CN109003081A - A kind of method of commerce and system based on block chain - Google Patents

A kind of method of commerce and system based on block chain Download PDF

Info

Publication number
CN109003081A
CN109003081A CN201810767476.6A CN201810767476A CN109003081A CN 109003081 A CN109003081 A CN 109003081A CN 201810767476 A CN201810767476 A CN 201810767476A CN 109003081 A CN109003081 A CN 109003081A
Authority
CN
China
Prior art keywords
operator
wallet
cryptographic key
key factor
user
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Granted
Application number
CN201810767476.6A
Other languages
Chinese (zh)
Other versions
CN109003081B (en
Inventor
周爱
佘伦凯
蒋万江
谢新强
成盛
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Beijing Genesis Intelligence Chain Information Technology Research Institute
Original Assignee
Beijing Genesis Intelligence Chain Information Technology Research Institute
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Beijing Genesis Intelligence Chain Information Technology Research Institute filed Critical Beijing Genesis Intelligence Chain Information Technology Research Institute
Priority to CN201810767476.6A priority Critical patent/CN109003081B/en
Publication of CN109003081A publication Critical patent/CN109003081A/en
Application granted granted Critical
Publication of CN109003081B publication Critical patent/CN109003081B/en
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Classifications

    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06QINFORMATION AND COMMUNICATION TECHNOLOGY [ICT] SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES; SYSTEMS OR METHODS SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES, NOT OTHERWISE PROVIDED FOR
    • G06Q20/00Payment architectures, schemes or protocols
    • G06Q20/38Payment protocols; Details thereof
    • G06Q20/382Payment protocols; Details thereof insuring higher security of transaction
    • G06Q20/3829Payment protocols; Details thereof insuring higher security of transaction involving key management

Landscapes

  • Business, Economics & Management (AREA)
  • Engineering & Computer Science (AREA)
  • Accounting & Taxation (AREA)
  • Computer Security & Cryptography (AREA)
  • Finance (AREA)
  • Strategic Management (AREA)
  • Physics & Mathematics (AREA)
  • General Business, Economics & Management (AREA)
  • General Physics & Mathematics (AREA)
  • Theoretical Computer Science (AREA)
  • Financial Or Insurance-Related Operations Such As Payment And Settlement (AREA)

Abstract

The present invention relates to block chain technical field more particularly to a kind of method of commerce and system based on block chain.Wherein by generating associated wallet cryptographic key factor according to the information that will be associated several sides, to be lost when user's wallet private key or operator's hot money packet cryptographic key factor, the cold wallet cryptographic key factor of operator that can also be saved by identity information and off-grid restores, and avoids the loss of the digital fund in user's wallet and operator's wallet.

