CN108597154A - A kind of Internet of Things communication module group secure startup system and start method and POS machine - Google Patents
A kind of Internet of Things communication module group secure startup system and start method and POS machine Download PDFInfo
- Publication number
- CN108597154A CN108597154A CN201810313189.8A CN201810313189A CN108597154A CN 108597154 A CN108597154 A CN 108597154A CN 201810313189 A CN201810313189 A CN 201810313189A CN 108597154 A CN108597154 A CN 108597154A
- Authority
- CN
- China
- Prior art keywords
- safe
- communication module
- modules
- module
- code0
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Granted
Links
Classifications
-
- G—PHYSICS
- G07—CHECKING-DEVICES
- G07G—REGISTERING THE RECEIPT OF CASH, VALUABLES, OR TOKENS
- G07G1/00—Cash registers
- G07G1/0036—Checkout procedures
-
- G—PHYSICS
- G07—CHECKING-DEVICES
- G07G—REGISTERING THE RECEIPT OF CASH, VALUABLES, OR TOKENS
- G07G1/00—Cash registers
- G07G1/12—Cash registers electronically operated
- G07G1/14—Systems including one or more distant stations co-operating with a central processing unit
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/08—Network architectures or network communication protocols for network security for authentication of entities
Landscapes
- Engineering & Computer Science (AREA)
- Physics & Mathematics (AREA)
- General Physics & Mathematics (AREA)
- Computer Networks & Wireless Communication (AREA)
- Computer Hardware Design (AREA)
- Computer Security & Cryptography (AREA)
- Computing Systems (AREA)
- General Engineering & Computer Science (AREA)
- Signal Processing (AREA)
- Telephonic Communication Services (AREA)
- Computer And Data Communications (AREA)
Abstract
A kind of Internet of Things communication module group secure startup system of present invention offer and startup method and POS machine, wherein Internet of Things communication module group secure startup system, including communication module group and safe module;Communication module group includes BootLoader modules, PrePoot modules and Reset modules.The present invention additionally provides Internet of Things communication module group safe starting method, normal operating condition is in prior to communication module group by safe module, and perceive the starting state of communication module group;Then by the interaction between BootLoader modules, PrePoot modules and Reset modules and RAM, security verification is actuated for communication module group, has ensured safety of payment.The present invention also provides POS machine safety issue existing for inexpensive POS machine is solved using Internet of Things communication module group secure startup system as described above and method;With high application value and market prospects.
Description
Technical field
The present invention relates to POS machine safety of payment field, more particularly to a kind of Internet of Things communication module group safe starting method and POS
Machine.
Background technology
POS machine(Pointofsales, abbreviation POS machine), full name is point of sale information control system, is that one kind being furnished with item
The terminal reader of code or OCR code technologies has the function of cash or the amount cashier that barters.Main purpose is to commodity and media
Transaction provides data service and management function, and carries out the clearing of account.
With popularizing for China's mobile payment, mobile payment market is increasing, and usage scenario spreads all over streets and lanes.
And pay and be related to people's property, there is absolute requirement to the safety in payment process.Traditional POS machine is using communication mould
Group+(Safe module+universal cpu)Form.With popularizing for usage scenario, POS machine is examined under certain scene with cost
The pressure of amount.The form of traditional communication module group+safe module+universal cpu, cost is higher, cannot be satisfied the market of low cost
Demand.Occurs inexpensive POS machine in the market, emerging inexpensive POS machine is using communication module group(Containing CPU)+ safe mould
The pattern of group;Since inexpensive POS machine is using the pattern of communication module group opening CPU, there is safety in the startup of communication module group
Property insufficient problem.
Invention content
To solve the problems, such as the startup of the communication module group mentioned in above-mentioned background technology there are safety deficiency, the present invention carries
For a kind of Internet of Things communication module group secure startup system and start method and POS machine, wherein a kind of Internet of Things communication module group safety
Activation system, including communication module group and safe module;The communication module group include BootLoader modules, PrePoot modules and
Reset modules;
The PrePoot modules are communicated with safe module;The PrePoot modules are used to download Code0 codes from safe module,
And Code0 codes are run in RAM;
The safe module is used for the legitimacy of dynamic authentication Code0 codes, and is interacted with Code0 codes, right
BootLoader module legitimacies are verified;
The safe module and Reset module communications;The safe module passes through described in the normal startup of Reset modules or reset
BootLoader modules;The BootLoader modules are for initializing system hardware and software, and normal activation system.
Further, the PrePoot modules are communicated with safe module by UART interface or ICC interfaces or USB interface.
