CN1858795A - Identifying system and method for electronic bill credit based on CPK - Google Patents

Identifying system and method for electronic bill credit based on CPK Download PDF

Info

Publication number
CN1858795A
CN1858795A CNA2006100811346A CN200610081134A CN1858795A CN 1858795 A CN1858795 A CN 1858795A CN A2006100811346 A CNA2006100811346 A CN A2006100811346A CN 200610081134 A CN200610081134 A CN 200610081134A CN 1858795 A CN1858795 A CN 1858795A
Authority
CN
China
Prior art keywords
cpk
electronic bill
account
certificate
bill
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Pending
Application number
CNA2006100811346A
Other languages
Chinese (zh)
Inventor
南相浩
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
YIHENGXIN VERIFICATION SCIENCE AND TECHNOLOGY Co Ltd BEIJING
Original Assignee
YIHENGXIN VERIFICATION SCIENCE AND TECHNOLOGY Co Ltd BEIJING
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by YIHENGXIN VERIFICATION SCIENCE AND TECHNOLOGY Co Ltd BEIJING filed Critical YIHENGXIN VERIFICATION SCIENCE AND TECHNOLOGY Co Ltd BEIJING
Priority to CNA2006100811346A priority Critical patent/CN1858795A/en
Publication of CN1858795A publication Critical patent/CN1858795A/en
Pending legal-status Critical Current

Links

Images

Landscapes

  • Financial Or Insurance-Related Operations Such As Payment And Settlement (AREA)

Abstract

This invention discloses a trustable certification system and a method based on CPK electronic bills, in which, said system includes a CPK certificates center used in checking identity of the use, granting identification and corresponding electronic print to the user when applying for the CPK certificates, the role corresponding to the electronic print and its limitation, the private key corresponding to them is written in the certificate then its data, the CPK certificate is used in signing the main part, the content and its behavior in the electronic bill by their corresponding private keys with the CPK algorithm to guarantee the trust of the bill during the process of application, making out the bill and circulation to greatly increase the operation efficiency.

