Background technology
Along with deepening constantly that computer technology is used in the financial field, the e-finance degree of bank is more and more higher, and bank is increasing to the dependence of computer system.Meanwhile, the banking machine crime is also with ever-increasing trend occurring.Along with the enforcement of Golden Card Program, increasing holder transfers accounts, consumes, deposits and withdraws by financial terminal.And the undesirable person who has is often when the holder inputs password, and by scanister or microwave technology, the interception transmission signals cracks holder's password even change transmission data, and holder's interests are endangered; The undesirable person who has even get the data-carrier store of metal encrypted keyboard by sled understands working key, the master key of storage bank, reaches bigger wild ambition.For this reason, on the one hand be needs for international joint, on the one hand also for the needs that enter domestic foreign bank's competition, China also will carry out the Compulsory Feature of triple data encryptions and keyboard physical security to the cipher inputting keyboard of financial terminal.
The cipher keyboard apparatus of traditional bank cashier machine financial terminals such as (ATM) adopts the RS232 interface more, communicates transmission manner with present ripe day by day USB interface and compares, and the latter's transmission is more quick, connection is more convenient.Simultaneously, because the security of magnetic recording card, reliability etc. all can't be equal to IC-card at present, therefore, must take into full account promoting the use of IC-card.
In existing technology, still there is not the clone that can address the above problem.
Summary of the invention
The purpose of this utility model is to overcome deficiency of the prior art, and a kind of hard enciphered cipher keyboard device that is applicable to financial terminals such as bank cashier machine is provided.In order to solve the problems of the technologies described above, the utility model is achieved through the following technical solutions:
The utility model provides a kind of hard enciphered cipher keyboard device, comprise with lower member: safe micro controller unit 201, data memory unit 202, code keypad input block 203, physical security detecting unit 204, USB (universal serial bus) unit 205, RS232 interface unit 206, multichannel SAM card control units 208 and SAM deck 209, wherein data memory unit 202, code keypad input block 203 and physical security detecting unit 204 are connected with safe micro controller unit 201; SAM deck 209 is connected with safe micro controller unit 201 by multichannel SAM card control units 208; Safe micro controller unit 201 can be connected with the financial terminal master control system with RS232 interface unit 206 by USB (universal serial bus) unit 205.
As a kind of improvement of the present utility model, this device is a Backup Battery Unit 207 that is connected with safe micro controller unit (201) also.
As a kind of improvement of the present utility model, this device also comprises a direct supply interface.
Compared with prior art, the beneficial effects of the utility model are:
1, hard enciphered cipher keyboard device is supported triple encryption systems, critical data (password, client's card number, transaction data) is sent in the affirmation process of bank main obtained safer protection.These keyboards be set in that ATM installs and when restarting, also support the unique master key of long-range loading.By encryption, make designer, general bank clerk also can't obtain client's critical data to client's critical data.Solution meets the desired world security industrial standard of Master Card and VISA credit card and China Unionpay's PBOC standard fully.
2, the requirement of keyboard physical security makes all data that are stored in the hard enciphered cipher keyboard device, and common people can't malice obtain.
3, the reservation setting of SAM card is for adapting to promoting the use of IC-card, make the client can stick into capable person identification by SAM at the application IC-card, having realized the read-write of the special-purpose fiscard of various classifications on same finance self-help terminal.
4, the setting of USB interface makes the host information in hard enciphered cipher keyboard and the finance self-help terminal more quick alternately, has fully reduced the client trading time.
Embodiment
With reference to the accompanying drawings, will be described in detail the utility model below.
The hard enciphered cipher keyboard device of specific embodiment 1 comprises as shown in Figure 1 with lower member:
Safe micro controller unit 201 is cores of this device, is responsible for logic determines, instruction issue, data processing, and inside is provided with hardware data encryption standard (DES) algorithm device, and client password is carried out triple data encryptions.
Data memory unit 202 is mainly used to store the temporary of working key, master key, utilization program and data;
Code keypad input block 203 provides the operating platform that the client inputs password, data, and the client can pass through this unit, carries out input, cancellation, removing, the affirmation of password, data, and simultaneously, data can be the form inputs of integer or decimal; Also can pass through " help " key, make financial terminal, with voice suggestion and menu dialogic operation, prompting client's operation and safety event; Also can be as the input platform of ecommerce from now on.
