CN104102934A - Portable IC card read-write device, system and method - Google Patents

Portable IC card read-write device, system and method Download PDF

Info

Publication number
CN104102934A
CN104102934A CN201410325450.8A CN201410325450A CN104102934A CN 104102934 A CN104102934 A CN 104102934A CN 201410325450 A CN201410325450 A CN 201410325450A CN 104102934 A CN104102934 A CN 104102934A
Authority
CN
China
Prior art keywords
card
portable
card read
intelligent terminal
write
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Granted
Application number
CN201410325450.8A
Other languages
Chinese (zh)
Other versions
CN104102934B (en
Inventor
卢頔
麻晓波
周大文
耿良普
姚鑫
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Industrial and Commercial Bank of China Ltd ICBC
Original Assignee
Industrial and Commercial Bank of China Ltd ICBC
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Industrial and Commercial Bank of China Ltd ICBC filed Critical Industrial and Commercial Bank of China Ltd ICBC
Priority to CN201410325450.8A priority Critical patent/CN104102934B/en
Publication of CN104102934A publication Critical patent/CN104102934A/en
Application granted granted Critical
Publication of CN104102934B publication Critical patent/CN104102934B/en
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Abstract

The invention discloses a portable IC card read-write device, a system and a method. The portable IC card read-write device comprises a main control chip, a chip card reader, a memory cell, an encryption and decryption unit, a protocol conversion unit, an audio interface plug and a display screen, wherein the chip card reader collects card information from an IC card, transmits the card information to the main control chip and carries out a script writing-back operation to the IC card; the memory unit stores an equipment number, an equipment certificate, a communication key and a transaction key; the encryption and decryption unit adopts the communication key to encrypt and decrypt data transmitted between the portable IC card read-write device and an intelligent terminal; the audio interface plug is connected with the portable IC card read-write device and the intelligent terminal; the protocol conversion unit transmits an audio signal to the main control chip after the audio signal is converted into data, and the data is transmitted to the intelligent terminal after the data is converted into the audio signal; and the main control chip reads the equipment certificate, the equipment number and the transaction key and coordinates the chip card reader, the memory unit, the encryption and decryption unit and the display screen to act.

