CN101071494B - A kind of method realizing bill password verification - Google Patents

A kind of method realizing bill password verification Download PDF

Info

Publication number
CN101071494B
CN101071494B CN200710117616.7A CN200710117616A CN101071494B CN 101071494 B CN101071494 B CN 101071494B CN 200710117616 A CN200710117616 A CN 200710117616A CN 101071494 B CN101071494 B CN 101071494B
Authority
CN
China
Prior art keywords
bill
cipher
bank
client
web
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Active
Application number
CN200710117616.7A
Other languages
Chinese (zh)
Other versions
CN101071494A (en
Inventor
苏文力
宁保琪
鲁小淘
潘兆明
谭汉清
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Industrial and Commercial Bank of China Ltd ICBC
Original Assignee
Industrial and Commercial Bank of China Ltd ICBC
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Industrial and Commercial Bank of China Ltd ICBC filed Critical Industrial and Commercial Bank of China Ltd ICBC
Priority to CN200710117616.7A priority Critical patent/CN101071494B/en
Publication of CN101071494A publication Critical patent/CN101071494A/en
Application granted granted Critical
Publication of CN101071494B publication Critical patent/CN101071494B/en
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Landscapes

  • Financial Or Insurance-Related Operations Such As Payment And Settlement (AREA)

Abstract

The present invention relates to bank money cipher verification technique field, disclose a kind of method realizing bill password verification, comprise: client first carries out bill application, bill cipher is obtained from bank money system after completing bill application, then when carrying out bill and carrying back, bank money system carries out password authentification to described bill, judges that whether the bill cipher that client inputs is consistent with the bill cipher that self produces, if unanimously, then be verified, return the information of being verified; Otherwise, checking not by, return authentication failed information.Utilize the present invention, overcome the shortcomings such as traditional seal mode anti-counterfeit capability is poor, settlement efficiency is low, financial risks, take into account the convenience of password folk prescription formula, flexibly and scrambler safe, reliable, the channel of customer acquisition bank service is integrated, safety circulation for customer bank bill provides more abundant channel easily, while guarantee bill operation realizes legitimacy and security, what effectively reduce bill operation realizes cost.

