CN105184569A - Method, terminal equipment, and server for carrying out identity authentication in electronic transaction - Google Patents

Method, terminal equipment, and server for carrying out identity authentication in electronic transaction Download PDF

Info

Publication number
CN105184569A
CN105184569A CN201510482835.XA CN201510482835A CN105184569A CN 105184569 A CN105184569 A CN 105184569A CN 201510482835 A CN201510482835 A CN 201510482835A CN 105184569 A CN105184569 A CN 105184569A
Authority
CN
China
Prior art keywords
user
transaction
server
terminal device
checking token
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Pending
Application number
CN201510482835.XA
Other languages
Chinese (zh)
Inventor
宾彬
葛浩
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Baidu Online Network Technology Beijing Co Ltd
Beijing Baidu Netcom Science and Technology Co Ltd
Original Assignee
Beijing Baidu Netcom Science and Technology Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Beijing Baidu Netcom Science and Technology Co Ltd filed Critical Beijing Baidu Netcom Science and Technology Co Ltd
Priority to CN201510482835.XA priority Critical patent/CN105184569A/en
Publication of CN105184569A publication Critical patent/CN105184569A/en
Pending legal-status Critical Current

Links

Classifications

    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06QINFORMATION AND COMMUNICATION TECHNOLOGY [ICT] SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES; SYSTEMS OR METHODS SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES, NOT OTHERWISE PROVIDED FOR
    • G06Q20/00Payment architectures, schemes or protocols
    • G06Q20/38Payment protocols; Details thereof
    • G06Q20/40Authorisation, e.g. identification of payer or payee, verification of customer or shop credentials; Review and approval of payers, e.g. check credit lines or negative lists
    • G06Q20/401Transaction verification
    • G06Q20/4014Identity check for transactions
    • G06Q20/40145Biometric identity checks
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06QINFORMATION AND COMMUNICATION TECHNOLOGY [ICT] SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES; SYSTEMS OR METHODS SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES, NOT OTHERWISE PROVIDED FOR
    • G06Q20/00Payment architectures, schemes or protocols
    • G06Q20/38Payment protocols; Details thereof
    • G06Q20/387Payment using discounts or coupons

Abstract

The embodiment of the invention discloses a method, terminal equipment, and server for carrying out identity authentication in electronic transaction. The method comprises: an authentication token with a user identifier is received from terminal equipment by a non-contact communication way; the authentication token is sent to the server, thereby carrying out authentication on the user of the terminal equipment; and a notification message for transaction confirmation is received from the server. According to the embodiment of the invention, convenience and accuracy of identity authentication in electronic transaction can be improved.

