CN103761644A - Ordering processing method for mobile Internet online payment - Google Patents

Ordering processing method for mobile Internet online payment Download PDF

Info

Publication number
CN103761644A
CN103761644A CN201310746951.9A CN201310746951A CN103761644A CN 103761644 A CN103761644 A CN 103761644A CN 201310746951 A CN201310746951 A CN 201310746951A CN 103761644 A CN103761644 A CN 103761644A
Authority
CN
China
Prior art keywords
order
payment
trade company
plug
unit
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Pending
Application number
CN201310746951.9A
Other languages
Chinese (zh)
Inventor
杜江
朱烨东
金雪丹
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
BEIJING SINODATA E-COMMERCE Co Ltd
Original Assignee
BEIJING SINODATA E-COMMERCE Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by BEIJING SINODATA E-COMMERCE Co Ltd filed Critical BEIJING SINODATA E-COMMERCE Co Ltd
Priority to CN201310746951.9A priority Critical patent/CN103761644A/en
Publication of CN103761644A publication Critical patent/CN103761644A/en
Pending legal-status Critical Current

Links

Images

Classifications

    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06QINFORMATION AND COMMUNICATION TECHNOLOGY [ICT] SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES; SYSTEMS OR METHODS SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES, NOT OTHERWISE PROVIDED FOR
    • G06Q20/00Payment architectures, schemes or protocols
    • G06Q20/38Payment protocols; Details thereof
    • G06Q20/382Payment protocols; Details thereof insuring higher security of transaction
    • G06Q20/3823Payment protocols; Details thereof insuring higher security of transaction combining multiple encryption tools for a transaction

Landscapes

  • Business, Economics & Management (AREA)
  • Engineering & Computer Science (AREA)
  • Accounting & Taxation (AREA)
  • Computer Security & Cryptography (AREA)
  • Finance (AREA)
  • Strategic Management (AREA)
  • Physics & Mathematics (AREA)
  • General Business, Economics & Management (AREA)
  • General Physics & Mathematics (AREA)
  • Theoretical Computer Science (AREA)
  • Financial Or Insurance-Related Operations Such As Payment And Settlement (AREA)

Abstract

The invention provides an ordering processing method for mobile Internet online payment. According to the method, a payment plug-in is embedded in a merchant mobile platform; the merchant mobile platform is connected with a merchant service system, and the payment plug-in is connected with a plug-in background system. The merchant service system is a merchant background order processing system and is used for processing orders. The plug-in background system is an order processing system of a payment mechanism and comprises a payment front-end system, an order processing system body and a payment processing system. Order information needs to pass the merchant service system and then be transmitted to the order processing system of the background system, the order information can be transmitted back to the merchant service system after the order processing system generates order feature codes, and finally payment operation is carried out on a foreground by transmitting the order feature codes only. According to the ordering processing method, the order feature codes are used as confirmation factors, the possibilities of leakage of the order information and order phishing can be avoided, and safety of the order information can be guaranteed.