Description

A kind of method realizing bill password verification
Technical field
The present invention relates to bank money cipher verification technique field, particularly relate to a kind of method realizing bill password verification, bill password verification process provided by the invention is different from traditional seal mode completely, and the mode such as the password list in electronization epoch or scrambler, it is a kind of novel bill password verification mode, and be incorporated into the existing bank service channel of client further---in Web bank, obtain bank money password by the existing online banking service used in everyday of client, and realize the checking of bank money password.
Background technology
Under modern social economy develop rapidly, scientific and technological increasingly flourishing megatrend, the method for operation of traditional banking institution also can not be subject to all impacts of various new things with avoiding.The modernization Working Means comprising banking process electronization, networking etc. arises at the historic moment, and from then on banking system efficiency and security and reliability are greatly improved.But in the note validating mode of bank, still continue to use a set of traditional more complicated, not method very easily in other words.
Traditional bank bill verifying mode is, by enterprise, the pattern of its legal person's chapter is reserved in the bank of deposit.Enterprise disburse funds open bill as check time, to borrow except filling in, except the key element such as account, date, the amount of money of credit side, the most important thing is to add a cover unique discriminating of legal person's seal legal as bill in true and false.After bill is sent into gathering row by beneficiary, gathering row must deliver to bill the bank of deposit paying side, by knuckle to the true and false of mode manual verification seal of print and the legitimacy of bill.This note validating mode and means result from the science and technology very inflourishing epoch, can ensure suitable security at that time, but along with the progress of science and technology and the sharply expansion of banking amount, in the running of reality, manifest the disadvantage become clear day by day and weakness:
◆ the maturation of electronics countermark technology, the precision that seal is copied is very high, and error rate is only 3/1000ths, and considerably beyond the scope that artificial naked eyes can be differentiated, the true and false of seal has been difficult to differentiate, and the fiduciary level of manual verification has become very low;
◆ seal presents in a kind of mode of figure, and blur level is very large.The degree true to nature of figure and paper, ink paste, have strong dependency by the degree of wear etc. of dynamics when printing, seal, even if adopt electronic intelligence recognition technology, the accuracy of discriminating is also very low;
◆ bill by being sent to paying bank after bank clearing, often needs several days even longer time from gathering row.The increase day by day of bill amount, makes bank clearing work amount more and more heavier, and work efficiency is difficult to improve;
◆ the amount of money on bill, account, date, all key elements of note number and seal wide of the mark, only assert that the legitimacy of bill is imprecise with the authenticity of seal, filling out to usurping, distort bill and leave opportunity.
, the unmanageable all shortcoming such as settlement efficiency low, financial risks poor for traditional bill print test mode anti-counterfeit capability, creates a kind of new ticket validation system---electronic payment secret code system.Electronic payment secret code system common are following two kinds of modes at present---payment cipher folk prescription formula and payment cipher mode.
As shown in Figure 1, Fig. 1 is the schematic diagram of payment cipher folk prescription formula common at present.Payment cipher folk prescription formula generates a different payment cipher by payment cipher collator for often opening bill when enterprise customer applies for bill.The payment cipher of payment cipher folk prescription formula is relevant with following four elements: client reservation account password, account, bill type, note number.Production process is in bank's end collator, uses and generates a payment cipher through the close payment cipher generation algorithm doing approval of state to often opening bill, issue user after printing in the mode of cipher envelope; Client's cipher envelope that inquiry ticket is corresponding when using ticket, fills in password in envelope on ticket.When bill carries back (cashing), demo plant in the computer system of bank and payment cipher collator, verifies the validity of payment cipher on bill and bill and legitimacy.
As shown in Figure 2, Fig. 2 is the schematic diagram of payment cipher mode common at present.Simultaneously payment cipher mode provides e_payment cipher to client when approval book is bought at each family of enterprise, and inject account key in scrambler.During user's issuance of a note, according to key elements such as account, bill type, note number, the amount of the instrument, the date of issuance, debit's accounts, under the control of account key, generated the payment cipher of this bill by e_payment cipher generating algorithm, the password that scrambler calculates by client fills on ticket.When bill carries back (cashing), the computer system of bank and the password authentication device corresponding with scrambler, verify the validity of payment cipher on bill and bill and legitimacy.
Electronic payment secret code system make use of many high-tech means such as modern computer network technologies, Cryptography Principles, singlechip technology, overcome all drawbacks of traditional bill qualification mode, greatly can improve traffic handing capacity and the security of bank, improve the settlement efficiency of bank.But be no matter the mode of password folk prescription formula or scrambler, all there is certain deficiency.
Wherein, comparatively seal security is higher for the mode of payment cipher list; but because payment cipher folk prescription formula just produces password when bill is bought; so the dynamic key element such as payment cipher and the amount of the instrument, the date of issuance and debit's account has nothing to do; therefore the legitimacy of bill check drawer can only be verified; and can not protect the out of Memory of bill, so fill out helpless to usurping of bill, legitimacy and the security of bill operation cannot be ensured.
The security of e_payment cipher mode is than password folk prescription Shi Genggao, the use of e_payment cipher carries out cryptographic calculations when issue of bill, therefore for the dynamic key elements such as the amount of the instrument, the date of issuance and debit's account can both participate in computing, participation key element is complete, so not only can verify the legitimacy of check drawer, also backed bill key element can not be usurped and fill out, distort.But adopt in this way, corporate client needs to buy payment cipher, and cost compare is high, and scrambler needs special messenger's keeping, adds the fund cost of client and the input of handling cost, and need when going out to carry, also inconvenient.
Summary of the invention
(1) technical matters that will solve
In view of this, fundamental purpose of the present invention is to provide a kind of method realizing bill password verification, to reach while guarantee bill operation realizes legitimacy and security, reduces the object that bill operation realizes cost.
(2) technical scheme