Description

A kind of method of commerce and system based on block chain
Technical field
The present invention relates to block chain technical field more particularly to a kind of method of commerce and system based on block chain.
Background technique
With the appearance of bit coin in 2009, block chain technology also develops therewith.Block chain technology, it is also known as " distributed Account book technology " is that a kind of decentralization, collective safeguard the technical solution of distributed account book, and essence is by multiple node collectives The distributed data base system of participation.Not a kind of single technology of block chain, multiple technologies integration as a result, utilizing area The technical maintenance of block chain one account book record that is reliable, being difficult to tamper with, can reduce the risk of trust, and can effectively reduce crowd The maintenance cost of participant cooperation.In block chain practical application, each user can generate a pair of of asymmetric key pair, be used for area Trading signature on block chain corresponds to identity of the hash value of public key as its trading account.In view of safety, efficiency Equal many factors, block chain rivest, shamir, adelman generally select ECC (elliptic curve) algorithm, and the safety of algorithm depends on The intractability of elliptic curves discrete logarithm problem (ECDLP).
When the value of digital cash or other financial currencies is higher and higher in the account of block chain, the safety of account Become focus therewith.The private key of block chain is unique data for proving user identity, the core asset of user such as bit coin also by And only controlled by private key, if user's wallet private key loses or equipment damage, and private key cannot be restored, then can cause user Account be not available, the problem of digital cash or digital asset in account can not extract.
Summary of the invention
The technical issues of to solve in the prior art, the embodiment of the invention provides a kind of method of commerce based on block chain And system, the incidence relation of cold wallet, hot money packet and user's wallet can be established, convenient for restoring operator's hot money packet cryptographic key factor And user's wallet cryptographic key factor, thus avoid damaging due to equipment cause operator, in user's wallet digital fund loss.
On the one hand, the embodiment of the invention provides a kind of method of commerce based on block chain, characterized by comprising:
The cold wallet cryptographic key factor of operator is generated, wherein the cold wallet cryptographic key factor of the operator is cold for generating operator Wallet public and private key pair;
Operator's hot money packet cryptographic key factor is generated according to the cold wallet cryptographic key factor of the operator and operator's informaiton, Described in operator's hot money packet cryptographic key factor for generating operator's hot money Bao Zheng's private key pair;
User's wallet cryptographic key factor is generated according to operator's hot money packet cryptographic key factor and user information, using described User's wallet cryptographic key factor generates user's wallet public and private key pair.
Method according to embodiments of the present invention further includes carrying out digital money by operator's hot money packet and multiple user's wallets Gold transaction, it is private using operator's hot money packet when the digital fund in operator's hot money packet is more than the first threshold value Key collects the digital fund in operator's hot money packet in the cold wallet of operator.
Method according to embodiments of the present invention further includes, when the digital fund in operator's hot money packet is lower than second When limit value, the digital fund in the cold wallet of the operator is transferred accounts to operator's hot money using the operator cold wallet private key Bao Zhong.
Method according to embodiments of the present invention, generate the cold wallet cryptographic key factor of operator further comprise, by the fortune Battalion's cold wallet cryptographic key factor of quotient is stored in the first storage medium.
Method according to embodiments of the present invention, by the cold wallet cryptographic key factor of the operator be stored in the first storage medium into One step includes the cold wallet cryptographic key factor of the operator being split as multiple portions, distributed and saved is in multiple first storages In medium, when needing to restore the cold wallet cryptographic key factor of the operator, it is greater than described in first key threshold value using quantity The cold wallet cryptographic key factor of the part operator stored in first storage medium restores the cold wallet cryptographic key factor of the operator.
Method according to embodiments of the present invention, according to the cold wallet cryptographic key factor of the operator and operator's informaiton generation Operator's hot money packet cryptographic key factor further comprises that operator's hot money packet cryptographic key factor is stored in the second storage and is situated between Matter.
Method according to embodiments of the present invention generates fortune according to the cold wallet cryptographic key factor of the operator and operator's informaiton Battalion's quotient's hot money packet cryptographic key factor further comprises carrying out the cold wallet cryptographic key factor of the operator and the operator's informaiton After HKDF_SHA256 operation, derivation obtains operator's hot money packet cryptographic key factor.
Method according to embodiments of the present invention generates user according to operator's hot money packet cryptographic key factor and user information Wallet cryptographic key factor further comprises that operator's hot money packet cryptographic key factor and the user information are carried out HKDF_ After SHA256 operation, derivation obtains user's wallet cryptographic key factor.
Method according to embodiments of the present invention, user's wallet cryptographic key factor, user's wallet private key are stored in operator's heat In the computer of wallet encryption equipment.
On the other hand, the embodiment of the invention also provides a kind of transaction systems based on block chain, characterized by comprising:
The cold wallet encryption equipment of operator, for generating the cold wallet cryptographic key factor of operator, wherein the cold wallet of the operator Cryptographic key factor is for generating the cold wallet public and private key pair of operator;
Operator's hot money packet encryption equipment, for being generated according to the cold wallet cryptographic key factor of the operator and operator's informaiton Operator's hot money packet cryptographic key factor, wherein operator's hot money packet cryptographic key factor is for generating operator's hot money Bao Zheng's private key It is right;
Operator's hot money packet encryption equipment is also used to according to operator's hot money packet cryptographic key factor and user information User's wallet cryptographic key factor is generated, generates user's wallet public and private key pair using user's wallet cryptographic key factor.
The system according to embodiments of the present invention, further includes transaction business device, for by operator's hot money packet with Multiple user's wallets carry out digital funds transaction;
It further include transaction maintenance device, for being more than the first threshold value when the digital fund in operator's hot money packet When, using the operator's hot money packet private key generated in operator's hot money packet encryption equipment by the number in operator's hot money packet Word fund collects in the cold wallet of the operator.
The system according to embodiments of the present invention, the transaction maintenance device is also used to, when operator's hot money packet In digital fund when being lower than the second threshold value, utilize the cold wallet of the operator generated in the cold wallet encryption equipment of the operator private Key transfers accounts the digital fund in the cold wallet of the operator into operator's hot money packet.
The system according to embodiments of the present invention, further includes cold wallet key disassembler, runs on the operator Cold wallet encryption equipment, for the cold wallet cryptographic key factor of the operator to be split as multiple portions, distributed and saved is in multiple described In first storage medium, when needing to restore the cold wallet cryptographic key factor of the operator, it is greater than first key thresholding using quantity The cold wallet cryptographic key factor of part operator stored in first storage medium of value, restores the cold wallet key of the operator The factor.
The system according to embodiments of the present invention, the cold wallet encryption equipment of operator includes the intelligence with IC chip The cold wallet cryptographic key factor of the operator is stored in the smart card with IC chip by card.
The system according to embodiments of the present invention, further includes hot money packet key disassembler, runs on the operator Hot money packet encryption equipment, for operator's hot money packet cryptographic key factor to be split as multiple portions, distributed and saved is in multiple described In second storage medium, when needing to restore operator's hot money packet cryptographic key factor, it is greater than the second key thresholding using quantity The part operator hot money packet cryptographic key factor stored in second storage medium of value, restores operator's hot money packet key The factor.
The system according to embodiments of the present invention, operator's hot money packet encryption equipment includes the intelligence with IC chip Operator's hot money packet cryptographic key factor is stored in the smart card with IC chip by card.
The system according to embodiments of the present invention, user's wallet cryptographic key factor, user's wallet private key are stored in fortune It seeks in the computer of quotient's hot money packet encryption equipment.
On the other hand, the embodiment of the invention also provides a kind of computer readable storage medium, it is stored thereon with computer Instruction, which performs the steps of when being executed by processor generates the cold wallet cryptographic key factor of operator, wherein described The cold wallet cryptographic key factor of operator is for generating the cold wallet public and private key pair of operator;
Operator's hot money packet cryptographic key factor is generated according to the cold wallet cryptographic key factor of the operator and operator's informaiton, Described in operator's hot money packet cryptographic key factor for generating operator's hot money Bao Zheng's private key pair;
User's wallet cryptographic key factor is generated according to operator's hot money packet cryptographic key factor and user information, using described User's wallet cryptographic key factor generates user's wallet public and private key pair.
Using the method and system of the embodiment of the present invention, can solve related account public and private key in block chain network does not have Correlation can be with when the problem that some key (especially private key) is lost or equipment damage causes account number fund impaired It realizes when operator's hot money packet private key or user's wallet private key loss or equipment damage, it can be close by the cold wallet of operator The key factor restores the transaction key message such as operator's hot money packet private key or user's wallet private key, and number fund is avoided to damage It loses.
Detailed description of the invention
In order to more clearly explain the embodiment of the invention or the technical proposal in the existing technology, to embodiment or will show below There is attached drawing needed in technical description to be briefly described, it should be apparent that, the accompanying drawings in the following description is only this Some embodiments of invention for those of ordinary skill in the art without creative efforts, can be with It obtains other drawings based on these drawings.
Fig. 1 is a kind of method of commerce flow diagram based on block chain of the embodiment of the present invention;
Fig. 2 show a kind of structural schematic diagram of the transaction system based on block chain of the embodiment of the present invention;
Fig. 3 show user's load value data flow graph in a kind of transaction system based on block chain of the embodiment of the present invention;
Fig. 4 show user in a kind of transaction system based on block chain of the embodiment of the present invention and withdraws deposit data flow diagram;
Fig. 5 show a kind of flow chart for restoring user's wallet private key of the embodiment of the present invention.
Specific embodiment
Following will be combined with the drawings in the embodiments of the present invention, and technical solution in the embodiment of the present invention carries out clear, complete Site preparation description, it is clear that described embodiments are only a part of the embodiments of the present invention, instead of all the embodiments.It is based on Embodiment in the present invention, it is obtained by those of ordinary skill in the art without making creative efforts every other Embodiment shall fall within the protection scope of the present invention.
Fig. 1 is a kind of method of commerce flow diagram based on block chain of the embodiment of the present invention, the method in the present embodiment Applied to the digital funds transaction between operator's platform and multiple users, operator's platform by hot money packet and multiple users it Between carry out digital funds transaction, when the digital fund in operator's hot money packet reaches some threshold value, it will by operator's heat Digital fund in wallet collects in the cold wallet of operator.Private key needed for each stroke numeral funds transaction (including operator The private key of cold wallet, the private key of operator's hot money packet, user private key) be all by cold wallet private key and operator or user Information derivable forms, therefore when user's wallet private key or operator's hot money packet private key loss or equipment damage, can be by cold Wallet private key and operator's informaiton or user information derive from.The present embodiment method specifically includes:
Step 101, the cold wallet cryptographic key factor of operator is generated, wherein the cold wallet cryptographic key factor of the operator is for generating The cold wallet public and private key pair of operator;
Step 102, operator's hot money Bao Mi is generated according to the cold wallet cryptographic key factor of the operator and operator's informaiton The key factor, wherein operator's hot money packet cryptographic key factor is for generating operator's hot money Bao Zheng's private key pair;
Step 103, user's wallet cryptographic key factor is generated according to operator's hot money packet cryptographic key factor and user information, User's wallet public and private key pair is generated using user's wallet cryptographic key factor.
It as one embodiment of the application, further include being carried out by operator's hot money packet and multiple user's wallets Digital funds transaction utilizes operator's heat when the digital fund in operator's hot money packet is more than the first threshold value Wallet private key collects the digital fund in operator's hot money packet in the cold wallet of the operator.
Wherein, operator can be electric business platform or exchange, and electric business platform or exchange and user, which carry out filling coin, mentions coin In the process, it may occur that transaction data, transaction data is all the transaction data of digital fund, such as bit in the embodiment of the present application The digital cash such as coin, Lay spy coin, ether mill coin, the hot money packet of operator collect the digital fund of multiple user's wallets, when reaching (such as 1,000,000 digital funds) transfer accounts into the cold wallet of operator after certain number, to guarantee the safety of digital fund.Wherein Hot money packet refers to some block chain account, and the account runs on computer connected to the network, and the account can pass through at any time Block chain network and other accounts carry out the transaction of digital fund, and the wallet of the account is hot money packet;Cold wallet refers to some Block chain account runs computer and internet suspension (or being placed in safe and reliable local area network) of the account, the meter Calculation machine is for example including desktop computer, server, laptop, tablet computer, smart phone or IC chip, in the present invention In the embodiment of application, the IC chip of smart card can carry out generating the cold wallet of operator according to the cold wallet cryptographic key factor of operator Private key and public key and cold wallet address when needing to carry out cold wallet money transfer transactions, can generate operator by IC chip in real time Cold wallet private key is to carry out the transaction of digital fund.
As one embodiment of the application, further include, when the digital fund in operator's hot money packet is lower than second When threshold value, the digital fund in the cold wallet of the operator is transferred accounts to operator's heat using the operator cold wallet private key In wallet.
