CN105989656A - Data interaction method - Google Patents

Data interaction method Download PDF

Info

Publication number
CN105989656A
CN105989656A CN201510055492.9A CN201510055492A CN105989656A CN 105989656 A CN105989656 A CN 105989656A CN 201510055492 A CN201510055492 A CN 201510055492A CN 105989656 A CN105989656 A CN 105989656A
Authority
CN
China
Prior art keywords
truth cards
cutting ferrule
cards manager
manager
data
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Pending
Application number
CN201510055492.9A
Other languages
Chinese (zh)
Inventor
李东声
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Tendyron Corp
Tendyron Technology Co Ltd
Original Assignee
Tendyron Technology Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Tendyron Technology Co Ltd filed Critical Tendyron Technology Co Ltd
Publication of CN105989656A publication Critical patent/CN105989656A/en
Pending legal-status Critical Current

Links

Landscapes

  • Storage Device Security (AREA)

Abstract

The present invention provides a data interaction method. The data interaction method includes the following steps that: binding operation is carried out on a card sleeve and a real card management device, a secure connection is built, and the card sleeve acquires a card sleeve end real card information list, carries out prompting, receives a real card selection instruction, determines a selected real card; the card sleeve carries out first processing on data to be processed and sends processed data to the real card management device; the real card management device carries out second processing on received data and sends processed data to the selected real card; the selected real card receives the data sent by the real card management device, processes the data and sends data obtained after processing to the real card management device; and the real card management device carries out first processing on received data and sends processed data to the card sleeve. With the data interaction method of the invention adopted, data interaction between the card sleeve and the real card management device can be realized; portable conveniences can be brought to a user; and a high-security transaction solution can be provided.

