CN104156645A - Copy verification system and application method thereof - Google Patents

Copy verification system and application method thereof Download PDF

Info

Publication number
CN104156645A
CN104156645A CN201410385245.0A CN201410385245A CN104156645A CN 104156645 A CN104156645 A CN 104156645A CN 201410385245 A CN201410385245 A CN 201410385245A CN 104156645 A CN104156645 A CN 104156645A
Authority
CN
China
Prior art keywords
certificate
information
person
accreditation
verification
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Pending
Application number
CN201410385245.0A
Other languages
Chinese (zh)
Inventor
朱洪标
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Individual
Original Assignee
Individual
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Individual filed Critical Individual
Priority to CN201410385245.0A priority Critical patent/CN104156645A/en
Publication of CN104156645A publication Critical patent/CN104156645A/en
Pending legal-status Critical Current

Links

Classifications

    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/30Authentication, i.e. establishing the identity or authorisation of security principals
    • G06F21/31User authentication
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L9/00Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
    • H04L9/32Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials
    • H04L9/3247Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials involving digital signatures

Abstract

The invention discloses a copy verification system and an application method thereof. The copy verification system comprises a making part and a verifying part, wherein the making part is used for conducting signing through a signature private key with a server or multiple forms of digital certificate private keys and sending signature information to a verification center, the verification center returns information with a timestamp signature, and a maker prints the information on a certificate in the form of a two-dimension code; the verifying part is used for reading the two-dimension code on the certificate through a terminal device with two-dimension code recognition software and a camera so as to obtain the information in the two-dimension code, judging whether a copy is consistent with the original certificate or not through validity of a timestamp certificate and a maker certificate, and feeding back the verification result. The copy verification system and the application method of the copy verification system have the advantages that the original certificate does not need to be frequently carried, the probability that the original certificate is lost and damaged is lowered, and probative force of the copy is high.