Description

The lower form processing method of mobile Internet on-line payment
Technical field
The invention belongs to on-line payment technical field, be specifically related to a kind of lower form processing method of mobile Internet on-line payment.
Background technology
In current E-Payment industry, main there are following two kinds of electronic payment modes: the first, in trade company's mobile platform, embed cash register plug-in unit API, when trade company's mobile platform reception is during to payment information, call cash register plug-in unit API and carry out relevant delivery operation; The second, docks trade company's mobile platform with WAP Net silver, directly by WAP Net silver, carry out delivery operation.For above-mentioned two kinds of modes of payments, the receipts list treatment scheme of mobile Internet end payment product is similar, that is: the payment information of trade company's mobile platform by sequence information and after encrypting directly initiated to pay to the plug-in unit background system of payment mechanism/bank by mobile Internet and asked; And plug-in unit background system is when paying the page to client push, also only show dealing money, and do not show concrete order details, for example, for prepaid mobile phone recharging business, only show recharge amount, but do not show recharged phone number.
Although existing mobile Internet cash register can accomplish substantially to take precautions against by the mode of enciphered message the problem of page fishing, but, for order fishing, there is larger risk: Ji Cong trade company mobile platform is in the sequence information transmitting procedure of plug-in unit background system, sequence information is easily intercepted and distorts by lawless person, copy similar order deception client, still take above-mentioned prepaid mobile phone recharging as example, if original order is for to supplement 50 yuan with money to cell-phone number A, in passing through mobile Internet transmitting procedure, easily by lawless person, intercepted and distort as supplementing 50 yuan with money to cell-phone number B, and because user is when the payment transaction, can not know order details, only show and need to conclude the business 50 yuan, thereby for client has caused loss.
Summary of the invention
For the defect of prior art existence, the invention provides a kind of lower form processing method of mobile Internet on-line payment, can effectively prevent order fishing, guarantee transaction security.
The technical solution used in the present invention is as follows:
The invention provides a kind of lower form processing method of mobile Internet on-line payment, to trade company's mobile platform, embed and pay plug-in unit; Described trade company mobile platform docks with trade company operation system, and described payment plug-in unit docks with plug-in unit background system; Wherein, described trade company operation system is trade company's backstage order processing system, for the treatment of order; The order processing system that described plug-in unit background system is payment mechanism, comprises and pays front-end system, order processing system and payment processing system; Comprise the following steps:
S1, described trade company mobile platform reception is after initial order information, described initial order information is sent to described trade company operation system, described trade company operation system is sequence information by described initial order Information generation, after judging that this initial order information is new order, and described sequence information is returned to described trade company mobile platform, described sequence information is after described trade company mobile platform is confirmed, return to described trade company operation system, then, described trade company operation system is preserved described sequence information again;
S2, described trade company operation system is transferred to the order processing system in described plug-in unit background system by private line network after using trade company's private key signature of pre-distribution also to encrypt described sequence information;
S3, described order processing system judges that this sequence information is, after safe sequence information, to record described sequence information, preserves order copy; And generation and the unique corresponding order condition code of described sequence information, described order condition code is returned to described trade company operation system;
S4, described trade company operation system is preserved described order condition code, upgrades sequence information, then described order condition code and order signature is sent to described trade company mobile platform;
S5, described trade company mobile platform calls described payment plug-in unit, to described payment plug-in unit, sends described order condition code and order signature;
S6, described payment plug-in unit sends the request message of application odd-job key to described front-end system, wherein, carry IMEI end message in this request message;
S7, described front-end system for this reason terminal generates for carrying out unique once odd-job key of transaction;
S8, described front-end system is preserved described odd-job key, for subsequent communications message sensitive information, encrypts; Meanwhile, described front-end system is given described payment plug-in unit by described odd-job delivering key;
S9, described payment plug-in unit initiates to pay message to described front-end system; Wherein, in described payment message, carry described order condition code and order signature, and this payment message is used described odd-job secret key encryption;
S10, described front-end system is used after working key validation of payment message validity, to order processing system, sends the whether correct request message of checking order signature; Wherein, described request message is carried described order condition code and order signature;
S11, whether described order processing system checking order signature is correct, if correct, use described order condition code to search order copy data storehouse, obtain the specific indent copy corresponding with described order condition code, and then obtain order details, and described order details are sent to described front-end system;
S12, described front-end system sends to described payment plug-in unit after described order details are encrypted;
S13, described payment plug-in unit calls the payment page, shows described order details, then collects the payment information of client's input, delivers to described plug-in unit background system and carry out delivery operation after described payment information is encrypted.
Preferably, in S1, if described trade company operation system judges this initial order information, be not pay invoice of history, directly described sequence information is sent to described trade company operation system.
Preferably, in S2, cipher mode is: use ssl protocol to encrypt.
Preferably, in S3, described order processing system judges that this sequence information is that safe sequence information is specially:
Described order processing system is verified pre-trade company's PKI, trade company's binding IP of distributing, is judged whether order generated frequency surpasses threshold value.
Preferably, in S13, after described payment information is encrypted, deliver to described plug-in unit background system and carry out delivery operation, be specially:
S131, described payment plug-in unit is delivered to described front-end system after described payment information is encrypted;
S132, after described front-end system deciphering, initiates to pay request by the payment information after deciphering to described payment processing system;
S133, described payment processing system carries out, after delivery operation, to front-end system, returning to payment result.
Preferably, after S133, also comprise order synchronization notice process, specifically comprise:
S14, described front-end system sends to described order processing system by order payment result;
S15, described order processing system is notified described trade company operation system by described order payment result;
S16, described trade company operation system is returned to the prepaid notification message of order to described order processing system after confirming an order and paying and write off;
S17, described order processing system sends the prepaid notification message of order to described front-end system, and then, described front-end system forwards the prepaid notification message of order to described payment plug-in unit;
S18, described payment plug-in unit shows the prepaid notification message of order; Simultaneously, described payment plug-in unit sends the prepaid notification message of order to described trade company mobile platform, and described trade company mobile platform, after receiving this notification message, sends the checking message having paid to described trade company operation system, after being proved to be successful, show the prepaid notification message of order.
Beneficial effect of the present invention is as follows:
The lower form processing method of mobile Internet on-line payment provided by the invention, has the following advantages:
(1) in whole transaction flow, take multiple safety measures, as single channel encryption, built-in PKI, working key one-time pad mechanism, message signature, sensitive information encryption, code keypad etc., guarantee transaction security comprehensively;
(2) terminal is not transmitted sequence information: sequence information need to be passed through trade company's operation system, be passed to again the order processing system of plug-in unit background system, after generating order condition code by order processing system, pass trade company's operation system back, finally on foreground, only transmit order condition code and carry out delivery operation, wherein, if trade company's end is APP application, add again to transmit and pay plug-in unit serial number, trade company's end transmits for WAP the payment that WAP identifying code carries out order again, take order condition code as confirming key element, avoid the possibility that occurs that leakage sequence information and order are gone fishing, guarantee the safety of sequence information.
Accompanying drawing explanation
Fig. 1 is the schematic flow sheet of the lower form processing method of mobile Internet on-line payment provided by the invention;
Fig. 2 is the overall schematic of the lower form processing method of mobile Internet on-line payment provided by the invention;
Fig. 3 is the particular flow sheet that places an order provided by the invention;
Fig. 4 is payment stage particular flow sheet provided by the invention;
Fig. 5 is advise for payments particular flow sheet provided by the invention.
Embodiment
Below in conjunction with accompanying drawing, the present invention is described in detail:
Understand for convenience the present invention, the implication of the main title that paper the present invention relates to:
(1) mobile device: the handheld device of using wireless network to carry out network service as WIFI/WIMAX, GPRS/EDGE/WCDMA/TD-SCDMA, CDMA/CDMA2000/LTE/TD-LTE etc., as mobile phone, panel computer etc.;
(2) APP: i.e. application is the application software running on mobile device;
(3) pay plug-in unit: refer to that independent operating is at the APP of mobile device product;
(4) WAP: i.e. Wireless Application Protocol, general reference based on WML language, operate in the website on mobile device, be different from computer end website;
(5) trade company's mobile platform: refer to run on mobile device for client provides consumption, paying the fees etc. pays the platform of class service, pays note etc. containing the APP of trade company, trade company's WAP site, trade company's Quick Response Code, trade company;
(6) plug-in unit background system: refer to the order processing system of payment mechanism or bank, containing paying the core system modules such as front-end system, order processing system, payment processing system, encrypting and deciphering system, custom system.
(7) front-end system, pays front-end system, refers to and is present in the intermediate treatment platform paying between plug-in unit and payment processing system, comprises plug-in unit authentication, order processing and forwarding, pays the functions such as routing forwarding, single channel encryption processing;
(8) order processing system: containing settling accounts the function of calculation, connect front-end system, complete the processing to order, and the task of calculation is settled accounts in responsible reimbursement processing, reconciliation;
(9) payment processing system: refer to the system of processing paying request, general direct docking banking system, or itself be exactly banking system;
(10) encrypting and deciphering system: refer to the system to whole transaction communications process renewal, distributing key;
(11) custom system: refer to the system of client being carried out to client information management, common function has: registration, login, inquiry transaction etc.;
(12) plug-in unit serial number: refer to by paying plug-in unit and be embedded in the api interface module that the APP of trade company applies, a plug-in unit serial number for each distribution of the order request from the APP of trade company, serial number contains: mobile device information, and as IMEI, timestamp, random train, summary info.
(13) order condition code: refer to the order recognition feature code that the order processing system in plug-in unit background system distributes for each sequence information from trade company backstage, order recognition feature code contains: timestamp, sequence information, random code.Wherein, timestamp: timestamp has been the number of seconds since on January 1st, 1970 (00:00:00GMT).It is also referred to as Unix timestamp (Unix Timestamp).
