TW491980B - Chip card and its using method - Google Patents
Chip card and its using method Download PDFInfo
- Publication number
- TW491980B TW491980B TW087102084A TW87102084A TW491980B TW 491980 B TW491980 B TW 491980B TW 087102084 A TW087102084 A TW 087102084A TW 87102084 A TW87102084 A TW 87102084A TW 491980 B TW491980 B TW 491980B
- Authority
- TW
- Taiwan
- Prior art keywords
- data
- vas
- chip card
- key
- terminal
- Prior art date
Links
- 238000000034 method Methods 0.000 title claims description 53
- 238000012546 transfer Methods 0.000 claims abstract description 155
- 238000003860 storage Methods 0.000 claims abstract description 101
- 230000002079 cooperative effect Effects 0.000 claims description 46
- 230000006870 function Effects 0.000 claims description 43
- 230000002452 interceptive effect Effects 0.000 claims description 16
- 238000012795 verification Methods 0.000 claims description 10
- 230000008569 process Effects 0.000 claims description 9
- 238000012360 testing method Methods 0.000 claims description 7
- 230000008859 change Effects 0.000 claims description 5
- 238000007689 inspection Methods 0.000 claims description 4
- 230000002829 reductive effect Effects 0.000 claims description 3
- 238000013475 authorization Methods 0.000 claims description 2
- 238000000547 structure data Methods 0.000 claims 2
- 241000282320 Panthera leo Species 0.000 claims 1
- 102100021164 Vasodilator-stimulated phosphoprotein Human genes 0.000 claims 1
- 108010054220 vasodilator-stimulated phosphoprotein Proteins 0.000 claims 1
- 238000013461 design Methods 0.000 description 66
- 101100270417 Homo sapiens ARHGEF6 gene Proteins 0.000 description 21
- 102100033202 Rho guanine nucleotide exchange factor 6 Human genes 0.000 description 21
- 230000004044 response Effects 0.000 description 15
- 230000007246 mechanism Effects 0.000 description 11
- 238000007726 management method Methods 0.000 description 9
- 238000004364 calculation method Methods 0.000 description 7
- 238000013500 data storage Methods 0.000 description 6
- 238000004519 manufacturing process Methods 0.000 description 6
- 238000010586 diagram Methods 0.000 description 5
- 238000012986 modification Methods 0.000 description 5
- 230000004048 modification Effects 0.000 description 5
- 238000005516 engineering process Methods 0.000 description 4
- 230000003993 interaction Effects 0.000 description 4
- 230000008901 benefit Effects 0.000 description 3
- 238000012217 deletion Methods 0.000 description 3
- 230000037430 deletion Effects 0.000 description 3
- 238000007639 printing Methods 0.000 description 3
- 238000004422 calculation algorithm Methods 0.000 description 2
- 238000012937 correction Methods 0.000 description 2
- 230000000717 retained effect Effects 0.000 description 2
- 230000002441 reversible effect Effects 0.000 description 2
- 230000003068 static effect Effects 0.000 description 2
- 230000009182 swimming Effects 0.000 description 2
- 235000017166 Bambusa arundinacea Nutrition 0.000 description 1
- 235000017491 Bambusa tulda Nutrition 0.000 description 1
- 235000011777 Corchorus aestuans Nutrition 0.000 description 1
- 240000004792 Corchorus capsularis Species 0.000 description 1
- 235000010862 Corchorus capsularis Nutrition 0.000 description 1
- 101100247628 Mus musculus Rcl1 gene Proteins 0.000 description 1
- 244000082204 Phyllostachys viridis Species 0.000 description 1
- 235000015334 Phyllostachys viridis Nutrition 0.000 description 1
- 230000009471 action Effects 0.000 description 1
- 239000008186 active pharmaceutical agent Substances 0.000 description 1
- 230000006978 adaptation Effects 0.000 description 1
- 239000011425 bamboo Substances 0.000 description 1
- 230000006399 behavior Effects 0.000 description 1
- 230000009286 beneficial effect Effects 0.000 description 1
- 210000004899 c-terminal region Anatomy 0.000 description 1
- 238000006243 chemical reaction Methods 0.000 description 1
- 238000012790 confirmation Methods 0.000 description 1
- 238000010276 construction Methods 0.000 description 1
