TW201035897A - Electronic transaction system and authentication device - Google Patents

Electronic transaction system and authentication device Download PDF

Info

Publication number
TW201035897A
TW201035897A TW98131166A TW98131166A TW201035897A TW 201035897 A TW201035897 A TW 201035897A TW 98131166 A TW98131166 A TW 98131166A TW 98131166 A TW98131166 A TW 98131166A TW 201035897 A TW201035897 A TW 201035897A
Authority
TW
Taiwan
Prior art keywords
stored value
unit
transaction
interface
memory
Prior art date
Application number
TW98131166A
Other languages
Chinese (zh)
Inventor
Wen-Chung Yuan
Chia-Chao Feng
Ming-Wei Lin
Original Assignee
Wen-Chung Yuan
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Wen-Chung Yuan filed Critical Wen-Chung Yuan
Priority to TW98131166A priority Critical patent/TW201035897A/en
Publication of TW201035897A publication Critical patent/TW201035897A/en

Links

Abstract

The invention provides an electronic transaction system and an authentication device for avoiding consumer privacy leakage as well as improving transaction convenience. The electronic transaction system comprises: a value storing device, including a first memory for storing value storing information, an encryption unit connected to the first memory for encrypting the value storing information to form encrypted value storing information, a first checking unit connected to the encryption unit for performing transmission data checking, and a first transmission interface connected to the first memory; a second memory for storing a transaction program to encrypt the encrypted value storing information and recover the encrypted transaction program; and an authentication device, including a master control unit, a second transmission interface for communicating with the first transmission interface, a second checking unit connected to the master control unit for performing transmission data checking, a third checking unit connected to the master control unit and the second transmission interface for performing transmission data checking, a connection interface connected to an electronic device and the second checking unit, and an authentication unit connected to the master control unit. Therefore, after the connection interface and the electronic device are connected and the electronic device reads and executes the transaction program, the electronic device depends on a transaction message of a network transaction platform to perform decryption to the encrypted value storing information that has been checked by the second checking unit, and further perform process to the decrypted value storing information, recover encryption to the decrypted value storing information after processing, and rewrite the encryption-recovered value storing information to the first memory via the first transmission interface and the second transmission interface.

Description

201035897 六、發明說明: 【發明所屬之技術領域】 堆么月係有關於—種電子交易系統以及認證裝置,更 f才 係關於使〉肖費者藉由可連接網路系統之電子裝 置在網路交易平台隹书丁衣 - ^ 又易而無須提供個人或金融帳號資 °孔之%子父易糸統以及認證裝置。 【先前技術】 ο201035897 VI. Description of the invention: [Technical field of invention] The stacking month has an electronic trading system and an authentication device, and more is about the electronic device that can be connected to the network system. Road trading platform 隹书丁衣 - ^ is easy and does not need to provide personal or financial account capital °% of the son of the child and the certification device. [Prior Art] ο

