CN105354705A - Wire telephone payment terminal and safety authentication method, correlation server and system for wire telephone payment terminal - Google Patents

Wire telephone payment terminal and safety authentication method, correlation server and system for wire telephone payment terminal Download PDF

Info

Publication number
CN105354705A
CN105354705A CN201510845798.4A CN201510845798A CN105354705A CN 105354705 A CN105354705 A CN 105354705A CN 201510845798 A CN201510845798 A CN 201510845798A CN 105354705 A CN105354705 A CN 105354705A
Authority
CN
China
Prior art keywords
payment terminal
request
response
registering
oppositely
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Pending
Application number
CN201510845798.4A
Other languages
Chinese (zh)
Inventor
邱文超
李丹
詹绍鑫
刘志坚
罗恕人
成亮
王雨
揭育柱
付小丽
陈铭洙
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
China Construction Bank Corp
Original Assignee
China Construction Bank Corp
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by China Construction Bank Corp filed Critical China Construction Bank Corp
Priority to CN201510845798.4A priority Critical patent/CN105354705A/en
Publication of CN105354705A publication Critical patent/CN105354705A/en
Pending legal-status Critical Current

Links

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/18Network architectures or network communication protocols for network security using different networks or channels, e.g. using out of band channels
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06QINFORMATION AND COMMUNICATION TECHNOLOGY [ICT] SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES; SYSTEMS OR METHODS SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES, NOT OTHERWISE PROVIDED FOR
    • G06Q20/00Payment architectures, schemes or protocols
    • G06Q20/08Payment architectures
    • G06Q20/18Payment architectures involving self-service terminals [SST], vending machines, kiosks or multimedia terminals
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06QINFORMATION AND COMMUNICATION TECHNOLOGY [ICT] SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES; SYSTEMS OR METHODS SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES, NOT OTHERWISE PROVIDED FOR
    • G06Q20/00Payment architectures, schemes or protocols
    • G06Q20/30Payment architectures, schemes or protocols characterised by the use of specific devices or networks
    • G06Q20/32Payment architectures, schemes or protocols characterised by the use of specific devices or networks using wireless devices
    • G06Q20/322Aspects of commerce using mobile devices [M-devices]
    • G06Q20/3221Access to banking information through M-devices

Abstract

The invention discloses a wire telephone payment terminal, a safety authentication method, a correlation server and a system for the wire telephone payment terminal. The safety authentication method comprises the steps of sending a reveres sign-in request for notifying the payment terminal to sponsor sign-in to the wire telephone payment terminal; and determining the safety of the payment terminal according to whether the payment terminal makes feedback to the response to the reveres sign-in request and the response content when the payment terminal makes feedback to the response. By adoption of the safety authentication method, the wireless telephone payment terminal is notified to sign in actively, and the safety of the wire telephone payment terminal is determined based on the response of the wire telephone payment terminal, so that the risk of telephone relocation of the wire telephone payment terminal can be detected, and the telephone relocation of the wire telephone payment terminal through a method of changing a caller identification number and the like is greatly limited; the telephone relocation risk is effectively monitored and the safety of the wire telephone payment terminal is determined, meanwhile, the credibility, the legality and the safety of the wire telephone payment tractions are ensured, and the monitoring risk of the wire telephone payment terminal acquirers is reduced.