For achieving the above object, the invention provides a kind of method realizing bill password verification, the method comprises: client first carries out bill application, bill cipher is obtained from bank money system after completing bill application, then when carrying out bill and carrying back, bank money system carries out password authentification to described bill, judges that whether the bill cipher that client inputs is consistent with the bill cipher that self produces, if unanimously, then be verified, return the information of being verified; Otherwise, checking not by, return authentication failed information;
Described bank money system at least comprises bill application treating apparatus, billing information memory storage, password generation device and password authentication device, wherein:
Describedly carry out bill application and comprise: bill application treating apparatus checks the application information that client is submitted to, check by after application information, the billing information applied for and bill cipher obtain manner information that client is submitted to be saved in described billing information memory storage, realize selling of bill;
Describedly obtain bill cipher from bank money system and comprise: password generation device judges whether the bill being received from client sells record described billing information memory storage, if there is record, then check this billing information whether correct and whether this bill state is normal, check the correct and bill state of billing information normal after, judge that whether the bill cipher obtain manner information of this bill is consistent with the bill cipher obtain manner information of preserving in described billing information memory storage again, if consistent, described billing information and described bill cipher obtain manner information is then utilized to produce bill cipher, and return to client,
Described bank money system is carried out password authentification to described bill and is comprised: when bill is carried back into row password authentification, described password authentication device receives billing information, the bill cipher that client provides and checking require information, judge whether the bill received sells record in described billing information memory storage, if have record and bank money information and bank money state normal, then described password authentication device produces bill cipher according to the billing information preserved in described billing information memory storage and bill cipher obtain manner information, judge that whether the bill cipher produced is consistent with the bill cipher that client provides, if consistent, then be verified, return the information of being verified, otherwise, checking not by, return authentication failed information.
In such scheme, described password generation device is sold taking a step forward of record and is comprised judging whether the bill being received from client has in described billing information memory storage: client sends billing information to described password generation device by safety network system;
Described password generation device is judging that the bill cipher obtain manner information of this bill comprises with whether consistent the taking a step forward of bill cipher obtain manner information of preserving in described billing information memory storage: described password generation device transmits the described safety network system of billing information type according to client obtains the bill cipher obtain manner information of this bill;
Described password generation device, when the bill cipher of generation is returned to client, is returned by described safety network system.
In such scheme, described safety network system is bank system of web,
Described client sends billing information to described password generation device by bank system of web;
Described password generation device transmits the safety network system of billing information type according to client is bank system of web, and the bill cipher obtain manner obtaining this bill is Web bank's application pin mode;
Described password generation device, when the bill cipher of generation is returned to client, is returned by described bank system of web.
The method adopts PKI diploma system to realize the safe transmission of information between client and described password generation device further in described bank system of web, and described client sends billing information to described password generation device by bank system of web and comprises:
Client uses Web bank's certificate to log in PKI diploma system, and the validity of PKI diploma system to Web bank's certificate that client uses checks, checks by the rear escape way set up between client and bank system of web;
Client sends logging request by described escape way to bank system of web, and bank system of web carries out certification to client, and certification is successfully logged onto bank system of web by rear client;
Typing bank money information in the function interface of the application bill cipher that client provides at bank system of web is also submitted to;
Bank system of web receives the bank money information of typing by described function interface, validity check is carried out to the billing information received, check and this billing information to be sent in the interface that password generation device provides by rear bank system of web, wait for returning of result.
In such scheme, the bill cipher of generation is returned to client by bank system of web and comprises by described password generation device: the bill cipher of generation is returned to bank system of web by the interface between self and bank system of web by password generation device, the bill cipher returned is presented at transaction results interface by bank system of web, and client obtains bill cipher.
The bill cipher that in such scheme, described password authentication device receives billing information, client provides and checking require information, receive by self being supplied to client end interface.
In such scheme, described password authentication device at least comprises Net silver mode authentication unit, password folk prescription formula authentication unit and scrambler mode authentication unit, described password authentication device judge the bill received in described billing information memory storage, sell record and bank money information and bank money state normal after, comprise further: password authentication device judges the bill cipher obtain manner of this bill, if the bill cipher obtain manner of this bill is Web bank's application pin mode, the Net silver mode authentication unit then calling self produces bill cipher and judges that whether the bill cipher produced is consistent with the bill cipher that client provides, if the bill cipher obtain manner of this bill is password list application pin mode, then the password folk prescription formula authentication unit calling self produces bill cipher and judges that whether the bill cipher produced is consistent with the bill cipher that client provides, if the bill cipher obtain manner of this bill is scrambler application pin mode, then the scrambler mode authentication unit calling self produces bill cipher and judges that whether the bill cipher produced is consistent with the bill cipher that client provides.
(3) beneficial effect
As can be seen from technique scheme, the present invention has following beneficial effect:
1, the present invention is utilized, overcome the unmanageable shortcomings such as traditional seal mode anti-counterfeit capability is poor, settlement efficiency is low, financial risks, take into account the convenience of password folk prescription formula, flexibly and the feature such as safe, reliable of scrambler simultaneously, and the channel of customer acquisition bank service is integrated, can be used as effectively supplementing of existing payment cipher means, safety circulation for customer bank bill provides more abundant channel easily, while guarantee bill operation realizes legitimacy and security, what reduce bill operation realizes cost.