Description

Data interactive method
Technical field
The present invention relates to electronic information security technical field, particularly relate to a kind of data interactive method.
Background technology
In existing transaction flow, such as: withdraw the money or do shopping and swipe the card, usual user needs to carry with the bank card handled from bank, and user is carry-on Carry bank card and there is certain security risk, once lose, then easily the assets of user are caused damage.Further, since bank card kind is multiple Various, a user may have the bank card of multiple different banks simultaneously, as carried with the bank card of multiple different banks, the most portable, If in order to be convenient for carrying, when only carrying some bank card in multiple bank cards, when using these bank cards to carry out withdrawing the money or do shopping to swipe the card, There may be inter-bank transaction, cause transaction occurs unnecessary expense.
Therefore, prior art is badly in need of provide one both to facilitate user to carry, and the trading solution that safety is higher.
Summary of the invention
Present invention seek to address that the problems referred to above.
A kind of data interactive method of offer is provided.
For reaching above-mentioned purpose, technical scheme is specifically achieved in that
One aspect of the present invention provides a kind of data interactive method, including: cutting ferrule performs bindings with Truth cards manager, wherein, truly blocks Sheet manager is connected with at least one Truth cards, and storage has Truth cards manager end Truth cards information list, Truth cards manager end Truth cards information list includes the Truth cards information of the Truth cards being connected with Truth cards manager;Cutting ferrule sets up peace with Truth cards manager Full connection, it is thus achieved that carry out cutting ferrule end the second safe transmission key and the Truth cards manager of Security Data Transmission between cutting ferrule and Truth cards manager End safe transmission key;Cutting ferrule obtains cutting ferrule end Truth cards information list, and wherein, cutting ferrule end Truth cards information list is to manage from Truth cards The Truth cards manager end Truth cards information list obtained in device;Cutting ferrule prompting cutting ferrule end Truth cards information list;Cutting ferrule receives Truth cards Select instruction, determine the Truth cards chosen;Cutting ferrule utilize cutting ferrule end the second safe transmission pending data of double secret key send after carrying out the first process to Truth cards manager;Truth cards manager receives the data that cutting ferrule sends, and utilizes Truth cards manager end safe transmission double secret key to receive Data carry out the second process after send to the Truth cards chosen;The Truth cards chosen receives the data that Truth cards manager end sends, and goes forward side by side The data that row obtains after processing after processing send to true card management device;Truth cards manager receives the data that the Truth cards chosen sends, And the data utilizing Truth cards manager end safe transmission double secret key to receive carry out the first process after send to cutting ferrule.
Additionally, data interactive method also includes: the Truth cards that Truth cards manager pair is connected with Truth cards manager detects;True card Sheet manager, after the Truth cards being connected with Truth cards manager being detected, obtains the Truth cards information of Truth cards, wherein, Truth cards Information at least includes: card number;After Truth cards manager obtains the Truth cards information of Truth cards, generate Truth cards manager end Truth cards Information list.
Additionally, data interactive method also includes: Truth cards manager also generates Truth cards manager end identification list, Truth cards manager end Mark in identification list and the Truth cards information one_to_one corresponding in Truth cards manager end Truth cards information list.
Additionally, cutting ferrule receives Truth cards selects instruction, determine the Truth cards chosen;Including: cutting ferrule receives Truth cards and selects instruction, obtains Choose mark, wherein, choose and identify the Truth cards chosen for instruction;Cutting ferrule will choose mark to send to true card management device;Truth cards Manager, according to choosing mark from the Truth cards being connected with Truth cards manager, determines the Truth cards chosen corresponding with choosing mark.
Additionally, set up secure connection at cutting ferrule and Truth cards manager, it is thus achieved that carry out Security Data Transmission between cutting ferrule and Truth cards manager Before cutting ferrule end the second safe transmission key and Truth cards manager end safe transmission key, data interactive method also includes: cutting ferrule is to Truth cards Manager sends logging request;Secure connection is set up, it is thus achieved that between cutting ferrule and Truth cards manager, carry out data at cutting ferrule and Truth cards manager After cutting ferrule end the second safe transmission key of safe transmission and Truth cards manager end safe transmission key, data interactive method also includes: cutting ferrule The login password received by cutting ferrule end the second safe transmission double secret key is sent to true card management device after carrying out the first process;Truth cards manages Device receives the data that cutting ferrule sends, and the data utilizing Truth cards manager end safe transmission double secret key to receive are verified at second after carrying out the second process The correctness of the data after reason;After Truth cards manager data after checking the second process are passed through, cutting ferrule logs in Truth cards manager.
Additionally, the data that Truth cards manager utilizes Truth cards manager end safe transmission double secret key to receive verify second after carrying out the second process The correctness of the data after process includes: the data that Truth cards manager utilizes Truth cards manager end safe transmission double secret key to receive carry out After two process, it is thus achieved that password to be verified;Truth cards manager judges whether password to be verified is alarm cipher;If password to be verified is close for reporting to the police Code, then Truth cards manager determines that password authentification to be verified is passed through, and performs operation of reporting to the police;If password to be verified is not alarm cipher and for stepping on Record password, then Truth cards manager determines that password authentification to be verified is passed through.
Additionally, after cutting ferrule logs in Truth cards manager, data interactive method also includes: cutting ferrule end identification list searched by cutting ferrule;If cutting ferrule is searched To cutting ferrule end identification list, then cutting ferrule end the second safe transmission double secret key cutting ferrule end identification list is utilized to send to Truth cards pipe after carrying out the first process Reason device, Truth cards manager receives the data that cutting ferrule sends, and the data utilizing Truth cards manager end safe transmission double secret key to receive carry out the After two process, it is judged that the data after the second process are the most identical, if not with the Truth cards manager end identification list that Truth cards manager stores Identical, then Truth cards manager utilizes Truth cards manager end safe transmission double secret key to update instruction and more new data carries out transmission after the first process To cutting ferrule, cutting ferrule receives the data that Truth cards manager sends, and the data utilizing cutting ferrule end the second safe transmission double secret key to receive carry out second After process, update cutting ferrule end Truth cards information list;If cutting ferrule does not finds cutting ferrule end identification list, then utilize cutting ferrule end the second safe transmission Double secret key is preset and is sent after mark carries out the first process to true card management device, and Truth cards manager receives the data that cutting ferrule sends, and utilizes true After the data that card management device end safe transmission double secret key receives carry out the second process, Truth cards manager determine the data after the second process for Instruction cutting ferrule end is not when storing cutting ferrule end identification list, utilizes Truth cards manager end safe transmission double secret key to update instruction and more new data carries out the Sending to cutting ferrule after one process, cutting ferrule receives the data that Truth cards manager sends, and utilizes cutting ferrule end the second safe transmission double secret key to receive After data carry out the second process, update cutting ferrule end Truth cards information list.
Additionally, after cutting ferrule logs in Truth cards manager, data interactive method also includes: Truth cards manager utilizes true cutting ferrule manager end to pacify Full transmission double secret key Truth cards manager end identification list sends to cutting ferrule after carrying out the first process;Cutting ferrule receives the number that Truth cards manager sends According to, after the data utilizing cutting ferrule end the second safe transmission double secret key to receive carry out the second process, it is judged that the data after the second process and cutting ferrule storage Cutting ferrule end identification list is the most identical;If it is not the same, then cutting ferrule sends more newly requested to Truth cards manager;Truth cards manager receives more Newly requested, utilize Truth cards manager end safe transmission double secret key to update after instruction carries out the first process with more new data and send to cutting ferrule;Card socket Receive the data that Truth cards manager sends, after the data utilizing cutting ferrule end the second safe transmission double secret key to receive carry out the second process, more neocaine Set end Truth cards information list.
Additionally, cutting ferrule also includes heart beating park mode, wherein, heart beating park mode is the non-operating mode of low-power consumption, and data interactive method also includes: It is fastened under heart beating park mode, sends detection information every the first Preset Time to Truth cards manager;Truth cards manager receives detection Information, sends response message to cutting ferrule;If not receiving response message in being fastened in the second Preset Time, then disconnect cutting ferrule and Truth cards manager Between secure connection;If receiving response message in being fastened in the second Preset Time, then the safety keeping cutting ferrule and Truth cards manager to set up connects Connect.
If also comprising renewal information, data interactive method additionally, receive in being fastened in the second Preset Time in response message, and response message Also include: cutting ferrule storage updates information;After cutting ferrule is entered mode of operation by heart beating park mode, cutting ferrule sends more to Truth cards manager Newly trigger request;Truth cards manager receives and updates the request of triggering, utilizes Truth cards manager end safe transmission double secret key Truth cards manager End identification list sends to cutting ferrule after carrying out the first process;Cutting ferrule receives the data that Truth cards manager sends, and utilizes cutting ferrule end the second safe transmission After the data that double secret key receives carry out the second process, it is judged that the data after the second process are the most identical with the cutting ferrule end identification list that cutting ferrule stores;As Fruit differs, then cutting ferrule sends more newly requested to Truth cards manager;Truth cards manager receives more newly requested, utilizes Truth cards manager End safe transmission double secret key updates after instruction carries out the first process with more new data and sends to cutting ferrule;Cutting ferrule receives the number that Truth cards manager sends According to, after the data utilizing cutting ferrule end the second safe transmission double secret key to receive carry out the second process, update cutting ferrule end Truth cards information list.
If also comprising renewal information, data interactive method additionally, receive in being fastened in the second Preset Time in response message, and response message Also include: cutting ferrule storage updates information;After cutting ferrule is entered mode of operation by heart beating park mode, cutting ferrule utilizes cutting ferrule end the second safe transmission Double secret key cutting ferrule end identification list sends to true card management device after carrying out the first process;Truth cards manager receives the data that cutting ferrule sends, profit After the data received with Truth cards manager end safe transmission double secret key carry out the second process, it is judged that the data after the second process and Truth cards pipe The Truth cards manager end identification list of reason device storage is the most identical;If it is not the same, then Truth cards manager utilizes Truth cards manager end Safe transmission double secret key updates after instruction carries out the first process with more new data and sends to cutting ferrule;Cutting ferrule receives the number that Truth cards manager sends According to, after the data utilizing cutting ferrule end the second safe transmission double secret key to receive carry out the second process, update cutting ferrule end Truth cards information list.
Include additionally, cutting ferrule and Truth cards manager perform bindings: cutting ferrule receives for touching that instruction and Truth cards manager carry out binding Say the word;Cutting ferrule sends the second binding instruction by wireless network to Truth cards manager, and wherein, the second binding instruction includes: cutting ferrule generates 3rd binding random factor, cutting ferrule certificate and cutting ferrule uniquely identify;Truth cards manager receives the second binding instruction, utilizes root certificate to cutting ferrule Certificate is verified;After Truth cards manager checking cutting ferrule certificate is legal, generate the 4th binding random factor;Truth cards manager utilizes cutting ferrule Cutting ferrule PKI in certificate is encrypted acquisition the second binding ciphertext to the 3rd binding random factor and the 4th binding random factor, utilizes Truth cards Manager private key carries out signature to the 3rd binding random factor and the 4th binding random factor and obtains the 3rd binding signature;Truth cards manager passes through Wireless network sends the second binding response to cutting ferrule, and wherein, the second binding response includes: the second binding ciphertext, the 3rd binding signature, Truth cards Manager certificate and Truth cards manager uniquely identify;Cutting ferrule receives the second binding response, utilizes root certificate to enter Truth cards manager certificate Row checking;Cutting ferrule checking Truth cards manager certificate legal after, utilize cutting ferrule private key to second binding ciphertext be decrypted, it is thus achieved that the 3rd binding with Machine decryption factor and the 4th binding decryption random factor;Cutting ferrule utilizes the Truth cards manager PKI in Truth cards manager certificate, the 3rd binding The decryption random factor and the 4th binding decryption random factor pair the 3rd binding signature are verified;After cutting ferrule checking the 3rd binding signature is correct, checking The 3rd binding decryption random factor is the most identical with the 3rd binding random factor;Cutting ferrule checking the 3rd binding the decryption random factor with the 3rd binding random because of After son is identical, prompting Truth cards manager uniquely identifies;Cutting ferrule receives for confirming that Truth cards manager uniquely identifies correct trigger command, Utilize cutting ferrule private key that the 3rd binding random factor and the 4th binding decryption random factor are signed, it is thus achieved that the 4th binding signature, and storage is true Real card management device uniquely identifies, Truth cards manager certificate and cutting ferrule end the second binding factor to cutting ferrule end the second list of bindings, wherein, card Set end the second binding factor is the 4th binding decryption random factor;Cutting ferrule sends the 4th binding signature to Truth cards manager;Truth cards manager Receive the 4th binding signature, utilize the cutting ferrule PKI in cutting ferrule certificate, the 3rd binding random factor and the 4th binding random factor that the 4th binding is signed Name is verified;After Truth cards manager checking the 4th binding signature is correct, storage cutting ferrule uniquely identifies, cutting ferrule certificate and Truth cards management Device end binding factor is to true card management device end list of bindings, and wherein, Truth cards manager end binding factor is the 4th binding random factor.
Include additionally, cutting ferrule sets up secure connection with Truth cards manager: cutting ferrule sends to Truth cards manager and sets up secure connection for instruction The 3rd secure connection instruction, wherein, the 3rd secure connection instruction include: cutting ferrule utilizes the Truth cards manager in Truth cards manager certificate PKI is encrypted the 5th connection ciphertext of acquisition to the 5th connection random factor of cutting ferrule end the second binding factor and generation, and cutting ferrule utilizes cutting ferrule private Key connects random factor and carries out the 5th connection signature that signature obtains cutting ferrule end the second binding factor and the 5th;Truth cards manager receives the 3rd Secure connection instructs, and utilizes Truth cards manager private key to connect ciphertext to the 5th and is decrypted, it is thus achieved that cutting ferrule end second binds decryption factor and the Five connect the decryption random factor;Truth cards manager utilizes the cutting ferrule PKI in cutting ferrule certificate, cutting ferrule end second to bind decryption factor and the 5th even Connect decryption random factor pair the 5th connection signature to verify;After Truth cards manager checking the 5th connection signature is correct, checking cutting ferrule end second is tied up Determine decryption factor the most identical with Truth cards manager end binding factor;Truth cards manager checking cutting ferrule end second binds decryption factor with true After card management device end binding factor is identical, generate the 6th connection random factor;Truth cards manager utilizes the cutting ferrule PKI in cutting ferrule certificate to The five connection decryption random factors and the 6th connect random factor and are encrypted acquisition the 6th connection ciphertext, utilize Truth cards manager private key to the 5th Connect the decryption random factor and the 6th connection random factor carries out signature and obtains the 6th connection signature;Truth cards manager sends the 3rd peace to cutting ferrule Full connection response, wherein, the 3rd secure connection response includes: the 6th connects ciphertext and the 6th connects signature;Cutting ferrule receives the 3rd secure connection and rings Should, utilize cutting ferrule private key to the 6th connect ciphertext be decrypted, it is thus achieved that after deciphering the 5th connection the decryption random factor and the 6th connect decryption random because of Son;Cutting ferrule utilizes the 5th connection decryption random factor and the 6th connection after the Truth cards manager PKI in Truth cards manager certificate, deciphering Decryption random factor pair the 6th connects signature and verifies;The 5th connection decryption random after cutting ferrule checking the 6th connection signature is correct, after checking deciphering It is the most identical that the factor is connected random factor with the 5th;It is identical that the 5th connection decryption random factor after cutting ferrule checking deciphering connects random factor with the 5th After, connect the decryption random factor at least with the 6th and generate cutting ferrule end the second safe transmission key between cutting ferrule and Truth cards manager;Truth cards Manager connects random factor at least with the 6th and generates the Truth cards manager end safe transmission key between cutting ferrule and Truth cards manager.
Include additionally, cutting ferrule sets up secure connection with Truth cards manager: cutting ferrule receives the Truth cards manager life that Truth cards manager sends The 7th connection random factor become and Truth cards manager uniquely identify;Cutting ferrule sends to Truth cards manager and sets up secure connection for instruction 4th secure connection instruction, wherein, the 4th secure connection instruction includes: it is true that cutting ferrule uniquely identifies, cutting ferrule utilizes in Truth cards manager certificate Real card management device PKI is encrypted the 7th connection ciphertext, cutting ferrule of acquisition to the 8th connection random factor of the 7th connection random factor and generation Utilize cutting ferrule private key to connect random factor to the 7th and the 8th connection random factor carries out the 7th connection signature that signature obtains;Truth cards manager Receive the 4th secure connection instruction, it is judged that cutting ferrule uniquely identifies whether in Truth cards manager end list of bindings;If cutting ferrule uniquely identifies very In real card management device end list of bindings, Truth cards manager utilizes Truth cards manager private key to connect ciphertext to the 7th and is decrypted, it is thus achieved that the Seven connect the decryption random factor and the 8th connects the decryption random factor;Truth cards manager utilizes the cutting ferrule PKI in cutting ferrule certificate, the 7th connection The decryption random factor and the 8th connects decryption random factor pair the 7th connection signature and verifies;Truth cards manager checking the 7th connection signature is just After Que, it is the most identical that checking the 7th connection decryption random factor is connected random factor with the 7th;It is connected with the 7th if the 7th connects the decryption random factor Random factor is identical, and Truth cards manager utilizes Truth cards manager private key to connect the decryption random factor and the 8th connection decryption random to the 7th The factor carries out signature and obtains the 8th connection signature;Truth cards manager sends the 4th secure connection response to cutting ferrule, and wherein, the 4th secure connection rings Should include: the 8th connects signature;Cutting ferrule receive the 4th secure connection response, utilize the Truth cards manager PKI in Truth cards manager certificate, 7th connection random factor and the 8th connects random factor and verifies the 8th connection signature;After cutting ferrule checking the 8th connection signature is correct, at least profit Connect random factor with the 8th and cutting ferrule end the second binding factor generates cutting ferrule end the second safe transmission key between cutting ferrule and Truth cards manager; Truth cards manager connects the decryption random factor at least with the 8th and Truth cards manager end binding factor generates cutting ferrule and Truth cards pipe Truth cards manager end safe transmission key between reason device;Cutting ferrule utilizes cutting ferrule end the second safe transmission double secret key the 7th to connect random factor and the Eight connection random factors send to true card management device after carrying out the first process;Truth cards manager utilizes Truth cards manager end safe transmission Double secret key the 7th connection decryption random factor and the 8th connection decryption random factor send to cutting ferrule after carrying out the first process;Cutting ferrule receives Truth cards The data that manager sends, and the data utilizing cutting ferrule end the second safe transmission double secret key to receive carry out the second process, compare the number after the second process According to be connected with the 7th random factor and the 8th connect random factor the most identical;Truth cards manager receives the data that cutting ferrule sends, and utilizes true The data that real card management device end safe transmission double secret key receives carry out the second process, compare the data after the second process and are connected decryption random with the 7th It is the most identical that the factor and the 8th connects the decryption random factor.
Additionally, data interactive method also includes: cutting ferrule to major general's cutting ferrule certificate sends to updating platform;Update platform and generate the first renewal encryption key; Updating platform utilizes the first renewal encryption key that cutting ferrule application program installation kit is encrypted acquisition the first installation kit ciphertext;Update platform and utilize renewal Platform private key carries out signature and obtains the first installation kit signature the first installation kit ciphertext;Update platform and utilize the cutting ferrule public key encryption first in cutting ferrule certificate Update encryption key, it is thus achieved that first updates encryption key ciphertext;Update platform to send cutting ferrule more fresh information to cutting ferrule, wherein, cutting ferrule more fresh information Including: update platform credential, the first installation kit ciphertext, the first installation kit signature and the first renewal encryption key ciphertext;Cutting ferrule receives cutting ferrule and updates Information, utilizes root certification authentication to update platform credential;After cutting ferrule checking renewal platform credential is passed through, utilize the renewal platform updated in platform credential public Key carries out sign test to the first installation kit signature;After cutting ferrule verifies that the first installation kit signature is correct, utilize cutting ferrule private key deciphering the first renewal encryption key close Literary composition, it is thus achieved that the first decruption key;Cutting ferrule utilizes first decryption key decryption the first installation kit ciphertext, it is thus achieved that cutting ferrule application program installation kit;Cutting ferrule is tested The data form of Card sleeve application program installation kit is the most correct;If the data form of cutting ferrule checking cutting ferrule application program installation kit is correct, cutting ferrule root Install according to cutting ferrule application program installation kit.
Additionally, data interactive method also includes: Truth cards manager to major general's Truth cards manager certificate sends to updating platform;Update platform Generate the 3rd renewal encryption key;Updating platform utilizes the 3rd renewal encryption key that Truth cards manager application installation kit is encrypted acquisition 3rd installation kit ciphertext;Updating platform utilizes renewal platform private key that the 3rd installation kit ciphertext carries out signature acquisition the 3rd installation kit signature;Update platform The Truth cards manager public key encryption the 3rd in Truth cards manager certificate is utilized to update encryption key, it is thus achieved that the 3rd updates encryption key ciphertext; Updating platform to send Truth cards manager more fresh information to true card management device, wherein, Truth cards manager more fresh information includes: update Platform credential, the 3rd installation kit ciphertext, the 3rd installation kit signature and the 3rd update encryption key ciphertext;Truth cards manager receives Truth cards Manager more fresh information, utilizes root certification authentication to update platform credential;After Truth cards manager checking renewal platform credential is passed through, utilize to update and put down Renewal platform PKI in platform certificate carries out sign test to the 3rd installation kit signature;After Truth cards manager checking the 3rd installation kit signature is correct, utilize Truth cards manager private key deciphering the 3rd renewal encryption key ciphertext, it is thus achieved that the 3rd decruption key;Truth cards manager utilizes the 3rd decruption key Decipher the 3rd installation kit ciphertext, it is thus achieved that Truth cards manager application installation kit;Truth cards manager checking Truth cards manager application journey The data form of sequence installation kit is the most correct;If the data form of Truth cards manager checking Truth cards manager application installation kit is just Really, Truth cards manager is installed according to Truth cards manager application installation kit.
Additionally, the first process includes: encryption, the second process includes: decryption processing;Or the first process includes: verification calculating processes, the Two process include: verification checking calculating processes;Or the first process includes: encrypt and verify calculating and process, the second process includes: deciphers and verifies Checking calculating processes.
Additionally, Truth cards manager is according to the safety grades of Truth cards, the Truth cards to the Truth cards being connected with Truth cards manager The access limit of information carries out the setting opened and/or close.
Additionally, cutting ferrule is mobile device.
Additionally, cutting ferrule is mobile device and electronic signature equipment, or cutting ferrule is electronic signature equipment.
As seen from the above technical solution provided by the invention, by the data interactive method of the present invention, it is possible to achieve cutting ferrule manages with Truth cards Data interaction between device, to provide a kind of novel user that both facilitates to carry, and the trading solution that safety is higher.
Accompanying drawing explanation
In order to be illustrated more clearly that the technical scheme of the embodiment of the present invention, in describing embodiment below, the required accompanying drawing used is situated between simply Continue, it should be apparent that, the accompanying drawing in describing below is only some embodiments of the present invention, from the point of view of those of ordinary skill in the art, not On the premise of paying creative work, it is also possible to obtain other accompanying drawings according to these accompanying drawings.
The flow chart of the data interactive method that Fig. 1 provides for the embodiment of the present invention;
In the data interactive method that Fig. 2 provides for the embodiment of the present invention, cutting ferrule and Truth cards manager perform the flow chart of bindings;
In the data interactive method that Fig. 3 provides for the embodiment of the present invention, the flow chart of safe connection mode one set up by cutting ferrule and Truth cards manager;
In the data interactive method that Fig. 4 provides for the embodiment of the present invention, the flow chart of safe connection mode two set up by cutting ferrule and Truth cards manager;
The flow chart of cutting ferrule application program update in the data interactive method that Fig. 5 provides for the embodiment of the present invention;
