CN105554032A - Identity real-name authentication method and authentication system based on express sending - Google Patents

Identity real-name authentication method and authentication system based on express sending Download PDF

Info

Publication number
CN105554032A
CN105554032A CN201610075678.5A CN201610075678A CN105554032A CN 105554032 A CN105554032 A CN 105554032A CN 201610075678 A CN201610075678 A CN 201610075678A CN 105554032 A CN105554032 A CN 105554032A
Authority
CN
China
Prior art keywords
identity information
user
intelligent terminal
courier
identity
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Granted
Application number
CN201610075678.5A
Other languages
Chinese (zh)
Other versions
CN105554032B (en
Inventor
张丽秀
韩磊
姜喜辉
吴为龙
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Shenzhen Payment Circle Science And Technology Ltd
Original Assignee
Shenzhen Payment Circle Science And Technology Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Shenzhen Payment Circle Science And Technology Ltd filed Critical Shenzhen Payment Circle Science And Technology Ltd
Priority to CN201610075678.5A priority Critical patent/CN105554032B/en
Publication of CN105554032A publication Critical patent/CN105554032A/en
Application granted granted Critical
Publication of CN105554032B publication Critical patent/CN105554032B/en
Expired - Fee Related legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/08Network architectures or network communication protocols for network security for authentication of entities
    • H04L63/0869Network architectures or network communication protocols for network security for authentication of entities for achieving mutual authentication
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/30Authentication, i.e. establishing the identity or authorisation of security principals
    • G06F21/31User authentication
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06QINFORMATION AND COMMUNICATION TECHNOLOGY [ICT] SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES; SYSTEMS OR METHODS SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES, NOT OTHERWISE PROVIDED FOR
    • G06Q10/00Administration; Management
    • G06Q10/08Logistics, e.g. warehousing, loading or distribution; Inventory or stock management
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/08Network architectures or network communication protocols for network security for authentication of entities
    • H04L63/0876Network architectures or network communication protocols for network security for authentication of entities based on the identity of the terminal or configuration, e.g. MAC address, hardware or software configuration or device fingerprint

Abstract

The invention discloses an identity real-name authentication method and authentication system based on express sending. The method comprises: when an intelligent terminal of a courier receives a sending request of a user, acquiring identity information of the user and sending data; by the intelligent terminal of the courier, uploading the identity information of the user and the sending data to a corresponding express company system after encrypting the identity information of the user and the sending data; by the express company system, carrying out decryption after carrying out integrity checking on the received encrypted identity information of the user and the received encrypted sending data, generating an identity information abstract on the decrypted identity information of the user, and storing the analyzed sending data; and by the express company system, carrying out real-name authentication on the identity information abstract of the user, storing the identity information abstract after successfully carrying out real-name authentication, and returning an authentication result to the intelligent terminal of the courier. According to the identity real-name authentication method and authentication system based on express sending, which are disclosed by the invention, a multiple encryption method is adopted, so that safety of user identity information transmission is improved; and the courier is prompted whether to send an express item to the user according to an identity checking result, so that data leakage is prevented, and convenience is provided for the user.

