CN105550866A - Safety control method and apparatus - Google Patents

Safety control method and apparatus Download PDF

Info

Publication number
CN105550866A
CN105550866A CN201510290962.XA CN201510290962A CN105550866A CN 105550866 A CN105550866 A CN 105550866A CN 201510290962 A CN201510290962 A CN 201510290962A CN 105550866 A CN105550866 A CN 105550866A
Authority
CN
China
Prior art keywords
application
terminal
hce
module
host card
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Granted
Application number
CN201510290962.XA
Other languages
Chinese (zh)
Other versions
CN105550866B (en
Inventor
张子敬
张晴
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Yulong Computer Telecommunication Scientific Shenzhen Co Ltd
Original Assignee
Yulong Computer Telecommunication Scientific Shenzhen Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Yulong Computer Telecommunication Scientific Shenzhen Co Ltd filed Critical Yulong Computer Telecommunication Scientific Shenzhen Co Ltd
Priority to CN201510290962.XA priority Critical patent/CN105550866B/en
Priority to PCT/CN2016/077958 priority patent/WO2016192453A1/en
Publication of CN105550866A publication Critical patent/CN105550866A/en
Application granted granted Critical
Publication of CN105550866B publication Critical patent/CN105550866B/en
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Classifications

    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06QINFORMATION AND COMMUNICATION TECHNOLOGY [ICT] SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES; SYSTEMS OR METHODS SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES, NOT OTHERWISE PROVIDED FOR
    • G06Q20/00Payment architectures, schemes or protocols
    • G06Q20/38Payment protocols; Details thereof
    • G06Q20/40Authorisation, e.g. identification of payer or payee, verification of customer or shop credentials; Review and approval of payers, e.g. check credit lines or negative lists
    • G06Q20/409Device specific authentication in transaction processing
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06QINFORMATION AND COMMUNICATION TECHNOLOGY [ICT] SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES; SYSTEMS OR METHODS SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES, NOT OTHERWISE PROVIDED FOR
    • G06Q20/00Payment architectures, schemes or protocols
    • G06Q20/30Payment architectures, schemes or protocols characterised by the use of specific devices or networks
    • G06Q20/32Payment architectures, schemes or protocols characterised by the use of specific devices or networks using wireless devices
    • G06Q20/327Short range or proximity payments by means of M-devices
    • G06Q20/3278RFID or NFC payments by means of M-devices
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06QINFORMATION AND COMMUNICATION TECHNOLOGY [ICT] SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES; SYSTEMS OR METHODS SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES, NOT OTHERWISE PROVIDED FOR
    • G06Q20/00Payment architectures, schemes or protocols
    • G06Q20/38Payment protocols; Details thereof
    • G06Q20/382Payment protocols; Details thereof insuring higher security of transaction

Landscapes

  • Business, Economics & Management (AREA)
  • Engineering & Computer Science (AREA)
  • Accounting & Taxation (AREA)
  • Strategic Management (AREA)
  • Physics & Mathematics (AREA)
  • General Business, Economics & Management (AREA)
  • General Physics & Mathematics (AREA)
  • Theoretical Computer Science (AREA)
  • Computer Security & Cryptography (AREA)
  • Finance (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Telephone Function (AREA)

Abstract

The embodiment of the invention discloses a safety control method and apparatus. The safety control method comprises: a current state of a terminal is detected; if the current state of the terminal is detected to be a non-safety state, a host-based card simulation transaction channel is turned off; a host-based card simulation safety module application and correlates authentication information data are encrypted and compressed. Therefore, safety control on the NFC service is realized based on the host-based card simulation technology.