Description

Wire telephony payment terminal and safety certifying method, associated server and system
Technical field
The present invention relates to the safety certification field of payment terminal, more specifically, relate to a kind of wire telephony payment terminal and safety certifying method, associated server and system.
Background technology
Wire telephony payment terminal is wired financial transactions equipment of a specialty, adopts wire communication technology and is integrated with bank finance input equipment, such as magnetic stripe reader, code keypad, thermal printer etc.Wire telephony payment terminal possesses all business functions of current financial POS (PointofSale, point-of-sale terminal), and simultaneously non-maintaining, zero upgrading of terminal traffic, adapts to the needs of the development of financial service product line, function renewal.
Wire telephony payment terminal is installed and used easily, be applicable to wholesale market, retail brand shop, domestic consumer's bank card business, for client provides self-help bank's card business of all non-cash transactions, effectively can peel off traditional no cash transaction of bank outlets, alleviate cabinet surface pressure and reduce service cost, extend bank service scope, improve integrity service ability and the quality of bank.
For existing wired self-service financial transactions equipment (such as wired POS), terminal mobile machine is the guard key risk of this kind equipment, even if employ the secure authentication technology such as secondary key or three grades of keys, be also difficult to the violation telephone-moving that effectively strick precaution uses the methods such as the number of changing instrument to carry out.Therefore, how strengthening the security of the payment system of wire telephony payment terminal, taking precautions against telephone-moving risk is the difficult problem that industry faces at present.
Summary of the invention
In view of the above-mentioned defect of prior art, embodiment of the present invention provides a kind of wire telephony payment terminal and safety certifying method, associated server and system, can detect the telephone-moving risk of wire telephony payment terminal, greatly limiting payment terminal uses the telephone-moving of the methods such as the caller identification number of changing to use, while the security of effective monitoring telephone-moving risk, confirmation wire telephony payment terminal, ensure the credibility of wire telephony payment transaction, legitimacy and security, reduce the supervision risk of facility acquirer.
On the one hand, embodiments provide a kind of safety certifying method of wire telephony payment terminal, comprising:
Send for notifying that described payment terminal initiates the request of oppositely registering of registering to wire telephony payment terminal;
According to described payment terminal whether feed back to described oppositely register request response and described payment terminal feedback response time response contents, confirm the security of described payment terminal.
In addition, the embodiment of the present invention also provides a kind of safety certifying method of wire telephony payment terminal, comprising:
Wire telephony payment terminal reception server send for notifying that described payment terminal initiates the request of oppositely registering of registering;
For described request feedback response of oppositely registering, and response contents comprises the content good with described server commitment.
Correspondingly, the embodiment of the present invention provides a kind of server be applied in safety certification, comprising:
Request module, for sending for notifying that described payment terminal initiates the request of oppositely registering of registering to wire telephony payment terminal;
Security authentication module, for whether feed back according to described payment terminal to described oppositely register request response and described payment terminal feedback response time response contents, confirm the security of described payment terminal.
In addition, the embodiment of the present invention also provides a kind of wire telephony payment terminal, comprising:
Receiver module, for reception server send for notifying that described payment terminal initiates the request of oppositely registering of registering;
Respond module, for for described request feedback response of oppositely registering, and response contents comprises the content good with described server commitment.
Correspondingly, the embodiment of the present invention provides a kind of security certification system of wire telephony payment terminal, and it comprises above-mentioned server according to the embodiment of the present invention and wire telephony payment terminal.
In addition, the embodiment of the present invention also provides a kind of security certification system of wire telephony payment terminal, and it comprises:
Phone-payment management platform, for being sent to access in radio platform by the predetermined telephone number that may there is the wire telephony payment terminal of security risk;