Description

A kind of identity real name verification method and verification system posting part based on express delivery
Technical field
The present invention relates to identity real name verification technique field, particularly relate to a kind of identity real name verification method and the verification system of posting part based on express delivery.
Background technology
Before this, express delivery is lost, " poison parcel " event occurs repeatedly, has caused the worry of people to express delivery safety.Commission of Comprehensive Administration of central authorities is clear and definite in the teleconference held on October 22nd, 2015,15 departments such as Office of the Central Committee for Comprehensive Management of Public Security, the Ministry of Public Security, Ministry of Industry and Information play in by the end of March, 2016 from October 23rd, 2015, concentrate in China and carry out dangerous and explosive articles, consignment logistics clean-up and rectification and contradiction and disputes investigation and dissolve special campaigns, implement joint sealing, the registration of consignment logistics activity real name, mail express mail X-ray machine safety check system etc. after the first Visually Inspected of consignment article comprising allround promotion.
Existing express delivery real name registration system: need to show identity card when namely client posts express mail, express company business personnel not only will open bag inspection, examine consignment article, also will by these information registration input computer, and information system is the special software of being installed by public security department.And addressee also must show identity card reception express delivery.State Post Bureau's regulation was from November 1, and mail, express mail require to post by receiving after examining sender telephone number and related identification information comparison.The express mail of the Protocol Client of mail and existing Security Assurance Mechanism, to be sent and mailed by self-service post office's (intelligent express mail case) etc. except.
The problem run into when system of real name performs in prior art mainly contains:
1, system of real name is received increasing pulling of single vote express mail and sends the time with charge free, reduces the operating efficiency of courier.
2, client needs spended time to handle registration, and process is loaded down with trivial details, posts part bring trouble for receipts.
3, express company mostly is individual enterprise, and the personal information of user is easily revealed at transmission information, for the information security of user is made troubles.
Therefore, prior art has yet to be improved and developed.
Summary of the invention
In view of the deficiencies in the prior art, the object of the invention is to provide a kind of identity real name verification method and the verification system of posting part based on express delivery, is intended to solve real name verification process in prior art loaded down with trivial details, the defect that userspersonal information easily reveals when transmitting.
Technical scheme of the present invention is as follows:
Post an identity real name verification method for part based on express delivery, wherein, method comprises:
A, when courier's intelligent terminal for reception to user post part request time, obtain the identity information of user and shipment data;
B, courier's intelligent terminal are uploaded to corresponding express company's system by after the identity information of user and shipment data encryption;
C, express company's system are deciphered after carrying out completeness check to the identity information of the user after the encryption received and shipment data, generate identity information summary, the shipment data after storing and resolving to the identity information of the user after deciphering;
The identity information summary of D, express company's system of users carries out real name verification, stores identity information summary, and the result is back to courier's intelligent terminal after real name verification success.
The described identity real name verification method posting part based on express delivery, wherein, described step B specifically comprises:
The intelligent terminal of B1, courier logs in express company's system, and express company's system distributes the first dynamic session and the second dynamic session automatically to courier's intelligent terminal;
B2, intelligent terminal utilize the first dynamic session once to encrypt rear formation identity information ciphertext to the identity information of user, and identity information ciphertext and shipment data are spliced into character string by specific form, to character string by hash function calculate summary and by the second dynamic session to summary carry out superencipher generate digital signature;
B3, digital signature to be added in character string, and be assembled into the generated data of specific format;
Generated data is uploaded to corresponding express company's system by B4, intelligent terminal.
The described identity real name verification method posting part based on express delivery, wherein, described step C specifically comprises:
The generated data deciphering that C1, express company's system docking receive, parses summary by the first decruption key, and verifies summary, judges that whether the generated data received is complete;
If the generated data that C2 receives is complete, then obtains identity information ciphertext, with the second decruption key, identity information ciphertext is decrypted, identity information summary is generated to the identity information after deciphering, and the shipment data after storing and resolving;
If the generated data that C3 receives is not complete, intelligent terminal then to courier returns error message, prompting is re-entered, until detect receive generated data be complete after, then obtain identity information ciphertext, with the second decruption key, identity information ciphertext is decrypted, identity information summary is generated to the identity information after deciphering, and the shipment data after storing and resolving.
The described identity real name verification method posting part based on express delivery, wherein, described step D specifically comprises:
Corresponding subscriber identity information summary whether is there is in D1, express company's system queries local record;
If there is corresponding subscriber identity information summary in D2 local record, then directly to verify in this locality, and the result is presented at courier's intelligent terminal;
If there is not corresponding subscriber identity information summary in D3 local record, then subscriber identity information is uploaded to identity verification system and carry out authentication, the result is presented at courier's intelligent terminal, the identity information summary after being proved to be successful is stored in the local record of express company's system.
The described identity real name verification method posting part based on express delivery, wherein, also comprises after described step D:
If E identity information authentication failed, then user is pointed out again to provide identity information.
Post an identity real name verification system for part based on express delivery, wherein, system comprises:
Data acquisition module, for when courier intelligent terminal for reception to user post part request time, obtain the identity information of user and shipment data;
Transmission module in encryption, the intelligent terminal for courier is uploaded to corresponding express company's system by after the identity information of user and shipment data encryption;
Deciphering module, deciphers after carrying out completeness check for express company's system to the identity information of the user after the encryption received and shipment data, generates identity information summary, the shipment data after storing and resolving to the identity information of the user after deciphering;
Authentication module, the identity information summary for express company's system of users carries out real name verification, stores identity information summary, and the result is back to courier's intelligent terminal after real name verification success.
The described identity real name verification system posting part based on express delivery, wherein, in described encryption, transmission module specifically comprises:
Log in and allocation units, the intelligent terminal for courier logs in express company's system, and express company's system distributes the first dynamic session and the second dynamic session automatically to courier's intelligent terminal;
Ciphering unit, the first dynamic session is utilized once to encrypt rear formation identity information ciphertext to the identity information of user for intelligent terminal, and identity information ciphertext and shipment data are spliced into character string by specific form, to character string by hash function calculate summary and by the second dynamic session to summary carry out superencipher generate digital signature;
Data Synthesis unit, for digital signature being added in character string, and is assembled into the generated data of specific format;
Data upload unit, is uploaded to corresponding express company's system for intelligent terminal by generated data.
