CN104009962B - Equipment for safety information interaction - Google Patents

Equipment for safety information interaction Download PDF

Info

Publication number
CN104009962B
CN104009962B CN201310059927.8A CN201310059927A CN104009962B CN 104009962 B CN104009962 B CN 104009962B CN 201310059927 A CN201310059927 A CN 201310059927A CN 104009962 B CN104009962 B CN 104009962B
Authority
CN
China
Prior art keywords
safety
safety barrier
information interaction
managing device
system managing
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Active
Application number
CN201310059927.8A
Other languages
Chinese (zh)
Other versions
CN104009962A (en
Inventor
柴洪峰
鲁志军
何朔
郭伟
周钰
严翔翔
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
China Unionpay Co Ltd
Original Assignee
China Unionpay Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by China Unionpay Co Ltd filed Critical China Unionpay Co Ltd
Priority to CN201310059927.8A priority Critical patent/CN104009962B/en
Priority to PCT/CN2014/071944 priority patent/WO2014131326A1/en
Publication of CN104009962A publication Critical patent/CN104009962A/en
Application granted granted Critical
Publication of CN104009962B publication Critical patent/CN104009962B/en
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W12/00Security arrangements; Authentication; Protecting privacy or anonymity
    • H04W12/06Authentication
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/08Network architectures or network communication protocols for network security for authentication of entities
    • H04L63/083Network architectures or network communication protocols for network security for authentication of entities using passwords
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W4/00Services specially adapted for wireless communication networks; Facilities therefor
    • H04W4/70Services for machine-to-machine communication [M2M] or machine type communication [MTC]

Abstract

The present invention proposes the equipment for safety information interaction, and the equipment for safety information interaction includes:The first system managing device, it provides running environment for the application operating of routine;Second system managing device, it provides the running environment under safe mode for safety operation, to perform safety information interaction;User interface, it provides the user human-computer interaction interface to complete the operation of the initial log of safety barrier.Equipment disclosed in this invention for safety information interaction has high security and being capable of easily access safety carrier.