Description

A kind of copy verification system and application process thereof
Technical field
The present invention relates to internet, applications and photoelectricity physics field, particularly, relate to a kind of copy verification system and application process thereof.
Background technology
While using various certificate now, all need to use original paper, as while handling phonecard, bank card, when while bid, used during taking train, aircraft, all need the original paper of examination of document.But it is fragile that original paper carries easy loss, and original paper generally only has portion, and losing to report the loss to severely punish after damaging wastes time and energy.
The copy of certificate is made easily, and cost is low, how to make copy as original paper, obtain validation verification, and this just needs a safe and reliable system and application process, guarantees that the information on copy is consistent with original paper.
Quick Response Code, due to the distinguishing feature containing much information, use cost is low, has now been widely used in the fields such as public safety, communications and transportation, the tax, health care, industry, business, finance, customs and governability.
The law of electronic signature > > of the < < People's Republic of China (PRC) implemented on April 1st, 2005, established the legal effect of electronic signature, form by certificate information and reliably electronic signature with Quick Response Code is printed on certificate, and easily duplicate, by checking, can learn that whether copy is consistent with original paper, the authenticity of copy is protected.
In realizing process of the present invention, inventor finds at least to exist in prior art that original paper property safe to carry is poor, lost document is severely punished after damaging wastes time and energy and the defect such as copy proof is weak.
Summary of the invention
The object of the invention is to, for the problems referred to above, propose a kind of copy verification system, to realize, do not need often to carry original paper, reduce lost document damage probability and the strong advantage of copy proof.
The second object of the present invention is, proposes a kind of application process of copy verification system.
For achieving the above object, the technical solution used in the present invention is: a kind of copy verification system, and comprise and make part and verification portion, wherein:
Described making part, for using the signature private key that comprises server or various ways digital certificate private key to sign, and signing messages is sent to authentication center, authentication center returns to the information with timestamp signature, and by these information, the mode with 2 D code information is printed on certificate wright;
Described verification portion, for by thering is Quick Response Code identification software and with the terminal device of camera, read the Quick Response Code on certificate, obtain the information in Quick Response Code, by divide timestamp certificate that the signing messages of transmission returns and the validity of wright's certificate to judge that whether this copy is consistent with original paper based on preparing department, as unanimously shown the person's of signing and issuing information and certificate information, otherwise show information warning.
Further, described verification portion, comprises online verification portion and off-line verification part, wherein:
Described online verification part, for directly reading the 2 D code information on copy, and verifies the authenticity that wright and preparing department divide signature; Certificate information exists in Quick Response Code, only has by after checking, could show the information of certificate;
Described off-line verification part, is stored in this locality for downloading in advance accreditation person and making public key certificate partly, carries out the checking of certificate.
Further, described 2 D code information, comprises information, accreditation person's signing messages and certificate validation verification center signing messages for recording the certificate of aided verification information; Described 2 D code information, does not encrypt, and can conveniently be duplicated, for offering verifier's checking.
Further, described making part, comprises the making of accreditation person's signing certificate module, certificate validation verification center and two-dimensional code generation module;
(1) at described accreditation person's signing certificate, make in module, accreditation person's signing certificate comprises PKI and private key, and its PKI need to offer certificate validation verification center, and its private key is preserved by accreditation person oneself;
Accreditation person must use signature private key to sign to the information of certificate, and signature private key can exist in a variety of forms under the prerequisite of safety that guarantees signature private key, but necessary; Signature private key can be stored in USBKEY, in CUP IC-card or provided by server password machine, signature verification service device;
Accreditation person's signing certificate PKI need to offer certificate validation verification center, and offer with the various ways that comprises LDAP, OCSP terminal downloads, the checking use that needs are verified, in the information in signing certificate, at least to comprise accreditation person's title and the person of signing and issuing;
(2) described certificate validation verification center, be used in accreditation link, accreditation person needs on-line joining process certificate validation verification center, the real-time signing messages by making certificate uploads to certificate validation verification center, timestamp signature will be carried out to this signing messages in certificate validation verification center, and signing messages is returned to accreditation person, the information of certificate and accreditation person's signing messages are not preserved in certificate validation verification center, just before signature, first verify accreditation person's certificate validity;