- 230000000875 corresponding effect Effects 0.000 description 1
- 239000013078 crystal Substances 0.000 description 1
- 230000006378 damage Effects 0.000 description 1
- 238000013479 data entry Methods 0.000 description 1
- 238000009795 derivation Methods 0.000 description 1
- 230000001066 destructive effect Effects 0.000 description 1
- 238000011161 development Methods 0.000 description 1
- 238000009826 distribution Methods 0.000 description 1
- 230000008030 elimination Effects 0.000 description 1
- 238000003379 elimination reaction Methods 0.000 description 1
- 238000000605 extraction Methods 0.000 description 1
- 235000013410 fast food Nutrition 0.000 description 1
- 238000002124 flame ionisation detection Methods 0.000 description 1
- 238000005304 joining Methods 0.000 description 1
- 230000007774 longterm Effects 0.000 description 1
- 235000012054 meals Nutrition 0.000 description 1
- 238000012856 packing Methods 0.000 description 1
- 238000012545 processing Methods 0.000 description 1
- 238000012552 review Methods 0.000 description 1
- 210000002784 stomach Anatomy 0.000 description 1
- 230000029305 taxis Effects 0.000 description 1
- 230000007704 transition Effects 0.000 description 1
Landscapes
- Financial Or Insurance-Related Operations Such As Payment And Settlement (AREA)
Abstract
Description
491980 A7 B7 2497pif.doc/002 五、發明説明(ί ) 本發明是有關於一種晶片卡,使用晶片卡的一種終 端機以及使用晶片卡和其系統的方法。 (請先閱讀背面之注意事項再填寫本真) 具有付費的微處理機晶片卡,例如電子錢包,電子現 金,信用功能等,已經在使用階段,而依照它們的性質不 同,有系統地加以事先分類,例如ZKA(Zentraler Kredi tauss chu/3 ),VISA 或 EMV( Europay Mastercard VISA) 因此它們可當作一種付費方法。底下就舉一些例子: -ZKA , Zent raler Kredi tausschu/3,”電子卡與 晶片特殊交互作用”27,10,1995 ; -Europay International,”積體電路卡,特定付費 系統”EMV’96”,V3.0,30,1,1996 ; -IS0/IEC 7816-4,”資訊科技_辨識卡_積體電路連 絡卡,第四部:商業間彼此之交換控制: 01—09—1995 ; -PrEN 1546_1,”辨識卡系統—交叉電子錢包,第一 部:定義:槪念和結構”,15,03,1995 -PrEN 1546j,”辨識卡系統—交叉電子錢包,第二 部:安全結構”03,07,1995 ; 經濟部中央標準局員工消費合作社印製 -ΡιΈΝ 1546_3,”辨識卡系統—交叉電子錢包,第三 部:數據元件及交換”09,12,1994 欲縱覽近期的晶片卡可尋找如F : —Stefan Schutt Bertt Kolraf : u Chipkarten , Technische MERKMALE Normung , Einsatzgeloiete” , (“晶片卡,技術特性,標準,使用範圍”),R.Oldenboung 本紙張尺度適用中國國家標準(CNS ) A4規格(210X297公釐) 491980 2497pif.doc/〇〇2 A7 ___ B7 五、發明説明(>)491980 A7 B7 2497pif.doc / 002 V. Description of the Invention The invention relates to a chip card, a terminal using the chip card, and a method for using the chip card and its system. (Please read the notes on the back before filling in the true) Microprocessor chip cards with payment, such as e-wallets, e-cash, credit functions, etc., are already in use, and according to their nature, they are systematically pre-empted Classifications such as ZKA (Zentraler Kredi tauss chu / 3), VISA or EMV (Europay Mastercard VISA) can therefore be used as a payment method. Here are some examples: -ZKA, Zentraler Kredi tausschu / 3, "Special Interaction Between Electronic Cards and Chips" 27, 10, 1995; -Europay International, "Integrated Circuit Card, Specific Payment System" EMV'96 ", V3.0, 30, 1, 1996; -IS0 / IEC 7816-4, "Information Technology_Identification Card_Integrated Circuit Contact Card, Part 4: Exchange Control Between Businesses: 01—09—1995; -PrEN 1546_1, "Identification Card System-Cross-E-Wallet, Part 1: Definition: Mind and Structure", 15,03, 1995 -PrEN 1546j, "Identification Card System-Cross-E-Wallet, Part 2: Security Structure" 03, 07, 1995; Printed by the Consumer Cooperatives of the Central Standards Bureau of the Ministry of Economic Affairs-P1ΈN 1546_3, "Identification Card System-Cross-E-Wallet, Part 3: Data Components and Exchange" 09, 12, 1994 For an overview of recent chip cards, you can find F: —Stefan Schutt Bertt Kolraf: u Chipkarten, Technische MERKMALE Normung, Einsatzgeloiete ", (" chip card, technical characteristics, standards, scope of use "), R. Oldenboung This paper size applies to China Quasi (CNS) A4 size (210X297 mm) 491980 2497pif.doc / 〇〇2 A7 ___ B7 V. invention is described (>)