Description

A kind of electronic bill authentic authentication system and method based on CPK
Technical field
The present invention relates to digital communication authentic authentication field, particularly relate to a kind of electronic bill authentic authentication system and method based on Conbined public or double key algorithm (CPK).
Background technology
Along with The development in society and economy, the fund of every day millions of hundred million circulates between each bank, enterprises and individuals.And under traditional mode, be by a large amount of physics document made of paper or voucher to the processing of fund, computer finishes by being input to behind the manual mode instrument of torture document again.This working method needs lot of manpower and material resources, be easy to produce a large amount of mistakes, and the made of paper of physics is easy to damage according to list, causes damage easily.
Along with development of computer network, people wish to realize by with no paper electronics mode the circulation of bill.
Chinese patent application CN200410062689.7 discloses a kind of financial electronic billnig method and system, it comprises the electronic bill calling mechanism, be used to obtain the element information that comprises accepter, entitlement of described electronic bill, and described element information is stored; Electronic bill application device is used to provide the multiple set of electronic ticket transactions that comprises ownership transfer, discount, interbank discount, ticket fee clearance to select, and according to described element information and user profile the electronic bill after selecting is carried out the inspection of the accrediting amount; Electronic bill is confirmed to be used for device initiating selecteed set of electronic ticket transactions to the described Internet bank, and handles according to guaranty money's number of the account of this electronic bill correspondence guaranty money to the user, generates the electronic bill of confirming, realizes described transaction.It simplifies artificial work greatly, avoids the generation of a large amount of bad credits, and the ageing and practicality of financial information will improve greatly.
But,, make the application of electronic bill not obtain well popularizing because security generally is under suspicion in the active computer network.
The method of existing a kind of electronic bill authentic authentication is to adopt the PKI algorithm that electronic bill is authenticated.This is a kind of passive authentic authentication means of defence.
(Pubic Key Infrastructure is present most widely used a kind of cryptographic algorithm PKI) to the Public Key Infrastructure algorithm, is an important component part of information security infrastructure, is a kind of blanket network security infrastructure.The PKI notion that to be the eighties in 20th century put forward by American scholar, in fact, empowerment management infrastructure, trusted timestamp service system, safe and secret management system, unified safe electronic government affair platform etc. construct the support that all be unable to do without it.In this algorithm, encryption key and decruption key have nothing in common with each other, and the people who sends information utilizes recipient's PKI to send enciphered message, and the recipient utilizes own proprietary private key to be decrypted again.This mode had both guaranteed the confidentiality of information, can guarantee information have non repudiation again.At present, public key system is widely used for fields such as ca authentication, digital signature and key change.Digital certificate authentication center CA, the audit RA of registration center (RegistrationAuthority), the KM of KMC (Key Manager) are the key components of forming PKI.
But; the method of the authentic authentication of this electronic bill does not have the scale processing power, does not have the technology of ID authentication yet; so mechanism that needs the third party to prove; the support of the certificate repository of on-line operation must be arranged, and its maintenance has the database of mass data, takies a large amount of storage spaces; efficient during operation is not high yet; processing speed is very slow, can not adapt to electronic bill and enter the active requirement of shelter of credible requirement by passive protection, can't set up trusted system in the electronic bill network.And it can not support the all-purpose card bill seal system of many tag systems.
Summary of the invention
A kind of electronic billing system and the method that the objective of the invention is to overcome above-mentioned defective and provide based on CPK.Its operational efficiency is greatly enhanced, and realizes many identifier mechanisms.
A kind of electronic bill authentic authentication system based on CPK for realizing that the object of the invention provides comprises the CPK certificate center, the CPK certificate;
The CPK certificate center, when being used to apply for the CPK certificate, checking user's identity, and the data of filling in according to the user, authorize user's sign and a plurality of E-seals corresponding with sign, a plurality of roles of a plurality of E-seal correspondences and each role's authority, the private key of each E-seal, role and authority correspondence is written in the certificate; Then the CPK certificate data is write the CPK certificate;
The CPK certificate, be used in the electronic bill application, open with the process of circulation in, to the main body in the electronic bill, content and behavior utilize the pairing private key of described main body, content and behavior, by the CPK algorithm, main body, content and behavior to electronic bill are signed, and guarantee the credibility of electronic bill.
Described CPK certificate center comprises registration center and issue center.
Described CPK certificate comprises sign, role and authority, and private key, also comprises algorithm function module and protocol module, and the PKI matrix module.
Described E-seal is account number E-seal, individual subscriber E-seal or legal person's E-seal, financial special electronic seal; The role of E-seal correspondence is method human agent, individual subject, financial main body; Role's authority can be penny ante, the transaction of middle volume, block trade.