Description

The method of authentication, terminal device and server is carried out in electronic transaction
Technical field
The present invention relates to field of computer technology, particularly a kind of method, terminal device and server carrying out authentication in electronic transaction.
Background technology
Along with the development of terminal technology, the consumption pattern of people constantly changes, and by consuming consumption development on line gradually under line, people more and more tend to be paid by terminal device when doing shopping.
Such as, user buys the group buying voucher of businessman's (as restaurant, movie theatre etc.) by Baidu's glutinous rice net purchase.User complete consumption or after choosing commodity, need by information notification trade companies such as the numbers of group buying voucher bought in advance, trade company is input in its terminal device used by the mode of artificial input in information such as the numbers by group buying voucher, then sends to Baidu's glutinous rice server to verify the information such as the number of this group buying voucher by this terminal device.If confirm that the number of group buying voucher is errorless by described server, then this terminal device can to displaying successful information.Now, trade company confirms that user has paid, and trade company can notify that customer transaction completes, and the commodity that user buys successfully pay.
Aforementioned carry out in electronic transaction authentication method at least there is following problem:
The corresponding information that user uses when providing payment to trade company, as the personal information etc. of the information of group buying voucher, the information of stored value card or user, need to inform trade company by the mode such as language or written communication, trade company is verified by the identity of mode to user of artificial input Transaction Information, the process of carrying out authentication in electronic transaction can be made more loaded down with trivial details, and artificial input can make the accuracy of information be difficult to ensure, the important information of user may be caused in addition to leak, thus in electronic transaction, the identity of user and account etc. are constituted a threat to.
Summary of the invention
Embodiments of the invention provide a kind of in electronic transaction, carry out authentication method, terminal device and server, checking token is obtained from the terminal device of user by the mode of contactless communication, to verify this user, without the need to the Transaction Information of manual input user, thus improve convenience and the accuracy of in electronic transaction, carrying out authentication.
For achieving the above object, The embodiment provides a kind of method of carrying out authentication in electronic transaction.Described method comprises, and is had the checking token of user ID by contactless communication from terminal device receiving belt; Described checking token is sent to server, to verify the user of described terminal device; From the notification message of described server confirmation of receipt transaction.
Alternatively, described contactless communication is sound wave communication or near-field communication.
Alternatively, accidental validation code or voice print verification is also comprised in described checking token.
Alternatively, in described checking token, also comprise Stored Value card number, describedly send to the process of server also to comprise described checking token: the data sending dealing money that user will pay and transaction details to described server.
Alternatively, the process of the described notification message from described server confirmation of receipt transaction comprises: the notification message confirming transaction from described server receives user, and completes the information of payment according to described notification message recording user.
Alternatively, the certificate code of a certificate is also comprised in described checking token.
Alternatively, described checking token is generated by described terminal device or is generated by described server.
For achieving the above object, The embodiment provides a kind of method of carrying out authentication in electronic transaction.Described method comprises, and is had the checking token of user ID by contactless communication to the terminal device transmit band of trade company, to perform checking to the identity of user corresponding to described user ID; Notice Of Transactions message is received from server.
Alternatively, described contactless communication is sound wave communication or near-field communication.
Alternatively, the certificate code of Stored Value card number or group's certificate is also comprised in described checking token.
Alternatively, described Notice Of Transactions message comprises dealing money, described checking token comprises described user ID and/or described Stored Value card number, described method also comprises: the trade confirmation in response to user operates, trade confirmation instruction is sent, to upgrade corresponding payment account information based on described dealing money to described server.
For achieving the above object, The embodiment provides a kind of method of carrying out authentication in electronic transaction.Described method comprises, and has the checking token of user ID from first terminal equipment receiving belt; The user corresponding to the described user ID in described checking token verifies.
Alternatively, the certificate code of a certificate is also comprised in described checking token, described method also comprises: if being verified described user, the Notice Of Transactions message that the certificate code then sending described certificate to the second terminal device that described user ID is corresponding is verified, and the Transaction Information recording this transaction.
Alternatively, described have the process of the checking token of user ID also to comprise from first terminal equipment receiving belt: the dealing money that will pay from described first terminal equipment reception user and the data of transaction details.
Alternatively, described method also comprises: if being verified described user, then have the Notice Of Transactions message of the data of described dealing money and transaction details to the second terminal device transmit band that described user ID is corresponding; When receiving trade confirmation instruction from described second terminal, upgrade payment account information corresponding to described user ID based on described dealing money, and record the Transaction Information of this transaction.
Alternatively, Stored Value card number is also comprised in described checking token, described method also comprises: if being verified described user, then have the Notice Of Transactions message of the data of described dealing money and transaction details to the second terminal device transmit band that described user ID is corresponding; When receiving trade confirmation instruction from described second terminal, upgrade the amount of money stored in stored value card corresponding to described Stored Value card number based on described dealing money, and record the Transaction Information of this transaction.
Alternatively, described dealing money is the amount of money obtained after transaction deduction and exemption process.
Alternatively, described method also comprises: will confirm that the notification message of transaction sends to described first terminal equipment.
For achieving the above object, embodiments of the invention additionally provide a kind of terminal device for carrying out authentication in electronic transaction.Described terminal device comprises: checking token receiver module, for there being the checking token of user ID from the terminal device receiving belt of user by contactless communication; Checking request sending module, for described checking token is sent to server, to verify the user of described terminal device; Trade confirmation receiver module, for the notification message from described server confirmation of receipt transaction.
Alternatively, described contactless communication is sound wave communication or near-field communication.
Alternatively, accidental validation code or voice print verification is also comprised in described checking token.
Alternatively, also comprise Stored Value card number in described checking token, described checking request sending module is also for sending the data of dealing money that user will pay and transaction details to described server.
Alternatively, described trade confirmation receiver module also for confirming the notification message of transaction from described server receives user, and completes the information of payment according to described notification message recording user.
Alternatively, the certificate code of a certificate is also comprised in described checking token.
Alternatively, described checking token is generated by the terminal device of described user or is generated by described server.
For achieving the above object, embodiments of the invention additionally provide a kind of terminal device for carrying out authentication in electronic transaction.Described terminal device comprises: checking token sending module, for there being the checking token of user ID to the terminal device transmit band of trade company by contactless communication, to perform checking to the identity of user corresponding to described user ID; Notice Of Transactions receiver module, for receiving Notice Of Transactions message from server.
Alternatively, described contactless communication is sound wave communication or near-field communication.
Alternatively, the certificate code of Stored Value card number or group's certificate is also comprised in described checking token.
Alternatively, described Notice Of Transactions message comprises dealing money, described checking token comprises described user ID and/or described Stored Value card number, described terminal device also comprises: operational processes module, operate for the trade confirmation in response to user, trade confirmation instruction is sent, to upgrade corresponding payment account information based on described dealing money to described server.
For achieving the above object, embodiments of the invention additionally provide a kind of server for carrying out authentication in electronic transaction.Described server comprises: checking request receiving module, for there being the checking token of user ID from first terminal equipment receiving belt; SIM, verifies for the user corresponding to the described user ID in described checking token.
Alternatively, the certificate code of a certificate is also comprised in described checking token, described server also comprises: the first Notice Of Transactions sending module, if for being verified described user, the Notice Of Transactions message that the certificate code then sending described certificate to the second terminal device that described user ID is corresponding is verified, Transaction Information logging modle, for recording the Transaction Information of this transaction.
Alternatively, described checking request receiving module is also for receiving the data of dealing money that user will pay and transaction details from described first terminal equipment.
Alternatively, described server also comprises: the second Notice Of Transactions sending module, if for being verified described user, then there is the Notice Of Transactions message of the data of described dealing money and transaction details to the second terminal device transmit band that described user ID is corresponding; First trade processing module, for when receiving trade confirmation instruction from described second terminal, upgrades payment account information corresponding to described user ID based on described dealing money, and records the Transaction Information of this transaction.
Alternatively, Stored Value card number is also comprised in described checking token, described server also comprises: the 3rd Notice Of Transactions sending module, if for described sending module also for being verified described user, then there is the Notice Of Transactions message of the data of described dealing money and transaction details to the second terminal device transmit band that described user ID is corresponding; Second trade processing module, for when receiving trade confirmation instruction from described second terminal, upgrades the amount of money stored in stored value card corresponding to described Stored Value card number based on described dealing money, and records the Transaction Information of this transaction.
Alternatively, described dealing money is the amount of money obtained after transaction deduction and exemption process.
Alternatively, described server also comprises: trade confirmation sending module is also for confirming that the notification message of transaction sends to described first terminal equipment.