Description

A kind of portable IC card read-write equipment, system and method
Technical field
The invention relates to IC-card read-write technical field, particularly about a kind of portable IC card read-write equipment, system and method.
Background technology
Intelligent terminal is the general designation of having loaded the mobile device such as mobile phone and panel computer of intelligent operating system.Sell greatly from the mobile phone based on IOS operating system, emerge in large numbers like the mushrooms after rain to the smart mobile phone and the flat board that carry Android operating system, smart mobile phone based on Windows Phone8 and the panel computer based on Windwos8 till now, intelligent terminal market has tentatively presented the general layout in IOS, Android and tri-points of world of the WindowsPhone of Microsoft.That these intelligent terminals all have is easy to carry, network function is powerful, and can all kinds of APP application programs be installed according to user preferences, meets user's different demands.
Occurred at present the magnetic stripe card brushing card device based on intelligent terminal, not disposing in the environment of POS equipment, user can directly pass through this magnetic stripe card brushing card device bankcard consumption, very convenient.
But because intelligent terminal operates in open network environment, user can install various application voluntarily simultaneously.Also continuing to bring out out for wooden horse, the illegal software of mobile phone operating system as object to steal user profile, data, there is the risk being stolen in user's Transaction Information, accounts information, transaction key.Hacker can distort transaction, even can control user mobile phone, forges transaction, theft user fund.
Summary of the invention
The invention provides a kind of portable IC card read-write equipment, system and method, with the transaction of swiping the card easily, reduce the risk of swiping the card in process of exchange simultaneously.
To achieve these goals, the embodiment of the present invention provides a kind of portable IC card read-write equipment, and described portable IC card read-write equipment comprises: main control chip, smart card reader, storage unit, encryption/decryption element, conversion unit of protocol, audio interface plug and display screen; Described smart card reader, storage unit, encryption/decryption element and display screen connects described main control chip by internal circuit respectively; Described conversion unit of protocol connects described encryption/decryption element, and connects intelligent terminal by described audio interface plug;
Described smart card reader, for gathering card image from IC-card, is transferred to described main control chip by described card image, and described IC-card is carried out to script write back operations;
Described storage unit, for memory device numbering, device certificate, communication key and transaction key;
Described encryption/decryption element, for using described communication key to carry out Encrypt and Decrypt to the data of the transmission between described portable IC card read-write equipment and described intelligent terminal;
Described audio interface plug, for connecting described portable IC card read-write equipment and described intelligent terminal;
Described conversion unit of protocol, after the sound signal receiving by described audio interface plug is changed into data, be transferred to described main control chip, and be transferred to described intelligent terminal by described audio interface plug after the data of described main control chip transmission are converted into sound signal;
Described display screen, comprises card number, dealing money for showing, proceeds to account and the Transaction Information of the amount of money of transferring accounts;
Described main control chip, for from described storage unit fetch equipment certificate, device numbering and transaction key, and coordinates described smart card reader, storage unit, encryption/decryption element and display screen action.
In one embodiment, described portable IC card read-write equipment also comprises: control button, comprise acknowledgement key and cancel key, for confirming transaction or Cancelling Transaction.
In one embodiment, described portable IC card read-write equipment also comprises: relay indicating light, for showing the duty of described portable IC card read-write equipment, described duty comprises Card Reader, writes card and wait for.
In one embodiment, described portable IC card read-write equipment also comprises: power supply, is used to described portable IC card read-write equipment power supply.
To achieve these goals, the embodiment of the present invention also provides a kind of portable IC card read-write system, it is characterized in that, described portable IC card read-write system comprises: portable IC card read-write equipment, intelligent terminal and banking system, and described intelligent terminal is connected with described banking system by mobile cellular network or Internet network; Described portable IC card read-write equipment comprises:
Main control chip, smart card reader, storage unit, encryption/decryption element, conversion unit of protocol, audio interface plug and display screen; Described smart card reader, storage unit, encryption/decryption element and display screen connects described main control chip by internal circuit respectively; Described conversion unit of protocol connects described encryption/decryption element, and connects described intelligent terminal by described audio interface plug;
Described smart card reader, for gathering card image from IC-card, is transferred to described main control chip by described card image, and described IC-card is carried out to script write back operations;
Described storage unit, for memory device numbering, device certificate, communication key and transaction key;
Described encryption/decryption element, for using described communication key to carry out Encrypt and Decrypt to the data of the transmission between described portable IC card read-write equipment and described intelligent terminal;
Described audio interface plug, for connecting described portable IC card read-write equipment and described intelligent terminal;
Described conversion unit of protocol, after the sound signal receiving by described audio interface plug is changed into data, be transferred to described main control chip, and be transferred to described intelligent terminal by described audio interface plug after the data of described main control chip transmission are converted into sound signal;
Described display screen, comprises card number, dealing money for showing, proceeds to account and the Transaction Information of the amount of money of transferring accounts.
In one embodiment, described portable IC card read-write equipment also comprises: control button, comprise acknowledgement key and cancel key, for confirming transaction or Cancelling Transaction.
In one embodiment, described portable IC card read-write equipment also comprises: relay indicating light, for showing the duty of described portable IC card read-write equipment, described duty comprises Card Reader, writes card and wait for.
In one embodiment, described portable IC card read-write equipment also comprises: power supply, is used to described portable IC card read-write equipment power supply.
To achieve these goals, the embodiment of the present invention also provides a kind of portable IC card reading/writing method, is applied to above-mentioned portable IC card read-write system, it is characterized in that, described portable IC card reading/writing method comprises:
Send request of access by described audio interface plug to described IC-card read-write equipment;
Receive device certificate and the device numbering of described IC-card read-write equipment feedback by described audio interface plug;
Send to described banking system to carry out verification described device certificate and device numbering, and receive the check results that described banking system is returned;
If described check results is legal, prompting user inserts IC-card or close described smart card reader;
Receive by described audio interface plug the card image that described smart card reader reads from described IC-card;
Receive the authentication secret of user's input, and send to described banking system to carry out verification described card image and authentication secret;
Receive the check results of described banking system feedback, if described check results is correct, the Transaction Information that user is selected sends to described IC-card read-write equipment by described audio interface plug;
Receive transaction key and the described Transaction Information of described IC-card read-write equipment feedback by described audio interface plug, and described transaction key and described Transaction Information are sent to described banking system;
Receive the transaction processing object information of described banking system feedback, and judge that according to described transaction processing object information whether transaction is successful;