The physical aspect of described CPK certificate is the U rod.
For realizing that the object of the invention provides a kind of electronic bill authentic authentication method based on CPK again, comprise the following steps:
Steps A: when (enterprise) held in application to bank of issue's applying for electronic bill, in application form, write the number of the account of oneself exactly, and sign by the CPK algorithm, application form is submitted to the bank of issue with the private key of this number of the account; Ticket issuing bank checks the number of the account in enterprise's application form, promptly passes through its digital signature of CPK algorithm with the PKI inspection of account;
Step B: behind the checking end bank of issue checking number of the account signature, confirm the legitimacy of its number of the account, in this row electronic bill, write the number of the account on the application form, make blank bill, the digital signature that critical data utilizations such as ticket issuing row (as: Minsheng bank) sign distribution row private key is issued line identifier by the CPK algorithm is made effective distribution line space white paper according to sending to application end (enterprise) then.
Electronic bill authentic authentication method based on CPK of the present invention can also comprise the following steps:
Step C: application end (enterprise) fills in the blanks data such as the amount of money, date in the bill, and utilizes application end private key to pass through CPK algorithm digital signature with the private key of this number of the account to bill data, makes the complete electronic bill field that circulates.
Step D: in the process of circulation of electronic bill, circulation end (its row) can utilize the sign signature of distribution row PKI by CPK algorithm inspection distribution row, with the true and false of decides bill, if correct, then accepts, and incorrectly then returns.
Step e: bill is got back to the distribution row at last after circulation.Distribution is gone and is utilized distribution row PKI at first to check the distribution line identifier by the CPK algorithm, promptly issues the signature of line identifier with the PKI inspection of oneself, judges the true and false of bill; Reexamine the number of the account signature, judge the true and false of number of the account.If all correct, just can enter accounting event and handle.
Described steps A can comprise the following steps:
Steps A 1: when application holds (enterprise) when bank submits the electronic bill application form of a number of the account to, application holds the account number of the electronic bill that will be applied for as sign, private key with account carries out digital signature, signature is to realize by the CPK algorithm in the certificate and signature agreement, and the main contents of application form are number of the account and to the signature of this number of the account sign;
Steps A 2: after the bill application form that comprises account number and signature is received by the bank of issue, check the legitimacy of number of the account with the PKI of this number of the account sign, the PKI of number of the account sign is provided by the CPK certificate.
The electronic bill critical data comprises distribution row title, serial number etc. among the described step B.
It is the amount of money that described application enterprise circulation end writes data, makes out an invoice the date etc.
The invention has the beneficial effects as follows: electronic bill of the present invention adopts scale ID authentication technology; do not need the third party to prove; need not safeguard the database of mass data; do not need to take a large amount of storage spaces; efficient during operation is very high; processing speed is very fast, can adapt to the requirement that electronic bill initiatively protects, and can set up trusted system in the electronic bill network.It realizes many identifier mechanisms and multiaction area mechanism, as: official stamp, account number seal, corporate seal, client's seal etc., it constitutes the multiaction domain system between different bank, realize all-purpose card at many identification field, multiaction between the territory.
Description of drawings
Fig. 1 is the certification system synoptic diagram that the present invention is based in the electronic bill authentic authentication system of CPK;
Fig. 2 is the electronic bill process of circulation synoptic diagram of the embodiment of the invention based on CPK;
Fig. 3 is the blank electronic bill synoptic diagram of the present invention;
Fig. 4 is a small amount electronic bill synoptic diagram of the present invention;
Fig. 5 is a volume electronic bill synoptic diagram among the present invention;
Fig. 6 is a wholesale electronic bill synoptic diagram of the present invention.
Embodiment
Be described in detail below in conjunction with 1~6 pair of a kind of electronic bill authentic authentication system and method for the present invention of accompanying drawing based on CPK.
(Combined Pubic Key CPK) is based on the public key algorithm of sign to the Conbined public or double key algorithm, and its KMC generates private key calculating parameter (private key calculates base) and the PKI calculating parameter (PKI calculates basic) that corresponds to each other; According to the sign that first user provides, utilize described private key calculating parameter to calculate first user's private key, and the private key that is produced is offered first user; And announce described PKI calculating parameter, so that second user can utilize described PKI calculating parameter according to first user's sign after the sign that obtains first user, calculate first user's PKI.
Electronic bill authentic authentication system based on CPK of the present invention utilizes the CPK chip to realize, comprises sign, role and authority in the CPK chip, and private key, also comprise the CPK algorithm algorithm function module in the CPK algorithm, indentification protocol module, and PKI (times point) matrix module.