Vevlag , Munich/Vienna , 1996 , ISBN , 3—486—23738一1 。 傳統晶片卡通常僅用於特殊目的,例如用作電錢包或 電子辨識方法。然而附於這些晶片卡的適用度通常是靜態 的(static)意即製造晶片卡過程附加了適用性之後,一直 到使用整個生命週期都保留不變。 傳統的晶片卡不管是可變性(Va r i ab i t i t y)和功能性 (fumctionaUty)都是有限的。特別是傳統晶片卡依照它 們製造過程’它們的功能性就被固定並且不再改變。因此, 本發明的主要目的,就是要提供一種晶片卡,其功能性是 可改變的。 本發另一個目的乃是提供晶片卡,即使在製造完成 之後’晶片卡可應用的性質及個數或者使用及記錄 (transactions)是可以改變的。它以可載入其他的應用, 也可從晶片卡上除去應用並且每個應用在數據和安全技術 方面都是獨立定義且個別獨立進行的。例如,晶片卡應該 遵守IS07816有關數據和安全技術條件,然而其個別的應 用尤其獨ϋ於晶片卡接受台(Platf0rm)本身之外。 經濟部中央標準局員工消費合作衽印製 (請先閱讀背面之注意事項再填寫本頁) 另外’本發明也提供一種晶片卡,使用者本身可決定 或組合或改變卡中有從事的應用性質及次數,使用本晶片 卡內部服務(i n t r a s e r v i c e s)(即不牽涉外部成員預約或服 務轉移的封閉路徑(cl〇sedJ0〇p)應用)*和交互服務 (mter services)(即與外部成員有額外關係的應用)是可 能的且可以執行。 _本發明的一個特性攝供一部儀器一種或多種應用 5 尽、·氏張尺度適用中國國家標準(CNS ) A4規格(210x297公楚) 491980 A7 B7 2497pif.doc/〇〇2 五、發明説明(4) 可記載在卡上,因此持卡者與提供一種或多項服務者可以 進行交易。 (讀先閱讀背面之注意事項再填寫本頁) 如些載入晶片卡使它可以具備一個新的功能,即可以 執行之前無法從事的應用。 載入的數據連結晶片卡的基本功能例如先前沒有提供 的操作系統,能定義並了解應用本身。因此經由以特殊方 式負載個應用可延伸晶片卡的功能。 根據本發明的實施例提供晶片卡上一種數'結構 (S ϋ a t r a i s t re 13 r e) (DF_VAS)此數據結構又細分成一偶 寒間結構和一個定義數據組(xlsJUUqi data set)並以资 碼式加以分別,獨立於晶片卡接受台。所謂的應用_就 可以載入空興結構即晶片卡的功能或應用。因此有可能載 入晶片卡一種特殊應用,從事持卡者與提供服務者之間的 交易。資糾結構的一個定義數據組合包含關於載入空間結 構的應用結構及性質。然而整個數據結構使用至少一種系 統鍵避免被修改,並且只有使用此鍵才可以修改。除了系 統鍵之外,可以想到其他安全機制或方法以防止系統被修 改。 經濟部中央標準局員工消費合作社印裝 例如藉由一個個人身份號碼(PIN)或其他提供這種安全 的方法。由以上的架構,可以載入空間的結構各種的應用, 也可以再次從結構中將它們刪除,晶片卡由於功能及可從 事的應用具有可變性。藉由寫下提供的空間結構特殊數據 和鍵進行應用的載入和刪除。系統鍵和數據結構密碼的提 供使用數據結構具備多重功能性以及安全架構可自我獨立 6 本紙張尺度適用中國國家標準(CNS ) A4規格(210X297公釐) 4,91980 497pif.doc/002 A7Vevlag, Munich / Vienna, 1996, ISBN, 3-486-23738-1. Traditional chip cards are often used only for special purposes, such as for e-wallets or electronic identification methods. However, the applicability attached to these chip cards is usually static, meaning that after the applicability of the chip card manufacturing process is added, it remains the same throughout its life cycle. Traditional chip cards have limited variability (Va r ab ab t t y) and functionality (fumctionaUty). In particular, conventional chip cards have their functionality fixed and not changed in accordance with their manufacturing process'. Therefore, the main object of the present invention is to provide a chip card whose functionality can be changed. Another purpose of this issue is to provide chip cards, even after the manufacture is completed, the nature and number of applications of the chip chip or the use and transactions can be changed. It can load other applications or remove applications from the chip card, and each application is independently defined and independently performed in terms of data and security technology. For example, the chip card should comply with the relevant data and security technical conditions of IS07816, but its individual applications are particularly independent of the chip card receiving station (Platf0rm) itself. Printed by the staff of the Central Standards Bureau of the Ministry of Economic Affairs for consumer cooperation (please read the precautions on the back before filling out this page) In addition, the present invention also provides a chip card, and the user can decide or combine or change the application nature of the card And times, using this chip card's internal services (intraservices) (ie closed path (clOsedJ0oop) applications that do not involve external member reservations or service transfers) * and interactive services (mter services) (ie have additional relationships with external members Applications) are possible and executable. _ A feature of the present invention is provided for one instrument for one or more applications. 5 Exhaust, the Zhang scale is applicable to the Chinese National Standard (CNS) A4 specification (210x297). 