Access in radio platform, send for notifying that wired phone-payment terminal initiates the request of oppositely registering of registering to wire telephony payment terminal for the telephone number that provides according to described phone-payment management platform, and according to wire telephony payment terminal whether feed back to described oppositely register the response and wire telephony payment terminal feedback response of asking time response contents confirm the security of described payment terminal.Wherein, access in radio platform can arrange the aforementioned server of the embodiment of the present invention.
Adopt the embodiment of the present invention, have the following advantages:
Undertaken registering by proactive notification wire telephony payment terminal and confirm its security according to the reflection of wire telephony payment terminal, can detect the telephone-moving risk of wire telephony payment terminal, greatly limit payment terminal and use the telephone-moving of the methods such as the caller identification number of changing to use.While the security of effective monitoring telephone-moving risk, confirmation wire telephony payment terminal, ensure the credibility of wire telephony payment transaction, legitimacy and security, reduce the supervision risk of facility acquirer.
Accompanying drawing explanation
Fig. 1 is the schematic flow sheet of the safety certifying method of a kind of wire telephony payment terminal according to the embodiment of the present invention;
Fig. 2 is an example of the block diagram of the security certification system of a kind of wire telephony payment terminal according to the embodiment of the present invention;
Fig. 3 is an example of the block diagram of the security certification system of a kind of wire telephony payment terminal according to the embodiment of the present invention;
Fig. 4 A is the schematic flow sheet of the identity identifying method of a kind of wire telephony payment terminal according to the embodiment of the present invention;
Fig. 4 B is the schematic flow sheet of the safety certifying method of a kind of wire telephony payment terminal according to the embodiment of the present invention;
Fig. 5 is the system architecture diagram of the security certification system of a kind of wire telephony payment terminal according to the embodiment of the present invention.
Embodiment
For the ease of understanding the various aspects of technical solution of the present invention, feature and advantage, below in conjunction with accompanying drawing, the present invention is specifically described.Should be appreciated that following various embodiments are only for illustrating, but not for limiting the scope of the invention.
Fig. 1 is the schematic flow sheet of the safety certifying method of a kind of wire telephony payment terminal according to the embodiment of the present invention, and with reference to Fig. 1, described method comprises:
10: initiate oppositely to register.Specifically, send for notifying that described payment terminal initiates the request of oppositely registering of registering to wire telephony payment terminal.
12: payment terminal processes for the described oppositely request of registering.Wherein, payment terminal asks the process that may make to comprise for described oppositely registering: do not respond, respond wrong content, respond correct content.Correct content and wrong content are determined according to the agreement of payment terminal and service end.
It should be noted that, the first preset rules mentioned in this article refers in particular to which content both server and payment terminal need to ask to respond for oppositely registering agreement about payment terminal, and the second preset rules is refered in particular to both server and payment terminal and according to which content recognition oppositely to be registered the agreement of asking about payment terminal.
Also it should be noted that, " payment terminal " that occur in this article all refers to " wire telephony payment terminal ".
14: security confirms.Specifically, according to described payment terminal whether feed back to described oppositely register request response and described payment terminal feedback response time response contents, confirm the security of described payment terminal.
Adopt the method that the present embodiment provides, undertaken registering by proactive notification wire telephony payment terminal and confirm its security according to the reflection of wire telephony payment terminal, can detect the telephone-moving risk of wire telephony payment terminal, greatly limit payment terminal and use the telephone-moving of the methods such as the caller identification number of changing to use.While the security of effective monitoring telephone-moving risk, confirmation wire telephony payment terminal, ensure the credibility of wire telephony payment transaction, legitimacy and security, reduce the supervision risk of facility acquirer.
Alternatively, in a kind of implementation of the present embodiment, realize process 10 in the following manner: the request message being used for initiating the described request of oppositely registering is converted to voice signal by server, send described voice signal by the telephone number of dialing described payment terminal to described payment terminal thus initiate described request of oppositely registering.
