CN102750785A - ATM (Automatic Teller Machine) and security authentication system of ATM - Google Patents

ATM (Automatic Teller Machine) and security authentication system of ATM Download PDF

Info

Publication number
CN102750785A
CN102750785A CN2012102098700A CN201210209870A CN102750785A CN 102750785 A CN102750785 A CN 102750785A CN 2012102098700 A CN2012102098700 A CN 2012102098700A CN 201210209870 A CN201210209870 A CN 201210209870A CN 102750785 A CN102750785 A CN 102750785A
Authority
CN
China
Prior art keywords
atm
electronic lock
dynamic password
safety cabinet
intelligent key
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Granted
Application number
CN2012102098700A
Other languages
Chinese (zh)
Other versions
CN102750785B (en
Inventor
靳如森
张颖
李兴双
嵇津湘
骆伯俊
罗伟
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Industrial and Commercial Bank of China Ltd ICBC
Original Assignee
Industrial and Commercial Bank of China Ltd ICBC
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Industrial and Commercial Bank of China Ltd ICBC filed Critical Industrial and Commercial Bank of China Ltd ICBC
Priority to CN 201210209870 priority Critical patent/CN102750785B/en
Publication of CN102750785A publication Critical patent/CN102750785A/en
Application granted granted Critical
Publication of CN102750785B publication Critical patent/CN102750785B/en
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Images

Landscapes

  • Lock And Its Accessories (AREA)

Abstract

The invention provides an ATM (Automatic Teller Machine) and a security authentication system of the ATM. The ATM comprises an ATM body, a user identity authentication unit and an ATM safety box dynamic password electronic lock, wherein the user identity authentication unit comprises a user information receiving module which is used for receiving a user ID and a password inputted externally, and a user information sending module used for sending the user ID and the password to a backend server, so that a disposable unlocking password is generated when the user ID and the password are authenticated successfully by the backend server; and the ATM safety box dynamic password electronic lock comprises an input unit which comprises a keyboard used for receiving the externally inputted disposable unlocking password, an intelligent key reading unit used for reading intelligent key information, a lockset which is connected with the input unit and comprises a spring bolt, and a lockset control unit which is used for controlling the spring bolt to move so as to open the ATM safety box dynamic password electronic lock when the disposable unlocking password and the intelligent key information are successfully authenticated. By the security authentication system of the ATM, the security of the ATM safety box lock can be improved.