2, the bank money password of Web bank's application is a kind of cryptogram form of electronization, has and is better than traditional seal mode feature.
3, cost is promoted low, easy to use.Client is in advance after bank outlets have purchased bank money basis, when issue of bill, only need hold enterprise network to go to bank certificate, after debarkation net web bank system carries out authentication, after entering relationship trading input account, the date of issuance, note number, the amount of money, system generates a payment cipher automatically, and client holds the bank money signed and issued and password can handle in bank the business of cashing, and without the need to extra equipment investment.
4, at cryptographic calculation functionally, encryption element is consistent with existing payment cipher mode, support package contains the electronic payment secret code (similar with the calculating strength of existing payment cipher) of the transition information such as date, the amount of money and does not comprise the electronic cipher list (similar with the calculating strength of existing payment cipher list) of the transition information such as the amount of money simultaneously, is convenient to client and selects different cipher mode with acceptance level as required.
5, electronic payment secret code is in the process generated and veritify, and employs the hardware encryption algorithm that security intensity is higher, is signing and issuing in transmitting procedure the safe transmission utilizing Net silver PKI encryption system to achieve billing information and electronic payment secret code information.
6, accomplished to be consistent with existing business flow process when bank money proposes back process, can not impact service processing mode.
7, by the expansion to system, conveniently can realize new password generation method and corresponding verification method, also conveniently can realize the expansion of new password application channel.
Accompanying drawing explanation
Fig. 1 is the schematic diagram of payment cipher folk prescription formula common at present;
Fig. 2 is the schematic diagram of payment cipher mode common at present;
Fig. 3 is the structural representation of bank money system provided by the invention;
Fig. 4 is the realization flow figure realizing bill password verification overall technological scheme provided by the invention;
Fig. 5 is the method flow diagram of bill application process provided by the invention;
Fig. 6 is the method flow diagram of bill cipher Web bank provided by the invention application process;
Fig. 7 is the method flow diagram that password authentification process proposed back by bill provided by the invention.
Embodiment
For making the object, technical solutions and advantages of the present invention clearly understand, below in conjunction with specific embodiment, and with reference to accompanying drawing, the present invention is described in more detail.
As shown in Figure 3, Fig. 3 is the structural representation of bank money system provided by the invention, and this system at least comprises bill application treating apparatus 30, billing information memory storage 31, password generation device 32 and password authentication device 33.
Wherein, bill application treating apparatus 30, provides client to buy the function of bank money.By this device, client is bought the application of bank money, and the bank money Data Enter that client buys is in billing information memory storage 31, realizes selling of bank money.While certificate of drawing a bill on sale, indicate bill cipher and obtain the mode adopted, jointly be stored in billing information memory storage 31 by this information with bill out of Memory, this password obtains the mode data that adopt and produces contrast reference when password and password authentication device 33 verify bill cipher for password generation device 32.
Billing information memory storage 31, all information of registration bill, comprise account, bill type, note number, the amount of the instrument, the date of issuance, debit's account and other business information, also register the state of bill simultaneously, the application of bill cipher, test the process informations such as close mode.Information in this device is write by bill application treating apparatus 30, and password generation device 32 utilizes the information in this device to produce the password of bill, and password authentication device 33 utilizes the information in this device to complete the checking of the password of bill.
Password generation device 32, completes the function that corresponding password was checked and produced to billing information.When needs application password, the relevant information of bill is delivered to password generation device 32 by Request System (as bank system of web) by such requirement, first this device is retrieved the bill sent here and whether in billing information memory storage 31, is sold record, as existed and whether check billing information correct and whether bill state is normal, check all normal after, then produce bill cipher according to the relevant information of bill and the password obtain manner of statement and password returned to Request System.Password generation device 32 can further include Net silver mode authentication unit 20, password folk prescription formula authentication unit 21 and scrambler mode authentication unit 22.Net silver mode authentication unit 20 can complete the generation of Web bank's mode password, and password folk prescription formula authentication unit 21 can complete password folk prescription formula bill cipher and produce, and scrambler mode authentication unit 22 can complete scrambler mode bill cipher and produce.In addition, password generation device 32 can also be expanded further and comprise alternate manner authentication unit 23, for other banking system expands out other password producing method.
Password authentication device 33, provides client to verify the function of billing information and password when carrying back bill.When needs password authentification, password authentication device 33 is delivered in bill relevant information, corresponding bill cipher and checking requirement, first this device is retrieved the bill sent here and whether in billing information memory storage 31, is sold record, as exist and billing information and bill state normal, the password acquisition pattern of statement when password authentication device 33 is bought according to bill, adopt corresponding method of password authentication to complete password authentification, and the result is turned back to external request system.The Net silver mode authentication unit 20 of this device completes the checking of the bill cipher of Web bank's application, password folk prescription formula authentication unit 21 completes the checking of password folk prescription formula password, scrambler mode authentication unit 22 completes the checking of scrambler mode password, and the password that the password producing method that alternate manner authentication unit 23 is expanded out for other banking system corresponding produces provides checking.
Whole system by expanding the alternate manner unit in password generation device 32 and password authentication device 33, can realize new password generation method and corresponding verification method, and password as higher in level of confidentiality produces, or the longer password of length produces etc.; Also can by the now new password application channel of expansion to other banking system and other access channel accordingly, as Mobile banking, self-service facility etc.