Description

A kind of method of controlling security and device
Technical field
The present invention relates to the communications field, be specifically related to a kind of method of controlling security and device.
Background technology
At present, based on the NFC (NearFieldCommunication of Android4.4, near field communication (NFC)) pay and introduce a new open architecture, i.e. HCE (Host-basedCardEmulation, host card is simulated) technology, thus realize card module in the terminal being equipped with NFC function after, terminal does not need to provide physics SE (SecurityElements, security module), make the application of NFC more simple and flexible.
But HCE technology just simulates agreement and realization that NFC with SE communicate, also namely completes the safety assurance of NFC business in the mode of virtual SE, does not realize SE.The existing SE solution based on HCE technology, can be realized by the simulation of local application software or the simulation of cloud server, but under this two schemes, safety issue due to android system itself causes data security inadequate, such as after system is by Root (acquisition superuser right), all data in system all will be subject to security threat, and the SE stored in system or authentication information are easy to be acquired.The security control so how realizing NFC business under based on HCE technology is a problem demanding prompt solution.
Summary of the invention
Embodiments provide a kind of method of controlling security and device, to the security control of NFC business can be realized under based on HCE technology.
Embodiment of the present invention first aspect provides a kind of method of controlling security, comprising:
The state that sense terminals is current;
If detect, the current state of described terminal is unsafe condition, then Shutdown Hosts snap gauge intends trading channel;
Encrypt and compress host card simulating Safety module application and relative authentication information data.
Embodiment of the present invention second aspect provides a kind of safety control, comprising:
First detection module, for the state that sense terminals is current;
Closing module, if for detecting that the current state of described terminal is unsafe condition, then Shutdown Hosts snap gauge intends trading channel;
Encrypting module, for encrypting and compressing host card simulating Safety module application and relative authentication information data.
Can find out, in the technical scheme that the embodiment of the present invention provides, the state that sense terminals is current; If detect, the current state of described terminal is unsafe condition, then Shutdown Hosts snap gauge intends trading channel, thus no longer continues when SOT state of termination is unsafe condition to use host card mock trading passage; Encrypt and compress host card simulating Safety module application and relative authentication information data, achieving the protection to data in process of exchange.Thus the security control achieved under the technology of Intrusion Detection based on host snap gauge plan NFC business.
Accompanying drawing explanation
In order to be illustrated more clearly in the embodiment of the present invention or technical scheme of the prior art, be briefly described to the accompanying drawing used required in embodiment or description of the prior art below, apparently, accompanying drawing in the following describes is only some embodiments of the present invention, for those of ordinary skill in the art, under the prerequisite not paying creative work, other accompanying drawing can also be obtained according to these accompanying drawings.
Fig. 1 is the schematic flow sheet of a kind of method of controlling security that the embodiment of the present invention provides;
Fig. 2 is the schematic flow sheet of the another kind of method of controlling security that the embodiment of the present invention provides;
Fig. 3 is the structural representation of a kind of safety control that the embodiment of the present invention provides;
Fig. 4 is the structural representation of the another kind of safety control that the embodiment of the present invention provides;
Fig. 5 is the structural representation of another safety control that the embodiment of the present invention provides.
Embodiment
Embodiments provide a kind of method of controlling security and device, to the security control of NFC business can be realized under based on HCE technology.
The present invention program is understood better in order to make those skilled in the art person, below in conjunction with the accompanying drawing in the embodiment of the present invention, technical scheme in the embodiment of the present invention is clearly and completely described, obviously, described embodiment is only the embodiment of a part of the present invention, instead of whole embodiments.Based on the embodiment in the present invention, those of ordinary skill in the art, not making the every other embodiment obtained under creative work prerequisite, should belong to the scope of protection of the invention.
Term " first ", " second " and " the 3rd " etc. in instructions of the present invention and claims and above-mentioned accompanying drawing are for distinguishing different object, but not for describing particular order.In addition, term " comprises " and their any distortion, and intention is to cover not exclusive comprising.Such as contain the process of series of steps or unit, method, system, product or equipment and be not defined in the step or unit listed, but also comprise the step or unit do not listed alternatively, or also comprise alternatively for other intrinsic step of these processes, method, product or equipment or unit.
An embodiment of a kind of method of controlling security of the embodiment of the present invention, a kind of method of controlling security comprises: the state that sense terminals is current; If detect, the current state of described terminal is unsafe condition, then Shutdown Hosts snap gauge intends trading channel; Encrypt and compress host card simulating Safety module application and relative authentication information data.
First be the schematic flow sheet of a kind of method of controlling security that one embodiment of the present of invention provide see Fig. 1, Fig. 1.Wherein, as shown in Figure 1, a kind of method of controlling security that one embodiment of the present of invention provide can comprise:
The state that S101, sense terminals are current.
Wherein, terminal is the intelligent terminal that mobile phone, panel computer etc. can install android system, supports HCE, possesses NFC function.The current state of terminal refers to the state of the running environment that terminal is current, such as whether safety etc.
Wherein, HCE refers to that Host Based snap gauge is intended, when the terminal being equipped with NFC function realizes snap gauge plan, do not need to provide SE, by the server in run in terminal one application or high in the clouds to complete the function of SE, now the data that receive of NFC chip have been come by operating system or the application be sent in terminal or by the server that mobile network is sent to high in the clouds alternately.Such as, in NFC mobile phone, can by being used for simulating Safety module SE in mobile phone.
Wherein, security module SE refers to for storing NFC application and user's sensitive data and realizing the chip module of safe key computing, be the core of nfc card simulation, security module is also communicated with exterior read-write equipment by the non-front end that connects, and realizes the security of data storage and process of exchange.
Alternatively, in possible embodiments more of the present invention, NFC terminal can comprise hardware security module SE, provides and provides the execution environment of a safety to the safe storage of sensitive information with for trade transactions, wherein, SE can be integrated in SIM card, SD card or terminal chip.
Alternatively, in possible embodiments more of the present invention, in the terminal with NFC function, Android4.4 system can be installed, because Android4.4 system supports HCE function, thus HCE function can be realized in Android4.4 system, utilize HCE to simulate SE application.
Alternatively, in some other possible embodiment of the present invention, if the terminal system with NFC function be Android4.4 before version, then terminal system can be upgraded to Android4.4 system.Thus the support that can realize HCE function.
Alternatively, in possible embodiments more of the present invention, support that the terminal of HCE function can with APP (Application in terminal, application program) application program analog card, realize the function of host card simulation, this terminal SE analog card technology of also supporting other traditional simultaneously, as hardware SE module, also i.e. terminal compatible HCE and traditional SE simultaneously.
Citing is described, one is had to the mobile phone terminal of the Android4.4 system of NFC function, support HCE function, thus realize the card module to SE by HCE, this mobile phone terminal has hardware SE module simultaneously, so be appreciated that this mobile phone terminal compatible HCE snap gauge plan and traditional hardware SE function simultaneously.
Alternatively, in possible embodiments more of the present invention, the current state of terminal can be safe condition, also can be unsafe condition.
Alternatively, in possible embodiments more of the present invention, terminal HCE mock trading passage open after, with the safe condition that certain frequency detecting terminal is current.
If S102 detects described terminal, current state is unsafe condition, then Shutdown Hosts snap gauge intends trading channel.
Wherein, unsafe condition refers to that the running environment of terminal is dangerous, cause operating in the current data of terminal and be likely stolen or destroy, thus the transaction causing terminal current carried out is dangerous.
Wherein, host card module trading channel (namely HCE snap gauge intends trading channel) refers to the passage utilizing HCE technical modelling SE security module to complete NFC transaction, now NFC chip is as non-contact communication front end, order will be received from external reader, be forwarded to the application of simulation SE, then replied by the application of simulation SE.And traditional hardware based NFC trading channel be NFC chip as non-contact communication front end, order will be received from external reader, be forwarded to SE, then be replied by SE.
Such as, have in the NFC mobile phone of HCE function at one, by APP application simulation SE, thus realize HCE mock trading passage, i.e. host card mock trading passage.
Illustrate, in possible embodiments more of the present invention, when terminal is mobile phone, mobile phone NFC is utilized to pay, after the system of mobile phone is by Root, the data be stored in cell phone system are easy to be stolen or destroy, and now the current state of terminal is unsafe condition, so close HCE mock trading passage, thus stop the payment transaction that this passage carries out.
Be appreciated that Shutdown Hosts snap gauge plan trading channel can not re-use this trading channel and concludes the business when terminal current state is unsafe condition, thus prevent the generation of dangerous transaction.
S103, encryption compress host card simulating Safety module application and relative authentication information data.
Wherein, in NFC terminal, host card simulating Safety module application (namely HCE simulates SE application) refers to simulate the APP application of SE security module in the terminal with HCE card analog functuion, and relative authentication information data refer in the NFC transaction be stored in HCE simulation SE application for the data of certification and user's sensitive data.Such as, in NFC pays, these authentication information data can be the user profile of payment both sides, password and other data etc. relevant to payment.
Alternatively, in possible embodiments more of the present invention, also can compress and encrypt HCE snap gauge and intend security module application and relative authentication information data, thus ensure the security of transaction data.
Illustrate, when mobile phone NFC mobile payment, if pay environment to occur security risk, now close HCE and simulate payment channel, and the user profile relevant to payment, password and other relevant data are encrypted and compress, ensure the security of data.
Be appreciated that and encrypted by certain mode and to compress host card simulating Safety module application and relative authentication information data will strengthen the security of these data.
Can find out, in the scheme of the present embodiment, the state that sense terminals is current; If detect, the current state of described terminal is unsafe condition, then Shutdown Hosts snap gauge intends trading channel, thus no longer continues when SOT state of termination is unsafe condition to use host card mock trading passage; Encrypt and compress host card simulating Safety module application and relative authentication information data, achieving the protection to data in process of exchange.Thus the security control achieved under the technology of Intrusion Detection based on host snap gauge plan NFC business.
Alternatively, in possible embodiments more of the present invention, can realize closing HCE snap gauge by main frame or NFC controller and intend trading channel.
Alternatively, in possible embodiments more of the present invention, the current state of described sense terminals comprises with at least one under type:
Detect described terminal system whether be acquired superuser right, detect application that described terminal installs whether official issue, detect the application that described terminal installs and whether be subject to poisoning intrusion.
Wherein, whether the software that the current safe condition of terminal comprises terminal its operating conditions whether safety and terminal operating is qualified, when detect terminal system be acquired application that superuser right or terminal install be subject to poisoning intrusion time, be judged as that the running environment of terminal self is dangerous, also namely the state of terminal is unsafe condition, now closes HCE snap gauge and intends trading channel.
Be appreciated that, the application of terminal operating and the safety of data will be made in above-mentioned several situation to be on the hazard, as terminal pay time, if terminal is acquired superuser right, then will be acquired with the relevant information of payment, payment transaction is dangerous.
Alternatively, in other some possible embodiments of the present invention, the current state of described sense terminals can also comprise whether the application that sense terminals installs is illegal application or lack of competence application, and other abnormal conditions of sense terminals.
Alternatively, in possible embodiments more of the present invention, described method also comprises:
If detect, be applied as unofficial issue application, illegal application or lack of competence that described terminal is installed are applied, and refuse host card mock trading passage described in described application access.