趨勢。梦^包子又易對於貢訊安全的需求已是可預見之 题努然而,網路戎带工丄B 與金融_資彳4-;^; ^ —直絲存在著消費者個人 險。實:f /可嶋或為惡意電腦軟體所竊取之風 性至少:一/人與金融帳號資料的外茂或遭竊取之可能 音願,1 =程度上影響了消費者對於網路或電子交易之 二使得消#者對於此類消費模式存有疑慮。這 用網路或電子交易進行方便:快速 營者的績效與成本9產:當於網路或電子交易經 上她 么推分> 且 用卡於網路交易平 二心分二=易:;T要經過金融單位咖 人權利與隱私之問題?證之動作,故涉及消費者個 兩求維護電子交易安全與避免消費者隱私外浅的 而求不斷增加’且因網路交易的便利性而使網路 …目此,如何使網路交易可同時兼顧資訊安 111206DP0] 201035897 王丨生及父易便利性是目前亟待解決的問題。 【發明内容】 >為了解決上述問題,本發明之目的在於提供一種電子 乂^系統及認證裝置,達到避免消費者於網路交易平台進 订乂易%·必須利用具有個人身分識別或者金融帳戶資訊的 電子簽章金鑰之效果。 、 為達上述及其他目的,本發明提供—種電子交易系 二費者透過與網路系統連結之電子裝置以在網路 父易千口進仃消費,該電子交易系統包含··儲值裝置,苴 =有用以料儲值資訊的第—記憶體、與 連 接以=該難資訊而形成-已加密儲值資訊的 该加密單元連接且用以進行傳輸資 ,查:兀以及連接至該第—記憶體的第—傳輸介面丄: ::易=储存對該已加密儲值資訊進行解密及回復加密 第一傳t面認證裝置,其具有主控單元、用以舆該 弟傳輸Μ通訊之第二傳輸介面、 用以進行傳輪資料檢查的第—主k早兀連接且 該第二傳輸介面連接且用早70、與該主控單元及 OD 要用乂進仃傳輪資料檢杳的泫rr认太 早元、與該電子裝置及該第二檢查單元連接:遠二仏查 與該主控單元連接之認證單元,以於該^連接介面、 裝置連接且該電子裝置讀取並執行該。"面與该電子 子裝置依該網路交易平^ &式後’使該電 元檢查無誤之該已加密儲值資訊進由該第二檢查單 儲值資訊進行處理,且於處理後對:、以對該已解密之 已解密之儲值資訊回 ⑴206DP0】 4 201035897 復加密,並透過該第一傳輸介面及第二傳輸介面將該回復 加密之儲值資訊寫回該第一記憶體中。 綜上所述,藉由本發明之電子交易系統以及認證裝置 使消費者更為簡易及安全地進行線上交易。 【實施方式】 以下實施例係充分詳細描述以使熟悉本領域之技藝 人士可製造及使用本發明,咸了解基於此揭露内容可明瞭 其他實施例,而且,其裝置或設備上的變化可在不悖離本 ^ 發明之範疇下進行。 在此須提出說明的是,為了避免模糊本發明之重點, 一些習知的電路(如電源)與安全性加解密方法將不再詳細 敛述。 再者5用來例不本發明貫施例的附圖’在不同實施例 中的某些共同特徵,為清楚及容易說明、描述及理解,相 似或相同的特徵將以相同附圖標記來敘述。 q 參閱第1圖,用以顯示本發明之一實施例的電子交易 系統之應用架構及其内部架構示意圖。本實施例之電子交 易系統包括認證裝置la與儲值裝置lb,該認證裝置la可 透過無線(wireless)或有線(wired)方式連接至電子裝置 102,該電子裝置102例如可與該網路系統104進行連結之 個人電腦、行動電話或PDA等電子產品,該電子裝置102 係透過網路系統104以連結至網路交易平台106上,該網 路系統104例如本地區域網路(LAN)、網際網路(internet) 或廣域網路(WiFi、WiMAX、3G)等,而該網路交易平台 5 ]]]206DP0] 201035897 =上購物平台或線上遊戲平台等可提供消費服務 透過該電:二裝置1'感應該儲值裝置lb之後 值ί置^ 執行之交易程式來處理接收自該儲 义b之储值資訊,並且將該網路交易平台】06回傳之 過該電子裝置102和該認證裝置ia傳送予該儲 ^…而該儲值裝置lb所儲存之儲值資訊係例如透 =二之儲值平台所提供之有價資訊,該有價資訊為經特 =易平台所認可而肋進行網路㈣或金融活動之等效 =而5㈣定之儲值平台可設置於交通轉運站或便利商 t遍可見之地點以便消f者對該儲值裝置ib進行儲 隹因此’藉由本發明之電子交易系統即可供線上交易之 :、者在毋需輸入個人資料下即可安全及快速地進 行為。 $第1圖所示,本實施例之認證裝置la包含主控單元 10、第二傳輸介® 11、記憶體12、連接介® 13、認證單 Ά安全模組15、第二檢查單元^及第三檢查單元π ^玄儲值裝置lb包含記憶體2G、第—傳輸介面21、加密 °°元25及第松查單元27。於本實施例中,該儲值裝置 記憶體2G及該認證裝置la的記憶體12可為如快閃 心思體(Flash Mem。”)之非揮發性記憶體,該儲值裝置ib 二°己丨思奴20用以儲存該儲值資訊,該認證裝置la的記憶 月丑12用以儲存供電子裝置1〇2連結至該網路交易平台1〇6 執行線上交易處理之交易程式。 。亥儲值I置1b之加密單元25係在第一傳輸介面2] 111206DP01 6 201035897 將儲存於魏憶體2Q中的儲值資訊料傳送時,進行加密 =借=定可讀取該儲值資訊的對象,接收該儲值資訊 密處理設定所採㈣解密處理,以確保該 储值裝置1b之儲值資輯存取安全,就本實施例而言,接 收已加㈣儲值資訊且具有解密處理之設備為網路交易平trend. The dream ^ buns and the need for the security of Gongxun are already foreseeable. However, the network has a job 丄 B and financial _ 彳 彳 4-; ^; ^ — straight there is consumer personal risk. Reality: f / can be ridiculous or stolen for malicious computer software at least: one / person and financial account information of foreign or stolen possible voice, 1 = degree affects consumers for online or electronic transactions The second makes the Consumers have doubts about such consumption patterns. This is convenient for online or electronic transactions: the performance and cost of the fast-runners. 9: When it's on the Internet or electronic trading, she pushes points> and uses the card to trade online. T has to go through the financial unit's rights and privacy issues in the financial unit? The action of the card, it involves the consumer to seek to maintain the security of electronic transactions and avoid the consumer's privacy and seek to increase 'and the convenience of online transactions And the network... In this way, how to make the network transaction can take care of the information at the same time. 111206DP0] 201035897 Wang Yusheng and his father's convenience are the problems that need to be solved. SUMMARY OF THE INVENTION In order to solve the above problems, an object of the present invention is to provide an electronic system and an authentication device, so as to avoid the consumer's subscription to the online transaction platform, and must use personal identification or financial account. The effect of the electronic signature key of the information. In order to achieve the above and other purposes, the present invention provides an electronic transaction system that uses two electronic devices connected to a network system to consume in the Internet. The electronic transaction system includes a stored value device. , 苴=use the first memory of the stored value information, and the cryptographic unit connected with the cryptographic stored value information formed by the connection with the difficult information, and used for transmitting the capital, check: 兀 and connect to the first - The first transmission interface of the memory: :: Easy = store to decrypt the encrypted stored value information and reply to the encrypted first pass t-plane authentication device, which has a main control unit for transmitting the communication a second transmission interface, a first-to-primary k-connection for conducting the data inspection, and the second transmission interface is connected and used early 70, and the main control unit and the OD are used to check the transmission data.