491980 A7 B7 2497pif.doc / 〇〇2 5. Description of the invention (4) It can be recorded on the card, so the cardholder and the provider of one or more services can conduct transactions. (Read the precautions on the back before filling out this page.) If you load the chip card so that it can have a new function, you can execute applications that were previously unavailable. The basic functions of the loaded data link chip card, such as the operating system not previously provided, can define and understand the application itself. The functionality of a chip card can therefore be extended by loading applications in a special way. According to the embodiment of the present invention, a data structure (S ϋ atraist re 13 re) (DF_VAS) on the chip card is provided. This data structure is further subdivided into an even structure and a definition data set (xlsJUUqi data set), and the code format It is separate from the chip card receiving station. The so-called application can load the functions or applications of the chip structure, that is, the chip card. It is therefore possible to include a special application of chip cards for transactions between cardholders and service providers. A defined data set of the information correction structure includes the application structure and properties of the load space structure. However, the entire data structure uses at least one system key to avoid modification, and only this key can be modified. In addition to the system keys, other security mechanisms or methods can be thought of to prevent the system from being modified. Printed by a Consumer Cooperative of the Central Bureau of Standards of the Ministry of Economic Affairs, for example, by a personal identification number (PIN) or other means of providing such security. From the above architecture, various applications of the structure of the space can be loaded, and they can be deleted from the structure again. The chip card has variability due to functions and applicable applications. Load and delete applications by writing down the spatial structure-specific data and keys provided. Provision of system keys and data structure passwords The use of data structures has multiple functionalities and the security structure can be self-independent. 6 This paper size applies to China National Standard (CNS) A4 specifications (210X297 mm) 4,91980 497pif.doc / 002 A7
五、發明説明(¥ ) 經濟部中央檫準局員工消費合作社印製 晶卡接受台。 依照載入空間架構的應用,可以進行持卡者和提供服 務者有關載入應用的晶片卡交易。 本晶片卡更包含了一個轉移儲存區(transfer storage region)執行交易過程交換的數據可被寫入或讀出。爲了 從轉移儲存區遺取數據需要終端特殊(terminal_specific) 鍵,以女全觀點,個別的路徑(accesses)是獨立的。 個別的空間結構或卡中提供的應用比較是相互獨立的 竑旦個別分配給一個特殊的服務提供者。也就晏說它們代 _了執行一種特殊應用的,提供服務者私有特殊的數據。 依照應用的形式和服務提供者因而它們包括不同的資訊, 例如代表一特殊値的數據(紅利點,預算平衡等),有關應 用的資訊數據關於服務提供者的資訊數據等。然而較好的 晏它們特別包含了鍵;特別磁於應用上使得可以獲得空間 結構的數據而安全技術上獨立於其他空間架構。載入或產 $空間架構或是應用本身至少附加一種系統鍵旗以安全保 _。執行交易之前晶片卡和終端之間彼此會進行驗證,爲 此目的提供了個別空間架構特殊驗證鍵。 爲了執行交易,數據被寫進空間架構中,保持作爲特 殊的VAS應用程式或空間架構讀取或者經由轉移儲存區被 執行。第一個例子中使用應用特殊鍵’在最後提到的例子’ 除了應用特殊鍵更使用終端特殊鍵,例如由晶片上的鍵產 生以及從應用特殊數據。 如此寫入轉移儲存區的數據可以被服務提供者經由端 7 本紙張尺度適用中國國家標準(CNS ) A4規格(210X297公釐) 一 (請先閱讀背面之注意事 1· 項再填· 裝— :寫本頁) 訂 491980 Μ Β7 2497pif.d〇c/〇〇2 五、發明説明(f) (請先閱讀背面之注意事項再填寫本頁) 子取出並標示無效’假如過程牽涉服務提供者對寫下的應 用並沒有特定’就是所謂的內部服務(intergervice)即貨 幣數據交換在持卡者與不同的服務提供者進行。 更進一步,爲了額外的安全,提供一個PIN或密碼以 作爲執行交易程序的正確辨證。 晶片卡改變的結構,可以在卡上進行多次不同個數的 應用。 從轉移儲存區取出的數據最好用一種簽名鍵 (SIGNATURE KEY)或使用一種數位簽名或至少一種鍵。然 而在本文中,假如取出的數據仍然在轉移儲存區中並且僅 被標示爲已經由晶片取出,這方法就特別地有好處。依此 看來即使交易已發生仍然有可能取得進行交易有關的資 訊,藉由取出數據的安全防護它可確保交易僅被執行一 次。 經濟部中央標準局員工消費合作社印製 假如寫入轉移儲存區的數據被附上它們失去價値的終 止曰期,此方法就特別有用。因此,有可能進行例如:一 張票僅用於一個特殊時期的應用。利用交易記數器 (COUNTER)交易日期,依照相關交易個別的價値數據可以 正値地決定及認證。 在一個有利的實施例中,根據本發明的晶片卡因此包 含一個分級(hierarchical)的數據基層(database)槪念, 在每一層中使用不同的鍵加以保護避免被修改,依照數據 基層儲存的應用,應用的層次是可變的,每個應用以它自 己的特殊的鍵獨立於其他的應用而加以保護而整個結構至 8 本紙張尺度適用中國國家標準(CNS ) A4規格(210X297公釐) 491980 2497pif ^ d〇c/〇〇2 八7 B7 五、發明説明(么) 少用一種系統鍵來保護並且由密碼辨認結構,獨立晶片卡 接受台本身。轉移儲存的槪念允計持卡者和服務提供者之 間數據的交換以及不同的服務提供者數據交換。而且從轉 移儲存讀取或寫入數據因爲鍵設計像是應用特殊鍵和終端 特殊鍵而獲得保障。根據本發明每一次交易前進行辨認, 以及可使用一種PIN或密碼額外增加了晶片卡的安全保 護。 在申請專利範圍第21到30條定義了一種與根據本發 明的晶片卡一起使用的端子(TERMINAL)這個端子用作載入 或刪除應用程式執行交易’檢視數據以及執行進一步連結 個別應程式和交易的功能。執行持卡者和服務提供者之間 交易的過程定義在宣告第31到3 3條。依據本發明將數據 載入晶片卡定義在宣告第34和35 ’而宣告36定義了包含 晶片卡和終端的整個系統。 底下依據一較佳實施例配合附圖’對本發明作進步的 敘述。 第1圖:根據本發明的晶片卡方塊圖。 第2圖:關於本發明組成’整個系統的示意圖。 經濟部中央標準局員工消費合作社印製 (請先閱讀背面之注意事項再填寫本頁} 丁 、--口 第3圖:整個系統中的數據流程。 第4圖:透過交易模式可能的應用程式分類及操作示 意圖。 第5圖··根據本發明晶片卡安全保護結構的示意圖。 第6圖:VAS櫃員機一般設計種類的數據結構。 第7圖:根據本發明的一個有效實例,VAS櫃員機不 9 本紙張尺度適用中國國家標準(CNS ) A4規格(210X297公釐) 491980 2497pif.doc/〇〇2 A7 B7 五、發明説明(?) 同的設計種類。 第8圖:根據本發明的一個有效實例,VAS櫃員機的 數據基層結構。 弟9圖·日又日十種類DF_PT數據基層結構示意圖。 第10圖··設計種類DF_AD數據基層結構示意圖。 