The flow chart that in the data interactive method that Fig. 6 provides for the embodiment of the present invention, Truth cards manager application updates.
Detailed description of the invention
Below in conjunction with the accompanying drawing in the embodiment of the present invention, the technical scheme in the embodiment of the present invention is clearly and completely described, it is clear that retouched The embodiment stated is only a part of embodiment of the present invention rather than whole embodiments.Based on embodiments of the invention, ordinary skill people The every other embodiment that member is obtained under not making creative work premise, broadly falls into protection scope of the present invention.
In describing the invention, it is to be understood that term " " center ", " longitudinally ", " laterally ", " on ", D score, "front", "rear", " left ", The orientation of the instruction such as " right ", " vertically ", " level ", " top ", " end ", " interior ", " outward " or position relationship are to close based on orientation shown in the drawings or position System, be for only for ease of describe the present invention and simplifying describe rather than instruction or the hint device of indication or element must have specific orientation, with Specific azimuth configuration and operation, be therefore not considered as limiting the invention.Additionally, term " first ", " second " are only used for describing purpose, And it is not intended that indicate or imply relative importance or quantity or position.
In describing the invention, it should be noted that unless otherwise clearly defined and limited, term " is installed ", " being connected ", " connection " should do Broadly understood, connect for example, it may be fixing, it is also possible to be to removably connect, or be integrally connected;Can be to be mechanically connected, it is also possible to be electricity Connect;Can be to be joined directly together, it is also possible to be indirectly connected to by intermediary, can be the connection of two element internals.Common for this area For technical staff, above-mentioned term concrete meaning in the present invention can be understood with concrete condition.
Below in conjunction with accompanying drawing, the embodiment of the present invention is described in further detail.
The invention provides the framework of a kind of data interaction, both facilitate user to carry to provide, and the trading solution that safety is higher.These data Interworking architecture includes: simulation card, cutting ferrule and Truth cards manager.
Wherein:
Simulation card, can include one or more, and this simulation card can be that separately fabricated card can also be for being reserved with simulation card function Truth cards.This simulation card is identical with existing bank card dimensions, in notebook data interworking architecture, substitutes Truth cards and completes transaction.Simulation Card has contact and/or non-contact interface, in order to coordinate existing transaction terminal (such as ATM, POS, mass transit card top-up machines etc.) Complete transaction.Simulation card also has wave point, and simulation card can carry out data interaction by this wave point and cutting ferrule.Wherein, contact Interface can be contact etc., and non-contact interface can be NFC interface etc., and this wave point can be blue tooth interface, infrared interface, 2.4GHz Interface, WIFI interface, RFID interface etc..
Cutting ferrule, can include one or more cutting ferrule, and this cutting ferrule can manage one or more simulation card, and every simulation card can only belong to one Individual cutting ferrule is also managed by it.This cutting ferrule can be the separately fabricated equipment for card envelope shape, it is also possible to for having the card provided in notebook data framework The mobile device of set function, including: smart mobile phone, panel computer (PAD), PDA (such as palm PC, learning machine), notebook computer, E-book reading device, wearable device (such as intelligent wristwatch, intelligent glasses etc.) etc..Cutting ferrule can have contact and/or non-contact interface, To coordinate the contact of simulation card and/or non-contact interface to carry out data interaction, cutting ferrule can also have wave point, in order to wireless by this Interface carries out data interaction with the simulation corresponding interface of card, and wherein, contact interface can be contact etc., and non-contact interface can be NFC Interface etc., this wave point can be blue tooth interface, infrared interface, 2.4GHz interface, WIFI interface, RFID interface etc.;Cutting ferrule also has net Network interface, in order to carrying out data interaction by this network interface network interface corresponding with Truth cards manager, wherein, this network interface can be WIFI interface, mobile interchange network interface (such as 3G, 4G network) etc..It addition, cutting ferrule can also be the group of mobile device and electronic signature equipment Closing, wherein the network interface of cutting ferrule realizes by means of the network interface of mobile device, other interfaces (such as wave point, contact and/or noncontact Formula interface etc.) can be respectively positioned in electronic signature equipment, or these other interfaces can also be respectively positioned in mobile device, or in the middle part of these other interfaces Tap mouth is positioned in electronic signature equipment, and part of interface is positioned in mobile device;The process operation that cutting ferrule performs all performs in electronic signature equipment; Cutting ferrule can moreover be only electronic signature equipment.Wherein, electronic signature equipment can be key equipment, such as industrial and commercial bank's U-shield, and agricultural bank K is precious.
Truth cards manager, can manage multiple cutting ferrule, and this Truth cards manager have multiple contact (such as draw-in groove etc.) interface and/ Or contactless (such as NFC etc.) interface, to facilitate Truth cards manager can connect different types of Truth cards by different modes, Wherein, Truth cards manager is connected with at least one Truth cards, and storage has Truth cards manager end Truth cards information list, truly Card management device end Truth cards information list includes the Truth cards information of the Truth cards being connected with Truth cards manager, this Truth cards information May include that the information such as card number, card authentication information, this card authentication information is whether certification Truth cards is regular channel (such as bank, public affairs Hand over to the collective or the state department etc.) card image issued;This Truth cards can be function card (such as mass transit card, mess card, purchase card, member card, accumulating card etc.) Or the bank card that bank issues;Optionally, what Truth cards manager could be arranged to preserve in connected Truth cards is all or part of true The Truth cards information of real card, in order to user makes different setting according to the security requirement of Truth cards, such as, can manage at Truth cards The Truth cards information not allowing to obtain some Truth cards is set on device, thus ensures the safety of these Truth cards.Truth cards manager is also There is network interface, in order to carrying out data interaction by this network interface network interface corresponding with cutting ferrule, wherein, this network interface can be WIFI Interface, mobile interchange network interface (such as 3G, 4G network) etc..
In notebook data interworking architecture, simulation card and Truth cards are smart chip card.
Hereinafter, the term in the present invention is illustrated:
First process includes: encryption, and the second process includes: decryption processing;Specifically, simple encryption ensures data transmission security, is treating When transmission data security levels requires higher, can process to use this kind of mode.Or
First process includes: verification calculating processes, and the second process includes: verification verifies that calculating processes;Specifically, simple verification ensures data transmission Integrity, prevents from distorting, and when treating integrity of data transmission requirement and being higher, can process to use this kind of mode.Or
First process includes: encrypts and verifies calculating and process, and the second process includes: deciphers and verifies checking calculating and process.Specifically, encryption is used Ensure data transmission security and complete with verification hybrid mode, when data security levels to be transmitted is required the highest, can carry out to use this kind of mode Process.
Based on above-mentioned data interaction framework, the present invention provides a kind of data interactive method, by this data interactive method, it is possible to achieve cutting ferrule is with true Data interaction between card management device, to provide a kind of novel user that both facilitates to carry, and the trading solution that safety is higher.
Fig. 1 shows the flow chart of the data interactive method that the embodiment of the present invention provides, and sees Fig. 1, the data interactive method of the present invention, including:
Cutting ferrule performs bindings with Truth cards manager, and wherein, Truth cards manager is connected with at least one Truth cards, and storage has Truth cards manager end Truth cards information list, Truth cards manager end Truth cards information list includes being connected with Truth cards manager The Truth cards information of Truth cards;
Secure connection set up by cutting ferrule and Truth cards manager, it is thus achieved that carry out the cutting ferrule end the of Security Data Transmission between cutting ferrule and Truth cards manager Two safe transmission keys and Truth cards manager end safe transmission key;
Cutting ferrule obtains cutting ferrule end Truth cards information list, and wherein, cutting ferrule end Truth cards information list is the true of acquisition from Truth cards manager Real card management device end Truth cards information list;
Cutting ferrule prompting cutting ferrule end Truth cards information list;
Cutting ferrule receives Truth cards and selects instruction, determines the Truth cards chosen;
Cutting ferrule utilizes cutting ferrule end the second safe transmission pending data of double secret key to send to true card management device after carrying out the first process;
Truth cards manager receives the data that cutting ferrule sends, and the data utilizing Truth cards manager end safe transmission double secret key to receive carry out the Send to the Truth cards chosen after two process;
The Truth cards chosen receives the data that Truth cards manager end sends, and the data that will obtain after processing after processing send to truly blocking Sheet manager;
Truth cards manager receives the data that the Truth cards chosen sends, and utilizes Truth cards manager end safe transmission double secret key to receive Data send to cutting ferrule after carrying out the first process.
Hereinafter, for above-mentioned data interactive method, being described in detail, specifically, this data interactive method can comprise the following aspects:
One, binding:
Cutting ferrule and Truth cards manager execution bindings:
In the present invention, cutting ferrule can be bound in the following way with Truth cards manager:
Cutting ferrule and Truth cards manager mutual authentication the other side's certificate and the other side's identity, and after all certification is passed through both sides, each it is stored in verification process The binding factor of middle generation.
Below, it is provided that a kind of cutting ferrule and the specific implementation of Truth cards manager execution bindings:
Fig. 2 shows that in the data interactive method that the embodiment of the present invention provides, cutting ferrule and Truth cards manager perform the flow chart of bindings, see Fig. 2, cutting ferrule and Truth cards manager execution bindings include:
Cutting ferrule reception carries out the trigger command bound for instruction and Truth cards manager;Specifically, before cutting ferrule uses, can be in advance to card Set performs power-on operation, and now, optionally, cutting ferrule prompting user inputs startup password, and receives the startup password that user inputs, and checking user is defeated The correctness of the startup password entered, after the startup password of checking user's input is correct, performs power-on operation, and card covers into mode of operation.Using Before cutting ferrule and Truth cards manager carry out data interaction, optionally, cutting ferrule is bound with Truth cards manager, to improve follow-up data Mutual safety.Wherein, the trigger command being used for indicating cutting ferrule and Truth cards manager to carry out binding that cutting ferrule receives can be to be provided separately within The binding physical button that card puts generates, or can be that the binding virtual key on the touch screen of cutting ferrule generates, or can be that startup password is tested Generate after card is correct, or can be the menu of display to select binding function to generate, it is, of course, also possible to be that other are any on cutting ferrule screen Mode generates, and is not the most restricted.
Cutting ferrule to Truth cards manager send second binding instruction, wherein, second binding instruction includes: cutting ferrule generate the 3rd binding random factor, Cutting ferrule certificate and cutting ferrule uniquely identify;Specifically, cutting ferrule can wirelessly (such as mobile network, WIFI etc.) to Truth cards pipe Reason device sends the second binding instruction.Second binding instruction is carried the 3rd binding random factor and is possible to prevent Replay Attack, the second binding instruction is carried Cutting ferrule certificate, so that cutting ferrule is authenticated by Truth cards manager, carries cutting ferrule in the second binding instruction and uniquely identifies so that Truth cards manager obtains Know which cutting ferrule is bound with it;Wherein, the 3rd binding random factor can be random number, random character or a combination thereof that cutting ferrule generates, certainly, Generate the 3rd binding random factor after, it is also possible to the 3rd binding random factor randomness verify, with improve the 3rd binding random factor with Machine, prevents from being cracked;It can be that cutting ferrule serial number, EIC equipment identification code, MAC Address etc. are arbitrary or a combination thereof is with unique mark that cutting ferrule uniquely identifies Know the mark of cutting ferrule.
Truth cards manager receives the second binding instruction, utilizes root certificate to verify cutting ferrule certificate;Specifically, Truth cards manager is in advance Storage root certificate, utilizes this root certificate to complete the checking to cutting ferrule certificate, to ensure the safety of follow-up use cutting ferrule certificate.
After Truth cards manager checking cutting ferrule certificate is legal, generate the 4th binding random factor;Specifically, the 4th binding random factor can be true Random number, random character or a combination thereof that real card management device generates;Certainly, after generating the 4th binding random factor, it is also possible to the 4th binding The randomness of random factor is verified, to improve the randomness of the 4th binding random factor, prevents from being cracked.
Truth cards manager utilizes the cutting ferrule PKI in cutting ferrule certificate that the 3rd binding random factor and the 4th binding random factor are encrypted and are obtained Obtain the second binding ciphertext, utilize Truth cards manager private key that the 3rd binding random factor and the 4th binding random factor are carried out signature acquisition the 3rd Binding signature;Specifically, Truth cards manager utilize cutting ferrule PKI to the 3rd binding random factor and the 4th binding random factor be encrypted with Ensureing the 3rd binding random factor and the safety of the 4th binding random factor transmission, Truth cards manager utilizes Truth cards manager private key pair 3rd binding random factor and the 4th binding random factor are signed, to ensure that follow-up cutting ferrule can be to the legitimacy of Truth cards manager identity It is authenticated.
Truth cards manager sends the second binding response to cutting ferrule, and wherein, the second binding response includes: second binding ciphertext, the 3rd binding signature, Truth cards manager certificate and Truth cards manager uniquely identify;Specifically, the second binding response that Truth cards manager sends is carried Truth cards manager certificate, so that Truth cards manager is authenticated by cutting ferrule, carries Truth cards manager and uniquely identifies in the second binding response So that cutting ferrule knows which Truth cards manager is bound with it;Wherein, Truth cards manager uniquely identifies can be Truth cards manager sequence Number, EIC equipment identification code, MAC Address etc. are arbitrary or a combination thereof is with unique mark identifying Truth cards manager.
Cutting ferrule receives the second binding response, utilizes root certificate to verify Truth cards manager certificate;Specifically, cutting ferrule prestores root certificate, This root certificate is utilized to complete the checking to Truth cards manager certificate, to ensure the safety of follow-up use Truth cards manager certificate.
After cutting ferrule checking Truth cards manager certificate is legal, utilize cutting ferrule private key that the second binding ciphertext is decrypted, it is thus achieved that the 3rd binding RANDOM SOLUTION The close factor and the 4th binding decryption random factor;Specifically, cutting ferrule private key is utilized to be decrypted, the second binding ciphertext if sent out in the data transmission Given birth to data transmission fault, or there occurs in the data transmission and distort, then will cause cannot successful decryption, or the 3rd binding decrypted is random Decryption factor and the 4th binding decryption random factor are different from the 3rd binding random factor and the 4th binding random factor.And entered by cutting ferrule PKI Row encryption, only cutting ferrule private key can be with successful decryption, thus it is also ensured that the safety of data deciphering.
Cutting ferrule utilizes the Truth cards manager PKI in Truth cards manager certificate, the 3rd binding decryption random factor and the 4th binding RANDOM SOLUTION Close factor pair the 3rd binding signature is verified;Specifically, cutting ferrule utilizes the Truth cards manager PKI after being verified to Truth cards manager The signature sent is verified, to guarantee the legitimate origin of data.
After cutting ferrule checking the 3rd binding signature is correct, checking the 3rd binding decryption random factor is the most identical with the 3rd binding random factor;Specifically, The 3rd binding random factor and the 3rd binding decryption random factor that cutting ferrule checking generates self are identical, it is ensured that data are also not tampered with, and encryption Data Source really for cutting ferrule send the 3rd binding random factor object.
After cutting ferrule checking the 3rd binding decryption random factor is identical with the 3rd binding random factor, prompting Truth cards manager uniquely identifies;Specifically, Cutting ferrule can show that Truth cards manager uniquely identifies, it is also possible to speech play (such as loudspeaker are play or by headset earpiece broadcasting etc.) is true Card management device uniquely identifies, in order to the verity of Truth cards manager is confirmed by user, improves binding safety.
Cutting ferrule receives for confirming that Truth cards manager uniquely identifies correct trigger command, utilize cutting ferrule private key to the 3rd binding random factor and The 4th binding decryption random factor is signed, it is thus achieved that the 4th binding signature, and storage Truth cards manager uniquely identifies, Truth cards management Device certificate and cutting ferrule end the second binding factor are to cutting ferrule end the second list of bindings, and wherein, cutting ferrule end the second binding factor is the 4th binding decryption random The factor;Specifically, what cutting ferrule received can be to be provided separately within what card put for confirming that Truth cards manager uniquely identifies correct trigger command Confirm what physical button generated, or can be confirming in virtual key generation, or the menu shown on cutting ferrule screen on the touch screen of cutting ferrule Select to confirm what function generated, or can be after the voice that the voice acquisition device (such as Mike) of cutting ferrule receives confirms to indicate and be verified Shi Shengcheng's, or can be that the fingerprint acquisition device of cutting ferrule receives and generates after fingerprint identification indicates and is verified, or can be cutting ferrule Iris collection device receives generation after iris confirms instruction and is verified, it is, of course, also possible to generate for other any modes, in the present invention In be not restricted;Cutting ferrule private key is utilized to sign so that follow-up Truth cards to the 3rd binding random factor and the 4th binding decryption random factor The identity of cutting ferrule is authenticated by manager;Certainly, cutting ferrule can also store cutting ferrule end the second list of bindings, and this cutting ferrule end second list of bindings is used for The relevant information of Truth cards manager of record and cutting ferrule binding, such as: Truth cards manager uniquely identifies, Truth cards manager certificate etc., It addition, cutting ferrule end the second list of bindings is additionally operable to store cutting ferrule end the second binding factor, this cutting ferrule end second binding factor is that the 4th of ciphertext transmission is tied up Determining random factor, be ciphertext transmission based on the 4th binding random factor, therefore, this cutting ferrule end second binding factor is safety and is not tampered with.
Cutting ferrule sends the 4th binding signature to Truth cards manager;Specifically, cutting ferrule sends the 4th binding signature to Truth cards manager, in order to Cutting ferrule identity is authenticated by Truth cards manager.
Truth cards manager receive the 4th binding signature, utilize the cutting ferrule PKI in cutting ferrule certificate, the 3rd binding random factor and the 4th binding with Machine factor pair the 4th binding signature is verified;Specifically, Truth cards manager utilizes the signature that cutting ferrule is sent by the cutting ferrule PKI after being verified Verify, to guarantee the legitimate origin of data.
After Truth cards manager checking the 4th binding signature is correct, storage cutting ferrule uniquely identifies, cutting ferrule certificate and the binding of Truth cards manager end The factor is to true card management device end list of bindings, and wherein, Truth cards manager end binding factor is the 4th binding random factor.Specifically, very Real card management device can also store Truth cards manager end list of bindings, and this Truth cards manager end list of bindings is for record and Truth cards The relevant information of cutting ferrule of manager binding, such as: cutting ferrule uniquely identifies, cutting ferrule certificate etc., it addition, Truth cards manager end list of bindings is also For storing Truth cards manager end binding factor, this Truth cards manager end binding factor be Truth cards manager generate the 4th binding with The machine factor.
As can be seen here, bind based on above-mentioned cutting ferrule and Truth cards manager, it is ensured that data between follow-up cutting ferrule and Truth cards manager Mutual safety.
Two, secure connection is set up:
Secure connection set up by cutting ferrule and Truth cards manager, it is thus achieved that carry out the cutting ferrule end the of Security Data Transmission between cutting ferrule and Truth cards manager Two safe transmission keys and Truth cards manager end safe transmission key:
In the present invention, cutting ferrule and Truth cards manager can set up secure connection in the following way:
Mode one, cutting ferrule and Truth cards manager mutual authentication the other side identity again (such as mutual authentication the other side signed data), and the most mutual Mutually during certification the other side identity, the binding factor comparing both sides' storage is the most identical, identical and the most mutual at the binding factor of relatively both sides storage After certification the other side identity is passed through mutually, generate safe transmission key (the cutting ferrule end second carrying out Security Data Transmission between cutting ferrule and Truth cards manager Safe transmission key and Truth cards manager end safe transmission key).
Hereinafter, the one of presentation mode one of the present invention implements:
Fig. 3 shows that in the data interactive method that the embodiment of the present invention provides, the flow process of safe connection mode one set up by cutting ferrule and Truth cards manager Figure, sees Fig. 3, and cutting ferrule is set up secure connection with Truth cards manager and included:
Cutting ferrule sends the 3rd secure connection instruction setting up secure connection for instruction, wherein, the 3rd secure connection instruction bag to Truth cards manager Include: cutting ferrule utilize Truth cards manager PKI in Truth cards manager certificate to the 5th connection of cutting ferrule end the second binding factor and generation with The machine factor is encrypted the 5th connection ciphertext of acquisition, and cutting ferrule utilizes cutting ferrule private key to enter cutting ferrule end the second binding factor and the 5th connection random factor The 5th connection signature that row signature obtains;Specifically, before using cutting ferrule to carry out data interaction with Truth cards manager, optionally, at cutting ferrule And set up secure connection between Truth cards manager, the safety mutual to improve follow-up data.Wherein, what cutting ferrule received is used for indicating foundation peace Complete the 3rd secure connection instruction connected can be to be provided separately within the connection physical button generation that card puts, or can be on the touch screen of cutting ferrule Connect what virtual key generated, or can be that start-up password verification generates the most afterwards, or can be that cutting ferrule is stepped on to the transmission of Truth cards manager Generate during record request, or can be the menu of display to select linkage function to generate on cutting ferrule screen.It is, of course, also possible to be that other are any Mode generates, and is not the most restricted.Wherein, the 5th connect random factor can be cutting ferrule generation random number, random character or its Combination, certainly, after generating the 5th connection random factor, it is also possible to verify the 5th randomness connecting random factor, to improve the 5th even Connect the randomness of random factor, prevent from being cracked;Specifically, cutting ferrule utilizes Truth cards manager PKI to cutting ferrule end the second binding factor and Five connect random factor is encrypted to ensure the safety that cutting ferrule end the second binding factor and the 5th connects random factor transmission, and cutting ferrule utilizes cutting ferrule Private key connects random factor to cutting ferrule end the second binding factor and the 5th and signs, to ensure that follow-up Truth cards manager can be to cutting ferrule identity Legitimacy be authenticated.Cutting ferrule end the second binding factor is sent to true card management device, in order to follow-up Truth cards manager is to cutting ferrule end the Binding factor that whether two binding factors store with it is identical to be judged, thus judges whether this cutting ferrule is bound with this Truth cards manager. Optionally, before this step, after cutting ferrule detects Truth cards manager, cutting ferrule may determine that whether Truth cards manager is at cutting ferrule end In two list of bindings, such as: can judge in the following way: be fastened in after Truth cards manager being detected, Truth cards manager is received The Truth cards manager information (such as Truth cards manager uniquely identify and/or Truth cards manager certificate etc.) sent, according to receive Truth cards manager information, it is judged that whether this Truth cards manager is in cutting ferrule end the second list of bindings;And/or can also be managed by Truth cards Device judge cutting ferrule whether in Truth cards manager end list of bindings, such as: can judge in the following way: be fastened in and true card detected After sheet manager, cutting ferrule information (such as cutting ferrule uniquely identify and/or cutting ferrule certificate etc.) is sent to true card management device, Truth cards manager According to the cutting ferrule information received, it is judged that whether this cutting ferrule is in Truth cards manager end list of bindings;Only judging the other side's binding at self After in list, just perform follow-up flow process, optimize flow process, improve efficiency.
Truth cards manager receives the 3rd secure connection instruction, utilizes Truth cards manager private key to connect ciphertext to the 5th and is decrypted, it is thus achieved that card Set end second is bound decryption factor and the 5th and is connected the decryption random factor;Specifically, utilize Truth cards manager private key to connect ciphertext to the 5th to enter Row deciphering, if there occurs data transmission fault in the data transmission, or there occurs in the data transmission and distorts, then will cause cannot successful decryption, Or the cutting ferrule end second decrypted binds decryption factor and the 5th connection decryption random factor is connected with cutting ferrule end the second binding factor and the 5th Random factor is different.And be encrypted by Truth cards manager PKI, only Truth cards manager private key with successful decryption, thus can also may be used To ensure the safety of data deciphering.
Truth cards manager utilizes the cutting ferrule PKI in cutting ferrule certificate, cutting ferrule end second to bind decryption factor and the 5th connection decryption random factor pair 5th connects signature verifies;Specifically, the signature that Truth cards manager utilizes cutting ferrule PKI to send cutting ferrule is verified, to guarantee data Legitimate origin.
After Truth cards manager checking the 5th connection signature is correct, checking cutting ferrule end second bind decryption factor and the binding of Truth cards manager end because of Son is the most identical;Specifically, Truth cards manager also verifies that the cutting ferrule end second decrypted binds decryption factor with Truth cards manager the most certainly The Truth cards manager end binding factor of body storage is the most identical, if identical, then illustrate that this is fastened in and connects with Truth cards manager foundation safety Before connecing, having been completed the operation of binding, based on this, Truth cards manager may determine that whether cutting ferrule is tied up with Truth cards manager Fixed.