Wherein, when the electronic transaction between user's wallet and operator's hot money packet is more, the number in operator's hot money packet Insufficient funds then need to be transferred to a certain amount of digital fund from the cold wallet of operator to cope with the request of withdrawing deposit of user's wallet, Such as second threshold value be 100,000 when, when the digital fund in operator's hot money packet be lower than 100,000 when, then generate transfer request, send out The trusteeship party of the cold wallet of operator is given, the digital fund in the cold wallet of operator is transferred to operator's hot money packet by request.This Request can be sent to trusteeship party in a manner of cellphone information or Email, if trusteeship party is that multiple users hold one respectively The cold wallet cryptographic key factor of partial operator, then each user can receive the request, and when a certain number of users are total With in the smart card insertion same computer that will be stored with the cold wallet cryptographic key factor of part operator, can just recover complete The cold wallet cryptographic key factor of operator, the cold wallet cryptographic key factor of the operator utilize the private for generating the cold wallet private key of operator Key signature money transfer transactions, complete cold wallet and transfer accounts to the digital fund of hot money packet.Certainly, it after completing money transfer transactions, needs More new block chain account book after broadcast is reached common understanding is carried out in block chain network, wherein may further relate to dig the conventional skill such as remuneration of mine Art repeats no more in this application.
As one embodiment of the application, further comprise generating the cold wallet cryptographic key factor of operator, it will be described The cold wallet cryptographic key factor of operator is stored in the first storage medium.
As one embodiment of the application, raw according to the cold wallet cryptographic key factor of the operator and operator's informaiton It further comprise that operator's hot money packet cryptographic key factor is stored in the second storage and is situated between at operator's hot money packet cryptographic key factor Matter.
Wherein it is possible to which the cold wallet cryptographic key factor of operator is stored in the first storage medium and by operator's hot money packet key The factor is stored in operator's hot money packet encryption equipment (computer of networking), or can also be by the cold wallet cryptographic key factor of operator It is stored in the first storage medium and operator's hot money packet cryptographic key factor is stored in the second storage medium.First storage medium and Two storage mediums include the smart card with IC chip, and the smart card that should have IC chip is that one kind has data processing and storage The smart card of function, carries out data processing by IC chip, carries out data by internal nonvolatile memory such as ROM Storage, data storage areas therein use encryption appropriate or secrecy provision.
As one embodiment of the application, the cold wallet cryptographic key factor of the operator is stored in the first storage medium It further comprise the cold wallet cryptographic key factor of the operator being split as multiple portions, distributed and saved is deposited in multiple described first In storage media, when needing to restore the cold wallet cryptographic key factor of the operator, the institute of first key threshold value is greater than using quantity The cold wallet cryptographic key factor of the part operator stored in the first storage medium is stated, the cold wallet cryptographic key factor of the operator is restored.
As one embodiment of the application, by operator's hot money packet cryptographic key factor be stored in the second storage medium into One step includes operator's hot money packet cryptographic key factor being split as multiple portions, distributed and saved is in multiple second storages In medium, when needing to restore operator's hot money packet cryptographic key factor, it is greater than described in the second key threshold value using quantity The part operator hot money packet cryptographic key factor stored in second storage medium, restores operator's hot money packet cryptographic key factor.
Wherein it is possible to using Shamir Secret Sharing (sharing of summer Mir's key) algorithm that the operator is cold Wallet cryptographic key factor is split as multiple, such as is split as 5 parts, the cold wallet cryptographic key factor of every portion part operator is stored in one In smart card, when needing to restore the cold wallet cryptographic key factor of operator, it will be greater than using Shamir Secret Sharing algorithm The cold wallet cryptographic key factor of part operator of key threshold number (such as 3 parts) reverts to the cold wallet cryptographic key factor of operator, i.e., The parameter of Shamir Secret Sharing algorithm is set as (3,5), splitting the cold wallet cryptographic key factor of operator is 5 parts, is passed through Any 3 parts therein or more can restore the cold wallet cryptographic key factor of complete operator;For operator's hot money packet key The factor can also be split and be restored by the way of similar above-mentioned cold wallet cryptographic key factor.Wherein, Shamir Secret Sharing algorithm can be run in computer, or be run in the smart card with IC chip.
As one embodiment of the application, generated according to the cold wallet cryptographic key factor of the operator and operator's informaiton Operator's hot money packet cryptographic key factor further comprises, by the cold wallet cryptographic key factor of the operator and the operator's informaiton knot Hash operation is carried out after conjunction, obtains operator's hot money packet cryptographic key factor.
Wherein, the cold wallet cryptographic key factor of the operator can be the random number of 256bit, can be given birth to by smart card hardware At random number character string, operator's informaiton may include carrier ID or title, character string be converted this information into, with institute Random number is stated to combine, for example, can be addition or be it is binary with or operation etc., the character string after combination is breathed out Uncommon operation, operator's hot money packet cryptographic key factor of formation are similarly the character string of 256bit.According to the usual algorithm of block chain, benefit Public key and corresponding account address are generated with generating random number private key, and according to private key, just constitutes complete block link network Account information in network, by above-mentioned operator's hot money packet cryptographic key factor can be generated operator's hot money packet private key, public key with And operator's hot money packet address, the cold wallet private key of operator, public key can be generated by the cold wallet cryptographic key factor of above-mentioned operator And the cold wallet address of operator, by identical cryptographic key factor and identical algorithm, available identical private key, public key And wallet address.
As one embodiment of the application, is generated and used according to operator's hot money packet cryptographic key factor and user information Family wallet cryptographic key factor further comprises, by operator's hot money packet cryptographic key factor in conjunction with the user information after breathe out Uncommon operation, obtains user's wallet cryptographic key factor.
As one embodiment of the application, user's wallet cryptographic key factor, user's wallet private key are stored in operator In the computer of hot money packet encryption equipment.
Wherein, operator's hot money packet encryption equipment is generated according to operator's hot money packet cryptographic key factor and user information and is used Family wallet cryptographic key factor generates user's wallet public and private key pair, user's wallet key using user's wallet cryptographic key factor The factor and private key are not sent to user, and are retained in the computer of operator's hot money packet encryption equipment (if operator is hot When wallet encryption equipment is smart card, can also be retained in the computer being connect with the smart card), according to the friendship of electric business platform Digital fund and operator's hot money packet in easy data manipulation user's wallet carry out money transfer transactions, and user only needs such as conventional electricity Sub- business consumption operation is equally consumed, and completes user according to the private key of consumer record and user's wallet by operator Digital fund also or is to carry out operator's hot money using operator's hot money packet private key to the transfer of operator's hot money packet in wallet The operation such as reimbursement of user's wallet is wrapped, which does not hold user's wallet private key, cannot operate user's wallet, and user can only grasp The fund for making the user account that it is registered in the electric business platform of operator, by operator's hot money packet encryption equipment management user's wallet Private key, by the fund in the user account of the user management electric business platform user, carry out when user account is supplemented with money or is consumed to What user was reflected is all the fund variation in user account, and the digital fund in true user's wallet has all gone to operator In hot money packet.
Method in through the foregoing embodiment can solve the no correlation of related account public and private key in block chain network Property, when the problem that some key (especially private key) is lost or equipment damage causes account number fund impaired, may be implemented When operator's hot money packet private key or user's wallet private key are lost or equipment damage, can by the cold wallet key of operator because Son restores the transaction key message such as operator's hot money packet private key or user's wallet private key, avoids number monetary losses;It is logical The cold and hot wallet of setting operator is crossed, by the computer off-grid of cold wallet, when the digital fund in hot money packet is more than a certain amount of, just It can collect automatically in cold wallet, ensure that the safety of operator's number fund;When using the storage section operation of dispersed intelligence card The cold wallet cryptographic key factor of quotient, or pass through dispersed intelligence card storage section operator hot money packet cryptographic key factor when, area may be implemented The safety of block chain account key, only hold can just be obtained greater than the part of key factor of some threshold value quantity it is complete close The key factor, so that wallet private key could be generated.
It is illustrated in figure 2 a kind of structural schematic diagram of the transaction system based on block chain of the embodiment of the present invention, in this implementation In the security contexts such as the cold wallet encryption equipment of Li Zhong operator and Network Isolation, operator's hot money packet encryption equipment, user terminal and net Network connection, specifically includes:
The cold wallet encryption equipment 201 of operator, for generating the cold wallet cryptographic key factor of operator, wherein the cold money of the operator Packet cryptographic key factor is for generating the cold wallet public and private key pair of operator;
Operator's hot money packet encryption equipment 202, for according to the cold wallet cryptographic key factor of the operator and operator's informaiton Operator's hot money packet cryptographic key factor is generated, wherein operator's hot money packet cryptographic key factor is for generating operator hot money Bao Zheng private Key pair;
Operator's hot money packet encryption equipment is also used to according to operator's hot money packet cryptographic key factor and user information User's wallet cryptographic key factor is generated, generates user's wallet public and private key pair using user's wallet cryptographic key factor.
Further include transaction business device as one embodiment of the application, for by operator's hot money packet with Multiple user's wallets carry out digital funds transaction;
It further include transaction maintenance device, for being more than the first threshold value when the digital fund in operator's hot money packet When, using the operator's hot money packet private key generated in operator's hot money packet encryption equipment by the number in operator's hot money packet Word fund collects in the cold wallet of the operator.
As one embodiment of the application, the transaction maintenance device is also used to, when in operator's hot money packet It, will using the cold wallet private key of the operator generated in the cold wallet encryption equipment of the operator when digital fund is lower than the second threshold value Digital fund in the cold wallet of operator is transferred accounts into operator's hot money packet.
As one embodiment of the application, further includes cold wallet key disassembler, run on the cold money of the operator Packet encryption equipment, for the cold wallet cryptographic key factor of the operator to be split as multiple portions, distributed and saved is in multiple described first In storage medium, when needing to restore the cold wallet cryptographic key factor of the operator, it is greater than first key threshold value using quantity The cold wallet cryptographic key factor of the part operator stored in first storage medium, restore the cold wallet key of the operator because Son.
Wherein, the cold wallet key disassembler is run in the smart card with IC chip, described to have IC The smart card of chip is plugged into the computer disconnected with network by USB interface, runs above-mentioned cold wallet cryptographic key factor Cold wallet private key, public key, cold wallet address scheduling algorithm are generated, and passes through cold wallet key disassembler for cold wallet cryptographic key factor It is stored respectively in multiple smart cards with IC chip.
As one embodiment of the application, the cold wallet encryption equipment of operator includes the smart card with IC chip, The cold wallet cryptographic key factor of the operator is stored in the smart card with IC chip.
As one embodiment of the application, further includes hot money packet key disassembler, run on operator's hot money Packet encryption equipment, for operator's hot money packet cryptographic key factor to be split as multiple portions, distributed and saved is in multiple described second In storage medium, when needing to restore operator's hot money packet cryptographic key factor, it is greater than the second key threshold value using quantity The part operator hot money packet cryptographic key factor stored in second storage medium, restore operator's hot money packet key because Son.
As one embodiment of the application, operator's hot money packet encryption equipment includes the smart card with IC chip, Operator's hot money packet cryptographic key factor is stored in the smart card with IC chip.
As one embodiment of the application, user's wallet cryptographic key factor, user's wallet private key are stored in operator In the computer of hot money packet encryption equipment.
Wherein, operator's hot money packet encryption equipment may be computer or for the smart card with IC chip, when to calculate When machine, there is considerable memory capacity, can be used to store multiple user's wallet cryptographic key factors and user's wallet private key;When for tool When having the smart card of IC chip, since its memory capacity is limited, operator can be stored on the smart card with IC chip Hot money packet cryptographic key factor (limited amount), but the user's money generated by operator's hot money packet cryptographic key factor and user information Packet cryptographic key factor and user's wallet public and private key pair, the information such as user's wallet address (there are many number of users) can not just store , can be by user's wallet cryptographic key factor and user's wallet public and private key pair in the smart card with IC chip, user's wallet The information such as location are stored in the computer of operator's hot money packet encryption equipment, are stored using the massive storage space in computer above-mentioned Information;Or when needed every time using user's wallet cryptographic key factor, in real time according to operator's hot money packet cryptographic key factor and user Information derivable goes out user's wallet cryptographic key factor.
By the system of the embodiments of the present invention, can solve related account public and private key in block chain network does not have phase Guan Xing, as the problem that some key (especially private key) is lost or equipment damage causes account number fund impaired, Ke Yishi Now when operator's hot money packet private key or user's wallet private key loss or equipment damage, the cold wallet key of operator can be passed through The factor restores the transaction key message such as operator's hot money packet private key or user's wallet private key, avoids number monetary losses; By the way that the cold and hot wallet of operator is arranged, by the computer off-grid of cold wallet, when the digital fund in hot money packet is more than a certain amount of, It will collect automatically in cold wallet, ensure that the safety of operator's number fund;When using dispersed intelligence card storage unit partite transport When seeking the cold wallet cryptographic key factor of quotient, or passing through dispersed intelligence card storage section operator hot money packet cryptographic key factor, it may be implemented The safety of block chain account key, the part of key factor only held greater than some threshold value quantity can just obtain completely Cryptographic key factor, so that wallet private key could be generated.