The described identity real name verification system posting part based on express delivery, wherein, described deciphering module specifically comprises:
Deciphering and verification unit, for the generated data deciphering that express company's system docking receives, parse summary by the first decruption key, and verify summary, judge that whether the generated data received is complete;
Resolve and memory cell, if be complete for the generated data received, then obtain identity information ciphertext, with the second decruption key, identity information ciphertext is decrypted, identity information summary is generated to the identity information after deciphering, and the shipment data after storing and resolving;
Transmission unit, if be not complete for the generated data received, intelligent terminal then to courier returns error message, prompting is re-entered, until detect the generated data received be complete after, then obtain identity information ciphertext, with the second decruption key, identity information ciphertext be decrypted, identity information summary is generated to the identity information after deciphering, and the shipment data after storing and resolving.
The described identity real name verification system posting part based on express delivery, wherein, described authentication module specifically comprises:
Whether query unit, for existing corresponding subscriber identity information summary in express company's system queries local record;
First authentication unit, if for there is corresponding subscriber identity information summary in local record, then directly to verify in this locality, and the result is presented at courier's intelligent terminal;
Second authentication unit, if for there is not corresponding subscriber identity information summary in local record, then subscriber identity information is uploaded to identity verification system and carry out authentication, the result is presented at courier's intelligent terminal, the identity information summary after being proved to be successful is stored in the local record of express company's system.
The described identity real name verification system posting part based on express delivery, wherein, described system also comprises:
Reminding module, if for identity information authentication failed, then points out user again to provide identity information.The invention provides a kind of identity real name verification method and the verification system of posting part based on express delivery, multiple encryption method is adopted to improve the fail safe of subscriber identity information transmission in the present invention, according to the prompting of identification check result, whether courier posts part to user, prevent the leakage of subscriber identity information and fast delivery data, provide users with the convenient.
Accompanying drawing explanation
Fig. 1 is a kind of flow chart posting the identity real name verification method preferred embodiment of part based on express delivery in the present invention.
Fig. 2 is a kind of functional schematic block diagram posting the preferred embodiment of the identity real name verification system of part based on express delivery of the present invention.
Embodiment
For making object of the present invention, technical scheme and effect clearly, clearly, the present invention is described in more detail below.Should be appreciated that specific embodiment described herein only in order to explain the present invention, be not intended to limit the present invention.
Present invention also offers a kind of flow chart posting the preferred embodiment of the identity real name verification system of part based on express delivery, as shown in Figure 1, wherein, method comprises:
Step S100, when courier intelligent terminal for reception to user post part request time, obtain the identity information of user and shipment data.
During concrete enforcement, when user wants to post part, by online booking or make a phone call predetermined mode, part request is posted in transmission, user is posted the intelligent terminal that part request is sent to courier by allotment center, courier goes to sender position to accept the express delivery of sender's transmission, checks and accepts express delivery then and there, and adopts intelligent terminal to obtain identity information and the shipment data of user.Wherein, intelligent terminal can be smart mobile phone or other there is the intelligent handheld device of network savvy.Courier is by the identity information of machine-readable or manual typing user and shipment data.Wherein the identity information of user refers to the information of the identity of unique provable user, includes but not limited to the identification card number of user, passport number, also can be that other prove the number of user identity.
The intelligent terminal of step S200, courier is uploaded to corresponding express company's system by after the identity information of user and shipment data encryption.
During concrete enforcement, the identity information of the user got is carried out specific combination by the intelligent terminal of courier, adopts the cryptographic means such as symmetrical, asymmetric, is sent to express company's system.In order to ensure the fail safe of data message, adopt encrypted transmission in transfer of data.Transfer of data except adopt encrypted transmission method of the present invention, or on encrypted transmission method basis of the present invention further optional employing standard Https agreement or ssl protocol.Wherein shipment data comprises the information such as name, phone, address, goods information of sender, addressee.Ssl protocol can be divided into two-layer: SSL record protocol (SSLRecordProtocol): it is based upon on reliable host-host protocol (as TCP), provides the support of the basic functions such as data encapsulation, compression, encryption for upper-layer protocol.Ssl handshake protocol (SSLHandshakeProtocol): it is based upon on SSL record protocol, for before the transfer of data of reality starts, communication two party carries out authentication, consulted encryption algorithm, exchange encryption keys etc.
Step S300, express company's system are deciphered after carrying out completeness check to the identity information of the user after the encryption received and shipment data, generate identity information summary, the shipment data after storing and resolving to the identity information of the user after deciphering.
During concrete enforcement, express company's system to the identity information of the user after the encryption received and delivery generated data digital signature decryption verification, parse subscriber identity information ciphertext and shipment data, wherein shipment data comprises waybill, telephone number.Independent extraction identity information ciphertext is decrypted rear calculating summarization generation identity information summary, particularly, waybill, telephone number stored in clear also can be able to be stored in specific background server to express company's system.
The identity information summary of step S400, express company's system of users carries out real name verification, stores identity information summary, and the result is back to courier's intelligent terminal after real name verification success.
During concrete enforcement, the identity information summary of express company's system to the user got is verified, is verified by identity verification system.Also can select to verify that my identity card whether current sender uses is verified by the biological information such as face or fingerprint.If authorization information correspondence, real name verification success; If authorization information is not corresponding, then real name verification failure, and the result is presented at the intelligent terminal of courier, store identity information after real name verification success and make a summary in the local record of express company's system.
During further enforcement, described step S200 specifically comprises:
The intelligent terminal of step S201, courier logs in express company's system, and express company's system distributes the first dynamic session and the second dynamic session automatically to courier's intelligent terminal;
Step S202, intelligent terminal utilize the first dynamic session once to encrypt rear formation identity information ciphertext to the identity information of user, and identity information ciphertext and shipment data are spliced into character string by specific form, to character string by hash function calculate summary and by the second dynamic session to summary carry out superencipher generate digital signature;
Step S203, digital signature to be added in character string, and be assembled into the generated data of specific format;
Generated data is uploaded to corresponding express company's system by step S204, intelligent terminal.
During concrete enforcement, in order to ensure identity information confidentiality, integrality, resisting denying is also truly available, when each courier's client logs in, system is automatically distributed two dynamic session KSEnc and KSMac:KSEnc and is encrypted for identity information, KSMac is for generating data summarization signature, two dynamic key adopt root transmission master key TMK encryption, TMK key only has courier's client and backstage to hold, master key is only write and not can read, courier client TMK key can be stored in terminal hardware secure storage unit module SE, safe write is carried out by key IC-card by safety officer, regular update.Session key KSEnc and KSMac ensures that each encrypted result is all different, avoids Replay Attack.