Description

The security certification system of ATM and ATM
Technical field
The present invention relates to bank computer network, particularly, relate to the security certification system of a kind of ATM and ATM.
Background technology
The industry ATM (is called for short ATM at present; Comprise ATM and deposit and withdraw all-in-one; Down with) the equipment insurance cabinet requires to have disposed two locks according to " ATM (ATM) general specification (GB/T 18789-2002) ": one mechanical lock and mechanical code lock; A people holds key when adding paper money and maintenance and unblanking, a people holds password daily, and operating personnel want the password rotating disk on the Rotary puzzle lock during locking, and password is upset.
In recent years, along with the development of Bank Retail Business, bank self-aid apparatus quantity constantly increases.But existing ATM safety cabinet is locked in and has following defective in the use:
1, password and key special messenger's keeping respectively, handling cost is higher, and has stolen risk;
Although 2 banks have formulated management method to the key and the password of safety cabinet lock; But implementing of existing system only relies on manual control; It is not in place to make operating duty implement; Close such as safe door and not upset password, password can not regularly replace, personnel's change is not in time changed password etc., thereby caused potential safety hazard.In recent years, along with the growth of number of devices, also increase to some extent to the safe case of ATM safety cabinet.
3, lack safety cabinet switch record, do not possess the condition of real-time monitoring lock-switch state, can not verify the identity of unlocking person, safety is not verified and audit function;
Therefore, existing ATM safety cabinet is latched in potential potential safety hazard, and the operational management cost is higher, and along with the increase of number of devices, the difficulty and the risk of management progressively increase, and can not satisfy the needs of practical application well.
Summary of the invention
The fundamental purpose of the embodiment of the invention is to provide the security certification system of a kind of ATM and ATM, to solve the lower problem of security that ATM safety cabinet of the prior art is latched in.
To achieve these goals; The embodiment of the invention provides a kind of ATM; Said ATM comprises the ATM body, and described ATM also comprises authenticating user identification unit and ATM safety cabinet dynamic password electronic lock, wherein; Described authenticating user identification unit comprises: the user profile receiver module is used to receive outside ID and the password of importing; The user profile sending module is used for described ID and password are sent to background server, so that said background server generates disposable unlocking cipher to described ID and cipher authentication success the time; Described ATM safety cabinet dynamic password electronic lock comprises: input block, comprise keyboard, and be used to receive the said disposable unlocking cipher of outside input; The Intelligent key reading unit is used to read Intelligent key information; Lockset is connected with described input block, comprising: dead bolt; The lockset control module is used for to said disposable unlocking cipher and the success of said Intelligent key authentification of message the time, controlling said dead bolt activity to open said ATM safety cabinet dynamic password electronic lock.
Described ATM safety cabinet dynamic password electronic lock also comprises: rotating disk, and generator is connected with described rotating disk; Super capacitor; Be connected with described generator, rotate said rotating disk through external force, said rotating disk drives the coil rotation of said generator; The coil of said generator produces voltage and offers described super capacitor charging, controls said dead bolt activity to activate described lockset control module.
Described ATM safety cabinet dynamic password electronic lock also comprises: LCDs is used to show the disposable unlocking cipher of outside input and the information of said ATM safety cabinet dynamic password electronic lock.
It is movable in the given time that described lockset control module is controlled said dead bolt.
Described ATM safety cabinet dynamic password electronic lock also comprises: lockset state information acquisition unit is used to obtain the dead bolt status information and the safe door status information of described ATM safety cabinet dynamic password electronic lock; Lockset status information transmitting element is used for the dead bolt status information and the safe door status information of described ATM safety cabinet dynamic password electronic lock are sent to said background server.
Described ATM safety cabinet dynamic password electronic lock also comprises: camera is used for the situation around the said ATM is made a video recording; The video delivery unit is used for sending the video that said camera is taken to said background server.
Described ATM safety cabinet dynamic password electronic lock also comprises: prewarning unit when being used for around said ATM, having safety problem, starts the early warning flow process.
Inventive embodiments also provides the security certification system of a kind of ATM; This system comprises: above-mentioned ATM, background server, Intelligent key and user terminal; Described ATM receives the ID and the password of user's input and sends to said background server; Said background server is to described ID and cipher authentication success the time; Generate disposable unlocking cipher and send to said user terminal; Said ATM safety cabinet dynamic password electronic lock receives the said disposable unlocking cipher and the information that reads said Intelligent key of user's input, to said disposable unlocking cipher and the success of said Intelligent key authentification of message the time, controls said dead bolt activity to open said ATM safety cabinet dynamic password electronic lock.
By means of technique scheme one of at least; Send to background server behind the authentication information through authenticating user identification unit reception user; To be generated disposable unlocking cipher by background server and to send to the user, the user opens ATM safety cabinet dynamic password electronic lock according to disposable unlocking cipher and Intelligent key, adds operations such as paper money with execution; In prior art, the security of the ATM safety cabinet of embodiment of the invention lock is higher.
Description of drawings
In order to be illustrated more clearly in the embodiment of the invention or technical scheme of the prior art; The accompanying drawing of required use is done to introduce simply in will describing embodiment below; Obviously, the accompanying drawing in describing below only is some embodiments of the present invention, for those of ordinary skills; Under the prerequisite of not paying creative work property, can also obtain other accompanying drawing according to these accompanying drawings.
Fig. 1 is the structural representation according to the ATM of the embodiment of the invention;
Fig. 2 is the structural representation according to the authenticating user identification unit of the embodiment of the invention;
Fig. 3 a is the structural representation according to the ATM safety cabinet dynamic password electronic lock of the embodiment of the invention;
Fig. 3 b is another structural representation according to the ATM safety cabinet dynamic password electronic lock of the embodiment of the invention;
Fig. 4 is the concrete structure synoptic diagram according to the ATM of the embodiment of the invention;
Fig. 5 is the concrete structure synoptic diagram according to the dynamic password electronic lock of the embodiment of the invention;
Fig. 6 is the process flow diagram that bank clerk adds paper money or maintenance ATM safety cabinet;
Fig. 7 is the detailed structure synoptic diagram according to the security certification system of the embodiment of the invention;
Fig. 8 is the connection synoptic diagram according to the ATM of the dynamic cipher verification of the embodiment of the invention;
Fig. 9 is the structural representation according to the Intelligent key read-write parts of the embodiment of the invention;
Figure 10 is the structural representation according to the client of the embodiment of the invention;
Figure 11 is the structural representation according to the service generator of the embodiment of the invention;
Figure 12 is according to the monitoring of the embodiment of the invention and the structural representation of management component;
Figure 13 adds the particular flow sheet of paper money according to the embodiment of the invention to ATM;
Figure 14 is the abnormal conditions synoptic diagram according to the system start-up early warning treatment scheme of the embodiment of the invention;
Figure 15 is the structural representation according to the remote centralized authoring system of the embodiment of the invention.
Embodiment
To combine the accompanying drawing in the embodiment of the invention below, the technical scheme in the embodiment of the invention is carried out clear, intactly description, obviously, described embodiment only is the present invention's part embodiment, rather than whole embodiment.Based on the embodiment among the present invention, those of ordinary skills are not making the every other embodiment that is obtained under the creative work prerequisite, all belong to the scope of the present invention's protection.
The embodiment of the invention provides the security certification system of a kind of ATM and ATM.Below in conjunction with accompanying drawing the present invention is elaborated.
Embodiment one
The embodiment of the invention provides a kind of ATM, and this ATM comprises: ATM body (not shown), and authenticating user identification unit 1 and ATM safety cabinet dynamic password electronic lock 2 shown in Figure 1, and existing ATM is a mechanical code lock, safety coefficient is lower.
Below describe authenticating user identification unit 1 and ATM safety cabinet dynamic password electronic lock 2 in detail.
As shown in Figure 2, authenticating user identification unit 1 comprises:
User profile receiver module 11 is used to receive outside ID and the password of importing;
User profile sending module 12 is used for ID and password are sent to background server, so that background server generates disposable unlocking cipher to ID and cipher authentication success the time;
Shown in Fig. 3 a, ATM safety cabinet dynamic password electronic lock 2 comprises:
Input block 21 comprises:
Keyboard 211 is used to receive the outside disposable unlocking cipher of importing;
Intelligent key reading unit 212 is used to read Intelligent key information;
Lockset 22 is connected with input block, comprising:
Dead bolt 221;
Lockset control module 222 is used for to disposable unlocking cipher and the success of Intelligent key authentification of message the time, and the activity of control dead bolt is to open ATM safety cabinet dynamic password electronic lock.
Can find out by above description; Send to background server behind the authentication information through authenticating user identification unit reception user; To be generated disposable unlocking cipher by background server and to send to the user, the user opens ATM safety cabinet dynamic password electronic lock according to disposable unlocking cipher and Intelligent key afterwards, adds operations such as paper money with execution; In prior art, the security of the ATM safety cabinet of embodiment of the invention lock is higher.
Shown in Fig. 3 b, above-mentioned ATM safety cabinet dynamic password electronic lock also comprises:
Rotating disk 23,
Generator 24 is connected with rotating disk,
Super capacitor 25 is connected with generator,
Rotate rotating disk through external force, rotating disk drives the coil rotation of generator, and the coil of generator produces voltage and offers the super capacitor charging, and is movable to activate lockset control module control dead bolt.
In the specific implementation, ATM safety cabinet dynamic password electronic lock also comprises: LCDs is used to show the disposable unlocking cipher of outside input and the information of ATM safety cabinet dynamic password electronic lock, with user-friendly.
In the process of user's operation A TM safety cabinet, it is movable in the given time that the lockset control module can be controlled dead bolt, and for example, the time is 5 seconds, if the unlatching work above 5 seconds is not also carried out, then dead bolt returns to latched position.
In operation, ATM safety cabinet dynamic password electronic lock can also comprise:
Lockset state information acquisition unit is used to obtain the dead bolt status information and the safe door status information of ATM safety cabinet dynamic password electronic lock;
Lockset status information transmitting element is used for the dead bolt status information and the safe door status information of ATM safety cabinet dynamic password electronic lock are sent to background server.
Through above-mentioned lockset state information acquisition and transmitting element, can improve the security of ATM safety cabinet operation so that background server is in time grasped the dynamic of ATM safety cabinet.
In order further to improve the security of ATM safety cabinet operation, ATM safety cabinet dynamic password electronic lock can also comprise:
Camera is used for the situation around the ATM is made a video recording;
The video delivery unit is used for sending the video that camera is taken to background server.
Through camera and video delivery unit, make background server can see ATM safety cabinet situation on every side clearly, find that for timely fortuitous event provides guarantee, thereby further improved security.
Correspondingly, ATM safety cabinet dynamic password electronic lock also comprises: prewarning unit when being used for around ATM, having safety problem, starts the early warning flow process.
Below provide an instance.
As shown in Figure 4, be a kind of ATM according to the embodiment of the invention, this ATM is that existing ATM is improved, and the mechanical lock on the existing ATM is replaced with the dynamic password electronic lock.With reference to Fig. 4; The ATM of the embodiment of the invention comprises the industrial computer 11 that is positioned at upper box, display 12, code keypad 13, with parts such as bar printer 14, flowing water printer 15, card reader 16, encrypting modules 17, and the parts such as cash processing module 18, paper money case 19, safety cabinet 10, dynamic password electronic lock 1a that are positioned at lower box are formed.
As shown in Figure 5, the dynamic password electronic lock is made up of input block and lockset, and input block is installed on the outer cabinet door of ATM safety cabinet, and lockset is installed in the ATM safe door, and input block connects with lockset through the lockhole that a cable passes on the safe door.Input block comprises keyboard, LCDs, rotating disk, Intelligent key read write line.Keyboard is made up of 12 touch-control feedback bondings, is used to import the disposable password or carry out other management functions of unblanking.LCDs is that 3 character liquid crystal show (band hummer) parts, and the output user is in the information through the keyboard input, and prompting, the warning message of lock.Rotating disk is used for self power generation, and rotary turnplate drive generator generates electricity and stores the into inner super capacitor of lockset to an electric current that produces.Key reader is used to read user's key information, the key thereby verification is unblanked (or personnel); Simultaneously also be the interface of management key, be used to carry out management function (check, activation, the time is provided with and function such as synchronous).Lockset comprises circuit control assembly, generator, super capacitor, dead bolt and external communication interface.The circuit control assembly is the control center of dynamic password electronic lock, controls other parts and user and carries out alternately, and be responsible for the checking of the disposable password of unblanking.Generator is connected with the rotating disk of input block; Through rotating the rotation of rotating disk drive engine coil, the fast rotational of coil makes generator coil produce electric current, and the output of generator coil is through overcommutation; Become DC voltage from alternating voltage, and offer super capacitor.In case super capacitor is charged to suitable voltage, the circuit control assembly of control lockset function will be activated, thereby lockset can be operated.Dead bolt is to be used for controlling whether openable mechanical hook-up of safety cabinet keeper.Lockset links to each other with the ATM industrial computer or directly links to each other with bank network through external communication interface, and monitoring and management function are provided.
The user is through the disposable password of unblanking of keyboard input; Password correctly and through the Intelligent key read write line has read correct key if unblank; The driving circuit of circuit control assembly will activate the motor release activity dead bolt in the lockset; Permission activity dead bolt rotates to the open site, and just can be discharged into the open site from off-position with the safety cabinet keeper this moment.Breakdown action needs within a certain period of time (such as 4 seconds) to carry out, otherwise motor is return, thereby prevention activity dead bolt rotates to the open site.Certain hour inner motor after the safety cabinet keeper is opened will discharge, thereby permission activity dead bolt automatically restores to latched position.When the safety cabinet keeper is got back to off-position, just can let movable dead bolt rotate to off-position automatically, safe door will be closed with lock once more.
The dynamic password electronic lock that the embodiment of the invention provides has adopted the dynamic password unlock mode of " one-time pad " with respect to mechanical code lock of the prior art, and each password only can use once, avoids static password to reveal the potential safety hazard that causes; Do not need external power source (like battery etc.) power supply, the friction energy when rotating rotating disk provides self-power supply, also can be by ATM through the USB interface power supply; As long as the unlock staff closes safe door, latch automatically through the door magnetic inductor triggering of installing on the safe door.After safe door was closed, door magnetic inductor induction also was input to coded lock with signal, and the motor starting of coded lock also drives dead bolt and stretches out and realize latching action, had avoided safe door to close but the situation generation that do not latch; Lock links to each other with background system through bank's internal network; Can online the real-time status that opens and closes of lock and safe door report background system; Backstage remote management capability (activate, stop using, check) also can be provided, for back-stage management personnel remote monitoring and management provide technical conditions.
Fig. 6 is the process flow diagram that bank clerk adds paper money or maintenance ATM safety cabinet, and as shown in Figure 6, this flow process comprises:
Step 601: the application personnel that unblank input unlock staff ID and password, initiate the request of unblanking.
Step 602: background system checking applicant identity.
Step 603 (optional): after the authorized person checks that live video is confirmed applicant's identity, the authorization unlocking request.
Step 604: background system generates the disposable password of unblanking, and through note the disposable password of unblanking is sent the application personnel that unblank and reserves on the mobile phone.
Step 605: the application personnel that unblank import the disposable password of unblanking on the dynamic password electronic lock, stick Intelligent key and unblank.The dynamic password electronic lock uses algorithm verification disposable the unblank password identical with background system, and verification is opened through the back lock automatically.
Step 606: the application personnel that unblank open safety cabinet.
Step 607: the dynamic password electronic lock will be locked and the real-time status (opening) of safe door reports supervisory system.
Step 608: the application personnel that unblank carry out normal business processing (adding paper money or maintenance).
Step 609: the application personnel that unblank close safe door, and the dynamic password electronic lock latches automatically.
Step 610: the dynamic password electronic lock will be locked and the real-time status (closing) of safe door reports supervisory system.