Internet of Things communication module group secure startup system provided by the invention, by the way that BootLoader is arranged in communication module group
Module, PrePoot modules simultaneously pass through the interaction between safe module;Realize the pattern pair in communication module group+safe module
The clean boot of communication module group realizes the purpose of safety payment.
The present invention additionally provides a kind of Internet of Things communication module group safe starting methods, using the as above arbitrary Internet of Things
Communication module group secure startup system, the method step are specific as follows:
S10, the safe module start and perceive the starting state of the communication module group;
After S20, the communication module group start, the PrePoot modules download Code0 codes from safe module, and are transported in RAM
Row Code0 codes;
The legitimacy of S30, the safe module dynamic authentication Code0 codes, and interacted with Code0 codes, it is right
BootLoader module legitimacies are verified;
Check results are transmitted to Reset modules by S40, the safe module;
S50, the Reset modules normally start according to the check results obtained from the safe module or reset the communication mould
Group.
Further, the exchange method in the step S30 is as follows:
S31, the Code0 codes obtain first group of key to safe module;
S32, the Code0 codes verify Code0 codes itself by verification algorithm, obtain according to the Key of acquisition
Result;And Result is sent to safe module;
The Result that S33, the safe module certification obtain;
If authentication result is illegal, pass through the Reset module resets system;
If authentication result is legal, safe module sends second group of Key and gives Code0 codes.
S34, the Code0 codes verify BootLoader modules according to second group of Key of acquisition;
If being verified, inform that safe module is legal;
If verification does not pass through, inform that safe module is illegal.
Further, the verification algorithm is RSA2048 algorithms.
Further, the Code0 codes are communicated with safe module by UART interface or ICC interfaces or USB interface.
Further, the RAM is set in communication module group;Code0 Code copyings are arrived by the PrePoot modules
In RAM, and PC pointers jump to the ram region and run the Code0 codes.
The present invention additionally provides Internet of Things communication module group safe starting method, by safe module prior to communication module group at
In normal operating condition, and perceive the starting state of communication module group;Then by BootLoader modules, PrePoot modules and
Interaction between Reset modules and RAM is actuated for security verification to communication module group.The present invention additionally provides
Internet of Things communication module group safe starting method has ensured communication mould by the validation-cross between safe module and communication module group
Safety of payment under this pattern of group+safe module.
Also a kind of POS machine of the present invention starts object using the arbitrary Internet of Things communication module group safe starting method as above
Combined network communication module.
The present invention additionally provides POS machine communication has been ensured by the validation-cross between safe module and communication module group
Safety of payment under this pattern of module+safe module;It solves to exist under inexpensive POS machine communication module group opening cpu model
Safety issue;With high application value and market prospects, small cost payment market can be pushed to.
Description of the drawings
In order to more clearly explain the embodiment of the invention or the technical proposal in the existing technology, to embodiment or will show below
There is attached drawing needed in technology description to be briefly described, it should be apparent that, the accompanying drawings in the following description is this hair
Some bright embodiments for those of ordinary skill in the art without having to pay creative labor, can be with
Obtain other attached drawings according to these attached drawings.
Fig. 1 is Internet of Things communication module group secure startup system schematic diagram provided by the invention.
Specific implementation mode
In order to make the object, technical scheme and advantages of the embodiment of the invention clearer, below in conjunction with the embodiment of the present invention
In attached drawing, technical scheme in the embodiment of the invention is clearly and completely described, it is clear that described embodiment is
A part of the embodiment of the present invention, instead of all the embodiments.Based on the embodiments of the present invention, those of ordinary skill in the art
The every other embodiment obtained without creative efforts, shall fall within the protection scope of the present invention.
As shown in Figure 1, the present invention provides a kind of Internet of Things communication module group secure startup system of embodiment offer and startup side
Method and POS machine, wherein a kind of Internet of Things communication module group secure startup system, including communication module group and safe module;The communication
Module includes BootLoader modules, PrePoot modules and Reset modules;
The PrePoot modules are communicated with safe module;The PrePoot modules are used to download Code0 codes from safe module,
And Code0 codes are run in RAM;
The safe module is used for the legitimacy of dynamic authentication Code0 codes, and is interacted with Code0 codes, right
BootLoader module legitimacies are verified;
The safe module is according to check results and Reset module communications;The safe module is normally started by Reset modules
Or reset the BootLoader modules;The BootLoader modules normally start system for initializing system hardware and software
System.