The method of carrying out authentication in electronic transaction, terminal device and server that the embodiment of the present invention provides, user done shopping pay time, user uses the mode of contactless communication to send to the terminal device of trade company the checking token being used for identifying user identity by its terminal device, and verified by the identity of server to user, this transaction is completed based on the result, and without the need to the manual Transaction Information inputting user, thus improve convenience and the accuracy of in electronic transaction, carrying out authentication.
Accompanying drawing explanation
The information interaction schematic diagram carrying out authentication in electronic transaction that Fig. 1 provides for the embodiment of the present invention;
The information interaction schematic diagram carrying out authentication in electronic transaction that Fig. 2 provides for the embodiment of the present invention;
The process flow diagram carrying out the method for authentication in electronic transaction that Fig. 3 provides for the embodiment of the present invention;
The process flow diagram carrying out the method for authentication in electronic transaction that Fig. 4 provides for the embodiment of the present invention;
The process flow diagram carrying out the method for authentication in electronic transaction that Fig. 5 provides for the embodiment of the present invention;
The process flow diagram carrying out the method for authentication in electronic transaction that Fig. 6 provides for the embodiment of the present invention;
The process flow diagram carrying out the method for authentication in electronic transaction that Fig. 7 provides for the embodiment of the present invention;
The structural representation of the terminal device for carrying out authentication in electronic transaction that Fig. 8 provides for the embodiment of the present invention;
The another kind that Fig. 9 provides for the embodiment of the present invention for carrying out the structural representation of the terminal device of authentication in electronic transaction;
Figure 10 provide for the embodiment of the present invention another for carrying out the structural representation of the terminal device of authentication in electronic transaction;
The structural representation of the server for carrying out authentication in electronic transaction that Figure 11 embodiment of the present invention provides;
The another kind that Figure 12 embodiment of the present invention provides for carrying out the structural representation of the server of authentication in electronic transaction;
Figure 13 embodiment of the present invention provide another for carrying out the structural representation of the server of authentication in electronic transaction;
Figure 14 embodiment of the present invention provide another for carrying out the structural representation of the server of authentication in electronic transaction.
Embodiment
The inventive concept of this programme is, there is provided a kind of technical scheme of being carried out user rs authentication in electronic transaction by the mode of contactless communication: user is when completing consumption and paying, the mode as contactless communication such as sound waves is used to send for the checking token of identifying user identity to the terminal device of trade company by its terminal device, verify with this identity to user, and then the record of payment and Transaction Information is carried out when being verified, without the need to the Transaction Information of manual input user, thus improve convenience and the accuracy of in electronic transaction, carrying out authentication.
In order to realize such scheme, can user use be furnished with mounting software or software package in the intelligent terminal of contactless communication module, for perform checking token transmission and and the terminal device of businessman between and and server between mutual.In businessman side, be equipped with the intelligent terminal with contactless communication module, or be equipped with the specialized equipment with contactless communication module, make it be connected with the terminal device (as PC) of businessman.
Described method of carrying out authentication in electronic transaction can be applicable in the electronic transaction such as group buying websites or shopping service website, as the electronic transaction of being consumed by the mode of group's certificate (also can be described as group buying voucher), also can be applicable in the electronic transaction by the consumption of payment account for supplementing with money, as in the electronic transaction of being consumed by stored value card or consumed by Third-party payment modes such as such as Baidu's wallets.The electronic transaction of being consumed by stored value card for aforementioned respectively below, the electronic transaction of being consumed by the mode of group's certificate and by paying (shop namely to trade company pays) electronic transaction that mode is consumed to shop, and using Baidu's glutinous rice net as group buying websites, the flow process of the process carrying out authentication in electronic transaction is described in detail.
For the situation of the electronic transaction of being consumed by stored value card, as shown in Figure 1, Fig. 1 is the information interaction schematic diagram carrying out authentication in electronic transaction that the embodiment of the present invention provides.See Fig. 1, user buys the stored value card of certain trade company from Baidu's glutinous rice net purchase by its account registered in Baidu.Wherein, in stored value card, certain amount of money can be provided with, as 200 yuan, 500 yuan etc.
User is after the shop that certain trade company offers is consumed, when using the stored value card previously bought to pay, Baidu's glutinous rice net can be logged in, transfer and the stored value card previously bought of choice for use from it, the browser script of user side obtains the corresponding information that exchange needs, and as user ID, Stored Value card number etc., uses predetermined encryption algorithm to generate checking token according to the information got, and by the contactless communication parts as sound wave communication, described checking token is sent to the terminal device of trade company.On the other hand, the terminal device of trade company receives the described checking token of the terminal device transmission of user by contactless communication parts that are built-in or peripheral hardware.
Because the information of identity verification and logical transaction are all at server end, therefore the checking of user identity can transfer to (as Baidu's glutinous rice) server process, and namely the checking token received can be sent to described server by the terminal device of trade company.After server receives described checking token, can send to the terminal device of trade company the information waiting for that user confirms, the terminal device of trade company can show described information.Meanwhile, server can be decrypted described checking token, and extracts the user ID comprised in described checking token, and the user identity that the proof rule by presetting is corresponding to described user ID is verified.Such as, server can check the information of described authentication and corresponding Transaction Information.In order to improve the Information Security in message transmitting procedure, also can add accidental validation code (i.e. random number) in the described checking token transmitted, preventing it from being peeped the third party stolen and copying and reuse.Further, the Transaction Informations such as the dealing money of this transaction and transaction details also can be sent to server in company with described checking token by the terminal device of trade company, wherein, transaction details can be the price etc. of the commodity sign of the commodity that user buys, the number of commodity and commodity.
If the authentication of server to user is passed through, then can be this transaction and generate corresponding order note identification, wherein, order note identification can be order number etc., then, server can send Notice Of Transactions message, to confirm that to user whether described Transaction Information is correct to the terminal device of user, wherein, described order note identification can be comprised in described Notice Of Transactions message.User checks described Transaction Information, if confirm that described Transaction Information is correct, then can click confirmation button, the terminal device of user sends trade confirmation instruction to server, after server receives described trade confirmation instruction, can obtain the stored value card information that described Stored Value card number is corresponding, and deduct described dealing money in the amount of money stored from described stored value card, meanwhile, server can record the corresponding information in this process of exchange, settles accounts with trade company so that follow-up.In addition, server also can send to the terminal device of trade company the notification message confirming transaction, to notify that this transaction of trade company completes, now, corresponding information in this process of exchange also can store by the terminal device of trade company, cross-check information when settling accounts with Baidu glutinous rice net so that follow-up.
For the situation of the electronic transaction that the mode by group's certificate is consumed, as shown in Figure 2, Fig. 2 is the information interaction schematic diagram carrying out authentication in electronic transaction that the embodiment of the present invention provides.See Fig. 2, user buys the group buying voucher of certain trade company from Baidu's glutinous rice net purchase by its account registered in Baidu, now, now the number of described group buying voucher by the number of group buying voucher of user's purchase and the user ID corresponding stored of this user, and can be sent to the terminal device of user by server.
User is after the shop that certain trade company offers is consumed, when using the group buying voucher previously bought to pay, Baidu's glutinous rice net can be logged in, transfer and the group buying voucher previously bought of choice for use from it, the browser script of user side obtains the corresponding information of exchange's need, as the number etc. of user ID, group buying voucher, predetermined encryption algorithm is used to generate checking token according to the information got, and by the contactless communication parts as sound wave communication, described checking token is sent to the terminal device of trade company.
The checking token received can be sent to described server by the terminal device of trade company.After server receives described checking token, can be decrypted, and extract the user ID comprised in described checking token to described checking token, the user identity that the proof rule by presetting is corresponding to described user ID is verified.In order to improve the Information Security in message transmitting procedure, also can add accidental validation code (i.e. random number) in the described checking token transmitted, preventing it from being peeped the third party stolen and copying and reuse.
If the authentication of server to user is passed through, the number of the group buying voucher whether comprised in described checking token is searched in the corresponding relation of the then number of the server user ID that can store at it and group buying voucher, if find the number of corresponding group buying voucher, then can send Notice Of Transactions message to the terminal device of user, use successfully to point out user's group buying voucher, otherwise prompting user group buying voucher uses unsuccessfully.Server can record the corresponding information in this process of exchange, settles accounts with trade company so that follow-up.In addition, server also can send to the terminal device of trade company the notification message confirming transaction, to notify that this transaction of trade company completes, now, corresponding information in this process of exchange also can store by the terminal device of trade company, cross-check information when settling accounts with Baidu glutinous rice net so that follow-up.
For the situation of the electronic transaction by consuming to shop mode, can be as shown in Figure 1, user is when Baidu's glutinous rice net registration, server can be this user and arranges a payment account, as Baidu's wallet etc., or user also registers a payment account by the mode of registration in Baidu.com, user supplements with money in described payment account by the mode such as to transfer accounts.
User is after the shop that certain trade company offers is consumed, Baidu's glutinous rice net can be logged in, choose shop from it and pay mode, the browser script of user side obtains the corresponding information of exchange's need, as user ID etc., use predetermined encryption algorithm to generate checking token according to the information got, and by the contactless communication parts as sound wave communication, described checking token is sent to the terminal device of trade company.