Physical security detecting unit 204 is a kind of mechanical safety devices, and inner the setting pressed spring physical construction and inner turning circuit.When keyboard is prized when getting by force by external force, inner triggers the data that inner turning circuit empties preservation in the data memory unit 202 by spring physical construction, can guarantee the hard enciphered cipher keyboard after breaking away from financial terminal, maintenance personal and other staff can't obtain the private data of bank.
USB (universal serial bus) unit 205 and RS232 interface unit 206 belong to current techique, are used for communications.
The direct supply interface unit is used for the access of working power.
Backup Battery Unit 207 can be selected common button cell or dry cell for use.Can under the financial terminal powering-off state, guarantee that the data of data memory unit 202 storages are not lost, make the hard enciphered cipher keyboard system after restoring electricity, can normally use.
Multichannel SAM card control units 208, SAM deck 209 are for adapting to a kind of device preset that promotes the use of IC-card.Mainly be when the client uses IC-card, the safe micro controller unit 201 of hard enciphered cipher keyboard system is according to the instruction of financial terminal master control system, and the embedded software of service data memory cell 202 is realized the two-way authentication of SAM card and IC-card.Many SAM deck has been realized the read-write of the special-purpose fiscard of various classifications on same finance self-help terminal, has reduced operating cost.
Among Fig. 1, hard enciphered cipher keyboard device comprises that data memory unit 202, code keypad input block 203, physical security detecting unit 204 and Backup Battery Unit 207 are connected with safe micro controller unit 201; SAM deck 209 is connected with safe micro controller unit 201 by multichannel SAM card control units 208; Safe micro controller unit 201 can be connected with the financial terminal master control system with RS232 interface unit 206 by USB (universal serial bus) unit 205.This device comprises that also the interior equipment of a direct supply interface unit and device is connected, and is used for to device for direct current.
Can select following model for use to each components and parts that in specific embodiments of the invention, may relate to:
Safe micro controller unit 201 is selected the DS5002 type for use, because its inside is provided with hardware data encryption standard (DES) algorithm device, can realize client password is carried out triple data encryptions.Data memory unit 202 is selected the W24010 type for use, and USB (universal serial bus) unit 205 is selected the PL2303 type for use, and RS232 interface unit 206 is selected the MAX202 type for use, and multichannel SAM card control units 208 is selected the CR4052 type for use.SAM deck 209, Backup Battery Unit 207, code keypad input block 203 and direct supply interface unit all can be selected existing current techique for use.
Below by the operation of hard enciphered cipher keyboard device in the existing network of bank each parts function mode of the present utility model is annotated.
1, safe micro controller unit 201 is opened code keypad input block 203 input functions according to " input PIN, the temporary PIN " instruction by USB interface or the input of RS232 interface of financial terminal master control system.
2, the client is by code keypad input block 203 input passwords and affirmation.
3, safe micro controller unit 201 is temporary in data memory unit 202 with password with the form of cryptographic block (PIN BLOCK), simultaneously, exports the fixedly password of figure place " * " by USB interface or RS232 interface one by one to the financial terminal master control system.
4, after the financial terminal master control system is received the password " * " of equal-order digits, to hard enciphered cipher keyboard device issue " getting individual PIN BLOCK encrypts " instruction.
5, safe micro controller unit 201 is obtained cryptographic block and bank's working key from data memory unit 202.
6, the financial terminal master control system is selected ANSI9.8 standard or IBM3624 Standard Encryption algorithm according to financial terminal master control system encrypted instruction.
7, client password is carried out ANSI9.8 standard or the computing of IBM3624 Standard Encryption algorithm, finish the encryption of client password.
8, packing data is transferred to the financial terminal master control system, and removes and to be temporary in data memory unit 202 cryptographic block data, finish the encrypted transmission of client password.
At last, it is also to be noted that what more than enumerate only is specific embodiment of the utility model.Obviously, the utility model is not limited to above embodiment, and many distortion can also be arranged.All distortion that those of ordinary skill in the art can directly derive or associate from the disclosed content of the utility model all should be thought protection domain of the present utility model.