Blank bank money is sold to bearer by bill application treating apparatus 30 and corresponding treatment step; Bearer fills in billing information before use and the corresponding manner obtained by bill cipher and treatment step obtain bill cipher, fills on bill; When bearer needs to carry back, billing information is checked by bill password verification treatment step, verifies, complete and carry back.
Based on the structural representation of the bank money system shown in Fig. 3, Fig. 4 is the realization flow figure realizing bill password verification overall technological scheme provided by the invention, the method comprises: client first carries out bill application, bill cipher is obtained from bank money system after completing bill application, then when carrying out bill and carrying back, bank money system carries out password authentification to described bill, judge that whether the bill cipher that client inputs is consistent with the bill cipher that self produces, if consistent, then be verified, return the information of being verified; Otherwise, checking not by, return authentication failed information.
Above-mentioned client is carried out bill application and is comprised: bill application treating apparatus checks the application information that client is submitted to, check by after application information, the billing information applied for and bill cipher obtain manner information that client is submitted to be saved in described billing information memory storage, realize selling of bill.
Above-mentioned client obtains bill cipher from bank money system and comprises: password generation device judges whether the bill being received from client sells record described billing information memory storage, if there is record, then check this billing information whether correct and whether this bill state is normal, check the correct and bill state of billing information normal after, judge that whether the bill cipher obtain manner information of this bill is consistent with the bill cipher obtain manner information of preserving in described billing information memory storage again, if consistent, described billing information and described bill cipher obtain manner information is then utilized to produce bill cipher, and return to client.
Above-mentioned password generation device is sold taking a step forward of record and is comprised judging whether the bill being received from client has in described billing information memory storage: client sends billing information to described password generation device by safety network system.Described password generation device is judging that the bill cipher obtain manner information of this bill comprises with whether consistent the taking a step forward of bill cipher obtain manner information of preserving in described billing information memory storage: described password generation device transmits the described safety network system of billing information type according to client obtains the bill cipher obtain manner information of this bill.Described password generation device, when the bill cipher of generation is returned to client, is returned by described safety network system.
Above-mentioned safety network system can be generally various safety network system, such as bank system of web, Mobile banking's network system and self-service facility network system etc.Bank system of web provides and obtains corresponding input operation interface required for bill cipher and results page function.Be successfully logged onto the client terminal of bank system of web, the bill cipher application function interface provided by bank system of web, the relevant information of typing bank money, by information by Internet Transmission on the net banking system, bank system of web utilizes the bank money information of typing to call corresponding password creating unit in password generation device 32 and produces password, to be presented in results page that bank system of web provides by fetching cipher.
When safety network system is bank system of web, client sends billing information to described password generation device by bank system of web, password generation device transmits the safety network system of billing information type according to client is bank system of web, and the bill cipher obtain manner obtaining this bill is Web bank's application pin mode; Password generation device, when the bill cipher of generation is returned to client, is returned by described bank system of web.
The method can also adopt PKI diploma system to realize the safe transmission of information between client and described password generation device further in described bank system of web.The cryptographic algorithm that PKI diploma system provides the key length of sufficient length and industry to generally acknowledge, the information data used for functions such as access bank system of web, the applications of use bill cipher provides safeguard protection.When adopting PKI diploma system, described client sends billing information to described password generation device by bank system of web and comprises: client uses Web bank's certificate to log in PKI diploma system, the validity of PKI diploma system to Web bank's certificate that client uses checks, checks by the rear escape way set up between client and bank system of web; Client sends logging request by described escape way to bank system of web, and bank system of web carries out certification to client, and certification is successfully logged onto bank system of web by rear client; Typing bank money information in the function interface of the application bill cipher that client provides at bank system of web is also submitted to; Bank system of web receives the bank money information of typing by described function interface, validity check is carried out to the billing information received, check and this billing information to be sent in the interface that password generation device provides by rear bank system of web, wait for returning of result.
The bill cipher of generation is returned to client by bank system of web and comprises by above-mentioned password generation device: the bill cipher of generation is returned to bank system of web by the interface between self and bank system of web by password generation device, the bill cipher returned is presented at transaction results interface by bank system of web, and client obtains bill cipher.
Above-mentioned bank money system is carried out password authentification to described bill and is comprised: when bill is carried back into row password authentification, described password authentication device receives billing information, the bill cipher that client provides and checking require information, judge whether the bill received sells record in described billing information memory storage, if have record and bank money information and bank money state normal, then described password authentication device produces bill cipher according to the billing information preserved in described billing information memory storage and bill cipher obtain manner information, judge that whether the bill cipher produced is consistent with the bill cipher that client provides, if consistent, then be verified, return the information of being verified, otherwise, checking not by, return authentication failed information.