Truth cards manager checking cutting ferrule end second bind decryption factor identical with Truth cards manager end binding factor after, generate the 6th connect with The machine factor;Specifically, the 6th connection random factor can be random number, random character or a combination thereof that Truth cards manager generates, certainly, Generate the 6th connection random factor after, it is also possible to the 6th connect random factor randomness verify, with improve the 6th connection random factor with Machine, prevents from being cracked.
Truth cards manager utilizes the cutting ferrule PKI in cutting ferrule certificate to connect the decryption random factor to the 5th and the 6th connection random factor adds Close acquisition the 6th connects ciphertext, utilizes Truth cards manager private key to connect the decryption random factor to the 5th and the 6th connection random factor is signed Obtain the 6th connection signature;Specifically, Truth cards manager utilize cutting ferrule PKI to the 5th connect the decryption random factor and the 6th connect random because of Son is encrypted to ensure the safety that the 5th connection decryption random factor and the 6th connects random factor transmission, and Truth cards manager utilizes true Card management device private key connects the decryption random factor to the 5th and the 6th connection random factor is signed, to ensure that follow-up cutting ferrule can be to true card The legitimacy of sheet manager identity is authenticated.
Truth cards manager sends the 3rd secure connection response to cutting ferrule, and wherein, the 3rd secure connection response includes: the 6th connects ciphertext and the Six connect signature;Specifically, Truth cards manager connects the 6th ciphertext and the 6th and connects signature and send to cutting ferrule, in order to cutting ferrule is to receiving Data are decrypted and verify.
Cutting ferrule receives the 3rd secure connection response, utilizes cutting ferrule private key to connect ciphertext to the 6th and is decrypted, it is thus achieved that the 5th connection RANDOM SOLUTION after deciphering The close factor and the 6th connects the decryption random factor;Specifically, utilize cutting ferrule private key to connect ciphertext to the 6th to be decrypted, if sent out in the data transmission Given birth to data transmission fault, or there occurs in the data transmission and distort, then will cause cannot the 5th connection after successful decryption, or deciphering random It is different from the 5th connection random factor and the 6th connection random factor that decryption factor connects the decryption random factor with the 6th.And added by cutting ferrule PKI Close, only cutting ferrule private key can be with successful decryption, thus it is also ensured that the safety of data deciphering.
Cutting ferrule utilizes the 5th connection decryption random factor and the 6th connection after the Truth cards manager PKI in Truth cards manager certificate, deciphering Decryption random factor pair the 6th connects signature and verifies;Specifically, cutting ferrule utilizes Truth cards manager PKI to send Truth cards manager Signature is verified, to guarantee the legitimate origin of data.
After cutting ferrule checking the 6th connection signature is correct, it is the most identical that the 5th connection decryption random factor after checking deciphering is connected random factor with the 5th; Specifically, the 5th connection random factor that cutting ferrule checking self generates is identical with the 5th connection decryption random factor after deciphering, it is ensured that data are also It is not tampered with, and the Data Source of encryption sends the object of the 5th connection random factor really for cutting ferrule.
Cutting ferrule checking deciphering after the 5th connection the decryption random factor with the 5th connect random factor identical after, at least with the 6th connection decryption random because of Son generates cutting ferrule end the second safe transmission key between cutting ferrule and Truth cards manager;Truth cards manager connects random factor at least with the 6th Generate the Truth cards manager end safe transmission key between cutting ferrule and Truth cards manager.Specifically, cutting ferrule can utilize the 6th connection RANDOM SOLUTION The close factor generates cutting ferrule end the second safe transmission key between cutting ferrule and Truth cards manager, it is also possible to utilize the 5th connection random factor, the 6th company Connect the decryption random factor and generate cutting ferrule end the second safe transmission key between cutting ferrule and Truth cards manager, it is also possible to utilize the 5th connection random because of Son, the 6th connection decryption random factor and cutting ferrule end the second binding factor generate cutting ferrule end the second safe transmission between cutting ferrule and Truth cards manager Key;Same, Truth cards manager can also utilize the 6th connection random factor to generate the Truth cards pipe between cutting ferrule and Truth cards manager Reason device end safe transmission key, it is also possible to utilize the 5th connection decryption random factor, the 6th connection random factor to generate cutting ferrule and Truth cards manager Between Truth cards manager end safe transmission key, it is also possible to utilize the 5th connection decryption random factor, the 6th connect random factor and truly blocking Sheet manager end binding factor generates the Truth cards manager end safe transmission key between cutting ferrule and Truth cards manager;If cutting ferrule and true card Sheet manager uses the algorithm that identical parameter is identical to generate safe transmission key.As can be seen here, in the present invention, safe transmission cryptographic key factor Can be the 6th connection decryption random factor at cutting ferrule end, or the 6th connects the decryption random factor and the 5th connection random factor;Safe transmission is close The key factor Truth cards manager end can be the 6th connect random factor, or the 6th connect random factor and the 5th connect decryption random because of Son.It addition, safe transmission key can include encryption and decryption key and/or check key, use encryption and decryption key can participate in data transmission and can ensure that The safety of data transmission, uses check key to participate in data transmission and can ensure that the integrity that data are transmitted, in the present invention it is possible to according to transmission The safety grades of data optionally uses safe transmission key.
Certainly, in the present invention, Truth cards manager connects, at least with the 6th, the true card that random factor generates between cutting ferrule and Truth cards manager The step of sheet manager end safe transmission key is not limited to the step in the manner one, it is also possible to Truth cards manager generate the 6th connection with Truth cards manager end safe transmission key is generated, it is also possible to the 5th connection decryption random factor after cutting ferrule checking deciphering is with the after the machine factor After five connection random factors are identical, after receiving the successful information that cutting ferrule sends, generate Truth cards manager end safe transmission key.
As can be seen here, the secure connection set up with Truth cards manager based on above-mentioned cutting ferrule, can improve the safety of data transmission.Meanwhile, also Can verify whether both sides are bound, further increase safety.
Additionally, the invention is not limited in that the foundation of secure connection initiated by above-mentioned cutting ferrule, it is also possible to triggered Truth cards manager by cutting ferrule and initiate safety Establishment of connection, now, is sent the 3rd secure connection by Truth cards manager and instructs to cutting ferrule, and other flow processs are contrary with above-mentioned flow implementation main body Can realize, this is no longer going to repeat them.
Mode two, cutting ferrule and Truth cards manager mutual authentication the other side identity again, and during mutual authentication the other side identity again, generate safety Transmission cryptographic key factor, after mutual authentication the other side's identity is passed through, binding factor and safe transmission cryptographic key factor at least with storage generate cutting ferrule with true Safe transmission key (cutting ferrule end the second safe transmission key and the Truth cards manager end safety of Security Data Transmission is carried out between real card management device Transmission key), and verify that the safe transmission key that both sides generate is the most identical.
Hereinafter, the one of presentation mode two of the present invention implements:
Fig. 4 shows that in the data interactive method that the embodiment of the present invention provides, the flow process of safe connection mode two set up by cutting ferrule and Truth cards manager Figure, sees Fig. 4, and cutting ferrule is set up secure connection with Truth cards manager and included:
The 7th connection random factor and Truth cards manager that the Truth cards manager that cutting ferrule reception Truth cards manager sends generates are unique Mark;Specifically, the 7th connects random number, random character or a combination thereof that random factor can be the generation of Truth cards manager, certainly, is giving birth to After becoming the 7th connection random factor, it is also possible to the 7th randomness connecting random factor is verified, to improve the random of the 7th connection random factor Property, prevent from being cracked.Before this step, Truth cards manager generates the 7th connection random factor, detects that this Truth cards manages at cutting ferrule After device, Truth cards manager connects random factor by the 7th and Truth cards manager uniquely identifies transmission to cutting ferrule.
Cutting ferrule sends the 4th secure connection instruction setting up secure connection for instruction, wherein, the 4th secure connection instruction bag to Truth cards manager Include: cutting ferrule uniquely identifies, cutting ferrule utilizes the Truth cards manager PKI in Truth cards manager certificate to connect random factor and generation to the 7th The 8th connection random factor be encrypted the 7th connection ciphertext, cutting ferrule of acquisition and utilize cutting ferrule private key to connect random factor and the 8th connection to the 7th Random factor carries out the 7th connection signature that signature obtains;Specifically, before using cutting ferrule to carry out data interaction with Truth cards manager, optional , between cutting ferrule and Truth cards manager, set up secure connection, the safety mutual to improve follow-up data.Wherein, what cutting ferrule received is used for It can be to be provided separately within the connection physical button generation that card puts that the 4th secure connection instruction of secure connection is set up in instruction, or can be cutting ferrule Touch screen on connect what virtual key generated, or can be that start-up password verification generates the most afterwards, or can be that cutting ferrule is to Truth cards pipe Reason device generates when sending logging request, or can be to select linkage function to generate on cutting ferrule screen in the menu of display.It is, of course, also possible to Generate for other any modes, be not the most restricted.Specifically, cutting ferrule utilizes Truth cards manager PKI to connect at random the 7th 8th connection random factor of the factor and generation is encrypted to ensure the 8th connection random factor transmission of the 7th connection random factor and generation Safety, the 8th connection random factor that cutting ferrule utilizes cutting ferrule private key to connect random factor and generation to the 7th signs, with ensure follow-up very The legitimacy of cutting ferrule identity can be authenticated by real card management device.It addition, the 8th connect random factor can be cutting ferrule generation random number, with Machine character or a combination thereof, certainly, after generating the 8th connection random factor, it is also possible to the 8th randomness connecting random factor is verified, with Improve the randomness of the 8th connection random factor, prevent from being cracked;Optionally, before this step, it is unique that cutting ferrule receives Truth cards manager After mark, cutting ferrule uniquely can identify according to Truth cards manager judge Truth cards manager whether in cutting ferrule end the second list of bindings, only Have after judging that Truth cards manager is in cutting ferrule end the second list of bindings, just perform follow-up flow process, optimize flow process, improve efficiency.
Truth cards manager receives the 4th secure connection instruction, it is judged that cutting ferrule uniquely identifies whether in Truth cards manager end list of bindings;Tool Body ground, Truth cards manager uniquely identifies according to the cutting ferrule received, it is judged that whether this cutting ferrule is in Truth cards manager end list of bindings;Only Have after judging to be fastened in Truth cards manager end list of bindings, just perform follow-up flow process, optimize flow process, improve efficiency.
If cutting ferrule uniquely identifies in Truth cards manager end list of bindings, Truth cards manager utilizes Truth cards manager private key to the 7th Connect ciphertext to be decrypted, it is thus achieved that the 7th connects the decryption random factor and the 8th connects the decryption random factor;Specifically, Truth cards is utilized to manage Device private key connects ciphertext to the 7th and is decrypted, if there occurs data transmission fault in the data transmission, or there occurs in the data transmission and distorts, Then will cause cannot successful decryption, or obtain the 7th connection the decryption random factor and the 8th connect the decryption random factor be connected with the 7th random because of It is different that son and the 8th connects random factor.And be encrypted by Truth cards manager PKI, only Truth cards manager private key can be successful Deciphering, thus it is also ensured that the safety of data deciphering.
Truth cards manager utilizes the cutting ferrule PKI in cutting ferrule certificate, the 7th connects the decryption random factor and the 8th and connect decryption random factor pair the Seven connect signature verifies;Specifically, the signature that Truth cards manager utilizes cutting ferrule PKI to send cutting ferrule is verified, to guarantee data Legitimate origin.
After Truth cards manager checking the 7th connection signature is correct, checking the 7th connection decryption random factor is connected random factor whether phase with the 7th With;Specifically, it is identical that the 7th connection random factor and the 7th that Truth cards manager checking self generates connects the decryption random factor, it is ensured that Data are also not tampered with, and the Data Source of encryption sends the object of the 7th connection random factor really for Truth cards manager.
If the 7th to connect the decryption random factor identical with the 7th connection random factor, Truth cards manager utilizes Truth cards manager private key to the The seven connection decryption random factors and the 8th connection decryption random factor carry out signature acquisition the 8th connection and sign;Specifically, Truth cards manager profit With Truth cards manager private key, the 7th connection decryption random factor and the 8th are connected the decryption random factor to sign, to ensure that follow-up cutting ferrule can It is authenticated with the legitimacy to Truth cards manager identity.
Truth cards manager sends the 4th secure connection response to cutting ferrule, and wherein, the 4th secure connection response includes: the 8th connects signature;Specifically Ground, Truth cards manager connects signature by the 8th and sends to cutting ferrule, in order to the data received are verified by cutting ferrule.
Cutting ferrule receives the 4th secure connection response, utilizes the Truth cards manager PKI in Truth cards manager certificate, the 7th connection random factor Connect random factor with the 8th the 8th connection signature is verified;Specifically, cutting ferrule utilizes Truth cards manager PKI to Truth cards manager The signature sent is verified, to guarantee the legitimate origin of data.
After cutting ferrule checking the 8th connection signature is correct, connects random factor at least with the 8th and cutting ferrule end the second binding factor generates cutting ferrule with true Cutting ferrule end the second safe transmission key between card management device;Truth cards manager connects the decryption random factor and Truth cards at least with the 8th Manager end binding factor generates the Truth cards manager end safe transmission key between cutting ferrule and Truth cards manager;Specifically, cutting ferrule can be in order to Connect random factor with the 8th and cutting ferrule end the second binding factor generate cutting ferrule end the second safe transmission key between cutting ferrule and Truth cards manager, The 7th connection random factor, the 8th connection random factor and cutting ferrule end the second binding factor can also be utilized to generate between cutting ferrule and Truth cards manager Cutting ferrule end the second safe transmission key;Same, Truth cards manager can also utilize the 8th connection decryption random factor and Truth cards pipe Reason device end binding factor generates the Truth cards manager end safe transmission key between cutting ferrule and Truth cards manager, it is also possible to utilize the 7th connection with The machine factor, the 8th connection decryption random factor and Truth cards manager end binding factor generate the Truth cards between cutting ferrule and Truth cards manager Manager end safe transmission key;As long as the algorithm that the parameter that cutting ferrule is identical with Truth cards manager employing is identical generates safe transmission key. As can be seen here, in the present invention, safe transmission cryptographic key factor cutting ferrule end can be the 8th connect random factor, or the 7th connect random factor with And the 8th connect random factor;Safe transmission cryptographic key factor can be the 8th connection decryption random factor at Truth cards manager end, or the 7th connects Connect random factor and the 8th and connect the decryption random factor.It addition, safe transmission key can include encryption and decryption key and/or check key, use adds Decruption key can participate in data transmission and can ensure that the safety that data are transmitted, and uses check key to participate in data transmission and can ensure that what data were transmitted Integrity, in the present invention it is possible to optionally use safe transmission key according to the safety grades of transmission data.
Cutting ferrule utilizes cutting ferrule end the second safe transmission double secret key the 7th to connect random factor and the 8th connection random factor carries out transmission after the first process To true card management device;Truth cards manager utilizes Truth cards manager end safe transmission double secret key the 7th to connect the decryption random factor and the The eight connection decryption random factors send to cutting ferrule after carrying out the first process;Specifically, both sides utilize the safe transmission data key of each self-generating to carry out Send to the other side after first process, in order to the other side verifies that the safe transmission key that both sides generate is the most identical.
Cutting ferrule receives the data that Truth cards manager sends, and the data utilizing cutting ferrule end the second safe transmission double secret key to receive are carried out at second Reason, compare the data after the second process be connected with the 7th random factor and the 8th connection random factor the most identical;Truth cards manager receiving card Overlap the data sent, and the data utilizing Truth cards manager end safe transmission double secret key to receive carry out the second process, after comparing the second process Data are connected the decryption random factor with the 7th and the 8th connection decryption random factor is the most identical.Specifically, both sides utilize the safety of each self-generating to pass After the data that defeated double secret key receives carry out the second process, each compare the data after the second process the most identical with the data each sent, if phase With, then the safe transmission key that explanation both sides generate is identical, in order to ensure that the follow-up safe transmission key that can utilize each self-generating of both sides carries out data Safe transmission.It addition, while the safe transmission key of checking both sides' generation is identical, it is also possible to the binding factor of checking each storage is identical, enters It is real bound object that one step demonstrate,proves the other side, improves the safety of subsequent data transmission further.
Certainly, in the present invention, Truth cards manager generates the step of Truth cards manager end safe transmission key and is not limited in the manner two Step, it is also possible to deciphering obtain the 8th connection the decryption random factor after generate Truth cards manager end safe transmission key, it is also possible at cutting ferrule Checking Truth cards manager send the 8th connection signature errorless after, receive cutting ferrule send successful information after generate Truth cards manager end safety Transmission key;Cutting ferrule generates the step of cutting ferrule end the second safe transmission key and is also not limited to the step in the manner two, it is also possible to generate the at cutting ferrule Eight connect generation cutting ferrule end the second safe transmission key after random factor.
As can be seen here, the secure connection set up with Truth cards manager based on above-mentioned cutting ferrule, can improve the safety of data transmission.Meanwhile, also Can verify whether both sides are bound, further increase safety.
Additionally, the invention is not limited in that the foundation of secure connection initiated by above-mentioned cutting ferrule, it is also possible to triggered Truth cards manager by cutting ferrule and initiate safety Establishment of connection, now, is sent the 4th secure connection by Truth cards manager and instructs to cutting ferrule, and other flow processs are contrary with above-mentioned flow implementation main body Can realize, this is no longer going to repeat them.
Three, Truth cards information list generates and updates:
1, Truth cards manager end Truth cards information list generates and updates:
Truth cards manager carries out the generation of Truth cards manager end Truth cards information list, certainly, the present invention not office in the following way It is limited to this:
The Truth cards that Truth cards manager pair is connected with Truth cards manager detects;Specifically, Truth cards manager is arranged on which Contact interface and/or non-contact interface detect, to determine whether that Truth cards is attached with Truth cards manager, can be successively Detected whether connected Truth cards, it is also possible to detected whether connected Truth cards simultaneously.Optionally, Truth cards manager Could be arranged to preserve the Truth cards information of all or part of Truth cards in connected Truth cards, in order to user is according to Truth cards Security requirement make different setting, the Truth cards letter not allowing to obtain some Truth cards such as can be set on Truth cards manager Breath, thus ensure the safety of these Truth cards.
Truth cards manager after the Truth cards being connected with Truth cards manager being detected, obtain Truth cards Truth cards information, wherein, Truth cards information at least includes: card number;Specifically, Truth cards manager, when having detected that Truth cards is attached with it, reads and it The Truth cards information of storage in the Truth cards connected, and finally obtain the Truth cards letter of the Truth cards being all connected with Truth cards manager Breath.Additionally, Truth cards information is except comprising card extra, it is also possible to the information such as issuer mark comprising card authentication information, Truth cards.
After Truth cards manager obtains the Truth cards information of Truth cards, generate Truth cards manager end Truth cards information list.Specifically, After Truth cards manager obtains the Truth cards information of connected Truth cards, generate Truth cards manager end Truth cards information row Table, in order to follow-up cutting ferrule can obtain this Truth cards manager end Truth cards information list, facilitates follow-up use.Optionally, Truth cards pipe What reason device can get is, and user setup is the Truth cards information of Truth cards allowing to be acquired.
Additionally, Truth cards manager is in addition to generating Truth cards manager end Truth cards information list, also generate Truth cards manager end mark Know list, the mark in this Truth cards manager end identification list and the Truth cards information in Truth cards manager end Truth cards information list One_to_one corresponding.Specifically, the mark in this Truth cards manager identification list can uniquely identify corresponding Truth cards, and this mark can be: (such as 1 represents and has Truth cards, and 0 represents without truly for the mark that shows whether to have Truth cards to connect at contact interface and/or non-contact interface Card), or this mark can be the issuer coding (when such as Truth cards is bank card, this is encoded to bank's coding) of Truth cards, true The tail number of the card number of card, Truth cards the information such as the check value (such as CRC check value etc.) of card number in one or its combination in any.Very Real card management device generates this Truth cards manager end identification list, and follow-up cutting ferrule can be facilitated to carry out the renewal of Truth cards information list.
Certainly, Truth cards manager can detect and generate Truth cards manager end true after each Truth cards manager is started shooting the most again Card image list;Or can also be triggered true card by the function button (physical button or virtual key) that Truth cards manager provides After sheet detection, regenerate Truth cards manager end Truth cards information list;Or can also detect very at Truth cards manager every time When real card carries out plugging or carrying out admission appearance, Truth cards information list performs to increase and/or delete the operation of Truth cards information.
Optionally, Truth cards manager could be arranged to preserve the Truth cards letter of all or part of Truth cards in connected Truth cards Breath, in order to user according to the security requirement of Truth cards is made different setting, such as, can arrange on Truth cards manager and not allow to obtain The Truth cards information of some Truth cards, thus ensure the safety of these Truth cards.
Specifically, contact interface and/or non-contact interface can be carried out subregion by Truth cards manager, according to the difference using safety coefficient It is divided into conventional cards region and important card panel region.Such as: Truth cards less for the amounts of money involved such as the card with small amount of money of user, vice card, mass transit card is put Put in conventional cards region, and Truth cards bigger for the amounts of money involved such as the wholesale card of user, credit card main card is placed on important card panel region.
After Truth cards manager carries out subregion to contact interface and/or non-contact interface, can be to allowing to obtain the Truth cards of Truth cards The conventional cards region of information is read out, to obtain the Truth cards information of the Truth cards being attached in conventional cards region;And cannot be to not The important card panel region obtaining the Truth cards information of Truth cards is allowed to be read out, it is impossible to obtain the true card being attached in important card panel region The Truth cards information of sheet.Thus, the Truth cards manager end Truth cards information list that Truth cards manager generates can only be included in common The Truth cards information of the Truth cards that card panel region connects, cutting ferrule can obtain the Truth cards letter of the Truth cards connected in conventional cards region Breath, it is impossible to obtain the Truth cards information of Truth cards connected in important card panel region, such as: the Truth cards in conventional cards region for Cutting ferrule is visible, and cutting ferrule can directly be attached using;Truth cards in important card panel region is invisible for cutting ferrule, and cutting ferrule cannot Directly it is attached using, as the Truth cards in important card region need to be attached use, then needs a pair to be in the following way somebody's turn to do Card in important card panel region is configured, in order to cutting ferrule can be attached making with all or part of Truth cards in this important card panel region With:
Mode one, user are after input login password, and cutting ferrule only has the authority that the whole Truth cards in conventional cards region are attached use, Not there is the authority that the Truth cards in important card region is attached use, as being attached making to the Truth cards in important card region With, then physical button can be set on Truth cards manager or virtual key is set on Truth cards manager or at Truth cards Function menu is set on manager, in order to user can arrange cutting ferrule on Truth cards manager and carry out the Truth cards in important card region even Connect the authority of use.Such as: user can press the option in physical button, virtual key or function menu manually, starts card Set is attached the authority used to all or part of Truth cards in this important card panel region, so that cutting ferrule can be with this important card section In territory, the Truth cards of open authority is attached using.
Mode two, user are after input login password, and cutting ferrule only has the authority that the whole Truth cards in conventional cards region are attached use, Not there is the authority that the Truth cards in important card region is attached use, as being attached making to the Truth cards in important card region With, then client can be set on Truth cards manager, or arrange be connected with Truth cards manager control terminal (such as: PC, Smart mobile phone, panel computer etc.), and client is set in control terminal, user carries out priority assignation by logging in client, with open or pass Close the authority that all or part of Truth cards in important card region is attached using by cutting ferrule, in order to make the cutting ferrule can be with this important card In region, the Truth cards of open authority is attached using.