Description

Equipment for safety information interaction
Technical field
The present invention relates to the equipment for information exchange, the equipment more particularly, to being interacted for safety information.
Background technology
At present, increasingly extensive and different field the class of business applied with cyber-net becomes increasingly abundant, Interacted for safety information(Information exchange i.e. higher to security requirement, such as the trading processing process in financial field) Equipment(It is based especially on the security information exchange device of mobile terminal)Become more and more important.
Safety barrier inside or outside the existing equipment generally use following manner access for safety information interaction (It is used for the device for carrying out safety information interaction, such as, but not limited to, which SIM card, intelligent SD card or other safety are single Member, it is the carrier that can store simultaneously operation program safely, and is the independent meter of no display device and such as input through keyboard Calculate platform):When needing to carry out safety information interaction(Such as when needing to be traded operation), user passes through for security The user interface input log-on message of the equipment of information exchange(Such as bank card account number and password)To perform login process, and The safety information interaction of correlation is carried out after logining successfully.
However, there are the following problems for the existing equipment for safety information interaction:When needing to carry out multiple security During information exchange, it is necessary to log-on message is frequently inputted, so as to cause cumbersome and security to reduce.
Accordingly, there exist following demand:There is provided with high security and easily access safety carrier can be used for The equipment of safety information interaction.
The content of the invention
In order to solve the problems of above-mentioned prior art, the present invention is proposed with high security and energy The equipment for being used for safety information interaction of enough easily access safety carriers.
The purpose of the present invention is achieved through the following technical solutions:
A kind of equipment for safety information interaction, it is characterised in that the equipment for safety information interaction Including:
The first system managing device, the first system managing device provide running environment for the application operating of routine;
Second system managing device, the second system managing device provide the operation under safe mode for safety operation Environment, to perform safety information interaction;
User interface, the user interface provide the user human-computer interaction interface to complete the initial log of safety barrier behaviour Make;
Wherein, when operate in the application in the environment that the first system managing device provides need access safety carrier with When performing safety operation, the first system managing device constructs safety information interaction request and by the safety information Interaction request is sent to the second system managing device, wherein, the safety information interaction request includes to be accessed The information of safety barrier, the second system managing device is based on safety information interaction request completion will quilt for described in The register of the safety barrier of access, interacted so that the safety barrier to be accessed performs follow-up safety information Journey.
In scheme disclosed above, it is preferable that the safety barrier include entity externally and/or internally and/or Virtual secure carrier.
In scheme disclosed above, according to the first implementation, the second system managing device management is simultaneously safeguarded Safety barrier logging status table, the safety barrier logging status token record the current logged-on status of each safety barrier.
In scheme disclosed above, according to the first implementation, it is initially accessed in entity security carrier or virtually pacifies When full carrier is by initial creation, the second system managing device performs the initial log operation for the safety barrier, and If safety barrier initial log success, the safety for having logined successfully this in the safety barrier logging status table carries The logging status of body is arranged to " login ".
In scheme disclosed above, according to the first implementation, when receiving the safety information interaction request Afterwards, the second system managing device determines the login of safety barrier to be accessed according to the safety barrier logging status table State, and if the logging status of safety barrier to be accessed is " login ", then please by safety information interaction Ask and be forwarded to safety barrier to be accessed to perform follow-up safety information interaction.
In scheme disclosed above, according to the first implementation, the second system managing device is as follows Perform the initial log operation of safety barrier:When entity security carrier is initially accessed or virtual secure carrier is by initial creation, The second system managing device downloadable authentication or with safety barrier consult certification key by way of establish safety barrier with Escape way between the second system managing device.
In scheme disclosed above, according to the second implementation, the second system managing device management is simultaneously safeguarded Access cipher table, the access password for accessing cipher table and recording each safety barrier.
In scheme disclosed above, according to the second implementation, it is initially accessed in entity security carrier or virtually pacifies When full carrier is by initial creation, the second system managing device is performed for the first of the safety barrier by the user interface Beginning register, and if safety barrier initial log success, the then peace inputted user by the user interface The access password of full carrier is recorded in the access cipher table.
In scheme disclosed above, according to the second implementation, when receiving the safety information interaction request Afterwards, the second system managing device obtains the access password of safety barrier to be accessed according to the access cipher table, and And the verification process with safety barrier to be accessed is completed using the access password, and then hand over the safety information Mutually request is forwarded to safety barrier to be accessed to perform follow-up safety information interaction.
Equipment disclosed in this invention for safety information interaction has following advantages:Due to without repeatedly multiple Input log-on message, therefore with high security and being capable of easily access safety carrier.
Brief description of the drawings
With reference to accompanying drawing, technical characteristic of the invention and advantage will be more fully understood by those skilled in the art, wherein:
Fig. 1 is the schematic diagram of the equipment according to an embodiment of the invention for safety information interaction.
Embodiment
Fig. 1 is the schematic diagram of the equipment according to an embodiment of the invention for safety information interaction.Such as Fig. 1 Shown, the equipment disclosed in this invention for safety information interaction includes the first system managing device 1, second system management Device 2 and user interface 3.Wherein, the first system managing device 1(Such as conventional multimedia OS)To be conventional Application operating provides running environment.The second system managing device 2 is safety operation(Behaviour i.e. higher to security requirement Make, such as the delivery operation in financial field)Running environment under safe mode is provided, interacted with performing safety information Journey.The user interface 3(Such as keyboard, mouse, touch-screen etc.)Human-computer interaction interface is provided the user to complete safety barrier Initial log operation.Wherein, when the application in the environment for operating in the offer of the first system managing device 1 needs to access peace When full carrier is to perform safety operation, the first system managing device 1 constructs safety information interaction request and by described in Safety information interaction request is sent to the second system managing device 2, wherein, the safety information interaction request includes The information of safety barrier to be accessed, the second system managing device 2 are completed based on the safety information interaction request For the register of the safety barrier to be accessed, so that the safety barrier to be accessed performs follow-up safety Property information interactive process.
Exemplarily, disclosed in this invention in the equipment of safety information interaction, the safety barrier to include Entity and/or virtual secure carrier externally and/or internally.
Exemplarily, in the first implementation of the equipment disclosed in this invention for safety information interaction, institute State second system managing device 2 to manage and safeguard safety barrier logging status table, the safety barrier logging status token record is every The current logged-on status of individual safety barrier.
Exemplarily, in the first implementation of the equipment disclosed in this invention for safety information interaction, When entity security carrier is initially accessed or virtual secure carrier is by initial creation, the second system managing device 2 is performed and is directed to The initial log operation of the safety barrier, and if safety barrier initial log success, then log in the safety barrier The logging status of the safety barrier logined successfully is arranged to " login " in state table.
Exemplarily, in the first implementation of the equipment disclosed in this invention for safety information interaction, when After receiving the safety information interaction request, the second system managing device 2 is according to the safety barrier logging status Table determines the logging status of safety barrier to be accessed, and if the logging status of safety barrier to be accessed is " Log in ", then the safety information interaction request is forwarded to safety barrier to be accessed and believed with performing follow-up security Cease interaction(I.e. after the success of safety barrier initial log, it need not repeat when then being conducted interviews to the safety barrier Register).
Exemplarily, in the first implementation of the equipment disclosed in this invention for safety information interaction, institute State the initial log operation that second system managing device 2 performs safety barrier as follows:Initially connect in entity security carrier Enter or when virtual secure carrier is by initial creation, the second system managing device 2 passes through downloadable authentication(Such as from remote management Server downloads the certificate)Or establish safety barrier and the second system management with the mode of safety barrier negotiation certification key Escape way between device 2.
Exemplarily, in the second implementation of the equipment disclosed in this invention for safety information interaction, institute State the management of second system managing device 2 and maintenance access cipher table, the access for accessing cipher table and recording each safety barrier Password.
Exemplarily, in the second implementation of the equipment disclosed in this invention for safety information interaction, When entity security carrier is initially accessed or virtual secure carrier is by initial creation, the second system managing device 2 is by described User interface 3 performs the initial log operation for the safety barrier, and if safety barrier initial log success, then will The access password for the safety barrier that user is inputted by the user interface 3(Such as safety barrier PIN)It is recorded in described Access in cipher table.
Exemplarily, in the second implementation of the equipment disclosed in this invention for safety information interaction, when After receiving the safety information interaction request, the second system managing device 2 is wanted according to the access cipher table The access password of accessed safety barrier, and complete to authenticate with safety barrier to be accessed using the access password Journey, and the safety information interaction request is then forwarded to safety barrier to be accessed to perform follow-up security Information interactive process(I.e. after the success of safety barrier initial log, when then being conducted interviews to the safety barrier without repeating Row register, the second system managing device 2 are performed and safety to be accessed based on the Password-proxy that accesses stored The authentication operation of carrier).
Therefore the equipment disclosed in this invention for safety information interaction has following modification:Due to need not Repeatedly multiple input log-on message, therefore with high security and being capable of easily access safety carrier.
Although the present invention is described by above-mentioned preferred embodiment, its way of realization is not limited to Above-mentioned embodiment.It should be realized that:In the case where not departing from spirit and scope of the present invention, those skilled in the art can be with Different change and modifications is made to the present invention.