泫rr recognizes too early, is connected to the electronic device and the second inspection unit: the second authentication unit is connected to the main control unit, so that the connection interface, the device connection, and the electronic device read and execute That. " face and the electronic sub-device according to the network transaction ^ & type 'make the cell check the encrypted stored value information into the second check list stored value information processing, and after processing Yes: to encrypt the decrypted stored value information back to (1)206DP0] 4 201035897, and write back the encrypted stored value information back to the first memory through the first transmission interface and the second transmission interface in. In summary, the electronic transaction system and the authentication device of the present invention enable consumers to conduct online transactions more easily and safely. The following embodiments are described in sufficient detail to enable those skilled in the art to make and use the invention. It is understood that other embodiments may be made based on the disclosure, and that changes in the device or device may be It is carried out under the scope of this invention. It should be noted that in order to avoid obscuring the focus of the present invention, some conventional circuits (such as power supplies) and security encryption and decryption methods will not be described in detail. In addition, the same or similar features will be described with the same reference numerals for the sake of clarity and ease of description, description and understanding. . q Referring to Figure 1, there is shown an application architecture of an electronic transaction system and an internal architecture thereof in an embodiment of the present invention. The electronic transaction system of this embodiment includes an authentication device 1a and a stored value device lb. The authentication device 1a can be connected to the electronic device 102 through a wireless or wired manner, and the electronic device 102 can be connected to the network system, for example. 104 is an electronic product such as a personal computer, a mobile phone, or a PDA that is connected to the network transaction platform 106 via a network system 104, such as a local area network (LAN), the Internet. Internet (internet) or wide area network (WiFi, WiMAX, 3G), etc., and the online trading platform 5]]]206DP0] 201035897=On the shopping platform or online game platform, etc. can provide consumer services through the electricity: two devices 1 'After sensing the stored value device lb, the value is set to execute the transaction program to process the stored value information received from the storage b, and the network transaction platform 06 is passed back to the electronic device 102 and the authentication device. And the stored value information stored in the stored value device lb is, for example, the valuable information provided by the storage platform of the second value, the valuable information is approved by the special platform; Equivalent to the financial activity = and 5 (4) The stored value platform can be set at the traffic transfer station or the place where the convenience merchant can be seen to save the stored value device ib. Therefore, the electronic transaction system of the present invention is Available for online trading: You can do it safely and quickly without having to enter your personal data. As shown in FIG. 1 , the authentication device 1a of the present embodiment includes a main control unit 10, a second transmission medium 11, a memory 12, a connection medium 13, an authentication unit security module 15, and a second inspection unit. The third inspection unit π ^ 储 stored value device lb includes a memory 2G, a first transmission interface 21, an encryption ° 25 element, and a pine detection unit 27. In this embodiment, the memory device 2G of the stored value device and the memory 12 of the authentication device 1a may be a non-volatile memory such as a flash memory (Flash Mem.), the stored value device ib The sino slave 20 is used to store the stored value information, and the memory ugly 12 of the authentication device la is used to store a transaction program for the electronic device to connect to the online transaction platform 1 〇 6 to perform online transaction processing. The encryption unit 25 with the stored value I set to 1b is in the first transmission interface 2] 111206DP01 6 201035897 When the stored value information stored in the Wei Yi body 2Q is transmitted, the encryption is performed = the value of the stored value information can be read. Receiving the stored value information processing setting (4) decryption processing to ensure that the stored value device 1b is securely stored, and in the present embodiment, receiving the device that has added (4) stored value information and has decryption processing Flat for online transactions