If so, send successful information machine write-back script by described audio interface plug to described IC-card read-write equipment, so that described IC-card read-write equipment carries out script write back operations.
To achieve these goals, the embodiment of the present invention also provides a kind of portable IC card reading/writing method, is applied to above-mentioned portable IC card read-write system, and described portable IC card reading/writing method comprises:
Receive the request of access that described intelligent terminal is initiated;
Read device certificate and the device numbering of storage according to described request of access, and send to described intelligent terminal by described audio interface plug after described device certificate and device numbering are converted to sound signal;
Read the card image of the IC-card of insertion or close described smart card reader, and described card image is sent to described intelligent terminal by described audio interface plug;
Receiving after the Transaction Information of described intelligent terminal transmission, read the transaction key of local storage, and the transaction key after described Transaction Information and encryption is sent to described intelligent terminal;
Receive the write-back script that described intelligent terminal sends, carry out script write back operations, generation script write-back result feedback is given described intelligent terminal.
The beneficial effect of the embodiment of the present invention is, the present invention has overcome current POS equipment greatly and has laid the conditional shortcoming in region, also overcome Web bank, Mobile banking, telephone bank etc. and needed the shortcoming of registering, if could the unrestricted shortcoming using after having overcome in prior art card and having increase also to need to repeat cabinet face to add simultaneously, can realize whenever and wherever possible, use the conclude the business function of (as consumed, transfer accounts, cancel, the return of goods etc.) of IC-card, and effectively control the risk existing in transaction, have great convenience for the user.
Brief description of the drawings
In order to be illustrated more clearly in the embodiment of the present invention or technical scheme of the prior art, to the accompanying drawing of required use in embodiment or description of the Prior Art be briefly described below, apparently, accompanying drawing in the following describes is only some embodiments of the present invention, for those of ordinary skill in the art, do not paying under the prerequisite of creative work, can also obtain according to these accompanying drawings other accompanying drawing.
Fig. 1 is the structural representation of the portable IC card read-write equipment of the embodiment of the present invention;
Fig. 2 is the portable IC card read-write system schematic diagram of the embodiment of the present invention;
Fig. 3 is the portable IC card reading/writing method process flow diagram of one embodiment of the invention;
Fig. 4 is the portable IC card reading/writing method process flow diagram of another embodiment of the present invention;
Fig. 5 is the portable IC card reading/writing method process flow diagram of further embodiment of this invention.
Embodiment
Below in conjunction with the accompanying drawing in the embodiment of the present invention, the technical scheme in the embodiment of the present invention is clearly and completely described, obviously, described embodiment is only the present invention's part embodiment, instead of whole embodiment.Based on the embodiment in the present invention, those of ordinary skill in the art, not making the every other embodiment obtaining under creative work prerequisite, belong to the scope of protection of the invention.
As shown in Figure 1, the embodiment of the present invention provides a kind of portable IC card read-write equipment, and described portable IC card read-write equipment comprises: main control chip 101, smart card reader 102, storage unit 103, encryption/decryption element 104, conversion unit of protocol 105, audio interface plug 106 and display screen 107.
Smart card reader 102, storage unit 103, encryption/decryption element 104 and display screen 107 connect main control chip 101 by internal circuit respectively.Conversion unit of protocol 105 connects encryption/decryption element 104, and connects intelligent terminal 111 by audio interface plug 106.Intelligent terminal 111 can be the portable terminal products such as mobile phone, panel computer, the APP application program that bank issues, authenticates is wherein installed, to carry out alternately with client.
Main control chip 101 can be MCU processor, can receive the information from modules such as smart card reader 102, storage unit 103, encryption/decryption element 104 and conversion unit of protocol 105 by internal circuit, and to above-mentioned modules issue an order, coordinate the work between modules.Main control chip 101 can be from storage unit 103 fetch equipment certificate, device numbering and transaction key.
Smart card reader 102 can be for gather card image from IC-card, and the card image collecting is transferred to main control chip 101 carries out subsequent treatment.Smart card reader 102 can also receive writing back after script that intelligent terminal 111 sends, and IC-card is carried out to script write back operations.
Smart card reader 102 can adopt IC-card read head or non-contact IC card read head, and the Card Type of read-write can comprise IC-card, rfid card etc.Can read the data that are stored in contact intelligent IC chip (IC-card) by IC-card read head; Can read the data of contactless smart IC chip (IC-card) card by the radio frequency of aerial radiation in non-contact IC card read head.Meanwhile, smart card reader 102 receives writing after order and data of main control chip 101, can also carry out write operation to IC-card.
Storage unit 103 can be for memory device numbering, device certificate and two group keys.The APP program of intelligent terminal is obtained device numbering and the device certificate in storage unit 103, intelligent terminal 111 uses device certificate to set up two-way SSL by network and banking system and links, as device certificate do not exist or device certificate illegal, banking system is refused its access.After two-way SSL link has been set up, in follow-up transaction, all need the device numbering that send in verifying smart terminal 111, if device numbering illegal (do not exist, state undesired as freezed to report the loss etc.) is refused continuous business.In one embodiment, two group keys are respectively communication key and transaction key.
Encryption/decryption element 104 can be for using communication key to carry out Encrypt and Decrypt to the data of the transmission between portable IC card read-write equipment and described intelligent terminal.Cryptographic algorithm can adopt the symmetry algorithm such as DES, 3DES, uses transaction key to be encrypted the transaction data after portable IC card read-write equipment is confirmed, cryptographic algorithm can adopt asymmetric arithmetic.In one embodiment, transaction key ciphering process also can use the signature authentication algorithm based on digital certificate to substitute.
It should be noted that the request between intelligent terminal 111 and portable IC card read-write equipment and reply and all need to use communication key to encrypt is responsible for encryption and decryption by encryption/decryption element 104.
Audio interface plug 106 connects portable IC card read-write equipment and intelligent terminal 111, mutually transmits for the data that realize between portable IC card read-write equipment and intelligent terminal, and audio interface plug 106 can be called the passage of data transmission.
Conversion unit of protocol 105 can be transferred to main control chip 101 after the sound signal receiving by audio interface plug 106 is changed into data, and the data that main control chip 101 is sent are transferred to intelligent terminal 111 by audio interface plug 106 after being converted into sound signal.
In the time carrying out trade confirmation, display screen 107 can show transaction key message, comprises card number, dealing money, proceeds to account, the amount of money etc. of transferring accounts, and reads confirmation for user.
In one embodiment, portable IC card read-write equipment also comprises: control button 108, connect main control chip 101 by internal circuit, control button 108 and comprise acknowledgement key and cancel key, for confirming transaction or Cancelling Transaction.Carry out consumption user, transfer accounts, cancel, when the operation such as the return of goods, need to press acknowledgement key and confirm transaction, or press cancel key and Cancel Transaction.Controlling button 108 is physical button, and its use can effectively avoid forging the generation of transaction.