The invention provides a kind of lower form processing method of mobile Internet on-line payment, the information interaction subjective relationship relating to is: to trade company's mobile platform, embed and pay plug-in unit; Described trade company mobile platform docks with trade company operation system, and described payment plug-in unit docks with plug-in unit background system; Wherein, described trade company operation system is trade company's backstage order processing system, for the treatment of order; The order processing system that described plug-in unit background system is payment mechanism, comprises and pays front-end system, order processing system and payment processing system.Overall flow can be divided into three phases: lower single phase, payment stage and advise for payments stage.Adopt plug-in unit background system preserve order backup generation and order one to one order condition code carry out mating of sequence information, and then complete payment, thus the risk of effectively avoiding foreground transmission sequence information to be gone fishing by order.As shown in Figure 2, be the overall schematic of this three phases.Flow process shown in Fig. 2 is only flow process roughly, not detailed, below in conjunction with Fig. 3-Fig. 5, above-mentioned three phases is introduced in detail:
(1) lower single phase
As shown in Figure 3, be the particular flow sheet that places an order, whole lower single process is initiated order from client at trade company mobile platform and is paid and start, and to trade company's mobile platform, receives that order condition code and order sign.Comprise the following steps:
S1.1, trade company's mobile platform reception initial order information;
That is, client is in trade company's mobile platform free choice of goods and submit order to, forms initial order information; Generally, in this step, trade company's mobile platform also needs to receive the payment mechanism of customer selecting.
S1.2, trade company's mobile platform sends payment pre-request for this initial order to paying plug-in unit;
S1.3, pays the source that plug-in unit judgement pays pre-request, to the processing of classifying of originating, for different sources, returns to corresponding result to trade company's mobile platform;
Generally, source comprises following three kinds: APP store, WAP store, note/Quick Response Code order.
APP store: client uses trade company's mobile platform to consume/pay the fees at mobile device, and the payment plug-in unit calling during payment on mobile device completes payment.
WAP store: client is consumed/paid the fees by browser access trade company platform on mobile device, the payment plug-in unit calling during payment on mobile device completes payment.
Note/Quick Response Code: client is interconnected done through network at PC etc., by trade company, send note or Quick Response Code to client's mobile phone, or order/pay the fees by sending a telegraph trade company, by trade company, send note or Quick Response Code to client's mobile phone, the payment link that client receives according to SMS or Quick Response Code, initiate to pay, the payment plug-in unit calling on mobile device completes payment.
S1.4, trade company's mobile platform is submitted to trade company's operation system by initial order information;
S1.5, trade company's operation system is sequence information by initial order Information generation, after judging that this initial order information is new order, and sequence information is returned to trade company's mobile platform, sequence information, after trade company mobile platform is confirmed, then returns to trade company's operation system; Then, trade company's operation system is preserved sequence information;
Wherein, if trade company's operation system judges this initial order information, be not pay invoice of history, directly sequence information is sent to trade company's operation system.If trade company's operation system confirms an order unsuccessfully, directly return to trade company's mobile platform, prompting error message.
S1.6, trade company's operation system is transferred to the order processing system in plug-in unit background system by private line network after using trade company's private key signature of pre-distribution also to encrypt sequence information; Cipher mode can be used ssl protocol to encrypt.
S1.7, order processing system judges that this sequence information is, after safe sequence information, to record sequence information, preserves order copy; And generation and the unique corresponding order condition code of sequence information; Order condition code is the factor of the order in location;
Wherein, order processing system adopts following methods judge whether safety of sequence information: trade company's PKI, trade company's binding IP of the pre-distribution of checking, judge that order generated frequency is whether over threshold value etc.
Wherein, based on order generated frequency, judge whether safe principle is order: trojan horse program is when trade company's mobile platform calls payment plug-in unit, this is called to interception or closes payment plug-in unit, and on backstage, connect another legal trade company form ordering system, generate another legal order, replace the order that user need to pay, general such process has close with the former order time, the amount of money is identical, initiating terminal is equal distinguishing feature mutually, whether business processing backstage can screen and have by fishing risk according to these features, give user-dependent indicating risk, by user, be finally confirmed whether to need to pay, pay which order.
S1.8, order processing system returns to trade company's operation system by order condition code;
S1.9, trade company's operation system is preserved order condition code, upgrades sequence information;
S1.10, trade company's operation system sends to trade company's mobile platform by order condition code and order signature.
From above-mentioned flow process, can find out, whole placing an order in process, the order processing system on backstage is preserved order copy, be pushed directly to backstage and place an order, then, in continuation payment process, the payment plug-in unit on foreground is submitted to and is paid with condition code, and do not need directly to submit to order contents, then directly push to the order processing system on backstage, owing to not needing by internet transmission sequence information, thereby guarantee the safety of sequence information.
(2) the payment stage
The payment stage refers to and from trade company's mobile platform initiation payment request to plug-in unit background system, completes payment processes feedback result to front-end system.
As shown in Figure 4, the particular flow sheet for the payment stage pays, comprises the following steps:
S3.1, trade company's mobile platform calls payment plug-in unit, to paying plug-in unit, sends order condition code and order signature;
S3.2, pays plug-in unit plug-in version number is uploaded to front-end system, initiates the request of Authorization Plug-in Component version number.For guaranteeing authentication security, pay plug-in unit and front-end system and all use HTTPS communications protocol, following content also all adopts this agreement;
S3.3, whether front-end system verification plug-in version is number available;