Above-mentioned password authentication device at least comprises Net silver mode authentication unit, password folk prescription formula authentication unit and scrambler mode authentication unit, described password authentication device judge the bill received in described billing information memory storage, sell record and bank money information and bank money state normal after, comprise further: password authentication device judges the bill cipher obtain manner of this bill, if the bill cipher obtain manner of this bill is Web bank's application pin mode, the Net silver mode authentication unit then calling self produces bill cipher and judges that whether the bill cipher produced is consistent with the bill cipher that client provides, if the bill cipher obtain manner of this bill is password list application pin mode, then the password folk prescription formula authentication unit calling self produces bill cipher and judges that whether the bill cipher produced is consistent with the bill cipher that client provides, if the bill cipher obtain manner of this bill is scrambler application pin mode, then the scrambler mode authentication unit calling self produces bill cipher and judges that whether the bill cipher produced is consistent with the bill cipher that client provides.
Based on the realization flow figure realizing bill password verification overall technological scheme provided by the invention shown in Fig. 4, below each step is described in detail.
Wherein, as shown in Figure 5, Fig. 5 is the method flow diagram of bill application process provided by the invention to bill application processing method, and the method comprises the steps:
Step 100: blank bank money is sold to client by bill application treating apparatus 30, namely bill application treating apparatus 30 provides function interface to receive client and buys the request of bill and bill cipher obtains the information such as the mode adopted.As client coming bank for buying bank money, being submitted to buy bill application by bank counter, the function interface that bank cashier uses bill application treating apparatus 30 to provide, information client provided carries out typing, is submitted to after entry information completes by transaction.
Step 101: bill application treating apparatus 30 carries out inspection to the various information that application interface receives to be checked, all pass through after by relevant information and application to billing information be jointly stored in billing information memory storage 31, when producing password for password generation device 32 and contrast reference when password authentication device 33 verifies bill cipher.
Complete the bank money selling registration and just can carry out bill cipher application and bill cipher proposes back checking.
As shown in Figure 6, Fig. 6 is the method flow diagram of bill cipher Web bank provided by the invention application process to bill cipher Web bank application processing method, and the method comprises the steps:
The validity of step 200:PKI diploma system to Web bank's certificate that client uses checks, Web bank's credentials check by after again for access bank system of web set up escape way.Bank system of web device carries out certification to client identity, and certification is successfully logged onto in bank system of web by rear client.
Step 201: bank system of web device represents the function interface of application bill cipher, client obtains function interface by client terminal, interface provides bank money Data Enter function, and client can submit to after typing bank money information in interface, carries out application password.Other banking system expanded also can complete corresponding function.
Step 202: typing billing information in the interface of client in client terminal, bank system of web device receives the bank money information of typing by interface, validity check is carried out to the billing information received, the password provided again this billing information being sent to password generation device 32 by bank system of web device after coherence check produces in interface, waits for returning of result.
Step 203: password generation device 32 produces interface from password the bank money information obtaining external call system and send, first the billing information sent here is contrasted whether consistent with the information registered in billing information memory storage 31, if information unanimously rechecks, whether billing information is correct and whether bill state is normal, cross-check information all normal after, password generation device 32 enters the step judging password acquisition pattern.
Step 204: password generation device 32 judges the password application way Bu Shi Web bank application way of this bank money statement when buying, this device returns password application status of fail, by interface, this state is returned bank system of web device again, bank system of web device 4 is according to the relevant information of state display.The similar process of other banking system of expanding.
Step 205: password generation device 32 judges that the password application way of this bill statement when buying is Web bank's application way, and the bank money relevant information that password generation device 32 utilizes password to produce and receives in interface produces bill cipher.The similar process of other banking system of expanding.
Step 206: password generation device 32 turns back to by interface the called side bank system of web device that password produces interface by producing bill cipher, and the password returned is presented at transaction results interface by bank system of web device, customer acquisition bill cipher.The similar process of other banking system of expanding.
After bill application to password, normally can use, can carry back.
Bill puies forward back password authentification disposal route as shown in Figure 7, and Fig. 7 is the method flow diagram that password authentification process proposed back by bill provided by the invention, and the method comprises the steps:
Step 300: the function interface of password authentication device 33 by outwards providing, bill cipher typing in interface of the information on the bank money that demand is carried back by bank cashier and correspondence, submits instruction to after entry information.
Step 301: the information registered in the billing information sent here by function interface and billing information memory storage 31 is compared by password authentication device 33, comparison information is passed through and is checked which kind of pin mode of all normal rear decides bill employings of bill state.
Step 302: what password authentication device 33 judged that this bill adopts is Web bank's application pin mode, the password of authentication module to billing information and correspondence calling Web bank's application pin mode corresponding is verified, the result of checking is returned the results page of password authentication device 33, complete bill password verification process.
Step 103: password authentication device 33 judges the mode of the Bu Shi Web bank application password that this bill adopts, password authentication device 33 is according to its pin mode, the passwords of password authentication module to billing information and correspondence such as other banking system of corresponding password list or scrambler or expansion are used to verify, the result of checking is returned the results page of password authentication device 33, complete bill password verification process.
Above-described specific embodiment; object of the present invention, technical scheme and beneficial effect are further described; be understood that; the foregoing is only specific embodiments of the invention; be not limited to the present invention; within the spirit and principles in the present invention all, any amendment made, equivalent replacement, improvement etc., all should be included within protection scope of the present invention.