In one embodiment, portable IC card read-write equipment also comprises: relay indicating light 109, connect main control chip 101 by internal circuit, relay indicating light 109 shows the duty of portable IC card read-write equipment, and duty can comprise Card Reader, write card and wait etc.
In one embodiment, portable IC card read-write equipment also comprises: power supply 110, and power supply 110 is the power supply of portable IC card read-write equipment, power supply 110 can adopt the lithium battery of changeable type.
Portable IC card read-write equipment of the present invention carries out read-write operation to chip card (IC-card), and compared with existing magnetic stripe card, chip card has advantages of transaction security, is difficult to be cloned, and can protect greatly bank client fund security.The advantages such as meanwhile, it is large that IC-card has information storage, and extensibility is strong, at present a lot of banks have issued IC-card in provisional capital, and IC-card is direction and the trend of bank card development.
Portable IC card read-write equipment of the present invention connects intelligent terminal, intelligent terminal connects after banking system, user can conclude the business, carry out reading and writing IC card, overcome current POS equipment large and lay the conditional shortcoming in region, also overcome Web bank, Mobile banking, telephone banks etc. need the shortcoming of registration, if could the unrestricted shortcoming using after having overcome in prior art card and having increase also to need to repeat cabinet face to add simultaneously, can realize and use IC-card to conclude the business (as consumption whenever and wherever possible, transfer accounts, cancel, return goods etc.) function, and the risk that effectively control exists in concluding the business, have great convenience for the user.
As shown in Figure 2, the embodiment of the present invention provides a kind of portable IC card read-write system, this portable IC card read-write system comprises: intelligent terminal 1, portable IC card read-write equipment 3 and banking system 2, intelligent terminal 1 is connected with banking system 2 by mobile cellular network or Internet network.
Intelligent terminal 1 can be the portable terminal products such as mobile phone, panel computer, and the APP application program that bank issues, authenticates is wherein installed, and carries out alternately with client.Banking system 2 provides bank finance service for client.
Portable IC card read-write equipment 3 is connected with intelligent terminal 1, and reading and writing information in IC-card 4 chips is provided.As shown in Figure 1, portable IC card read-write equipment comprises: main control chip 101, smart card reader 102, storage unit 103, encryption/decryption element 104, conversion unit of protocol 105, audio interface plug 106 and display screen 107.
Smart card reader 102, storage unit 103, encryption/decryption element 104 and display screen 107 connect main control chip 101 by internal circuit respectively.Conversion unit of protocol 105 connects encryption/decryption element 104, and connects intelligent terminal 111 by audio interface plug 106.
Main control chip 101 can be MCU processor, receive the information from modules such as smart card reader 102, storage unit 103, encryption/decryption element 104 and conversion unit of protocol 105 by internal circuit, to above-mentioned modules issue an order, coordinate the work between modules.Main control chip 101 can be from storage unit 103 fetch equipment certificate, device numbering and transaction key.
Smart card reader 102 can be for gather card image from IC-card, and the card image collecting is transferred to main control chip 101 carries out subsequent treatment.Smart card reader 102 can also receive writing back after script that intelligent terminal 111 sends, and IC-card is carried out to script write back operations.
Smart card reader 102 can adopt IC-card read head or non-contact IC card read head, and the Card Type of read-write can comprise IC-card, rfid card etc.Can read the data that are stored in contact intelligent IC chip (IC-card) by IC-card read head; Can read the data of contactless smart IC chip (IC-card) card by the radio frequency of aerial radiation in non-contact IC card read head.Meanwhile, smart card reader 102 receives writing after order and data of main control chip 101, can carry out write operation to IC-card.
Storage unit 103 can be for memory device numbering, device certificate and two group keys.The APP program of intelligent terminal is obtained device numbering and the device certificate in storage unit 103, intelligent terminal 111 uses device certificate to set up two-way SSL by network and banking system and links, as device certificate do not exist or device certificate illegal, banking system is refused its access; After link has been set up, in subsequent transaction, all need the device numbering that send in verifying smart terminal 111, if device numbering illegal (do not exist, state is undesired as freeze to report the loss etc.), refusal is concluded the business.In one embodiment, two group keys are respectively communication key and transaction key.
Encryption/decryption element 104 can be for using communication key to carry out Encrypt and Decrypt to the data of the transmission between portable IC card read-write equipment and described intelligent terminal.Cryptographic algorithm can adopt the symmetry algorithm such as DES, 3DES, uses transaction key to be encrypted the transaction data after portable IC card read-write equipment is confirmed, cryptographic algorithm can adopt asymmetric arithmetic.In one embodiment, transaction key ciphering process also can use the signature authentication algorithm based on digital certificate to substitute.
It should be noted that the request between intelligent terminal 111 and portable IC card read-write equipment and reply and all need to use communication key to encrypt is responsible for encryption and decryption by encryption/decryption element 104.
Audio interface plug 106 connects portable IC card read-write equipment and intelligent terminal 111, mutually transmits for the data that realize between portable IC card read-write equipment and intelligent terminal, and audio interface plug 106 can be called the passage of data transmission.
Conversion unit of protocol 105 can be transferred to main control chip 101 after the sound signal receiving by audio interface plug 106 is changed into data, and the data that main control chip 101 is sent are transferred to intelligent terminal 111 by audio interface plug 106 after being converted into sound signal.
In the time carrying out trade confirmation, display screen 107 can show transaction key message, comprises card number, dealing money, proceeds to account, the amount of money etc. of transferring accounts, and reads confirmation for user.
In one embodiment, portable IC card read-write equipment also comprises: control button 108, connect main control chip 101 by internal circuit, control button 108 and comprise acknowledgement key and cancel key, for confirming transaction or Cancelling Transaction.Carry out consumption user, transfer accounts, cancel, when the operation such as the return of goods, need to press acknowledgement key and confirm transaction, or press cancel key and Cancel Transaction.Controlling button 108 is physical button, and its use can effectively avoid forging the generation of transaction.
In one embodiment, portable IC card read-write equipment also comprises: relay indicating light 109, connect main control chip 101 by internal circuit, relay indicating light 109 shows the duty of described portable IC card read-write equipment, and duty can comprise Card Reader, write card and wait etc.
In one embodiment, portable IC card read-write equipment also comprises: power supply 110, and power supply 110 is the power supply of portable IC card read-write equipment, power supply 110 can adopt the lithium battery of changeable type.
Portable IC card read-write system of the present invention, can provide transaction operation for user, overcome current POS equipment large and lay the conditional shortcoming in region, also overcome Web bank, Mobile banking, telephone bank etc. and needed the shortcoming of registering, if could the unrestricted shortcoming using after having overcome in prior art card and having increase also to need to repeat cabinet face to add simultaneously, can realize whenever and wherever possible, use the conclude the business function of (as consumed, transfer accounts, cancel, the return of goods etc.) of IC-card, and effectively control the risk existing in transaction, have great convenience for the user.
As shown in Figure 3, the embodiment of the present invention provides a kind of portable IC card reading/writing method, and this portable IC card reading/writing method can be applied to the portable IC card read-write system shown in Fig. 1 and Fig. 2, and this portable IC card reading/writing method comprises:
Step 301: send request of access to IC-card read-write equipment by audio interface plug 106;
Step 302: the device certificate and the device numbering that receive IC-card read-write equipment feedback by audio interface plug 106;