The indentification protocol module that the present invention is based in the electronic bill authentic authentication system of CPK comprises indentification protocol.Digital signature protocol adopts international 509 standards to carry out, and does not prove but do not need to call the third party, does not need to call the other side's certificate, because the CPK algorithm is the algorithm of indicating self proof, therefore calls the other side's certificate, and it is unnecessary that the process of authentication certificate becomes.
Have CPK algorithm function module, an indentification protocol module among the present invention, applicant's Chinese invention patent application 2005100021564 based on the key generation apparatus of sign and method in embodiment described, quote in full in the present invention.The algorithm function module of CPK and indentification protocol module provide required all parameters of authentication and agreement, utilize the PKI matrix then just can calculate the PKI of any entity.
Electronic bill authentic authentication system based on CPK of the present invention is the system that the authenticity proof is provided for the E-seal in the electronic bill.Wherein, E-seal can comprise multiple E-seal, promptly comprises account number E-seal, individual subscriber E-seal or legal person's E-seal, financial special electronic seal etc.In electronic bill, to being engaged in the bank electronic bill operation, in electronic bill, be engaged in the different subjects of different business, can be divided into different roles according to different identity, as: bank clerk's main body, the leader of bank main body, method human agent, individual subject etc., different roles can authorize different authorities; In electronic bill business transaction content, can as amount of money size, comprise penny ante, middle volume transaction, block trade, especially big transaction etc. according to different transaction contents, carry out the authentic authentication of different brackets.It has guaranteed the safety of electronic bill in transaction, owing to do not need the third party to prove, need not safeguard the database of mass data simultaneously, do not need to take a large amount of storage spaces, efficient during operation is very high, and processing speed is very fast, adapts to the safe, efficient requirement of electronic bill.
In the transaction of electronic bill, transaction is different, and also different to demand of proof, for example, can set penny ante only needs account number E-seal authenticity to prove; Middle volume transaction also needs legal person's E-seal authenticity to prove except that the account number E-seal; Block trade also needs financial special electronic seal authenticity to prove except that account number E-seal, legal person's E-seal; Especially big transaction also needs special identification electronic seal (as the long E-seal of row) authenticity to prove except that account number E-seal, legal person's E-seal, financial special electronic seal, or the like.Therefore, in the electronic bill authentic authentication system based on CPK of the present invention, need multiple E-seal, multiple role, the division of multiple authority, comprise multiple authentic authentications such as account number E-seal, legal person's E-seal, financial special electronic seal, the long E-seal of row, make it that multiple E-seal can be provided, can play the part of multiple role, can authorize multiple authority, solve the problem of all-purpose card in set of electronic ticket transactions.
As shown in Figure 1, the electronic bill authentic authentication system based on CPK of the present invention comprises the CPK certificate center, and the CPK certificate constitutes.
The CPK certificate center comprises registration center and issue center.When the user applies for the CPK certificate to registration center, checking user's identity.It can be by general program, the user opens an account, fill in the data of opening an account really, and after corresponding guaranty money points out in bank of deposit, the user is when the certificate center certificate of registry of electronic bill, the data that registration center fills in according to the user, transferring the data of opening an account from bank of deposit's database verifies, and according to user's credit rating, data such as guaranty money's amount of money are authorized user's sign and a plurality of E-seals corresponding with sign, a plurality of roles of a plurality of E-seal correspondences and each role's authority, each E-seal, the private key of role and authority correspondence is written in the CPK certificate.E-seal can comprise account number E-seal, individual subscriber E-seal or legal person's E-seal, financial special electronic seal; The role of E-seal correspondence can the method human agent, individual subject, financial main body etc.; Role's authority can be penny ante, the transaction of middle volume, block trade etc.
The center of issuing licence also can be according to different personnel's identity responsibility, verify different identity responsibilities, authorize different role different authorities, as bank clerk's main body, the leader of bank main body, authorize the authentic authentication authority of its block trade, especially big transaction, and provide corresponding private key of identity responsibility etc.
Registration center becomes the CPK certificate data with user applies, and data is issued the issue center by after authenticating.The issue center writes certificate data in the CPK chip, makes the CPK certificate and issues user's use.
The CPK certificate, be used in the electronic bill application, open with the process of circulation in, to the main body in the electronic bill, content and behavior utilize the pairing private key of described main body, content and behavior, by the CPK algorithm, main body, content and behavior to electronic bill are signed, and guarantee the credibility of electronic bill.