Authentication method to unlock operation personnel (or the application personnel that unblank) comprises two kinds: the one, and back-stage management person gathers unlock operation personnel identity information in advance and obligate information deposits in the database of service generator; When operating personnel application is unblanked at the identity ID and the reserving cipher of ATM terminal input oneself; Transmit the backstage through ATM and internal network, automatically the personnel identity of unblanking is carried out the method for online validation by the service generator; The auth method of another remote centralized mandate; Be exactly that the backstage authorized person can be through the long-range unlock staff's of checking real time video image of video monitoring system and ATM surrounding enviroment image; With the unlock operation personnel image comparison of gathering in advance; The personnel identity of unblanking is verified once more, and can be guaranteed that the unlock staff is not held as a hostage or kidnaps.Method two can be selected in the practical business operation process to use as the supplementary means of method one as required.
In order to guarantee the safety of ATM; Can monitor in real time ATM safety cabinet, safety cabinet lock open and-shut mode; Specifically mainly be to realize: use the dynamic password electronic lock, the safe door sensor that possess online function that safe door and lock open and-shut mode are uploaded to background system in real time through following scheme; Or the real-time open and-shut mode of the long-range atm device safe door of back-stage management personnel on-line equiries, lock, start the means and the measure of early warning treatment scheme automatically like the abnormal conditions system.
Pass through the embodiment of the invention; Can guarantee that unlock staff's identity is legal; But the open and-shut mode of background monitoring personnel remote monitoring ATM safe door and dynamic password electronic lock; Simultaneity factor is monitored various abnormal conditions automatically and can be triggered the early warning flow process, and the risk of reduction system operation further promotes the safety management level that the ATM safety cabinet is locked.
Embodiment two
The embodiment of the invention also provides the security certification system of a kind of ATM; This system comprise in the foregoing description one ATM and, background server, Intelligent key and user terminal; Wherein, ATM receives the ID and the password of user's input and sends to background server, and background server is to ID and cipher authentication success the time; Generate disposable unlocking cipher and send to user terminal; ATM safety cabinet dynamic password electronic lock receives the disposable unlocking cipher and the information that reads Intelligent key of user's input, and to disposable unlocking cipher and the success of Intelligent key authentification of message the time, the activity of control dead bolt is to open ATM safety cabinet dynamic password electronic lock.
Through this system; Background server generates disposable unlocking cipher and sends to the user after the authenticated identity; The user opens ATM safety cabinet dynamic password electronic lock according to disposable unlocking cipher and Intelligent key afterwards; Add operations such as paper money with execution, in prior art, the security of the ATM safety cabinet of embodiment of the invention lock is higher.
Above-mentioned ATM safety cabinet dynamic password electronic lock uses specific Intelligent key, and also available fixing static password is opened.Information such as the Intelligent key ID that this dynamic password electronic lock can write down uncaging time with the mode of electronics, the Intelligent key ID that unblanks to use, the dynamic password of unblanking to use, blocking time, locking use, locking code check that for examination the operation of lock provides foundation.
Fig. 7 is the detailed structure synoptic diagram according to the security certification system of the embodiment of the invention, the online authentication of user identity that can realize unblanking of this system, and to the real-time monitoring of safety cabinet lock, safe door open and-shut mode.
As shown in Figure 7, this system comprises: the ATM 1 of dynamic cipher verification, Intelligent key 2, Intelligent key fetch unit 3, client 4 (comprising standard client 41 and intelligent key management client 42), service generator 5, internal network 6, monitoring and management component 7.ATM 1 is through internal network 6 Connection Service generators 5.Intelligent key read-write parts 3 are through the IP network port or through USB mouth Connection Service generator 5 place servers; The disposable dynamic password of unblanking of main generation, perhaps Intelligent key read-write parts 3 are accomplished the management function of Intelligent key 2 through USB mouth connection of intelligent key management client 42.System client 4 provides the various services of system through the mode access services generator 5 of internal network 6 with B/S (browser/server) for the user.
Below describe each several part in detail.
As shown in Figure 8, the dynamic password electronic lock of the ATM 1 of dynamic cipher verification uses the USB connecting line to link to each other with industrial computer USB mouth in the ATM through network box, also can use IP network direct port connection bank internal network 6.
Intelligent key 2 is a kind of hardware carriers that possess specific electron information, and every Intelligent key all has unique ID.System uses Intelligent key read-write parts that its electronic information is read and write, and every key can be set allow the dynamic password electronic lock opened at the appointed time.The unlock staff must use dynamic password and Intelligent key just can unblank simultaneously.Intelligent key has write down information such as uncaging time, dynamic password electronic lock ID, blocking time with the mode of electronics, is convenient to examine and checks.
As shown in Figure 9; Intelligent key read-write parts 3 are a kind of can management Intelligent key (comprise check, activate, delete, modification, the time is provided with and function such as synchronous), and can generate the hardware device of disposal dynamic cipher, are made up of circuit control assembly and coupled encryption unit, power supply, communication interface, read-write interface.The circuit control assembly is the core of entire equipment, controls other parts and external unit and carries out mutual and the internal logic processing.Encryption when encryption unit is mainly accomplished the generation of disposal dynamic cipher and read and write key electronic information.Read-write interface is that Intelligent key read-write parts are when using as the Intelligent key read-write equipment and the communication device of Intelligent key.Communication interface is that Intelligent key is read and write the device that links to each other with the service generator when parts use as generation disposal dynamic cipher equipment, can be any mode of serial ports, USB port, IP port.
Shown in figure 10; System client 4 comprises: standard client 41 and intelligent key management client 42; Wherein: standard client 41 is PCs of an installation browser, and the user uses this client can accomplish two kinds of functions: the one, and the real-time monitoring of safe door, lock open and-shut mode, the 2nd, management function; Comprise the Telelock management, check the management of checking system audit information, adding paper money/maintenance task, the management of system user; Intelligent key management client 42 is that the PC that Intelligent key read-write components drives has been installed, and uses USB interface to be connected the management that realizes key with Intelligent key read-write parts.
Service generator 5 is a PC server (also can form by many, carry out load balancing), for the client provides http application service, dynamically generates the Web pagefile, offers the standard client terminal and the Intelligent key client is carried out alternately.
Shown in figure 11, service generator 5 mainly is made up of following five partial functions:
User management module 51 is mainly used in definition user account and user role, and wherein: user account comprises ID, name, password, role, reservation phone number, photo etc.; User role comprises five kinds of basic roles of system manager, backstage mandate person's look (mandate, password distribution), background monitoring person's (monitoring, audit), background devices keeper's (key, lock), foregrounding person's (adding paper money, maintenance), and by the role assignments different rights.
Equipment (key, lock) administration module 52 is used for the maintenance of lock & key.
Monitoring module 53 is used to handle lock orders with real-time open and-shut mode and long-range door and the lock real-time status of checking of background monitoring personnel that safe door reports.
Business approval processing module 54 is used to manage business that flow process definition, the maintenance of task, the application approval of unblanking, dynamic password generation, early warning event handling, audit information are had access to, statistical study form etc.In practical operation, service generator 5 must be equipped with one group of business function processing module at least.
External interface 55 provides the functional interface that docks with peripheral system; Such as docking the processing of unblanking to apply for is provided with robocall or operator attendance telephone system; Docking with the SMS reporting system provides dynamic password to send the mobile phone that the unlock staff binds in advance with way of short messages, docks and can send mail notification etc. to the dynamic password of unblanking with the form of mail to the applicant with mailing system.
Shown in figure 12, monitoring comprises with management component 7: be used to survey the safe door open and-shut mode safe door sensor 71, be responsible for protocol conversion network box 72, USB connecting line 73, be used to activate the unblank activation of static password of lock and modification and change close plug 74.
Below provide a workflow example.
1, the back-stage management personnel use unified in advance collection of standard client to add paper money, maintainer's information, comprise key messages such as identification card number, photo, deposit service generator database in.
2, back-stage management person uses the intelligent key management client, respectively is equipped with one and adds paper money/safeguard key for each adds paper money group, maintenance group through the Intelligent key fetch unit, and under the original state, this key can't be to opening any equipment insurance cabinet.Key need not to receive and return at ordinary times, only when each the use, authorizes through the backstage.