Step 303: send to described banking system to carry out verification device certificate and device numbering, and receive the check results that described banking system is returned;
Step 304: if described check results is legal, prompting user inserts IC-card or close described smart card reader;
Step 305: receive the card image that described smart card reader reads from described IC-card by described audio interface plug;
Step 306: receive the authentication secret of user's input, and send to described banking system to carry out verification described card image and authentication secret;
Step 307: receive the check results of described banking system feedback, if described check results is correct, the Transaction Information that user is selected sends to described IC-card read-write equipment by described audio interface plug;
Step 308: receive transaction key and the described Transaction Information of described IC-card read-write equipment feedback by described audio interface plug, and described transaction key and described Transaction Information are sent to described banking system;
Step 309: receive the transaction processing object information of described banking system feedback, and judge that according to described transaction processing object information whether transaction is successful;
Step 310: if send successful information machine write-back script by described audio interface plug to described IC-card read-write equipment, so that described IC-card read-write equipment carries out script write back operations.
In portable IC card reading/writing method shown in Fig. 3, executive agent is intelligent terminal, and intelligent terminal can be the portable terminal products such as mobile phone, panel computer, and the APP application program that bank issues, authenticates is wherein installed, and carries out alternately with client.
In the flow process shown in Fig. 3, intelligent terminal and IC-card read-write equipment and banking system are carried out message exchange, obtain device certificate and the device numbering of IC-card, the banking system sending is carried out verification, and the card image that the reads IC-card operation of concluding the business, overcome current POS equipment large and lay the conditional shortcoming in region, also overcome Web bank, Mobile banking, telephone banks etc. need the shortcoming of registration, if could the unrestricted shortcoming using after having overcome in prior art card and having increase also to need to repeat cabinet face to add simultaneously, can realize whenever and wherever possible, use IC-card to conclude the business (as consumption, transfer accounts, cancel, return goods etc.) function, and the risk that effectively control exists in concluding the business, have great convenience for the user.
When concrete enforcement, in step 303, if the check results obtaining after banking system verification is legal, just carry out step 304, otherwise stop accepting of transaction.
When concrete enforcement, in step 306, user inputs key by intelligent terminal, and intelligent terminal is submitted the key of card image, user's input to banking system processing, banking system is carried out card image, status poll and judgement, the correctness of authentication of users input key.
If the key of user's input is correct, in step 307, intelligent terminal can represent interface of main menu; As incorrect in the key of user's input, show that information is to user.
When concrete enforcement, in step 308, intelligent terminal receives encrypted packets, this encrypted packets obtains by Transaction Information being packed and using transaction key to be encrypted, encrypted packets is sound signal, and intelligent terminal, by after sound signal reduction, is directly submitted to banking system.
As shown in Figure 4, the embodiment of the present invention provides a kind of portable IC card reading/writing method, the portable IC card read-write system shown in this portable IC card reading/writing method Fig. 1 and Fig. 2, and this portable IC card reading/writing method comprises:
Step 401: receive the request of access that described intelligent terminal is initiated;
Step 402: read device certificate and the device numbering of storage according to described request of access, and send to described intelligent terminal by described audio interface plug after described device certificate and device numbering are converted to sound signal;
Step 403: read the card image of the IC-card of insertion or close described smart card reader, and described card image is sent to described intelligent terminal by described audio interface plug;
Step 404: receiving after the Transaction Information of described intelligent terminal transmission, read the transaction key of local storage, and the transaction key after described Transaction Information and encryption is sent to described intelligent terminal;
Step 405: receive the write-back script that described intelligent terminal sends, carry out script write back operations, generation script write-back result feedback is given described intelligent terminal.
In portable IC card reading/writing method shown in Fig. 4, executive agent is the portable IC card read-write equipment shown in Fig. 1.
Flow process is as shown in Figure 4 known, and first portable IC card read-write equipment receives the request of access that described intelligent terminal is initiated, and according to described request of access fetch equipment certificate and device numbering, sends to intelligent terminal after format transformation; Then after reading the card image of IC-card, send to described intelligent terminal; Receiving after the Transaction Information of described intelligent terminal transmission, read the transaction key of local storage, the transaction key by Transaction Information and after encrypting sends to intelligent terminal; Finally receive the write-back script that described intelligent terminal sends, carry out script write back operations, generation script write-back result feedback is given described intelligent terminal.The method has overcome current POS equipment greatly and has laid the conditional shortcoming in region, also overcome Web bank, Mobile banking, telephone bank etc. and needed the shortcoming of registering, if could the unrestricted shortcoming using after having overcome in prior art card and having increase also to need to repeat cabinet face to add simultaneously, can realize whenever and wherever possible, use the conclude the business function of (as consumed, transfer accounts, cancel, the return of goods etc.) of IC-card, and effectively control the risk existing in transaction, have great convenience for the user.
When concrete enforcement, in step 401 and step 402, intelligent terminal is initiated after request of access, portable IC card read-write equipment receives this request of access by audio interface plug, send to main control chip 101 through conversion unit of protocol 105, main control chip 101, according to this request fetch equipment certificate and equipment unique number from storage unit 103, as without device certificate or device numbering, stops the process of accepting; If any, main control chip 101 by certificate and number information after conversion unit of protocol 105 translation data forms are sound signal, send to intelligent terminal by audio interface plug.Intelligent terminal receives after sound signal, sound signal need to be reduced, and is then submitted to banking system by network and carries out verification.If banking system certification of proof and device numbering are all legal, carry out next step; As wherein one illegal, stop accepting process.Wherein, the request between intelligent terminal and portable IC card read-write equipment and replying is all used communication key to encrypt, and in portable IC card read-write equipment, is responsible for encryption and decryption by encryption/decryption element 104.
In step 403, smart card reader 102 reads card image, through main control chip 101, is transmitted to encryption/decryption element 104, after using communication key to encrypt, sends to conversion unit of protocol 105 and carries out format transformation, is then transferred to intelligent terminal by audio port.
In step 404, main control chip 101 reads transaction key from storage unit 103, and encryption/decryption element 104 is packed Transaction Information and used transaction key to be encrypted, and subsequently encrypted packets is returned to intelligent terminal.
Portable IC card read-write equipment of the present invention is by issued by banks (issue), user is in getting, bank is to this device built-in device certificate, unique device numbering, initial communication key and transaction key, while relating to banking system processing in process of exchange, need calibration equipment certificate and device numbering, only have in the time that the two all exists and be legal, transaction just can be proceeded.