Courier's client generates digital signature with KSMac3DES encryption after character string is calculated summary with MD5Hash function again, after generating signature, signature group is installed in specific format data, specific format for the formula of fixing be JSON form or XML format, or the Base64 coded format of JSON, and be assembled into the datagram of format, datagram as Parameter transfer to service end.JSON (JavaScriptObjectNotation) is a kind of data interchange format of lightweight.It is based on a subset of ECMAScript.JSON adopts the text formatting being totally independent of language, is easy to people and reads and write, and is also easy to machine simultaneously and resolves and generate.
Ciphering signature process is as follows:
In parameter list, parameter refers to encrypted content, such as: sendName Parametric Representation sender name; Sprovince refers to province, sender place, and revName refers to addressee's name; The like.Outside removing sign, sign_type two parameters, other need the parameter used to be all the parameter that will sign.Wherein ID card information is ciphertext transmission.Such as data encryption key KSEnc is: 0123456789ABCDEFFEDCBA9876543210, identification card number information as: 440190198601238732.Identification card number is supplied 32, inadequate benefit F.Identification card number data become: 440190198601238732FFFFFFFFFFFFFF.With KSEnc double secret key identity card data carry out 3DES encrypt E (IDCode) result as follows: 6D2D2175597A10108E374060BE2341CF.Optional sender telephone number ciphering process by that analogy, repeats no more.
To the order sequence of each value in data from a to z, if run into identical initial, then see second letter, by that analogy.Array all elements, character string is spliced into " & " character according to the pattern of " parameter is good for=parameter value ", then digital signature is generated with KSMac encryption again after character string being calculated summary with MD5Hash function, after generating signature, signature group is installed in data, and be assembled into json form.Using json data as Parameter transfer to service end.Data are as shown in table 1
Table 1
Parameter is good for Parameter value
Keys Value
sendPhone 1XXXXXXXXXX
sendName Zhang San
sprovince XX economizes
scity XX city
sarea XX district
sendAddr XX XX center, XX university city XX main road XX layer
revPhone 1XXXXXXXXXX
revName Li Si
rprovince XX economizes
rcity XX city
rarea XX district
revAddr No. XX, XX street
itemStatus File
freight 14.00 // freight charges
orderNote Remarks 5-->
takeAddr Appointed place
idCode 6D2D2175597A10108E374060BE2341CF
The character string clear data M participating in compute signature is as follows:
XX floor & sendName=Zhang San & sendPhone=1XXXXXXXXXX & sprovince=XX province & takeAddr=appointed place, XX XX center, & sendAddr=XX university city XX main road, & scity=XX city, XX & revName=Li Si & revPhone=1XXXXXXXXXX & & sarea=XX district of rprovince=XX province, & revAddr=XX street, & rcity=XX city, freight=14.00 & idCode=6D2D2175597A10108E374060BE2341CF & itemStatus=file & orderNote=remarks & rarea=XX forest zone
The hashed value H (M) carried out by character string clear data M after Hash function calculating summary is: f7edb2f5406fa79a970c517b042a8809,
Suppose that digital signature encryption key K SMac is also: 0123456789ABCDEFFEDCBA9876543210,
Digital signature E (H (M)): C485F8C0ED67E90A94C3F6D88DC65897 is generated again by KSMac3DES cryptographic digest,
Certain KSMac also can be the RSA cryptographic algorithms PKI of backstage express system, and process slightly.
On request signature group is dressed up formulation json data M||E (H (M)) as follows:
{ " freight ": " 14.00 ", " idCode ": " 6D2D2175597A10108E374060BE2341CF ", " itemStatus ": " file ", " orderNote ": " remarks ", " rarea ": " XX district ", " rcity ": " XX city ", " revAddr ": " No. XX, XX street ", " revName ": " Li Si ", " revPhone ": " 1XXXXXXXXXX ", " rprovince ": " XX province ", " sarea ": " XX district ", " scity ": " XX city ", " sendAddr ": " XX XX center, XX university city XX main road XX layer ", " sendName ": " Zhang San ", " sendPhone ": " 1XXXXXXXXXX ", " sprovince ": " XX province ", " takeAddr ": " appointed place ", " sign ": " C485F8C0ED67E90A94C3F6D88DC65897 ", " sign_type ": " MD5 " }.
In further embodiment, described step S300 specifically comprises:
The generated data deciphering that step S301, express company's system docking receive, parses summary by the first decruption key, and verifies summary, judges that whether the generated data received is complete;
If the generated data that step S302 receives is complete, then obtains identity information ciphertext, with the second decruption key, identity information ciphertext is decrypted, identity information summary is generated to the identity information after deciphering, and the shipment data after storing and resolving;
If the generated data that step S303 receives is not complete, intelligent terminal then to courier returns error message, prompting is re-entered, until detect receive generated data be complete after, then obtain identity information ciphertext, with the second decruption key, identity information ciphertext is decrypted, identity information summary is generated to the identity information after deciphering, and the shipment data after storing and resolving.
During concrete enforcement, it is f7edb2f5406fa79a970c517b042a8809 that certifying digital signature after data pass to background server: backstage digital signature decruption key KSMac deciphering sign parameter D (E (H (M))) obtains summary H (M) hashed value, then with HASH function, generation digest calculations value H (M ') is calculated to the original text M ' received, contrast with the summary info of deciphering.If identical, then illustrate that the information received is complete, be not modified, otherwise descriptive information was modified in transmitting procedure, therefore digital signature can the integrality of authorization information.Whether backstage is complete according to calculation of parameter signature, if imperfect, return to courier's Client-Prompt and " receives data check to make mistakes ";
If data integrity, identity document information is extracted and deciphers D (E (IDCode)) with KSEnc, then Hash function calculating summary H (IDCode) or H (IDCode+Salt) are carried out separately to ID card No..Wherein this " Salt value " is by background system stochastic generation, and only has system to know and preserve.Like this, even if two users employ same ID card No., because system is that the salt value that they generate is different, their hashed value is also different.Even if hacker can look for the user with specific identity card number by the ID card No. of oneself and the hashed value oneself generated, also cannot be successful, thus reduce further the probability that identification card number in real name verification is cracked.The shipment data after storing and resolving is wanted after successful decryption.
In further embodiment, described step S400 specifically comprises:
Corresponding subscriber identity information summary whether is there is in step S401, express company's system queries local record;
If there is corresponding subscriber identity information summary in step S402 local record, then directly to verify in this locality, and the result is presented at courier's intelligent terminal;
If there is not corresponding subscriber identity information summary in step S403 local record, then subscriber identity information is uploaded to identity verification system and carry out authentication, the result is presented at courier's intelligent terminal, the identity information summary after being proved to be successful is stored in the local record of express company's system.
During concrete enforcement, identity summary info is preferably designated as ID card No. Hash summary, the identity information historical summaries record that then ID card No. Hash summary is first crossed with local cache carries out searching comparison, perhaps, the identity information summary of local cache is that other courier's history are verified into merits and demerits and create, and shows in courier's client if comparison result (such as: name is consistent with passport NO.) is directly returned in local comparison success;
If this locality is searched unsuccessfully, continue to call public security encipher interface identity information to be passed to Ministry of Public Security population information system (or other third party's identity verification system) and carry out ID card No. and verify comparison, after Ministry of Public Security's system return data, comparison result (such as: name is consistent with passport NO.) is shown in courier's client, then whether accurately the information of sender is manually examined by courier, as comparison success, this express delivery can be collected, last local backstage express system buffer memory identity card summary info H (IDCode) or H (IDCode+Salt), share to other couriers and facilitate sender's authentication next time, save and public security system online checking link, shorten the identification check stand-by period, improve and verify efficiency.