Internet of Things communication module group secure startup system provided in an embodiment of the present invention, by being arranged in communication module group
BootLoader modules, PrePoot modules simultaneously pass through the interaction between safe module;It realizes in communication module group+safe mould
Clean boot of the pattern of group to communication module group, realizes the purpose of safety payment.
Further, the PrePoot modules are communicated with safe module by UART interface or ICC interfaces or USB interface.
In addition the embodiment of the present invention provides a kind of Internet of Things communication module group safe starting method, using as above arbitrary described
Internet of Things communication module group secure startup system, the method step are specific as follows:
S10, the safe module start and perceive the starting state of the communication module group;In the step, safe module startup is adopted
The mode that the safe module starts is triggered with system boot;Or safe module not power down is constantly in standby mode, communication
The mode that module booting can then be detected by safe module;
After S20, the communication module group start, the PrePoot modules download Code0 codes from safe module, and are transported in RAM
Row Code0 codes;In the step, the RAM is set in communication module group;By the PrePoot modules by Code0 Code copyings
Into RAM, and PC pointers jump to the ram region and run the Code0 codes;The Code0 codes of verification are can be with independent operating
Code.
The legitimacy of S30, the safe module dynamic authentication Code0 codes, and interacted with Code0 codes, it is right
BootLoader module legitimacies are verified;In the step, exchange method is as follows:
S31, the Code0 codes obtain first group of key to safe module;
S32, the Code0 codes are according to the Key of acquisition, by verification algorithm, such as RSA2048 algorithms, to Code0 codes itself
It is verified, obtains Result;And Result is sent to safe module;
The Result that S33, the safe module certification obtain;
If authentication result is illegal, pass through the Reset module resets system;
If authentication result is legal, safe module sends second group of Key and gives Code0 codes.
S34, the Code0 codes verify BootLoader modules according to second group of Key of acquisition;
If being verified, inform that safe module is legal;
If verification does not pass through, inform that safe module is illegal.
In the step, if safe module can not carry out legal interaction with Code0 codes, then safe module will pass through
Reset module resets communication module groups.
Check results are transmitted to Reset modules by S40, the safe module;
S50, the Reset modules normally start according to the check results obtained from the safe module or reset the communication mould
Group.
In addition Internet of Things communication module group safe starting method that the embodiment of the present invention provides, by safe module prior to communication
Module is in normal operating condition, and perceives the starting state of communication module group;Then pass through BootLoader modules, PrePoot
Interaction between module and Reset modules and RAM is actuated for security verification to communication module group.The present invention is in addition
The Internet of Things communication module group safe starting method of offer is ensured by the validation-cross between safe module and communication module group
Safety of payment under this pattern of communication module group+safe module.
Further, the Code0 codes can include but is not limited to safe module through UART interface or ICC interfaces
Or USB interface communication.
Also a kind of POS machine of the embodiment of the present invention, using the arbitrary Internet of Things communication module group safe starting method as above come
Start Internet of Things communication module group.
In addition POS machine that the embodiment of the present invention provides is ensured by the validation-cross between safe module and communication module group
Safety of payment under this pattern of communication module group+safe module;It solves inexpensive POS machine communication module group and opens cpu model
Lower existing safety issue;With high application value and market prospects, small cost payment market can be pushed to.
Finally it should be noted that:The above embodiments are only used to illustrate the technical solution of the present invention., rather than its limitations;To the greatest extent
Present invention has been described in detail with reference to the aforementioned embodiments for pipe, it will be understood by those of ordinary skill in the art that:Its according to
So can with technical scheme described in the above embodiments is modified, either to which part or all technical features into
Row equivalent replacement;And these modifications or replacements, various embodiments of the present invention technology that it does not separate the essence of the corresponding technical solution
The range of scheme.
Claims (8)
1. a kind of Internet of Things communication module group secure startup system, it is characterised in that:Including communication module group and safe module;It is described logical
It includes BootLoader modules, PrePoot modules and Reset modules to interrogate module;
The PrePoot modules are communicated with safe module;The PrePoot modules are used to download Code0 codes from safe module,
And Code0 codes are run in RAM;
The safe module is used for the legitimacy of dynamic authentication Code0 codes, and is interacted with Code0 codes, right
BootLoader module legitimacies are verified;
The safe module and Reset module communications;The safe module passes through described in the normal startup of Reset modules or reset
BootLoader modules;The BootLoader modules are for initializing system hardware and software, and normal activation system.
2. Internet of Things communication module group secure startup system according to claim 1, it is characterised in that:The PrePoot modules
It is communicated by UART interface or ICC interfaces or USB interface with safe module.