S3.4, front-end system returns to paying plug-in unit the response result that plug-in version is verified; As authentication failed, need the payment plug-in application of pointing out user to download latest edition, downloaded and on the APP of Hou Ke trade company, again initiated to pay request; If be proved to be successful, carry out lower step;
S3.5, pays plug-in unit and to front-end system, sends the request message of application odd-job key, wherein, carries IMEI end message in this request message;
S3.6, front-end system for this reason terminal generates for carrying out unique once odd-job key of transaction, as 3DES key;
S3.7, front-end system is preserved odd-job key in internal memory, encrypts, thereby guarantee communication channel safety for subsequent communications message sensitive information; Meanwhile, front-end system is given odd-job delivering key to pay plug-in unit;
S3.8, pays plug-in unit and initiates to pay message to front-end system; Wherein, in payment message, carry institute's order condition code and order signature, and this pays message and uses odd-job secret key encryption;
S3.9, front-end system is used working key validation of payment message validity; As expired in working key or Decryption failures, directly returns to trade company's mobile platform prompting and pays expired or illegal payment request;
S3.10, front-end system, after validation of payment message is legal, sends the whether correct request message of checking order signature to order processing system; Wherein, this request message carries order condition code and order signature;
S3.11, whether order processing system checking order signature is correct, if correct, use order condition code to search order copy data storehouse, obtain the specific indent copy corresponding with order condition code, and then obtain order details, in the present invention, order signature is trade company's signature.
S3.12, order processing system sends to front-end system by order details;
S3.13, front-end system sends to payment plug-in unit after order details are encrypted;
S3.14, pays plug-in unit and calls the payment page, shows order details, then collects the payment information of client's input; The payment information of client's input comprises bank card information, blocks the close sensitive information of Denging; In addition, the encrypting keyboard that accesses to your password, whole payment process card is close not to land, payment verification code etc., the security of guaranteeing payment.
S3.15, pays after plug-in unit is encrypted payment information and delivers to front-end system;
S3.16, front-end system is used working key deciphering payment information;
S3.17, front-end system initiates to pay request by the payment information after deciphering to payment processing system; As expired in working key or Decryption failures, directly returns to Client-Prompt and pays expired or illegal payment request;
S3.18, payment processing system carries out, after delivery operation, to front-end system, returning to payment result.
In whole payment flow, sequence information, from the order processing system on backstage, has been got rid of the risk that transmits sequence information from mobile foreground; In whole process of exchange, every payment plug-in unit and communicating by letter of plug-in unit background system have all been taked the mode of coded communication, and sensitive information guarantees not to be stolen in communication process; During the key message inputs such as payment cipher, adopt code keypad to carry out RSA asymmetric encryption to information, guarantee that whole process payment cipher does not land.Therefore, effectively stop the payment safety problem of the ubiquitous order fishing in internet.
(3) the advise for payments stage
As shown in Figure 5, advise for payments flow process refers to that from front-end system, receiving payment result starts till trade company's mobile platform is shown the stage of payment result to client.
S4.1, front-end system sends to order processing system by order payment result;
S4.2, order processing system is by order payment result notice trade company operation system;
S4.3, trade company's operation system is processed order, is specially: whether trade company's operation system confirms an order pays.
S4.4, trade company's operation system is returned to the prepaid notification message of order to order processing system after confirming an order and paying and write off;
S4.5, order processing system sends the prepaid notification message of order to front-end system;
S4.6, front-end system forwards the prepaid notification message of order to paying plug-in unit;
S4.7, pays plug-in unit and shows the prepaid notification message of order;
S4.8, pays plug-in unit and sends the prepaid notification message of order to trade company's mobile platform;
S4.9, trade company's mobile platform, after receiving this notification message, sends the checking message having paid to trade company's operation system; That is, to trade company's operation system, carry out order payment processes result queries;
S4.10, after trade company's operation system is proved to be successful, sends the result to trade company's mobile platform;
S4.11, shows the prepaid notification message of order after trade company's mobile platform verification result.
From above-mentioned flow process, can find out, the consistance that synchronous payment result feedback mechanism is conducive to keep trade company's operation system and pays plug-in unit order status, reduce misunderstanding and distrust that client pays order, improve to pay and experience, avoid user to produce misgivings and unsafe worry.
In sum, the lower form processing method of mobile Internet on-line payment provided by the invention, has the following advantages:
(1) in whole transaction flow, take multiple safety measures, as single channel encryption, built-in PKI, working key one-time pad mechanism, message signature, sensitive information encryption, code keypad etc., guarantee transaction security comprehensively;
(2) terminal is not transmitted sequence information: sequence information need to be passed through trade company's operation system, be passed to again the order processing system of plug-in unit background system, after generating order condition code by order processing system, pass trade company's operation system back, finally on foreground, only transmit order condition code and carry out delivery operation, wherein, if trade company's end is APP application, add again to transmit and pay plug-in unit serial number, trade company's end transmits for WAP the payment that WAP identifying code carries out order again, take order condition code as confirming key element, avoid the possibility that occurs that leakage sequence information and order are gone fishing, guarantee the safety of sequence information.
The above is only the preferred embodiment of the present invention; it should be pointed out that for those skilled in the art, under the premise without departing from the principles of the invention; can also make some improvements and modifications, these improvements and modifications also should be looked protection scope of the present invention.