The checking token received can be sent to described server by the terminal device of trade company.The user identity that server is corresponding to described user ID is verified, concrete verification process and see the related content of the situation of the electronic transaction of being consumed by stored value card, can not repeating them here alternately accordingly.
If the authentication of server to user is passed through, then can be this transaction and generate corresponding order note identification, wherein, order note identification can be order number etc., then, server can send to the terminal device of user and comprise transaction details, the Notice Of Transactions message of described order note identification and dealing money, after user confirms that corresponding Transaction Information is correct, terminal device by user sends trade confirmation instruction to server, server can obtain the payment account as Baidu's wallet etc. corresponding to described user ID, and described dealing money is deducted from described payment account, simultaneously, server can record the corresponding information in this process of exchange, and can send to the terminal device of trade company the notification message confirming transaction, to notify that this transaction of trade company completes, now, corresponding information in this process of exchange also can store by the terminal device of trade company, cross-check information when settling accounts with Baidu glutinous rice net so that follow-up.
It should be noted that, interactive mode shown in Fig. 1 and Fig. 2 be only multiple can in implementation three kinds, the terminal device of user under different consumption patterns, between the terminal device of trade company and server alternately can be different, and, in actual applications, also can improve and optimizate accordingly to adapt to different application scenarioss to the reciprocal process shown in Fig. 1 and Fig. 2.
In electronic transaction, carry out the method for authentication, terminal device and server below in conjunction with accompanying drawing to the embodiment of the present invention to be described in detail.
Embodiment one
Fig. 3 is the process flow diagram carrying out the method for authentication in electronic transaction that the embodiment of the present invention provides.Perform described method by the terminal device comprised as shown in Figure 9, described terminal device can be the terminal device of user.
As shown in Figure 3, in step S310, there is the checking token of user ID to the terminal device transmit band of trade company by contactless communication, to perform checking to the identity of user corresponding to described user ID.
Wherein, the terminal device of trade company can have various ways, such as, the terminal device of trade company can be mobile phone, or the terminal device of described trade company can be the computer with the parts possessing contactless communication function, wherein, described parts are connected with described computer by connection data line, described parts receive corresponding data by the mode of contactless communication, and send it to described computer and process accordingly.
Particularly, user is after the shop that certain trade company offers is consumed, the terminal device of trade company can calculate the total charge of this consumption of user, user logs in group buying websites by its account, the payment page is entered by clicking corresponding button, user can select a kind of modes of payments from the described payment page, and when clicking the payment button in the described payment page, the terminal device of user obtains the user ID of the user of current login, generate checking token, and then by the mode of non-contact communication, described checking token is sent to the terminal device of trade company, thus make the terminal device of trade company that described checking token is sent to server, to verify the identity of user corresponding to described user ID, corresponding process can see foregoing teachings, do not repeat them here.
It should be noted that, the terminal device of user, except sending except described checking token to the terminal device of trade company, also can send the short message that other can play suggesting effect, the information etc. of the welcome word of such as trade company to the terminal device of trade company simultaneously.
In step S320, receive Notice Of Transactions message from server.
Particularly, in order to point out user its ongoing transaction in time, after server receives described checking token, Notice Of Transactions message can be sent to the terminal device of user, by described Notice Of Transactions message authentication, whether it concludes the business user, and whether corresponding Transaction Information is correct etc.
Fig. 4 is the process flow diagram carrying out the method for authentication in electronic transaction that the embodiment of the present invention provides.Perform described method by the terminal device comprised as shown in Figure 8, described terminal device can be the terminal device of trade company.
As shown in Figure 4, in step S410, there is the checking token of user ID from terminal device receiving belt by contactless communication.
Wherein, described terminal device can be the terminal device of user, as computer, mobile phone etc.Described contactless communication can refer to and carry out communication by the mode do not contacted with each other each other between two or more terminal device.Registration code etc. when described user ID can be the user name of user, the pet name or user register shopping website.Described checking token for carrying the identity information of user to be verified, to verify the identity of user.
In step S420, described checking token is sent to server, to verify the user of described terminal device.
Wherein, server can be for trade company provides commodity displaying, and for carrying out the background server of electronic transaction between trade company and user, such as, the server of Baidu's glutinous rice net.For Baidu's glutinous rice net, user can be the user carrying out doing shopping in Baidu's glutinous rice net, and its commodity are shown by Baidu's glutinous rice net by trade company, and provides the trade company of corresponding commodity for the user buying its commodity.
Particularly, for verifying the identity of the user that will pay, after the terminal device of trade company receives described checking token, described checking token can be sent to server, so that the identity of described server to user corresponding to the user ID comprised in described checking token is verified, to complete corresponding payment processes.
In step S430, from the notification message of described server confirmation of receipt transaction.
Particularly, if the authentication of described server to user corresponding to the user ID in described checking token is passed through, then described server determines that described user and trade company can conclude the business, and can will confirm that the notification message of transaction sends to the terminal device of trade company, by described notification message, trade company determines that the transaction between itself and user completes.
Fig. 5 is the process flow diagram carrying out the method for authentication in electronic transaction that the embodiment of the present invention provides.Described method is performed by the server system comprised as shown in figure 11.
As shown in Figure 5, in step S510, there is the checking token of user ID from first terminal equipment receiving belt.
Wherein, described first terminal equipment can be the terminal device of trade company, as computer, mobile phone etc.
Particularly, in order to reduce the burden of first terminal equipment, process user being carried out to authentication can be transferred to (as Baidu's glutinous rice net) server perform, thus after first terminal equipment receives the checking token with user ID from the terminal device of user, described checking token can be sent to server, server can receive described checking token.
It should be noted that, the terminal device of trade company, except receiving except described checking token from the terminal device of user, also can receive from the terminal device of user the short message that other can play suggesting effect simultaneously.
In step S520, the user corresponding to the described user ID in described checking token verifies.
Particularly, the user ID of registered user can be previously stored with in server, after described server receives described checking token, can extract user ID wherein, described server can be searched in the user ID stored, and determines the user ID whether storing extraction in described server, if any not finding, then determine the authentication failed to user, if can find, then determine being proved to be successful user.
The method of carrying out authentication in electronic transaction that the embodiment of the present invention provides, user done shopping pay time, user uses the mode of contactless communication to send to the terminal device of trade company the checking token being used for identifying user identity by its terminal device, and verified by the identity of server to user, this transaction is completed based on the result, and without the need to the manual Transaction Information inputting user, thus improve convenience and the accuracy of in electronic transaction, carrying out authentication.
Embodiment two
Fig. 6 is the process flow diagram carrying out another embodiment of the method for authentication in electronic transaction provided by the invention, and described embodiment can be considered another concrete implementation of Fig. 3, Fig. 4 and Fig. 5.Fig. 6 can be the process flow diagram being carried out the embodiment of concluding the business by the mode of a certificate.Wherein, the first terminal equipment related in the present embodiment can be the terminal device of trade company, and described first terminal equipment can be mobile phone, panel computer, also can be the computer being connected with the parts with contactless communication function; Second terminal device can be the terminal device of user, such as mobile phone etc.; Server can be for trade company provides commodity displaying, and for carrying out between user and trade company concluding the business and the background server arranged, as the background server etc. of Baidu's glutinous rice net.
As shown in Figure 6, in step S610, the second terminal device has the checking token of the certificate code of user ID and group's certificate to first terminal equipment transmit band by contactless communication.
Wherein, the certificate code rolling into a ball certificate can be the number of group buying voucher.Contactless communication can comprise multiple, such as sound wave communication or near-field communication etc., and near-field communication also can comprise NFC communication, infrared-ray communication or bluetooth communication etc.
Particularly, for Baidu's glutinous rice net, in order to improve popularity and the influence power of trade company or commodity, it is preferential that trade company also can arrange corresponding transaction deduction and exemption to certain commodity, such as arrange certain commodity and purchase by group, user buys the group buying voucher of certain trade company, after having bought by the second terminal device, the number of group buying voucher that user can buy by server and the user ID corresponding stored of this user, and the number of described group buying voucher is sent to the second terminal device.Follow-up respective handling can perform see aforementioned processing procedure as shown in Figure 2, does not repeat them here.
It should be noted that, the terminal device of user, except sending except described checking token to the terminal device of trade company, also can send the short message that other can play suggesting effect, the information etc. of the welcome word of such as trade company to the terminal device of trade company simultaneously.
In addition, in order to ensure transmit process in Information Security, can be added some for improving the information of information transmission security in described checking token, as as described in also comprise accidental validation code or voice print verification in checking token, prevent from it from being peeped the third party stolen to copy and reuse, the corresponding process generating checking token can comprise: the user ID of the second terminal device acquisition user and the number of the group buying voucher found, and the machine-processed stochastic generation accidental validation code by presetting, second terminal device can according to predetermined encryption algorithm by described user ID, the number of group buying voucher and accidental validation code encryption, and generate checking token, make user from the checking token after encryption, directly cannot get user ID, the information such as the number of group buying voucher, then, described checking token can be sent to first terminal equipment by the mode of contactless communication by the second terminal device.