Alternatively, in a kind of implementation of the present embodiment, in process 12, payment terminal connects the incoming call of server, and receives the voice signal converted by the request message for initiating the described request of oppositely registering of described server transmission.Further alternatively, payment terminal, when receiving incoming call, first judges that whether caller ID is consistent with server no pre-configured in payment terminal, if unanimously, then with the incoming call of not pointing out the mode of user (such as, not triggering vibration, the tinkle of bells etc.) to connect described server; If inconsistent, then can directly hang up or the response of feedback representation request error.
Alternatively, in a kind of implementation of the present embodiment, in process 12, payment terminal is after connection server incoming call, described voice signal is converted to request message and deciphers described request message, if decrypted result meets the second preset rules, then for described request feedback response of oppositely registering.
Further alternatively, in process 12, the method for decoding request message can use the method for the service ends such as symmetry/unsymmetrical key and terminal both sides agreement, if the result after deciphering meets the rule of service end and terminal both sides agreement, then thinks successful decryption.
Alternatively, in a kind of implementation of the present embodiment, in process 14, if server does not receive the response of payment terminal feedback (such as, do not receive in Preset Time, payment terminal hang up the telephone), or, if receive the response of described payment terminal feedback but response contents does not meet the first preset rules, then confirm that the security of described mobile terminal is the first estate (such as, dangerous).If server receives the response of described payment terminal feedback and response contents meets the first preset rules, then confirm that the security of described payment terminal is the second grade (such as, safety).Wherein, the first preset rules can comprise: what comprise in the telephone number of described payment terminal and described response contents is corresponding with the sequence number of the code keypad that described payment terminal is electrically connected.
Alternatively, in process 12, payment terminal is by sending message of registering as the response for the described request of oppositely registering to server.Server can verify the legitimacy of message of registering in the following ways:
In decruption key, payment terminal and server commitment use three grades of keys, comprise the terminal key (TK) of the working key (WK) of the first order, the key-encrypting key (KEK) of the second level and final utilization.Working key (WK) only has unique one in whole system, self-defined generation.Key-encrypting key (KEK) is produced according to the characteristic information of terminal by the encryption equipment of phone-payment transaction platform, and unique KEK is shared at every platform phone-payment terminal and phone-payment center.Key-encrypting key (KEK) for being encrypted working key (WK), and generates terminal key (MK).In decryption method, use terminal key (MK) to carry out symmetry deciphering, use conventional symmetrical enciphering and deciphering algorithm such as AES, 3DES etc.Judging in whether legal regular of decrypted result, the decrypted result that server and terminal agreement terminal receive message is that this end message (the code keypad sequence number as this terminal) adds 8 random numbers (RD), if the rule of not meeting, then think and decipher unsuccessfully.
Fig. 2 is the block diagram of the security certification system of a kind of wire telephony payment terminal according to the embodiment of the present invention, and with reference to Fig. 2, described security certification system comprises server 20 and wire telephony payment terminal 30.Be described respectively below
In the present embodiment, server 20 comprises request module 21 and security authentication module 22.Wherein, request module 21 is for sending for notifying that described payment terminal initiates the request of oppositely registering of registering to wire telephony payment terminal; Security authentication module 22 for whether feed back according to described payment terminal to described oppositely register request response and described payment terminal feedback response time response contents, confirm the security of described payment terminal.
Alternatively, in a kind of implementation of the present embodiment, request module 21 comprises: transform subblock, for the request message in order to initiate the described request of oppositely registering is converted to voice signal; Request submodule, sends described voice signal for the telephone number by dialing described payment terminal to described payment terminal thus initiates described request of oppositely registering.
Alternatively, in a kind of implementation of the present embodiment, security authentication module 22 comprises: receive submodule, for receiving the response of described payment terminal feedback; Judge submodule, for do not receive at described reception submodule described payment terminal feedback response time, or, when described reception submodule receives the response of described payment terminal feedback but response contents does not meet the first preset rules, confirm that the security of described mobile terminal is the first estate, or, when receiving the response of described payment terminal feedback and response contents meets the first preset rules, confirm that the security of described payment terminal is the second grade.Wherein, the first preset rules comprises: what comprise in the telephone number of described payment terminal and described response contents is corresponding with the sequence number of the code keypad that described payment terminal is electrically connected.