Be appreciated that, unofficial issue application that what described terminal installed if detect be applied as, valid application or lack of competence application time, now just the application of terminal is defective, and when there is not Root or other security risk in terminal itself, now only limit trading channel is intended in this application access to HCE snap gauge, and do not remove to close HCE snap gauge plan trading channel, make simple to operate, also can not affect the application of other official, valid application and have permission trading channel is intended in application access to HCE snap gauge.
Alternatively, in possible embodiments more of the present invention, described encryption after compressing host card simulating Safety module application and relative authentication information data, described method also comprises:
Described host card mock trading passage is routed in security module entity.
Be appreciated that, when the state that terminal is current is unsafe condition, close HCE snap gauge and intend trading channel, and encrypt simultaneously and compress HCE simulate SE application and relative authentication information data after, thus NFC transaction then cannot be carried out, so now HCE snap gauge plan trading channel is routed in traditional SE module and ensure that carrying out smoothly of transaction, ensure that the security of data simultaneously.
Alternatively, in possible embodiments more of the present invention, described security module entity is hardware entities SE module.
Illustrate, in possible embodiments more of the present invention, when utilizing mobile phone to carry out NFC mobile payment, if detect, mobile phone is by Root, in order to the security of guaranteeing payment, close HCE mock trading passage, encrypt and compress host card simulating Safety module application and relative authentication information data, and HCE mock trading passage is routed in entity SE simultaneously, thus eliminates payment risk and ensure that carrying out smoothly of transaction.
Alternatively, in possible embodiments more of the present invention, described encryption also compresses host card simulating Safety module application and relative authentication information data, comprising:
The individual recognition code corresponding by host card analogue mobile phone wallet or user are encrypted from host card simulating Safety module application described in the codon pair set and relative authentication information data.
Alternatively, in possible embodiments more of the present invention, described encryption is also compressed host card simulating Safety module application and relative authentication information data described in codon pair that host card simulating Safety module application and relative authentication information data can also be formed with certain coding rule by other and is encrypted.
Be appreciated that, utilize individual recognition code corresponding to host card analogue mobile phone wallet (main frame HCE wallet PIN code) described host card simulating Safety module application and relative authentication information data to be encrypted to the password set-up mode met in NFC transaction, ensure cipher safety.
Alternatively, in possible embodiments more of the present invention, described encryption after compressing host card simulating Safety module application and relative authentication information data, described method also comprises:
Detect the state that described terminal is current;
If detect, the current state of described terminal is safe condition, opens described host card mock trading passage;
Decompress(ion) also deciphers host card simulating Safety module application and relative authentication information data.
Alternatively, in possible embodiments more of the present invention, when the state that terminal is current is unsafe condition, close HCE snap gauge and intend trading channel, and encrypt simultaneously and compress HCE simulate SE application and relative authentication information data after, continue with the current state of certain frequency detecting terminal.
Be appreciated that, when the state that terminal is current is unsafe condition, close HCE snap gauge and intend trading channel, and encrypt simultaneously and compress HCE simulate SE application and relative authentication information data after, again continuously with the state that certain frequency detecting terminal is current, and after the state that terminal is current is safe condition, open HCE mock trading passage, and recover HCE simulation SE application and relevant authentication information data, thus after the Security status recovery of terminal, HCE mock trading passage can be recovered in time.
Alternatively, in possible embodiments more of the present invention, can realize opening HCE snap gauge by main frame or NFC controller and intend trading channel.
Alternatively, in possible embodiments more of the present invention, when recovering HCE mock trading passage, can decipher and decompress(ion) host card simulating Safety module application and relative authentication information data.
Alternatively, in possible embodiments more of the present invention, if detect, the current state of described terminal is safe condition, then again HCE snap gauge is intended trading channel and from SE entity, be routed to HCE snap gauge intend in trading channel.
Illustrate; when mobile phone NCF pays; after system is by Root; to simulation payment channel close and HCE is simulated SE application and relevant authentication information data protect; HCE mock trading passage is routed to after in entity SE simulation simultaneously; continue the safe condition of sense terminals; after detecting that the unsafe factor of terminal is got rid of; then open original HCE and simulate payment channel; related application and data are discharged; and again trading channel is routed to HCE simulation payment channel from entity SE, recover HCE snap gauge and intend trading function.
For the ease of better understanding and implement the such scheme of the embodiment of the present invention, the application scenarios concrete below in conjunction with some is illustrated.
Refer to Fig. 2, Fig. 2 is the schematic flow sheet of the another kind of method of controlling security that an alternative embodiment of the invention provides, and wherein, as shown in Figure 2, the another kind of method of controlling security that an alternative embodiment of the invention provides can comprise:
The state that S201, sense terminals are current.
Wherein, terminal is the intelligent terminal that mobile phone, panel computer etc. can install android system, supports HCE, possesses NFC function.The current state of terminal refers to the state of the running environment that terminal is current, such as whether safety etc.
Wherein, HCE refers to that Host Based snap gauge is intended, when the terminal being equipped with NFC function realizes snap gauge plan, do not need to provide SE, by the server in run in terminal one application or high in the clouds to complete the function of SE, now the data that receive of NFC chip have been come by operating system or the application be sent in terminal or by the server that mobile network is sent to high in the clouds alternately.Such as, in NFC mobile phone, can by being used for simulating Safety module SE in mobile phone.
Wherein, security module SE refers to for storing NFC application and user's sensitive data and realizing the chip module of safe key computing, be the core of nfc card simulation, security module is also communicated with exterior read-write equipment by the non-front end that connects, and realizes the security of data storage and process of exchange.
Alternatively, in possible embodiments more of the present invention, NFC terminal can comprise hardware security module SE, provides and provides the execution environment of a safety to the safe storage of sensitive information with for trade transactions, wherein, SE can be integrated in SIM card, SD card or terminal chip.
Alternatively, in possible embodiments more of the present invention, in the terminal with NFC function, Android4.4 system can be installed, because Android4.4 system supports HCE function, thus HCE function can be realized in Android4.4 system, utilize HCE to simulate SE application.
Alternatively, in some other possible embodiment of the present invention, if the terminal system with NFC function be Android4.4 before version, then terminal system can be upgraded to Android4.4 system.Thus the support that can realize HCE function.
Alternatively, in possible embodiments more of the present invention, support that the terminal of HCE function can with APP (Application in terminal, application program) application program analog card, realize the function of host card simulation, this terminal SE scheme of also supporting other traditional simultaneously, as hardware SE module, also i.e. terminal compatible HCE and traditional SE simultaneously.
Citing is described, in possible embodiments more of the present invention, one is had to the mobile phone terminal of the Android4.4 system of NFC function, support HCE function, thus realize the card module to SE by HCE, this mobile phone terminal has hardware SE module, so be appreciated that this mobile phone terminal compatible HCE snap gauge plan and traditional hardware SE function simultaneously simultaneously.
Alternatively, in possible embodiments more of the present invention, the current state of terminal can be safe condition, also can be unsafe condition.
Alternatively, in possible embodiments more of the present invention, terminal HCE mock trading passage open after, with the safe condition that certain frequency detecting terminal is current.
Alternatively, in possible embodiments more of the present invention, the current state of described sense terminals comprises with at least one under type:
Detect described terminal system whether be acquired superuser right, detect application that described terminal installs whether official issue, detect the application that described terminal installs and whether be subject to poisoning intrusion.
Wherein, whether the software that the current safe condition of terminal comprises terminal its operating conditions whether safety and terminal operating is qualified, when detect terminal system be acquired application that superuser right or terminal install be subject to poisoning intrusion time, be judged as that the running environment of terminal self is dangerous, also namely the state of terminal is unsafe condition, now closes HCE snap gauge and intends trading channel.
Be appreciated that, the application of terminal operating and the safety of data will be made in above-mentioned several situation to be on the hazard, as terminal pay time, if terminal is acquired superuser right, then will be acquired with the relevant information of payment, payment transaction is dangerous.
Alternatively, in other some possible embodiments of the present invention, the current state of described sense terminals can also comprise other and detect the situation affecting terminal operating Environmental security.
If S202 detects terminal, current state is unsafe condition, then Shutdown Hosts snap gauge intends trading channel.
Wherein, unsafe condition refers to that the running environment of terminal is dangerous, cause operating in the current data of terminal be likely stolen or destroy, thus the transaction causing terminal current carried out is dangerous, as terminal system is noly subject to poisoning intrusion etc. by the application that Root, terminal are installed.
Wherein, host card module trading channel (namely HCE snap gauge intends trading channel) refers to the passage utilizing HCE technical modelling SE security module to complete NFC transaction, now NFC chip is as non-contact communication front end, order will be received from external reader, be forwarded to the application of simulation SE, then replied by the application of simulation SE.And traditional hardware based NFC trading channel be NFC chip as non-contact communication front end, order will be received from external reader, be forwarded to SE, then be replied by SE.
Such as, have in the NFC mobile phone of HCE function at one, by APP application simulation SE, thus realize HCE mock trading passage, i.e. host card mock trading passage.
Illustrate, in possible embodiments more of the present invention, when terminal is mobile phone, mobile phone NFC is utilized to pay, after the system of mobile phone is by Root, the data be stored in cell phone system are easy to be stolen or destroy, and now the current state of terminal is unsafe condition, so close HCE mock trading passage, thus stop the payment transaction that this passage carries out.
Alternatively, in possible embodiments more of the present invention, can realize closing HCE snap gauge by main frame or NFC controller and intend trading channel.
Be appreciated that Shutdown Hosts snap gauge plan trading channel can not re-use this trading channel and concludes the business when terminal current state is unsafe condition, thus prevent the generation of dangerous transaction.
Alternatively, in possible embodiments more of the present invention, described method also comprises:
If detect, be applied as unofficial issue application, illegal application or lack of competence that described terminal is installed are applied, then refuse host card mock trading passage described in described application access.
Be appreciated that, unofficial issue application that what described terminal installed if detect be applied as, valid application or lack of competence application time, now just the application of terminal is defective, and when there is not Root or other security risk in terminal itself, now only limit trading channel is intended in this application access to HCE snap gauge, and do not remove to close HCE snap gauge plan trading channel, make simple to operate, also can not affect the application of other official, valid application and have permission trading channel is intended in application access to HCE snap gauge.
S203, encryption compress host card simulating Safety module application and relative authentication information data.
Wherein, in NFC terminal, host card simulating Safety module application (namely HCE simulates SE application) refers to simulate the APP application of SE security module in the terminal with HCE card analog functuion, and relative authentication information data refer in the NFC transaction be stored in HCE simulation SE application for the data of certification and user's sensitive data.Such as, in NFC pays, these authentication information data can be the user profile of payment both sides, password and other data etc. relevant to payment.
Alternatively, in possible embodiments more of the present invention, also can compress and encrypt HCE snap gauge and intend security module application and relative authentication information data, thus ensure the security of transaction data.
Illustrate, when mobile phone NFC mobile payment, if pay environment to occur security risk, now close HCE and simulate payment channel, and the user profile relevant to payment, password and other relevant data are encrypted and compress, ensure the security of data.
Be appreciated that and encrypted by certain mode and to compress host card simulating Safety module application and relative authentication information data will strengthen the security of these data.
Alternatively, in possible embodiments more of the present invention, described encryption also compresses host card simulating Safety module application and relative authentication information data, comprising:
The individual recognition code corresponding by host card analogue mobile phone wallet or user are encrypted from host card simulating Safety module application described in the codon pair set and relative authentication information data.
