Background technology
In today that consumption on network is propagated its belief on a large scale, due to the fast development of the network communications technology, people have been not concerned about how realizing shopping online by network technology, but are placed on gradually by the emphasis of concern in online fund safety in revenue and expenditure approach。Because the various implementations of consumption on network are people's designed, designeds, logically it is constantly present certain leak and back door, experienced lawless person passes through these leaks and back door, it is easy for finding the entrance cracking network security management, so that consumer and businessman suffer no small economic loss, and hit people and used the confidence of network。
Accordingly, it would be desirable to improve existing network security management framework。For consumption on network, it is most important that the electronic identity authentication to both parties, traditionally, people use static account and static password to tell the identity of network security managers oneself, to pass through verify and be traded。But, people have looked like and have arrived, and static data is because of its changeless characteristic, once crack namely irredeemable, then, it is directed to this, some Design of Network Security companies design dynamic password, it is achieved the password key element such as in time is constantly updated, and reduces the risk of consumption on network。Handset token is the modal implementation pattern of dynamic password, mutual with the information of portal website, verification platform by the handset token management mode in mobile phone terminal, changes the scheme of password based on time synchronized, and the Secure Transaction for consumer and businessman provides guarantee。
In the prior art, on market, existing handset token is all " single token ", namely user can only activate one piece of token, can only consume in that trade company there of this block token binding, also imply that a mobile phone terminal can only serve specific application, which greatly limits user and bind the scope of trade company。User's actual need cannot be met under many circumstances, also bring inconvenience to user。Because if when user needs many different trade companies of binding, it is necessary to arrange the mobile phone terminal management module of multiple different vendor on mobile phone so that mobile phone terminal structure complexity and not manageability and maintenance。
Summary of the invention
The problem that this invention address that is in single token management system and method for existing handset token, the problem that the range of application brought owing to user can only activate one piece of token is too narrow。
To achieve these goals, the invention provides many token managements system of a kind of handset token, described system includes mobile phone terminal, portal website's managing device and verification platform, described portal website managing device respectively with described mobile phone terminal, described verification platform is connected, described mobile phone terminal includes input module, token management module and display module, wherein said verification platform, it is configured to the token of trade company's distribution predetermined quantity of each registration, multiple tokens that the trade company that each registered and the trade company as each registration distribute are sent to described portal website managing device;Described portal website managing device, the configuration multiple tokens for receiving and store each trade company registered and the trade company as each registration distributes, and asked by the token of trade company selected by described input module for cellphone subscriber according to what described token management module sent, send the token corresponding with selected trade company to described token management module;Described token management module, configuration is for passing through trade company selected by described input module according to cellphone subscriber, ask to be sent to described portal website managing device by the token for selected trade company by network, and receive the token corresponding with selected trade company by network, wherein cellphone subscriber can select multiple different trade company by described input module so that described token management module receives multiple different token by network;Described token management module also configures that for token activation requests one or more in sending the multiple different token for the reception of described token management module to described portal website managing device, and receive the one or more token activation data returned from described portal website managing device, to activate one or more tokens of described token management module;Described display module, configuration is for after one or more tokens of token management module described in described token management module activation, according to the one or more tokens activated in described token management module, show the information of the trade company that the dynamic password of one or more tokens of described activation is corresponding with the token of each activation。
Alternatively, described portal website managing device includes memorizer, the configuration multiple tokens for storing each trade company registered described and the trade company as each registration distributes。
Alternatively, described display module is the display module including LCDs。