It is illustrated in figure 3 user's load value data flow graph in a kind of transaction system based on block chain of the embodiment of the present invention, It is transferred in user's wallet that user is set up to operator's hot money packet encryption equipment for the user by user terminal in the present embodiment Digital fund, while also more new account balance in the user account information of transaction business device generation, user terminal and transaction industry Business device communication carries out e-commerce transaction behavior, transaction data and user's account between transaction business device record and user Family information, user is by carrying out e-commerce transaction behavior with transaction business device, so that the digital fund in user account is sent out Changing.The digital fund in user's wallet is transferred to operation by user's wallet private key that operator's hot money packet encryption equipment exports In quotient's hot money packet, user account information is not as the digital fund in user's wallet changes.The cold wallet encryption equipment of operator according to It is public to generate the cold wallet of operator according to the cold wallet encryption factor of the operator for the cold wallet encryption factor of one generating random number operator Private key pair, operator's hot money packet encryption equipment generate operator's hot money packet encryption factor according to the cold wallet encryption factor of operator, And operator's hot money Bao Zheng's private key pair can be generated according to operator's hot money packet encryption factor.It specifically includes:
Step 301, user terminal initiates registration request.
Step 302, transaction business device feeds back registration information.
In this step, transaction business device establishes user account information database, and user's account is stored in the database Family information, including information such as name on account, password, address, telephone numbers.The user account set up is returned to user terminal Information, including name on account.
Step 303, user terminal initiates to initiate charging request to transaction business device.
In this step, user terminal supplements 100 digital cash with money to the user account set up.
Step 304, transaction business device initiates to derive from the request of user's wallet address to operator's hot money packet encryption equipment.
In this step, transaction business device sends the request for deriving from user's wallet address to operator's hot money packet encryption equipment In further comprise user.name.
Step 305, operator's hot money packet encryption equipment generates needle according to operator's hot money packet cryptographic key factor and name on account User's wallet public and private key pair and user's wallet address to account title.
In this step, operator's hot money packet encryption equipment can be computer, or the smart card with IC chip, according to heat Wallet cryptographic key factor and name on account generate the cryptographic key factor of user, such as name on account is converted to character string, by hot money The character string that the character string and name on account of the 256bit of packet cryptographic key factor is converted to is using HKDF_SHA256 (HMAC- Based Key Derivation Function, HKDF) operation is carried out, user's wallet cryptographic key factor for the user is obtained, User's wallet private key and public key are generated according to user's wallet cryptographic key factor, with generating user's wallet according to user's wallet public key Location.
Step 306, to transaction business device feedback user wallet address.
User's wallet address is the wallet address in block chain network.
Step 307, user's wallet address is returned to user terminal.
Step 308, user terminal is supplemented with money to user's wallet address, and recharging result is informed transaction business device.
In this step, user by user terminal from the privately owned wallet of user to user's wallet address transfer accounts 100 number Word currency, and recharging result is informed into transaction business device.Wherein, the privately owned wallet of user is the wallet for belonging to individual subscriber, should The private key of the privately owned wallet of user is saved by user oneself, is not stored on operator's platform.
Step 309, whether transaction business device inquiry user's wallet has digital cash to account.
In this step, due to user's wallet address it is found that then transaction business device can be with according to user's wallet address Whether in the user wallet have corresponding digital cash to account, user to user wallet is recorded in transaction data base if inquiring Load value data.
Further include in this step, transaction business device according to the user account information of the balance updates in user's wallet or Account balance information in person's transaction data base.
Step 310, transaction business device generates money transfer transactions, and the digital cash in user's wallet is transferred accounts to operator's heat In wallet.
In this step, the digital cash in user's wallet is transferred in operator's hot money packet by transaction business device, is used User account information (or transaction data of user and operator electric business platform) and user of the family at operator's electric business platform Wallet is associated, that is to say, that 100 digital cash are supplemented with money in user's wallet that user generates to operator's hot money packet encryption equipment, it should Also there is 100 digital cash (user is visible) in the user account that user generates at operator's electric business platform, when user is transporting It seeks on the e-commerce platform of quotient after consuming, 100 digital cash in user account start to change (gradually decreasing), still 100 digital cash in user's wallet have been transferred completely into advance in operator's hot money packet, and transaction business device is according to user The data (100 digital cash in this example) supplemented with money to user's wallet generate the transaction transferred accounts by user's wallet to operator's hot money packet Data.
In another embodiment, when user and operator's electric business platform carry out electronic transaction, transaction business device dimension A transaction data base is protected, the electronic commerce transaction data of user Yu operator's electric business platform are stored in the database, such as User A has purchased some commodity in some time, and 5 digital cash of paying the bill, the user account remaining sum of user A is 88 digital cash, User B has purchased some commodity in some time, 7 digital cash of paying the bill, and the user account remaining sum of account B is 90 digital cash Deng.The money transfer transactions of generation refer to the variation by transaction business device according to digital cash in user account, generate in user's money Money transfer transactions between packet and operator's hot money packet, for example, the user account of user A is then generated due to having consumed 5 digital cash One is transferred accounts the transaction data of 5 digital cash from user's wallet of user A to operator's hot money packet.
Step 311, it sends to operator's hot money packet encryption equipment and transfer transaction data is signed using user's wallet private key The request of name.
In this step, either user supplements with money to user's wallet or user and operator's electric business platform carry out electronics The transaction data generated when transaction requires to sign to transfer transaction data using user's wallet private key, could complete use Digital cash in the wallet of family is transferred accounts to operator's hot money packet.
Step 312, operator's hot money packet encryption equipment signs to transaction data, and feeds back to transaction business device.
In this step, the hot encryption equipment of operator can be multiple smart cards with IC chip, the smart card insertion Obtain electric energy in the USB interface of computer, each smart card can according to operator's hot money packet key of storage inside because User's wallet cryptographic key factor is derived after son and name on account, and generates the private of user's wallet using user's wallet cryptographic key factor Key;Or the hot encryption equipment of operator can be computer, find the user to match with name on account being stored in computer Wallet private key.It is signed using user's wallet private key to transaction data, and feeds back to transaction business device.
Step 313, the transaction data after signature broadcast in block chain network by transaction business device, is total to Know the account book of more new block chain link point after verifying.
In this step, exactly according to the signature of block chain node, (user's wallet private key gives steering for the common recognition verifying The transaction data of operator's hot money packet is signed) whether the identity of the block chain node and the encrypting transactions data are usurped Row common recognition verifying is improved, transaction business device (block chain node) is generated according to encrypting transactions data and made a summary, and be can be encryption and is handed over A part (such as encrypting transactions data start 5%) of easy data, signs part abstract using user's wallet private key Name, then the encrypting transactions data and signature are sent to other block chain nodes.Institute is received in some block chain node After the transaction data and signature of stating encryption, the signature is decrypted using user's wallet public key, obtains encryption number of deals According to abstract, the abstract after decryption is compared with the encrypting transactions data received, if consistent (such as the encryption number of deals of the two It is identical according to the 5% of beginning), then illustrate that encrypting transactions data is not tampered with, that is, common recognition is verified, in block chain node By the way that the encrypting transactions data will be stored into local block chain after common recognition verifying.
In another embodiment, when user and operator's electric business platform carry out the transaction data of electronic transaction generation, Common recognition verifying can be broadcasted and carry out, by block chain network in real time to complete the digital cash and operator's hot money of user's wallet Transferring accounts between the digital cash in packet;Electronic transaction generation can also be carried out by record user and operator's electric business platform Transaction data modifies user account data in electric business platform, when user to user wallet withdraw deposit etc. operation or timing It carries out the broadcast of block chain network and carries out common recognition verifying, the number in digital cash and operator's hot money packet to complete user's wallet Transferring accounts between word currency.
Step 314, by the message feedback of successful recharging to user terminal.
User terminal inquire operator's electric business platform in the user account balance when, according in customer transaction database The account balance of record notifies account balance of the user in operator's electric business platform.
Step 315, whether the digital cash in transaction maintenance device poll operator hot money packet is more than threshold value.
Step 316, when the digital cash in operator's hot money packet be more than threshold value then, then generate by operator's hot money packet to The transaction data that the cold wallet of operator is transferred accounts.
It in this step, then will be more than 100 such as when the digital cash in operator's hot money packet is more than 1,000,000 Ten thousand part is transferred to the cold wallet of operator, to enhance the safety of digital cash.
Step 317, transaction maintenance device sends the request that transaction data is signed to operator's hot money packet encryption equipment.
Step 318, operator's hot money packet encryption equipment signs to transaction data using operator's hot money packet private key, feedback Give transaction maintenance device.
In this step, operator's hot money packet encryption equipment can be smart card, according to the operator being stored in smart card Hot money packet cryptographic key factor generates operator's hot money packet private key, utilizes transaction data described in operator's hot money packet private key signature.Wherein, It can be multiple smart cards, using Shamir Secret Sharing algorithm when operator's hot money packet encryption equipment is smart card Operator's hot money packet cryptographic key factor is split as multiple portions, some operator hot money Bao Mi is stored in each sheet smart card The key factor, when needing using operator's hot money packet cryptographic key factor, needing the quantity of smart card is more than use after a threshold value Shamir Secret Sharing algorithm restores operator's hot money packet cryptographic key factor in multiple smart cards, that is, reaches one The part operator hot money packet cryptographic key factor of fixed number amount could restore complete operator's hot money packet cryptographic key factor.Wherein, multiple A SessionKey can be established using boolean Mei Site-De Meite agreement (Burmester-Desmedt) between smart card, Then the exit passageway communicated between smart card is established using the SessionKey, obtains the part operation in each smart card Quotient's hot money packet cryptographic key factor, then recovery calculating is carried out by some smart card, complete operator's hot money packet cryptographic key factor is obtained, then Operator's hot money packet private key is generated according to operator's hot money packet cryptographic key factor by the smart card, utilizes operator's hot money packet private key It signs to transaction data.
When operator's hot money packet encryption equipment is computer, operator's hot money can be obtained according to the method for similar smart card Packet private key, or can also be directly from the database for storing operator's hot money packet private key, public key, hot money packet address described in reading Operator's hot money packet private key, for signing to transaction data.
Step 319, the transaction data after signature broadcast in block chain network by transaction maintenance device, is total to Know the account book of more new block chain link point after verifying.
In this step, by the way that operator's hot money packet is signed to the cold wallet transfer transaction data of operator, and it is wide Broadcast and known together, it is complete after block chain transfer operation, and the key of the cold wallet encryption equipment of the operator cold wallet of operator in other words Factor off-grid is stored in smart card, and the cold wallet private key of operator, public key require according to the cold wallet key of the operator because It is sub to generate in real time, therefore the cold wallet of operator is safer relative to hot money packet, a large amount of digital cash is stored in the cold wallet The raising that middle safety obtains.
User in a kind of transaction system based on block chain of the embodiment of the present invention is illustrated in figure 4 to withdraw deposit data flow diagram, User is withdrawn deposit request by user terminal to the sending of transaction business device in the present embodiment, operator's platform pass through hot money packet (if Deficiency also need from cold wallet) in transfer accounts to the privately owned wallet of user.Wherein, what the cold wallet cryptographic key factor of operator dispersed is stored in In multiple smart cards, when the smart card of extra threshold value number could restore the cold wallet cryptographic key factor of complete operator, thus The cold wallet private key of operator can just be obtained for transferring accounts, operator's hot money packet cryptographic key factor is stored in operator's hot money in capital and interest In packet encryption equipment (computer), using the available operator's hot money packet private key of operator's hot money packet cryptographic key factor for turning Account, the present embodiment method specifically include:
Step 401, user initiates application of withdrawing deposit.
In this step, application of withdrawing deposit refers to user's wallet that user needs to set up operator's electric business platform to the user In digital cash transfer accounts into the privately owned wallet of user, which only has the privately owned wallet private key of user, and operator's electric business platform is given The private key for user's wallet that the user sets up is stored in operator's hot money packet encryption equipment.User initiate withdraw deposit application in include use The information such as family name on account, password further include the address of the privately owned wallet of user.
Step 402, transaction business device verifies user account.
In this step, user account information is stored in transaction business device, and transaction business device is tested according to account information Card withdraw deposit application in information it is whether consistent, such as verifying name on account and password it is whether correct, the account saved in account information Whether name in an account book claims the matching relationship between the privately owned wallet address of user correct, and whether the amount of money withdrawn deposit is less than in user account Otherwise remaining sum is reported an error by entering in next step after verifying to user.