Claims (6)

1. a lower form processing method for mobile Internet on-line payment, is characterized in that, to trade company's mobile platform, embeds and pays plug-in unit; Described trade company mobile platform docks with trade company operation system, and described payment plug-in unit docks with plug-in unit background system; Wherein, described trade company operation system is trade company's backstage order processing system, for the treatment of order; The order processing system that described plug-in unit background system is payment mechanism, comprises and pays front-end system, order processing system and payment processing system; Comprise the following steps:
S1, described trade company mobile platform reception is after initial order information, described initial order information is sent to described trade company operation system, described trade company operation system is sequence information by described initial order Information generation, after judging that this initial order information is new order, and described sequence information is returned to described trade company mobile platform, described sequence information is after described trade company mobile platform is confirmed, return to described trade company operation system, then, described trade company operation system is preserved described sequence information again;
S2, described trade company operation system is transferred to the order processing system in described plug-in unit background system by private line network after using trade company's private key signature of pre-distribution also to encrypt described sequence information;
S3, described order processing system judges that this sequence information is, after safe sequence information, to record described sequence information, preserves order copy; And generation and the unique corresponding order condition code of described sequence information, described order condition code is returned to described trade company operation system;
S4, described trade company operation system is preserved described order condition code, upgrades sequence information, then described order condition code and order signature is sent to described trade company mobile platform;
S5, described trade company mobile platform calls described payment plug-in unit, to described payment plug-in unit, sends described order condition code and order signature;
S6, described payment plug-in unit sends the request message of application odd-job key to described front-end system, wherein, carry IMEI end message in this request message;
S7, described front-end system for this reason terminal generates for carrying out unique once odd-job key of transaction;
S8, described front-end system is preserved described odd-job key, for subsequent communications message sensitive information, encrypts; Meanwhile, described front-end system is given described payment plug-in unit by described odd-job delivering key;
S9, described payment plug-in unit initiates to pay message to described front-end system; Wherein, in described payment message, carry described order condition code and order signature, and this payment message is used described odd-job secret key encryption;
S10, described front-end system is used after working key validation of payment message validity, to order processing system, sends the whether correct request message of checking order signature; Wherein, described request message is carried described order condition code and order signature;
S11, whether described order processing system checking order signature is correct, if correct, use described order condition code to search order copy data storehouse, obtain the specific indent copy corresponding with described order condition code, and then obtain order details, and described order details are sent to described front-end system;
S12, described front-end system sends to described payment plug-in unit after described order details are encrypted;
S13, described payment plug-in unit calls the payment page, shows described order details, then collects the payment information of client's input, delivers to described plug-in unit background system and carry out delivery operation after described payment information is encrypted.
2. the lower form processing method of mobile Internet on-line payment according to claim 1, it is characterized in that, in S1, if described trade company operation system judges this initial order information, be not pay invoice of history, directly described sequence information sent to described trade company operation system.
3. the lower form processing method of mobile Internet on-line payment according to claim 1, is characterized in that, in S2, cipher mode is: use ssl protocol to encrypt.
4. the lower form processing method of mobile Internet on-line payment according to claim 1, is characterized in that, in S3, described order processing system judges that this sequence information is that safe sequence information is specially:
Described order processing system is verified pre-trade company's PKI, trade company's binding IP of distributing, is judged whether order generated frequency surpasses threshold value.
5. the lower form processing method of mobile Internet on-line payment according to claim 1, is characterized in that, in S13, delivers to described plug-in unit background system and carry out delivery operation after described payment information is encrypted, and is specially:
S131, described payment plug-in unit is delivered to described front-end system after described payment information is encrypted;
S132, after described front-end system deciphering, initiates to pay request by the payment information after deciphering to described payment processing system;
S133, described payment processing system carries out, after delivery operation, to front-end system, returning to payment result.
6. the lower form processing method of mobile Internet on-line payment according to claim 5, is characterized in that, after S133, also comprises order synchronization notice process, specifically comprises:
S14, described front-end system sends to described order processing system by order payment result;
S15, described order processing system is notified described trade company operation system by described order payment result;
S16, described trade company operation system is returned to the prepaid notification message of order to described order processing system after confirming an order and paying and write off;
S17, described order processing system sends the prepaid notification message of order to described front-end system, and then, described front-end system forwards the prepaid notification message of order to described payment plug-in unit;
S18, described payment plug-in unit shows the prepaid notification message of order; Simultaneously, described payment plug-in unit sends the prepaid notification message of order to described trade company mobile platform, and described trade company mobile platform, after receiving this notification message, sends the checking message having paid to described trade company operation system, after being proved to be successful, show the prepaid notification message of order.
CN201310746951.9A 2013-12-30 2013-12-30 Ordering processing method for mobile Internet online payment Pending CN103761644A (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201310746951.9A CN103761644A (en) 2013-12-30 2013-12-30 Ordering processing method for mobile Internet online payment