3, the back-stage management personnel are according to adding paper money/maintenance schedule; Appointment adds paper money/maintenance personal; Use standard client that personnel, key and atm device are carried out related mandate, guarantee the designated person, specify key in the time of appointment, the appointed equipment lockset to be carried out switching manipulation.
4, add paper money/maintainer and reach the spot after, input ID and password on guidance panel behind the ATM send to the disposable unlocking cipher of service generator application through inner networking.
5, after the service generator checking unlock staff identity, use the Intelligent key fetch unit to generate the disposable password of unblanking.Also can after checking unlock staff identity, send the event information of unblanking and give remote authorization personnel operation terminal, after the backstage authorized person checked field condition through video monitoring system, the authorization service generator generated the disposable password of unblanking again.
6, the unlock staff's that password binds with the way of short messages reporting system in advance the phone number of unblanking, or adopt the unlock staff's that mode reporting systems such as mail, phone bind in advance mailbox, telephone number.
7, after the unlock staff receives SMS notification (or notice of alternate manner); Use the disposable password of unblanking of keyboard input on the inherent at the appointed time dynamic password electronic lock; And join the read-write interface of Intelligent key and Intelligent key read-write parts; Password is correct and Intelligent key is correct if unblank, and the inner motor release activity dead bolt of dynamic password electronic lock then can be released the safety cabinet keeper be put into the open site this moment from off-position.
8, the state of dead bolt or safe door in a single day change (by close become unlatching, or become by unlatching close); Then under lockset inner circuit control assembly, monitoring and management component's acting in conjunction, immediately the state of dead bolt and safe door is reported and submitted the service generator.
9, add paper money/maintenance job and accomplish after, close safe door, lockset latches automatically, and reports safety cabinet to close, latch incident to the service generator automatically, flow process finishes.
10, for authentication times transfinite, disposal password input error number of times transfinites, do not receive special circumstances such as locking information in the stipulated time, the service generator starts the early warning flow process automatically.
Figure 13 is the particular flow sheet that adds paper money to ATM, and is shown in figure 13, and this flow process comprises:
Step 1301: back-stage management personnel are provided with unlock staff's identity ID in advance, set up its personally identifiable information (name, identification card number, cell-phone number etc.), set initial password.
Step 1302 (optional): the image information that back-stage management personnel gather the unlock staff in advance deposits system in, and sets up incidence relation with its ID.
Step 1303: back-stage management personnel add paper money/safeguard that assembly is equipped with Intelligent key for each in advance, registration Intelligent key and the binding relationship of receiving the people.
Step 1304: back-stage management personnel are according to adding the paper money maintenance plan, the building work task, and set up task and personnel, the binding relationship of lock ID, key ID, uncaging time section.
Step 1305: the unlock staff uses ID and initial password login system if first treated is professional, revises the password of oneself.
Step 1306: when the on-the-spot application of unlock staff was unblanked, whether its input password of system's checking earlier was consistent with reserving cipher.
Step 1307: the background system checking is unblanked incident in inside the plan (whether the pairing task of the incident of unblanking, uncaging time, unlock staff ID, lock ID mate).
Step 1308: generate the disposable dynamic password of unblanking, and notify the unlock staff.
Shown in figure 14, below taking place inevitably during unusual situation, system start-up early warning treatment scheme:
(1) unplanned interior lock and safe door are opened.Back-stage management personnel formulate the period planning that ATM adds paper money and maintenance in advance in the business function processing module, open incident not within plan if system monitoring is found lock and safe door, then start the early warning treatment scheme.
(2) lock and safe door is overtime does not report.Back-stage management personnel are the time interval of definition lock and safe door state reporting in the business function processing module in advance, if system monitoring is found to exceed schedule time not report, then starts the early warning treatment scheme.
(3) after the authorized person checked live video, the equipment surrounding enviroment were unusual.The application personnel that unblank reach the spot application when unblanking, the backstage authorized person is long-range check live video find surrounding enviroment unusual (such as the unlock staff be held as a hostage, a suspect etc. appears in the scene), then start the early warning treatment scheme.
(4) unblank to apply for that personnel's authentication times transfinites.System defines in advance unblanks to apply for personnel's password mistake maximum times parameter, surpasses this parameter value if unblank to apply for personnel's password mistake, then starts the early warning treatment scheme.
(5) authorized person checks that live video discovery applicant identity is illegal.The application personnel that unblank reach the spot application when unblanking, and the long-range live video of checking of backstage authorized person finds that the photo of applicant and reservation is inconsistent or suspicious, and then system starts corresponding early warning treatment scheme according to different situations.
(6) other anomalous event of system definition.
Below provide a remote monitoring instance again.
Shown in figure 15; Remote centralized authoring system general structure based on shown in Figure 7 comprises: be installed on the ATM periphery and be used for video monitoring equipment 7, standard client 41 that surrounding enviroment and field staff are made a video recording, video monitoring equipment 7 is connected backstage video Centralized Monitoring through internal networks 6 through streaming media service parts 8 with authorized client 41 and serves generator 9.Wherein:
Authorized client 41 is the PCs that video jukebox software is installed; Be connected with video Centralized Monitoring service generator 9 with service generator 5 simultaneously through internal network; When user applies is unblanked when unblanking in the foreground, after the checking of business function processing module identifying user identity, ATM ID that unblanks to belong to and the pairing reservation photographic intelligence of unlock staff are sent to authorized client in the service generator; Photo is shown in a jiao of screen; The authorized person is long-range to check the field unlock staff and surrounding enviroment video that existing ATM ID is corresponding, and compares at the screen epigraph with echo, through back response business function processing module authorization unlocking.
Video monitoring equipment 7 is the hardware devices that are installed on video information collection, video record processing and the storage of ATM periphery, possesses network remote Centralized Monitoring, remote alarms, long-range video recording and function such as consults.
Streaming media service parts 8 are one or many PC servers that the stream medium data process software is installed, and its effect is to provide a plurality of users to check simultaneously the real-time video video recording, reduces taking of Internet resources and device resource.
Video Centralized Monitoring service generator 9 is one or many PC servers that special software is installed, and this device provides long-range check video record, the 7 running status services of remote monitoring video monitoring equipment for the client.
The embodiment of the invention through dynamic password electronic lock, unlock staff authentication and to the monitoring of safe door, lock real-time status; Overcome existing ATM safe door and lock state and do not supported the problem of online monitoring; Solved the risk that exists in traditional ATM key and the Password Management process simultaneously and opened and closed the problem that the lock incident can't be audited, the embodiment of the invention mainly contains following several respects effect and advantage:
(1) through introducing the dynamic password electronic lock, realized that safe door closes the back lockset and latch automatically, solved the problem that the manually-operated lockset does not latch, further reduce the operation risk, guarantee security of cash.
(2) realized system's control that ATM safety cabinet lock opens and closes, realized the remote centralized mandate of unblanking of ATM safety cabinet,, further optimized operation flow, improved efficiency of operation through mandate and the unlocking mechanism that AM/BAM matches.
(3) realize the intelligent management of ATM safety cabinet lockset, monitored the lockset state in real time, the overtime warning that realizes unblanking, optimized the way to manage of existing key and password, further promoted the safety management level.
(4) realized the unification of ATM safety cabinet lock management with the operation flow process, foundation adds dynamically associating of paper money, maintenance task and key, password and operating personnel, and can split the locking incident and design tracking, has reduced risk.
One of ordinary skill in the art will appreciate that all or part of step that realizes in the foregoing description method can instruct relevant hardware to accomplish through program; This program can be stored in the computer read/write memory medium, such as ROM/RAM, magnetic disc, CD etc.
Above-described specific embodiment; The object of the invention, technical scheme and beneficial effect have been carried out further explain, and institute it should be understood that the above is merely specific embodiment of the present invention; And be not used in qualification protection scope of the present invention; All within spirit of the present invention and principle, any modification of being made, be equal to replacement, improvement etc., all should be included within protection scope of the present invention.