When transaction, between intelligent terminal and banking system, adopt two-way SSL to link, be aided with message encryption, ensure that the information of process of exchange transmission is not stolen and distorts.User, in the time carrying out moving account operation, need confirm Transaction Information by the display screen from portable IC card read-write equipment, and confirm by the physical button on portable IC card read-write equipment; Portable IC card read-write equipment is encrypted the transaction data after confirming, is directly uploaded to banking system by intelligent terminal, effectively avoids forging transaction and distorts transaction.
In order to make those skilled in the art better understand the present invention, save as example with electronic cash circle below and describe, as shown in Figure 5, the embodiment of the present invention provides a kind of portable IC card reading/writing method, comprising:
Step 500: the audio interface plug 106 of portable IC card read-write equipment is connected with intelligent terminal, and opens the APP application program that bank issues.
Step 501: first intelligent terminal initiates request of access, send to main control chip 101 through conversion unit of protocol 105, main control chip 101 is fetch equipment certificate and device numbering (device numbering is unique) from storage unit 103, as without device certificate or device numbering, stop the process of accepting; If any, main control chip 101 by device certificate and number information after conversion unit of protocol 105 translation data forms are sound signal, send to intelligent terminal by audio interface.Intelligent terminal is after sound signal reduction, the information exchange after reduction crossed to network and be submitted to banking system and carry out verification.If banking system inspection machine certificate and device numbering are all legal, carry out next step; As illegal in wherein one of device certificate and device numbering, stop the process of accepting.Need to be explanation, the request between intelligent terminal and portable IC card read-write equipment and replying be all used communication key to encrypt, in portable IC card read-write equipment, by the responsible encryption and decryption of encryption/decryption element 104.
Step 502: after being verified, intelligent terminal prompting user IC-card is inserted to deck (smart card reader 102) or by non-contact IC card near deck.
Step 503: user inserts Contact Type Ic Card the smart card reader 102 of (or contactless enter IC-card close) portable IC card read-write equipment;
Step 304: smart card reader 102 reads card image, then card image is transmitted to encryption/decryption element 104 through main control chip 101, after encryption/decryption element 104 uses communication key to encrypt card image, send to conversion unit of protocol 105 and carry out format transformation, be then transferred to intelligent terminal by audio port.
Step 505: the APP of the bank application program on intelligent terminal receives the card image of returning, prompting user inputs key.
Step 506: user inputs key by intelligent terminal, intelligent terminal submits to banking system to process the key of card image, user's input, and banking system is carried out card image, status poll and judgement, the correctness of authentication of users input key.
Step 507: if key is correct, intelligent terminal represents interface of main menu; As incorrect in key, show that prompting error message is to user.
Step 508: user selects electronic cash circle to deposit operation by intelligent terminal, input circle is deposited the amount of money etc., and after having inputted, above Transaction Information is transferred to portable IC card read-write equipment by intelligent terminal.
Step 509: portable IC card read-write equipment is received after Transaction Information, shows by display screen 107, the information that user's reading displayed screen 107 shows, confirm errorless after, press the ACK button in portable IC card read-write equipment.
Step 510: main control chip 101 reads transaction key from storage unit 103, encryption/decryption element 104 is packed above-mentioned Transaction Information and is used transaction key to be encrypted, and then encrypted packets is returned to intelligent terminal.
Step 511: intelligent terminal receives above-mentioned encrypted packets, this encrypted packets is sound signal, need to be reduced to data, then submits to banking system.
Step 512: banking system receives encrypted packets, according to the device numbering of portable IC card read-write equipment, utilizes corresponding key to be decrypted, and generates Transaction Information, carries out main frame accounting processing after verification, button customer account.
Step 513: banking system is returned to button account result, as the success of button account, carries out flow process 514; As detain account failure, show that error message is to user.
Step 514: send successful information and write-back script by audio port to portable IC card read-write equipment button account on intelligent terminal; The smart card reader 202 of portable IC card read-write equipment carries out the script write back operations of IC-card according to write back information.
Step 515: portable IC card read-write equipment returns to script write-back result to intelligent terminal, intelligent terminal judges that according to script write-back result whether write-back is successful, as write-back success, points out customer transaction successful; As write-back, failure provides information, and prompting user need contact bank and carry out subsequent treatment.
The present invention has overcome current POS equipment greatly and has laid the conditional shortcoming in region, also overcome Web bank, Mobile banking, telephone bank etc. and needed the shortcoming of registering, if could the unrestricted shortcoming using after having overcome in prior art card and having increase also to need to repeat cabinet face to add simultaneously, can realize whenever and wherever possible, use the conclude the business function of (as consumed, transfer accounts, cancel, the return of goods etc.) of IC-card, and effectively control the risk existing in transaction, have great convenience for the user.
Those skilled in the art should understand, embodiments of the invention can be provided as method, system or computer program.Therefore, the present invention can adopt complete hardware implementation example, completely implement software example or the form in conjunction with the embodiment of software and hardware aspect.And the present invention can adopt the form at one or more upper computer programs of implementing of computer-usable storage medium (including but not limited to magnetic disk memory, CD-ROM, optical memory etc.) that wherein include computer usable program code.
The present invention is with reference to describing according to process flow diagram and/or the block scheme of the method for the embodiment of the present invention, equipment (system) and computer program.Should understand can be by the flow process in each flow process in computer program instructions realization flow figure and/or block scheme and/or square frame and process flow diagram and/or block scheme and/or the combination of square frame.Can provide these computer program instructions to the processor of multi-purpose computer, special purpose computer, Embedded Processor or other programmable data processing device to produce a machine, the instruction that makes to carry out by the processor of computing machine or other programmable data processing device produces the device for realizing the function of specifying at flow process of process flow diagram or multiple flow process and/or square frame of block scheme or multiple square frame.
These computer program instructions also can be stored in energy vectoring computer or the computer-readable memory of other programmable data processing device with ad hoc fashion work, the instruction that makes to be stored in this computer-readable memory produces the manufacture that comprises command device, and this command device is realized the function of specifying in flow process of process flow diagram or multiple flow process and/or square frame of block scheme or multiple square frame.
These computer program instructions also can be loaded in computing machine or other programmable data processing device, make to carry out sequence of operations step to produce computer implemented processing on computing machine or other programmable devices, thereby the instruction of carrying out is provided for realizing the step of the function of specifying in flow process of process flow diagram or multiple flow process and/or square frame of block scheme or multiple square frame on computing machine or other programmable devices.
In the present invention, applied specific embodiment principle of the present invention and embodiment are set forth, the explanation of above embodiment is just for helping to understand method of the present invention and core concept thereof; , for one of ordinary skill in the art, according to thought of the present invention, all will change in specific embodiments and applications, in sum, this description should not be construed as limitation of the present invention meanwhile.