Remove in the CPK certificate and comprise sign, role and authority, and outside the private key, also comprise algorithm function module and protocol module, and PKI (times point) matrix module.Authentic authentication desired parameters, agreement all are included in the CPK certificate, the authentic authentication signature function in all set of electronic ticket transactions and account number signature verification function all carried out in the CPK certificate.The main contents private key of certificate comprises the private key of all signs of being applied for.If be used for billing system, then related private key such as number of the account private key, legal person's private key works.Private key is used for signature, and the PKI matrix is used for the checking to being born the signature.
As required, comprise needed sign in the CPK certificate,, then make a check mark with number of the account if the individual uses; If be used for financial special electronic chapter, then make a check mark with the unit name; If be used for legal person or post, then make a check mark with post first name and last name name.
CPK certificate physical aspect can be the U rod, in the U rod, authenticates desired parameters, agreement and all is included in the U rod, therefore, and can plug and play, computing machine only provides man-machine interface, and all signature functions and authentication function all carry out in the U rod.
Can realize that the checking of certificate then realizes with the PKI matrix by the ID certificate in the CPK certificate.The ID certificate can be divided into different role, the bank clerk, with using per family, can realize bank of issue's E-seal, account number E-seal, legal person's E-seal, financial special electronic seal, the long post E-seal of row etc. easily, the ID certificate can be divided into many identification field and multiaction territory, and the proof system of all-purpose card is provided for the multiple seal of electronic bill.
Realize that with the CPK certificate electronic bill authentic authentication system does not need to safeguard that it can realize ultra-large authentication seal easily.
Below in conjunction with e-banking system the electronic bill authentic authentication method based on CPK is described in detail.
The authentic authentication system of e-bank's valuable bills is based on the important applied field of the electronic bill authentic authentication system of CPK, and it mainly comprises bill application, bill granting, negotiation, note validating process.Electronic bill can combine with graphics system, and providing to the final user can visual electronic bill.
Electronic bill authentic authentication system based on CPK is many tag systems, therefore can realize " all-purpose card ", and promptly a certificate is realized electronic bill, E-seal etc. simultaneously, also can constitute independently system separately.
Electronic bill is mainly used in the electronization of bill and handles, but once printing, equally has legal effectiveness with physical ticket.Therefore it is significant designing visual bill, can satisfy the needs of vision.But visual seal is symbolistic, does not have substantive meaning, and has only digital signature that legal sense is just arranged.
If (technology of electronic bill can be transplanted on the physical ticket for Radio Frequency Identification, radio frequency storage card RFID) to accompany REID in the physical ticket.Signature and checking need special instrument and the validator of writing.
Bill business can be represented with A (X) → B.A gives B X, and A and B are main bodys, at first verifies the identity of A or B when inserting CPK certificate (U rod), if legal, then can open CPK certificate (U rod), allows to enter in the CPK diploma system.X is data, is electronic bill content itself, and the electronic bill content X among the present invention is not a general data, but is stamped a lot of E-seals, and role, permissions data.If comprise corporate seal's signature in the data, and A, B are not under legal person's the situation, A, B do not have authority to provide legal person's E-seal is verified, can't be responsible for the security credibility of electronic bill.Electronic bill authentic authentication system among the present invention requires E-seal self proof credible.The trading activity of ' → ' expression A and B.
The proof and the checking of the set of electronic ticket transactions in the bill business process are described as shown in Figure 2, below step by step.
Steps A: when enterprise's application end applying for electronic bill, to bank of issue's submit applications book, application form comprises used number of the account of bill and the signature that number of the account is identified.With the check is example, and the application end A of enterprise is to the end B of bank of issue applying for electronic check, and application form determines that with industry standard content comprises the used number of the account of bill, to the sign signature of this number of the account.The required number of the account private key of signing is provided by the CPK certificate.Enterprise's private key is signed to whole application form.As:
SIG The number of the account private key(number of the account); And insert in the application form;
SIG The A private key(application form);
Application form is sent to the bank of issue.
Step B: after distribution B receives the application of the A of enterprise, check and verify signature SIG with the PKI of the A of enterprise The A private key(application form);
That is:
SIG -1 The A PKI(application form);
If correct, then the proof application is that the A of enterprise sends out.
Distribution reexamines SIG with the number of the account PKI The number of the account private key(number of the account);
SIG -1 The number of the account private key(number of the account); If correct, prove that then this number of the account is the number of the account of the A of enterprise.
More than inspection is errorless, and the end B of the bank of issue just gives and beams back blank check then for the A of enterprise.Visual bill shape such as Fig. 3, distribution row only to the critical data (basic data) of check as: distribution row title, serial number carry out the digital signature (i.e. the unit's of lid chapter) of bank of issue's sign, blank check also comprises number of the account and the number of the account signature in the application form, issue the application end A of client enterprise, the foundation of differentiating the check true and false is provided.According to the function of CPK Verification System, the true and false of this check, distribution, its row, other any enterprise can both verify.The content of blank check comprises:
The title of distribution row B, and distribution row signature:
SIG Distribution row B private key(distribution row B title, serial number);
The SIG number of the account;
If step C: the application end A of enterprise authenticates blank check, with the signature verification of bank of issue's PKI to the B of bank, judges whether correct, just can write data into the check of the end B of the bank of issue, circulates.Data comprise the amount of money, make out an invoice the date etc., calculate the integrity code of bill data, and to data integrity code number of the account private key signature.
When bill circulates, on the basis of blank check, insert the amount of money earlier, make out an invoice the date, and data are made the number of the account signature:
(1.data=number of the account // amount of money // date);
2.mac=HASH (data); (data integrity sign indicating number)
3. when if the amount of money is small amount, the signature of only doing number of the account is just passable, visual bill shape such as Fig. 4.
Sign1=SIG The number of the account private key(mac); (signature 1 is for using the signature of number of the account private key to number of the account)
4. when if the amount of money is middle volume, number of the account, twice signature of legal person, visual bill shape such as accompanying drawing 5.
Sign1=SIG The number of the account private key(mac);
Sign2=SIG The name private key(mac); (signature 2 is for using the signature of legal person's name private key to legal person's name)
5. when if the amount of money is wholesale, number of the account, legal person, unit need signature three times together:
Sign1=SIG The number of the account private key(mac);
Sign2=SIG The name private key(mac);
Sign3=SIG The unit private key(mac); (signature 3 is for using the signature of unit private key to unit)
Ticket document and signature section are made a file, visual bill shape such as accompanying drawing 6.
After the bank of issue terminated to the electronic bill of its row end, the CPK certificate utilized corresponding PKI, authenticates one by one.All checkings were divided equally for two steps and are carried out:
The first step is at first utilized CPK algorithm inspection distribution row signature, differentiates the true and false of check;
Second step utilized the CPK algorithm to check the number of the account signature one by one, differentiated the true and false of number of the account; Check legal person's signature, differentiate legal person's the true and false; The inspection unit chapter, the true and false of differentiation unit.
Be the example of a check more than, for convenience of description, be divided into small amount, middle volume, wholesale differentiated treatment,, have different division methods in actual central concrete application.In fact, vital document or document need the leader of unit signature sometimes, as post chapters such as governor, row length.
Electronic bill is together with digital signature, and form that can electronic document is stored in the database, or prints and become the bill that paper is situated between, and all has the effectiveness identical with real bill.Under prior art, electronic bill can be transplanted in the physical ticket, improves the verification efficiency of physical ticket.Then, the true and false of physical seal is mainly differentiated in the checking of physical ticket in the mode of scanning, and its False Rate is very high, and speed is also very slow, if with the electronic logic chapter as a supplement, also can reduce False Rate, improves identification efficiency simultaneously greatly.
Electronic bill authentic authentication system based on CPK of the present invention is the important applied field of whole e-banking system.The core component of realizing Verification System is the CPK certificate.Include the CPK chip in the certificate, comprise sign, role and authority in the CPK chip, and private key, be association attributes and corresponding private keys such as number of the account, post, also comprise algorithm function module and protocol module, and PKI (times point) matrix, all there is the CPK certificate to provide in executory all parameters of CPK algorithm.In electronic bill authentic authentication system and method based on CPK, the signature verification parameters needed is disclosed, and the resource that takies is very little, can have access on the spot.Therefore in the electronic bill process of circulation, anyone can verify its true and false.
Electronic bill authentic authentication method of the present invention, because solved the ID authentication technology of scale, authentication can be divided into for two steps and carry out the identification of sign truth identification and the data true and false.And the sign recognition technology is the core technology of Verification System, do not need the third party to prove, need not safeguard the database of mass data, do not need to take a large amount of storage spaces, efficient during operation is very high, processing speed is very fast, can adapt to the requirement that electronic bill initiatively protects, and can set up trusted system in the electronic bill network.It realizes many identifier mechanisms, as: official stamp, account number seal, corporate seal, client's seal etc., it constitutes the multiaction domain system between different bank, realize all-purpose card at many identification field, multiaction between the territory.
The present invention can be an autonomous system, and the special disposal bill also can be the subsystem of ecommerce, e-bank.
Present embodiment is in order to understand the detailed description that the present invention carries out better; it is not the qualification of scope that the present invention is protected; therefore, those of ordinary skills do not break away from purport of the present invention without creative work to this bright change of making in protection scope of the present invention.