Alternatively, in possible embodiments more of the present invention, described encryption is also compressed host card simulating Safety module application and relative authentication information data described in codon pair that host card simulating Safety module application and relative authentication information data can also be formed with certain coding rule by other and is encrypted.
Be appreciated that, utilize individual recognition code corresponding to host card analogue mobile phone wallet (main frame HCE wallet PIN code) described host card simulating Safety module application and relative authentication information data to be encrypted to the password set-up mode met in NFC transaction, ensure cipher safety.
S204, host card mock trading passage to be routed in security module entity.
Be appreciated that, when the state that terminal is current is unsafe condition, close HCE snap gauge and intend trading channel, and encrypt simultaneously and compress HCE simulate SE application and relative authentication information data after, thus NFC transaction then cannot be carried out, so now HCE snap gauge plan trading channel is routed in traditional SE module and ensure that carrying out smoothly of transaction, ensure that the security of data simultaneously.
Alternatively, in possible embodiments more of the present invention, described security module entity is hardware entities SE module.
Illustrate, in possible embodiments more of the present invention, when utilizing mobile phone to carry out NFC mobile payment, if detect, mobile phone is by Root, in order to the security of guaranteeing payment, close HCE mock trading passage, encrypt and compress host card simulating Safety module application and relative authentication information data, and HCE mock trading passage is routed in entity SE simultaneously, thus eliminates payment risk and ensure that carrying out smoothly of transaction.
The state that S205, again sense terminals are current.
Alternatively, in possible embodiments more of the present invention, when the state that terminal is current is unsafe condition, close HCE snap gauge and intend trading channel, and encrypt simultaneously and compress HCE simulate SE application and relative authentication information data after, continue with the current state of certain frequency detecting terminal.
Be appreciated that, when the state that terminal is current is unsafe condition, close HCE snap gauge and intend trading channel, and encrypt simultaneously and compress HCE simulate SE application and relative authentication information data after, again continuously with the state that certain frequency detecting terminal is current, can the state of Real Time Observation terminal, make response in time when the state of terminal changes.
If S206 detects terminal, current state is safe condition, opens host card mock trading passage.
Alternatively, in possible embodiments more of the present invention, can realize opening HCE snap gauge by main frame or NFC controller and intend trading channel.
Alternatively, if when again detecting that the current state of terminal is unsafe condition, do not carry out any action.
S207, decompress(ion) decipher host card simulating Safety module application and relative authentication information data.
Alternatively; in possible embodiments more of the present invention; if when the action of the security module application of protected host snap gauge plan and relative authentication information data is for compressing and encrypting, can decipher and decompress(ion) host card simulating Safety module application and relative authentication information data.
Be appreciated that, when the state that terminal is current is unsafe condition, close HCE snap gauge and intend trading channel, and encrypt simultaneously and compress HCE simulate SE application and relative authentication information data after, again continuously with the state that certain frequency detecting terminal is current, and after the state that terminal is current is safe condition, open HCE mock trading passage, and recover HCE simulation SE application and relevant authentication information data, thus after the Security status recovery of terminal, HCE mock trading passage can be recovered in time.
Alternatively, in possible embodiments more of the present invention, the password of deciphering host card simulating Safety module application and relative authentication information data is password when encrypting host card simulating Safety module application and relative authentication information data, is generally main frame HCE wallet PIN code.
Illustrate; when mobile phone NCF pays; after system is by Root; to simulation payment channel close and HCE is simulated SE application and relevant authentication information data protect; HCE mock trading passage is routed to after in entity SE simulation simultaneously; continue the safe condition of sense terminals; after detecting that the unsafe factor of terminal is got rid of; then open original HCE and simulate payment channel; related application and data are discharged; and again trading channel is routed to HCE simulation payment channel from entity SE, recover HCE snap gauge and intend trading function.
Can find out, in the scheme of the present embodiment, the state that sense terminals is current; If detect, the current state of described terminal is unsafe condition, then Shutdown Hosts snap gauge intends trading channel, thus no longer continues when SOT state of termination is unsafe condition to use host card mock trading passage; Encrypt and compress host card simulating Safety module application and relative authentication information data, achieving the protection to data in process of exchange.Thus the security control achieved under the technology of Intrusion Detection based on host snap gauge plan NFC business.
To illustrate again below a more specifically application scenarios.
Such as, when terminal is the mobile phone installing Android4.4 system, there is NFC function, support HCE technology, thus on mobile phone, can simulate by HCE the software simulation that SE should be used for realizing NFC.When utilizing NFC to carry out mobile payment, first the state of detection of handset, if whether mobile phone is by Root, whether official issues payment software, whether the software that mobile phone is installed is subject to poisoning intrusion etc., if detect, mobile phone is by Root, user can obtain the highest weight limit of system, thus just can obtain SE or the authentication information of storage, malicious user can by the storage system of alternate manner access terminal, and obtain the transaction that the sensitive data be stored in application has removed some pseudo-cards, this will bring great security risk to disburser, so mobile phone is after this security risk being detected, close HCE snap gauge by NFC controller again and intend trading channel, encrypted by the PIN code that HCE mobile phone wallet is corresponding simultaneously and compress and store HCE simulation SE application and associated authentication data information, ensure the security of data.
Further, when detecting that payment software is unofficial releasing software, refusing this payment software access HCE snap gauge and intending trading channel, thus the unsafe factor that payment software brings can be stopped.
Further, after closedown HCE snap gauge intends trading channel, HCE snap gauge can be intended trading channel and be routed in SE entity.
Further, when after closing hand phone Root authority, when whether the state of detection of handset is safe again, now will detect that the state of mobile phone is safe condition, recover HCE snap gauge and intend trading channel, simultaneously decompress(ion) decipher HCE and simulate SE application and associated authentication data information, now no longer carries out NFC transaction by entity SE.
Refer to Fig. 3, Fig. 3 is the structural representation of a kind of safety control that one embodiment of the present of invention provide, and wherein, as shown in Figure 3, a kind of safety control 300 that one embodiment of the present of invention provide can comprise:
First detection module 310, closing module 320 and encrypting module 330.
Wherein, first detection module 310 is for the current state of sense terminals.
Wherein, terminal is the intelligent terminal that mobile phone, panel computer etc. can install android system, supports HCE, possesses NFC function.The current state of terminal refers to the state of the running environment that terminal is current, such as whether safety etc.
Wherein, HCE refers to that Host Based snap gauge is intended, when the terminal being equipped with NFC function realizes snap gauge plan, do not need to provide SE, by the server in run in terminal one application or high in the clouds to complete the function of SE, now the data that receive of NFC chip have been come by operating system or the application be sent in terminal or by the server that mobile network is sent to high in the clouds alternately.Such as, in NFC mobile phone, can by being used for simulating Safety module SE in mobile phone.
Wherein, security module SE refers to for storing NFC application and user's sensitive data and realizing the chip module of safe key computing, be the core of nfc card simulation, security module is also communicated with exterior read-write equipment by the non-front end that connects, and realizes the security of data storage and process of exchange.
Alternatively, in possible embodiments more of the present invention, NFC terminal can comprise hardware security module SE, provides and provides the execution environment of a safety to the safe storage of sensitive information with for trade transactions, wherein, SE can be integrated in SIM card, SD card or terminal chip.
Alternatively, in possible embodiments more of the present invention, in the terminal with NFC function, Android4.4 system can be installed, because Android4.4 system supports HCE function, thus HCE function can be realized in Android4.4 system, utilize HCE to simulate SE application.
Alternatively, in some other possible embodiment of the present invention, if the terminal system with NFC function be Android4.4 before version, then terminal system can be upgraded to Android4.4 system.Thus the support that can realize HCE function.
Alternatively, in possible embodiments more of the present invention, support that the terminal of HCE function can with APP (Application in terminal, application program) application program analog card, realize the function of host card simulation, this terminal SE analog card technology of also supporting other traditional simultaneously, as hardware SE module, also i.e. terminal compatible HCE and traditional SE simultaneously.
Citing is described, one is had to the mobile phone terminal of the Android4.4 system of NFC function, support HCE function, thus realize the card module to SE by HCE, this mobile phone terminal has hardware SE module simultaneously, so be appreciated that this mobile phone terminal compatible HCE snap gauge plan and traditional hardware SE function simultaneously.
Alternatively, in possible embodiments more of the present invention, the current state of terminal can be safe condition, also can be unsafe condition.
Alternatively, in possible embodiments more of the present invention, terminal HCE mock trading passage open after, with the safe condition that certain frequency detecting terminal is current.
Closing module 320, if for detecting that the current state of described terminal is unsafe condition, then Shutdown Hosts snap gauge intends trading channel.
Wherein, unsafe condition refers to that the running environment of terminal is dangerous, cause operating in the current data of terminal and be likely stolen or destroy, thus the transaction causing terminal current carried out is dangerous.
Wherein, host card module trading channel (namely HCE snap gauge intends trading channel) refers to the passage utilizing HCE technical modelling SE security module to complete NFC transaction, now NFC chip is as non-contact communication front end, order will be received from external reader, be forwarded to the application of simulation SE, then replied by the application of simulation SE.And traditional hardware based NFC trading channel be NFC chip as non-contact communication front end, order will be received from external reader, be forwarded to SE, then be replied by SE.
Such as, have in the NFC mobile phone of HCE function at one, by APP application simulation SE, thus realize HCE mock trading passage, i.e. host card mock trading passage.
Illustrate, in possible embodiments more of the present invention, when terminal is mobile phone, mobile phone NFC is utilized to pay, after the system of mobile phone is by Root, the data be stored in cell phone system are easy to be stolen or destroy, and now the current state of terminal is unsafe condition, so close HCE mock trading passage, thus stop the payment transaction that this passage carries out.
Be appreciated that Shutdown Hosts snap gauge plan trading channel can not re-use this trading channel and concludes the business when terminal current state is unsafe condition, thus prevent the generation of dangerous transaction.
Encrypting module 330, for encrypting and compressing host card simulating Safety module application and relative authentication information data.
Wherein, in NFC terminal, host card simulating Safety module application (namely HCE simulates SE application) refers to simulate the APP application of SE security module in the terminal with HCE card analog functuion, and relative authentication information data refer in the NFC transaction be stored in HCE simulation SE application for the data of certification and user's sensitive data.Such as, in NFC pays, these authentication information data can be the user profile of payment both sides, password and other data etc. relevant to payment.
Alternatively, in possible embodiments more of the present invention, also can compress and encrypt HCE snap gauge and intend security module application and relative authentication information data, thus ensure the security of transaction data.
Illustrate, when mobile phone NFC mobile payment, if pay environment to occur security risk, now close HCE and simulate payment channel, and the user profile relevant to payment, password and other relevant data are encrypted and compress, ensure the security of data.
Be appreciated that and encrypted by certain mode and to compress host card simulating Safety module application and relative authentication information data will strengthen the security of these data.
Be understandable that, the function of each functional module of the safety control 300 of the present embodiment can according to the method specific implementation in said method embodiment, and its specific implementation process with reference to the associated description of said method embodiment, can repeat no more herein.
Can find out, in the scheme of the present embodiment, the state that safety control 300 sense terminals is current; If safety control 300 detects described terminal, current state is unsafe condition, then Shutdown Hosts snap gauge intends trading channel, thus no longer continues when SOT state of termination is unsafe condition to use host card mock trading passage; Safety control 300 is encrypted and is compressed host card simulating Safety module application and relative authentication information data, achieves the protection to data in process of exchange.Thus the security control achieved under the technology of Intrusion Detection based on host snap gauge plan NFC business.