The ID card No. summary hashed value that express system was calculated by buffer memory first time shares to other couriers as authentication foundation when posting part next time, greatly improve authentication efficiency, the hashed value of buffer memory ID card No., even if illegally obtained by hacker and also cannot go out the information such as ID card No. by backstepping, prevent the individual privacy information such as identification card number from not revealed.
Further, also comprise after described step S400:
If step S500 identity information authentication failed, then user is pointed out again to provide identity information.
During concrete enforcement, if detect the identity information of user with public security system online checking failure after, as inconsistent in name and passport NO., point out sender again to provide relevant information.If sender is piped off or chasing personnel by the Ministry of Public Security, then courier is pointed out to forbid addressee.Concrete, if user is suspect, prompting can implicitly be expressed, and such as points out user to post prohibited items.System is verified and is found that this user lists chasing personnel's blacklist in, and the intelligent terminal of that courier can also automatic alarm, notifies 110 systems.Or the identity card reported the loss that user falsely uses others posts part, usurping certificate is also do not allow to post part.Piped off by public security system when user once posts prohibited items, also can popup menu prompting.
It should be noted that the real name verification when addressee also can adopt said method, but save the step of user's reservation.
The invention provides a kind of identity real name verification method posting part based on express delivery, method comprises: after courier receives the request of user's addressee, sender position is gone to accept the express delivery of sender's transmission, check and accept express delivery then and there, and adopt professional equipment or smart mobile phone, the ID card information of machine-readable or manual typing sender, then shipment data is uploaded, and sender's ID card information, data acquisition cryptographic algorithm is encrypted, system acceptance is verified to data, backstage is according to after corresponding decipherment algorithm data decryption, fast delivery data is stored, then ID card information is sent out and verified by authentication system, again the result of checking is returned to equipment.
Present invention also offers a kind of functional schematic block diagram posting the preferred embodiment of the identity real name verification system of part based on express delivery, as shown in Figure 2, system comprises:
Data acquisition module 100, for when courier intelligent terminal for reception to user post part request time, obtain the identity information of user and shipment data; Concrete as above described in embodiment of the method.
Transmission module 200 in encryption, the intelligent terminal for courier is uploaded to corresponding express company's system by after the identity information of user and shipment data encryption; Concrete as above described in embodiment of the method.
Deciphering module 300, deciphers after carrying out completeness check for express company's system to the identity information of the user after the encryption received and shipment data, generates identity information summary, the shipment data after storing and resolving to the identity information of the user after deciphering; Concrete as above described in embodiment of the method.
Authentication module 400, the identity information summary for express company's system of users carries out real name verification, stores identity information summary, and the result is back to courier's intelligent terminal after real name verification success; Concrete as above described in embodiment of the method.
In further embodiment, in described encryption, transmission module specifically comprises:
Log in and allocation units, the intelligent terminal for courier logs in express company's system, and express company's system distributes the first dynamic session and the second dynamic session automatically to courier's intelligent terminal; Concrete as above described in embodiment of the method.
Ciphering unit, the first dynamic session is utilized once to encrypt rear formation identity information ciphertext to the identity information of user for intelligent terminal, and identity information ciphertext and shipment data are spliced into character string by specific form, to character string by hash function calculate summary and by the second dynamic session to summary carry out superencipher generate digital signature; Concrete as above described in embodiment of the method.
Data Synthesis unit, for digital signature being added in character string, and is assembled into the generated data of specific format; Concrete as above described in embodiment of the method.
Data upload unit, is uploaded to corresponding express company's system for intelligent terminal by generated data; Concrete as above described in embodiment of the method.
Further, described deciphering module specifically comprises:
Deciphering and verification unit, for the generated data deciphering that express company's system docking receives, parse summary by the first decruption key, and verify summary, judge that whether the generated data received is complete; Concrete as above described in embodiment of the method.
Resolve and memory cell, if be complete for the generated data received, then obtain identity information ciphertext, with the second decruption key, identity information ciphertext is decrypted, identity information summary is generated to the identity information after deciphering, and the shipment data after storing and resolving; Concrete as above described in embodiment of the method.
Transmission unit, if be not complete for the generated data received, intelligent terminal then to courier returns error message, prompting is re-entered, until detect the generated data received be complete after, then obtain identity information ciphertext, with the second decruption key, identity information ciphertext be decrypted, identity information summary is generated to the identity information after deciphering, and the shipment data after storing and resolving; Concrete as above described in embodiment of the method.
During concrete enforcement, described authentication module specifically comprises:
Whether query unit, for existing corresponding subscriber identity information summary in express company's system queries local record; Concrete as above described in embodiment of the method.
First authentication unit, if for there is corresponding subscriber identity information summary in local record, then directly to verify in this locality, and the result is presented at courier's intelligent terminal; Concrete as above described in embodiment of the method.
Second authentication unit, if for there is not corresponding subscriber identity information summary in local record, then subscriber identity information is uploaded to identity verification system and carry out authentication, the result is presented at courier's intelligent terminal, the identity information summary after being proved to be successful is stored in the local record of express company's system; Concrete as above described in embodiment of the method.
Further, described system also comprises:
Reminding module, if for identity information authentication failed, then points out user again to provide identity information; Concrete as above described in embodiment of the method.
In sum, the invention provides a kind of identity real name verification method and the verification system of posting part based on express delivery, method comprises: when courier intelligent terminal for reception to user post part request time, obtain the identity information of user and shipment data; The intelligent terminal of courier is uploaded to corresponding express company's system by after the identity information of user and shipment data encryption; Express company's system is deciphered after carrying out completeness check to the identity information of the user after the encryption received and shipment data, generates identity information summary, the shipment data after storing and resolving to the identity information of the user after deciphering; The identity information summary of express company's system of users carries out real name verification, stores identity information summary, and the result is back to courier's intelligent terminal after real name verification success.Adopt multiple encryption method to improve the fail safe of subscriber identity information transmission in the present invention, according to the prompting of identification check result, whether courier posts part to user, prevents the leakage of subscriber identity information and fast delivery data, provides users with the convenient.
Should be understood that, application of the present invention is not limited to above-mentioned citing, for those of ordinary skills, can be improved according to the above description or convert, and all these improve and convert the protection range that all should belong to claims of the present invention.