In addition, the generating mode of described checking token can comprise following two kinds: described checking token is generated by described second terminal device or generated by server.
Particularly, for the situation that checking token is generated by described second terminal device, after second terminal device generates described checking token, described checking token can be sent to server, server can by itself and user ID corresponding stored, so that the generating resource etc. of described server to the checking token that first terminal equipment sends is verified, improve the security of the information of transmission further.For the situation that checking token is generated by server, second terminal device can obtain described user ID, the number of group buying voucher and accidental validation code and send to server, server can be encrypted according to predetermined encryption algorithm, and generates checking token, sends to the second terminal device.
It should be noted that, be generate checking token for the second terminal device to be described in detail in the embodiment of the present invention, for the situation generating checking token with server, can refer to foregoing teachings process, do not repeat them here.
In step S620, described checking token is sent to server by described first terminal equipment.
Wherein, the step content of step S620 is corresponding identical with the step content of step S420 as above, does not repeat at this.
In step S630, the user that described server is corresponding to the described user ID in described checking token verifies.
Particularly, for the checking token encrypted, after server receives described checking token, by the decipherment algorithm corresponding with aforementioned default cryptographic algorithm, described checking token is decrypted, extracts accidental validation code wherein, thus obtain the number of user ID and group buying voucher accurately, then, server can be verified according to the identity of the user ID obtained to corresponding user, and concrete verification process see abovementioned steps S520, can not repeat them here.
In step S640, if being verified described user, then the Notice Of Transactions message that is verified to the certificate code that the second terminal device that described user ID is corresponding sends described certificate of described server, and record the Transaction Information of this transaction.
Particularly, its ongoing transaction is known in order to allow user, to after being verified of described user, the Notice Of Transactions message that the certificate code that described server can send described certificate to the second terminal device is verified, user determines to be used successfully by group buying voucher by described Notice Of Transactions message.For Baidu's glutinous rice net, usually, Baidu's glutinous rice net can regularly be settled accounts trade company, such as every monthly billing once or clearing one in every seven days inferior, like this, within the clearing time limit, server can record the Transaction Information of each transaction, described Transaction Information can comprise the number etc. of user ID, merchant identification, trade date and group buying voucher, when arriving Settlement Date, the server of Baidu's glutinous rice net can calculate the amount of money of concluding the business between user and trade company in the clearing time limit, then, pays trade company by the amount of money calculated.
In step S650, described server will confirm that the notification message of transaction sends to described first terminal equipment.
Wherein, the step content of step S650 is corresponding identical with the step content of step S430 as above, does not repeat at this.
In step S660, described first terminal equipment completes the information of payment according to described notification message recording user.
Particularly, give the example of abovementioned steps S640, the accuracy of the Transaction Information used during in order to ensure that Baidu's glutinous rice net is settled accounts trade company, when user completes payment, first terminal equipment also can record corresponding information, namely after first terminal equipment receives the notification message of described confirmation transaction, can by user ID, the information such as the number of trade date and group buying voucher, when arriving Settlement Date, the server of Baidu's glutinous rice net can calculate the amount of money of concluding the business between user and trade company in the clearing time limit, then, the information such as transaction details and dealing money can be sent to first terminal equipment, the information that the user recorded in itself and first terminal equipment can be completed payment by trade company contrasts, if information is accurate, then trade company sends acknowledge message by first terminal device-to-server, server can pay trade company to by the amount of money calculated, if information is inaccurate, then trade company sends error message by first terminal device-to-server, then, trade company can carry out as artificial nucleus's Peer checks Transaction Information further with Baidu's glutinous rice net, corresponding dealing money is paid eventually to trade company.
The method of carrying out authentication in electronic transaction that the embodiment of the present invention provides, user done shopping paid by the mode of a certificate time, user uses the mode of contactless communication to send to the terminal device of trade company the checking token being used for identifying user identity by its terminal device, and verified by the identity of server to user, and the result is informed to user, and then complete this transaction based on the result, and without the need to the manual Transaction Information inputting user, thus in raising electronic transaction, carry out convenience and the accuracy of authentication, and, described checking token can be encrypted based on accidental validation code and cryptographic algorithm, can ensure to verify the safety of the information such as the certificate code of user ID and group's certificate in token, thus to the security that the identity of user is verified in raising electronic transaction.
Embodiment three
Fig. 7 is the process flow diagram carrying out another embodiment of the method for authentication in electronic transaction provided by the invention, and described embodiment can be considered another concrete implementation of Fig. 3, Fig. 4 and Fig. 5.Wherein, the first terminal equipment related in the present embodiment can be the terminal device of trade company, and described first terminal equipment can be mobile phone, panel computer, also can be the computer being connected with the parts with contactless communication function; Second terminal device can be the terminal device of user, such as mobile phone etc.; Server can be for trade company provides commodity displaying, and for carrying out between user and trade company concluding the business and the background server arranged, as the background server etc. of Baidu's glutinous rice net.
As shown in Figure 7, in step S710, the second terminal device has the checking token of user ID to first terminal equipment transmit band by contactless communication.
Particularly, the process of above-mentioned steps S710 can be divided into two kinds of situations, namely arrives the situation of paying in shop and situation about being paid by stored value card.For the situation of paying to shop, for Baidu's glutinous rice net, after consuming in the shop that user offers to trade company, trade company is by the corresponding information of this consumption of first terminal equipment input user, the trade name of the commodity such as bought, information such as the purchase number of commodity and the price of commodity etc., after having inputted, the checking token comprising user ID can be sent to first terminal equipment by the second terminal device, corresponding process see aforementioned related content, can not repeat them here.
For situation about being paid by stored value card, can perform see processing procedure as shown in Figure 1, not repeat them here.
Further, for situation about being paid by stored value card and the situation of paying to shop, also comprise accidental validation code or voice print verification in described checking token, corresponding process see the step content of step S610 as above, can not repeat them here yet.
Further, for above-mentioned two situations, the generating mode of described checking token can comprise following two kinds: described checking token is generated by described second terminal device or generated by server, and concrete process see the corresponding contents in abovementioned steps S610, can not repeat them here.
In step S720, the data of the dealing money that described checking token and user will pay by described first terminal equipment and transaction details send to server.
Particularly, in order to understand the situation etc. of the sales situation of the commodity of trade company, the commodity of user's purchase, after first terminal equipment receives checking token, the data of dealing money that user will pay and transaction details can be obtained, then the data of checking token and the user that the gets dealing money that will pay and transaction details are sent to server.Follow-up as needed to carry out statistical study to information such as the purchasing power of user, the sales situations of commodity time, server performs by the data of described dealing money and transaction details.
It should be noted that, trade company can be provided with the rules such as corresponding transaction deduction and exemption to certain commodity, such as, the full 200 yuan of deduction and exemption 20 yuan of spending amount etc., therefore, described dealing money is the amount of money obtained after transaction deduction and exemption process, and the spending amount as user is 210 yuan, and trade company is provided with the preferential rule of the full 200 yuan of deduction and exemption 20 yuan of spending amount, then dealing money is 190 yuan.
In step S730, the user that described server is corresponding to the described user ID in described checking token verifies.
Wherein, the process of step S730 see abovementioned steps S520 and step S630, can not repeat them here.
In step S740, if being verified described user, then there is the Notice Of Transactions message of the data of described dealing money and transaction details to the second terminal device transmit band that described user ID is corresponding.
Particularly, in order to ensure the accuracy of concluding the business, if server is verified described user's, the described dealing money that first terminal equipment then can be used to send and the data genaration Notice Of Transactions message of transaction details send to the second terminal device, so that user confirms current whether transaction, and carry out the dealing money of concluding the business and transaction details whether accurate.
It should be noted that, server is except sending except the data of dealing money and transaction details to the second terminal device, server also can be this transaction and generates corresponding order note identification (as order number), then, described order note identification is sent to the second terminal device and first terminal equipment, server is when the Transaction Information of this transaction of trailer record, can by the Transaction Information of record and described order note identification corresponding stored, with this, this transaction conclude the business distinguish with other, for the clearing between follow-up trade company and Baidu's glutinous rice net provide facility.
In step S750, described second terminal device operates in response to the trade confirmation of user, sends trade confirmation instruction to described server.
Particularly, when second terminal device receives Notice Of Transactions message, show the page of described dealing money and transaction details, after user checks the above-mentioned data of display, if confirm errorless, then click the trade confirmation button in the described page, the second terminal device operates in response to the trade confirmation of user, sends trade confirmation instruction to described server.
In step S760, when described server receives trade confirmation instruction from described second terminal, upgrade corresponding payment account information based on described dealing money, and record the Transaction Information of this transaction.
Particularly, for the situation of paying to shop, the process of step S760 can comprise: when receiving trade confirmation instruction from described second terminal, upgrades payment account information corresponding to described user ID based on described dealing money, and records the Transaction Information of this transaction.