Refer to Fig. 4, Fig. 4 is the structural representation of the another kind of safety control that an alternative embodiment of the invention provides, and wherein, as shown in Figure 4, the another kind of safety control 400 that an alternative embodiment of the invention provides can comprise:
First detection module 410, closing module 420 and encrypting module 430.
Wherein, first detection module 410 is for the current state of sense terminals.
Wherein, terminal is the intelligent terminal that mobile phone, panel computer etc. can install android system, supports HCE, possesses NFC function.The current state of terminal refers to the state of the running environment that terminal is current, such as whether safety etc.
Wherein, HCE refers to that Host Based snap gauge is intended, when the terminal being equipped with NFC function realizes snap gauge plan, do not need to provide SE, by the server in run in terminal one application or high in the clouds to complete the function of SE, now the data that receive of NFC chip have been come by operating system or the application be sent in terminal or by the server that mobile network is sent to high in the clouds alternately.Such as, in NFC mobile phone, can by being used for simulating Safety module SE in mobile phone.
Wherein, security module SE refers to for storing NFC application and user's sensitive data and realizing the chip module of safe key computing, be the core of nfc card simulation, security module is also communicated with exterior read-write equipment by the non-front end that connects, and realizes the security of data storage and process of exchange.
Alternatively, in possible embodiments more of the present invention, NFC terminal can comprise hardware security module SE, provides and provides the execution environment of a safety to the safe storage of sensitive information with for trade transactions, wherein, SE can be integrated in SIM card, SD card or terminal chip.
Alternatively, in possible embodiments more of the present invention, in the terminal with NFC function, Android4.4 system can be installed, because Android4.4 system supports HCE function, thus HCE function can be realized in Android4.4 system, utilize HCE to simulate SE application.
Alternatively, in some other possible embodiment of the present invention, if the terminal system with NFC function be Android4.4 before version, then terminal system can be upgraded to Android4.4 system.Thus the support that can realize HCE function.
Alternatively, in possible embodiments more of the present invention, support that the terminal of HCE function can with APP (Application in terminal, application program) application program analog card, realize the function of host card simulation, this terminal SE analog card technology of also supporting other traditional simultaneously, as hardware SE module, also i.e. terminal compatible HCE and traditional SE simultaneously.
Citing is described, one is had to the mobile phone terminal of the Android4.4 system of NFC function, support HCE function, thus realize the card module to SE by HCE, this mobile phone terminal has hardware SE module simultaneously, so be appreciated that this mobile phone terminal compatible HCE snap gauge plan and traditional hardware SE function simultaneously.
Alternatively, in possible embodiments more of the present invention, the current state of terminal can be safe condition, also can be unsafe condition.
Alternatively, in possible embodiments more of the present invention, terminal HCE mock trading passage open after, with the safe condition that certain frequency detecting terminal is current.
Closing module 420, if for detecting that the current state of described terminal is unsafe condition, then Shutdown Hosts snap gauge intends trading channel.
Wherein, unsafe condition refers to that the running environment of terminal is dangerous, cause operating in the current data of terminal and be likely stolen or destroy, thus the transaction causing terminal current carried out is dangerous.
Wherein, host card module trading channel (namely HCE snap gauge intends trading channel) refers to the passage utilizing HCE technical modelling SE security module to complete NFC transaction, now NFC chip is as non-contact communication front end, order will be received from external reader, be forwarded to the application of simulation SE, then replied by the application of simulation SE.And traditional hardware based NFC trading channel be NFC chip as non-contact communication front end, order will be received from external reader, be forwarded to SE, then be replied by SE.
Such as, have in the NFC mobile phone of HCE function at one, by APP application simulation SE, thus realize HCE mock trading passage, i.e. host card mock trading passage.
Illustrate, in possible embodiments more of the present invention, when terminal is mobile phone, mobile phone NFC is utilized to pay, after the system of mobile phone is by Root, the data be stored in cell phone system are easy to be stolen or destroy, and now the current state of terminal is unsafe condition, so close HCE mock trading passage, thus stop the payment transaction that this passage carries out.
Be appreciated that Shutdown Hosts snap gauge plan trading channel can not re-use this trading channel and concludes the business when terminal current state is unsafe condition, thus prevent the generation of dangerous transaction.
Encrypting module 430, for encrypting and compressing host card simulating Safety module application and relative authentication information data.
Wherein, in NFC terminal, host card simulating Safety module application (namely HCE simulates SE application) refers to simulate the APP application of SE security module in the terminal with HCE card analog functuion, and relative authentication information data refer in the NFC transaction be stored in HCE simulation SE application for the data of certification and user's sensitive data.Such as, in NFC pays, these authentication information data can be the user profile of payment both sides, password and other data etc. relevant to payment.
Alternatively, in possible embodiments more of the present invention, also can compress and encrypt HCE snap gauge and intend security module application and relative authentication information data, thus ensure the security of transaction data.
Illustrate, when mobile phone NFC mobile payment, if pay environment to occur security risk, now close HCE and simulate payment channel, and the user profile relevant to payment, password and other relevant data are encrypted and compress, ensure the security of data.
Be appreciated that and encrypted by certain mode and to compress host card simulating Safety module application and relative authentication information data will strengthen the security of these data.
Alternatively, in possible embodiments more of the present invention, can realize closing HCE snap gauge by main frame or NFC controller and intend trading channel.
Alternatively, in possible embodiments more of the present invention, the current state of described detection module 410 sense terminals comprises with at least one under type:
Detect described terminal system whether be acquired superuser right, detect application that described terminal installs whether official issue, detect the application that described terminal installs and whether be subject to poisoning intrusion.
Wherein, whether the software that the current safe condition of terminal comprises terminal its operating conditions whether safety and terminal operating is qualified, when detect terminal system be acquired application that superuser right or terminal install be subject to poisoning intrusion time, be judged as that the running environment of terminal self is dangerous, also namely the state of terminal is unsafe condition, now closes HCE snap gauge and intends trading channel.
Be appreciated that, the application of terminal operating and the safety of data will be made in above-mentioned several situation to be on the hazard, as terminal pay time, if terminal is acquired superuser right, then will be acquired with the relevant information of payment, payment transaction is dangerous.
Alternatively, in other some possible embodiments of the present invention, the current state of described sense terminals can also comprise whether the application that sense terminals installs is illegal application or lack of competence application, and other abnormal conditions of sense terminals.
Alternatively, in possible embodiments more of the present invention, described detection module 410 also for:
If detect, be applied as unofficial issue application, illegal application or lack of competence that described terminal is installed are applied, then refuse host card mock trading passage described in described application access.
Be appreciated that, unofficial issue application that what described terminal installed if detect be applied as, valid application or lack of competence application time, now just the application of terminal is defective, and when there is not Root or other security risk in terminal itself, now only limit trading channel is intended in this application access to HCE snap gauge, and do not remove to close HCE snap gauge plan trading channel, make simple to operate, also can not affect the application of other official, valid application and have permission trading channel is intended in application access to HCE snap gauge.
Alternatively, in possible embodiments more of the present invention, described safety control 400 also comprises:
Routing module 440, for being routed to described host card mock trading passage in security module entity.
Be appreciated that, when the state that terminal is current is unsafe condition, close HCE snap gauge and intend trading channel, and encrypt simultaneously and compress HCE simulate SE application and relative authentication information data after, thus NFC transaction then cannot be carried out, so now HCE snap gauge plan trading channel is routed in traditional SE module and ensure that carrying out smoothly of transaction, ensure that the security of data simultaneously.
Alternatively, in possible embodiments more of the present invention, described security module entity is hardware entities SE module.
Illustrate, in possible embodiments more of the present invention, when utilizing mobile phone to carry out NFC mobile payment, if detect, mobile phone is by Root, in order to the security of guaranteeing payment, close HCE mock trading passage, encrypt and compress host card simulating Safety module application and relative authentication information data, and HCE mock trading passage is routed in entity SE simultaneously, thus eliminates payment risk and ensure that carrying out smoothly of transaction.
Alternatively, in possible embodiments more of the present invention, described encrypting module 430 specifically for:
The individual recognition code corresponding by host card analogue mobile phone wallet or user are encrypted from host card simulating Safety module application described in the codon pair set and relative authentication information data.
Alternatively, in possible embodiments more of the present invention, described encryption is also compressed host card simulating Safety module application and relative authentication information data described in codon pair that host card simulating Safety module application and relative authentication information data can also be formed with certain coding rule by other and is encrypted.
Be appreciated that, utilize individual recognition code corresponding to host card analogue mobile phone wallet (main frame HCE wallet PIN code) described host card simulating Safety module application and relative authentication information data to be encrypted to the password set-up mode met in NFC transaction, ensure cipher safety.
Alternatively, in possible embodiments more of the present invention, after described encrypting module 430, described safety control 400 also comprises:
Second detection module 450, for detecting the current state of described terminal;
Opening module 460, if for detecting that the current state of described terminal is safe condition, open described host card mock trading passage;
Deciphering module 470, deciphers host card simulating Safety module application and relative authentication information data for decompress(ion).
Wherein, second detection module 450 can be different from first detection module 410, detecting the current safe condition of described terminal for intending at HCE snap gauge after trading channel is closed, also can being integrated in same module with first detection module 410, for detecting the current state of described terminal.
Alternatively, in possible embodiments more of the present invention, when the state that terminal is current is unsafe condition, close HCE snap gauge and intend trading channel, and encrypt simultaneously and compress HCE simulate SE application and relative authentication information data after, the second detection module 450 continues with the current state of certain frequency detecting terminal.
Be appreciated that, when the state that terminal is current is unsafe condition, close HCE snap gauge and intend trading channel, and encrypt simultaneously and compress HCE simulate SE application and relative authentication information data after, again continuously with the state that certain frequency detecting terminal is current, and after the state that terminal is current is safe condition, open HCE mock trading passage, and recover HCE simulation SE application and relevant authentication information data, thus after the Security status recovery of terminal, HCE mock trading passage can be recovered in time.
Alternatively, in possible embodiments more of the present invention, opening module 460 can realize opening HCE snap gauge by main frame or NFC controller and intend trading channel.
Alternatively, in possible embodiments more of the present invention, when recovering HCE mock trading passage, deciphering module 470 can be deciphered and decompress(ion) host card simulating Safety module application and relative authentication information data.
Alternatively, in possible embodiments more of the present invention, if detect, the current state of described terminal is safe condition, then again HCE snap gauge is intended trading channel and from SE entity, be routed to HCE snap gauge intend in trading channel.
Illustrate; when mobile phone NCF pays; after system is by Root; to simulation payment channel close and HCE is simulated SE application and relevant authentication information data protect; HCE mock trading passage is routed to after in entity SE simulation simultaneously; continue the safe condition of sense terminals; after detecting that the unsafe factor of terminal is got rid of; then open original HCE and simulate payment channel; related application and data are discharged; and again trading channel is routed to HCE simulation payment channel from entity SE, recover HCE snap gauge and intend trading function.
Be understandable that, the function of each functional module of the safety control 400 of the present embodiment can according to the method specific implementation in said method embodiment, and its specific implementation process with reference to the associated description of said method embodiment, can repeat no more herein.