Claims (10)

1. post an identity real name verification method for part based on express delivery, it is characterized in that, method comprises:
A, when courier's intelligent terminal for reception to user post part request time, obtain the identity information of user and shipment data;
B, courier's intelligent terminal are uploaded to corresponding express company's system by after the identity information of user and shipment data encryption;
C, express company's system are deciphered after carrying out completeness check to the identity information of the user after the encryption received and shipment data, generate identity information summary, the shipment data after storing and resolving to the identity information of the user after deciphering;
The identity information summary of D, express company's system of users carries out real name verification, stores identity information summary, and the result is back to courier's intelligent terminal after real name verification success.
2. the identity real name verification method posting part based on express delivery according to claim 1, it is characterized in that, described step B specifically comprises:
The intelligent terminal of B1, courier logs in express company's system, and express company's system distributes the first dynamic session and the second dynamic session automatically to courier's intelligent terminal;
B2, intelligent terminal utilize the first dynamic session once to encrypt rear formation identity information ciphertext to the identity information of user, and identity information ciphertext and shipment data are spliced into character string by specific form, to character string by hash function calculate summary and by the second dynamic session to summary carry out superencipher generate digital signature;
B3, digital signature to be added in character string, and be assembled into the generated data of specific format;
Generated data is uploaded to corresponding express company's system by B4, intelligent terminal.
3. the identity real name verification method posting part based on express delivery according to claim 2, it is characterized in that, described step C specifically comprises:
The generated data deciphering that C1, express company's system docking receive, parses summary by the first decruption key, and verifies summary, judges that whether the generated data received is complete;
If the generated data that C2 receives is complete, then obtains identity information ciphertext, with the second decruption key, identity information ciphertext is decrypted, identity information summary is generated to the identity information after deciphering, and the shipment data after storing and resolving;
If the generated data that C3 receives is not complete, intelligent terminal then to courier returns error message, prompting is re-entered, until detect receive generated data be complete after, then obtain identity information ciphertext, with the second decruption key, identity information ciphertext is decrypted, identity information summary is generated to the identity information after deciphering, and the shipment data after storing and resolving.
4. the identity real name verification method posting part based on express delivery according to claim 3, it is characterized in that, described step D specifically comprises:
Corresponding subscriber identity information summary whether is there is in D1, express company's system queries local record;
If there is corresponding subscriber identity information summary in D2 local record, then directly to verify in this locality, and the result is presented at courier's intelligent terminal;
If there is not corresponding subscriber identity information summary in D3 local record, then subscriber identity information is uploaded to identity verification system and carry out authentication, the result is presented at courier's intelligent terminal, the identity information summary after being proved to be successful is stored in the local record of express company's system.
5. the identity real name verification method posting part based on express delivery according to claim 4, is characterized in that, also comprise after described step D:
If E identity information authentication failed, then user is pointed out again to provide identity information.
6. post an identity real name verification system for part based on express delivery, it is characterized in that, system comprises:
Data acquisition module, for when courier intelligent terminal for reception to user post part request time, obtain the identity information of user and shipment data;
Transmission module in encryption, the intelligent terminal for courier is uploaded to corresponding express company's system by after the identity information of user and shipment data encryption;
Deciphering module, deciphers after carrying out completeness check for express company's system to the identity information of the user after the encryption received and shipment data, generates identity information summary, the shipment data after storing and resolving to the identity information of the user after deciphering;
Authentication module, the identity information summary for express company's system of users carries out real name verification, stores identity information summary, and the result is back to courier's intelligent terminal after real name verification success.
7. the identity real name verification system posting part based on express delivery according to claim 6, it is characterized in that, in described encryption, transmission module specifically comprises:
Log in and allocation units, the intelligent terminal for courier logs in express company's system, and express company's system distributes the first dynamic session and the second dynamic session automatically to courier's intelligent terminal;
Ciphering unit, the first dynamic session is utilized once to encrypt rear formation identity information ciphertext to the identity information of user for intelligent terminal, and identity information ciphertext and shipment data are spliced into character string by specific form, to character string by hash function calculate summary and by the second dynamic session to summary carry out superencipher generate digital signature;
Data Synthesis unit, for digital signature being added in character string, and is assembled into the generated data of specific format;
Data upload unit, is uploaded to corresponding express company's system for intelligent terminal by generated data.
8. the identity real name verification system posting part based on express delivery according to claim 7, it is characterized in that, described deciphering module specifically comprises:
Deciphering and verification unit, for the generated data deciphering that express company's system docking receives, parse summary by the first decruption key, and verify summary, judge that whether the generated data received is complete;
Resolve and memory cell, if be complete for the generated data received, then obtain identity information ciphertext, with the second decruption key, identity information ciphertext is decrypted, identity information summary is generated to the identity information after deciphering, and the shipment data after storing and resolving;
Transmission unit, if be not complete for the generated data received, intelligent terminal then to courier returns error message, prompting is re-entered, until detect the generated data received be complete after, then obtain identity information ciphertext, with the second decruption key, identity information ciphertext be decrypted, identity information summary is generated to the identity information after deciphering, and the shipment data after storing and resolving.
9. the identity real name verification system posting part based on express delivery according to claim 8, it is characterized in that, described authentication module specifically comprises:
Whether query unit, for existing corresponding subscriber identity information summary in express company's system queries local record;
First authentication unit, if for there is corresponding subscriber identity information summary in local record, then directly to verify in this locality, and the result is presented at courier's intelligent terminal;
Second authentication unit, if for there is not corresponding subscriber identity information summary in local record, then subscriber identity information is uploaded to identity verification system and carry out authentication, the result is presented at courier's intelligent terminal, the identity information summary after being proved to be successful is stored in the local record of express company's system.
10. the identity real name verification system posting part based on express delivery according to claim 9, it is characterized in that, described system also comprises:
Reminding module, if for identity information authentication failed, then points out user again to provide identity information.
CN201610075678.5A 2016-02-03 2016-02-03 A kind of identity real name verification method and verification system for posting part based on express delivery Expired - Fee Related CN105554032B (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201610075678.5A CN105554032B (en) 2016-02-03 2016-02-03 A kind of identity real name verification method and verification system for posting part based on express delivery