再者’第-檢查單元27提供傳輸資料檢查處理,即 對已加密的難資财生檢查碼,㈣接㈣難資訊的 設備檢測或驗證該傳輪㈣是否在傳輪過程中出現錯誤, 相應的,接收該儲何㈣設備亦制賴傳辟料檢查 處理’就本實施例而言,接收該儲值資就具備有該傳輸 貧料檢驗處理的設備為認證裝置la,且—具體實施例中, 該傳輸資料檢查處理例如是循環冗餘檢查(CyclicFurthermore, the 'first-check unit 27 provides the transmission data check processing, that is, the encrypted hard-to-finance check code, and (4) the (four) difficult information device detects or verifies whether the transfer wheel (4) has an error during the transfer, correspondingly Receiving the storage device (4), the device also relies on the inspection device for processing. In the present embodiment, the device having the transmission of the stored value is provided with the authentication device la, and the specific embodiment The transmission data check processing is, for example, a cyclic redundancy check (Cyclic)

Redundancy Check ; CRC )。 在此須提出說明的是,該儲值褒置lb另亦有其 件’例如主控單it等’由於此些構件均為儲值裝置之習知 標準配備,為簡域明及圖式,因此町料對其用途及 架構作進一步詳細之說明。 本實施例之認證裝置la之主控單元心, 其與記憶體12、認證單元14、安全模組15、第二檢查單 兀16及第三檢查單元17各別連接以控制各元件的運作。 此外,該認證裝置]a可具有即時加燦密模組(在此未予以 圖示)’用以於該主控單元10讀取/寫入該記憶體12時對 該記憶體12巾所儲存的資料行即日⑷解密操作,使得 113206DP0] 7 201035897 避免因5玄§己憶體12中儲存的資 費者或該網路交易平台】〇6的損 交易安全性提高的同時也 訊遭竊取或拷貝而造成消 失0 自的置1b與認證裝置1&間的溝通分別透過各 η:21;=Γ2〗及第二傳輸介面n,該等傳輸介面 长 p '’、歹1J 口無線射頻(RadioFrequency; RF)、串列匯 :=:bus)或者線_合介面等可用於在彼此之間進 灯溝通的;,面。當該第二傳輸介面Η感測該第—傳輸介面 2!存在或者直接連接該第一傳輸介面2ι時,該 介面11藉由與該第—傳輸介面21溝通而將來自該主^ 息在經該第三檢查單元17執行傳輸資料檢查處 理之後傳运至儲值裝置lb;另—方面,#該第—傳輸介面 2八1感獨二傳輸介面11存在或者直接連接該第二傳輸Redundancy Check ; CRC ). It should be noted that the stored value set lb also has its own components, such as the main control unit, etc., because these components are the standard equipment of the stored value device, which is a simplified domain and a schema. Therefore, the company plans to explain its use and structure in further detail. The main control unit of the authentication device la of the present embodiment is connected to the memory 12, the authentication unit 14, the security module 15, the second check unit 16 and the third check unit 17 to control the operation of each element. In addition, the authentication device]a may have an instant plus-cancel module (not shown here) for storing the memory 12 when the main control unit 10 reads/writes the memory 12. The data line is decrypted on the same day (4), so that 113206DP0] 7 201035897 avoids the loss of the security of the transaction stored in the 5th 己 己 体 12 or the online trading platform 〇 6 The communication between the device 1& and the authentication device 1& respectively, through the respective η:21;=Γ2 and the second transmission interface n, the transmission interface length p '', 歹1J port radio frequency (RadioFrequency; RF), tandem sink: =: bus) or line _ interface can be used to communicate with each other; When the second transmission interface Η senses that the first transmission interface 2! exists or is directly connected to the first transmission interface 2, the interface 11 is from the main communication interface by communicating with the first transmission interface 21 The third checking unit 17 performs the transmission data checking process and then transfers to the stored value device lb; on the other hand, the first transmission interface 2 exists or directly connects to the second transmission.

^面11時,該第-傳輸介面21藉由與該第二傳輸介面U 溝通而,該儲值裝flb的記憶體20所儲存的儲值訊息在 經加密單元25進行加密之後傳送至該第三檢查單元17進 行傳輸資料檢查處理,以驗證在傳輸過程中該儲值訊息是 否正確。 此外,該認證裝置la及該儲值裝置lb可具有即時加/ 解密模組(在此未予以圖示),用以於該認證裝置&及儲 值裝置lb之主控單元讀取/寫入本端的記憶體(12或 時對該記憶體(12 4 20)中所儲存之資訊進行即時加/解 密操作,使得交易安全性提高的同時也避免因該記憶體(Η 或20)中儲存的資訊遭竊取或拷貝而造成消f者或該網路 H1206DP01 8 201035897When the face 11 is transmitted, the first transmission interface 21 communicates with the second transmission interface U, and the stored value message stored in the memory 20 of the stored value flb is transmitted to the first after being encrypted by the encryption unit 25. The three checking unit 17 performs a transmission data check process to verify whether the stored value message is correct during the transmission. In addition, the authentication device 1a and the stored value device 1b may have an instant encryption/decryption module (not shown here) for reading/writing the main control unit of the authentication device & and the stored value device lb. In-memory memory (12 or instant real-time encryption/decryption of information stored in the memory (12 4 20), so that transaction security is improved while avoiding storage in the memory (Η or 20) The information was stolen or copied and caused by the consumer or the network H1206DP01 8 201035897