Claims (6)

1. a bank money system, for accepting bill application request from client and producing bill, it is characterized in that, this system comprises:
Bill application treating apparatus, checks for the application information submitted to client, check by after application information, the billing information of application and bill cipher obtain manner information that client is submitted to be saved in billing information memory storage;
Billing information memory storage, for storing the application information of described client submission, the billing information of application and bill cipher obtain manner information;
Password generation device, described client sends billing information to this password generation device by safety network system, this password generation device is for judging whether the bill being received from client sells record in described billing information memory storage, if there is record, then check this billing information whether correct and whether this bill state is normal, check the correct and bill state of billing information normal after, the type transmitting the described safety network system of billing information according to client obtains the bill cipher obtain manner information of this bill, judge that whether the bill cipher obtain manner information of this bill is consistent with the bill cipher obtain manner information of preserving in described billing information memory storage again, if consistent, then according to billing information and the bill cipher obtain manner information generation bill cipher of described application, and return to client by described secure network,
Password authentication device, information is required for receiving billing information that client provides, bill cipher and checking, judge whether the bill received sells record in described billing information memory storage, if sell record and billing information and bill state normal, then produce bill cipher according to the billing information preserved in described billing information memory storage and bill cipher obtain manner information, judge that whether the bill cipher produced is consistent with the bill cipher that client provides, if consistent, then be verified, return the information of being verified; Otherwise, checking not by, return authentication failed information.
2. bank money system according to claim 1, is characterized in that, described safety network system is bank system of web,
Described client sends billing information to described password generation device by bank system of web;
Described password generation device transmits the safety network system of billing information type according to client is bank system of web, and the bill cipher obtain manner obtaining this bill is Web bank's application pin mode;
Described password generation device, when the bill cipher of generation is returned to client, is returned by described bank system of web.
3. bank money system according to claim 2, it is characterized in that, in described bank system of web, adopt PKI diploma system to realize the safe transmission of information between client and described password generation device, described client sends billing information to described password generation device by bank system of web and comprises:
Client uses Web bank's certificate to log in PKI diploma system, and the validity of PKI diploma system to Web bank's certificate that client uses checks, checks by the rear escape way set up between client and bank system of web;
Client sends logging request by described escape way to bank system of web, and bank system of web carries out certification to client, and certification is successfully logged onto bank system of web by rear client;
Typing bank money information in the function interface of the application bill cipher that client provides at bank system of web is also submitted to;
Bank system of web receives the bank money information of typing by described function interface, validity check is carried out to the billing information received, check and this billing information to be sent in the interface that password generation device provides by rear bank system of web, wait for returning of result.
4. bank money system according to claim 2, is characterized in that, the bill cipher of generation is returned to client by bank system of web and comprises by described password generation device:
The bill cipher of generation is returned to bank system of web by the interface between self and bank system of web by password generation device, and the bill cipher returned is presented at transaction results interface by bank system of web, and client obtains bill cipher.
5. bank money system according to claim 1, is characterized in that, the bill cipher that described password authentication device receives billing information, client provides and checking require information, receives by self being supplied to client end interface.
6. bank money system according to claim 1, it is characterized in that, described password authentication device at least comprises Net silver mode authentication unit, password folk prescription formula authentication unit and scrambler mode authentication unit, described password authentication device judge the bill received in described billing information memory storage, sell record and bank money information and bank money state normal after, comprise further:
Password authentication device judges the bill cipher obtain manner of this bill, if the bill cipher obtain manner of this bill is Web bank's application pin mode, then the Net silver mode authentication unit calling self produces bill cipher and judges that whether the bill cipher produced is consistent with the bill cipher that client provides; If the bill cipher obtain manner of this bill is password list application pin mode, then the password folk prescription formula authentication unit calling self produces bill cipher and judges that whether the bill cipher produced is consistent with the bill cipher that client provides; If the bill cipher obtain manner of this bill is scrambler application pin mode, then the scrambler mode authentication unit calling self produces bill cipher and judges that whether the bill cipher produced is consistent with the bill cipher that client provides.
CN200710117616.7A 2007-06-20 2007-06-20 A kind of method realizing bill password verification Active CN101071494B (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN200710117616.7A CN101071494B (en) 2007-06-20 2007-06-20 A kind of method realizing bill password verification