To achieve these goals, present invention also offers a kind of many token managements method of handset token, comprise the following steps: step 1: verification platform is the token of trade company's distribution predetermined quantity of each registration, and multiple tokens that the trade company each registered and the trade company as each registration distribute are sent to portal website's managing device;Step 2: multiple tokens that described portal website managing device received and stored each trade company registered and the trade company as each registration distributes;Step 3: cellphone subscriber selects trade company by the input module of mobile phone terminal, the token for selected trade company is asked to be sent to described portal website managing device by the token management module of mobile phone terminal by network;Step 4: the management of described portal website receives the described token for selected trade company and asks, and asks according to described token, sends the token corresponding with selected trade company to described token management module;Step 5: described token management module receives the token corresponding with selected trade company by network, wherein, cellphone subscriber can select multiple different trade company by described input module so that described token management module receives multiple different token by network;Step 6: the token activation request that described token management module is one or more in sending the multiple different token for the reception of described token management module to described portal website managing device;Step 7: described portal website managing device, according to the one or more token activation request received, sends one or more token activation data;Step 8: described token management module receives the one or more token activation data, to activate one or more tokens of described token management module;Step 9: described display module, according to the one or more tokens activated in described token management module, shows the information of the trade company that the dynamic password of one or more tokens of described activation is corresponding with the token of each activation。
Alternatively, after step 9, described cellphone subscriber inputs the dynamic password that shows of described display module by described input module, and by described portal website managing device, described dynamic password is sent to described verification platform is verified。
Alternatively, the dynamic password that described display module shows, is random 6 dynamic passwords produced every 60 seconds by described token management module。
Due to the fact that and have employed technique scheme, thus having the advantage that many token managements system and method for handset token of the present invention, the handset token management module changing a conventional mobile phone terminal can only manage a handset token, thus the single token pattern can only being traded with particular merchant, it is that a handset token management module builds many token pattern, allow users to use multiple handset token simultaneously, online transaction is carried out with multiple trade companies, many token mechanisms of handset token are greatly expanded user and bind the scope of trade company, module is managed without the handset token arranging multiple different vendor in mobile phone terminal, extend the range of application of handset token。
Detailed description of the invention
Below in conjunction with accompanying drawing, the specific embodiment of the present invention is described in detail。First, refer to Fig. 1, Fig. 1 is the system structure schematic diagram of many token managements system and method for handset token of the present invention, many token managements system of handset token of the present invention includes mobile phone terminal 1, portal website's managing device 2 and verification platform 3, described portal website managing device 2 respectively with described mobile phone terminal 1, described verification platform 3 is connected, described mobile phone terminal 1 includes input module 101, token management module 102 and display module 103, wherein said verification platform 3, it is configured to the token of trade company's distribution predetermined quantity of each registration, multiple tokens that the trade company that each registered and the trade company as each registration distribute are sent to described portal website managing device 2;Described portal website managing device 2, the configuration multiple tokens for receiving and store each trade company registered and the trade company as each registration distributes, and asked by the token of trade company selected by described input module 101 for cellphone subscriber according to what described token management module 102 sent, send the token corresponding with selected trade company to described token management module 102;Described token management module 102, configuration is for passing through trade company selected by described input module 101 according to cellphone subscriber, ask to be sent to described portal website managing device 2 by the token for selected trade company by network, and receive the token corresponding with selected trade company by network, wherein cellphone subscriber can select multiple different trade company by described input module 101 so that described token management module 102 receives multiple different token by network;Described token management module 102 also configures that for token activation requests one or more in sending the multiple different token for the reception of described token management module 102 to described portal website managing device 2, and receive the one or more token activation data returned from described portal website managing device 2, to activate one or more tokens of described token management module 102;Described display module 103, configuration is for after described token management module 102 activates one or more tokens of described token management module 102, according to the one or more tokens activated in described token management module 102, show the information of the trade company that the dynamic password of one or more tokens of described activation is corresponding with the token of each activation。Wherein, the handset token of dynamic password, it is used for generating dynamic password, described dynamic password and handset binding carry out authentication, handset token is generally used in the industry that customer group is big, customer group is quite young, such as online game, the login of Web bank, Internet securities, SAAS etc. and payment scene。The present invention provides, by managing module for single handset token, the multiple handset tokens that can help multiple different trade companies, make the cellphone subscriber holding described single handset token management module under original system framework, show while realizing multiple dynamic passwords mutual with multiple businessman users, extend the use scope of handset token, avoid, simultaneously need to multiple handset token management module and the system redundancy that occurs, saving certain cost of device for cellphone subscriber。