Can find out, in the scheme of the present embodiment, the state that safety control 400 sense terminals is current; If safety control 400 detects described terminal, current state is unsafe condition, then Shutdown Hosts snap gauge intends trading channel, thus no longer continues when SOT state of termination is unsafe condition to use host card mock trading passage; Safety control 400 is encrypted and is compressed host card simulating Safety module application and relative authentication information data, achieves the protection to data in process of exchange.Thus the security control achieved under the technology of Intrusion Detection based on host snap gauge plan NFC business.
See the structural representation that Fig. 5, Fig. 5 are another safety controls that another embodiment of the present invention provides.As shown in Figure 5, another safety control 500 that another embodiment of the present invention provides can comprise: at least one bus 501, at least one processor 502 be connected with bus and at least one storer 503 be connected with bus.
Wherein, processor 502, by bus 501, calls the code that stores in storer 503 for the current state of sense terminals; If detect, the current state of described terminal is unsafe condition, then Shutdown Hosts snap gauge intends trading channel; Encrypt and compress host card simulating Safety module application and relative authentication information data.
Wherein, terminal is the intelligent terminal that mobile phone, panel computer etc. can install android system, supports HCE, possesses NFC function.The current state of terminal refers to the state of the running environment that terminal is current, such as whether safety etc.
Wherein, HCE refers to that Host Based snap gauge is intended, when the terminal being equipped with NFC function realizes snap gauge plan, do not need to provide SE, by the server in run in terminal one application or high in the clouds to complete the function of SE, now the data that receive of NFC chip have been come by operating system or the application be sent in terminal or by the server that mobile network is sent to high in the clouds alternately.Such as, in NFC mobile phone, can by being used for simulating Safety module SE in mobile phone.
Wherein, security module SE refers to for storing NFC application and user's sensitive data and realizing the chip module of safe key computing, be the core of nfc card simulation, security module is also communicated with exterior read-write equipment by the non-front end that connects, and realizes the security of data storage and process of exchange.
Alternatively, in possible embodiments more of the present invention, NFC terminal can comprise hardware security module SE, provides and provides the execution environment of a safety to the safe storage of sensitive information with for trade transactions, wherein, SE can be integrated in SIM card, SD card or terminal chip.
Alternatively, in possible embodiments more of the present invention, in the terminal with NFC function, Android4.4 system can be installed, because Android4.4 system supports HCE function, thus HCE function can be realized in Android4.4 system, utilize HCE to simulate SE application.
Alternatively, in some other possible embodiment of the present invention, if the terminal system with NFC function be Android4.4 before version, then terminal system can be upgraded to Android4.4 system.Thus the support that can realize HCE function.
Alternatively, in possible embodiments more of the present invention, support that the terminal of HCE function can with APP (Application in terminal, application program) application program analog card, realize the function of host card simulation, this terminal SE analog card technology of also supporting other traditional simultaneously, as hardware SE module, also i.e. terminal compatible HCE and traditional SE simultaneously.
Alternatively, in possible embodiments more of the present invention, the current state of terminal can be safe condition, also can be unsafe condition.
Alternatively, in possible embodiments more of the present invention, terminal HCE mock trading passage open after, with the safe condition that certain frequency detecting terminal is current.
Wherein, unsafe condition refers to that the running environment of terminal is dangerous, cause operating in the current data of terminal and be likely stolen or destroy, thus the transaction causing terminal current carried out is dangerous.
Wherein, host card module trading channel (namely HCE snap gauge intends trading channel) refers to the passage utilizing HCE technical modelling SE security module to complete NFC transaction, now NFC chip is as non-contact communication front end, order will be received from external reader, be forwarded to the application of simulation SE, then replied by the application of simulation SE.And traditional hardware based NFC trading channel be NFC chip as non-contact communication front end, order will be received from external reader, be forwarded to SE, then be replied by SE.
Wherein, in NFC terminal, host card simulating Safety module application (namely HCE simulates SE application) refers to simulate the APP application of SE security module in the terminal with HCE card analog functuion, and relative authentication information data refer in the NFC transaction be stored in HCE simulation SE application for the data of certification and user's sensitive data.Such as, in NFC pays, these authentication information data can be the user profile of payment both sides, password and other data etc. relevant to payment.
Alternatively, in possible embodiments more of the present invention, also can compress and encrypt HCE snap gauge and intend security module application and relative authentication information data, thus ensure the security of transaction data.
Alternatively, in possible embodiments more of the present invention, can realize closing HCE snap gauge by main frame or NFC controller and intend trading channel.
Alternatively, in possible embodiments more of the present invention, the current state of processor 502 sense terminals comprises with at least one under type:
Detect described terminal system whether be acquired superuser right, detect application that described terminal installs whether official issue, detect the application that described terminal installs and whether be subject to poisoning intrusion.
Wherein, whether the software that the current safe condition of terminal comprises terminal its operating conditions whether safety and terminal operating is qualified, when detect terminal system be acquired application that superuser right or terminal install be subject to poisoning intrusion time, be judged as that the running environment of terminal self is dangerous, also namely the state of terminal is unsafe condition, now closes HCE snap gauge and intends trading channel.
Alternatively, in other some possible embodiments of the present invention, the current state of described sense terminals can also comprise other and detect the situation affecting terminal operating Environmental security.
Alternatively, in other some possible embodiments of the present invention, the current state of described sense terminals can also comprise whether the application that sense terminals installs is illegal application or lack of competence application, and other abnormal conditions of sense terminals.
Alternatively, in possible embodiments more of the present invention, processor 502 is all right:
If detect, be applied as unofficial issue application, illegal application or lack of competence that described terminal is installed are applied, then refuse host card mock trading passage described in described application access.
Alternatively, in possible embodiments more of the present invention, processor 502 is encrypted and after compressing host card simulating Safety module application and relative authentication information data, processor 502 is all right:
Described host card mock trading passage is routed in security module entity.
Alternatively, in possible embodiments more of the present invention, described security module entity is hardware entities SE module.
Alternatively, in possible embodiments more of the present invention, processor 502 is encrypted and is compressed host card simulating Safety module application and relative authentication information data, processor 502 can:
The individual recognition code corresponding by host card analogue mobile phone wallet or user are encrypted from host card simulating Safety module application described in the codon pair set and relative authentication information data.
Alternatively, in possible embodiments more of the present invention, described encryption is also compressed host card simulating Safety module application and relative authentication information data described in codon pair that host card simulating Safety module application and relative authentication information data can also be formed with certain coding rule by other and is encrypted.
Alternatively, in possible embodiments more of the present invention, processor 502 is encrypted and after compressing host card simulating Safety module application and relative authentication information data, processor 502 also comprises:
Detect the state that described terminal is current;
If detect, the current state of described terminal is safe condition, opens described host card mock trading passage;
Decompress(ion) also deciphers host card simulating Safety module application and relative authentication information data.
Alternatively, in possible embodiments more of the present invention, when the state that terminal is current is unsafe condition, close HCE snap gauge and intend trading channel, and encrypt simultaneously and compress HCE simulate SE application and relative authentication information data after, continue with the current state of certain frequency detecting terminal.
Alternatively, in possible embodiments more of the present invention, can realize opening HCE snap gauge by main frame or NFC controller and intend trading channel.
Alternatively, in possible embodiments more of the present invention, when recovering HCE mock trading passage, processor 502 can be deciphered and decompress(ion) host card simulating Safety module application and relative authentication information data.
Alternatively, in possible embodiments more of the present invention, if detect, the current state of described terminal is safe condition, and HCE snap gauge is intended trading channel and from SE entity, is routed to HCE snap gauge intends in trading channel by processor 502 again.
Be understandable that, the function of each functional module of the safety control 500 of the present embodiment can according to the method specific implementation in said method embodiment, and its specific implementation process with reference to the associated description of said method embodiment, can repeat no more herein.
Can find out, in the scheme of the present embodiment, the state that safety control 500 sense terminals is current; If safety control 500 detects described terminal, current state is unsafe condition, then Shutdown Hosts snap gauge intends trading channel, thus no longer continues when SOT state of termination is unsafe condition to use host card mock trading passage; Safety control 500 is encrypted and is compressed host card simulating Safety module application and relative authentication information data, achieves the protection to data in process of exchange.Thus the security control achieved under the technology of Intrusion Detection based on host snap gauge plan NFC business.
The embodiment of the present invention also provides a kind of computer-readable storage medium, and wherein, this computer-readable storage medium can have program stored therein, and comprises the part or all of step of any one method for message interaction recorded in said method embodiment when this program performs.
It should be noted that, for aforesaid each embodiment of the method, in order to simple description, therefore it is all expressed as a series of combination of actions, but those skilled in the art should know, the present invention is not by the restriction of described sequence of movement, because according to the present invention, some step can adopt other orders or carry out simultaneously.Secondly, those skilled in the art also should know, the embodiment described in instructions all belongs to preferred embodiment, and involved action and module might not be that the present invention is necessary.
In the above-described embodiments, the description of each embodiment is all emphasized particularly on different fields, in certain embodiment, there is no the part described in detail, can see the associated description of other embodiments.
In several embodiments that the application provides, should be understood that, disclosed device, the mode by other realizes.Such as, device embodiment described above is only schematic, the such as division of described unit, be only a kind of logic function to divide, actual can have other dividing mode when realizing, such as multiple unit or assembly can in conjunction with or another system can be integrated into, or some features can be ignored, or do not perform.Another point, shown or discussed coupling each other or direct-coupling or communication connection can be by some interfaces, and the indirect coupling of device or unit or communication connection can be electrical or other form.
The described unit illustrated as separating component or can may not be and physically separates, and the parts as unit display can be or may not be physical location, namely can be positioned at a place, or also can be distributed in multiple network element.Some or all of unit wherein can be selected according to the actual needs to realize the object of the present embodiment scheme.
In addition, each functional unit in various embodiments of the present invention can be integrated in a processing unit, also can be that the independent physics of unit exists, also can two or more unit in a unit integrated.Above-mentioned integrated unit both can adopt the form of hardware to realize, and the form of SFU software functional unit also can be adopted to realize.
If described integrated unit using the form of SFU software functional unit realize and as independently production marketing or use time, can be stored in a computer read/write memory medium.Based on such understanding, the part that technical scheme of the present invention contributes to prior art in essence in other words or all or part of of this technical scheme can embody with the form of software product, this computer software product is stored in a storage medium, comprises all or part of step of some instructions in order to make a computer equipment (can be personal computer, server or the network equipment etc.) perform method described in each embodiment of the present invention.And aforesaid storage medium comprises: USB flash disk, ROM (read-only memory) (ROM, Read-OnlyMemory), random access memory (RAM, RandomAccessMemory), portable hard drive, magnetic disc or CD etc. various can be program code stored medium.
The above, above embodiment only in order to technical scheme of the present invention to be described, is not intended to limit; Although with reference to previous embodiment to invention has been detailed description, those of ordinary skill in the art is to be understood that: it still can be modified to the technical scheme described in foregoing embodiments, or carries out equivalent replacement to wherein portion of techniques feature; And these amendments or replacement, do not make the essence of appropriate technical solution depart from the scope of various embodiments of the present invention technical scheme.