For situation about being paid by stored value card, the process of step S760 can comprise: when receiving trade confirmation instruction from described second terminal, upgrade the amount of money stored in stored value card corresponding to described Stored Value card number based on described dealing money, and record the Transaction Information of this transaction.
The concrete process of above-mentioned two situations see abovementioned steps S640 and aforementioned process as shown in Figure 1, can not repeat them here.
In addition, if server detects that the amount of money stored in stored value card is less than described dealing money, server can send the notification message of stored value card insufficient in amount to the second terminal device, so that user carries out supplementing with money or select other modes of payments to carry out this transaction in time.
In step S770, described server will confirm that the notification message of transaction sends to described first terminal equipment.
Wherein, the step content of step S770 is corresponding identical with the step content of step S430 as above, does not repeat at this.
In step S780, described first terminal equipment completes the information of payment according to described notification message recording user.
Wherein, the step content of step S780 is corresponding identical with the step content of step S660 as above, does not repeat at this.
The method of carrying out authentication in electronic transaction that the embodiment of the present invention provides, user done shopping paid by stored value card or the mode of paying to shop time, user uses the mode of contactless communication to send to the terminal device of trade company the checking token being used for identifying user identity by its terminal device, and verified by the identity of server to user, after being proved to be successful, confirm that whether this Transaction Information of concluding the business is correct to user, and then complete this transaction, ensure this accuracy of concluding the business, and without the need to the manual Transaction Information inputting user, thus the convenience carrying out authentication in electronic transaction can be improved, and, described checking token can be encrypted based on accidental validation code and cryptographic algorithm, can ensure to verify the safety of the information such as the certificate code of user ID and group's certificate in token.
Embodiment four
Based on identical technical conceive, the embodiment of the present invention additionally provides a kind of terminal device for carrying out authentication in electronic transaction.As shown in Figure 8, described terminal device comprises checking token receiver module 810, checking request sending module 820 and trade confirmation receiver module 830.
Checking token receiver module 810 is for there being the checking token of user ID from the terminal device receiving belt of user by contactless communication.
Verify that request sending module 820 is for sending to server by described checking token, to verify the user of described terminal device.
Trade confirmation receiver module 830 is for the notification message from described server confirmation of receipt transaction.
In addition, described contactless communication is sound wave communication or near-field communication.
In addition, accidental validation code or voice print verification is also comprised in described checking token.
In addition, also comprise Stored Value card number in described checking token, checking request sending module 820 is also for sending the data of dealing money that user will pay and transaction details to described server.
In addition, trade confirmation receiver module 830 also for confirming the notification message of transaction from described server receives user, and completes the information of payment according to described notification message recording user.
In addition, the certificate code of a certificate is also comprised in described checking token.
In addition, described checking token is generated by the terminal device of described user or is generated by described server.
The terminal device carrying out authentication in electronic transaction that the embodiment of the present invention provides, user done shopping pay time, trade company uses the mode of contactless communication to receive from the terminal device of user the checking token being used for identifying user identity by its terminal device, and verified by the identity of server to user, this transaction is completed based on the result, and without the need to the manual Transaction Information inputting user, thus improve convenience and the accuracy of in electronic transaction, carrying out authentication.
Further, described checking token can be encrypted based on accidental validation code and cryptographic algorithm, can ensure to verify the safety of the information such as user ID in token, thus improve the security verified the identity of user in electronic transaction.
Embodiment five
Based on identical technical conceive, the embodiment of the present invention additionally provides a kind of terminal device for carrying out authentication in electronic transaction.As shown in Figure 9, described terminal device comprises checking token sending module 910 and Notice Of Transactions receiver module 920.
Checking token sending module 910 for there being the checking token of user ID to the terminal device transmit band of trade company by contactless communication, to perform checking to the identity of user corresponding to described user ID.
Notice Of Transactions receiver module 920 is for receiving Notice Of Transactions message from server.
In addition, described contactless communication is sound wave communication or near-field communication.
In addition, the certificate code of Stored Value card number or group's certificate is also comprised in described checking token.
Further, described Notice Of Transactions message comprises dealing money, described checking token comprises described user ID and/or described Stored Value card number, on basis embodiment illustrated in fig. 9, terminal device as shown in Figure 10 also comprises: operational processes module 930, operate for the trade confirmation in response to user, send trade confirmation instruction, to upgrade corresponding payment account information based on described dealing money to described server.
The terminal device carrying out authentication in electronic transaction that the embodiment of the present invention provides, user done shopping pay time, user uses the mode of contactless communication to send to the terminal device of trade company the checking token being used for identifying user identity by its terminal device, and verified by the identity of server to user, this transaction is completed based on the result, and without the need to the manual Transaction Information inputting user, thus improve convenience and the accuracy of in electronic transaction, carrying out authentication.
Further, described checking token can be encrypted based on accidental validation code and cryptographic algorithm, can ensure to verify the safety of the information such as user ID in token, thus improve the security verified the identity of user in electronic transaction.
Embodiment six
Based on identical technical conceive, the embodiment of the present invention additionally provides a kind of server for carrying out authentication in electronic transaction.As shown in figure 11, described server comprises checking request receiving module 1110 and SIM 1120.
Checking request receiving module 1110 is for there being the checking token of user ID from first terminal equipment receiving belt.
SIM 1120 is verified for the user corresponding to the described user ID in described checking token.
Further, the certificate code of a certificate is also comprised in described checking token, on basis embodiment illustrated in fig. 11, server as shown in figure 12 also comprises: the first Notice Of Transactions sending module 1130, if for being verified described user, the Notice Of Transactions message that the certificate code then sending described certificate to the second terminal device that described user ID is corresponding is verified, Transaction Information logging modle 1140, for recording the Transaction Information of this transaction.
In addition, request receiving module 1110 is verified also for receiving the data of dealing money that user will pay and transaction details from described first terminal equipment.
Further, on basis embodiment illustrated in fig. 11, server also comprises as shown in fig. 13 that: the second Notice Of Transactions sending module 1150, if for being verified described user, then there is the Notice Of Transactions message of the data of described dealing money and transaction details to the second terminal device transmit band that described user ID is corresponding; First trade processing module 1160, for when receiving trade confirmation instruction from described second terminal, upgrades payment account information corresponding to described user ID based on described dealing money, and records the Transaction Information of this transaction.
Further, on basis embodiment illustrated in fig. 11, server as shown in figure 14 also comprises: the 3rd Notice Of Transactions sending module 1170, if for described sending module also for being verified described user, then there is the Notice Of Transactions message of the data of described dealing money and transaction details to the second terminal device transmit band that described user ID is corresponding; Second trade processing module 1180, for when receiving trade confirmation instruction from described second terminal, upgrades the amount of money stored in stored value card corresponding to described Stored Value card number based on described dealing money, and records the Transaction Information of this transaction.
In addition, described dealing money is the amount of money obtained after transaction deduction and exemption process.
Further, also comprise the certificate code of a certificate in described checking token, the server as shown in Figure 12, Figure 13 or Figure 14 also comprises: confirm Notice Of Transactions sending module 1190, for confirming that the notification message of transaction sends to described first terminal equipment.
The server carrying out authentication in electronic transaction that the embodiment of the present invention provides, user done shopping pay time, user uses the mode of contactless communication to send to the terminal device of trade company the checking token being used for identifying user identity by its terminal device, and verified by the identity of server to user, this transaction is completed based on the result, and without the need to the manual Transaction Information inputting user, thus improve convenience and the accuracy of in electronic transaction, carrying out authentication.
Further, described checking token can be encrypted based on accidental validation code and cryptographic algorithm, can ensure to verify the safety of the information such as user ID in token, thus improve the security verified the identity of user in electronic transaction.
It may be noted that, according to the needs implemented, each step/parts described in the application more multi-step/parts can be split as, also the part operation of two or more step/parts or step/parts new step/parts can be combined into, to realize object of the present invention.
Above-mentioned can at hardware according to method of the present invention, realize in firmware, or be implemented as and can be stored in recording medium (such as CDROM, RAM, floppy disk, hard disk or magneto-optic disk) in software or computer code, or be implemented and will be stored in the computer code in local recording medium by the original storage of web download in remote logging medium or nonvolatile machine readable media, thus method described here can be stored in use multi-purpose computer, such software process on the recording medium of application specific processor or able to programme or specialized hardware (such as ASIC or FPGA).Be appreciated that, computing machine, processor, microprocessor controller or programmable hardware comprise and can store or receive the memory module of software or computer code (such as, RAM, ROM, flash memory etc.), when described software or computer code by computing machine, processor or hardware access and perform time, realize disposal route described here.In addition, when the code for realizing the process shown in this accessed by multi-purpose computer, multi-purpose computer is converted to the special purpose computer for performing the process shown in this by the execution of code.
The above; be only the specific embodiment of the present invention, but protection scope of the present invention is not limited thereto, is anyly familiar with those skilled in the art in the technical scope that the present invention discloses; change can be expected easily or replace, all should be encompassed within protection scope of the present invention.Therefore, protection scope of the present invention should be as the criterion with the protection domain of described claim.