交易平台106的損失。兮句j办义nD - 天及5心噔早元14可由邏輯電路椹占、、 便實施於半導體裝置或者離 Uh路構成以 s ^ ^(discrete circuit 〇 ^ 另一貫鉍例,也可利用儲存於 而 . 书子儲存媒體(如記憶體)中 的車人4式相雜證單元14和該等檢查單元16、17)中 27之效果。然而,由於目命 熟,故也刊_杯電子整合技術已相當成 導體裝置或離散電路址同播^ 罕人版柱式配合+ ο ㈣成_證單元Μ和該等檢杳 早兀16、17及27。 双丸 s玄第二檢查單元1 7指^上 係如上所述用以對欲透過該第_ 傳輸介面11傳送自哕鍅枯狀m 罘— 傳钤 '静〇 〃 ^ # b的已加密儲值資訊進行 接^13^^理’而該第二檢查單元】6係對欲透過該連 接,丨面傳达至該網路交易平台並經安全模心再加穷 之已加也、储值賁訊進行傳輸資料檢查處理。此外, ^單元〗6也可對欲透過該連接介面13回傳自制衫 ❹ =,?交易訊息進行傳輸資料檢查處理,以供認證 政置1 a驗證该網路夺3 _cp , 』路乂易十台1〇6所回傳之交易訊息是否在 傳輪過程中發生錯誤;再者,為避免網路交易平台106所 回傳的父易訊息被第三人竊取,故一般情況,所回傳的交 ^ U,已由網路交易平台1〇6進行加密,因此本實施例 六’在該第二檢查單元16驗證該交易訊息為正確後,將該 又易=息傳1¾至該安全模組15進行解密,並接著傳送至該 」工單兀10 ’以供該第三檢查單元】7再次進行傳輸資料 檢查處理,之後透過該第二傳輸介面u傳送予該儲值裝置 ]b 〇 Π12060Ρ01 9 201035897 在此須特別提出說明的是,該等檢查單元16、17及 27進行傳輸資料檢查處理係對於傳送自其他裝置之訊息 進行循裱冗餘檢查位元之檢查,以確認傳送過程中是否有 發生位元錯誤,相反地,對於傳送至其他裝置之訊息則加 入循環冗餘檢查位元,以利接收之裝置進行傳輸資料檢查 處理。 琢運接介面13可透過無線(wireless)或有線方 式(例如uSB、IEEE1394或Rs_232等)連接至電子裝置 102進而將接收自該認證單元14之訊息傳送至網路系統 刚上之網路交易平台1〇6或將接收自該網路交易平台⑽ 之=息傳送至該認證單元14。透過與該網路系統iq“結 之毛子裝置1G2’該認證裝置1&能夠與支援該特定之儲 轉以平台106進行訊息上的互動。於該連接介 =㈣電子裝置102連接時,該主控單元1〇經該第二 :::,該連接介面13將該記憶體12所儲存的交易 網路交易平台之交易訊息對儲值…b = =儲:資訊進行線上交易處理,例如對該已力咖值 ::進仃解碼處理以進行扣款動作,且於扣款動作後再欠 該單元25的加密處理,亦即回復加密,並透過 值次γ幻,面21及第二傳輪介面】】將該回復加密之传 值為Λ舄回該j續/畜_罢 A者 的加密性,而僅有賴封以確保該儲值資訊 網路交易平b本身及執行扣款者(例如 乂易千口⑽之廠商)可取得該儲值資 】〇 1H206DP0] 201035897 鑰且另:¾面’當该第二傳輪介面u亦感測有第—傳輸 ,"面21存在或者直接連接至該第一傳輸介面21時,則嗜 第^檢查單元17對欲透過該第二傳輸介面U傳送自射绪 值衣置lb的已加密儲值資訊進行傳輸資料檢查處理 將其傳送至該主控單元10並傳送至該安全模组Η進行再 加密,其後藉由該第二檢查單元16將循環冗餘檢查位元加 ο 已加密儲值資訊後’透過該第二傳輸介面Π 將/、傳达予執行該交易程式之電子裝置102。而六 易易=電子裝請可透過該網路系統104將她^ 。0所產生之父易訊息傳送至該認縣置la,接著 該認證裝置1&遂將該交易訊息經該第二檢查單元" :财料檢查處理之後傳送至該安全模組進行解密,: 餘主1 空早元1(),在經該第三檢查單元17將循環冗 餘核查位兀加入該交易訊息之後 ❹ 儲值裝—提出二,= 乙二ΓΓΓ二置1b之後的處理機制係根據該儲值裝 置lb之生產廠商與網路交易平台1〇6之 亚不於本發明中詳加說明。 進仃, 該實施例中’該健值裝置lb可為儲值卡,故 a可配合_值卡之傳輸介彳ff 況傳輪以進行預付儲值以及網路交易。 …、進订貝 再者,本發明之電子交易系統 予以圖示)中,用以供該電子在此未 易處理之交易程式亦可儲存於該 二二灯線上父 展置102或該網路交 π 】]】206腦] 201035897 換言之,並不限儲存於該認證 易平台106的一記憶體中 裝置la中。 、,基土 w之電子交易系統讓進行線上交易之 消費者在簡易操作下因交层 # # 一 # 1〜入u 乂易過耘中毋須輸入個人資料而可 /f11之交易。再者’本發明之認證裝置藉由 . L ,丨罕工匆了上網之電子裝置連接而讓消費者 可不受地域限制地進行線上交易。 另提出說明的是,上述實施例所例示之裝置或裝置内 的各兀件皆可完全或部份地整合於系統晶片(加咖… chip,SOC)上以達到最佳的成本效益。 上述實施例僅例示性說明本發明之原理及其功效,而 非用於限制本發明。任何熟習此項技藝之人士均可在不違 背本發明之精神及範訂,對上述實施例進行修飾與^ 變。因此,本發明之權利保護範圍,應如後述之申請 範圍所列。 【圖式簡單說明】 第】圖係本發明之實施例的電子交易系統之應用架構 及其内部架構示意圖。 【主要元件符號說明】 la 認證裝置 lb 儲值裝置 10 主控單元 102 電子裝置 104 網路系統 1H206DP01 12 201035897 106 網路交易平台 11 第二傳輸介面 '12,20 記憶體 13 連接介面 14 認證單元 15 安全模組 16 第二檢查單元 17 第三檢查單元 Ο v 21 第一傳輸介面 25 加密單元 27 第一檢查單元 ❹ 13 ]]]206DP0]Loss of trading platform 106.兮句j办义 nD - day and 5 heart 噔 early element 14 can be occupied by logic circuit, and then implemented in a semiconductor device or from the Uh road to s ^ ^ (discrete circuit 〇 ^ another consistent example, can also be used for storage The effect of the driver's 4-type miscellaneous unit 14 in the book storage medium (such as memory) and the 27 of the inspection units 16, 17). However, due to the familiarity of the eye, the _ cup electronic integration technology has become quite a conductor device or discrete circuit site simulating ^ Hanren version of the column fit + ο (4) into the _ certificate unit Μ and the inspection 杳 early, 16, 17 and 27. The double pill s Xuan second inspection unit 1 7 is used to transmit the encrypted storage of the m 状 m 〇〃 〇〃 〇〃 〇〃 〇〃 # # # # # # # # # # # # # # The value information is connected to the control unit and the second inspection unit is 6 to communicate with the network trading platform through the connection, and the security model is added to the poor and added value. The company conducts transmission data inspection and processing. In addition, ^Unit 6 can also return the homemade shirt through the connection interface 13 , =,? The transaction message is transmitted and checked for processing. The authentication transaction is used to verify that the network wins 3 _cp, and whether the transaction message returned by the company is not in the process of passing the round; In order to prevent the parent-friendly message returned by the online transaction platform 106 from being stolen by a third party, in general, the returned message has been encrypted by the network transaction platform 1〇6, so this embodiment 6' After the second checking unit 16 verifies that the transaction message is correct, the message is decrypted to the security module 15 and then transmitted to the "work order" 10 for the third checking unit. 7) The transmission data check processing is performed again, and then transmitted to the stored value device through the second transmission interface u. 〇Π12060Ρ01 9 201035897 Here, it should be particularly noted that the inspection units 16, 17 and 27 transmit data. The inspection process performs a check of the redundancy check bits for messages transmitted from other devices to confirm whether a bit error has occurred during the transfer. Conversely, a cyclic redundancy check is added for messages transmitted to other devices. Check the bit to facilitate the transmission of data inspection and processing by the receiving device. The transport interface 13 can be connected to the electronic device 102 through a wireless or wired manner (for example, uSB, IEEE1394 or Rs_232, etc.) to transmit the message received from the authentication unit 14 to the network transaction platform just received on the network system. 