Step 403, transaction business device sends transfer request to transaction maintenance device.
In this step, transfer request refers to from operator's hot money packet and transfers accounts into the privately owned wallet of user, wherein wrapping The information such as the privately owned wallet address of user, transfer amounts are included.
Step 404, transaction maintenance device checks whether the remaining sum in operator's hot money packet is greater than predetermined threshold.
In this step, 409 are gone to step if remaining sum in operator's hot money packet is greater than predetermined threshold, otherwise 405 are entered step, into the cold wallet of operator to operator's hot money packet transferring step, multiple users may send out simultaneously in this step Request of withdrawing deposit is acted, if the remaining sum in operator's hot money packet cannot cope with request of largely withdrawing deposit, is needed from cold wallet transfer Enter digital cash.
Step 405, transaction maintenance device sends transfer request to the cold wallet encryption equipment of operator.
In this step, since the cold wallet encryption equipment of operator is multiple smart cards, it is unable to individual reception transaction maintenance dress The transfer request set, thus trade maintenance device can by the contact method of the multiple smart card holders prestored, respectively to Multiple smart card holders send short message or Email or dial the various ways such as voice call and notify, notify The holder of smart card needs to carry out the cold wallet of operator to operator's hot money packet transfer operation.
Step 406, the cold wallet encryption equipment of operator signs to money transfer transactions.
In this step, the cold wallet encryption equipment of operator is multiple smart cards, and the multiple smart card is inserted into an off-grid In the USB interface of computer, multiple smart cards are in communication with each other, money transfer transactions can be imported by USB storage device Into computer, or can be manually entered in the computer.When be more than threshold number smart card holder show up (such as A total of 5 smart cards respectively take care of the cold wallet cryptographic key factor of operator, thresholding is, for example, 3, when have 3 and 3 or more intelligence Card is on the scene simultaneously, so that it may recover the cold wallet cryptographic key factor of complete operator), the multiple smart cards held are inserted into off-grid Computer (or be in security context) in after, built using boolean's Mei Site-De Meite agreement (Burmester-Desmedt) A SessionKey is found, the exit passageway communicated between smart card is then established using the SessionKey, is obtained each The cold wallet cryptographic key factor of part operator in smart card, then recovery calculating is carried out by some smart card and (is runed using with fractionation The identical fractionation algorithm of the cold wallet cryptographic key factor of quotient, such as Shamir Secret Sharing algorithm carry out recovery calculating), it obtains It is cold according to cold wallet cryptographic key factor generation operator of operator to the cold wallet cryptographic key factor of complete operator, then by the smart card Wallet private key signs to money transfer transactions using the cold wallet private key of the operator.
Step 407, the money transfer transactions after signature are sent to transaction maintenance device.
It in this step, can be on the computer for being plugged with the cold wallet encryption equipment of operator, by the friendship of transferring accounts after signature It easily is burnt to CD, or is stored in USB storage device, sends the money transfer transactions that the record has signature to transaction maintenance dress It sets.
Step 408, the money transfer transactions after signature broadcast in block chain network by transaction maintenance device, are total to Know the account book of more new block chain link point after verifying.
So far, transfer operation of the cold wallet of operator to operator's hot money packet, number in operator's hot money packet are completed Currency is enough, so that the application of withdrawing deposit of user can be smoothly completed.
Step 409, money transfer transactions of the transaction maintenance device generation operator's hot money packet to the privately owned wallet of user.
Step 410, transaction maintenance device is sent privately owned to user to operator's hot money packet to operator's hot money packet encryption equipment The request of wallet money transfer transactions signature.
Step 411, after operator's hot money packet encryption equipment signs to money transfer transactions, the transaction maintenance dress is returned to It sets.
In this step, operator's hot money packet encryption equipment can be multiple as the cold wallet encryption equipment of above-mentioned operator Smart card a, or computer is in the present embodiment computer, passes through the operator's hot money stored in a computer Packet private key signs to the money transfer transactions.
Step 412, the money transfer transactions after signature broadcast in block chain network by transaction maintenance device, are total to Know the account book of more new block chain link point after verifying.
So far, it completes by operator's hot money packet to the money transfer transactions the privately owned wallet of user, completes user and withdraw deposit Operation.
Step 413, transfer result is fed back to transaction business device by transaction maintenance device.
Step 414, transaction business device withdraws deposit to user terminal feedback and operates the prompt of completion.
In this step, transaction business device is after the completion of feedback withdraws deposit operation, it is also necessary to deposit to the transaction business device The account information and transaction data base of storage are updated, such as user withdraws deposit to operate and it is transferred to operator's electric business platform in advance 100 digital cash all produce the privately owned wallet of user, then need to do corresponding data in transaction data base and update, the use The account at family
It is illustrated in figure 5 a kind of flow chart for restoring user's wallet private key of the embodiment of the present invention, is runed in the present embodiment There is equipment damage in quotient's hot money packet encryption equipment, wherein the user's wallet private key stored is lost, operator's hot money packet private key is also lost, After establishing new operator's hot money packet encryption equipment, need to restore user's wallet private key and operator's hot money packet private key, it is specific to wrap It includes:
Step 501, operator's hot money packet encryption equipment is sent to the cold wallet encryption equipment of operator restores key request.
In this step, operator's hot money packet encryption equipment is sent to multiple smart card holders restores key request, this is extensive It include user information in multiple key request, for restoring user's wallet private key.
Step 502, the cold wallet encryption equipment of operator restores the cold wallet cryptographic key factor of operator.
The cold wallet encryption equipment of operator is multiple smart cards, enters same when meeting the required amount of smart card grafting of thresholding After in computer, restore the cold wallet cryptographic key factor of complete operator.
Step 503, the cold wallet encryption equipment of operator is generated according to the cold wallet cryptographic key factor of operator and operator's informaiton Operator's hot money packet cryptographic key factor.
In this step, such as HKDF_SHA256 (HMAC_based_key_derivation_ can be passed through Function, HKDF) algorithm according to the cold wallet cryptographic key factor of operator and operator's informaiton generates operator's hot money packet key The factor, operator's hot money packet cryptographic key factor=HKDF_SHA256 (the cold wallet cryptographic key factor of operator, CASalt, operator's letter Breath, 2048), wherein CASalt can obtain fixed character string by carrying out Hash operation to specific character string, for enhancing The intensity of operator's hot money packet cryptographic key factor, operator's informaiton for example may include carrier ID, and 2048 indicate operator's hot money Packet cryptographic key factor length is 2048 bits.
HKDF_SHA256 passes through to the cold wallet cryptographic key factor of operator and other operational parameters (including CASalt, operator Information, 2048 etc.) SHA256 Hash operation is carried out respectively, using one of Hash result as data, another Hash result As key, cryptographic calculation is carried out, obtained cryptographic calculation result is operator's hot money packet cryptographic key factor.
Parameter, such as CASalt, operator's informaiton etc. used in the calculating of this step with pass through operator for the first time Used parameter is identical when cold wallet cryptographic key factor generates operator's hot money packet cryptographic key factor, and uses identical algorithm, It therefore can also obtain identical as a result, can be sent by the cold wallet cryptographic key factor of identical operator and operator's informaiton Life obtains operator's hot money packet cryptographic key factor the same for the previous.
Above-mentioned processing step is suitable for utilizing HKDF_ by operator's hot money packet cryptographic key factor and user information SHA256 algorithm obtains the process of user's wallet cryptographic key factor.
Step 504, the cold wallet encryption equipment of operator generates operator's hot money according to operator's hot money packet cryptographic key factor Packet private key.
Step 505, the cold wallet encryption equipment of operator is generated according to operator's hot money packet cryptographic key factor and user information and is used Family wallet cryptographic key factor.
This step can be with reference to the method in above-mentioned steps 503.
Step 506, the cold wallet encryption equipment of operator generates user's wallet private key according to user's wallet cryptographic key factor.
By the method and system in above-mentioned the embodiment of the present application, it is public and private close to can solve related account in block chain network Key does not have correlation, when some key (especially private key) loss or equipment damage cause account number fund is impaired to ask Topic may be implemented when operator's hot money packet private key or user's wallet private key loses or equipment damage, can pass through operator Cold wallet cryptographic key factor restores the transaction key message such as operator's hot money packet private key or user's wallet private key, avoids number Monetary losses;By the way that the cold and hot wallet of operator is arranged, by the computer off-grid of cold wallet, when the digital fund in hot money packet is more than When a certain amount of, it will collect automatically in cold wallet, ensure that the safety of operator's number fund;It is deposited when using dispersed intelligence card When storing up the cold wallet cryptographic key factor of part operator, or passing through dispersed intelligence card storage section operator hot money packet cryptographic key factor, The safety that block chain account key may be implemented, the part of key factor only held greater than some threshold value quantity could obtain To complete cryptographic key factor, so that wallet private key could be generated.
The embodiment of the present invention also provides a kind of computer readable storage medium, is stored thereon with computer instruction, the calculating Machine instruction performs the steps of when being executed by processor and generates the cold wallet cryptographic key factor of operator, wherein the cold money of the operator Packet cryptographic key factor is for generating the cold wallet public and private key pair of operator;
Operator's hot money packet cryptographic key factor is generated according to the cold wallet cryptographic key factor of the operator and operator's informaiton, Described in operator's hot money packet cryptographic key factor for generating operator's hot money Bao Zheng's private key pair;
User's wallet cryptographic key factor is generated according to operator's hot money packet cryptographic key factor and user information, using described User's wallet cryptographic key factor generates user's wallet public and private key pair.
Wherein the processor can be the processor in computer, or the processor in smart card.
The embodiment of the present invention also provides a kind of computer-readable instruction, wherein executing described instruction in working as electronic equipment When, program therein makes electronic equipment execute the method that determination processor as shown in Figure 1 operates.
It should be understood that in various embodiments of the present invention, magnitude of the sequence numbers of the above procedures are not meant to execute suitable Sequence it is successive, the execution of each process sequence should be determined by its function and internal logic, the implementation without coping with the embodiment of the present invention Process constitutes any restriction.
It should also be understood that in embodiments of the present invention, term "and/or" is only a kind of association pass for describing affiliated partner System indicates may exist three kinds of relationships.For example, A and/or B, can indicate: individualism A exists simultaneously A and B, individualism These three situations of B.In addition, character "/" herein, typicallys represent the relationship that forward-backward correlation object is a kind of "or".
Those of ordinary skill in the art may be aware that list described in conjunction with the examples disclosed in the embodiments of the present disclosure Member and algorithm steps, can be realized with electronic hardware, computer software, or a combination of the two, in order to clearly demonstrate hardware With the interchangeability of software, each exemplary composition and step are generally described according to function in the above description.This A little functions are implemented in hardware or software actually, the specific application and design constraint depending on technical solution.Specially Industry technical staff can use different methods to achieve the described function each specific application, but this realization is not It is considered as beyond the scope of this invention.
It is apparent to those skilled in the art that for convenience of description and succinctly, foregoing description is The specific work process of system, device and unit, can refer to corresponding processes in the foregoing method embodiment, details are not described herein.
In several embodiments provided herein, it should be understood that disclosed systems, devices and methods, it can be with It realizes by another way.For example, the apparatus embodiments described above are merely exemplary, for example, the unit It divides, only a kind of logical function partition, there may be another division manner in actual implementation, such as multiple units or components It can be combined or can be integrated into another system, or some features can be ignored or not executed.In addition, shown or beg for Opinion mutual coupling, direct-coupling or communication connection can be through some interfaces, the INDIRECT COUPLING of device or unit Or communication connection, it is also possible to electricity, mechanical or other form connections.
The unit as illustrated by the separation member may or may not be physically separated, aobvious as unit The component shown may or may not be physical unit, it can and it is in one place, or may be distributed over multiple In network unit.Some or all of unit therein can be selected to realize the embodiment of the present invention according to the actual needs Purpose.
It, can also be in addition, the functional units in various embodiments of the present invention may be integrated into one processing unit It is that each unit physically exists alone, is also possible to two or more units and is integrated in one unit.It is above-mentioned integrated Unit both can take the form of hardware realization, can also realize in the form of software functional units.
If the integrated unit is realized in the form of SFU software functional unit and sells or use as independent product When, it can store in a computer readable storage medium.Based on this understanding, technical solution of the present invention is substantially The all or part of the part that contributes to existing technology or the technical solution can be in the form of software products in other words It embodies, which is stored in a storage medium, including some instructions are used so that a computer Equipment (can be personal computer, server or the network equipment etc.) executes the complete of each embodiment the method for the present invention Portion or part steps.And storage medium above-mentioned includes: USB flash disk, mobile hard disk, read-only memory (ROM, Read-Only Memory), random access memory (RAM, Random Access Memory), magnetic or disk etc. are various can store journey The medium of sequence code.
Specific embodiment is applied in the present invention, and principle and implementation of the present invention are described, above embodiments Explanation be merely used to help understand method and its core concept of the invention;At the same time, for those skilled in the art, According to the thought of the present invention, there will be changes in the specific implementation manner and application range, in conclusion in this specification Appearance should not be construed as limiting the invention.