3. a kind of Internet of Things communication module group safe starting method, it is characterised in that:Using Internet of Things as claimed in claim 1 or 2
Net communication module group secure startup system, the method step are specific as follows:
S10, the safe module start and perceive the starting state of the communication module group;
After S20, the communication module group start, the PrePoot modules download Code0 codes from safe module, and are transported in RAM
Row Code0 codes;
The legitimacy of S30, the safe module dynamic authentication Code0 codes, and interacted with Code0 codes, it is right
BootLoader module legitimacies are verified;
Check results are transmitted to Reset modules by S40, the safe module;
S50, the Reset modules normally start according to the check results obtained from the safe module or reset the communication mould
Group.
4. Internet of Things communication module group safe starting method according to claim 3, it is characterised in that:In the step S30
Exchange method is as follows:
S31, the Code0 codes obtain first group of key to safe module;
S32, the Code0 codes verify Code0 codes itself by verification algorithm, obtain according to the Key of acquisition
Result;And Result is sent to safe module;
The Result that S33, the safe module certification obtain;
If authentication result is illegal, pass through the Reset module resets system;
If authentication result is legal, safe module sends second group of Key and gives Code0 codes;
S34, the Code0 codes verify BootLoader modules according to second group of Key of acquisition;
If being verified, inform that safe module is legal;
If verification does not pass through, inform that safe module is illegal.
5. Internet of Things communication module group safe starting method according to claim 4, it is characterised in that:The verification algorithm is
RSA2048 algorithms.
6. Internet of Things communication module group safe starting method according to claim 4, it is characterised in that:The Code0 codes with
Safe module is communicated by UART interface or ICC interfaces or USB interface.
7. Internet of Things communication module group safe starting method according to claim 3, it is characterised in that:In the step S20
RAM is set in communication module group;By the PrePoot modules by Code0 Code copyings to RAM, and PC pointers jump to this
Ram region runs the Code0 codes.
8. a kind of POS machine, it is characterised in that:Using the Internet of Things communication module group clean boot as described in claim any one of 3-7
Method starts Internet of Things communication module group.
Priority Applications (1)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
CN201810313189.8A CN108597154B (en) | 2018-04-09 | 2018-04-09 | Safe starting system and starting method for communication module of Internet of things and POS machine |
Applications Claiming Priority (1)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
CN201810313189.8A CN108597154B (en) | 2018-04-09 | 2018-04-09 | Safe starting system and starting method for communication module of Internet of things and POS machine |
Publications (2)
Publication Number | Publication Date |
---|---|
CN108597154A true CN108597154A (en) | 2018-09-28 |
CN108597154B CN108597154B (en) | 2020-11-17 |
Family
ID=63621327
Family Applications (1)
Application Number | Title | Priority Date | Filing Date |
---|---|---|---|
CN201810313189.8A Active CN108597154B (en) | 2018-04-09 | 2018-04-09 | Safe starting system and starting method for communication module of Internet of things and POS machine |
Country Status (1)
Country | Link |
---|---|
CN (1) | CN108597154B (en) |
Cited By (2)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN110188542A (en) * | 2019-04-18 | 2019-08-30 | 华为技术有限公司 | A kind of terminal device starting method and apparatus |
CN112995092A (en) * | 2019-12-02 | 2021-06-18 | 阿里巴巴集团控股有限公司 | Data transmission method and device |
Citations (7)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN101021794A (en) * | 2006-05-25 | 2007-08-22 | 杭州晟元芯片技术有限公司 | Program bootstrap method after chip power-on |
KR101057671B1 (en) * | 2008-12-30 | 2011-08-18 | (주) 케이비씨테크 | Update system and method of card terminal using smart card |
CN103049694A (en) * | 2013-01-14 | 2013-04-17 | 上海慧银信息科技有限公司 | Core safety architecture implementation method of intelligent financial transaction terminal |
CN205160564U (en) * | 2015-11-18 | 2016-04-13 | 北京微智全景信息技术有限公司 | System security starting drive and intelligent terminal |
CN105957276A (en) * | 2016-05-17 | 2016-09-21 | 福建新大陆支付技术有限公司 | Android system-based intelligent POS security system, starting method and data management control method |
CN107330333A (en) * | 2017-06-06 | 2017-11-07 | 百富计算机技术(深圳)有限公司 | Ensure the method and device of POS firmware safety |