(3) described two-dimensional code generation module, be printed on certificate for various information being synthesized to Quick Response Code in accreditation link.
Further, described verification portion, comprises reading terminals and authentication module; Wherein:
(1) described reading terminals, comprises special-purpose reading terminals and general reading terminals;
Special-purpose reading terminals comprises with the handheld all-in-one machine of camera, printer, keyboard, liquid crystal display or on hand-held PDA or embedded system device, the input-output apparatus such as additional camera, printer; During use, read image in 2 D code and identify information wherein, by using the validity of information in the associated public key certification authentication Quick Response Code being stored in advance in special-purpose reading terminals, determine the legitimacy of this Quick Response Code; The reading terminals of this Quick Response Code can be used by off-line, also can connect on computers and use as peripheral hardware;
General reading terminals refers to be provided with Quick Response Code identification software and with the terminal device of camera, comprises common PDA, mobile phone etc., for reading Quick Response Code, obtains specifying information in Quick Response Code etc.; By communication network, arrive the validity of certificate validation verification center checking Quick Response Code;
(2) described authentication module, for verifying for the decoded informational needs process of Quick Response Code, under off-line mode, authentication module in client software completes checking work, under line model, authentication server by certificate validation verification center completes checking work, and the result is returned to terminal.
Meanwhile, another technical scheme that the present invention adopts is: a kind of application process based on above-described copy verification system, comprises
(1) certificate making person uses the private key of oneself to sign to certificate information, and signing messages is sent to authentication center, authentication center returns to the information with timestamp signature, and wright generates a Quick Response Code that comprises signing messages, and Quick Response Code is printed on corresponding certificate;
(2) certificate user duplicates certificate with common duplicating machine;
(3) supervisory personnel uses the terminal device that comprises computer, mobile phone, PDA, read Quick Response Code content on this certificate copy, terminal can be verified the legitimacy of copy, can demonstrate all the elements of original paper by the certificate of checking, and supervisory personnel can judge that whether this copy is consistent with original paper.
Further, (1) described step, specifically comprises:
Accreditation person needs the certificate of first holding in the registration of certificate validation verification center, and certificate chain, the accreditation person's certificate of signing and issuing accreditation person's certificate CA center are uploaded to certificate validation verification center; Certificate validation verification center need publish out by these certificate chains and certificate, so that verifier uses;
Accreditation person signs after information on certificate is gathered, and signature result is sent to certificate validation verification center, by certificate validation verification center checking accreditation person certificate, there is the signature of after validity, it being received to carry out timestamp signature, and signature result is returned to accreditation person, accreditation person merges the signature at the information on certificate, accreditation person's signature and certificate validation verification center to generate Quick Response Code, and Quick Response Code is printed on certificate.
Further, (3) described step, specifically comprises:
Online verification person uses reading terminals to read the 2 D code information on certificate copy, terminal meeting automatic decoding, and by communication network, the signing messages in Quick Response Code is sent to certificate validation verification center and verify, the result that is verified or does not pass through is returned at certificate validation verification center; If passed through, reading terminals shows the original paper information of " corresponding certificate is to be signed and issued by corresponding licence issuing authority, is verified " and certificate; If do not passed through, show the information warning that comprises " it is illegal that this certificate is signed and issued mechanism ";
Or, off-line verification person uses reading terminals to read the 2 D code information on certificate copy, terminal meeting automatic decoding, and use the local associated public key certificate of downloading in advance to carry out signature verification to signing messages, and return to the result that is verified or does not pass through, if passed through, reading terminals shows the original paper information of " corresponding certificate is to be signed and issued by corresponding licence issuing authority, is verified " and certificate; If do not passed through, show the information warning that comprises " it is illegal that this certificate is signed and issued mechanism ".