Claims (10)

1. a kind of method of commerce based on block chain, characterized by comprising:
The cold wallet cryptographic key factor of operator is generated, wherein the cold wallet cryptographic key factor of the operator is for generating the cold wallet of operator Public and private key pair;
Operator's hot money packet cryptographic key factor is generated according to the cold wallet cryptographic key factor of the operator and operator's informaiton, wherein institute Operator's hot money packet cryptographic key factor is stated for generating operator's hot money Bao Zheng's private key pair;
User's wallet cryptographic key factor is generated according to operator's hot money packet cryptographic key factor and user information, utilizes the user Wallet cryptographic key factor generates user's wallet public and private key pair.
2. the method according to claim 1, wherein further including passing through operator's hot money packet and multiple user's money Packet carries out digital funds transaction, when the digital fund in operator's hot money packet is more than the first threshold value, utilizes the fortune Battalion's quotient's hot money packet private key collects the digital fund in operator's hot money packet in the cold wallet of operator.
3. according to the method described in claim 2, it is characterized in that, further including, when the number money in operator's hot money packet When gold is lower than the second threshold value, the digital fund in the cold wallet of the operator is transferred accounts using the operator cold wallet private key Into operator's hot money packet.
4. the method according to claim 1, wherein further being wrapped in generating the cold wallet cryptographic key factor of operator It includes, the cold wallet cryptographic key factor of the operator is stored in the first storage medium.
5. according to the method described in claim 4, it is characterized in that, the cold wallet cryptographic key factor of the operator is stored in first Storage medium further comprises the cold wallet cryptographic key factor of the operator being split as multiple portions, distributed and saved is in multiple In first storage medium, when needing to restore the cold wallet cryptographic key factor of the operator, it is greater than first key using quantity The cold wallet cryptographic key factor of part operator stored in first storage medium of threshold value, restores the cold wallet of the operator Cryptographic key factor.
6. method according to claim 1 or 4, which is characterized in that according to the cold wallet cryptographic key factor of the operator with And it further comprises depositing operator's hot money packet cryptographic key factor that operator's informaiton, which generates operator's hot money packet cryptographic key factor, It is stored in the second storage medium.
7. the method according to claim 1, wherein according to the cold wallet cryptographic key factor of the operator and operation Quotient's information generates operator's hot money packet cryptographic key factor, by the cold wallet cryptographic key factor of the operator and the fortune After seeking the progress HKDF_SHA256 operation of quotient's information, derivation obtains operator's hot money packet cryptographic key factor.
8. the method according to claim 1, wherein according to operator's hot money packet cryptographic key factor and user Information generates user's wallet cryptographic key factor, by operator's hot money packet cryptographic key factor and the user information into After row HKDF_SHA256 operation, derivation obtains user's wallet cryptographic key factor.
9. the method according to claim 1, wherein user's wallet cryptographic key factor, user's wallet private key are protected It is stored in the computer of operator's hot money packet encryption equipment.
10. a kind of transaction system based on block chain, characterized by comprising:
The cold wallet encryption equipment of operator, for generating the cold wallet cryptographic key factor of operator, wherein the cold wallet key of the operator The factor is for generating the cold wallet public and private key pair of operator;
Operator's hot money packet encryption equipment, for generating operation according to the cold wallet cryptographic key factor of the operator and operator's informaiton Quotient's hot money packet cryptographic key factor, wherein operator's hot money packet cryptographic key factor is for generating operator's hot money Bao Zheng's private key pair;
Operator's hot money packet encryption equipment is also used to be generated according to operator's hot money packet cryptographic key factor and user information User's wallet cryptographic key factor generates user's wallet public and private key pair using user's wallet cryptographic key factor.
CN201810767476.6A 2018-07-13 2018-07-13 Transaction method, system and storage medium based on block chain Active CN109003081B (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201810767476.6A CN109003081B (en) 2018-07-13 2018-07-13 Transaction method, system and storage medium based on block chain