Claims (6)

  1. A kind of 1. equipment for safety information interaction, it is characterised in that the equipment bag for safety information interaction Include:
    The first system managing device, the first system managing device provide running environment for the application operating of routine;
    Second system managing device, the second system managing device provide the operation ring under safe mode for safety operation Border, to perform safety information interaction;
    User interface, the user interface provide the user human-computer interaction interface to complete the operation of the initial log of safety barrier;
    Wherein, when operate in the application in the environment that the first system managing device provides need to access the safety barrier with When performing safety operation, the first system managing device constructs safety information interaction request and by the safety information Interaction request is sent to the second system managing device, wherein, the safety information interaction request includes to be accessed The information of the safety barrier, the second system managing device are based on the safety information interaction request and completed for described The register of the safety barrier to be accessed, so that the safety barrier to be accessed performs follow-up safety Property information interactive process;
    Wherein, the second system managing device management and maintenance access cipher table, the access cipher table are each for recording The access password of the safety barrier;It is initially accessed in any safety barrier or during by initial creation, the second system Managing device performs the initial log operation for the safety barrier by the user interface, and if at the beginning of the safety barrier Beginning logins successfully, then the access password of the safety barrier inputted user by the user interface is recorded in the visit Ask in cipher table;And after the safety information interaction request is received, the second system managing device is according to The access password that cipher table obtains the safety barrier to be accessed is accessed, and uses access password completion and institute State the verification process of the safety barrier to be accessed, and be then forwarded to the safety information interaction request described The safety barrier to be accessed is to perform follow-up safety information interaction.
  2. 2. the equipment according to claim 1 for safety information interaction, it is characterised in that the safety barrier includes Entity and/or virtual secure carrier externally and/or internally.
  3. 3. the equipment according to claim 2 for safety information interaction, it is characterised in that the second system management Device management simultaneously safeguards safety barrier logging status table, and the safety barrier logging status token records the current of each safety barrier Logging status.
  4. 4. the equipment according to claim 3 for safety information interaction, it is characterised in that at the beginning of entity security carrier When beginning access or virtual secure carrier are by initial creation, the second system managing device is performed for the initial of the safety barrier Register, and if safety barrier initial log success, then stepped on this in the safety barrier logging status table The logging status for recording successful safety barrier is arranged to " login ".
  5. 5. the equipment according to claim 4 for safety information interaction, it is characterised in that when receiving the safety Property information exchange request after, the second system managing device determines to be accessed according to the safety barrier logging status table The logging status of safety barrier, and if the logging status of safety barrier to be accessed is " login ", then by the peace Full property information exchange request is forwarded to safety barrier to be accessed to perform follow-up safety information interaction.
  6. 6. the equipment according to claim 5 for safety information interaction, it is characterised in that the second system management Device performs the initial log operation of safety barrier as follows:It is initially accessed or virtual secure carrier in entity security carrier During by initial creation, the second system managing device is downloadable authentication or with being built by way of safety barrier negotiation certification key Vertical escape way between safety barrier and the second system managing device.
CN201310059927.8A 2013-02-26 2013-02-26 Equipment for safety information interaction Active CN104009962B (en)