1. 6 or transfer the information received from the internet trading platform (10) to the authentication unit 14. The authentication device 1& can cooperate with the network system iq "the hair device 1G2" to support the specific storage to interact with the platform 106. When the connection is (4) the electronic device 102 is connected, the main After the control unit 1 passes the second:::, the connection interface 13 processes the transaction information of the transaction network transaction platform stored in the memory 12 with the stored value...b==store: the information is processed online, for example, The power value has been added:: the decoding process is performed to perform the deduction action, and the encryption process of the unit 25 is owed after the deduction action, that is, the encryption is returned, and the value is γ illusion, face 21 and the second transmission wheel. Interface]] The value of the encrypted reply is the encryption of the returning/remaining stalker, and only the shackles are used to ensure that the stored value information network trades flat b itself and performs the debit (for example乂易千口(10)的厂家) can obtain the stored value 〇1H206DP0] 201035897 key and another: 3⁄4 face 'When the second pass interface u also senses the first transmission, " face 21 exists or directly connected When the first transmission interface 21 is reached, the second inspection unit 17 wants to transmit the second transmission. The interface U transmits the encrypted stored value information from the gamma value lb to the transmission data inspection process, transmits it to the main control unit 10 and transmits it to the security module for re-encryption, and then by the second The checking unit 16 adds the cyclic redundancy check bit to the encrypted stored value information and transmits the / through the second transmission interface to the electronic device 102 executing the transaction program. Transmitting, by the network system 104, the parent-friendly message generated by her ^.0 to the county device, and then the authentication device 1& 遂 passes the transaction message through the second checking unit " Transfer to the security module for decryption, the remaining master 1 is early 1 (), after the third check unit 17 adds the cyclic redundancy check bit to the transaction message, the stored value is loaded - 2, = B The processing mechanism after the second set 1b is not described in detail in the present invention according to the manufacturer of the stored value device lb and the network transaction platform 1-6. In this embodiment, the health value device Lb can be a stored value card, so a can be used with the transmission of the _ value card Introducing the ff conditional transmission wheel for prepaid stored value and online transactions. ..., in the case of the electronic transaction system of the present invention, the transaction program for the electronic device is not easy to handle. It can be stored in the parental display 102 or the network intersection π]]] 206 brain] 201035897 In other words, it is not limited to be stored in a memory device la of the authentication platform 106. w's electronic trading system allows consumers who conduct online transactions to communicate with each other under simple operation. # #一#1~入u 乂易耘 The user must enter personal information and can trade with /f11. Furthermore, the authentication device of the present invention allows the consumer to conduct online transactions without geographical restrictions by means of the L-connected electronic device connection. It is also noted that the components of the device or device illustrated in the above embodiments may be fully or partially integrated on a system chip (chip, SOC) for optimal cost effectiveness. The above-described embodiments are merely illustrative of the principles of the invention and its effects, and are not intended to limit the invention. Modifications and variations of the above-described embodiments can be made by those skilled in the art without departing from the spirit and scope of the invention. Therefore, the scope of protection of the present invention should be as set forth in the scope of the application described below. BRIEF DESCRIPTION OF THE DRAWINGS The drawings are schematic diagrams of an application architecture and an internal architecture of an electronic transaction system according to an embodiment of the present invention. [Main component symbol description] la authentication device lb stored value device 10 main control unit 102 electronic device 104 network system 1H206DP01 12 201035897 106 network transaction platform 11 second transmission interface '12, 20 memory 13 connection interface 14 authentication unit 15 Security module 16 second inspection unit 17 third inspection unit Ο v 21 first transmission interface 25 encryption unit 27 first inspection unit ❹ 13 ]]] 206DP0]