Mode three, user are after input login password, and cutting ferrule only has the authority that the whole Truth cards in conventional cards region are attached use, Not there is the authority that the Truth cards in important card region is attached use, as being attached making to the Truth cards in important card region With, then web-privilege password Web can be set on Truth cards manager, Truth cards manager can be initiated priority assignation by cutting ferrule by user asks, Truth cards manager is only receiving priority assignation request and is receiving the web-privilege password Web of user's input, and close in the authority of checking user's input After code is correct, just with open or close cutting ferrule, all or part of Truth cards in important card region can be attached the authority of use, in order to Make cutting ferrule can be attached using by the Truth cards of open authority with in this important card panel region.Wherein, web-privilege password Web and login password and report Alert password is different.Certainly, if the web-privilege password Web of Truth cards manager checking user's input is incorrect, the most do not perform in important card region All or part of Truth cards is attached the setting of the authority used.
2, cutting ferrule end Truth cards information list updates:
In the present invention, the cutting ferrule end Truth cards information list that cutting ferrule obtains is that the Truth cards manager end obtained from Truth cards manager is true Card image list.
Cutting ferrule end Truth cards information list updates and can include following manner:
After mode one, cutting ferrule log in Truth cards manager, Truth cards manager judges whether to need to carry out cutting ferrule end Truth cards information list Update and operate:
A kind of implementation of mode one presented below:
Cutting ferrule end identification list searched by cutting ferrule;Specifically, cutting ferrule end identification list is the Truth cards management that cutting ferrule obtains from Truth cards manager Device end identification list.
If cutting ferrule finds cutting ferrule end identification list, then after utilizing cutting ferrule end the second safe transmission double secret key cutting ferrule end identification list to carry out the first process Sending to true card management device, Truth cards manager receives the data that cutting ferrule sends, utilizes Truth cards manager end safe transmission key to dock After the data received carry out the second process, it is judged that the Truth cards manager end identification list that the data after the second process store with Truth cards manager It is the most identical, if it is not the same, then Truth cards manager utilizes Truth cards manager end safe transmission double secret key to update instruction and more new data enters Row first sends to cutting ferrule after processing, and cutting ferrule receives the data that Truth cards manager sends, and utilizes cutting ferrule end the second safe transmission double secret key to receive To data carry out the second process after, update cutting ferrule end Truth cards information list;Specifically, update cutting ferrule end Truth cards information list can lead to Cross following manner to carry out: the renewal instruction that Truth cards manager sends includes increasing and/or deleting instruction, and more new data packets includes needs to be increased or delete The Truth cards information removed, is fastened in after receiving renewal instruction and more new data, believes cutting ferrule end Truth cards according to updating instruction and more new data Breath list performs to increase and/or deletion action;Or the renewal instruction that Truth cards manager sends includes increasing and/or deleting instruction, more new data Including the mark that the Truth cards information needing increase Truth cards information or needs to delete is corresponding, it is fastened in and receives renewal instruction and more new data After, perform to increase and/or deletion action to cutting ferrule end Truth cards information list according to updating instruction and more new data;Or, Truth cards manager The renewal instruction sent includes replacement instruction, and more new data packets includes up-to-date Truth cards manager end Truth cards information list, is fastened in and receives After updating instruction and more new data, according to updating instruction and more new data, cutting ferrule end Truth cards information list is performed replacement operation.
If cutting ferrule does not finds cutting ferrule end identification list, then utilize cutting ferrule end the second safe transmission double secret key to preset after mark carries out the first process and send To true card management device, Truth cards manager receives the data that cutting ferrule sends, utilizes Truth cards manager end safe transmission double secret key to receive Data carry out the second process after, Truth cards manager determine the second process after data for indicating cutting ferrule end not store cutting ferrule end identification list Time, utilizing Truth cards manager end safe transmission double secret key to update after instruction carries out the first process with more new data and send to cutting ferrule, cutting ferrule receives The data that Truth cards manager sends, after the data utilizing cutting ferrule end the second safe transmission double secret key to receive carry out the second process, update cutting ferrule end Truth cards information list.Specifically, update cutting ferrule end Truth cards information list can carry out in the following way: Truth cards manager sends Renewal instruction include storage instruction, more new data packets includes up-to-date Truth cards manager end Truth cards information list, is fastened in and receives renewal After instruction and more new data, according to updating instruction and more new data, cutting ferrule end Truth cards information list is performed storage operation.
Above-mentioned implementation based on mode one, cutting ferrule carries out judging whether unanimously to true card management device by being sent by cutting ferrule end identification list, Owing to cutting ferrule end identification list data volume is much smaller than cutting ferrule end Truth cards information list, it therefore reduces the data volume of data transmission, improve number According to transfer rate, also improve the judgement speed of Truth cards manager.If cutting ferrule is to use for the first time, then cutting ferrule itself does not store cutting ferrule end Identification list, now, sends and presets mark to true card management device, in order to Truth cards manager issues Truth cards manager end identification list And Truth cards manager end Truth cards information list is to cutting ferrule, this default mark can be empty mark, predefined numerical value or predefined word Symbol etc..
Certainly, the invention is not limited in the above-mentioned implementation of mode one, it is also possible to do not store identification list at cutting ferrule and Truth cards manager Time, realize one of in the following way the renewal of cutting ferrule end Truth cards information list:
Cutting ferrule end Truth cards information list is directly transmitted to Truth cards manager, in order to after Truth cards manager is compared, judgement is by cutting ferrule No renewal;Or
The numbering of table of cutting ferrule end Truth cards information list is sent to Truth cards manager, in order to Truth cards manager comparison list is compiled by cutting ferrule Number the most identical judging whether updates;Or
Received the renewal instruction of user's input by Truth cards manager after, Truth cards manager is by Truth cards manager end Truth cards information List sends to cutting ferrule.
Certainly, after Truth cards manager judges that needs are updated, it is also possible to sending renewal inquiry and ask to cutting ferrule, this renewal pointed out by cutting ferrule Inquiry request is to user, in order to user is confirmed whether to be updated.
After mode two, cutting ferrule log in Truth cards manager, cutting ferrule judges whether that needing to carry out the renewal of cutting ferrule end Truth cards information list operates:
After Truth cards manager utilizes true cutting ferrule manager end safe transmission double secret key Truth cards manager end identification list to carry out the first process Send to cutting ferrule;
Cutting ferrule receives the data that Truth cards manager sends, and the data utilizing cutting ferrule end the second safe transmission double secret key to receive carry out the second process After, it is judged that the data after the second process are the most identical with the cutting ferrule end identification list that cutting ferrule stores;Specifically, if cutting ferrule uses for the first time or never Truth cards manager end identification list is downloaded in success, and storage cutting ferrule end identification list, is not the most directly judged to difference.
If it is not the same, then cutting ferrule sends more newly requested to Truth cards manager;
Truth cards manager receives more newly requested, utilizes Truth cards manager end safe transmission double secret key to update instruction and more new data carries out first Send to cutting ferrule after process;
Cutting ferrule receives the data that Truth cards manager sends, and the data utilizing cutting ferrule end the second safe transmission double secret key to receive carry out the second process After, update cutting ferrule end Truth cards information list.Specifically, update cutting ferrule end Truth cards information list can carry out in the following way: true The renewal instruction that card management device sends includes increasing and/or deleting instruction, and more new data packets includes the Truth cards information needing to increase or delete, card It is enclosed within after receiving renewal instruction and more new data, performs to increase and/or delete to cutting ferrule end Truth cards information list according to updating instruction and more new data Division operation;Or the renewal instruction that Truth cards manager sends includes increasing and/or deleting instruction, more new data packets includes to be needed to increase Truth cards letter Breath or need mark corresponding to Truth cards information deleted, is fastened in after receiving renewal instruction and more new data, according to updating instruction and updating Cutting ferrule end Truth cards information list is performed to increase and/or deletion action by data;Or, the renewal instruction that Truth cards manager sends includes replacing Instruction, more new data packets includes up-to-date Truth cards manager end Truth cards information list, is fastened in after receiving renewal instruction and more new data, According to updating instruction and more new data, cutting ferrule end Truth cards information list is performed replacement operation.
Above-mentioned implementation based on mode two, Truth cards manager is by judging the transmission of Truth cards manager end identification list to cutting ferrule The most consistent, owing to Truth cards manager end identification list data volume is much smaller than Truth cards manager end Truth cards information list, therefore, subtract The data volume of little data transmission, improves message transmission rate, also improves the judgement speed of cutting ferrule.If cutting ferrule is to use for the first time, then block Set itself does not store cutting ferrule end identification list, now, receives after Truth cards manager issues Truth cards manager end identification list, directly Send more newly requested so that Truth cards manager sends Truth cards manager end Truth cards information list to cutting ferrule.
Certainly, the invention is not limited in the above-mentioned implementation of mode two, it is also possible to do not store identification list at cutting ferrule and Truth cards manager Time, realize one of in the following way the renewal of cutting ferrule end Truth cards information list:
Directly Truth cards manager end Truth cards information list is sent to cutting ferrule, in order to cutting ferrule directly stores by Truth cards manager;Or
The numbering of table of Truth cards manager end Truth cards information list is sent to cutting ferrule, in order to cutting ferrule comparison list is compiled by Truth cards manager Number the most identical judging whether updates;Or
Received the renewal instruction of user's input by cutting ferrule after, cutting ferrule sends and updates request to Truth cards manager, in order to Truth cards manager is straight Connect and issue the transmission of Truth cards manager end Truth cards information list to cutting ferrule.
Certainly, after cutting ferrule judges that needs are updated, it is also possible to prompting user is confirmed whether to be updated, and after user confirms to be updated, Perform follow-up renewal to operate.
The cutting ferrule of the present invention, in addition to possessing normal mode of operation, also has heart beating park mode, and wherein, heart beating park mode is the non-of low-power consumption Mode of operation, i.e. closes some unnecessary power consumption programs etc..Specifically, cutting ferrule can enter heart beating dormancy mould after not operating in Preset Time Formula, it is also possible to controlled to enter heart beating park mode by the operation of user.
It is fastened under heart beating park mode, it is also possible to judge whether the secure connection keeping setting up between cutting ferrule and Truth cards manager, in order at card Set is by when recovering to mode of operation under phychology park mode, it is not necessary to again set up secure connection with Truth cards manager, improves convenience.
A kind of being fastened under heart beating park mode presented below judges whether to keep the tool of the secure connection of foundation between cutting ferrule and Truth cards manager Body implementation:
It is fastened under heart beating park mode, sends detection information every the first Preset Time to Truth cards manager;
Truth cards manager receives detection information, sends response message to cutting ferrule;
If not receiving response message in being fastened in the second Preset Time, then disconnect the secure connection between cutting ferrule and Truth cards manager;
If receiving response message in being fastened in the second Preset Time, then keep the secure connection that cutting ferrule is set up with Truth cards manager.
Do not receive response message in being fastened in the second Preset Time, may be the unstable networks between cutting ferrule and Truth cards manager, or truly Card management device operation irregularity, the secure connection now disconnected between cutting ferrule and Truth cards manager ensure that safety;It is fastened in second when presetting In receive response message, then cutting ferrule keep and Truth cards manager between secure connection, when cutting ferrule recovery mode of operation, it is not necessary to again build Vertical secure connection, convenient use.
Certainly, under heart beating park mode, user can also select manually to disconnect the secure connection between cutting ferrule and Truth cards manager, such as, make Cutting ferrule such as is logged off from Truth cards manager at the operation, or user performs power-off operation to cutting ferrule.
Above-mentioned first Preset Time can be identical from the second Preset Time or different.
Under heart beating park mode provided below, the mode that cutting ferrule end Truth cards information list updates:
After mode three, cutting ferrule log in Truth cards manager, cutting ferrule is under heart beating park mode, and it is true that cutting ferrule judges whether to need to carry out cutting ferrule end Card image list update operates:
Under heart beating park mode, also comprise renewal information if received in being fastened in the second Preset Time in response message, and response message, Then cutting ferrule storage updates information;Wherein, updating information is that Truth cards manager informs that cutting ferrule Truth cards manager has Truth cards pipe The information that reason device end Truth cards information list updates.
After cutting ferrule is entered mode of operation by heart beating park mode, cutting ferrule sends to Truth cards manager and updates the request of triggering;Specifically, cutting ferrule can With in the following way by heart beating park mode enter mode of operation: cutting ferrule receive renewal information after automatically into mode of operation, or card socket After receiving the operational order (such as user carries out the operational order etc. of key-press input) of user's input, enter mode of operation.
Truth cards manager receives and updates the request of triggering, utilizes Truth cards manager end safe transmission double secret key Truth cards manager end identity column Table sends to cutting ferrule after carrying out the first process;
Cutting ferrule receives the data that Truth cards manager sends, and the data utilizing cutting ferrule end the second safe transmission double secret key to receive carry out the second process After, it is judged that the data after the second process are the most identical with the cutting ferrule end identification list that cutting ferrule stores;Specifically, if cutting ferrule uses for the first time or never Truth cards manager end identification list is downloaded in success, and storage cutting ferrule end identification list, is not the most directly judged to difference.
If it is not the same, then cutting ferrule sends more newly requested to Truth cards manager;
Truth cards manager receives more newly requested, utilizes Truth cards manager end safe transmission double secret key to update instruction and more new data carries out first Send to cutting ferrule after process;
Cutting ferrule receives the data that Truth cards manager sends, and the data utilizing cutting ferrule end the second safe transmission double secret key to receive carry out the second process After, update cutting ferrule end Truth cards information list.Specifically, update cutting ferrule end Truth cards information list can carry out in the following way: true The renewal instruction that card management device sends includes increasing and/or deleting instruction, and more new data packets includes the Truth cards information needing to increase or delete, card It is enclosed within after receiving renewal instruction and more new data, performs to increase and/or delete to cutting ferrule end Truth cards information list according to updating instruction and more new data Division operation;Or the renewal instruction that Truth cards manager sends includes increasing and/or deleting instruction, more new data packets includes to be needed to increase Truth cards letter Breath or need mark corresponding to Truth cards information deleted, is fastened in after receiving renewal instruction and more new data, according to updating instruction and updating Cutting ferrule end Truth cards information list is performed to increase and/or deletion action by data;Or, the renewal instruction that Truth cards manager sends includes replacing Instruction, more new data packets includes up-to-date Truth cards manager end Truth cards information list, is fastened in after receiving renewal instruction and more new data, According to updating instruction and more new data, cutting ferrule end Truth cards information list is performed replacement operation.
Above-mentioned implementation based on mode three, Truth cards manager is by judging the transmission of Truth cards manager end identification list to cutting ferrule The most consistent, owing to Truth cards manager end identification list data volume is much smaller than Truth cards manager end Truth cards information list, therefore, subtract The data volume of little data transmission, improves message transmission rate, also improves the judgement speed of cutting ferrule.If cutting ferrule is to use for the first time, then block Set itself does not store cutting ferrule end identification list, now, receives after Truth cards manager issues Truth cards manager end identification list, directly Send more newly requested so that Truth cards manager sends Truth cards manager end Truth cards information list to cutting ferrule.
Certainly, the invention is not limited in the above-mentioned implementation of mode three, it is also possible to do not store identification list at cutting ferrule and Truth cards manager Time, realize one of in the following way the renewal of cutting ferrule end Truth cards information list:
Directly Truth cards manager end Truth cards information list is sent to cutting ferrule, in order to cutting ferrule directly stores by Truth cards manager;Or
The numbering of table of Truth cards manager end Truth cards information list is sent to cutting ferrule, in order to cutting ferrule comparison list is compiled by Truth cards manager Number the most identical judging whether updates;Or
Received the renewal instruction of user's input by cutting ferrule after, cutting ferrule sends and updates request to Truth cards manager, in order to Truth cards manager is straight Connect and issue the transmission of Truth cards manager end Truth cards information list to cutting ferrule.
After mode four, cutting ferrule log in Truth cards manager, cutting ferrule is under heart beating park mode, and Truth cards manager judges whether that needs are carried out Cutting ferrule end Truth cards information list updates and operates:
Being fastened under heart beating park mode, if received in being fastened in the second Preset Time, response message, and response message also comprising renewal prompting letter Breath, then cutting ferrule storage updates information;Wherein, updating information is that Truth cards manager informs that cutting ferrule Truth cards manager has true card The information that sheet manager end Truth cards information list updates.
Entering after mode of operation by heart beating park mode at cutting ferrule, cutting ferrule utilizes cutting ferrule end the second safe transmission double secret key cutting ferrule end identification list to carry out the Send to true card management device after one process;Specifically, cutting ferrule can be entered mode of operation by heart beating park mode in the following way: cutting ferrule is received To updating after information automatically into mode of operation, or cutting ferrule receives the operational order of user's input, and (such as user carries out the operation of key-press input Instruction etc.) after, enter mode of operation.If cutting ferrule is for using for the first time or from being not successfully downloaded Truth cards manager end identification list, then blocking Not storing cutting ferrule end identification list in set, now, cutting ferrule utilizes cutting ferrule end the second safe transmission double secret key to preset after mark carries out the first process and sends To true card management device.
Truth cards manager receives the data that cutting ferrule sends, and the data utilizing Truth cards manager end safe transmission double secret key to receive carry out second After process, it is judged that the data after the second process are the most identical with the Truth cards manager end identification list that Truth cards manager stores;Specifically, Truth cards manager receives presets mark, is also judged as differing.
If it is not the same, then Truth cards manager utilizes Truth cards manager end safe transmission double secret key to update instruction and more new data carries out first Send to cutting ferrule after process;
Cutting ferrule receives the data that Truth cards manager sends, and the data utilizing cutting ferrule end the second safe transmission double secret key to receive carry out the second process After, update cutting ferrule end Truth cards information list.Specifically, update cutting ferrule end Truth cards information list can carry out in the following way: true The renewal instruction that card management device sends includes increasing and/or deleting instruction, and more new data packets includes the Truth cards information needing to increase or delete, card It is enclosed within after receiving renewal instruction and more new data, performs to increase and/or delete to cutting ferrule end Truth cards information list according to updating instruction and more new data Division operation;Or the renewal instruction that Truth cards manager sends includes increasing and/or deleting instruction, more new data packets includes to be needed to increase Truth cards letter Breath or need mark corresponding to Truth cards information deleted, is fastened in after receiving renewal instruction and more new data, according to updating instruction and updating Cutting ferrule end Truth cards information list is performed to increase and/or deletion action by data;Or, the renewal instruction that Truth cards manager sends includes replacing Instruction, more new data packets includes up-to-date Truth cards manager end Truth cards information list, is fastened in after receiving renewal instruction and more new data, According to updating instruction and more new data, cutting ferrule end Truth cards information list is performed replacement operation.
Above-mentioned implementation based on mode four, cutting ferrule carries out judging whether unanimously to true card management device by being sent by cutting ferrule end identification list, Owing to cutting ferrule end identification list data volume is much smaller than cutting ferrule end Truth cards information list, it therefore reduces the data volume of data transmission, improve number According to transfer rate, also improve the judgement speed of Truth cards manager.If cutting ferrule is to use for the first time, then cutting ferrule itself does not store cutting ferrule end Identification list, now, sends and presets mark to true card management device, in order to Truth cards manager issues Truth cards manager end identification list And Truth cards manager end Truth cards information list is to cutting ferrule, this default mark can be empty mark, predefined numerical value or predefined word Symbol etc..
Certainly, the invention is not limited in the above-mentioned implementation of mode four, it is also possible to do not store identification list at cutting ferrule and Truth cards manager Time, realize one of in the following way the renewal of cutting ferrule end Truth cards information list:
Cutting ferrule end Truth cards information list is directly transmitted to Truth cards manager, in order to after Truth cards manager is compared, judgement is by cutting ferrule No renewal;Or
The numbering of table of cutting ferrule end Truth cards information list is sent to Truth cards manager, in order to Truth cards manager comparison list is compiled by cutting ferrule Number the most identical judging whether updates;Or
Received the renewal instruction of user's input by Truth cards manager after, Truth cards manager is by Truth cards manager end Truth cards information List sends to cutting ferrule.
Optionally, it is attached using to all or part of Truth cards in important card region at the open or close cutting ferrule of Truth cards manager Authority after, owing to Truth cards manager end Truth cards information list is updated, therefore, Truth cards manager can will open cutting ferrule The Truth cards information of the authority that all or part of Truth cards in important card region is attached use sends to cutting ferrule, in order to cutting ferrule is more New cutting ferrule end Truth cards information list;Or at all or part of true in important card region of the open or close cutting ferrule of Truth cards manager After real card is attached the authority used, triggering the flow process that cutting ferrule end Truth cards information list updates, update mode is referred to aforesaid way one With the update mode of mode two, it is not described in detail in this.
In the more new data that above Truth cards manager sends in addition to comprising Truth cards manager end Truth cards information list, also comprise true Real card management device end identification list, in order to cutting ferrule obtains up-to-date identification list.
Four, the Truth cards chosen is determined:
Cutting ferrule obtains cutting ferrule end Truth cards information list, and wherein, cutting ferrule end Truth cards information list is the true of acquisition from Truth cards manager Real card management device end Truth cards information list;Specifically, optionally, before this step, it is also possible to perform cutting ferrule start, cutting ferrule logs in true The operation of real card management device, does not repeats them here, and specifically may refer to the start of above-mentioned relevant cutting ferrule and cutting ferrule logs in the relevant of Truth cards manager Describe.In this step, cutting ferrule obtains cutting ferrule end Truth cards information list, it is also possible to include that cutting ferrule updates cutting ferrule end Truth cards information list Step, also repeats no more at this, specifically may refer to above-mentioned cutting ferrule and updates the associated description of cutting ferrule end Truth cards information list.Cutting ferrule is from true card After the Truth cards manager end Truth cards information list obtained in sheet manager, store it in the memory area of cutting ferrule, true as cutting ferrule end Real card image list, when cutting ferrule needs prompting (such as display or speech play etc.) cutting ferrule end Truth cards information list, can be from this locality Directly obtain this cutting ferrule end Truth cards information list, improve the processing speed of cutting ferrule.
Cutting ferrule prompting cutting ferrule end Truth cards information list;Specifically, cutting ferrule utilizes the display device of self or by exterior display device display card Overlap end Truth cards information list, or cutting ferrule utilizes the voice playing device of self or by external voice playing device speech play (such as loudspeaker Play or by headset earpiece broadcasting etc.) cutting ferrule end Truth cards information list, select according to cutting ferrule end Truth cards information list for user Select the Truth cards needing to use when being traded, facilitate user to select, strengthen Consumer's Experience.
Cutting ferrule receives Truth cards and selects instruction, determines the Truth cards chosen;Specifically, the Truth cards that cutting ferrule receives selects instruction can be single Solely be arranged on what the selection physical button that card puts generated, or can be to select virtual key generation on the touch screen of cutting ferrule, or can be On cutting ferrule screen, the menu of display is chosen and represent what the menu item of selection function generated.Cutting ferrule receives Truth cards and selects instruction, determines choose true Real card, cutting ferrule realizes data transmission via Truth cards manager and the Truth cards chosen.Furthermore it is possible to realize in the following way determining choosing In Truth cards: cutting ferrule receives Truth cards and selects instruction, obtains and chooses mark, wherein, chooses and identifies for the Truth cards chosen of instruction; Cutting ferrule will choose mark to send to true card management device;Truth cards manager is according to choosing the true card identified from being connected with Truth cards manager In sheet, determine the Truth cards chosen corresponding with choosing mark;Wherein, choosing mark can be the part or all of information in Truth cards information, Such as: card number and/or Truth cards manager reading-writing port mark;Truth cards manager receives after choosing mark, can manage at Truth cards Device end Truth cards information list finds the Truth cards manager reading-writing port mark corresponding with choosing mark, in order to Truth cards manager is true Its reading-writing port fixed, thus carry out data interaction by this reading-writing port with the Truth cards chosen.
Five, data interaction:
Cutting ferrule utilizes cutting ferrule end the second safe transmission pending data of double secret key to send to true card management device after carrying out the first process;Specifically, card Set can also show pending data, it is also possible to speech play (such as loudspeaker are play or by headset earpiece broadcasting etc.) pending data, for User confirms that these pending data are the most correct, only after correct, after what reception user inputted indicates the confirmation instruction that pending data are correct, These pending data are sent to true card management device;If user confirms that these pending data are incorrect, then can directly cancel this secondary data and hand over Mutually, with this, the safety of data interaction is improved.What cutting ferrule received can be to be provided separately within card for indicating the confirmation that pending data are correct to instruct The confirmation physical button put generates, or can be that the confirmation virtual key on the touch screen of cutting ferrule generates, or display on cutting ferrule screen Menu selects confirm what function generated, or can be that the voice that the voice acquisition device (such as Mike) of cutting ferrule receives confirms to indicate and verify By generate time rear, or can be that the fingerprint acquisition device of cutting ferrule receives and generates after fingerprint identification indicates and is verified, or can be The iris collection device of cutting ferrule receives generation after iris confirms instruction and is verified, it is, of course, also possible to generate for other any modes, The present invention is not restricted.
Truth cards manager receives the data that cutting ferrule sends, and the data utilizing Truth cards manager end safe transmission double secret key to receive carry out the Send to the Truth cards chosen after two process;Specifically, pending data are sent to the Truth cards chosen by Truth cards manager, in order to Pending data are processed by the Truth cards chosen.
The Truth cards chosen receives the data that Truth cards manager end sends, and the data that will obtain after processing after processing send to truly blocking Sheet manager;Specifically, pending data are processed by the Truth cards chosen, and this is processed as the scheme of process of existing smart card, at this Repeat no more.
Truth cards manager receives the data that the Truth cards chosen sends, and utilizes Truth cards manager end safe transmission double secret key to receive Data send to cutting ferrule after carrying out the first process.
Based on above-mentioned data interaction flow process, carry out between cutting ferrule and Truth cards manager data interaction all by safe transmission key carry out encryption and decryption and / or verification operation, thus ensure safety and the integrity that data transmit.
Cutting ferrule can be pointed out needing the information confirmed in data exchange process, and thus, needing in data exchange process can be confirmed by user Information confirm after perform mutual again, thus ensure the verity of data interaction, improve safety.
Additionally, due to can select to use the Truth cards mated with transaction terminal, user in prior art can be solved and do not carry and transaction terminal The Truth cards joined and the unnecessary expense expenditure (such as bank's inter-bank withdraw the money the fee etc.) that produces.
Certainly, above-mentioned implementing only discloses from cutting ferrule to Truth cards, the single data interaction of Truth cards to cutting ferrule, in actual applications, There may be repeatedly data interaction, interaction flow is similar to above-mentioned single data interaction, in repeatedly data interaction, can be according to mutual data No needs confirms to be arranged at cutting ferrule whether point out mutual data to ensure the verity of interaction data.
Six, application program update:
1, cutting ferrule application program update:
In the present invention, the application program that self can also have been installed by cutting ferrule is updated or installs new opplication program, in order to expand cutting ferrule Types of applications or existing application to cutting ferrule upgrade:
The present invention provides the specific implementation of a kind of cutting ferrule application program update, but the invention is not limited in this:
Fig. 5 shows the flow chart of cutting ferrule application program update, sees Fig. 5, and cutting ferrule application program update includes:
Cutting ferrule sends to updating platform to major general's cutting ferrule certificate;Specifically, safe renewal platform it is separately provided to complete cutting ferrule application program more Newly.Cutting ferrule certificate is sent to updating platform by cutting ferrule, in order to updates platform and knows which cutting ferrule needs to update, can also verify the body of cutting ferrule simultaneously Part;Cutting ferrule can also by need the application program identification updated or other inform that updating platform needs the information of application program updating or downloading to send out Deliver to update platform, in order to renewal platform is known to be needed to send which application program installation kit to cutting ferrule.
Update platform and generate the first renewal encryption key;Specifically, platform self generation is updated close for the renewal encryption encrypting application program installation kit Key, carries out the renewal encryption key of generation during application program update every time and can be the same or different, and difference is then possible to prevent to be cracked, and improves peace Quan Xing.
Updating platform utilizes the first renewal encryption key that cutting ferrule application program installation kit is encrypted acquisition the first installation kit ciphertext;Specifically, update Platform utilizes the renewal encryption keys cutting ferrule application program installation kit generated, thus ensures the safety that cutting ferrule application program installation kit transmits.
Updating platform utilizes renewal platform private key that the first installation kit ciphertext carries out signature acquisition the first installation kit signature;Specifically, platform is updated to the One installation kit ciphertext is signed, in order to the identity updating platform is verified by follow-up cutting ferrule.
Updating platform utilizes the cutting ferrule public key encryption first in cutting ferrule certificate to update encryption key, it is thus achieved that first updates encryption key ciphertext;Specifically, Updating platform utilizes cutting ferrule public key encryption to update encryption key, it is ensured that update the safety of encryption key transmission, simultaneously, it is ensured that only cutting ferrule is Renewal encryption key can be decrypted, improve the safety of application program installation kit transmission.
Update platform by cutting ferrule more fresh information send to cutting ferrule, wherein, cutting ferrule more fresh information includes: update platform credential, the first installation kit ciphertext, First installation kit signature and first updates encryption key ciphertext;Specifically, update platform send more fresh information in carry renewal platform credential so that Cutting ferrule is authenticated updating platform, carries the first installation kit ciphertext and ensure the safety of application program installation kit transmission, more fresh information in more fresh information In carry first installation kit signature with ensure follow-up cutting ferrule can to update platform identity legitimacy be authenticated, more fresh information carries renewal encryption Key ciphertext ensures to update the safety of encryption key transmission.
Cutting ferrule receives cutting ferrule and updates information, utilizes root certification authentication to update platform credential;Specifically, cutting ferrule prestores root certificate, utilizes this root to demonstrate,prove Book completes the checking updating platform credential, to ensure the follow-up safety using renewal platform credential.
After cutting ferrule checking renewal platform credential is passed through, utilize the renewal platform PKI updated in platform credential that the first installation kit signature is carried out sign test;Tool Body ground, cutting ferrule utilizes the platform PKI that updates in the renewal platform credential after being verified to verify the signature updating platform transmission, to guarantee number According to legitimate origin.
After cutting ferrule verifies that the first installation kit signature is correct, utilize cutting ferrule private key deciphering the first renewal encryption key ciphertext, it is thus achieved that the first decruption key;Tool Body ground, cutting ferrule utilizes cutting ferrule private key to decrypt decruption key, in order to subsequent decryption installation kit ciphertext obtains cutting ferrule application program installation kit.
Cutting ferrule utilizes first decryption key decryption the first installation kit ciphertext, it is thus achieved that cutting ferrule application program installation kit;
The data form of cutting ferrule checking cutting ferrule application program installation kit is the most correct;Specifically, the data of cutting ferrule application program installation kit also verified by cutting ferrule Form is the most correct, if the data form of cutting ferrule application program installation kit is incorrect, does not the most perform to install operation, if cutting ferrule application program is installed The data form of bag is correct, then perform installation.
If the data form of cutting ferrule checking cutting ferrule application program installation kit is correct, cutting ferrule is installed according to cutting ferrule application program installation kit.Specifically, If cutting ferrule is to be updated the application program installed, then can cover mounted application program, or mounted application program is entered The installation of new application program is carried out again, if cutting ferrule is newly installed application program, then after row upgrading, or the mounted application program of leading unloading This application program can be mounted directly.
The cutting ferrule based on the present invention renewal to application program, both can update mounted application program, it is also possible to download new application program and pacify Dress, has expanded the function of cutting ferrule, has been user-friendly to.
2, Truth cards manager application updates:
In the present invention, the application program that self can also have been installed by Truth cards manager is updated or installs new opplication program, with Just expand the types of applications of Truth cards manager or the existing application to Truth cards manager upgraded:
The present invention provides the specific implementation that a kind of Truth cards manager application updates, but the invention is not limited in this:
Fig. 6 shows the flow chart that Truth cards manager application updates, and sees Fig. 6, and Truth cards manager application updates and includes:
Truth cards manager sends to updating platform to major general's Truth cards manager certificate;Specifically, be separately provided safe renewal platform so that Complete the renewal of Truth cards manager application.Truth cards manager certificate is sent to updating platform by Truth cards manager, in order to update Platform knows which Truth cards manager needs to update, and can also verify the identity of Truth cards manager simultaneously;Truth cards manager also may be used With by need the application program identification updated or other inform and update platform to need the information of the application program updating or downloading to send to updating flat Platform, in order to renewal platform is known to be needed to send which application program installation kit to true card management device.
Update platform and generate the 3rd renewal encryption key;Specifically, platform self generation is updated close for the renewal encryption encrypting application program installation kit Key, carries out the renewal encryption key of generation during application program update every time and can be the same or different, and difference is then possible to prevent to be cracked, and improves peace Quan Xing.
Updating platform utilizes the 3rd renewal encryption key that Truth cards manager application installation kit is encrypted acquisition the 3rd installation kit ciphertext;Tool Body ground, updates platform and utilizes the renewal encryption keys Truth cards manager application installation kit generated, thus ensure Truth cards manager The safety of application program installation kit transmission.
Updating platform utilizes renewal platform private key that the 3rd installation kit ciphertext carries out signature acquisition the 3rd installation kit signature;Specifically, platform is updated to the Three installation kit ciphertexts are signed, in order to the identity updating platform is verified by follow-up Truth cards manager.
Updating platform utilizes the Truth cards manager public key encryption the 3rd in Truth cards manager certificate to update encryption key, it is thus achieved that the 3rd renewal adds Decryption key ciphertext;Specifically, updating platform utilizes Truth cards manager public key encryption to update encryption key, it is ensured that update encryption key transmission Safety, simultaneously, it is ensured that only Truth cards manager just can decrypt renewal encryption key, improves the safety of application program installation kit transmission Property.
Updating platform to send Truth cards manager more fresh information to true card management device, wherein, Truth cards manager more fresh information includes: Update platform credential, the 3rd installation kit ciphertext, the 3rd installation kit signature and the 3rd renewal encryption key ciphertext;Specifically, update what platform sent More fresh information carries renewal platform credential so that Truth cards manager is authenticated updating platform, more fresh information carries the 3rd installation kit ciphertext Ensure the safety of application program installation kit transmission, more fresh information carries the 3rd installation kit signature to ensure that follow-up Truth cards manager can be to more The legitimacy of new platform identity is authenticated, and carries and update the safety that encryption key ciphertext ensures that renewal encryption key transmits in more fresh information.
Truth cards manager receives Truth cards manager more fresh information, utilizes root certification authentication to update platform credential;Specifically, Truth cards pipe Reason device prestores root certificate, utilizes this root certificate to complete the checking updating platform credential, to ensure the follow-up safety using renewal platform credential.
The checking of Truth cards manager updates after platform credential passes through, utilize the renewal platform PKI updated in platform credential the 3rd installation kit is signed into Row sign test;Specifically, the renewal platform PKI during Truth cards manager utilizes the renewal platform credential after being verified is to updating the label that platform sends Name is verified, to guarantee the legitimate origin of data.
After Truth cards manager checking the 3rd installation kit signature is correct, utilize Truth cards manager private key deciphering the 3rd renewal encryption key ciphertext, Obtain the 3rd decruption key;Specifically, Truth cards manager utilizes Truth cards manager private key to decrypt decruption key, in order to subsequent decryption is pacified Dress bag ciphertext obtains Truth cards manager application installation kit.
Truth cards manager utilizes the 3rd decryption key decryption the 3rd installation kit ciphertext, it is thus achieved that Truth cards manager application installation kit;
The data form of Truth cards manager checking Truth cards manager application installation kit is the most correct;Specifically, Truth cards manager The also data form of checking Truth cards manager application installation kit is the most correct, if the data of Truth cards manager application installation kit Form is incorrect, does not the most perform to install operation, if the data form of Truth cards manager application installation kit is correct, then performs installation.
If the data form of Truth cards manager checking Truth cards manager application installation kit is correct, Truth cards manager is according to true Card management device application program installation kit is installed.Specifically, if Truth cards manager is to be updated the application program installed, Then can cover mounted application program, or mounted application program is upgraded, or after the mounted application program of leading unloading again Carry out the installation of new application program, if Truth cards manager is newly installed application program, then can be mounted directly this application program.
The Truth cards manager based on the present invention renewal to application program, both can update mounted application program, it is also possible to download new answering By program and install, expand the function of Truth cards manager, be user-friendly to.
Seven, the application scenarios that data interaction framework is suitable for:
To account charging:
In a kind of application scenarios that the present embodiment provides, user is based on above-mentioned data interaction framework, it is possible to achieve supplement third party's account with money, example As to Alipay account charging.
Realization to this application scene is specifically described below, but the invention is not limited in this:
Cutting ferrule passes through network entry account platform;Specifically, cutting ferrule passes through wireless network logon account platform, in order to by the data interaction of the present invention Cutting ferrule and Truth cards manager in framework complete to supplement account with money.Wherein, account platform can be virtual third party's account platform, such as: E-commerce website account platform (such as Alipay etc.), paying electric charge platform, network finance platform (such as fund etc.).
Charging request is sent to account platform by cutting ferrule, and wherein, charging request includes: charging information;Specifically, charging request is sent extremely by cutting ferrule Account platform, in order to account platform supplements bag with money according to charging request feedback.Wherein, charging information includes: recharge amount etc., optionally, it is also possible to Including account to be supplemented with money, in order to account platform is known and for which account supplemented with money.
Cutting ferrule receives and supplements bag with money, wherein, supplements bag with money and is generated after receiving charging request by payment platform;Specifically, it is fastened in charging request transmission While account platform or again after it, also this charging request is sent to payment platform, or, after account platform receives charging request, Charging request is sent to payment platform, just pays with payment platform.After this payment platform receives charging request, also generate and supplement bag with money, its In, to supplement bag with money and include: the information such as recharge amount, account to be supplemented with money, payment platform will be supplemented bag with money and be sent to cutting ferrule, or payment platform will supplement bag with money Send to account platform, then by account platform will supplement with money bag send to cutting ferrule, in order to user carry out on cutting ferrule confirmation supplement with money wrap the most errorless.Wherein, Payment platform is the transaction platform corresponding with Truth cards, such as Net silver etc..
Bag is supplemented in cutting ferrule prompting with money, receives and supplements, for confirmation, the confirmation instruction that bag is errorless with money;Specifically, it is fastened in after receiving and supplementing bag with money, also will supplement with money Bag carries out showing or speech play, in order to the information supplemented with money in bag is confirmed by user, if user confirms errorless, confirms on cutting ferrule Operation (such as pressing confirmation button, select the modes such as the confirmation option in menu) generates supplements the confirmation instruction that bag is errorless, card socket with money for confirmation Receive this confirmation instruction, in order to cutting ferrule continues executing with subsequent operation;Certainly, if user confirms to supplement the problem of being surrounded by with money, then can take on cutting ferrule Disappear operation, in order to cancels this pen and supplements with money.What cutting ferrule received is used for confirming that the confirmation instruction supplementing bag with money errorless can be to be provided separately within the confirmation that card puts Physical button generates, or can be that confirming on the touch screen of cutting ferrule selects in virtual key generation, or the menu shown on cutting ferrule screen Confirm what function generated, or can be the voice that the voice acquisition device (such as Mike) of cutting ferrule receives life when confirming instruction and be verified rear Become, or can be that the fingerprint acquisition device of cutting ferrule receives generation after fingerprint identification indicates and is verified, or can be the iris of cutting ferrule Harvester receives generation after iris confirms instruction and is verified, it is, of course, also possible to generate for other any modes, the most also It is not restricted.Certainly, while this step or before this step, cutting ferrule also needs to log in Truth cards manager, and is chosen as account and enters The Truth cards that row is supplemented with money, cutting ferrule logs in the operation of Truth cards manager and selects the operation of Truth cards to be referred to above-mentioned associated description, This no longer describes in detail.
Cutting ferrule utilizes cutting ferrule end the second safe transmission double secret key to supplement with money after bag carries out the first process and sends to true card management device, wherein, and cutting ferrule end Two safe transmission keys are cutting ferrule to be generated when setting up secure connection with Truth cards manager, Truth cards manager and at least one Truth cards phase Connect, and storage has Truth cards manager end Truth cards information list, Truth cards manager end Truth cards information list include and truly block The Truth cards information of the Truth cards that sheet manager connects;Specifically, cutting ferrule receives supplements bag with money, and supplement with money bag confirm errorless after, will supplement with money Bag sends after carrying out the first process to true card management device, improves and supplements bag transmission security with money, in order to Truth cards manager will supplement bag with money really Transmission to Truth cards processes.It addition, Truth cards manager end Truth cards information list includes true with what Truth cards manager was connected The Truth cards information of card, this Truth cards information may include that the information such as card number, card authentication information, and this card authentication information is that certification is true Whether real card is the card image that regular channel (such as bank, public transport company etc.) is issued;This Truth cards can be the bank card that bank issues Or function card (such as mass transit card, mess card, purchase card, member card, accumulating card etc.).Additionally, the life that cutting ferrule end the second safe transmission key is One-tenth mode is referred to the associated description of the generation of above-mentioned cutting ferrule end the second safe transmission key, is not described in detail in this.Optionally, Truth cards management Device could be arranged to preserve the Truth cards information of all or part of Truth cards in connected Truth cards, in order to user is according to true card Different setting is made in the security requirement of sheet, such as, can arrange the Truth cards letter not allowing to obtain some Truth cards on Truth cards manager Breath, thus ensure the safety of these Truth cards.
Truth cards manager receives the data that cutting ferrule sends, and the data utilizing Truth cards manager end safe transmission double secret key to receive carry out the Sending to the Truth cards chosen after two process, wherein, Truth cards manager end safe transmission key is that cutting ferrule sets up peace with Truth cards manager Generating during full connection, the Truth cards chosen is: cutting ferrule prompting cutting ferrule end Truth cards information list, and receives after Truth cards selects instruction true Fixed Truth cards, cutting ferrule end Truth cards information list is the Truth cards manager end Truth cards information row obtained from Truth cards manager Table;Specifically, after Truth cards manager receives the data that cutting ferrule sends, the data received are carried out the second process, by true and complete number According to sending to Truth cards, it is ensured that the authenticity and integrity of the data that Truth cards processes, thus ensure the safety supplemented with money.Wherein, truly block The generating mode of sheet manager end safe transmission key is referred to the description of the generating mode of above-mentioned Truth cards manager end safe transmission key, This no longer describes in detail.The selection of the Truth cards chosen can refer to the associated description of the selection of above-mentioned Truth cards, is not described in detail in this.
The Truth cards chosen receives the data that Truth cards manager sends, and is traded the data received processing, it is thus achieved that supplement process bag with money; Specifically, after the Truth cards chosen receives the true and complete data that Truth cards manager sends, the data received are traded place Reason, in order to confirming to complete transaction, the process that the Truth cards chosen is traded processing is referred to existing smart card and is traded process Flow process, is not described in detail in this.
The Truth cards chosen will be supplemented process bag with money and be sent to true card management device;
Truth cards manager utilizes Truth cards manager end safe transmission double secret key to supplement with money after process bag carries out the first process and sends to cutting ferrule;
Cutting ferrule receives the data that Truth cards manager sends, after the data utilizing cutting ferrule end the second safe transmission double secret key to receive carry out the second process Send to payment platform;Specifically, cutting ferrule receives the data after the Truth cards through choosing processes and sends it to payment platform, in order to Pay platform to pay.
Account platform receives the payment successful information that payment platform sends, and performs to supplement operation with money, and wherein, paying successful information is payment platform receiving card Generate after overlapping the data after the second process sent and performing trading processing operation.Specifically, payment platform, after completing to pay, generates and pays into Merit information, and this payment successful information is sent to account platform, in order to account platform is known payment and is completed, thus completes to supplement operation with money.Certainly, This payment successful information can also comprise checking information, in order to account platform is verified, only after being verified, just paying successful information Complete to supplement with money, improve safety.
Based on aforesaid way, the data interaction framework of the present invention can complete to supplement account platform with money, extends answering of data interaction framework of the present invention With, it is user-friendly to.
In flow chart or at this, any process described otherwise above or method description are construed as, and represent and include that one or more is for reality The module of code, fragment or the part of the executable instruction of the step of existing specific logical function or process, and the model of the preferred embodiment of the present invention Enclose and include other realization, wherein can not by order that is shown or that discuss, including according to involved function by basic mode simultaneously or by phase Anti-order, performs function, and this should be understood by embodiments of the invention person of ordinary skill in the field.
Should be appreciated that each several part of the present invention can realize by hardware, software, firmware or combinations thereof.In the above-described embodiment, multiple Step or method can realize with software or the firmware that storage in memory and is performed by suitable instruction execution system.Such as, if using hardware Realize, with the most the same, can realize by any one in following technology well known in the art or their combination: there is use In the discrete logic of the logic gates that data signal is realized logic function, there is the special IC of suitable combination logic gate circuit, Programmable gate array (PGA), field programmable gate array (FPGA) etc..
Those skilled in the art are appreciated that realizing all or part of step that above-described embodiment method carries can be by program The hardware that instruction is relevant completes, and described program can be stored in a kind of computer-readable recording medium, and this program is upon execution, real including method One or a combination set of step executing example.
Additionally, each functional unit in each embodiment of the present invention can be integrated in a processing module, it is also possible to be the independent physics of unit Exist, it is also possible to two or more unit are integrated in a module.Above-mentioned integrated module both can realize to use the form of hardware, it is possible to To use the form of software function module to realize.If described integrated module realizes and as independent production marketing using the form of software function module Or when using, it is also possible to it is stored in a computer read/write memory medium.
Storage medium mentioned above can be read only memory, disk or CD etc..
In the description of this specification, reference term " embodiment ", " some embodiments ", " example ", " concrete example " or " some examples " Deng description means to combine this embodiment or example describes specific features, structure, material or feature be contained at least one embodiment of the present invention Or in example.In this manual, the schematic representation to above-mentioned term is not necessarily referring to identical embodiment or example.And, the tool of description Body characteristics, structure, material or feature can combine in any one or more embodiments or example in an appropriate manner.
Although above it has been shown and described that embodiments of the invention, it is to be understood that above-described embodiment is exemplary, it is impossible to it is right to be interpreted as The restriction of the present invention, those of ordinary skill in the art in the case of without departing from the principle of the present invention and objective within the scope of the invention can on State embodiment to be changed, revise, replace and modification.The scope of the present invention is limited by claims and equivalent thereof.