Priority Applications (2)

Application Number Priority Date Filing Date Title
CN201310059927.8A CN104009962B (en) 2013-02-26 2013-02-26 Equipment for safety information interaction
PCT/CN2014/071944 WO2014131326A1 (en) 2013-02-26 2014-02-11 Secure information interactive device

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201310059927.8A CN104009962B (en) 2013-02-26 2013-02-26 Equipment for safety information interaction

Publications (2)

Publication Number Publication Date
CN104009962A CN104009962A (en) 2014-08-27
CN104009962B true CN104009962B (en) 2018-01-16

Family

ID=51370456

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201310059927.8A Active CN104009962B (en) 2013-02-26 2013-02-26 Equipment for safety information interaction

Country Status (2)

Country Link
CN (1) CN104009962B (en)
WO (1) WO2014131326A1 (en)

Families Citing this family (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN105515757B (en) * 2014-09-22 2018-09-21 中国银联股份有限公司 Security information exchange device based on credible performing environment

Citations (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101957985A (en) * 2010-10-15 2011-01-26 重庆医科大学 Automatic self-adaptive optimum compensation method of human vision contrast resolution
CN102724172A (en) * 2011-07-28 2012-10-10 北京天地互连信息技术有限公司 System and method supporting rapid access authentication

Family Cites Families (7)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
JP4500760B2 (en) * 2005-10-19 2010-07-14 日立オムロンターミナルソリューションズ株式会社 IC card authentication system
US20090307140A1 (en) * 2008-06-06 2009-12-10 Upendra Mardikar Mobile device over-the-air (ota) registration and point-of-sale (pos) payment
CN101707594A (en) * 2009-10-21 2010-05-12 南京邮电大学 Single sign on based grid authentication trust model
CN102402820B (en) * 2010-09-13 2014-06-11 中国移动通信有限公司 Electronic transaction method and terminal equipment
CN101957958A (en) * 2010-09-19 2011-01-26 中兴通讯股份有限公司 Method and mobile phone terminal for realizing network payment
CN102752265B (en) * 2011-04-19 2017-04-19 中国银联股份有限公司 Security information interaction system and method based on Internet
CN102843359A (en) * 2012-08-06 2012-12-26 鸿富锦精密工业(深圳)有限公司 Automatic login system electronic device and automatic login method

Patent Citations (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101957985A (en) * 2010-10-15 2011-01-26 重庆医科大学 Automatic self-adaptive optimum compensation method of human vision contrast resolution
CN102724172A (en) * 2011-07-28 2012-10-10 北京天地互连信息技术有限公司 System and method supporting rapid access authentication

Also Published As

Publication number Publication date
CN104009962A (en) 2014-08-27
WO2014131326A1 (en) 2014-09-04

Similar Documents

Publication Publication Date Title
US11869005B2 (en) System and method linking to accounts using credential-less authentication
CN104247329B (en) The safety of the device of cloud service is asked to be remedied
US8973123B2 (en) Multifactor authentication
CN102542453B (en) Mobile payment identity verification method
WO2020107233A1 (en) Blockchain-based wallet system, method of use of wallet and storage medium
CN105556919B (en) Dual factor anthentication is carried out using service request bill
CN105874494A (en) Disabling mobile payments for lost electronic devices
CN104301289B (en) Equipment for safety information interaction
CN106936772A (en) A kind of access method, the apparatus and system of cloud platform resource
US20170201550A1 (en) Credential storage across multiple devices
US11930120B2 (en) Call center web-based authentication using a contactless card
US20140137265A1 (en) System and Method For Securing Critical Data In A Remotely Accessible Database
CN115605867A (en) Enabling communication between applications in a mobile operating system
CN117178280A (en) On-demand application of extended WEB services
CN101533504A (en) Electric medical affairs system and device
CN104009962B (en) Equipment for safety information interaction
CN109324843A (en) A kind of finger prints processing system, method and fingerprint equipment
CN102708491A (en) Trusted computing based novel USB (universal serial bus) Key device and safety transaction method thereof
KR20230137354A (en) System and method for access token authentication
CN104156859B (en) A kind of internet trading system and method based on dynamic password
CN102752265A (en) Security information interaction system and method based on Internet
US10848467B2 (en) Systems and methods for securing a laptop computer device
JP2023501302A (en) Systems and methods for cross-coupling risk analysis and one-time passcodes
CN208924277U (en) The login system of internet of things equipment
WO2016124032A1 (en) Data exchange method

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
GR01 Patent grant
GR01 Patent grant