Preferably, described portal website managing device includes memorizer, binding relationship between multiple tokens that the configuration multiple tokens for storing each trade company registered described and the trade company as each registration distributes, described verification platform enrolled merchant and trade company are corresponding carries out at verification platform end。Described memorizer can be random access memory ram, flash memory FlashMemory or other kinds of memorizer。
Preferably, described display module is the display module including LCDs。Being easy to mobile phone terminal producer and according to the ability to shoulder economically of cellphone subscriber and use preference, the LCDs of customization different resolution and model, on mobile phone terminal, described LCDs also shows other information outside dynamic password。Wherein, LCDs (LCD) is a kind of type of display for numeric type clock and watch and many portable computers。LCD shows and employs two panels polarization material, is liquid crystal solution between them。Light crystal can be made to rearrange when electric current is by this liquid, so that cannot pass through them。Therefore, each crystal, just as shutter, can allow light through obstructing the light again。The development of lcd technology just suits the trend of current information products, is no matter that right angle shows, low power consumption, volume be little or the advantage such as zero radiation, user can be allowed to enjoy best visual environment。
Then, refer to Fig. 2, Fig. 2 is the working state of system schematic diagram of many token managements system and method for handset token of the present invention, arrow in Fig. 2 is shown that the direction of the progress of work, it is followed successively by portal website's managing device 21 and receives multiple stock's tokens 22 that verification platform is the predetermined quantity that each trade company distributes, the trade company 24 that cellphone subscriber is selected by input module 23 input of mobile phone terminal, multiple stock's tokens 22 in portal website's managing device 21 select stock's token in multiple stock's tokens 22 of described trade company 24 to be sent to token management module 25, the stock's token received is used by token management module 25 as User Token 26, described use includes activating described User Token 26 according to predetermined activation strategy 27, so, cellphone subscriber described User Token 26 can carry out online transaction with trade company 24。Repeat above step, it is thus achieved that multiple User Token 26 being activated of multiple trade companies 24, provide multiple dynamic password for cellphone subscriber simultaneously。
Finally, refer to the method flow diagram of many token managements system and method that Fig. 3, Fig. 3 are handset token of the present invention。From figure 3, it can be seen that many token managements method of handset token provided by the invention comprises the following steps:
Step 301: verification platform is the token of trade company's distribution predetermined quantity of each registration, and multiple tokens that the trade company each registered and the trade company as each registration distribute are sent to portal website's managing device;
Step 302: multiple tokens that described portal website managing device received and stored each trade company registered and the trade company as each registration distributes;
Step 303: cellphone subscriber selects trade company by the input module of mobile phone terminal, the token for selected trade company is asked to be sent to described portal website managing device by the token management module of mobile phone terminal by network;
Step 304: the management of described portal website receives the described token for selected trade company and asks, and asks according to described token, sends the token corresponding with selected trade company to described token management module;
Step 305: described token management module receives the token corresponding with selected trade company by network, wherein, cellphone subscriber can select multiple different trade company by described input module so that described token management module receives multiple different token by network;
Step 306: the token activation request that described token management module is one or more in sending the multiple different token for the reception of described token management module to described portal website managing device;
Step 307: described portal website managing device, according to the one or more token activation request received, sends one or more token activation data;
Step 308: described token management module receives the one or more token activation data, to activate one or more tokens of described token management module;
Step 309: described display module, according to the one or more tokens activated in described token management module, shows the information of the trade company that the dynamic password of one or more tokens of described activation is corresponding with the token of each activation。
Preferably, after step 309, described cellphone subscriber inputs the dynamic password that shows of described display module by described input module, and by described portal website managing device, described dynamic password is sent to described verification platform is verified。Described verification platform is installed the authentication policy of each trade company setting and dynamic password is verified, to permit the stateful transaction of current phone user entrance and trade company。
Preferably, the dynamic password that described display module shows, is random 6 dynamic passwords produced every 60 seconds by described token management module。Portal website can change the token seed information in described token management module, to change the Conduce Disciplinarian of dynamic password, ensures that user profile is not compromised further。
Disclose as above with preferred embodiment although the present invention is own, but the present invention is not limited to this。Any those skilled in the art, without departing from the spirit and scope of the present invention, all can make various changes or modifications, and therefore protection scope of the present invention should be as the criterion with claim limited range。