Claims (1)

201035897 七、申請專利範圍: 1. 一種電子交易系統,係供消費者透過與網路系統連結 之電子裝置在網路交易平台進行交易,該電子交易系 統包括: 儲值裝置,其具有用以儲存儲值資訊的第一記憶 體、與該第一記憶體連接以加密該儲值資訊而形成一 已加密儲值資訊的加密單元、與該加密單元連接且用 以進行傳輸資料檢查的第一檢查單元以及連接至該第 一記憶體的第一傳輸介面; 第二記憶體,用以儲存對該已加密儲值資訊進行 解密及回復加密之交易程式;以及 認證裝置,其具有主控單元、用以與該第一傳輸 介面通訊之第二傳輸介面、與該主控單元連接且用以 進行傳輸貢料檢查的第二檢查早元、與該主控早元及 該第二傳輸介面連接且用以進行傳輸資料檢查的第三 檢查單元、與該電子裝置及該第二檢查單元連接之連 接介面、與該主控單元連接之認證單元,以於該連接 介面與該電子裝置連接且該電子裝置讀取並執行該交 易程式後,使該電子裝置依該網路交易平台之交易訊 息對已由該第二檢查單元檢查無誤之該已加密儲值資 訊進行解密以對該已解密之儲值資訊進行處理,且於 處理後對該已解密之儲值資訊回復加密,並透過該第 一傳輸介面及第二傳輸介面將該回復加密之儲值資訊 寫回該第一記憶體中。 14 H1206DPO] 201035897 2. 3. ❹ 4. 5. 6· 〇 8· 如申請專利範圍帛丄項之電 輸資料檢查為循環冗餘檢查。,、、、、/、中,該傳 如申請專利範圍第!項之電子交易系統 證;置復包括安全模組,其與該主控單元連 對右人透過該連接介面傳送 留-认士 电子I置且經該第三檢杳 Μ加密儲進行加密處理,以; 將再加密之該已加密儲值資訊傳送至該網 =請專·圍第丨項之電子㈣魏,其中, 接面用以透過無線或有線方式連接至該電子裝置 如2專利範圍第1項之電子交易系統,其中,該第 —έ己憶體係内建於該認證裝置中。 X 如申請專利範圍第1項之電子交易系統 二記憶體係内建於該電子裝置中。 如申請專利範圍第!項之電子交易系統 一记憶體係内建於該網路交易平台中。 證震置’係供消費者透過與網路系統連結之電 及儲存有已加密儲值資訊之儲值裳置在網路交 易平σ進行交易,該認證裝置包括: 主控單元; 傳輸介面,其係用以與該儲值裝置進行溝通; 檢查單元,其係與該主控單元連 以 仃傳輸資料檢查; 退 第三檢查單元’其係與該主控單元及該第二傳輪 其中,該第 其中’該第 川206DP0] 15 201035897 介面連接且用以進行傳輸資料檢查; 記憶體,其係與該主控單元連接,其係用以儲存 對該已加密儲值資訊進行解密及回復加密之交易程 式; 連接介面,其係與該電子裝置及該第二檢查單元 連接;以及 認證單元,其係與該主控單元連接,以於該連接 介面與該電子裝置連接且該電子裝置讀取並執行該交 易程式後,使該電子裝置依該網路交易平台之交易訊 息對已由該第二檢查單元檢查無誤之該已加密儲值資 訊進行解密以對該已解密之儲值資訊進行處理,且於 處理後對該已解密之儲值資訊回復加密,並透過該傳 輸介面將該回復加密之儲值資訊寫回該儲值裝置中。 9. 如申請專利範圍第8項之認證裝置,其中,該記憶體 為非揮發性記憶體。 10. 如申請專利範圍第8項之認證裝置,其中,該儲值資 訊包含有價資訊,而該有價資訊係透過儲值平台所提 供。 11. 如申請專利範圍第8項之認證裝置,其中,該連接介 面用以透過無線或有線方式連接至該電子裝置。 12. 如申請專利範圍第8項之認證裝置,其復包括安全模 組,其與該主控單元連接,用以對欲透過該連接介面 傳送至電子裝置且經該第三檢查單元檢查無誤的已加 密儲值資訊進行加密處理,以供該連接介面將再加密 16 ]]]206DP01 201035897 之該已加密儲值資訊傳送至該網路交易平台。 13.如申請專利範圍第8項之認證裝置,其中,該傳輸資 料檢查為循環冗餘檢查。201035897 VII. Patent application scope: 1. An electronic transaction system for consumers to conduct transactions on an online trading platform through an electronic device connected to a network system, the electronic transaction system comprising: a stored value device having a storage device a first memory of the stored value information, an encryption unit connected to the first memory to encrypt the stored value information to form an encrypted stored value information, and a first check connected to the encryption unit for performing transmission data check a unit and a first transmission interface connected to the first memory; a second memory for storing a transaction program for decrypting and acknowledging the encrypted stored value information; and an authentication device having a main control unit and And a second transmission interface communicating with the first transmission interface, a second inspection interface connected to the main control unit for performing transmission metric inspection, and connecting to the main control early element and the second transmission interface a third inspection unit for performing transmission data inspection, a connection interface connected to the electronic device and the second inspection unit, and a connection with the main control unit The authentication unit, after the connection interface is connected to the electronic device, and the electronic device reads and executes the transaction program, the transaction information of the electronic device according to the network transaction platform has been checked by the second inspection unit. Decrypting the encrypted stored value information to process the decrypted stored value information, and encrypting the decrypted stored value information after processing, and transmitting the decrypted stored value information through the first transmission interface and the second transmission interface The encrypted stored value information is written back to the first memory. 14 H1206DPO] 201035897 2. 3. ❹ 4. 5. 6· 〇 8· If the data of the patent application scope is checked, it is checked for cyclic redundancy. , , , , , /, in the pass, such as the scope of application for patents! The electronic transaction system certificate of the item; the reset includes a security module, and the right control unit and the right control unit transmit the left-recognition electronic I through the connection interface, and perform encryption processing through the third check encryption storage, Transmitting the encrypted encrypted stored value information to the network = please use the electronic (4) Wei of the second item, wherein the interface is used to connect to the electronic device through wireless or wired means, such as the scope of the patent An electronic transaction system of the first item, wherein the first system is built in the authentication device. X. For example, the electronic trading system of claim 1 of the patent scope is built in the electronic device. Such as the scope of patent application! Electronic Trading System A memory system is built into the online trading platform. The certification device is for the consumer to trade through the connection with the network system and the stored value stored with the encrypted stored value information in the online transaction level σ, the authentication device includes: the main control unit; the transmission interface, The system is used for communicating with the stored value device; the inspection unit is connected to the main control unit to transmit data inspection; and the third inspection unit is connected to the main control unit and the second transmission wheel. The first one of the 'Tachikawa 206DP0' 15 201035897 interface is connected for checking data transmission; the memory is connected to the main control unit for storing and decrypting the encrypted stored value information. a transaction program; a connection interface connected to the electronic device and the second inspection unit; and an authentication unit connected to the main control unit, wherein the connection interface is connected to the electronic device and the electronic device is read And executing the transaction program, causing the electronic device to enter the encrypted stored value information that has been checked by the second checking unit according to the transaction message of the online trading platform. Processing the decrypted stored-value of the decrypted information, and encrypts the reply to the processed information has been decrypted the gift, and the gift to encrypt the reply interface information write back the stored value is transmitted through the transmission apparatus. 9. The authentication device of claim 8, wherein the memory is a non-volatile memory. 10. The authentication device of claim 8 wherein the stored value information includes valuable information and the valuable information is provided through a stored value platform. 11. The authentication device of claim 8, wherein the connection interface is for connecting to the electronic device by wireless or by wire. 12. The authentication device of claim 8 , further comprising a security module connected to the main control unit for transmitting to the electronic device through the connection interface and checking by the third inspection unit The encrypted stored value information is encrypted for the connection interface to be re-encrypted 16]]] 206DP01 201035897 The encrypted stored value information is transmitted to the online trading platform. 13. The authentication device of claim 8, wherein the transmission data check is a cyclic redundancy check. 111206DP0]111206DP0]
TW98131166A 2009-03-19 2009-09-16 Electronic transaction system and authentication device TW201035897A (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
TW98131166A TW201035897A (en) 2009-03-19 2009-09-16 Electronic transaction system and authentication device