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201610075678.5A CN105554032B (en) 2016-02-03 2016-02-03 A kind of identity real name verification method and verification system for posting part based on express delivery

Publications (2)

Publication Number Publication Date
CN105554032A true CN105554032A (en) 2016-05-04
CN105554032B CN105554032B (en) 2018-07-24

Family

ID=55832966

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201610075678.5A Expired - Fee Related CN105554032B (en) 2016-02-03 2016-02-03 A kind of identity real name verification method and verification system for posting part based on express delivery

Country Status (1)

Country Link
CN (1) CN105554032B (en)

Cited By (17)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN106709842A (en) * 2016-12-08 2017-05-24 杭州晟元数据安全技术股份有限公司 High-efficiency safe express delivery real-name-system method
CN106788972A (en) * 2016-12-16 2017-05-31 成都理工大学 A kind of train ticket self-help ticket-buying fetching system based on block chain authentication
CN106845886A (en) * 2016-12-08 2017-06-13 杭州晟元数据安全技术股份有限公司 One kind realizes express delivery system of real name method
CN106875143A (en) * 2017-02-09 2017-06-20 江苏军物联网股份有限公司 A kind of express delivery system of real name supervisory systems and monitoring and managing method
CN106897850A (en) * 2016-09-21 2017-06-27 摩瑞尔电器(昆山)有限公司 System of real name commodities-circulation information management and system
CN107123204A (en) * 2017-04-27 2017-09-01 嘉兴市单身狗贸易有限公司 Automatic rental method and system
CN107463598A (en) * 2017-06-09 2017-12-12 中国邮政储蓄银行股份有限公司 Distributed cache system
CN107705064A (en) * 2017-09-07 2018-02-16 顺丰科技有限公司 Method, equipment and storage medium are signed in a kind of express delivery
CN108053219A (en) * 2017-12-29 2018-05-18 浙江万里学院 A kind of safe Intelligent logistics reimbursement of expense method
CN108833351A (en) * 2018-05-17 2018-11-16 贵州大学 Express delivery real name identification method with privacy protection function
CN108833386A (en) * 2018-06-01 2018-11-16 长乐壹中正和信息科技有限公司 A kind of method and terminal of the online application mailing package for logistics system
CN109063948A (en) * 2018-06-12 2018-12-21 上海中通吉网络技术有限公司 A kind of loose mail and agreement part portfolio and real name rate statistic algorithm
CN109086586A (en) * 2018-07-19 2018-12-25 上海中通吉网络技术有限公司 Sensitive data authentication protection method and device
CN110048829A (en) * 2019-06-17 2019-07-23 钛能科技股份有限公司 A kind of encryption method and system, self checking method of device identification
CN110166244A (en) * 2018-02-13 2019-08-23 北京京东尚科信息技术有限公司 Contactless auth method, device and system
CN111506894A (en) * 2019-01-31 2020-08-07 金联汇通信息技术有限公司 Data processing method, system, electronic device and computer readable storage medium
CN115471860B (en) * 2022-09-14 2024-02-13 联通数字科技有限公司 Express real name checking method, system and computer readable storage medium

Citations (7)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US8135597B1 (en) * 2001-02-15 2012-03-13 Tahan A Christian Method using a global server for providing patient medical histories to assist in the delivery of emergency medical services
CN103150637A (en) * 2012-11-12 2013-06-12 成都锦瑞投资有限公司 Express receiving terminal real-name management system and implementation method based on bar code technology
CN103366201A (en) * 2013-07-05 2013-10-23 广东够快物流信息科技有限公司 Logistics information acquisition system having identity reading and verifying functions
CN104504594A (en) * 2014-12-17 2015-04-08 马俊 Online shopping privacy protection method and system
CN104636901A (en) * 2015-02-13 2015-05-20 深圳支付界科技有限公司 Method and system for processing express delivery data
CN104778391A (en) * 2015-03-20 2015-07-15 四川长虹电器股份有限公司 System for authorizing express cabinet to take cargos by cloud fingerprint identification platform and method thereof
CN104933371A (en) * 2015-06-04 2015-09-23 南京邮电大学 Logistics personal information privacy protection system based on multilayer-encrypted two-dimensional code