Claims (8)

1. ATM, said ATM comprises the ATM body, it is characterized in that, described ATM also comprises authenticating user identification unit and ATM safety cabinet dynamic password electronic lock, wherein,
Described authenticating user identification unit comprises:
The user profile receiver module is used to receive outside ID and the password of importing;
The user profile sending module is used for described ID and password are sent to background server, so that said background server generates disposable unlocking cipher to described ID and cipher authentication success the time;
Described ATM safety cabinet dynamic password electronic lock comprises:
Input block comprises:
Keyboard is used to receive the outside said disposable unlocking cipher of importing;
The Intelligent key reading unit is used to read Intelligent key information;
Lockset is connected with described input block, comprising:
Dead bolt;
The lockset control module is used for to said disposable unlocking cipher and the success of said Intelligent key authentification of message the time, controlling said dead bolt activity to open said ATM safety cabinet dynamic password electronic lock.
2. ATM according to claim 1 is characterized in that, described ATM safety cabinet dynamic password electronic lock also comprises:
Rotating disk,
Generator is connected with described rotating disk,
Super capacitor is connected with described generator,
Rotate said rotating disk through external force, said rotating disk drives the coil rotation of said generator, and the coil of said generator produces voltage and offers described super capacitor charging, controls said dead bolt activity to activate described lockset control module.
3. ATM according to claim 1 is characterized in that, described ATM safety cabinet dynamic password electronic lock also comprises:
LCDs is used to show the disposable unlocking cipher of outside input and the information of said ATM safety cabinet dynamic password electronic lock.
4. ATM according to claim 1 is characterized in that, it is movable in the given time that described lockset control module is controlled said dead bolt.
5. ATM according to claim 1 is characterized in that, described ATM safety cabinet dynamic password electronic lock also comprises:
Lockset state information acquisition unit is used to obtain the dead bolt status information and the safe door status information of described ATM safety cabinet dynamic password electronic lock;
Lockset status information transmitting element is used for the dead bolt status information and the safe door status information of described ATM safety cabinet dynamic password electronic lock are sent to said background server.
6. ATM according to claim 1 is characterized in that, described ATM safety cabinet dynamic password electronic lock also comprises:
Camera is used for the situation around the said ATM is made a video recording;
The video delivery unit is used for sending the video that said camera is taken to said background server.
7. ATM according to claim 6 is characterized in that, described ATM safety cabinet dynamic password electronic lock also comprises:
Prewarning unit when being used for around said ATM, having safety problem, starts the early warning flow process.
8. the security certification system of an ATM is characterized in that, described system comprises like each described ATM, background server, Intelligent key and user terminal in the claim 1 to 7,
Described ATM receives the ID and the password of user's input and sends to said background server,
Said background server generates disposable unlocking cipher and sends to said user terminal to described ID and cipher authentication success the time,
Said ATM safety cabinet dynamic password electronic lock receives the said disposable unlocking cipher and the information that reads said Intelligent key of user's input; To said disposable unlocking cipher and the success of said Intelligent key authentification of message the time, control said dead bolt activity to open said ATM safety cabinet dynamic password electronic lock.
CN 201210209870 2012-06-19 2012-06-19 ATM (Automatic Teller Machine) and security authentication system of ATM Active CN102750785B (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN 201210209870 CN102750785B (en) 2012-06-19 2012-06-19 ATM (Automatic Teller Machine) and security authentication system of ATM