Copy verification system and the application process thereof of various embodiments of the present invention, because comprising, this verification system makes part and verification portion, wherein: make part, for using the signature private key that comprises server or various ways digital certificate private key to sign, and signing messages is sent to authentication center, authentication center returns to the information with timestamp signature, and by these information, the mode with 2 D code information is printed on certificate wright; Verification portion, for by thering is Quick Response Code identification software and with the terminal device of camera, reading the Quick Response Code on certificate, obtain the information in Quick Response Code, validity by timestamp certificate and wright's certificate judges that whether this copy is consistent with original paper, and feeds back the result; Can be printed on certificate containing electronic signature information Pi Quick Response Code, whether unanimously with original paper make by can determine copy to the checking of copy; Thereby can overcome to severely punish after the poor and lost document of original paper property safe to carry in prior art damages, waste time and energy and defect that copy proof is weak, to realize, do not need often to carry original paper, reduce lost document damage probability and the strong advantage of copy proof.
Other features and advantages of the present invention will be set forth in the following description, and, partly from instructions, become apparent, or understand by implementing the present invention.
Below by drawings and Examples, technical scheme of the present invention is described in further detail.
Accompanying drawing explanation
Accompanying drawing is used to provide a further understanding of the present invention, and forms a part for instructions, for explaining the present invention, is not construed as limiting the invention together with embodiments of the present invention.In the accompanying drawings:
Fig. 1 is that copy verification system of the present invention is the composition system type schematic diagram of certificate validation verification system;
Fig. 2 is certificate making principle schematic in the present invention;
Fig. 3 is certificate verification principle schematic in the present invention;
Fig. 4 is the process flow diagram of certificate validation verification system in the present invention;
Fig. 5 is that the present invention is at the on-the-spot applicating flow chart (online verification) of submitting a tender;
Fig. 6 is that the present invention is at the on-the-spot applicating flow chart (off-line verification) of application.
Embodiment
Below in conjunction with accompanying drawing, the preferred embodiments of the present invention are described, should be appreciated that preferred embodiment described herein, only for description and interpretation the present invention, is not intended to limit the present invention.
According to the embodiment of the present invention, as shown in Fig. 1-Fig. 6, provide a kind of copy verification system and application process thereof, relate in particular to and utilize Quick Response Code to make copy can obtain the method for validation verification.
Technical scheme of the present invention, relates to electronic signature and planar bar code technology, refers in particular in conjunction with electronic signature and planar bar code technology and makes the copy of certificate can obtain validation verification.The object of the invention is to contain electronic signature information Pi Quick Response Code and be printed on certificate, whether unanimously with original paper make by can determine copy to the checking of copy; The copy that is convenient for people to use is handled every affairs.The present invention is included in the information of certificate (containing picture, as photo), accreditation person's signing messages and certificate validation verification center signing messages in Quick Response Code, can offer verifier's checking.
Technical scheme of the present invention, has following characteristics:
(1) adopt the copy of the various certificates of copy verification system (being certificate validation verification system) making to use as original paper, during use copy can be as the original paper audit check by certificate validity (be conducive to the copy that people carry certificate and handle every affairs, and do not worry carrying lost document);
(2) on the certificate of making through certificate validation verification system, be useful on the Quick Response Code that records aided verification information, and this Quick Response Code is easy to duplicate;
(3) certificate validation verification system, comprises information (containing picture, as photo), accreditation person's signing messages and the certificate validation verification center signing messages of certificate, and does not encrypt in Quick Response Code, can offer verifier's checking;
(4) certificate validation verification system does not need to store any certificate information, only need to store accreditation person's public key certificate, is conducive to like this protect the information content of secret in certificate;
(5) certificate validation verification system, comprising: make part and verification portion.Verification portion can be supported online verification and two kinds of modes of off-line verification, making part need to use signature private key (private key of server or various forms digital certificate) to sign, and signing messages is sent to certificate validation verification system, certificate validation verification system is returned to the information with timestamp signature, and by these information, the mode with Quick Response Code is printed on certificate wright.Verification portion is to have Quick Response Code identification software and with the terminal device of camera by computer, mobile phone, PDA etc., for reading the Quick Response Code on certificate, obtain the information in Quick Response Code, by the timestamp certificate of checking certificate validation verification system and the validity of wright's certificate, judge that whether this copy is consistent with original paper, as unanimously shown the person's of signing and issuing information and certificate information, otherwise show information warning.Off-line verification needs the public key certificate of downloading in advance accreditation person and certificate validation verification system to be stored in this locality, for the checking of certificate; Online verification is without this requirement.By online mode, can directly read the 2 D code information on copy, and the authenticity of checking wright and certificate validation verification system signature; Certificate information exists in Quick Response Code, only has by after checking, and system just can show the information of certificate.