實施例 在進一步描述本發明之前,使用幾個項目定義在下面·· VAS ·價値附加服務(Value Added Services)V. Description of the invention (¥) The crystal card receiving desk printed by the Consumer Cooperatives of the Central Bureau of Quasi-Economic Bureau of the Ministry of Economic Affairs. According to the application of the load space architecture, the chip card transaction of the card holder and the provider regarding the load application can be performed. The chip card further includes a transfer storage region (transfer storage region) to perform transactions and the data exchanged can be written or read. In order to retrieve data from the transfer storage area, a terminal_specific key is required. From a women's perspective, individual accesses are independent. The comparison of individual space structures or applications provided in the card is independent of each other and is assigned to a particular service provider individually. In other words, Yan said that they execute a special application and provide the server with private special data. Depending on the application form and the service provider, they include different information, such as data representing a particular bank (bonus points, budget balance, etc.), application data, and information about the service provider. However, it is better that they contain keys in particular; they are particularly magnetically applied so that spatially structured data can be obtained while security technology is independent of other spatial architectures. Load or generate $ space framework or the application itself to attach at least one system key flag for security. The chip card and the terminal are verified with each other before the transaction is executed, and a special verification key for individual space architecture is provided for this purpose. In order to execute transactions, data is written into the spatial architecture, kept read as a special VAS application or spatial architecture, or executed via a transfer storage area. In the first example, application-specific keys are used 'in the last-mentioned example', in addition to application-specific keys, terminal-specific keys are used, such as those generated by keys on the wafer and application-specific data. The data written in the transfer storage area in this way can be used by the service provider through the 7 paper sizes. The Chinese national standard (CNS) A4 specification (210X297 mm) is applicable. (Please read the notes on the back 1 · Items before filling · Loading— : Write this page) Order 491980 Μ Β7 2497pif.d〇c / 〇〇2 V. Description of the invention (f) (Please read the precautions on the back before filling this page) Take out and mark invalid 'If the process involves a service provider There is no specific application written, which is the so-called internal service (intergervice), that is, the exchange of currency data between cardholders and different service providers. Furthermore, for extra security, a PIN or password is provided as a correct proof of execution of the transaction procedure. The changed structure of the chip card can be used on the card for different numbers of applications. The data taken from the transfer storage area is preferably a signature key (signature key) or a digital signature or at least one key. However, in this article, this method is particularly beneficial if the fetched data is still in the transfer storage area and is only marked as having been fetched from the wafer. From this point of view, it is possible to obtain the information related to the transaction even if the transaction has occurred. By taking out the security protection of the data, it can ensure that the transaction is executed only once. Printed by the Consumer Standards Cooperative of the Central Bureau of Standards of the Ministry of Economics This method is particularly useful if the data written to the transfer storage area is appended with an expiration date when they have lost their value. Therefore, it is possible to carry out, for example, an application for one special period only. Using the transaction counter (COUNTER) transaction