using real-time communication
CN104380327A (en) * 2012-07-20 2015-02-25 英特尔公司 Techniques for out-of-band transaction verification
CN104392349A (en) * 2014-11-13 2015-03-04 中国建设银行股份有限公司 Mobile payment method, device and system
CN104636911A (en) * 2015-02-13 2015-05-20 深圳支付界科技有限公司 Clear-text-free password input method and system
CN105427100A (en) * 2015-11-11 2016-03-23 姜律羌 Bank card transaction method, apparatus and system
CN106228361A (en) * 2016-07-18 2016-12-14 深圳怡化电脑股份有限公司 A kind of password acquisition methods, system, financial self-service equipment and finance self-help system
CN107077668A (en) * 2014-10-20 2017-08-18 哈瑞克思信息科技公司 System and method for providing payment services
CN107690677A (en) * 2017-08-02 2018-02-13 福建联迪商用设备有限公司 A kind of cashier's machine mode of payment and terminal
CN108596605A (en) * 2013-02-06 2018-09-28 天地融科技股份有限公司 Smart card with electronic signature functionality
CN110704254A (en) * 2019-09-03 2020-01-17 福建升腾资讯有限公司 Key controller, method and system for automatically testing POS transaction at low cost
CN110837628A (en) * 2018-08-16 2020-02-25 比亚迪股份有限公司 Encryption and decryption method and device for terminal equipment, computer equipment and storage medium

Citations (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101458794A (en) * 2007-12-10 2009-06-17 国际商业机器公司 System for enhancing payment safety, method thereof and payment center
WO2010101476A1 (en) * 2009-03-02 2010-09-10 Encap As Method and computer program for generation and verification of otp between server and mobile device using multiple channels
CN101980310A (en) * 2010-11-08 2011-02-23 中国电信股份有限公司 Online consumption account-based non-contact payment method and system

Patent Citations (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101458794A (en) * 2007-12-10 2009-06-17 国际商业机器公司 System for enhancing payment safety, method thereof and payment center
WO2010101476A1 (en) * 2009-03-02 2010-09-10 Encap As Method and computer program for generation and verification of otp between server and mobile device using multiple channels
CN101980310A (en) * 2010-11-08 2011-02-23 中国电信股份有限公司 Online consumption account-based non-contact payment method and system

Cited By (14)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN104380327A (en) * 2012-07-20 2015-02-25 英特尔公司 Techniques for out-of-band transaction verification
CN108596605A (en) * 2013-02-06 2018-09-28 天地融科技股份有限公司 Smart card with electronic signature functionality
WO2014146286A1 (en) * 2013-03-22 2014-09-25 Wong Hoiling Secure payment system and method for bank card by using real-time communication
CN103679460A (en) * 2013-12-10 2014-03-26 阮桂芳 Secure network transaction method
CN103903336A (en) * 2014-03-27 2014-07-02 深圳钱盒信息技术有限公司 Card-swiping payment method, card-swiping payment system, merchant client side and payment server
CN107077668A (en) * 2014-10-20 2017-08-18 哈瑞克思信息科技公司 System and method for providing payment services
CN104392349A (en) * 2014-11-13 2015-03-04 中国建设银行股份有限公司 Mobile payment method, device and system
CN104636911A (en) * 2015-02-13 2015-05-20 深圳支付界科技有限公司 Clear-text-free password input method and system
CN105427100A (en) * 2015-11-11 2016-03-23 姜律羌 Bank card transaction method, apparatus and system
CN106228361A (en) * 2016-07-18 2016-12-14 深圳怡化电脑股份有限公司 A kind of password acquisition methods, system, financial self-service equipment and finance self-help system
CN107690677A (en) * 2017-08-02 2018-02-13 福建联迪商用设备有限公司 A kind of cashier's machine mode of payment and terminal
WO2019023988A1 (en) * 2017-08-02 2019-02-07 福建联迪商用设备有限公司 Payment method and terminal for cash register
CN110837628A (en) * 2018-08-16 2020-02-25 比亚迪股份有限公司 Encryption and decryption method and device for terminal equipment, computer equipment and storage medium
CN110704254A (en) * 2019-09-03 2020-01-17 福建升腾资讯有限公司 Key controller, method and system for automatically testing POS transaction at low cost

Similar Documents

Publication Publication Date Title
CN102542452A (en) Method and system for verifying transaction passwords of point-of-sale (POS) machine terminal
CN104504562B (en) A kind of method of mobile payment and system
US10515362B2 (en) Methods and apparatus for card transactions
CN101783039B (en) Method and terminal for controlling security of financial transactions
CN104599408B (en) Third party's account ATM withdrawal method and system based on dynamic two-dimension code
US20090150248A1 (en) System for enhancing payment security, method thereof and payment center
US20110016047A1 (en) Financial transaction system, automated teller machine (atm), and method for operating an atm
CN105590194A (en) Offline payment method and payment system
CN102194178A (en) Payment processing system, method and device
CN103903131A (en) Method and system for achieving electronic transaction based on graphic code
CN101916478A (en) Method for automatically acquiring, verifying and inputting dynamic password in normal short message by client
CN110050285A (en) Utilize the card payment authorization method and system of the mobile terminal of the holder of mobile phone fiscard
US11948135B2 (en) Casino cash system, apparatus and method utilizing integrated circuit cards
US11900345B2 (en) Financial terminal that automatically reconfigures into different financial processing terminal types
CN106330888B (en) The method and device of payment safety in a kind of guarantee the Internet line
CN101872513A (en) Data processing method, device and system based on POS (Point-Of-Sale) machine
JP4851161B2 (en) Automatic teller machine, transaction processing system, portable terminal, transaction processing method, and program
CN111080284B (en) Mobile payment code scanning payment method and customer payment terminal based on two-way verification
CN102271039A (en) Payment processing system, method and device
CN104574691B (en) A kind of method for processing business and system based on automatic teller machine
CN103430199B (en) Secure payment system using a mobile phone, and payment method using same
JPWO2002075676A1 (en) Automatic transaction apparatus and transaction method therefor
CN103871163A (en) Composited financial transaction method and system
WO2012136032A1 (en) Method and system for verifying transaction password on bank self-service terminal
JP2002140646A (en) Method for deciding card utilization propriety

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
RJ01 Rejection of invention patent application after publication

Application publication date: 20120704

RJ01 Rejection of invention patent application after publication