Claims (20)

1. a data interactive method, it is characterised in that including:
Cutting ferrule performs bindings with Truth cards manager, and wherein, described Truth cards manager is connected with at least one Truth cards, and deposits Containing Truth cards manager end Truth cards information list, described Truth cards manager end Truth cards information list includes and described Truth cards The Truth cards information of the Truth cards that manager connects;
Secure connection set up by described cutting ferrule and described Truth cards manager, it is thus achieved that carry out data peace between described cutting ferrule and described Truth cards manager Cutting ferrule end the second safe transmission key of full transmission and Truth cards manager end safe transmission key;
Described cutting ferrule obtains cutting ferrule end Truth cards information list, and wherein, described cutting ferrule end Truth cards information list is for manage from described Truth cards The Truth cards manager end Truth cards information list obtained in device;
Described cutting ferrule end Truth cards information list pointed out by described cutting ferrule;
Described cutting ferrule receives Truth cards and selects instruction, determines the Truth cards chosen;
Described cutting ferrule utilizes described cutting ferrule end the second safe transmission pending data of double secret key to send to the management of described Truth cards after carrying out the first process Device;
Described Truth cards manager receives the data that described cutting ferrule sends, and utilizes described Truth cards manager end safe transmission double secret key to receive Data carry out the second process after send to described in the Truth cards chosen;
The described Truth cards chosen receives the data that described Truth cards manager end sends, and the data transmission that will obtain after processing after processing To described Truth cards manager;
The data that the Truth cards chosen described in the reception of described Truth cards manager sends, and utilize described Truth cards manager end safe transmission close The key data to receiving send to described cutting ferrule after carrying out the first process.
Method the most according to claim 1, it is characterised in that also include:
The Truth cards that described Truth cards manager pair is connected with described Truth cards manager detects;
Described Truth cards manager, after the Truth cards being connected with described Truth cards manager being detected, obtains the true card of described Truth cards Sheet information, wherein, described Truth cards information at least includes: card number;
After described Truth cards manager obtains the Truth cards information of described Truth cards, generate Truth cards manager end Truth cards information row Table.
Method the most according to claim 2, it is characterised in that also include:
Described Truth cards manager also generates Truth cards manager end identification list, the mark in described Truth cards manager end identification list with Truth cards information one_to_one corresponding in described Truth cards manager end Truth cards information list.
Method the most according to claim 1, it is characterised in that described cutting ferrule receives Truth cards and selects instruction, determines the true card chosen Sheet;Including:
Described cutting ferrule receives Truth cards and selects instruction, obtains and chooses mark, wherein, described in choose and identify the Truth cards chosen described in indicate;
Described cutting ferrule chooses mark to send to described Truth cards manager by described;
Described Truth cards manager according to described in choose mark from the described Truth cards being connected with described Truth cards manager, determine with described Choose the Truth cards chosen described in mark correspondence.
Method the most according to claim 1, it is characterised in that
Secure connection is set up, it is thus achieved that between described cutting ferrule and described Truth cards manager, carry out data at described cutting ferrule and described Truth cards manager Before cutting ferrule end the second safe transmission key of safe transmission and Truth cards manager end safe transmission key, also include:
Described cutting ferrule sends logging request to described Truth cards manager;
Secure connection is set up, it is thus achieved that between described cutting ferrule and described Truth cards manager, carry out data at described cutting ferrule and described Truth cards manager After cutting ferrule end the second safe transmission key of safe transmission and Truth cards manager end safe transmission key, also include:
Described cutting ferrule sends to described true card after carrying out the first process by the login password that described cutting ferrule end the second safe transmission double secret key receives Sheet manager;
Described Truth cards manager receives the data that described cutting ferrule sends, and utilizes described Truth cards manager end safe transmission double secret key to receive Data verify the correctness of the data after the second process after carrying out the second process;
After described Truth cards manager data after checking described second processes are passed through, described cutting ferrule logs in described Truth cards manager.
Method the most according to claim 5, it is characterised in that described Truth cards manager utilizes described Truth cards manager end safety The correctness of data after the transmission data that receive of double secret key verify the second process after carrying out the second process includes:
After the data that described Truth cards manager utilizes described Truth cards manager end safe transmission double secret key to receive carry out the second process, it is thus achieved that Password to be verified;
Described Truth cards manager judges whether described password to be verified is alarm cipher;
If described password to be verified is alarm cipher, the most described Truth cards manager determines that described password authentification to be verified is passed through, and performs warning Operation;
If described password to be verified is not alarm cipher and is login password, the most described Truth cards manager determines that described password authentification to be verified is led to Cross.
7. according to the method described in claim 5 or 6, it is characterised in that after described cutting ferrule logs in described Truth cards manager, also include:
Cutting ferrule end identification list searched by described cutting ferrule;
If described cutting ferrule finds described cutting ferrule end identification list, then utilize cutting ferrule end identity column described in described cutting ferrule end the second safe transmission double secret key Table sends after carrying out the first process to described Truth cards manager, and described Truth cards manager receives the data that described cutting ferrule sends, and utilizes described After the data that Truth cards manager end safe transmission double secret key receives carry out the second process, it is judged that the data after the second process and described Truth cards The Truth cards manager end identification list of manager storage is the most identical, if it is not the same, the most described Truth cards manager utilizes described true card Sheet manager end safe transmission double secret key updates instruction and more new data carries out sending after the first process to described cutting ferrule, described cutting ferrule receive described very The data that real card management device sends, after the data utilizing described cutting ferrule end the second safe transmission double secret key to receive carry out the second process, update described Cutting ferrule end Truth cards information list;
If described cutting ferrule does not finds described cutting ferrule end identification list, then utilize described cutting ferrule end the second safe transmission double secret key to preset mark and carry out Sending after one process to described Truth cards manager, described Truth cards manager receives the data that described cutting ferrule sends, utilizes described Truth cards After the data that manager end safe transmission double secret key receives carry out the second process, described Truth cards manager determine the data after the second process for When instruction cutting ferrule end does not stores cutting ferrule end identification list, utilize described Truth cards manager end safe transmission double secret key to update instruction and more new data enters Row first sends to described cutting ferrule after processing, and described cutting ferrule receives the data that described Truth cards manager sends, and utilizes described cutting ferrule end second to pacify After the data that full transmission double secret key receives carry out the second process, update described cutting ferrule end Truth cards information list.
8. according to the method described in claim 5 or 6, it is characterised in that after described cutting ferrule logs in described Truth cards manager, also include:
Described Truth cards manager utilizes described true cutting ferrule manager end safe transmission double secret key Truth cards manager end identification list to carry out Send to described cutting ferrule after one process;
Described cutting ferrule receives the data that described Truth cards manager sends, and the data utilizing cutting ferrule end the second safe transmission double secret key to receive carry out the After two process, it is judged that the data after the second process are the most identical with the cutting ferrule end identification list that described cutting ferrule stores;
If it is not the same, the most described cutting ferrule sends more newly requested to described Truth cards manager;
Described Truth cards manager receive described in more newly requested, utilize described Truth cards manager end safe transmission double secret key update instruction and update Data send to described cutting ferrule after carrying out the first process;
Described cutting ferrule receives the data that described Truth cards manager sends, and utilizes the data that described cutting ferrule end the second safe transmission double secret key receives After carrying out the second process, update described cutting ferrule end Truth cards information list.
Method the most according to claim 1, it is characterised in that described cutting ferrule also includes heart beating park mode, wherein, described heart beating dormancy Pattern is the non-operating mode of low-power consumption, and described method also includes:
Described it is fastened under heart beating park mode, sends detection information every the first Preset Time to described Truth cards manager;
Described Truth cards manager receives described detection information, sends response message to described cutting ferrule;
Do not receive described response message in being fastened in the second Preset Time described in if, then disconnect between described cutting ferrule and described Truth cards manager Secure connection;
Receive described response message in being fastened in the second Preset Time described in if, then keep the institute that described cutting ferrule is set up with described Truth cards manager State secure connection.
Method the most according to claim 9, it is characterised in that
Receive in being fastened in the second Preset Time described in if in described response message, and described response message and also comprise renewal information, described side Method also includes:
Described cutting ferrule stores described renewal information;
After described cutting ferrule is entered mode of operation by heart beating park mode, described cutting ferrule sends to described Truth cards manager and updates the request of triggering;
Described Truth cards manager receives described renewal and triggers request, utilizes and truly blocks described in described Truth cards manager end safe transmission double secret key Sheet manager end identification list sends to described cutting ferrule after carrying out the first process;
Described cutting ferrule receives the data that described Truth cards manager sends, and the data utilizing described cutting ferrule end the second safe transmission double secret key to receive are entered After row second processes, it is judged that the data after the second process are the most identical with the cutting ferrule end identification list that described cutting ferrule stores;
If it is not the same, the most described cutting ferrule sends more newly requested to described Truth cards manager;
Described Truth cards manager receive described in more newly requested, utilize described Truth cards manager end safe transmission double secret key update instruction and update Data send to described cutting ferrule after carrying out the first process;
Described cutting ferrule receives the data that described Truth cards manager sends, and utilizes the data that described cutting ferrule end the second safe transmission double secret key receives After carrying out the second process, update described cutting ferrule end Truth cards information list.
11. methods according to claim 9, it is characterised in that
Receive in being fastened in the second Preset Time described in if in described response message, and described response message and also comprise renewal information, described side Method also includes:
Described cutting ferrule stores described renewal information;
After described cutting ferrule is entered mode of operation by heart beating park mode, described cutting ferrule utilizes described cutting ferrule end the second safe transmission double secret key cutting ferrule end mark Know after list carries out the first process and send to described Truth cards manager;
Described Truth cards manager receives the data that described cutting ferrule sends, and utilizes described Truth cards manager end safe transmission double secret key to receive After data carry out the second process, it is judged that the Truth cards manager end identification list that the data after the second process and described Truth cards manager store is No identical;
If it is not the same, the most described Truth cards manager utilizes described Truth cards manager end safe transmission double secret key to update instruction and more new data Send to described cutting ferrule after carrying out the first process;
Described cutting ferrule receives the data that described Truth cards manager sends, and utilizes the data that described cutting ferrule end the second safe transmission double secret key receives After carrying out the second process, update described cutting ferrule end Truth cards information list.
12. methods according to claim 1, it is characterised in that described cutting ferrule and Truth cards manager perform bindings and include:
The reception of described cutting ferrule carries out the trigger command bound for instruction and described Truth cards manager;
Described cutting ferrule sends the second binding instruction by wireless network to described Truth cards manager, and wherein, described second binding instruction includes: institute The 3rd binding random factor, cutting ferrule certificate and the cutting ferrule of stating cutting ferrule generation uniquely identify;
Described Truth cards manager receives described second binding instruction, utilizes root certificate to verify described cutting ferrule certificate;
After described Truth cards manager verifies that described cutting ferrule certificate is legal, generate the 4th binding random factor;
Described Truth cards manager utilize cutting ferrule PKI in described cutting ferrule certificate to described 3rd binding random factor and described 4th binding with The machine factor is encrypted acquisition the second binding ciphertext, utilizes Truth cards manager private key to described 3rd binding random factor and described 4th binding Random factor carries out signature and obtains the 3rd binding signature;
Described Truth cards manager sends the second binding response by wireless network to described cutting ferrule, and wherein, described second binding response includes: institute State the second binding ciphertext, described 3rd binding signature, Truth cards manager certificate and Truth cards manager uniquely to identify;
Described cutting ferrule receives described second binding response, utilizes root certificate to verify described Truth cards manager certificate;
After described cutting ferrule verifies that described Truth cards manager certificate is legal, utilize described cutting ferrule private key that described second binding ciphertext is decrypted, obtain Obtain the 3rd binding decryption random factor and the 4th binding decryption random factor;
Described cutting ferrule utilizes the Truth cards manager PKI in described Truth cards manager certificate, the described 3rd binding decryption random factor and institute State the 3rd binding signature described in the 4th binding decryption random factor pair to verify;
After the described 3rd binding signature of described cutting ferrule checking is correct, verify that the described 3rd binding decryption random factor with described 3rd binding random factor is No identical;
After the described 3rd binding decryption random factor of described cutting ferrule checking is identical with described 3rd binding random factor, point out described Truth cards manager Unique mark;
Described cutting ferrule receives for confirming that described Truth cards manager uniquely identifies correct trigger command, utilizes described cutting ferrule private key to the described 3rd Binding random factor and the described 4th binding decryption random factor are signed, it is thus achieved that the 4th binding signature, and store the management of described Truth cards Device uniquely identifies, described Truth cards manager certificate and cutting ferrule end the second binding factor be to cutting ferrule end the second list of bindings, wherein, described cutting ferrule Holding the second binding factor is the described 4th binding decryption random factor;
Described cutting ferrule sends described 4th binding signature to described Truth cards manager;
Described Truth cards manager receive described 4th binding signature, utilize the described cutting ferrule PKI in described cutting ferrule certificate, the 3rd binding random because of Described 4th binding signature is verified by sub and described 4th binding random factor;
After the described 4th binding signature of described Truth cards manager checking is correct, store described cutting ferrule uniquely identify, described cutting ferrule certificate and true Card management device end binding factor is to true card management device end list of bindings, and wherein, described Truth cards manager end binding factor is the described 4th Binding random factor.
13. methods according to claim 12, it is characterised in that described cutting ferrule is set up secure connection with described Truth cards manager and included:
Described cutting ferrule sends the 3rd secure connection instruction setting up secure connection for instruction, wherein, described 3rd peace to described Truth cards manager Full link order includes: described cutting ferrule utilizes the described Truth cards manager PKI in described Truth cards manager certificate to described cutting ferrule end second 5th connection random factor of binding factor and generation is encrypted the 5th connection ciphertext of acquisition, and described cutting ferrule utilizes described cutting ferrule private key to described Cutting ferrule end the second binding factor and the described 5th connects random factor and carries out the 5th connection signature that signature obtains;
Described Truth cards manager receives described 3rd secure connection instruction, utilizes described Truth cards manager private key to connect ciphertext to the described 5th It is decrypted, it is thus achieved that cutting ferrule end second is bound decryption factor and the 5th and connected the decryption random factor;
Described Truth cards manager utilizes the described cutting ferrule PKI in described cutting ferrule certificate, described cutting ferrule end second to bind decryption factor and described Five connect the 5th connection signature described in decryption random factor pair verifies;
After the described 5th connection signature of described Truth cards manager checking is correct, verify that described cutting ferrule end second binds decryption factor and described true card Sheet manager end binding factor is the most identical;
Described Truth cards manager verify described cutting ferrule end second bind decryption factor identical with described Truth cards manager end binding factor after, give birth to Become the 6th connection random factor;
Described Truth cards manager utilizes described cutting ferrule PKI in described cutting ferrule certificate to connect the decryption random factor and described the to the described 5th Six connect random factor is encrypted acquisition the 6th connection ciphertext, utilizes described Truth cards manager private key to connect the decryption random factor to the described 5th And described 6th connect random factor carry out signature obtain the 6th connection signature;
Described Truth cards manager sends the 3rd secure connection response to described cutting ferrule, and wherein, described 3rd secure connection response includes: described the Six connect ciphertext and the described 6th connects signature;
Described cutting ferrule receives described 3rd secure connection response, utilizes described cutting ferrule private key to connect ciphertext to the described 6th and is decrypted, it is thus achieved that after deciphering The 5th connection the decryption random factor and the 6th connect the decryption random factor;
Described cutting ferrule utilizes the 5th connection RANDOM SOLUTION after the described Truth cards manager PKI in described Truth cards manager certificate, described deciphering The close factor and the described 6th connects the 6th connection signature described in decryption random factor pair and verifies;
Described cutting ferrule checking the described 6th connect signature correct after, verify the after described deciphering the 5th connection decryption random factor be connected with the described 5th with The machine factor is the most identical;
After described cutting ferrule verifies that the 5th connection decryption random factor after described deciphering is identical with described 5th connection random factor, at least with described the Six connect the decryption random factor generates described cutting ferrule end the second safe transmission key between described cutting ferrule and described Truth cards manager;Described true card Sheet manager connects random factor at least with the described 6th and generates the described Truth cards manager between described cutting ferrule and described Truth cards manager End safe transmission key.
14. methods according to claim 12, it is characterised in that described cutting ferrule is set up secure connection with described Truth cards manager and included:
Described cutting ferrule receive described Truth cards manager send described Truth cards manager generate the 7th connection random factor and described truly Card management device uniquely identifies;
Described cutting ferrule sends the 4th secure connection instruction setting up secure connection for instruction, wherein, described 4th peace to described Truth cards manager Full link order includes: described cutting ferrule uniquely identifies, described cutting ferrule utilizes the described Truth cards manager in described Truth cards manager certificate public Key is encrypted the 7th connection ciphertext of acquisition to the 8th connection random factor of described 7th connection random factor and generation, described cutting ferrule utilizes institute State cutting ferrule private key to described 7th connect random factor and described 8th connect random factor carry out signature obtain the 7th connection signature;
Described Truth cards manager receives described 4th secure connection instruction, it is judged that described cutting ferrule uniquely identifies whether at described Truth cards manager In end list of bindings;
If described cutting ferrule uniquely identifies in described Truth cards manager end list of bindings, described Truth cards manager utilizes described Truth cards Manager private key connects ciphertext to the described 7th and is decrypted, it is thus achieved that the 7th connects the decryption random factor and the 8th connects the decryption random factor;
Described Truth cards manager utilizes the described cutting ferrule PKI in described cutting ferrule certificate, the described 7th connection decryption random factor and the described 8th Connect the 7th connection signature described in decryption random factor pair to verify;
After the described 7th connection signature of described Truth cards manager checking is correct, verify that the described 7th connection decryption random factor is connected with the described 7th Random factor is the most identical;
If it is identical that the described 7th connection decryption random factor connects random factor with the described 7th, described Truth cards manager utilizes described true card Sheet manager private key connects the decryption random factor to the described 7th and the described 8th connection decryption random factor carries out signature and obtains the 8th connection signature;
Described Truth cards manager sends the 4th secure connection response to described cutting ferrule, and wherein, described 4th secure connection response includes: described the Eight connect signature;
Described cutting ferrule receive described 4th secure connection response, utilize the described Truth cards manager PKI in described Truth cards manager certificate, 7th connection random factor and the described 8th connects random factor and verifies described 8th connection signature;
Described cutting ferrule checking the described 8th connect signature correct after, connect random factor at least with the described 8th and described cutting ferrule end second bind because of Son generates described cutting ferrule end the second safe transmission key between described cutting ferrule and described Truth cards manager;Described Truth cards manager at least with Described 8th connects between the decryption random factor and the described Truth cards manager end binding factor described cutting ferrule of generation and described Truth cards manager Described Truth cards manager end safe transmission key;
Described cutting ferrule utilizes the 7th connection random factor described in described cutting ferrule end the second safe transmission double secret key and described 8th connection random factor to enter Row first sends to described Truth cards manager after processing;Described Truth cards manager utilizes described Truth cards manager end safe transmission key Connect the decryption random factor to the described 7th and the described 8th connection decryption random factor carries out transmission extremely described cutting ferrule after the first process;
Described cutting ferrule receives the data that described Truth cards manager sends, and utilizes the data that described cutting ferrule end the second safe transmission double secret key receives Carry out the second process, compare the data after the second process be connected with the described 7th random factor and described 8th connect random factor the most identical;Institute State Truth cards manager and receive the data that described cutting ferrule sends, and utilize the data that described Truth cards manager end safe transmission double secret key receives Carry out the second process, compare the data after the second process and be connected with the described 7th whether the decryption random factor and the described 8th connects the decryption random factor Identical.
15. according to the method described in any one of claim 1 to 14, it is characterised in that also include:
Described cutting ferrule sends to updating platform to cutting ferrule certificate described in major general;
Described renewal platform generates the first renewal encryption key;
Described renewal platform utilizes described first to update encryption key and cutting ferrule application program installation kit is encrypted acquisition the first installation kit ciphertext;
Described renewal platform utilizes renewal platform private key that described first installation kit ciphertext carries out signature and obtains the first installation kit signature;
Described renewal platform utilizes the described cutting ferrule public key encryption first in described cutting ferrule certificate to update encryption key, it is thus achieved that the first renewal encryption key is close Literary composition;
Cutting ferrule more fresh information is sent to described cutting ferrule by described renewal platform, and wherein, described cutting ferrule more fresh information includes: update platform credential, described First installation kit ciphertext, described first installation kit signature and described first update encryption key ciphertext;
Described cutting ferrule receives described cutting ferrule more fresh information, utilizes renewal platform credential described in root certification authentication;
After described cutting ferrule verifies that described renewal platform credential is passed through, utilize the renewal platform PKI in described renewal platform credential to described first installation kit Signature carries out sign test;
After the described first installation kit signature of described cutting ferrule checking is correct, described cutting ferrule private key deciphering described first is utilized to update encryption key ciphertext, it is thus achieved that First decruption key;
Described cutting ferrule utilizes the first installation kit ciphertext described in described first decryption key decryption, it is thus achieved that described cutting ferrule application program installation kit;
Described cutting ferrule verifies that the data form of described cutting ferrule application program installation kit is the most correct;
If the data form that described cutting ferrule application program installation kit verified by described cutting ferrule is correct, described cutting ferrule is according to described cutting ferrule application program installation kit Install.
16. according to the method described in any one of claim 1 to 14, it is characterised in that also include:
Described Truth cards manager sends to updating platform to Truth cards manager certificate described in major general;
Described renewal platform generates the 3rd renewal encryption key;
Described renewal platform utilizes the described 3rd to update encryption key and Truth cards manager application installation kit is encrypted acquisition the 3rd installation Bag ciphertext;
Described renewal platform utilizes renewal platform private key that described 3rd installation kit ciphertext carries out signature and obtains the 3rd installation kit signature;
Described renewal platform utilizes the described Truth cards manager public key encryption the 3rd in described Truth cards manager certificate to update encryption key, obtains Obtain the 3rd renewal encryption key ciphertext;
Truth cards manager more fresh information is sent to described Truth cards manager by described renewal platform, and wherein, described Truth cards manager is more Fresh information includes: update platform credential, described 3rd installation kit ciphertext, described 3rd installation kit signature and described 3rd renewal encryption key ciphertext;
Described Truth cards manager receives described Truth cards manager more fresh information, utilizes renewal platform credential described in root certification authentication;
After described Truth cards manager verifies that described renewal platform credential is passed through, utilize the renewal platform PKI in described renewal platform credential to described 3rd installation kit signature carries out sign test;
After the described 3rd installation kit signature of described Truth cards manager checking is correct, utilize the deciphering of described Truth cards manager private key described the depth of the night New encryption key ciphertext, it is thus achieved that the 3rd decruption key;
Described Truth cards manager utilizes the 3rd installation kit ciphertext described in described 3rd decryption key decryption, it is thus achieved that described Truth cards manager application Program installation kit;
Described Truth cards manager verifies that the data form of described Truth cards manager application installation kit is the most correct;
If the data form that described Truth cards manager application installation kit verified by described Truth cards manager is correct, described Truth cards pipe Reason device is installed according to described Truth cards manager application installation kit.
17. according to the method described in any one of claim 1 to 14, it is characterised in that
Described first process includes: encryption, and described second process includes: decryption processing;Or
Described first process includes: verification calculating processes, and described second process includes: verification verifies that calculating processes;Or
Described first process includes: encrypts and verifies calculating and process, and described second process includes: deciphers and verifies checking calculating and process.
18. according to the method described in any one of claim 1 to 17, it is characterised in that described Truth cards manager is according to the peace of Truth cards Full property grade, what the access limit of the Truth cards information of the Truth cards being connected with described Truth cards manager was opened and/or closed sets Put.
19. according to the method described in any one of claim 1 to 18, it is characterised in that described cutting ferrule is mobile device.
20. according to the method described in any one of claim 1 to 18, it is characterised in that described cutting ferrule is mobile device and electronic signature equipment, Or described cutting ferrule is electronic signature equipment.
CN201510055492.9A 2014-11-07 2015-02-03 Data interaction method Pending CN105989656A (en)