In technical scheme of the present invention, the application process of certificate validation verification system, comprises the following steps:
(1) certificate making person uses the private key of oneself to sign to certificate information, and signing messages is sent to certificate validation verification system, certificate validation verification system is returned to the information with timestamp signature, wright generates a Quick Response Code that comprises signing messages, and Quick Response Code is printed on corresponding certificate;
(2) certificate user duplicates certificate with common duplicating machine;
(3) supervisory personnel uses the terminals such as computer, mobile phone, PDA to read Quick Response Code content on this certificate copy, terminal can be verified the legitimacy of copy, the all the elements (as identification card number, photo etc.) that can demonstrate original paper by the certificate of checking, supervisory personnel can judge that whether this copy is consistent with original paper.
The relative prior art of the present invention, has the following advantages:
Compared with prior art, the present invention makes copy as original paper, obtain validation verification by native system and methods for using them, and cost of manufacture is low, easy to carry, easy to verify, safe, be difficult for the features such as false making, can be widely used in the occasion that need to use original paper check certificate.
The present invention is generally not used in the copy checking of the text that quantity of information is very large (as being greater than 10000 Chinese characters) and large picture (being greater than 1M), also be not used in the single-piece commodity (as mineral water, common medicine) of homogeneity false proof upper, but can be used on the proof file of uniqueness Individual Items (as noble metal jewelry).
For example, Fig. 1 to Fig. 5 shows system architecture and the flow process signal of credible two-dimensional code system of the present invention (being copy verification system) and application process thereof, and this copy verification system comprises following part:
(1) accreditation person's signing certificate
Accreditation person's signing certificate comprises PKI and private key, and its PKI need to offer certificate validation verification center, and its private key is preserved by accreditation person oneself.
Accreditation person must use signature private key to sign to the information of certificate, and signature private key can exist in a variety of forms, but must guarantee the safety of signature private key.Signature private key can be stored in USBKEY, in CUP IC-card or provided by server password machine, signature verification service device.Signature private key is preserved by accreditation person oneself, must not leak, and needs to certificate validation verification center, to report the loss in time, and charge to blacklist by certificate validation verification center once leak, and forbids that it continues to use.Signing certificate can be to be issued by the third party CA or the industry CA that meet the law of electronic signature > > of the < < People's Republic of China (PRC).
Accreditation person's signing certificate PKI need to offer certificate validation verification center, and (as LDAP, OCSP etc.) offer terminal downloads, the checking use that need to verify in every way, at least will comprise accreditation person's title (as: XXX public security bureau), the person of signing and issuing (as XXCA center) and other necessary information in the information in signing certificate.
(2) certificate validation verification center
The core of certificate validation verification center in this system, in accreditation link, accreditation person needs on-line joining process certificate validation verification center, the real-time signing messages by making certificate uploads to certificate validation verification center, timestamp signature will be carried out to this signing messages in certificate validation verification center, and signing messages is returned to accreditation person, the information of certificate and accreditation person's signing messages are not preserved in certificate validation verification center, just before signature, first verify accreditation person's certificate validity (accreditation person's public key certificate need upload to certificate validation verification center in advance).
(3) reading terminals
Reading terminals mainly contains special-purpose reading terminals and general reading terminals.
This special use reading terminals can be with the handheld all-in-one machine of camera, printer, keyboard, liquid crystal display etc. or on hand-held PDA or embedded system device, the input-output apparatus such as additional camera, printer.During use, read image in 2 D code and identify information wherein, by using the validity of information in the associated public key certification authentication Quick Response Code being stored in advance in special-purpose reading terminals, determine the legitimacy of this Quick Response Code.This Quick Response Code reading terminals can be used by off-line, also can connect on computers and use as peripheral hardware;