Claims (12)

1. a method of controlling security, is characterized in that, described method comprises:
The state that sense terminals is current;
If detect, the current state of described terminal is unsafe condition, then Shutdown Hosts snap gauge intends trading channel;
Encrypt and compress host card simulating Safety module application and relative authentication information data.
2. the method for claim 1, is characterized in that, described encryption after compressing host card simulating Safety module application and relative authentication information data, described method also comprises:
Described host card mock trading passage is routed in security module entity.
3. the method for claim 1, is characterized in that, described encryption after compressing host card simulating Safety module application and relative authentication information data, described method also comprises:
Detect the state that described terminal is current;
If detect, the current state of described terminal is safe condition, opens described host card mock trading passage;
Decompress(ion) also deciphers host card simulating Safety module application and relative authentication information data.
4. the method as described in claim 1 or 3, is characterized in that, the current state of described sense terminals comprises with at least one under type:
Detect described terminal system whether be acquired superuser right, detect application that described terminal installs whether official issue, detect the application that described terminal installs and whether be subject to poisoning intrusion.
5. the method for claim 1, is characterized in that, described encryption also compresses host card simulating Safety module application and relative authentication information data, comprising:
The individual recognition code corresponding by host card analogue mobile phone wallet or user are encrypted from host card simulating Safety module application described in the codon pair set and relative authentication information data.
6. the method for claim 1, is characterized in that, described method also comprises:
If detect, be applied as unofficial issue application, illegal application or lack of competence that described terminal is installed are applied, then refuse host card mock trading passage described in described application access.
7. a safety control, is characterized in that, described device comprises:
First detection module, for the state that sense terminals is current;
Closing module, if for detecting that the current state of described terminal is unsafe condition, then Shutdown Hosts snap gauge intends trading channel;
Encrypting module, for encrypting and compressing host card simulating Safety module application and relative authentication information data.
8. device as claimed in claim 7, it is characterized in that, described device also comprises:
Routing module, for being routed to described host card mock trading passage in security module entity.
9. device as claimed in claim 7, it is characterized in that, after described encrypting module, described device also comprises:
Second detection module, for detecting the current state of described terminal;
Opening module, if for detecting that the current state of described terminal is safe condition, open described host card mock trading passage;
Deciphering module, deciphers host card simulating Safety module application and relative authentication information data for decompress(ion).
10. the device as described in claim 6 or 9, is characterized in that, the current state of described detection module sense terminals comprises with at least one under type:
Detect described terminal system whether be acquired superuser right, detect application that described terminal installs whether official issue, detect the application that described terminal installs and whether be subject to poisoning intrusion.
11. devices as claimed in claim 7, is characterized in that, described encrypting module specifically for:
The individual recognition code corresponding by host card analogue mobile phone wallet or user are encrypted from host card simulating Safety module application described in the codon pair set and relative authentication information data.
12. devices as claimed in claim 7, is characterized in that, described detection module also for:
If detect, be applied as unofficial issue application, illegal application or lack of competence that described terminal is installed are applied, then refuse host card mock trading passage described in described application access.
CN201510290962.XA 2015-05-30 2015-05-30 Safety control method and device Active CN105550866B (en)