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201810767476.6A CN109003081B (en) 2018-07-13 2018-07-13 Transaction method, system and storage medium based on block chain

Publications (2)

Publication Number Publication Date
CN109003081A true CN109003081A (en) 2018-12-14
CN109003081B CN109003081B (en) 2021-11-02

Family

ID=64599580

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201810767476.6A Active CN109003081B (en) 2018-07-13 2018-07-13 Transaction method, system and storage medium based on block chain

Country Status (1)

Country Link
CN (1) CN109003081B (en)

Cited By (14)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN109685659A (en) * 2018-12-27 2019-04-26 江苏恒宝智能系统技术有限公司 A kind of block chain hard money packet supports the method traded under chain and hard money packet
CN109727008A (en) * 2018-12-25 2019-05-07 深圳市元征科技股份有限公司 A kind of data processing method and relevant device based on block chain
CN109801048A (en) * 2018-12-21 2019-05-24 中云信安(深圳)科技有限公司 A kind of digital asset processing unit, system and application method
CN109978519A (en) * 2019-04-03 2019-07-05 陕西医链区块链集团有限公司 Method for realizing block chain enterprise-level wallet mechanism
CN110163604A (en) * 2019-04-29 2019-08-23 华中科技大学 A kind of block chain assets transfer method based on multi-party verification
CN111159774A (en) * 2019-12-11 2020-05-15 马上游科技股份有限公司 Decentralized intelligent contract escrow wallet method and system
CN111444092A (en) * 2020-03-24 2020-07-24 腾讯科技(深圳)有限公司 Intelligent contract testing method and device, electronic equipment and storage medium
CN112232815A (en) * 2020-10-14 2021-01-15 深圳三角形科技有限公司 Block chain-based digital currency transaction management method, device, equipment and medium
CN112381540A (en) * 2020-11-13 2021-02-19 从法信息科技有限公司 Method and device for verifying signed document based on zero-knowledge proof and electronic equipment
CN112598523A (en) * 2020-12-30 2021-04-02 广东微聚科技有限公司 Aggregation block chain system
CN113132088A (en) * 2019-12-30 2021-07-16 中移(上海)信息通信科技有限公司 Digital currency management system
CN113763158A (en) * 2020-06-04 2021-12-07 上海融宽网络科技有限公司 Virtual asset hosting and payment system and method based on block chain bottom layer
CN116757849A (en) * 2023-08-14 2023-09-15 中资科技(江苏)有限公司 Asset management system and method based on block chain
CN112232815B (en) * 2020-10-14 2023-12-01 深圳三角形科技有限公司 Block chain-based digital currency transaction management method, device, equipment and medium