General reading terminals refers to be provided with Quick Response Code identification software and with the terminal device of camera, as common PDA, mobile phone etc., for reading Quick Response Code, thereby obtains specifying information in Quick Response Code etc.; By communication network, arrive the validity of certificate validation verification center checking Quick Response Code.
(4) two-dimensional code generation module
In accreditation link, the synthetic Quick Response Code of various information (certificate information, accreditation person's signing messages, certificate validation verification center signing messages) need to be printed on certificate, Quick Response Code system has hundreds of kind at present, conventional also has tens kinds, the present invention can adopt existing Quick Response Code to generate software, also can generate software by designed, designed Quick Response Code, generate different Quick Response Codes.
(5) authentication module
For the checking of the decoded informational needs process of Quick Response Code, under off-line mode, the authentication module in client software completes checking work, under line model, authentication server by certificate validation verification center completes checking work, and the result is returned to terminal.
For example, referring to Fig. 5 and Fig. 6, in technical scheme of the present invention, the application process of this copy verification system, comprises the steps:
Step 1: accreditation person needs the certificate of first holding in the registration of certificate validation verification center, and certificate chain, the accreditation person's certificate of signing and issuing accreditation person's certificate CA center are uploaded to certificate validation verification center.Certificate validation verification center need publish out by these certificate chains and certificate, so that verifier uses;
Step 2: accreditation person signs after information on certificate is gathered, and signature result is sent to certificate validation verification center, by certificate validation verification center checking accreditation person certificate, there is the signature of after validity, it being received to carry out timestamp signature, and signature result is returned to accreditation person, accreditation person merges the signature at the information on certificate, accreditation person's signature and certificate validation verification center to generate Quick Response Code, and Quick Response Code is printed on certificate;
Step 3: user duplicates certificate original paper and obtains copy, can be used for daily life;
Step 4: online verification person uses reading terminals to read the 2 D code information on certificate copy, terminal meeting automatic decoding, and by communication network, the signing messages in Quick Response Code is sent to certificate validation verification center and verify, the result that is verified or does not pass through is returned at certificate validation verification center.If passed through, reading terminals show " XXX(certificate) be by XXXX(licence issuing authority) sign and issue, be verified " and the original paper information (as: name, identification card number, photo etc.) of certificate; If do not passed through, show information warnings such as " it is illegal that this certificate is signed and issued mechanism ".
Or off-line verification person uses reading terminals to read the 2 D code information on certificate copy, terminal meeting automatic decoding, and use the local associated public key certificate of downloading in advance to carry out signature verification to signing messages, and return to the result that is verified or does not pass through, if passed through, reading terminals show " XXX(certificate) be by XXXX(licence issuing authority) sign and issue, be verified " and the original paper information (as: name, identification card number, photo etc.) of certificate; If do not passed through, show information warnings such as " it is illegal that this certificate is signed and issued mechanism ".
Technical scheme of the present invention, with the key distinction of the patent documentation of patent (application) numbers 200710152342.5 is:
(1) in the application's Quick Response Code, will comprise original text (being Word message and the image of former certificate), and the patent documentation of patent (application) numbers 200710152342.5 does not comprise.
(2) the application does not need original text to carry out image processing, 1(2 in claims of the patent documentation of patent (application) numbers 200710152342.5), all require original text to carry out image recognition processing in 5,8, can increase difficulty like this, should not realize, be not easy to promote.
(3) in patent documentation claims of patent (application) numbers 200710152342.5, the 7th to indicate be " PDF417 code ", and the application does not specify, but domestic GM, CM code are used in suggestion.
(4) how Special attention will be given to of the present invention effectively verifies the copy of certificate, also can verify the original paper of certificate.。
Finally it should be noted that: the foregoing is only the preferred embodiments of the present invention, be not limited to the present invention, although the present invention is had been described in detail with reference to previous embodiment, for a person skilled in the art, its technical scheme that still can record aforementioned each embodiment is modified, or part technical characterictic is wherein equal to replacement.Within the spirit and principles in the present invention all, any modification of doing, be equal to replacement, improvement etc., within all should being included in protection scope of the present invention.