Claims (11)

1. the electronic bill authentic authentication system based on CPK is characterized in that, comprises the CPK certificate center, the CPK certificate;
The CPK certificate center, when being used to apply for the CPK certificate, checking user's identity, and the data of filling in according to the user, authorize user's sign and a plurality of E-seals corresponding with sign, a plurality of roles of a plurality of E-seal correspondences and each role's authority, the private key of each E-seal, role and authority correspondence is written in the certificate; Then the CPK certificate data is write the CPK certificate;
The CPK certificate, be used in the electronic bill application, open with the process of circulation in, to the main body in the electronic bill, content and behavior utilize the pairing private key of described main body, content and behavior, by the CPK algorithm, main body, content and behavior to electronic bill are signed, and guarantee the credibility of electronic bill.
2. the electronic bill authentic authentication system based on CPK according to claim 1 is characterized in that described CPK certificate center comprises registration center and issue center.
3. the electronic bill authentic authentication system based on CPK according to claim 1 and 2 is characterized in that described CPK certificate comprises sign, role and authority, and private key, also comprises algorithm function module and protocol module, and the PKI matrix module.
4. the electronic bill authentic authentication system based on CPK according to claim 1 is characterized in that, described E-seal is account number E-seal, individual subscriber E-seal or legal person's E-seal, financial special electronic seal; The role of E-seal correspondence is method human agent, individual subject, financial main body; Role's authority can be penny ante, the transaction of middle volume, block trade.
5. the electronic bill authentic authentication system based on CPK according to claim 1 and 2 is characterized in that the physical aspect of described CPK certificate is the U rod.
6. the electronic bill authentic authentication method based on CPK is characterized in that, comprises the following steps:
Steps A: when application is held to bank of issue's applying for electronic bill, in application form, write the number of the account of oneself exactly, and sign by the CPK algorithm, application form is submitted to the bank of issue with the private key of this number of the account; Ticket issuing bank utilizes the account number PKI to carry out its digital signature by the CPK algorithm to the number of the account in enterprise's application form;
Step B: behind the checking end checking account number signature, confirm the application legitimacy of account number, confirm the legitimacy of its number of the account, in this row electronic bill, write the number of the account on the application form, make blank bill, the digital signature that ticket issuing row critical data utilization distribution row private key is issued line identifier by the CPK algorithm is made effective distribution line space white paper according to sending to the application end then.
7. the electronic bill authentic authentication method based on CPK according to claim 6 is characterized in that, also comprises the following steps:
In the process of circulation of electronic bill, the 3rd CPK certificate of the end that circulates obtains the system integrity sign indicating number according to the data that the circulation end writes, and to the private key that system integrity sign indicating number utilization circulation is held, signs by the CPK algorithm.
8. the electronic bill authentic authentication method based on CPK according to claim 7 is characterized in that, also comprises the following steps:
Step C: application end fills in the blanks data in the bill, and utilizes application end private key to pass through CPK algorithm digital signature with the private key of this number of the account to bill data, makes the complete electronic bill field that circulates;
Step D: in the process of circulation of electronic bill, circulation end utilizes the sign signature of distribution row PKI by CPK algorithm inspection distribution row, and if the true and false of decides bill correct, is is then accepted, and incorrectly then returns;
Step e: bill is got back to the distribution row at last after circulation, and the distribution row utilizes distribution row PKI at first to check the distribution line identifier by the CPK algorithm, judges the true and false of bill; Reexamine the number of the account signature, judge the true and false of number of the account; If all correct, just can enter accounting event and handle.
9. according to each described electronic bill authentic authentication method of claim 6 to 8, it is characterized in that described steps A comprises the following steps: based on CPK
Steps A 1: when application end when bank's end is submitted the applying for electronic bill application form of a number of the account to, the account number of the electronic bill that the application end will be applied for is as sign, carries out by CPK algorithm and signature agreement digital signature with the private key of account;
Steps A 2: after the bill application form that comprises account number and signature is received by the bank of issue, check the legitimacy of number of the account with the PKI of the CPK certificate of this number of the account sign.
10. according to each described electronic bill authentic authentication method of claim 6 to 8, it is characterized in that the electronic bill critical data comprises distribution row title, serial number, number of the account among the described step B based on CPK.
11. according to claim 7 or 8 described electronic bill authentic authentication methods based on CPK, it is characterized in that it is account number that described circulation end writes data, the amount of money is made out an invoice the date.
CNA2006100811346A 2006-05-22 2006-05-22 Identifying system and method for electronic bill credit based on CPK Pending CN1858795A (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CNA2006100811346A CN1858795A (en) 2006-05-22 2006-05-22 Identifying system and method for electronic bill credit based on CPK