In the present embodiment, payment terminal 30 comprises receiver module 31 and respond module 32.Wherein, receiver module 31 for reception server send for notifying that described payment terminal initiates the request of oppositely registering of registering; Respond module 32 is for for described request feedback response of oppositely registering, and response contents comprises the content good with described server commitment.
Alternatively, in a kind of implementation of the present embodiment, receiver module 31 comprises: electrically connect submodule, for connect described server incoming call and receive that described server sends by the converted voice signal of request message for initiating the described request of oppositely registering; Judging submodule, for judging that whether caller ID is consistent with the number of pre-configured described server, if unanimously, then triggering describedly electrically connecting submodule.Wherein, describedly submodule is electrically connected also for the incoming call of not pointing out the mode of user to connect described server.
Alternatively, in a kind of implementation of the present embodiment, respond module 32 comprises: transform subblock, for described voice signal is converted to described request message; Deciphering submodule, for deciphering described request message; Response submodule, for when the decrypted result of described deciphering submodule meets the second preset rules, for described request feedback response of oppositely registering.
The server 20, the payment terminal 30 that adopt the present embodiment to provide or comprise the two security certification system, undertaken registering by proactive notification wire telephony payment terminal and confirm its security according to the reflection of wire telephony payment terminal, can detect the telephone-moving risk of wire telephony payment terminal, greatly limit payment terminal and use the telephone-moving of the methods such as the caller identification number of changing to use.While the security of effective monitoring telephone-moving risk, confirmation wire telephony payment terminal, ensure the credibility of wire telephony payment transaction, legitimacy and security, reduce the supervision risk of facility acquirer.
Those skilled in the art are to be understood that, embodiment of the method provided by the invention can be realized by system embodiment provided by the invention, and in information embodiment provided by the invention modules perform or executable process, again can as the performed step in the inventive method embodiment.Therefore, about the explanation of relational language or noun, maybe can perform the explanation of step about each step in system embodiment, refer to the explanation in embodiment of the method, do not repeat herein.
Fig. 3 is the block diagram of the security certification system of a kind of wire telephony payment terminal according to the embodiment of the present invention, and with reference to Fig. 3, security certification system comprises phone-payment management platform and access in radio platform.Wherein, phone-payment management platform is used for the predetermined telephone number that may there is the wire telephony payment terminal of security risk to be sent to access in radio platform; The telephone number that access in radio platform is used for providing according to described phone-payment management platform sends for notifying that wired phone-payment terminal initiates the request of oppositely registering of registering to wire telephony payment terminal, and according to wire telephony payment terminal whether feed back to described oppositely register the response and wire telephony payment terminal feedback response of asking time response contents confirm the security of described payment terminal.Wherein, refer to above to the explanation processed performed by server about illustrating of processing performed by access in radio platform, do not repeat herein.
Alternatively, in a kind of implementation of the present embodiment, phone-payment management platform is screened according to payment terminal current transaction information such as the information such as dealing money, number of transaction, exchange hour, Transaction Account number, transacting customer, obtains the terminal that may there is risk.Use the method can reduce the number of times that service end is initiated oppositely to register, and reduces the scope of monitoring.Certainly, if payment terminal number ratio is less, can initiate oppositely to register to full dose terminal.
Below in conjunction with Fig. 4 A, Fig. 4 B and Fig. 5, the present invention will be described in more detail.Wherein, Fig. 4 A is the schematic flow sheet of the identity identifying method of a kind of wire telephony payment terminal according to the embodiment of the present invention; Fig. 4 B is the schematic flow sheet of the safety certifying method of a kind of wire telephony payment terminal according to the embodiment of the present invention; Fig. 5 is the system architecture diagram of the security certification system of a kind of wire telephony payment terminal according to the embodiment of the present invention.