Claims (36)

1. in electronic transaction, carry out a method for authentication, it is characterized in that, described method comprises:
There is the checking token of user ID from terminal device receiving belt by contactless communication;
Described checking token is sent to server, to verify the user of described terminal device;
From the notification message of described server confirmation of receipt transaction.
2. method according to claim 1, is characterized in that, described contactless communication is sound wave communication or near-field communication.
3. method according to claim 1, is characterized in that, also comprises accidental validation code or voice print verification in described checking token.
4. method according to claim 3, is characterized in that, also comprises Stored Value card number in described checking token,
Describedly the process of server is sent to also to comprise described checking token:
The dealing money that will pay to described server transmission user and the data of transaction details.
5. method according to claim 4, is characterized in that, the process of the described notification message from described server confirmation of receipt transaction comprises:
Confirm the notification message of transaction from described server receives user, and complete the information of payment according to described notification message recording user.
6. method according to claim 3, is characterized in that, also comprises the certificate code of a certificate in described checking token.
7. method according to claim 1, is characterized in that, described checking token is generated by described terminal device or generated by described server.
8. in electronic transaction, carry out a method for authentication, it is characterized in that, described method comprises:
The checking token of user ID is had to the terminal device transmit band of trade company, to perform checking to the identity of user corresponding to described user ID by contactless communication;
Notice Of Transactions message is received from server.
9. method according to claim 8, is characterized in that, described contactless communication is sound wave communication or near-field communication.
10. method according to claim 9, is characterized in that, also comprises the certificate code of Stored Value card number or group's certificate in described checking token.
11. methods according to claim 8, is characterized in that, described Notice Of Transactions message comprises dealing money, and described checking token comprises described user ID and/or described Stored Value card number, and described method also comprises:
Trade confirmation in response to user operates, and sends trade confirmation instruction, to upgrade corresponding payment account information based on described dealing money to described server.
12. 1 kinds of methods of carrying out authentication in electronic transaction, it is characterized in that, described method comprises:
The checking token of user ID is had from first terminal equipment receiving belt;
The user corresponding to the described user ID in described checking token verifies.
13. methods according to claim 12, is characterized in that, also comprise the certificate code of a certificate in described checking token, described method also comprises:
If to being verified of described user, then the Notice Of Transactions message that the certificate code sending described certificate to the second terminal device that described user ID is corresponding is verified, and the Transaction Information recording this transaction.
14. methods according to claim 12, is characterized in that, described have the process of the checking token of user ID also to comprise from first terminal equipment receiving belt:
The dealing money that will pay from described first terminal equipment reception user and the data of transaction details.
15. methods according to claim 14, is characterized in that, described method also comprises:
If to being verified of described user, then there is the Notice Of Transactions message of the data of described dealing money and transaction details to the second terminal device transmit band that described user ID is corresponding;
When receiving trade confirmation instruction from described second terminal, upgrade payment account information corresponding to described user ID based on described dealing money, and record the Transaction Information of this transaction.
16. methods according to claim 14, is characterized in that, also comprise Stored Value card number in described checking token, described method also comprises:
If to being verified of described user, then there is the Notice Of Transactions message of the data of described dealing money and transaction details to the second terminal device transmit band that described user ID is corresponding;
When receiving trade confirmation instruction from described second terminal, upgrade the amount of money stored in stored value card corresponding to described Stored Value card number based on described dealing money, and record the Transaction Information of this transaction.
17. methods according to any one of claim 14 ~ 16, is characterized in that, described dealing money is the amount of money obtained after transaction deduction and exemption process.
18. methods according to any one of claim 13,15 and 16, it is characterized in that, described method also comprises:
To confirm that the notification message of transaction sends to described first terminal equipment.
19. 1 kinds, for carrying out the terminal device of authentication in electronic transaction, is characterized in that, described terminal device comprises:
Checking token receiver module, for there being the checking token of user ID from the terminal device receiving belt of user by contactless communication;
Checking request sending module, for described checking token is sent to server, to verify the user of described terminal device;
Trade confirmation receiver module, for the notification message from described server confirmation of receipt transaction.
20. terminal devices according to claim 19, is characterized in that, described contactless communication is sound wave communication or near-field communication.
21. terminal devices according to claim 19, is characterized in that, also comprise accidental validation code or voice print verification in described checking token.
22. terminal devices according to claim 21, is characterized in that, also comprise Stored Value card number in described checking token,
Described checking request sending module is also for sending the data of dealing money that user will pay and transaction details to described server.
23. terminal devices according to claim 22, is characterized in that, described trade confirmation receiver module also for confirming the notification message of transaction from described server receives user, and completes the information of payment according to described notification message recording user.
24. terminal devices according to claim 21, is characterized in that, also comprise the certificate code of a certificate in described checking token.
25. terminal devices according to claim 19, is characterized in that, described checking token is generated by the terminal device of described user or generated by described server.
26. 1 kinds, for carrying out the terminal device of authentication in electronic transaction, is characterized in that, described terminal device comprises:
Checking token sending module, for there being the checking token of user ID to the terminal device transmit band of trade company by contactless communication, to perform checking to the identity of user corresponding to described user ID;
Notice Of Transactions receiver module, for receiving Notice Of Transactions message from server.
27. terminal devices according to claim 26, is characterized in that, described contactless communication is sound wave communication or near-field communication.
28. terminal devices according to claim 27, is characterized in that, also comprise the certificate code of Stored Value card number or group's certificate in described checking token.
29. terminal devices according to claim 26, is characterized in that, described Notice Of Transactions message comprises dealing money, and described checking token comprises described user ID and/or described Stored Value card number, and described terminal device also comprises:
Operational processes module, operates for the trade confirmation in response to user, sends trade confirmation instruction, to upgrade corresponding payment account information based on described dealing money to described server.
30. 1 kinds, for carrying out the server of authentication in electronic transaction, is characterized in that, described server comprises:
Checking request receiving module, for there being the checking token of user ID from first terminal equipment receiving belt;
SIM, verifies for the user corresponding to the described user ID in described checking token.
31. servers according to claim 30, is characterized in that, also comprise the certificate code of a certificate in described checking token, described server also comprises:
First Notice Of Transactions sending module, if for being verified described user, then the Notice Of Transactions message that the certificate code sending described certificate to the second terminal device that described user ID is corresponding is verified,
Transaction Information logging modle, for recording the Transaction Information of this transaction.
32. servers according to claim 30, is characterized in that, described checking request receiving module is also for receiving the data of dealing money that user will pay and transaction details from described first terminal equipment.
33. servers according to claim 32, is characterized in that, described server also comprises:
Second Notice Of Transactions sending module, if for being verified described user, then has the Notice Of Transactions message of the data of described dealing money and transaction details to the second terminal device transmit band that described user ID is corresponding;
First trade processing module, for when receiving trade confirmation instruction from described second terminal, upgrades payment account information corresponding to described user ID based on described dealing money, and records the Transaction Information of this transaction.
34. servers according to claim 32, is characterized in that, also comprise Stored Value card number in described checking token, described server also comprises:
3rd Notice Of Transactions sending module, if for described sending module also for being verified described user, then has the Notice Of Transactions message of the data of described dealing money and transaction details to the second terminal device transmit band that described user ID is corresponding;
Second trade processing module, for when receiving trade confirmation instruction from described second terminal, upgrades the amount of money stored in stored value card corresponding to described Stored Value card number based on described dealing money, and records the Transaction Information of this transaction.
35. servers according to any one of claim 32 ~ 34, is characterized in that, described dealing money is the amount of money obtained after transaction deduction and exemption process.
36. servers according to any one of claim 31,33 and 34, it is characterized in that, described server also comprises:
Trade confirmation sending module, for confirming that the notification message of transaction sends to described first terminal equipment.
CN201510482835.XA 2015-08-03 2015-08-03 Method, terminal equipment, and server for carrying out identity authentication in electronic transaction Pending CN105184569A (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201510482835.XA CN105184569A (en) 2015-08-03 2015-08-03 Method, terminal equipment, and server for carrying out identity authentication in electronic transaction