Applications Claiming Priority (2)

Application Number Priority Date Filing Date Title
TW98108866 2009-03-19
TW98131166A TW201035897A (en) 2009-03-19 2009-09-16 Electronic transaction system and authentication device

Publications (1)

Publication Number Publication Date
TW201035897A true TW201035897A (en) 2010-10-01

Family

ID=44856041

Family Applications (1)

Application Number Title Priority Date Filing Date
TW98131166A TW201035897A (en) 2009-03-19 2009-09-16 Electronic transaction system and authentication device

Country Status (1)

Country Link
TW (1) TW201035897A (en)

Cited By (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
TWI571765B (en) * 2010-12-22 2017-02-21 英特爾公司 A system and method to protect user privacy in multimedia uploaded to internet sites

Cited By (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
TWI571765B (en) * 2010-12-22 2017-02-21 英特爾公司 A system and method to protect user privacy in multimedia uploaded to internet sites

Similar Documents

Publication Publication Date Title
KR101830952B1 (en) Using biometric authentication for nfc-based payments
CN105389699B (en) Mobile merchant proximity solution for financial transactions
TWI664591B (en) Method of disabling financial transactions between apayment network and an electronic device and management device
CN105814590B (en) Person-to-person payment using an electronic device
CN100485726C (en) A mobile payment system based on distributed cipher key
JP2022508010A (en) Systems and methods for cryptographic authentication of non-contact cards
CN104217327A (en) Financial IC (integrated circuit) card Internet terminal and trading method thereof
TW201710969A (en) Method and apparatus for facilitating electronic payments using a wearable device
CN102867366B (en) Portable bank card data processing device, system and method
CN104504563B (en) A kind of mobile message safety means and its method of work
JP2022501872A (en) Systems and methods for cryptographic authentication of non-contact cards
JP2022501875A (en) Systems and methods for cryptographic authentication of non-contact cards
WO2017020468A1 (en) Data exchange method and apparatus for composite smart card device
WO2016041235A1 (en) Electronic cash data authorization method, payment method and virtual card
TWI626607B (en) Smart card with dynamic token OTP function and working method thereof
JP2022541294A (en) Continuous authentication for digital services based on contactless card positioning
WO2020199028A1 (en) Security chip, security processing method and related device
TW200933367A (en) Method, system and controller for transmitting and dispatching data stream
JP2022501871A (en) Systems and methods for cryptographic authentication of non-contact cards
JP2022502891A (en) Systems and methods for cryptographic authentication of non-contact cards
CN104102934B (en) A kind of portable IC card read-write equipment, system and method
TW201624371A (en) NFC-based payment system and method thereof
CN204302996U (en) A kind of fingerprint identification device for authentication
TW201035897A (en) Electronic transaction system and authentication device
CN204066182U (en) A kind of financial IC card internet terminal