date, according to the individual price data of the relevant transaction can be correctly determined and certified. In an advantageous embodiment, the chip card according to the present invention therefore contains a hierarchical data base database concept. Different keys are used in each layer to protect it from modification, according to the application of data base storage The application level is variable. Each application is protected by its own special key independently of other applications. The entire structure is up to 8. This paper size applies the Chinese National Standard (CNS) A4 specification (210X297 mm) 491980. 2497pif ^ doc / 〇〇2 8 7 B7 5. Description of the invention (?) One system key is used to protect and the structure is identified by a password. The independent chip card receiving station itself. The transfer of stored data allows the exchange of data between cardholders and service providers and the exchange of data between different service providers. Moreover, reading or writing data from the transfer storage is guaranteed because the key design is like applying special keys and terminal special keys. According to the present invention, identification is performed before each transaction, and a PIN or password can be used to further increase the security protection of the chip card. Articles 21 to 30 of the scope of the patent application define a terminal (TERMINAL) for use with the chip card according to the present invention. This terminal is used to load or delete applications to perform transactions. Functions. The process of executing transactions between cardholders and service providers is defined in Articles 31 to 33 of the Declaration. Loading data into the chip card according to the present invention is defined in declarations 34 and 35 'and declaration 36 defines the entire system including the chip card and the terminal. The progress of the present invention is described below with reference to a preferred embodiment in conjunction with the accompanying drawings'. Figure 1: Block diagram of a chip card according to the present invention. Fig. 2: Schematic diagram of the entire system of the present invention. Printed by the Consumers' Cooperative of the Central Standards Bureau of the Ministry of Economic Affairs (please read the notes on the back before filling out this page) D. --- Port Figure 3: Data flow in the entire system. Figure 4: Possible applications through transaction mode Schematic diagram of classification and operation. Figure 5 ... Schematic diagram of the chip card security protection structure according to the present invention. Figure 6: Data structure of the general design type of VAS teller machine. This paper size applies the Chinese National Standard (CNS) A4 specification (210X297 mm) 491980 2497pif.doc / 〇〇2 A7 B7 V. Description of the invention (?) Same design type. Figure 8: An effective example according to the present invention , The basic structure of the data of the VAS teller machine. Figure 9: The basic structure of the DF_PT data basic structure. Figure 10: The design of the basic structure of the DF_AD data structure. Before describing the present invention, several items are defined. Below · · VAS · Value Added Services
VASK : VASK可參與價値附加服務的一種晶片卡。VAS 片除了其他應用程式例如付費應用程式(即電子錢包)也包 含VAS櫃員機。 VAS櫃員機:VAS櫃員機包含數據結構,路徑狀況鍵和 管理VAS —應用程式和VAS應用程式功能取得的(附加)指 令。 經濟部中央標準局員工消費合作社印製 (請先閲讀背面之注意事項再填寫本頁4 VAS應用程式:VAS應用程式包含VAS數據。到達VAS 數據的路徑由VAS應用程式控制。一個VAS提供者可在VAS 櫃員機中執行一個或多個VAS應用程式,VAS應用程式的 使用由VAS數據的應用,讀取及操作程序來定義。VAS應 用程式可以是內部服務或交互服務的形式。 VAS提供者·· VAS提供者負責VAS應用程式發展根據系 統操作者的基本條件,以及自己的決定和事後藉由它與終 端讓操卡者可以使用。VAS應用程式在VAS晶片卡的VAS 櫃員機未進行操作前即被載入當中。 內部服務:內部服務是一種個別VAS提供者專有管理 10 本紙張尺度適用中國國家標準(CNS ) A4規格(210X297公釐) 491980 2497pif.doc/002 A7 B7 經濟部中央標準局員工消費合作社印製 五、發明説明(公) 下使用的VAS應用程式,內部服務應用程式是封閉迴路應 用程式,意思是指沒有和外界的伙伴進行思考或執行之轉 移。 交互服務:交互服務應用程式是使用附加的外界連結 與外界伙伴連繫的內部服務應用程式。一個VAS應用程式 可以有內部服務或交互服務特性。 系統操作者(system operator):系統操作者提供VAS 提供者和操作者使用VAS系統。發行者(1881^〇:發行者發行^八8卡包括\^3櫃員機。 持卡者:持卡者或晶片卡所有人是擁有並使用晶片卡 (指VAS)來進行價値附加服務的人。追個人不一定是晶片 卡實際擁有者。 