Citations (10)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
WO2015142765A1 (en) * 2014-03-17 2015-09-24 Coinbase, Inc Bitcoin host computer system
CN106533661A (en) * 2016-10-25 2017-03-22 北京大学 Online generation method for cryptographic currency address based on combined public key
CN106850654A (en) * 2017-02-23 2017-06-13 布比(北京)网络技术有限公司 The mandate access method and system of a kind of distributed information
CN106920080A (en) * 2017-02-15 2017-07-04 捷德(中国)信息科技有限公司 The account management method and system of digital cash
CN107040383A (en) * 2017-04-24 2017-08-11 中山大学 A kind of blind Verifiable Encryptosystem endorsement method based on block chain
CN107301544A (en) * 2017-06-26 2017-10-27 北京泛融科技有限公司 A kind of safe Wallet System of block chain
CN107819571A (en) * 2017-09-29 2018-03-20 广东中科南海岸车联网技术有限公司 The generation method and device of private key
CN107888382A (en) * 2017-11-24 2018-04-06 中钞信用卡产业发展有限公司杭州区块链技术研究院 A kind of methods, devices and systems of the digital identity checking based on block chain
CN108027867A (en) * 2015-07-14 2018-05-11 Fmr有限责任公司 Calculate efficient transfer accounts processing, audit and searcher, method and system
CN108241979A (en) * 2017-12-20 2018-07-03 深圳壹账通智能科技有限公司 More account book transfer account methods, electronic device and readable storage medium storing program for executing based on block chain

Patent Citations (10)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
WO2015142765A1 (en) * 2014-03-17 2015-09-24 Coinbase, Inc Bitcoin host computer system
CN108027867A (en) * 2015-07-14 2018-05-11 Fmr有限责任公司 Calculate efficient transfer accounts processing, audit and searcher, method and system
CN106533661A (en) * 2016-10-25 2017-03-22 北京大学 Online generation method for cryptographic currency address based on combined public key
CN106920080A (en) * 2017-02-15 2017-07-04 捷德(中国)信息科技有限公司 The account management method and system of digital cash
CN106850654A (en) * 2017-02-23 2017-06-13 布比(北京)网络技术有限公司 The mandate access method and system of a kind of distributed information
CN107040383A (en) * 2017-04-24 2017-08-11 中山大学 A kind of blind Verifiable Encryptosystem endorsement method based on block chain
CN107301544A (en) * 2017-06-26 2017-10-27 北京泛融科技有限公司 A kind of safe Wallet System of block chain
CN107819571A (en) * 2017-09-29 2018-03-20 广东中科南海岸车联网技术有限公司 The generation method and device of private key
CN107888382A (en) * 2017-11-24 2018-04-06 中钞信用卡产业发展有限公司杭州区块链技术研究院 A kind of methods, devices and systems of the digital identity checking based on block chain
CN108241979A (en) * 2017-12-20 2018-07-03 深圳壹账通智能科技有限公司 More account book transfer account methods, electronic device and readable storage medium storing program for executing based on block chain

Cited By (19)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN109801048A (en) * 2018-12-21 2019-05-24 中云信安(深圳)科技有限公司 A kind of digital asset processing unit, system and application method
CN109727008A (en) * 2018-12-25 2019-05-07 深圳市元征科技股份有限公司 A kind of data processing method and relevant device based on block chain
CN109685659A (en) * 2018-12-27 2019-04-26 江苏恒宝智能系统技术有限公司 A kind of block chain hard money packet supports the method traded under chain and hard money packet
CN109978519A (en) * 2019-04-03 2019-07-05 陕西医链区块链集团有限公司 Method for realizing block chain enterprise-level wallet mechanism
CN110163604B (en) * 2019-04-29 2021-02-09 华中科技大学 Block chain asset transfer method based on multi-party verification
CN110163604A (en) * 2019-04-29 2019-08-23 华中科技大学 A kind of block chain assets transfer method based on multi-party verification
CN111159774B (en) * 2019-12-11 2022-07-15 马上游科技股份有限公司 Decentralized intelligent contract escrow wallet method and system
CN111159774A (en) * 2019-12-11 2020-05-15 马上游科技股份有限公司 Decentralized intelligent contract escrow wallet method and system
CN113132088A (en) * 2019-12-30 2021-07-16 中移(上海)信息通信科技有限公司 Digital currency management system
CN111444092A (en) * 2020-03-24 2020-07-24 腾讯科技(深圳)有限公司 Intelligent contract testing method and device, electronic equipment and storage medium
CN111444092B (en) * 2020-03-24 2022-06-10 腾讯科技(深圳)有限公司 Intelligent contract testing method and device, electronic equipment and storage medium
CN113763158A (en) * 2020-06-04 2021-12-07 上海融宽网络科技有限公司 Virtual asset hosting and payment system and method based on block chain bottom layer
CN113763158B (en) * 2020-06-04 2024-10-22 上海融宽网络科技有限公司 Virtual asset hosting and paying system and method based on blockchain bottom layer
CN112232815A (en) * 2020-10-14 2021-01-15 深圳三角形科技有限公司 Block chain-based digital currency transaction management method, device, equipment and medium
CN112232815B (en) * 2020-10-14 2023-12-01 深圳三角形科技有限公司 Block chain-based digital currency transaction management method, device, equipment and medium
CN112381540A (en) * 2020-11-13 2021-02-19 从法信息科技有限公司 Method and device for verifying signed document based on zero-knowledge proof and electronic equipment
CN112598523A (en) * 2020-12-30 2021-04-02 广东微聚科技有限公司 Aggregation block chain system
CN116757849A (en) * 2023-08-14 2023-09-15 中资科技(江苏)有限公司 Asset management system and method based on block chain
CN116757849B (en) * 2023-08-14 2023-10-20 中资科技(江苏)有限公司 Asset management system and method based on block chain

Also Published As

Publication number Publication date
CN109003081B (en) 2021-11-02

Similar Documents

Publication Publication Date Title
CN109003081A (en) A kind of method of commerce and system based on block chain
US20240296429A1 (en) Information transaction infrastructure
CN108701305A (en) Digital asset is converted
US8898089B2 (en) Dynamic verification value system and method
CN109863519A (en) Specific to the digital wallet virtual payment account of businessman
CN103810597B (en) mobile device, payment transaction system and payment transaction method
CN107230068B (en) Method and system for paying digital currency using a visual digital currency chip card
CN108768666A (en) A kind of digital cash wallet management method based on SM2 threshold cryptography algorithms
CN108256841A (en) Actively turn the method, apparatus and system of coin
CN107784580A (en) A kind of non-stop layer digital cash method of commerce derived from based on public private key pair
CN107230077B (en) Method for exchanging and paying digital currency and digital currency system
CN104794613A (en) Mobile equipment authentication method based on point-of-sale terminal
CN109003186A (en) A kind of method of commerce for preventing from denying, apparatus and system based on block chain
CN107230052B (en) Method and system for paying digital currency using digital currency chip card
US20100179909A1 (en) User defined udk
CN107230074B (en) Method and system for depositing digital currency into digital currency chip card
CN102118394A (en) Safety authentication method for remote payment through internet banking based on dual-interface safety intelligent card
CN201946038U (en) Security certificate device of internet-banking remote payment based on dual-interface safety smart card
Pourali The presentation of an ideal safe SMS based model in mobile electronic commerce using encryption hybrid algorithms AES and ECC
CN113450093B (en) Real-time consensus authentication method and system for digital change wallet based on cone block chain
KR101170055B1 (en) Method and system for electronic banking using token
CN104463645B (en) A kind of system and method for issuing electronic invoice based on SIM card
CN114169886A (en) Transaction method and transaction system based on authorization equipment
Pourali et al. A secure SMS model in e-commerce payment using combined AES and ECC encryption algorithms
US20130282552A1 (en) Automated forex function in an asset storage and transfer system

Legal Events

Date Code Title Description
PB01 Publication
PB01 Publication
SE01 Entry into force of request for substantive examination
SE01 Entry into force of request for substantive examination
GR01 Patent grant
GR01 Patent grant