Claims (10)

1. a portable IC card read-write equipment, is characterized in that, described portable IC card read-write equipment comprises: main control chip, smart card reader, storage unit, encryption/decryption element, conversion unit of protocol, audio interface plug and display screen; Described smart card reader, storage unit, encryption/decryption element and display screen connects described main control chip by internal circuit respectively; Described conversion unit of protocol connects described encryption/decryption element, and connects intelligent terminal by described audio interface plug;
Described smart card reader, for gathering card image from IC-card, is transferred to described main control chip by described card image, and described IC-card is carried out to script write back operations;
Described storage unit, for memory device numbering, device certificate, communication key and transaction key;
Described encryption/decryption element, for using described communication key to carry out Encrypt and Decrypt to the data of the transmission between described portable IC card read-write equipment and described intelligent terminal;
Described audio interface plug, connects described portable IC card read-write equipment and described intelligent terminal, for realizing the data transmission between described portable IC card read-write equipment and described intelligent terminal;
Described conversion unit of protocol, after the sound signal receiving by described audio interface plug is changed into data, be transferred to described main control chip, and be transferred to described intelligent terminal by described audio interface plug after the data of described main control chip transmission are converted into sound signal;
Described display screen, comprises card number, dealing money for showing, proceeds to account and the Transaction Information of the amount of money of transferring accounts;
Described main control chip, for from described storage unit fetch equipment certificate, device numbering and transaction key, and coordinates described smart card reader, storage unit, encryption/decryption element and display screen action.
2. portable IC card read-write equipment according to claim 1, is characterized in that, described portable IC card read-write equipment also comprises: control button, comprise acknowledgement key and cancel key, for confirming transaction or Cancelling Transaction.
3. portable IC card read-write equipment according to claim 1, it is characterized in that, described portable IC card read-write equipment also comprises: relay indicating light, for showing the duty of described portable IC card read-write equipment, described duty comprises Card Reader, writes card and wait for.
4. portable IC card read-write equipment according to claim 1, is characterized in that, described portable IC card read-write equipment also comprises: power supply, is used to described portable IC card read-write equipment power supply.
5. a portable IC card read-write system, it is characterized in that, described portable IC card read-write system comprises: portable IC card read-write equipment, intelligent terminal and banking system, and described intelligent terminal is connected with described banking system by mobile cellular network or Internet network; Described portable IC card read-write equipment comprises:
Main control chip, smart card reader, storage unit, encryption/decryption element, conversion unit of protocol, audio interface plug and display screen; Described smart card reader, storage unit, encryption/decryption element and display screen connects described main control chip by internal circuit respectively; Described conversion unit of protocol connects described encryption/decryption element, and connects described intelligent terminal by described audio interface plug;
Described smart card reader, for gathering card image from IC-card, is transferred to described main control chip by described card image, and described IC-card is carried out to script write back operations;
Described storage unit, for memory device numbering, device certificate, communication key and transaction key;
Described encryption/decryption element, for using described communication key to carry out Encrypt and Decrypt to the data of the transmission between described portable IC card read-write equipment and described intelligent terminal;
Described audio interface plug, connects described portable IC card read-write equipment and described intelligent terminal, for realizing the data transmission between described portable IC card read-write equipment and described intelligent terminal;
Described conversion unit of protocol, after the sound signal receiving by described audio interface plug is changed into data, be transferred to described main control chip, and be transferred to described intelligent terminal by described audio interface plug after the data of described main control chip transmission are converted into sound signal;
Described display screen, comprises card number, dealing money for showing, proceeds to account and the Transaction Information of the amount of money of transferring accounts.
6. portable IC card read-write system according to claim 5, is characterized in that, described portable IC card read-write equipment also comprises: control button, comprise acknowledgement key and cancel key, for confirming transaction or Cancelling Transaction.
7. portable IC card read-write system according to claim 5, it is characterized in that, described portable IC card read-write equipment also comprises: relay indicating light, for showing the duty of described portable IC card read-write equipment, described duty comprises Card Reader, writes card and wait for.
8. portable IC card read-write system according to claim 5, is characterized in that, described portable IC card read-write equipment also comprises: power supply, is used to described portable IC card read-write equipment power supply.
9. a portable IC card reading/writing method, is applied to the portable IC card read-write system shown in claim 5, it is characterized in that, described portable IC card reading/writing method comprises:
Send request of access by described audio interface plug to described IC-card read-write equipment;
Receive device certificate and the device numbering of described IC-card read-write equipment feedback by described audio interface plug;
Send to described banking system to carry out verification described device certificate and device numbering, and receive the check results that described banking system is returned;
If described check results is legal, prompting user inserts IC-card or close described smart card reader;
Receive by described audio interface plug the card image that described smart card reader reads from described IC-card;
Receive the authentication secret of user's input, and send to described banking system to carry out verification described card image and authentication secret;
Receive the check results of described banking system feedback, if described check results is correct, the Transaction Information that user is selected sends to described IC-card read-write equipment by described audio interface plug;
Receive transaction key and the described Transaction Information of described IC-card read-write equipment feedback by described audio interface plug, and described transaction key and described Transaction Information are sent to described banking system;
Receive the transaction processing object information of described banking system feedback, and judge that according to described transaction processing object information whether transaction is successful;
If so, send successful information machine write-back script by described audio interface plug to described IC-card read-write equipment, so that described IC-card read-write equipment carries out script write back operations.
10. a portable IC card reading/writing method, is applied to the portable IC card read-write system shown in claim 5, it is characterized in that, described portable IC card reading/writing method comprises:
Receive the request of access that described intelligent terminal is initiated;
Read device certificate and the device numbering of storage according to described request of access, and send to described intelligent terminal by described audio interface plug after described device certificate and device numbering are converted to sound signal;
Read the card image of the IC-card of insertion or close described smart card reader, and described card image is sent to described intelligent terminal by described audio interface plug;
Receiving after the Transaction Information of described intelligent terminal transmission, read the transaction key of local storage, and the transaction key after described Transaction Information and encryption is sent to described intelligent terminal;
Receive the write-back script that described intelligent terminal sends, carry out script write back operations, generation script write-back result feedback is given described intelligent terminal.
CN201410325450.8A 2014-07-09 2014-07-09 A kind of portable IC card read-write equipment, system and method Active CN104102934B (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201410325450.8A CN104102934B (en) 2014-07-09 2014-07-09 A kind of portable IC card read-write equipment, system and method