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201510482835.XA CN105184569A (en) 2015-08-03 2015-08-03 Method, terminal equipment, and server for carrying out identity authentication in electronic transaction

Publications (1)

Publication Number Publication Date
CN105184569A true CN105184569A (en) 2015-12-23

Family

ID=54906631

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201510482835.XA Pending CN105184569A (en) 2015-08-03 2015-08-03 Method, terminal equipment, and server for carrying out identity authentication in electronic transaction

Country Status (1)

Country Link
CN (1) CN105184569A (en)

Cited By (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN109328445A (en) * 2016-06-24 2019-02-12 维萨国际服务协会 Unique token authentication verification value
CN109993524A (en) * 2019-03-29 2019-07-09 深圳前海微众银行股份有限公司 Card certificate management method, device, equipment and computer readable storage medium
CN110659897A (en) * 2019-09-20 2020-01-07 中国工商银行股份有限公司 Method, system, computing device and medium for transaction verification
CN110969439A (en) * 2018-09-30 2020-04-07 上海柠睿企业服务合伙企业(有限合伙) Commodity delivery method, commodity delivery device, terminal, server and readable storage medium

Citations (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102870132A (en) * 2009-12-15 2013-01-09 艾菲尼迪公司 Systems, apparatus, and methods for identity verification and funds transfer via payment proxy system

Patent Citations (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102870132A (en) * 2009-12-15 2013-01-09 艾菲尼迪公司 Systems, apparatus, and methods for identity verification and funds transfer via payment proxy system

Cited By (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN109328445A (en) * 2016-06-24 2019-02-12 维萨国际服务协会 Unique token authentication verification value
US11329822B2 (en) 2016-06-24 2022-05-10 Visa International Service Association Unique token authentication verification value
CN110969439A (en) * 2018-09-30 2020-04-07 上海柠睿企业服务合伙企业(有限合伙) Commodity delivery method, commodity delivery device, terminal, server and readable storage medium
CN109993524A (en) * 2019-03-29 2019-07-09 深圳前海微众银行股份有限公司 Card certificate management method, device, equipment and computer readable storage medium
CN110659897A (en) * 2019-09-20 2020-01-07 中国工商银行股份有限公司 Method, system, computing device and medium for transaction verification

Similar Documents

Publication Publication Date Title
US10755271B2 (en) Location based authentication
US10977657B2 (en) Token processing utilizing multiple authorizations
US11875317B2 (en) Electronic money transfer method and system for the same
TWI498838B (en) Point of sale system for transaction payment delegation
CN106233664A (en) Use the data verification accessing device
TW201301161A (en) Mobile device for transaction payment delegation
JP2019508827A (en) Credit payment method and apparatus based on card emulation of mobile terminal
CN106997527A (en) Credit payment method and device based on mobile terminal P2P
US20140136355A1 (en) Security in mobile payment service
JP2011141853A (en) Payment method for off-line transaction using portable terminal, program, short-range wireless communication device for payment
JP6917391B2 (en) Credit card payment methods and devices based on mobile terminal eSE
CN103413244A (en) Mobile security financial terminal and financial transaction method
CN103886463A (en) Electronic commerce system and method of verifying consignee identity in corresponding distribution service
KR20160030342A (en) Method of paying for a product or service on a commercial website via an internet connection and a corresponding terminal
CN105184569A (en) Method, terminal equipment, and server for carrying out identity authentication in electronic transaction
US20130166410A1 (en) Payment agency system, user terminal and market server
CN102169613B (en) Method and apparatus for dealing with remote business of electronic purse
CN101014985A (en) System and method of facilitating contactless payment transactions across different payment systems using a common mobile device acting as a stored value device
KR101012212B1 (en) Mobile payment system and method using vm of mobile terminal
KR100920175B1 (en) Small-amount settlement system using mobile and method thereof
KR20110008739A (en) Payment process method using virtual machine program, payment agency system and mobile terminal for executing the method
CN105027150A (en) Method and apparatus for carrying out an electronic transaction
KR20120087199A (en) System and method for issue/management coupon(or gift certificate) using settlement terminal, settlement terminal and recording medium
KR20090091893A (en) Method for settling affiliated store, van server, settlement process server and recording medium
KR101786936B1 (en) Method for Issuing ID for Near Field Communication Payment, System And Payment Apparatus

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
RJ01 Rejection of invention patent application after publication
RJ01 Rejection of invention patent application after publication

Application publication date: 20151223