服務終端機(Service Terminal):服務終端機是爲VAS 應用程式而由系統操作者所建立。在服務終端機,持卡者 可以在它的VAS卡上管理VAS應用程式(載入、檢視、刪 除和轉移VAS應用程式)° 交易終端機(Dealer Terminal):交易終端機擁有付費 功能並且提供VAS功能。 在此持卡者使用VAS卡以便一方面付費,另一方面參 與VAS的利益。 應用程式認證者(Application Identifier)簡稱aid : 明確的誤差不長於十六位元應用程式的名字以及不知道晶 片卡數據基層結構來自外界的應用程式選擇。AID由五位 元長的登記的應用程式提供者認證者(WD)和不長於·ιι位 (請先閱讀背面之注意事項再填寫本胃) :裝.VASK: VASK is a chip card that can participate in additional services. The VAS film contains VAS ATMs in addition to other applications such as paid applications (ie, e-wallets). VAS ATM: The VAS ATM contains data structures, path status keys, and management (additional) commands obtained by the VAS — application and VAS application functions. Printed by the Consumer Cooperatives of the Central Standards Bureau of the Ministry of Economic Affairs (Please read the notes on the back before filling out this page. 4 VAS application: The VAS application contains VAS data. The path to the VAS data is controlled by the VAS application. A VAS provider can Execute one or more VAS applications in the VAS teller machine. The use of VAS applications is defined by the application, reading and operation of VAS data. VAS applications can be in the form of internal services or interactive services. VAS provider ·· The VAS provider is responsible for the development of the VAS application program according to the basic conditions of the system operator, as well as its own decisions and afterwards to make it available to the operator through the terminal and the terminal. The VAS application program is blocked before the VAS ATM of the VAS chip card is operated. Loading. Internal service: Internal service is an exclusive management of individual VAS providers. 10 paper sizes are applicable to Chinese National Standard (CNS) A4 specifications (210X297 mm) 491980 2497pif.doc / 002 A7 B7 Employees of the Central Standards Bureau of the Ministry of Economic Affairs Printed by Consumer Cooperatives V. VAS application used in invention description (public), internal service application A closed-loop application means a transfer without thinking or performing with an external partner. Interactive services: Interactive service applications are internal service applications that use additional external links to connect with external partners. A VAS application can have Internal service or interactive service features. System operator: The system operator provides VAS providers and operators to use the VAS system. Issuer (1881 ^ 〇: Issuer issues ^ 8 cards including \ ^ 3 ATMs. Card holder: The card holder or the owner of the chip card is the person who owns and uses the chip card (referred to as VAS) to perform price-added services. The chasing individual is not necessarily the actual owner of the chip card. Service Terminal: Service terminal The machine is created by the system operator for the VAS application. At the service terminal, the cardholder can manage the VAS application (load, view, delete, and transfer the VAS application) on its VAS card. ° Transaction terminal (Dealer Terminal): The transaction terminal has a payment function and provides a VAS function. Here the cardholder uses a VAS card to pay on the one hand , On the other hand, participate in the benefits of VAS. Application Identifier (aid for short): The clear error is not longer than the name of the 16-bit application and the application program that does not know the chip card data base structure comes from the outside. AID is determined by Five-digit registered application provider certifier (WD) and no longer than ιι bit (please read the precautions on the back before filling this stomach): installed.