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN 201210209870 CN102750785B (en) 2012-06-19 2012-06-19 ATM (Automatic Teller Machine) and security authentication system of ATM

Publications (2)

Publication Number Publication Date
CN102750785A true CN102750785A (en) 2012-10-24
CN102750785B CN102750785B (en) 2013-11-06

Family

ID=47030932

Family Applications (1)

Application Number Title Priority Date Filing Date
CN 201210209870 Active CN102750785B (en) 2012-06-19 2012-06-19 ATM (Automatic Teller Machine) and security authentication system of ATM

Country Status (1)

Country Link
CN (1) CN102750785B (en)

Cited By (20)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN103714602A (en) * 2013-12-26 2014-04-09 河南师范大学 Automatic control system and automatic control method of multimedia device
CN103955974A (en) * 2014-04-21 2014-07-30 西安电子科技大学 ATM electronic lock system based on near field communication (NFC) smartphone and management method
CN103971429A (en) * 2014-05-19 2014-08-06 江西中投科信科技有限公司 Intelligent interactive coded lock control system and intelligent interactive coded safe case lock and installing and using method thereof
CN105388845A (en) * 2015-12-30 2016-03-09 青海模具制造科技有限公司 Touch screen locking key safety system applied to numerical control machine tool
CN105471903A (en) * 2015-12-31 2016-04-06 中国建设银行股份有限公司 Method for generating electronic lock activation information and related system, device and unlocking method
CN105487485A (en) * 2015-12-30 2016-04-13 青海模具制造科技有限公司 Remote-control based numerically-controlled machine tool safety system allowing direct unlocking
CN105913187A (en) * 2016-04-12 2016-08-31 无锡萨弗特智能科技有限公司 Intelligent ATM operation supervision system and intelligent ATM operation supervision method based on Internet-of-things and mobile application
CN108242112A (en) * 2016-12-26 2018-07-03 杭州秋溢科技有限公司 Intelligent Paper money collection cloud platform management system, management method and cash receiving terminal
WO2018218297A1 (en) * 2017-05-31 2018-12-06 Commonwealth Bank Of Australia Physical access control systems and methods
CN110086863A (en) * 2019-04-23 2019-08-02 厦门中锐电力科技有限公司 A kind of lockset management-control method based on dual key
CN110897654A (en) * 2019-12-17 2020-03-24 中南大学湘雅三医院 Intelligent stethoscope
CN110969758A (en) * 2019-11-28 2020-04-07 中国银行股份有限公司 Bank vault management method, device, server and storage medium
CN111510486A (en) * 2020-04-10 2020-08-07 国网浙江宁海县供电有限公司 Intelligent ammeter box capable of preventing misconnection and safety unlocking method
CN112184988A (en) * 2020-09-29 2021-01-05 中国银行股份有限公司 Cash box control method and device, electronic equipment and storage medium
CN113781715A (en) * 2021-09-03 2021-12-10 深圳市丰巢网络技术有限公司 Intelligent cabinet lattice opening sealing method and device, storage medium and electronic equipment
CN113793434A (en) * 2021-09-02 2021-12-14 广州广电运通金融电子股份有限公司 Offline biological lock, coded lock system, opening and closing method and storage medium
US11232529B2 (en) 2017-12-13 2022-01-25 Toyota Jidosha Kabushiki Kaisha Delivery management system, server, delivery management method, delivery user terminal, client user terminal, and information processing method
CN114708681A (en) * 2022-04-24 2022-07-05 上海润欣科技股份有限公司 Intelligent padlock device
CN115359604A (en) * 2022-07-04 2022-11-18 南京银行股份有限公司 Card-free cash withdrawal system and method based on optical communication technology
RU2794706C1 (en) * 2022-05-06 2023-04-24 Общество с ограниченной ответственностью "НПО ПРОМЕТ" Atm electronic lock control system

Citations (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US6778067B2 (en) * 2000-09-05 2004-08-17 Fujitsu Limited Keylock switch and keylock switch system
CN101029546A (en) * 2006-03-02 2007-09-05 黄涛 Electronic coding lock system and its controllable starting method
US20080087720A1 (en) * 2006-10-11 2008-04-17 Yevgeny Boris Levitov Biometric Access Control System for Vending Machines
CN102324152A (en) * 2011-06-09 2012-01-18 闵浩 Electronic lock control and management system and method based on identity recognizing technology and mobile communication technology
CN202771546U (en) * 2012-06-19 2013-03-06 中国工商银行股份有限公司 ATM and security authentication system of ATM

Patent Citations (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US6778067B2 (en) * 2000-09-05 2004-08-17 Fujitsu Limited Keylock switch and keylock switch system
CN101029546A (en) * 2006-03-02 2007-09-05 黄涛 Electronic coding lock system and its controllable starting method
US20080087720A1 (en) * 2006-10-11 2008-04-17 Yevgeny Boris Levitov Biometric Access Control System for Vending Machines
CN102324152A (en) * 2011-06-09 2012-01-18 闵浩 Electronic lock control and management system and method based on identity recognizing technology and mobile communication technology
CN202771546U (en) * 2012-06-19 2013-03-06 中国工商银行股份有限公司 ATM and security authentication system of ATM