Priority Applications (2)

Application Number Priority Date Filing Date Title
CN201510290962.XA CN105550866B (en) 2015-05-30 2015-05-30 Safety control method and device
PCT/CN2016/077958 WO2016192453A1 (en) 2015-05-30 2016-03-31 Safety control method and apparatus, and terminal

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201510290962.XA CN105550866B (en) 2015-05-30 2015-05-30 Safety control method and device

Publications (2)

Publication Number Publication Date
CN105550866A true CN105550866A (en) 2016-05-04
CN105550866B CN105550866B (en) 2020-05-19

Family

ID=55830046

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201510290962.XA Active CN105550866B (en) 2015-05-30 2015-05-30 Safety control method and device

Country Status (2)

Country Link
CN (1) CN105550866B (en)
WO (1) WO2016192453A1 (en)

Cited By (6)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN106096450A (en) * 2016-06-21 2016-11-09 依偎科技(南昌)有限公司 A kind of application program freezing method and mobile terminal
CN106127467A (en) * 2016-06-20 2016-11-16 上海易码信息科技有限公司 The method of mobile payment integrating financial card paying and settle accounts
CN107316197A (en) * 2017-07-04 2017-11-03 广东欧珀移动通信有限公司 A kind of payment protection method, mobile terminal and computer-readable recording medium
WO2019153780A1 (en) * 2018-02-12 2019-08-15 北京金山安全软件有限公司 Method, apparatus, electronic device and storage medium for protecting private key of digital wallet
CN112262548A (en) * 2019-02-28 2021-01-22 华为技术有限公司 File processing method and terminal equipment
CN113793156A (en) * 2020-12-18 2021-12-14 京东科技控股股份有限公司 Method, device, equipment and storage medium for prompting fraud application program

Families Citing this family (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN113450511A (en) * 2021-03-25 2021-09-28 深圳怡化电脑科技有限公司 Transaction method of acceptance terminal equipment and bank system and acceptance terminal equipment
CN113473474A (en) * 2021-05-26 2021-10-01 上海商甲信息科技有限公司 Background authority control method for mobile communication terminal system

Citations (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN104166914A (en) * 2014-08-20 2014-11-26 武汉天喻信息产业股份有限公司 Secure system and method based on secure element and applied to host card emulation technology
CN104281946A (en) * 2013-07-11 2015-01-14 北京同方微电子有限公司 Safe and reliable mobile payment transaction method

Family Cites Families (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101079090B (en) * 2007-07-02 2010-04-21 北京飞天诚信科技有限公司 Apparatus for reproducing personal application environment
CN104240085A (en) * 2013-06-07 2014-12-24 中兴通讯股份有限公司 Mobile terminal and mobile payment safety verification method and device
US20150006319A1 (en) * 2013-06-26 2015-01-01 Barkley, Inc. System and method for communication and processing between devices and objects
CN103617382B (en) * 2013-11-22 2017-10-17 北京奇虎科技有限公司 Method for secret protection and its device

Patent Citations (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN104281946A (en) * 2013-07-11 2015-01-14 北京同方微电子有限公司 Safe and reliable mobile payment transaction method
CN104166914A (en) * 2014-08-20 2014-11-26 武汉天喻信息产业股份有限公司 Secure system and method based on secure element and applied to host card emulation technology

Non-Patent Citations (1)

* Cited by examiner, † Cited by third party
Title
佚名: "基于HCE移动支付研究报告", 《HTTP://WWW.MPAYPASS.COM.CN/NEWS/201409/26165408.HTML》 *

Cited By (7)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN106127467A (en) * 2016-06-20 2016-11-16 上海易码信息科技有限公司 The method of mobile payment integrating financial card paying and settle accounts
CN106096450A (en) * 2016-06-21 2016-11-09 依偎科技(南昌)有限公司 A kind of application program freezing method and mobile terminal
CN107316197A (en) * 2017-07-04 2017-11-03 广东欧珀移动通信有限公司 A kind of payment protection method, mobile terminal and computer-readable recording medium
WO2019153780A1 (en) * 2018-02-12 2019-08-15 北京金山安全软件有限公司 Method, apparatus, electronic device and storage medium for protecting private key of digital wallet
CN112262548A (en) * 2019-02-28 2021-01-22 华为技术有限公司 File processing method and terminal equipment
US12008121B2 (en) 2019-02-28 2024-06-11 Huawei Technologies Co., Ltd. File processing method and terminal device
CN113793156A (en) * 2020-12-18 2021-12-14 京东科技控股股份有限公司 Method, device, equipment and storage medium for prompting fraud application program

Also Published As

Publication number Publication date
CN105550866B (en) 2020-05-19
WO2016192453A1 (en) 2016-12-08

Similar Documents

Publication Publication Date Title
CN105550866A (en) Safety control method and apparatus
US10430616B2 (en) Systems and methods for secure processing with embedded cryptographic unit
EP2572310B1 (en) Computer motherboard having peripheral security functions
CN104012034B (en) The certification of the application relevant for network access
CN103793815A (en) Mobile intelligent terminal acquirer system and method suitable for bank cards and business cards
CN103609136A (en) Method for in-situ upgrading RFID readers
IL235203A (en) Multi-issuer secure element partition architecture for nfc enabled devices
CN105957276A (en) Android system-based intelligent POS security system, starting method and data management control method
CN105683990A (en) Method and apparatus for protecting dynamic libraries
CN107622390B (en) System and method for a secure payment terminal without battery
Cheng et al. A secure and practical key management mechanism for NFC read-write mode
CN103152174A (en) Data processing method, device and parking lot management system applied to parking lot
CN106778337A (en) Document protection method, device and terminal
CN108229144A (en) A kind of verification method of application program, terminal device and storage medium
CN102438239A (en) Mobile terminal compound information protecting method based on intelligent security card
CN105847292A (en) NFC-HCE cloud authentication method , device and system
CN104112199A (en) Multi-communication-port IC card safety terminal, access system and financial transaction payment method
CN101888627B (en) Mobile terminal and system data protection method thereof
CN107197025A (en) A kind of intelligent POS long-distance management system and method
CN205451071U (en) Machine case data destructors that uncaps
CN103873241A (en) Safety shield, and digital-certificate management system and method
CN104732391A (en) Payment terminal, payment background and payment method using virtual card
CN107948973B (en) Equipment fingerprint generation method applied to IOS (input/output system) for security risk control
EP3387605A1 (en) Interception of touch pad events for handling in a secure environment
CN101420299A (en) Method for enhancing stability of intelligent cipher key equipment and intelligent cipher key equipment

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
GR01 Patent grant
GR01 Patent grant