CN107466455A (en) * | 2017-03-15 | 2017-12-12 | 深圳大趋智能科技有限公司 | POS safe verification method and device |
-
2018
- 2018-04-09 CN CN201810313189.8A patent/CN108597154B/en active Active
Patent Citations (7)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN101021794A (en) * | 2006-05-25 | 2007-08-22 | 杭州晟元芯片技术有限公司 | Program bootstrap method after chip power-on |
KR101057671B1 (en) * | 2008-12-30 | 2011-08-18 | (주) 케이비씨테크 | Update system and method of card terminal using smart card |
CN103049694A (en) * | 2013-01-14 | 2013-04-17 | 上海慧银信息科技有限公司 | Core safety architecture implementation method of intelligent financial transaction terminal |
CN205160564U (en) * | 2015-11-18 | 2016-04-13 | 北京微智全景信息技术有限公司 | System security starting drive and intelligent terminal |
CN105957276A (en) * | 2016-05-17 | 2016-09-21 | 福建新大陆支付技术有限公司 | Android system-based intelligent POS security system, starting method and data management control method |
CN107466455A (en) * | 2017-03-15 | 2017-12-12 | 深圳大趋智能科技有限公司 | POS safe verification method and device |
CN107330333A (en) * | 2017-06-06 | 2017-11-07 | 百富计算机技术(深圳)有限公司 | Ensure the method and device of POS firmware safety |
Cited By (2)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN110188542A (en) * | 2019-04-18 | 2019-08-30 | 华为技术有限公司 | A kind of terminal device starting method and apparatus |
CN112995092A (en) * | 2019-12-02 | 2021-06-18 | 阿里巴巴集团控股有限公司 | Data transmission method and device |
Also Published As
Publication number | Publication date |
---|---|
CN108597154B (en) | 2020-11-17 |
Similar Documents
Publication | Publication Date | Title |
---|---|---|
CN103023876B (en) | A kind of network terminal and safety certification thereof, registration activation method, server | |
CN101252435B (en) | Method for realizing dynamic password generation and judge on smart card | |
CN110826043B (en) | Digital identity application system and method, identity authentication system and method | |
CN104038924B (en) | Realize the method and system of Resource Exchange information processing | |
CN104732396A (en) | Payment control method and device | |
CN101651675A (en) | Method and system for enhancing security of network transactions | |
CN109863520A (en) | Wallet System and wallet application method and storage medium based on block chain | |
CN101216915A (en) | A secured mobile payment method | |
CN101599836A (en) | A kind of endorsement method, signature device and system | |
CN105681281A (en) | Password device based on embedded operating system | |
CN108597154A (en) | A kind of Internet of Things communication module group secure startup system and start method and POS machine | |
CN102238135A (en) | Security authentication server | |
CN102938116B (en) | A kind of full link protection business method of Transaction Safety | |
CN101917432A (en) | Business processing method, information processing platform equipment and business platform equipment | |
CN101807237B (en) | Signature method and device | |
CN101252436B (en) | Smart card dynamic password creating and judging system | |
CN101707652B (en) | Mobile phone capable of realizing digital certificate application | |
CN103002430A (en) | Method, device and system for binding terminal applications to terminal numbers | |
CN103136881B (en) | Method of payment and payment system | |
CN102238171B (en) | Intelligent key device, and system and method for improving security of online transaction and authentication | |
CN109699015A (en) | Binding machine and card relationship authentication method, device and communication system | |
CN111553678A (en) | Two-dimensional code payment method and system based on mobile phone business card | |
CN102542698B (en) | Safety protective method of electric power mobile payment terminal | |
CN102012978A (en) | Method and system for safely upgrading ISO (International Standard Code) file | |
CN101876905A (en) | Client development system based on fore-end business platform and implementation method thereof |
Legal Events
Date | Code | Title | Description |
---|---|---|---|
PB01 | Publication | ||
PB01 | Publication | ||
SE01 | Entry into force of request for substantive examination | ||
SE01 | Entry into force of request for substantive examination | ||
GR01 | Patent grant | ||
GR01 | Patent grant | ||
TR01 | Transfer of patent right | ||
TR01 | Transfer of patent right |
Effective date of registration: 20211129 Address after: 361000 one of 4f-401, plant 4, Zhonglian Sunshine Park, No. 37, Gulong South Road, maxiang street, Xiang'an District, Xiamen City, Fujian Province Patentee after: Xiamen Xiaxin intelligent IOT Technology Co.,Ltd. Address before: 2f-a5, zone a, Huaxun building, software park, torch hi tech Zone, Xiamen City, Fujian Province, 361000 Patentee before: XIAMEN XIAXIN MOBILE COMMUNICATION CO.,LTD. |