Claims (8)

1. a copy verification system, is characterized in that, comprise and make part and verification portion, wherein:
Described making part, for using the signature private key that comprises server or various ways digital certificate private key to sign, and signing messages is sent to authentication center, authentication center returns to the information with timestamp signature, and by these information, the mode with 2 D code information is printed on certificate wright;
Described verification portion, for by thering is Quick Response Code identification software and with the terminal device of camera, read the Quick Response Code on certificate, obtain the information in Quick Response Code, by divide timestamp certificate that the signing messages of transmission returns and the validity of wright's certificate to judge that whether this copy is consistent with original paper based on preparing department, as unanimously shown the person's of signing and issuing information and certificate information, otherwise show information warning.
2. copy verification system according to claim 1, is characterized in that, described verification portion comprises online verification portion and off-line verification part, wherein:
Described online verification part, for directly reading the 2 D code information on copy, and verifies the authenticity that wright and preparing department divide signature; Certificate information exists in Quick Response Code, only has by after checking, could show the information of certificate;
Described off-line verification part, is stored in this locality for downloading in advance accreditation person and making public key certificate partly, carries out the checking of certificate.
3. copy verification system according to claim 1 and 2, is characterized in that, described 2 D code information comprises information, accreditation person's signing messages and certificate validation verification center signing messages for recording the certificate of aided verification information; Described 2 D code information, does not encrypt, and can conveniently be duplicated, for offering verifier's checking.
4. copy verification system according to claim 1 and 2, is characterized in that, described making part comprises the making of accreditation person's signing certificate module, certificate validation verification center and two-dimensional code generation module;
(1) at described accreditation person's signing certificate, make in module, accreditation person's signing certificate comprises PKI and private key, and its PKI need to offer certificate validation verification center, and its private key is preserved by accreditation person oneself;
Accreditation person must use signature private key to sign to the information of certificate, and signature private key can exist in a variety of forms under the prerequisite of safety that guarantees signature private key, but necessary; Signature private key can be stored in USBKEY, in CUP IC-card or provided by server password machine, signature verification service device;
Accreditation person's signing certificate PKI need to offer certificate validation verification center, and offer with the various ways that comprises LDAP, OCSP terminal downloads, the checking use that needs are verified, in the information in signing certificate, at least to comprise accreditation person's title and the person of signing and issuing;
(2) described certificate validation verification center, be used in accreditation link, accreditation person needs on-line joining process certificate validation verification center, the real-time signing messages by making certificate uploads to certificate validation verification center, timestamp signature will be carried out to this signing messages in certificate validation verification center, and signing messages is returned to accreditation person, the information of certificate and accreditation person's signing messages are not preserved in certificate validation verification center, just before signature, first verify accreditation person's certificate validity;
(3) described two-dimensional code generation module, be printed on certificate for various information being synthesized to Quick Response Code in accreditation link.
5. copy verification system according to claim 1 and 2, is characterized in that, described verification portion comprises reading terminals and authentication module; Wherein:
(1) described reading terminals, comprises special-purpose reading terminals and general reading terminals;
Special-purpose reading terminals comprises with the handheld all-in-one machine of camera, printer, keyboard, liquid crystal display or on hand-held PDA or embedded system device, the input-output apparatus such as additional camera, printer; During use, read image in 2 D code and identify information wherein, by using the validity of information in the associated public key certification authentication Quick Response Code being stored in advance in special-purpose reading terminals, determine the legitimacy of this Quick Response Code; The reading terminals of this Quick Response Code can be used by off-line, also can connect on computers and use as peripheral hardware;
General reading terminals refers to be provided with Quick Response Code identification software and with the terminal device of camera, comprises common PDA, mobile phone etc., for reading Quick Response Code, obtains specifying information in Quick Response Code etc.; By communication network, arrive the validity of certificate validation verification center checking Quick Response Code;
(2) described authentication module, for verifying for the decoded informational needs process of Quick Response Code, under off-line mode, authentication module in client software completes checking work, under line model, authentication server by certificate validation verification center completes checking work, and the result is returned to terminal.
6. the application process based on copy verification system claimed in claim 1, is characterized in that, comprises
(1) certificate making person uses the private key of oneself to sign to certificate information, and signing messages is sent to authentication center, authentication center returns to the information with timestamp signature, and wright generates a Quick Response Code that comprises signing messages, and Quick Response Code is printed on corresponding certificate;
(2) certificate user duplicates certificate with common duplicating machine;
(3) supervisory personnel uses the terminal device that comprises computer, mobile phone, PDA, read Quick Response Code content on this certificate copy, terminal can be verified the legitimacy of copy, can demonstrate all the elements of original paper by the certificate of checking, and supervisory personnel can judge that whether this copy is consistent with original paper.
7. the application process of copy verification system according to claim 6, is characterized in that, (1) described step, specifically comprises:
Accreditation person needs the certificate of first holding in the registration of certificate validation verification center, and certificate chain, the accreditation person's certificate of signing and issuing accreditation person's certificate CA center are uploaded to certificate validation verification center; Certificate validation verification center need publish out by these certificate chains and certificate, so that verifier uses;
Accreditation person signs after information on certificate is gathered, and signature result is sent to certificate validation verification center, by certificate validation verification center checking accreditation person certificate, there is the signature of after validity, it being received to carry out timestamp signature, and signature result is returned to accreditation person, accreditation person merges the signature at the information on certificate, accreditation person's signature and certificate validation verification center to generate Quick Response Code, and Quick Response Code is printed on certificate.
8. the application process of copy verification system according to claim 6, is characterized in that, (3) described step, specifically comprises:
Online verification person uses reading terminals to read the 2 D code information on certificate copy, terminal meeting automatic decoding, and by communication network, the signing messages in Quick Response Code is sent to certificate validation verification center and verify, the result that is verified or does not pass through is returned at certificate validation verification center; If passed through, reading terminals shows the original paper information of " corresponding certificate is to be signed and issued by corresponding licence issuing authority, is verified " and certificate; If do not passed through, show the information warning that comprises " it is illegal that this certificate is signed and issued mechanism ";
Or, off-line verification person uses reading terminals to read the 2 D code information on certificate copy, terminal meeting automatic decoding, and use the local associated public key certificate of downloading in advance to carry out signature verification to signing messages, and return to the result that is verified or does not pass through, if passed through, reading terminals shows the original paper information of " corresponding certificate is to be signed and issued by corresponding licence issuing authority, is verified " and certificate; If do not passed through, show the information warning that comprises " it is illegal that this certificate is signed and issued mechanism ".
CN201410385245.0A 2014-08-07 2014-08-07 Copy verification system and application method thereof Pending CN104156645A (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201410385245.0A CN104156645A (en) 2014-08-07 2014-08-07 Copy verification system and application method thereof