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201310746951.9A CN103761644A (en) 2013-12-30 2013-12-30 Ordering processing method for mobile Internet online payment

Publications (1)

Publication Number Publication Date
CN103761644A true CN103761644A (en) 2014-04-30

Family

ID=50528878

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201310746951.9A Pending CN103761644A (en) 2013-12-30 2013-12-30 Ordering processing method for mobile Internet online payment

Country Status (1)

Country Link
CN (1) CN103761644A (en)

Cited By (9)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN105574726A (en) * 2015-07-29 2016-05-11 宇龙计算机通信科技(深圳)有限公司 Safe payment data verification method, third party payment platform and commercial platform
CN108269073A (en) * 2016-12-30 2018-07-10 航天信息股份有限公司 A kind of order payment management method and system
CN109118184A (en) * 2018-08-09 2019-01-01 杭州鑫合汇互联网金融服务有限公司 A kind of payment system and its method of payment
CN110175894A (en) * 2019-05-30 2019-08-27 深圳市元征科技股份有限公司 A kind of automatic ordering method, system and device
CN110313012A (en) * 2017-01-27 2019-10-08 维萨国际服务协会 Browser for the tokenized certification of client-side extends
CN110414964A (en) * 2019-07-31 2019-11-05 中国工商银行股份有限公司 Method of payment and electronic equipment
CN111882783A (en) * 2020-06-29 2020-11-03 银盛支付服务股份有限公司 Butt-joint-transformation-free plug-and-play MIS-POS system and implementation method
CN114240564A (en) * 2021-12-20 2022-03-25 中国电信股份有限公司 Order synchronization method and device, electronic equipment and storage medium
CN117350627A (en) * 2023-10-18 2024-01-05 杭州正马软件科技有限公司 E-commerce logistics package interception system and automatic refund method