Applications Claiming Priority (2)

Application Number Priority Date Filing Date Title
CN2014106423372 2014-11-07
CN201410642337 2014-11-07

Publications (1)

Publication Number Publication Date
CN105989656A true CN105989656A (en) 2016-10-05

Family

ID=57037052

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201510055492.9A Pending CN105989656A (en) 2014-11-07 2015-02-03 Data interaction method

Country Status (1)

Country Link
CN (1) CN105989656A (en)

Citations (11)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
JP3946967B2 (en) * 2001-04-26 2007-07-18 オムロン株式会社 Transaction processing system, transaction processing apparatus, and transaction processing method
CN201054145Y (en) * 2007-04-27 2008-04-30 交通部科学研究院 Non contact card reader
CN101567109A (en) * 2009-06-03 2009-10-28 普天信息技术研究院有限公司 Device integrating payment and gathering functions, system and trade method
CN101667240A (en) * 2009-08-20 2010-03-10 北京握奇数据系统有限公司 Intelligent card and card writing method, equipment and system thereof
CN101789934A (en) * 2009-11-17 2010-07-28 北京飞天诚信科技有限公司 Method and system for online security trading
CN102103778A (en) * 2011-02-23 2011-06-22 中兴通讯股份有限公司 Mobile payment system, mobile terminal and method for realizing mobile payment service
CN102469081A (en) * 2010-11-11 2012-05-23 中国移动通信集团公司 Method, equipment and system for operating smart card
CN103218646A (en) * 2013-03-22 2013-07-24 舒唯家 All-in-one digital mobile card and implementation method thereof
CN103886455A (en) * 2012-12-19 2014-06-25 Nxp股份有限公司 Digital wallet device for virtual wallet
CN103944908A (en) * 2014-04-25 2014-07-23 天地融科技股份有限公司 Data updating method and system
CN103944731A (en) * 2014-04-25 2014-07-23 天地融科技股份有限公司 Data security interactive method

Patent Citations (11)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
JP3946967B2 (en) * 2001-04-26 2007-07-18 オムロン株式会社 Transaction processing system, transaction processing apparatus, and transaction processing method
CN201054145Y (en) * 2007-04-27 2008-04-30 交通部科学研究院 Non contact card reader
CN101567109A (en) * 2009-06-03 2009-10-28 普天信息技术研究院有限公司 Device integrating payment and gathering functions, system and trade method
CN101667240A (en) * 2009-08-20 2010-03-10 北京握奇数据系统有限公司 Intelligent card and card writing method, equipment and system thereof
CN101789934A (en) * 2009-11-17 2010-07-28 北京飞天诚信科技有限公司 Method and system for online security trading
CN102469081A (en) * 2010-11-11 2012-05-23 中国移动通信集团公司 Method, equipment and system for operating smart card
CN102103778A (en) * 2011-02-23 2011-06-22 中兴通讯股份有限公司 Mobile payment system, mobile terminal and method for realizing mobile payment service
CN103886455A (en) * 2012-12-19 2014-06-25 Nxp股份有限公司 Digital wallet device for virtual wallet
CN103218646A (en) * 2013-03-22 2013-07-24 舒唯家 All-in-one digital mobile card and implementation method thereof
CN103944908A (en) * 2014-04-25 2014-07-23 天地融科技股份有限公司 Data updating method and system
CN103944731A (en) * 2014-04-25 2014-07-23 天地融科技股份有限公司 Data security interactive method

Similar Documents

Publication Publication Date Title
CN102867366B (en) Portable bank card data processing device, system and method
CN103996117B (en) Safe mobile phone
CN104243162B (en) A kind of information interacting method, system and intelligent cipher key equipment
CN104978144A (en) Gesture password input device and system and method for transaction based on system
CN105989481B (en) Data interaction method and system
CN105989477A (en) Data interaction method
CN105991527A (en) Data interaction system
CN104104505B (en) A kind of electronic signature equipment and its implementation and client
CN110048831A (en) The distribution method and diostribution device of POS terminal master key
EP3217620A1 (en) Data interaction method and system
CN204759393U (en) Gesture password input device and system
CN105989475A (en) Data interaction method
CN105991530A (en) Data interaction system
CN105991539B (en) Data interactive method and system
CN105989656A (en) Data interaction method
CN105991534A (en) Data interaction method
CN105991543B (en) Data interactive method
CN105991528A (en) Data interaction method
CN105991547A (en) Data interaction system
CN105989657A (en) Data interaction system
CN105991548A (en) Data interaction system
CN105991538A (en) Data interaction method and system
CN105991533A (en) Data interaction method
CN105991532A (en) Data interaction method
CN105991546A (en) Data interaction method

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
RJ01 Rejection of invention patent application after publication

Application publication date: 20161005

RJ01 Rejection of invention patent application after publication