With reference to Fig. 5, security certification system comprises the service end of wired phone-payment terminal, operator's special line and wire telephony payment terminal.Service end comprises phone-payment transaction platform, phone-payment management platform and access in radio platform.Wherein, phone-payment transaction platform is used for the transaction processing being responsible for the initiation of wire telephony payment terminal, phone-payment management platform is used for carrying out data analysis based on transaction data, end message, the communication of terminal and service end is responsible for by access in radio platform and operator's special line (such as, existing E1 special line).
With reference to Fig. 4 A, payment terminal carries out authentication to phone-payment transaction platform in the following manner:
400: obtain terminal password keyboard sequence number.Specifically, this operation by payment terminal each initiate communication time initiate, code keypad sequence number to be encapsulated in code keypad cryptographic hardware modules and can not to rewrite under normal circumstances.
402: encrypting and authenticating message is concurrent send service end.Wherein, message identifying mainly comprises following content: end message (terminal program version, code keypad sequence number etc.), date, random number etc., and uses terminal key (TK) to be encrypted.
404: access in radio land identification telephone number.Such as, caller ID is obtained by the incoming call display function of telecom operators.
406: phone-payment transaction platform judges that whether code keypad sequence number is consistent with caller ID.If consistent, then authentication success, otherwise, authentication failure.
With reference to Fig. 4 B, server carries out safety certification to payment terminal in the following manner:
401': phone-payment management platform statistics and identification risk terminal.Wherein, risk terminal refers to the payment terminal that there is risk.The present invention does not limit statistics and recognition methods.This step is preparation process, illustrates in the accompanying drawings with dotted line frame.
402': phone-payment transaction platform obtains risk end message.
403': phone-payment transaction platform initiates to access in radio platform request of oppositely registering.
404': access in radio platform initiates to payment terminal request of oppositely registering.
405': judge payment terminal whether feedback response.If no, then confirm that payment terminal exists telephone-moving risk and performs 407'; Otherwise perform 406'.
406': whether inspection response message is legal.If legal, then confirm the temporary devoid of risk of payment terminal and perform 407'; Otherwise, confirm that payment terminal exists and distort risk and perform 407'.
407': access in radio platform returns response message to phone-payment transaction platform.Here response message comprises the security certification result to payment terminal.
408': phone-payment transaction platform record security authentication result.
In a kind of specific implementation of the present embodiment, service end adopts method shown in Fig. 4 B to carry out safety certification, adopt method shown in Fig. 4 A to carry out register (authentication) after the request of oppositely registering that the access in radio platform that payment terminal receives service end sends, service end confirms the security of payment terminal according to identity authentication result.
Adopt the implementation of method shown in composition graphs 4A and Fig. 4 B, tool has the following advantages: on the one hand, by code keypad and caller id information (that is, the telephone number of terminal) are bound to determine whether payment terminal is legal terminal, effectively can judge the legitimacy of payment terminal; On the other hand, by technology of oppositely registering provided by the invention, registered by service end initiative payment terminal and judge the safe condition of payment terminal, can prevention and control use the number of changing software to distort the risk of terminal caller display number.
Through the above description of the embodiments, those skilled in the art can be well understood to the present invention and can realize by the mode of software combined with hardware platform.Based on such understanding, what technical scheme of the present invention contributed to background technology can embody with the form of software product in whole or in part, this computer software product can be stored in storage medium, as ROM/RAM, magnetic disc, CD etc., comprising some instructions in order to make a computer equipment (can be personal computer, server, or the network equipment etc.) perform the method described in some part of each embodiment of the present invention or embodiment.
Above disclosedly be only the preferred embodiments of the present invention; certainly protection scope of the present invention can not be limited with this; therefore according to the equivalent variations that the instruction of the claims in the present invention is done above-described embodiment, still belong in scope that the claims in the present invention contain.