Patent Citations (7)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US8135597B1 (en) * 2001-02-15 2012-03-13 Tahan A Christian Method using a global server for providing patient medical histories to assist in the delivery of emergency medical services
CN103150637A (en) * 2012-11-12 2013-06-12 成都锦瑞投资有限公司 Express receiving terminal real-name management system and implementation method based on bar code technology
CN103366201A (en) * 2013-07-05 2013-10-23 广东够快物流信息科技有限公司 Logistics information acquisition system having identity reading and verifying functions
CN104504594A (en) * 2014-12-17 2015-04-08 马俊 Online shopping privacy protection method and system
CN104636901A (en) * 2015-02-13 2015-05-20 深圳支付界科技有限公司 Method and system for processing express delivery data
CN104778391A (en) * 2015-03-20 2015-07-15 四川长虹电器股份有限公司 System for authorizing express cabinet to take cargos by cloud fingerprint identification platform and method thereof
CN104933371A (en) * 2015-06-04 2015-09-23 南京邮电大学 Logistics personal information privacy protection system based on multilayer-encrypted two-dimensional code

Cited By (20)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN106897850A (en) * 2016-09-21 2017-06-27 摩瑞尔电器(昆山)有限公司 System of real name commodities-circulation information management and system
CN106845886A (en) * 2016-12-08 2017-06-13 杭州晟元数据安全技术股份有限公司 One kind realizes express delivery system of real name method
CN106709842A (en) * 2016-12-08 2017-05-24 杭州晟元数据安全技术股份有限公司 High-efficiency safe express delivery real-name-system method
CN106788972B (en) * 2016-12-16 2020-03-10 成都理工大学 Train ticket self-service ticket buying and taking system based on block chain identity authentication
CN106788972A (en) * 2016-12-16 2017-05-31 成都理工大学 A kind of train ticket self-help ticket-buying fetching system based on block chain authentication
CN106875143A (en) * 2017-02-09 2017-06-20 江苏军物联网股份有限公司 A kind of express delivery system of real name supervisory systems and monitoring and managing method
CN107123204A (en) * 2017-04-27 2017-09-01 嘉兴市单身狗贸易有限公司 Automatic rental method and system
CN107463598A (en) * 2017-06-09 2017-12-12 中国邮政储蓄银行股份有限公司 Distributed cache system
CN107705064A (en) * 2017-09-07 2018-02-16 顺丰科技有限公司 Method, equipment and storage medium are signed in a kind of express delivery
CN108053219A (en) * 2017-12-29 2018-05-18 浙江万里学院 A kind of safe Intelligent logistics reimbursement of expense method
CN108053219B (en) * 2017-12-29 2023-06-02 浙江万里学院 Safe intelligent logistics fee payment method
CN110166244A (en) * 2018-02-13 2019-08-23 北京京东尚科信息技术有限公司 Contactless auth method, device and system
CN108833351A (en) * 2018-05-17 2018-11-16 贵州大学 Express delivery real name identification method with privacy protection function
CN108833386B (en) * 2018-06-01 2021-04-30 福建壹中正和信息科技有限公司 Method and terminal for applying for mailing package on line for logistics system
CN108833386A (en) * 2018-06-01 2018-11-16 长乐壹中正和信息科技有限公司 A kind of method and terminal of the online application mailing package for logistics system
CN109063948A (en) * 2018-06-12 2018-12-21 上海中通吉网络技术有限公司 A kind of loose mail and agreement part portfolio and real name rate statistic algorithm
CN109086586A (en) * 2018-07-19 2018-12-25 上海中通吉网络技术有限公司 Sensitive data authentication protection method and device
CN111506894A (en) * 2019-01-31 2020-08-07 金联汇通信息技术有限公司 Data processing method, system, electronic device and computer readable storage medium
CN110048829A (en) * 2019-06-17 2019-07-23 钛能科技股份有限公司 A kind of encryption method and system, self checking method of device identification
CN115471860B (en) * 2022-09-14 2024-02-13 联通数字科技有限公司 Express real name checking method, system and computer readable storage medium

Also Published As

Publication number Publication date
CN105554032B (en) 2018-07-24

Similar Documents

Publication Publication Date Title
CN105554032A (en) Identity real-name authentication method and authentication system based on express sending
CN105656920B (en) A kind of encryption and decryption method and system for posting number of packages evidence based on express delivery
CN103716167B (en) Method and device for safely collecting and distributing transmission keys
CN100533456C (en) Security code production method and methods of using the same, and programmable device therefor
CN101720071B (en) Short message two-stage encryption transmission and secure storage method based on safety SIM card
US20080065878A1 (en) Method and system for encrypted message transmission
CN102722931A (en) Voting system and voting method based on intelligent mobile communication devices
CN108566395A (en) A kind of document transmission method, apparatus and system based on block chain
CN101815091A (en) Cipher providing equipment, cipher authentication system and cipher authentication method
CN103812651B (en) Method of password authentication, apparatus and system
CN101340289B (en) Replay attack preventing method and system thereof
CN110601856A (en) Data interaction method and device based on block chain network
CN101924739A (en) Method for encrypting, storing and retrieving software certificate and private key
CN106161444A (en) Secure storage method of data and subscriber equipment
CN102055685B (en) Method for encrypting webmail information
CN103580868A (en) Secure transmission method of electronic official document secure transmission system
CN107609821A (en) A kind of express delivery real name sends method and system and pulls receiving unit
CN103428077A (en) Method and system for safely receiving and sending mails
CN106101160A (en) A kind of system login method and device
CN102255732B (en) Safe certificate issuing method based on USB (Universal Serial Bus) key
CN109978479A (en) A kind of electronic invoice method of charging out, device, data sharing server and system
CN106921677A (en) A kind of multiple encryption system of block chain houseclearing
CN102404107A (en) Method, device, transmitting end and receiving end all capable of guaranteeing safety of inputted content
CN109711196A (en) Improve the information processing method of user's pickup safety
CN108710931A (en) A kind of address information privacy protection method based on Quick Response Code

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
GR01 Patent grant
GR01 Patent grant
CF01 Termination of patent right due to non-payment of annual fee
CF01 Termination of patent right due to non-payment of annual fee

Granted publication date: 20180724

Termination date: 20220203