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201410385245.0A CN104156645A (en) 2014-08-07 2014-08-07 Copy verification system and application method thereof

Publications (1)

Publication Number Publication Date
CN104156645A true CN104156645A (en) 2014-11-19

Family

ID=51882143

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201410385245.0A Pending CN104156645A (en) 2014-08-07 2014-08-07 Copy verification system and application method thereof

Country Status (1)

Country Link
CN (1) CN104156645A (en)

Cited By (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN105117427A (en) * 2015-08-03 2015-12-02 南京云追溯网络科技有限公司 Certificate management system based on two-dimensional code
CN105184123A (en) * 2015-09-15 2015-12-23 重庆智韬信息技术中心 Method for achieving secure reminding for user through constructing double-layer two-dimensional code information
CN107835079A (en) * 2017-11-02 2018-03-23 广州佳都数据服务有限公司 A kind of two-dimentional code authentication method and equipment based on digital certificate
CN110322646A (en) * 2019-07-05 2019-10-11 上海卓繁信息技术股份有限公司 Digital certificate handles method
CN112865972A (en) * 2021-03-31 2021-05-28 深圳市巽震科技孵化器有限公司 Initialization method, device and system based on digital certificate platform and storage device

Citations (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102298756A (en) * 2011-09-05 2011-12-28 中体彩科技发展有限公司 Method for ensuring security of computer lottery trade information
CN103198344A (en) * 2013-03-01 2013-07-10 重庆市远大印务有限公司 Tax-control safety two-dimensional code encoding and decoding processing method
CN103269269A (en) * 2013-05-08 2013-08-28 吴伟 File encryption transmission method based on two-dimensional bar code technology

Patent Citations (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102298756A (en) * 2011-09-05 2011-12-28 中体彩科技发展有限公司 Method for ensuring security of computer lottery trade information
CN103198344A (en) * 2013-03-01 2013-07-10 重庆市远大印务有限公司 Tax-control safety two-dimensional code encoding and decoding processing method
CN103269269A (en) * 2013-05-08 2013-08-28 吴伟 File encryption transmission method based on two-dimensional bar code technology

Cited By (6)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN105117427A (en) * 2015-08-03 2015-12-02 南京云追溯网络科技有限公司 Certificate management system based on two-dimensional code
CN105184123A (en) * 2015-09-15 2015-12-23 重庆智韬信息技术中心 Method for achieving secure reminding for user through constructing double-layer two-dimensional code information
CN107835079A (en) * 2017-11-02 2018-03-23 广州佳都数据服务有限公司 A kind of two-dimentional code authentication method and equipment based on digital certificate
CN110322646A (en) * 2019-07-05 2019-10-11 上海卓繁信息技术股份有限公司 Digital certificate handles method
CN112865972A (en) * 2021-03-31 2021-05-28 深圳市巽震科技孵化器有限公司 Initialization method, device and system based on digital certificate platform and storage device
CN112865972B (en) * 2021-03-31 2023-03-14 深圳市巽震科技孵化器有限公司 Initialization method, device and system based on digital certificate platform and storage device

Similar Documents

Publication Publication Date Title
US10160251B1 (en) Digitally encoded seal for document verification
US9716711B2 (en) High-value document authentication system and method
CN105024824B (en) The generation and verification method and system of credible label based on rivest, shamir, adelman
US20190005268A1 (en) Universal original document validation platform
CN104156862A (en) Wechat-platform-based two-dimensional code anti-fake and anti-channel conflict inquiry system and method
CN106452756A (en) Construction verification method and device capable of verifying security two-dimensional code offline
CN101281581A (en) Method for checking whether contents of paper file is distorted or not
CN101295387A (en) Method for implementing network transaction data text
US20130126619A1 (en) Method and system for certifying contact information
CN104156645A (en) Copy verification system and application method thereof
CN109756341A (en) Electronic signature method and device
WO2002037748A2 (en) Distributing public keys
WO2015154482A1 (en) One-time certificate anti-counterfeiting tracing system based on mobile terminal and rfid
CN107483190B (en) Electronic qualification certificate generation method, verification method, generation device and verification device
KR20000049674A (en) Method for providing and authenticating an electronic signature using a web site
CN101488246A (en) Check verification method, check verification apparatus and check verification system
CN101534296B (en) Public network information integrity and time point existence proof method and system
CN111091430A (en) Billing two-dimensional code processing method and system
EP2697785A1 (en) Authentic barcodes using digital signatures
CN112288409B (en) Application method of electronic certificate entrusted among multiple roles
TWM520159U (en) Device for generating and identifying electronic document containing electronic authentication and paper authentication
CN109992984B (en) File identification method and equipment based on two-dimensional code
KR102256922B1 (en) Method and System for authenticating documents using inquiry history notice
CN106415588A (en) Data recording method, device and system, and computer storage medium
CN104579660A (en) Universal identity information management system and method based on data labels

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
RJ01 Rejection of invention patent application after publication

Application publication date: 20141119

RJ01 Rejection of invention patent application after publication