Cited By (11)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN105574726A (en) * 2015-07-29 2016-05-11 宇龙计算机通信科技(深圳)有限公司 Safe payment data verification method, third party payment platform and commercial platform
CN108269073A (en) * 2016-12-30 2018-07-10 航天信息股份有限公司 A kind of order payment management method and system
CN110313012A (en) * 2017-01-27 2019-10-08 维萨国际服务协会 Browser for the tokenized certification of client-side extends
US11687997B2 (en) 2017-01-27 2023-06-27 Visa International Service Association Browser extension for client-side tokenized authentication
CN109118184A (en) * 2018-08-09 2019-01-01 杭州鑫合汇互联网金融服务有限公司 A kind of payment system and its method of payment
CN110175894A (en) * 2019-05-30 2019-08-27 深圳市元征科技股份有限公司 A kind of automatic ordering method, system and device
CN110414964A (en) * 2019-07-31 2019-11-05 中国工商银行股份有限公司 Method of payment and electronic equipment
CN111882783A (en) * 2020-06-29 2020-11-03 银盛支付服务股份有限公司 Butt-joint-transformation-free plug-and-play MIS-POS system and implementation method
CN114240564A (en) * 2021-12-20 2022-03-25 中国电信股份有限公司 Order synchronization method and device, electronic equipment and storage medium
CN117350627A (en) * 2023-10-18 2024-01-05 杭州正马软件科技有限公司 E-commerce logistics package interception system and automatic refund method
CN117350627B (en) * 2023-10-18 2024-04-09 杭州正马软件科技有限公司 E-commerce logistics package interception system and automatic refund method

Similar Documents

Publication Publication Date Title
CN103761644A (en) Ordering processing method for mobile Internet online payment
JP5766199B2 (en) Secure mobile payment processing
CN106716916B (en) Authentication system and method
US10650371B2 (en) System and method for enabling a mobile communication device to operate as a financial presentation device
US20140025581A1 (en) Mobile transactions using authorized tokens
US20110103586A1 (en) System, Method and Device To Authenticate Relationships By Electronic Means
CN103745343A (en) Method for placing order by calling payment plug-in on APP merchant mobile platform
CN110050435A (en) Key pair architecture for security message transmitting-receiving
EP2733655A1 (en) Electronic payment method and device for securely exchanging payment information
US20140025958A1 (en) Implementing security measures for authorized tokens used in mobile transactions
US20140025585A1 (en) Distributing authorized tokens to conduct mobile transactions
CN103123706A (en) Management method, device and system of bill payment for another
CN103745352A (en) Method for placing order by calling payment plug-in on WAP (Wireless Application Protocol) merchant mobile platform
CN105612543A (en) Methods and systems for provisioning mobile devices with payment credentials
MX2011000165A (en) Secure wireless deposit system and method.
CN102694780A (en) Digital signature authentication method, payment method containing the same and payment system
CN104077690B (en) Method and device for generating one-time password, authentication method and authentication system
CN103268436A (en) Method and system for touch-screen based graphical password authentication in mobile payment
KR20160122683A (en) Apparatus for authentication and payment based on web, method for authentication and payment based on web, system for authentication and payment based on web and computer readable medium having computer program recorded thereon
WO2019177984A1 (en) Techniques for secure channel communications
CN102509217B (en) A kind of Mobile long-distance payment system
KR20070097874A (en) Service system for instant payment utilizing a wireless telecommunication device
CN111652612B (en) Mobile payment method and device
CN105574720A (en) Secure information processing method and secure information processing apparatus
CN105160531B (en) Transaction data processing method and processing device

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
WD01 Invention patent application deemed withdrawn after publication

Application publication date: 20140430

WD01 Invention patent application deemed withdrawn after publication