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CNA2006100811346A CN1858795A (en) 2006-05-22 2006-05-22 Identifying system and method for electronic bill credit based on CPK

Publications (1)

Publication Number Publication Date
CN1858795A true CN1858795A (en) 2006-11-08

Family

ID=37297702

Family Applications (1)

Application Number Title Priority Date Filing Date
CNA2006100811346A Pending CN1858795A (en) 2006-05-22 2006-05-22 Identifying system and method for electronic bill credit based on CPK

Country Status (1)

Country Link
CN (1) CN1858795A (en)

Cited By (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
WO2018099336A1 (en) * 2016-11-29 2018-06-07 南相浩 Cpk-based digital bank, digital currency, and payment method
CN108288162A (en) * 2018-01-15 2018-07-17 安趣盈(上海)投资咨询有限公司 A kind of security authentication systems and method
CN109614803A (en) * 2018-11-13 2019-04-12 武汉天喻信息产业股份有限公司 A kind of bill anti-counterfeit method and system
CN110544167A (en) * 2019-07-25 2019-12-06 晋商博创(北京)科技有限公司 data processing method, server and storage medium of alliance chain
CN112182522A (en) * 2019-07-05 2021-01-05 北京地平线机器人技术研发有限公司 Access control method and device

Cited By (7)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
WO2018099336A1 (en) * 2016-11-29 2018-06-07 南相浩 Cpk-based digital bank, digital currency, and payment method
US11301842B2 (en) 2016-11-29 2022-04-12 Js Bochtec Co., Ltd. CPK-based digital bank, digital currency, and payment method
CN108288162A (en) * 2018-01-15 2018-07-17 安趣盈(上海)投资咨询有限公司 A kind of security authentication systems and method
CN109614803A (en) * 2018-11-13 2019-04-12 武汉天喻信息产业股份有限公司 A kind of bill anti-counterfeit method and system
CN112182522A (en) * 2019-07-05 2021-01-05 北京地平线机器人技术研发有限公司 Access control method and device
CN110544167A (en) * 2019-07-25 2019-12-06 晋商博创(北京)科技有限公司 data processing method, server and storage medium of alliance chain
CN110544167B (en) * 2019-07-25 2022-03-01 晋商博创(北京)科技有限公司 Data processing method, server and storage medium of alliance chain based on CPK

Similar Documents

Publication Publication Date Title
Ghazali et al. A graduation certificate verification model via utilization of the blockchain technology
CN1858793A (en) Electronic contract managing system operation platform
CN1831865A (en) Electronic bank safety authorization system and method based on CPK
AU2007286004B2 (en) Compliance assessment reporting service
CN101043337A (en) Interactive process for content class service
CN1848723A (en) Method and apparatus for providing mutual authentication between a sending unit and a recipient
CN1838163A (en) Universal electronic stamping system based on PKI
WO2014036452A1 (en) Virtual check system and method
JPH10504150A (en) A method for securely using digital signatures in commercial cryptosystems
CN101022339A (en) Electronic sign stamp identifying method combined with digital centifi cate and stamp
CN102255732B (en) Safe certificate issuing method based on USB (Universal Serial Bus) key
CN1858795A (en) Identifying system and method for electronic bill credit based on CPK
CN105554018A (en) Network real name verification method
CN1885351A (en) Application method of IC card in gate inhibition system based on financial criterion
CN1956375A (en) Dynamic password identity authentication method and system based on network
CN1818966A (en) Electronic seal realization
CN107229879A (en) Electronics confirmation request automatic generation method and system based on safe Quick Response Code
CN112419021A (en) Electronic invoice verification method, system, storage medium, computer equipment and terminal
CN1697376A (en) Method and system for authenticating or enciphering data by using IC card
CN114969786A (en) Block chain-based insurance function data processing method, node and system
CN104951923A (en) Electronic signature system based on combination of PKI technology and anti-counterfeit technology of physical seal
CN103810556A (en) Digital invoicing management system
Salau et al. Secure Document Verification System Using Blockchain
CN102622823A (en) Safe invoice system and realization method thereof
CN106533681A (en) Attribute attestation method and system supporting partial presentation

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
AD01 Patent right deemed abandoned

Effective date of abandoning: 20061108

C20 Patent right or utility model deemed to be abandoned or is abandoned