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201410325450.8A CN104102934B (en) 2014-07-09 2014-07-09 A kind of portable IC card read-write equipment, system and method

Publications (2)

Publication Number Publication Date
CN104102934A true CN104102934A (en) 2014-10-15
CN104102934B CN104102934B (en) 2017-04-05

Family

ID=51671072

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201410325450.8A Active CN104102934B (en) 2014-07-09 2014-07-09 A kind of portable IC card read-write equipment, system and method

Country Status (1)

Country Link
CN (1) CN104102934B (en)

Cited By (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN104484635A (en) * 2014-12-25 2015-04-01 东信和平科技股份有限公司 Portable IC (integrated circuit) card operation system and method based on mobile terminal
CN105654629A (en) * 2015-12-28 2016-06-08 天津市通卡公用网络系统有限公司 IC card auto-recharging method
CN107704778A (en) * 2017-10-28 2018-02-16 深圳市鹏力凯科技有限公司 The card reader device and its implementation of a kind of low-power consumption
CN110119946A (en) * 2018-02-05 2019-08-13 库币科技有限公司 The pairing authentication method of electronic transaction device

Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN202486808U (en) * 2012-03-20 2012-10-10 成都华唯科技有限责任公司 Health card reader-writer system
CN102867366A (en) * 2012-09-19 2013-01-09 中国工商银行股份有限公司 Portable bank card data processing device, system and method
CN203366457U (en) * 2013-07-18 2013-12-25 深圳市文鼎创数据科技有限公司 A multifunctional financial terminal
CN203480606U (en) * 2013-09-16 2014-03-12 深圳市卡联科技有限公司 Small fee desk-type POS machine by TCP/IP communication

Patent Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN202486808U (en) * 2012-03-20 2012-10-10 成都华唯科技有限责任公司 Health card reader-writer system
CN102867366A (en) * 2012-09-19 2013-01-09 中国工商银行股份有限公司 Portable bank card data processing device, system and method
CN203366457U (en) * 2013-07-18 2013-12-25 深圳市文鼎创数据科技有限公司 A multifunctional financial terminal
CN203480606U (en) * 2013-09-16 2014-03-12 深圳市卡联科技有限公司 Small fee desk-type POS machine by TCP/IP communication

Cited By (6)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN104484635A (en) * 2014-12-25 2015-04-01 东信和平科技股份有限公司 Portable IC (integrated circuit) card operation system and method based on mobile terminal
CN105654629A (en) * 2015-12-28 2016-06-08 天津市通卡公用网络系统有限公司 IC card auto-recharging method
CN107704778A (en) * 2017-10-28 2018-02-16 深圳市鹏力凯科技有限公司 The card reader device and its implementation of a kind of low-power consumption
CN107704778B (en) * 2017-10-28 2024-02-06 深圳市鹏力凯科技有限公司 Low-power-consumption card reading and writing device and implementation method thereof
CN110119946A (en) * 2018-02-05 2019-08-13 库币科技有限公司 The pairing authentication method of electronic transaction device
CN110119946B (en) * 2018-02-05 2022-12-13 库币科技有限公司 Pairing authentication method for electronic transaction device

Also Published As

Publication number Publication date
CN104102934B (en) 2017-04-05

Similar Documents

Publication Publication Date Title
CN105339963B (en) System and method for connecting a device to a user account
CN102737311B (en) Internet bank security authentication method and system
US10192214B2 (en) Pending deposit for payment processing system
CN102737308B (en) The method and system of a kind of mobile terminal and inquiry smart card information thereof
EP3861503A1 (en) Systems and methods for cryptographic authentication of contactless cards
CN102469081B (en) Method, equipment and system for operating smart card
CN102867366B (en) Portable bank card data processing device, system and method
CN105308898B (en) For executing system, the method and apparatus of password authentification
CN103400461B (en) The system and method for POS, card business realizing
EP2301269A2 (en) System, method and device to authenticate relationships by electronic means
JP2022502888A (en) Systems and methods for cryptographic authentication of non-contact cards
CN103413244A (en) Mobile security financial terminal and financial transaction method
CN104050567A (en) Data interaction method under off-line mode, terminal and server
CN103152180B (en) A kind of encrypting and authenticating equipment with radio communication function and method
CN101916476A (en) Mobile data transmission method based on combination of SD (Secure Digital) encrypted card and short-distance wireless communication technology
CN104574653A (en) Method and system for realizing online recharging of electronic purse IC (Integrated Circuit) card based on OBU (on board unit)
CN102810189A (en) Near field payment and payment completion confirming method for NFC (Near Field Communication) functional mobile phone
CN105117963A (en) Device and method based on digital signature
CN104182875A (en) Payment method and payment system
CN104200359A (en) Application method of payment encryption hardware applied to mobile equipment
CN104978144A (en) Gesture password input device and system and method for transaction based on system
WO2020072687A1 (en) Systems and methods for cryptographic authentication of contactless cards
KR20160030342A (en) Method of paying for a product or service on a commercial website via an internet connection and a corresponding terminal
CN104102934A (en) Portable IC card read-write device, system and method
CN104881781A (en) Method, system, and client based on secure transaction

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
GR01 Patent grant
GR01 Patent grant