Cited By (25)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN103714602A (en) * 2013-12-26 2014-04-09 河南师范大学 Automatic control system and automatic control method of multimedia device
CN103955974A (en) * 2014-04-21 2014-07-30 西安电子科技大学 ATM electronic lock system based on near field communication (NFC) smartphone and management method
CN103971429A (en) * 2014-05-19 2014-08-06 江西中投科信科技有限公司 Intelligent interactive coded lock control system and intelligent interactive coded safe case lock and installing and using method thereof
CN105388845A (en) * 2015-12-30 2016-03-09 青海模具制造科技有限公司 Touch screen locking key safety system applied to numerical control machine tool
CN105487485A (en) * 2015-12-30 2016-04-13 青海模具制造科技有限公司 Remote-control based numerically-controlled machine tool safety system allowing direct unlocking
CN105471903B (en) * 2015-12-31 2018-11-02 中国建设银行股份有限公司 The production method and related system of electronic lock active information, equipment and method for unlocking
CN105471903A (en) * 2015-12-31 2016-04-06 中国建设银行股份有限公司 Method for generating electronic lock activation information and related system, device and unlocking method
CN105913187A (en) * 2016-04-12 2016-08-31 无锡萨弗特智能科技有限公司 Intelligent ATM operation supervision system and intelligent ATM operation supervision method based on Internet-of-things and mobile application
CN108242112A (en) * 2016-12-26 2018-07-03 杭州秋溢科技有限公司 Intelligent Paper money collection cloud platform management system, management method and cash receiving terminal
WO2018218297A1 (en) * 2017-05-31 2018-12-06 Commonwealth Bank Of Australia Physical access control systems and methods
US11232529B2 (en) 2017-12-13 2022-01-25 Toyota Jidosha Kabushiki Kaisha Delivery management system, server, delivery management method, delivery user terminal, client user terminal, and information processing method
CN110086863A (en) * 2019-04-23 2019-08-02 厦门中锐电力科技有限公司 A kind of lockset management-control method based on dual key
CN110086863B (en) * 2019-04-23 2021-10-08 厦门中锐电力科技有限公司 Double-key-based lockset control method
CN110969758A (en) * 2019-11-28 2020-04-07 中国银行股份有限公司 Bank vault management method, device, server and storage medium
CN110969758B (en) * 2019-11-28 2021-08-24 中国银行股份有限公司 Bank vault management method, device, server and storage medium
CN110897654A (en) * 2019-12-17 2020-03-24 中南大学湘雅三医院 Intelligent stethoscope
CN110897654B (en) * 2019-12-17 2022-02-22 中南大学湘雅三医院 Intelligent stethoscope
CN111510486A (en) * 2020-04-10 2020-08-07 国网浙江宁海县供电有限公司 Intelligent ammeter box capable of preventing misconnection and safety unlocking method
CN112184988A (en) * 2020-09-29 2021-01-05 中国银行股份有限公司 Cash box control method and device, electronic equipment and storage medium
CN113793434A (en) * 2021-09-02 2021-12-14 广州广电运通金融电子股份有限公司 Offline biological lock, coded lock system, opening and closing method and storage medium
CN113781715A (en) * 2021-09-03 2021-12-10 深圳市丰巢网络技术有限公司 Intelligent cabinet lattice opening sealing method and device, storage medium and electronic equipment
CN114708681A (en) * 2022-04-24 2022-07-05 上海润欣科技股份有限公司 Intelligent padlock device
CN114708681B (en) * 2022-04-24 2023-11-21 上海润欣科技股份有限公司 Intelligent padlock device
RU2794706C1 (en) * 2022-05-06 2023-04-24 Общество с ограниченной ответственностью "НПО ПРОМЕТ" Atm electronic lock control system
CN115359604A (en) * 2022-07-04 2022-11-18 南京银行股份有限公司 Card-free cash withdrawal system and method based on optical communication technology

Also Published As

Publication number Publication date
CN102750785B (en) 2013-11-06

Similar Documents

Publication Publication Date Title
CN102750785B (en) ATM (Automatic Teller Machine) and security authentication system of ATM
CN202771546U (en) ATM and security authentication system of ATM
US10115257B2 (en) Network connectivity module for electro-mechanical locks
US8918639B2 (en) Smarter leveraging of the power grid to substantially improve security of distributed systems via a control plane data communication network over the smart power grid
AU2011301771B2 (en) Systems and methods for accessing or managing secured storage space
CN103726742B (en) A kind of vertical type fingerprint confidential cabinet and control system thereof
CN108986278A (en) A kind of intelligent door lock off-line cipher authorization method and authoring system
CN103440691A (en) Bank exchequer long-distance defense management system
CN102737427A (en) ATM dynamic privilege management system
CN104318650A (en) Dynamic coded lock management and control system
CN107808437A (en) Smart lock and the house lease management system including the smart lock
CN201828978U (en) Double-door system for bank
CN204390320U (en) A kind of dynamic puzzle-lock system
CN104935486A (en) Intelligent gated comprehensive information management method
EP2304655A2 (en) Activity based management system
CN208014029U (en) Smart lock
CN111062711A (en) Intelligent management system for shared electricity in area
CN207123882U (en) A kind of antitheft cloud service door-locking system of multiple intelligent
JP4531211B2 (en) Portable terminal having master key function and electric lock used therefor
CN209585881U (en) A kind of intelligent lock of suitable lease
CN103873435B (en) A kind of network trading platform account control method, device and server
KR100377346B1 (en) A community of dwelling houses management system using the internet and method for managing using the same
CN202257682U (en) Public rental housing management system based on the internet of things
CN111063073B (en) Access control system, control method and device thereof
KR20150003025A (en) Applied to distribution automation system, intelligent door system that includes monitoring and control unit (RTU) communication module for SCADA data security, information security system

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
C14 Grant of patent or utility model
GR01 Patent grant