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN200710117616.7A CN101071494B (en) 2007-06-20 2007-06-20 A kind of method realizing bill password verification

Publications (2)

Publication Number Publication Date
CN101071494A CN101071494A (en) 2007-11-14
CN101071494B true CN101071494B (en) 2016-04-13

Family

ID=38898703

Family Applications (1)

Application Number Title Priority Date Filing Date
CN200710117616.7A Active CN101071494B (en) 2007-06-20 2007-06-20 A kind of method realizing bill password verification

Country Status (1)

Country Link
CN (1) CN101071494B (en)

Families Citing this family (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN103346881A (en) * 2013-06-14 2013-10-09 上海海基业高科技有限公司 Cloud computing system of bank payment passwords and application method thereof
CN107767192B (en) * 2016-08-19 2021-12-07 方正国际软件(北京)有限公司 Electronic bill verification method, device and system
CN106427278A (en) * 2016-10-20 2017-02-22 江苏万佳科技开发有限公司 Bill one-bill one-password system and generation method
CN113793456A (en) * 2021-09-07 2021-12-14 上海浦东发展银行股份有限公司 Bill drawing method and device, electronic equipment and storage medium

Citations (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN1236147A (en) * 1999-04-30 1999-11-24 邵通 Bill ckecking system
CN1248033A (en) * 1999-04-30 2000-03-22 邵通 Bill checking system
CN1261188A (en) * 2000-03-03 2000-07-26 朱文和 Bill (receipt) verification method and system based on electronic signature

Family Cites Families (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN1271485C (en) * 2004-01-08 2006-08-23 中国工商银行股份有限公司 Device and method for proceeding encryption and identification of network bank data
CN1680952A (en) * 2004-07-16 2005-10-12 中国银行股份有限公司 System and method for realizing acted bank bill transaction

Patent Citations (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN1236147A (en) * 1999-04-30 1999-11-24 邵通 Bill ckecking system
CN1248033A (en) * 1999-04-30 2000-03-22 邵通 Bill checking system
CN1261188A (en) * 2000-03-03 2000-07-26 朱文和 Bill (receipt) verification method and system based on electronic signature

Also Published As

Publication number Publication date
CN101071494A (en) 2007-11-14

Similar Documents

Publication Publication Date Title
US9818112B2 (en) Method and system for payment authorization and card presentation using pre-issued identities
CN105960776B (en) Token authentication using limited-use credentials
US10535065B2 (en) Secure payment transactions based on the public bankcard ledger
US6895391B1 (en) Method and system for secure authenticated payment on a computer network
Bürk et al. Digital payment systems enabling security and unobservability
US20160042344A1 (en) Method and system for facilitating online and offline financial transactions
TW200845690A (en) Business protection system in internet
CN107408245A (en) Utilize the trading signature of Asymmetric Cryptography
JPH0514298B2 (en)
CN101140648A (en) Method for bank bill online authorisation and off line trading
CN109716373A (en) Cipher authentication and tokenized transaction
US20120254041A1 (en) One-time credit card numbers
CN107240010B (en) Method and system for transferring digital currency to digital currency chip card
US20190220881A1 (en) Systems, methods and computer readable media for creating and processing a digital voucher
Chaum et al. 'Minting'electronic cash
US20030226028A1 (en) Article, method, system and apparatus for decentralized creation, distribution, verification and transfer of valuable documents
El Madhoun et al. An overview of the emv protocol and its security vulnerabilities
CN101071494B (en) A kind of method realizing bill password verification
JPS6061863A (en) Method and system for managing code key
CN106330888A (en) Method and device for ensuring security of Internet online payment
US20050203843A1 (en) Internet debit system
CN102724180A (en) Method and system for preventing signature information of universal serial bus (USB) key from being falsified
CN107230074B (en) Method and system for depositing digital currency into digital currency chip card
CN102609842B (en) A kind of payment cipher device based on hardware signature equipment and application process thereof
JP2008243199A (en) Internet business security method

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
C14 Grant of patent or utility model
GR01 Patent grant