Claims (18)

1. a safety certifying method for wire telephony payment terminal, is characterized in that, described method comprises:
Send for notifying that described payment terminal initiates the request of oppositely registering of registering to wire telephony payment terminal;
According to described payment terminal whether feed back to described oppositely register request response and described payment terminal feedback response time response contents, confirm the security of described payment terminal.
2. the method for claim 1, is characterized in that, sends for notifying that the oppositely request of registering that described payment terminal is initiated to register comprises to wire telephony payment terminal:
The request message being used for initiating the described request of oppositely registering is converted to voice signal, sends described voice signal by the telephone number of dialing described payment terminal to described payment terminal thus initiate described request of oppositely registering.
3. whether method as claimed in claim 1 or 2, is characterized in that, feed back the response contents when response of the described request of oppositely registering and described payment terminal feedback response, confirm that the security of described payment terminal comprises according to described payment terminal:
If do not receive described payment terminal feedback response, or, if receive described payment terminal feedback response but response contents does not meet the first preset rules, then confirm that the security of described mobile terminal is the first estate; Or
If receive described payment terminal feedback response and response contents meets the first preset rules, then confirm that the security of described payment terminal is the second grade.
4. the method for claim 1, is characterized in that, described first preset rules comprises:
What comprise in the telephone number of described payment terminal and described response contents is corresponding with the sequence number of the code keypad that described payment terminal is electrically connected.
5. a safety certifying method for wire telephony payment terminal, is characterized in that, described method comprises:
Wire telephony payment terminal reception server send for notifying that described payment terminal initiates the request of oppositely registering of registering;
For described request feedback response of oppositely registering, and response contents comprises the content good with described server commitment.
6. method as claimed in claim 5, is characterized in that, wire telephony payment terminal reception server send for notifying that the oppositely request of registering that described payment terminal is initiated to register comprises:
Described payment terminal connects the incoming call of described server, and receives the voice signal converted by the request message for initiating the described request of oppositely registering of described server transmission.
7. method as claimed in claim 6, it is characterized in that, the incoming call that described payment terminal connects described server comprises:
Judge that whether caller ID is consistent with the number of pre-configured described server, if unanimously, then with the incoming call of not pointing out the mode of user to connect described server.
8. method as claimed in claim 6, is characterized in that, for described request feedback response of oppositely registering, and response contents comprises the content good with described server commitment comprises:
Described voice signal is converted to described request message;
Deciphering described request message, if decrypted result meets the second preset rules, then for described request feedback response of oppositely registering.
9. be applied to a server for safety certification, it is characterized in that, described server comprises:
Request module, for sending for notifying that described payment terminal initiates the request of oppositely registering of registering to wire telephony payment terminal;
Security authentication module, for whether feed back according to described payment terminal to described oppositely register request response and described payment terminal feedback response time response contents, confirm the security of described payment terminal.
10. server as claimed in claim 9, it is characterized in that, described request module comprises:
Transform subblock, for being converted to voice signal by the request message in order to initiate the described request of oppositely registering;
Request submodule, sends described voice signal for the telephone number by dialing described payment terminal to described payment terminal thus initiates described request of oppositely registering.
11. servers as described in claim 9 or 10, it is characterized in that, described security authentication module comprises:
Receive submodule, for receiving the response of described payment terminal feedback;
Judge submodule, for carrying out following process:
When described reception submodule does not receive the response of described payment terminal feedback, or, when described reception submodule receives the response of described payment terminal feedback but response contents does not meet the first preset rules, confirm that the security of described mobile terminal is the first estate, or
When receiving the response of described payment terminal feedback and response contents meets the first preset rules, confirm that the security of described payment terminal is the second grade.
12. servers as claimed in claim 9, it is characterized in that, described first preset rules comprises:
What comprise in the telephone number of described payment terminal and described response contents is corresponding with the sequence number of the code keypad that described payment terminal is electrically connected.
13. 1 kinds of wire telephony payment terminals, is characterized in that, described payment terminal comprises:
Receiver module, for reception server send for notifying that described payment terminal initiates the request of oppositely registering of registering;
Respond module, for for described request feedback response of oppositely registering, and response contents comprises the content good with described server commitment.
14. payment terminals as claimed in claim 13, it is characterized in that, described receiver module comprises:
Electrically connecting submodule, for connecting the incoming call of described server, and receiving the voice signal converted by the request message for initiating the described request of oppositely registering of described server transmission.
15. payment terminals as claimed in claim 14, is characterized in that,
Described receiver module also comprises: judge submodule, for judging that whether caller ID is consistent with the number of pre-configured described server, if unanimously, then triggers describedly electrically connecting submodule;
Describedly electrically connect submodule also for the incoming call of not pointing out the mode of user to connect described server.
16. payment terminals as claimed in claim 14, it is characterized in that, described respond module comprises:
Transform subblock, for being converted to described request message by described voice signal;
Deciphering submodule, for deciphering described request message;
Response submodule, for when the decrypted result of described deciphering submodule meets the second preset rules, for described request feedback response of oppositely registering.
The security certification system of 17. 1 kinds of wire telephony payment terminals, is characterized in that, comprising:
Server according to any one of claim 9 ~ 12; With
Wire telephony payment terminal according to any one of claim 13 ~ 16.
The security certification system of 18. 1 kinds of wire telephony payment terminals, is characterized in that, comprising:
Phone-payment management platform, for being sent to access in radio platform by the predetermined telephone number that may there is the wire telephony payment terminal of security risk;
Access in radio platform, send for notifying that wired phone-payment terminal initiates the request of oppositely registering of registering to wire telephony payment terminal for the telephone number that provides according to described phone-payment management platform, and according to wire telephony payment terminal whether feed back to described oppositely register the response and wire telephony payment terminal feedback response of asking time response contents confirm the security of described payment terminal.
CN201510845798.4A 2015-11-26 2015-11-26 Wire telephone payment terminal and safety authentication method, correlation server and system for wire telephone payment terminal Pending CN105354705A (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201510845798.4A CN105354705A (en) 2015-11-26 2015-11-26 Wire telephone payment terminal and safety authentication method, correlation server and system for wire telephone payment terminal

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201510845798.4A CN105354705A (en) 2015-11-26 2015-11-26 Wire telephone payment terminal and safety authentication method, correlation server and system for wire telephone payment terminal

Publications (1)

Publication Number Publication Date
CN105354705A true CN105354705A (en) 2016-02-24

Family

ID=55330672

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201510845798.4A Pending CN105354705A (en) 2015-11-26 2015-11-26 Wire telephone payment terminal and safety authentication method, correlation server and system for wire telephone payment terminal

Country Status (1)

Country Link
CN (1) CN105354705A (en)

Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
EP0689337A1 (en) * 1994-06-20 1995-12-27 AT&T Corp. A method for dial-in access security using a multimedia modem
CN1350239A (en) * 2000-10-24 2002-05-22 信翔开发股份有限公司 System and method for raising the safety of network trade
CN202049526U (en) * 2011-05-10 2011-11-23 孙凌飞 Speech payment system
CN103106756A (en) * 2012-12-28 2013-05-15 银联商务有限公司 Communication method and communication system

Patent Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
EP0689337A1 (en) * 1994-06-20 1995-12-27 AT&T Corp. A method for dial-in access security using a multimedia modem
CN1350239A (en) * 2000-10-24 2002-05-22 信翔开发股份有限公司 System and method for raising the safety of network trade
CN202049526U (en) * 2011-05-10 2011-11-23 孙凌飞 Speech payment system
CN103106756A (en) * 2012-12-28 2013-05-15 银联商务有限公司 Communication method and communication system

Similar Documents

Publication Publication Date Title
US11394697B2 (en) Efficient methods for authenticated communication
US11032075B2 (en) Methods for secure cryptogram generation
CN103067401B (en) Method and system for key protection
CN101751629B (en) Method and system for authenticating multifactor with changing unique values
CN106656503B (en) Method for storing cipher key, data encryption/decryption method, electric endorsement method and its device
CN101221641B (en) On-line trading method and its safety affirmation equipment
CN107784499B (en) Secure payment system and method of near field communication mobile terminal
EP3292499B1 (en) Method and system for provisioning access data to mobile device
TWI591553B (en) Systems and methods for mobile devices to trade financial documents
CN111539720B (en) Credible transaction method and system based on digital currency
WO2015065249A1 (en) Method and system for protecting information against unauthorized use (variants)
CN105812334A (en) Network authentication method
EP1142194A1 (en) Method and system for implementing a digital signature
CN112765626A (en) Authorization signature method, device and system based on escrow key and storage medium
US20120284787A1 (en) Personal Secured Access Devices
CN111461731A (en) Block chain monitoring system and method applied to financial transactions
CN104301288A (en) Method and system for online identity authentication, online transaction certification, and online certification protection
KR101388935B1 (en) Two channel based user authentication apparatus and method
EP3766227B1 (en) Techniques for secure channel communications
JPH1065652A (en) System and method for communication secrecy information
CN116485381A (en) Scanned code method, electronic equipment, system and medium
CN106961417B (en) Identity verification method based on ciphertext
CN103795714A (en) Identity authentication system and method
CN105354705A (en) Wire telephone payment terminal and safety authentication method, correlation server and system for wire telephone payment terminal
CN116132072B (en) Security authentication method and system for network information

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
RJ01 Rejection of invention patent application after publication
RJ01 Rejection of invention patent application after publication

Application publication date: 20160224