、1T 本紙張尺度適用中國國家標準(CNS ) Α4規格(210X:W公楚 491980 kl B7 2497pif.doc/002 五、發明説明(y) 兀的專有應用程式認證者記錄器(Proprietary Application Identifier Registration)(PIX)所組成。 DF :根據 IS07861 的梅南檔案(Directory file) EF ··根據 IS07816 的基本檔案(Elementary file) 有效的VAS櫃員機:有能力認證與外在世界相關係的 VAS櫃員機。 KID:(鍵認證者)包括鍵基本檔案中鍵的個數 R&R :規則和規律 P :設計種類DIPT物件的最大個數。 a :設計種類DF_AD物件的最大個數。 nrDIR :物件的最大總數,:nrDIR=p+a L·· n rEF —TRANSFER · EF—TRANSFER 的記錄次數。 第1圖顯示依據本發明的晶片卡結構。 除了靜態沒有變化地在製造過程中加入數據例如主人 檔案MF和(可選擇性提供)錢包功能DF_purse,在晶片卡 上更提供根據本發明的一個索引或一個數據結構或數據基 層結構DF_VAS。這樣的服務爲容納額外的功能所謂價値附 加服務VAS。以這些代表在晶片卡製造成依可被載入晶片 卡的應用程式的額外功能爲基礎。卡的功能和可以執行的 交易是彈性的,可以改變的。根據本發明晶片卡上提供的 所謂VAS櫃員機(DF_VAS)允許晶片卡功能的可變性與彈 性,此外,也使晶片卡上的應用程式具安全技術保護地從 晶片卡接受台上釋出,它獨立於晶片卡接受台並且允許這 些程式轉移到另一塊晶片卡。 12 本紙張尺度適用中國國家標準(CNS ) A4規格(210X297公釐) : (讀先閱讀背面之注意事項再填寫本頁) 訂 經濟部中央標準局員工消費合作社印策 491980 2497pif.doc/002 A7 _竺7 五、發明説明(/〇 根據本發明(價値附加服務VAS)新的附加功能經由微 處理器晶片卡了解藉由VAS櫃員機可以進行這些附加功能 的轉換,微處理器晶片卡上VAS櫃員機構成了接受台容納 VAS應用程式。VAS應用程式便是特殊附加功能的個別了 解。當電子錢包經由晶片卡(付費功能)付費並且經由分別 的機制進行VAS應用程式(附加功能),然而在晶片卡使用 者或持卡者手中,兩者可以視爲單一程序。 微處理器晶片卡藉由可以容納多種獨立應用程式的 VAS櫃員機加以延伸。它使得這些應用程式可以運用刪除 或轉移,這些僅可由具權威的系統操作者使用。VAS櫃員 機從數據和安全技術保護的觀點獨立於微處理器晶片卡上 其他的系統元件。VASJK員機全部是自我定義乃自我功能 化。爲它定義了一個獨立的安全保護架構以便VAS應用程 式使用獨立的安全保護功能。 這些安全保護架構使用特殊的鍵,它並非特殊製造器, 並且獨立於晶片卡接受台的辨認特性。 經濟部中央標準局員工消費合作社印製 (請先閲讀背面之注意事項再填寫本頁) VAS應用程式也使用可以獲得終端特殊鍵的機制。藉 由這些VAS應用程式本身可以積極確定終端子以及個別由 它們產生的數據。 在VAS櫃員機中,VAS應用程式經由VAS櫃員機的作 用形成檔案使用可用的數據由此控制相關的4面點 (interface points) °VAS櫃員機也允許且控制同伴們 之間交互服務數據的安全交換。VAS櫃員機積極地進行控 制即轉換數據値的認證和唯一性。VAS櫃員機與其他多應 13 本紙張尺度適用中國國家標準(CNS ) A4規格(21〇X297公釐) ' :497pif.d〇c/002 ΚΊ Β7 經濟部中央標準局員工消費合作社印製 五、發明説明(//) 用程式晶片卡的步驟比較時的一項優點是這樣的觀點獨立 於特殊的晶片卡接受台。它提供一個安全保護架構獨立於 接受台特殊安全機制(例如:鍵、辨認數據、PIN、簽名程 序)。 VAS櫃員機觀念進一步的優點在於晶片卡不同的應用 程式個數不會在晶片卡製造或發行時事先嚴格地限制與預 設。目前將應用程式載入晶片卡可以自由地由晶片卡使用 者選擇並且僅受限於特殊晶片卡上可用儲存容量大小。 任何時間載入晶片卡VAS應用程式的個數端賴晶片卡 實際的使用。 晶片卡使用者個別裝配卡上的VAS應用程式;之後還 會需要修改這組合。VAS容納者允許一個多功能卡,在生 命周期中卡的功能可以組裝並依照應用程式的個數和性質 以不同的方式來使用。因此也有可能載入和使用單一晶片 卡應用程式以作爲過去個別特殊晶片卡所需。VAS應用程 式也可以被轉換成其他卡。如此,VAS應用程式可以超出 卡的生命周期繼續使用;在如此應用程式的生命周期中跟 隨者晶片卡的使用者。 具有附加服務的微處理器晶片卡是一種很適合的媒體 用於服務的分配和銷售,其路徑具有保護數據這樣的微處 理器晶片卡可以用作一種付費方式,一種計費單位和價値 儲存,它可以提供附加服務並且很彈性地在卡發行後用來 控制符合客戶需求。它也積極控制參與終端的認證和安全 保障轉換數據的唯一性和正確性。 (請先閱讀背面之注意事項再填寫本頁) -裝 訂 本紙張尺度適用中國國家標準(CNS ) A4規格(210X297公釐) 491980 A7 B7 2497pif.doc/002 五、發明説明(/〆) 第2圖··顯示一個系統區塊圖。它繪示了系統的元件。 一個系統操作者使系統可用。VAS應用程式可以在服務終 端機(ST)載入,刪除和轉移,進一步可以操作VAS應用程 式的選擇、檢視、翻譯等。 VAS應用程式的提供者,所謂VAS提供者依據系統操 作者的基本狀況設計他們自己的VAS應用程式並且儘可能 地依照他們自己的意思。對應的終端程式可以在後來檢查 其正確性並用數位簽名加以關閉。 第3圖:繪示系統中數據流程。 VAS應用程式經由系統操作者可在晶片卡使用者的終 端使用。相象本發明VAS應用程式必須在可能的作用發生 之後載入晶片卡的VAS櫃員機中。 在交易終端機(HT)出現在卡上的VAS應用程式用於VAS 數據的運用或刪除。 爲了提供微處理器晶片卡VAS功能,除了已存在的應 用程式(例如像電子錢包的付費應用程式)之外還加入了晶 片卡VAS櫃員機。 VAS櫃員機使用允許VAS應用程式的進入,刪除和轉 移的功能。這些管理功能由外在的系統操作者使用並且卡 中有安全保障不被外人使用。VAS櫃員機包含一個轉移數 據儲存庫可用於VAS應用程式之間執行數據交換。 兩個指令,轉移(TRANSFER)和取得(TAKE)用於控制轉 移儲存。指令★轉移 >在轉移儲存區產生一個空間收集特 別用於個別應用的數據。除了有實用的數據外,這些空間 (請先閱讀背面之注意事項再填寫本頁)、 1T This paper size applies the Chinese National Standard (CNS) A4 specification (210X: W Gongchu 491980 kl B7 2497pif.doc / 002 V. Description of the invention (y) Proprietary Application Identifier Registration ) (PIX). DF: Directory file according to IS07861 EF · · Elementary file according to IS07816 Valid VAS ATM: Ability to authenticate VAS ATMs related to the outside world. KID : (Key authenticator) Includes the number of keys in the key basic file R & R: Rules and regulations P: Maximum number of design type DIPT objects. A: Maximum number of design type DF_AD objects. NrDIR: Maximum total number of objects : NrDIR = p + a L · · n rEF —TRANSFER · EF —TRANSFER The number of records. Figure 1 shows the structure of the chip card according to the present invention. In addition to static, data such as the master file MF and master file MF and (Optionally available) Wallet function DF_purse, which provides an index or a data structure or data base layer structure DF_VAS according to the present invention on the chip card. This kind of service is called VAS additional service to accommodate additional functions. Based on these additional functions that are represented in chip cards manufactured by applications that can be loaded into chip cards. Card functions and transactions that can be executed are flexible, It can be changed. The so-called VAS teller machine (DF_VAS) provided on the chip card according to the present invention allows the variability and flexibility of the function of the chip card. In addition, it also enables the application program on the chip card to be safely released from the chip card receiving station with security technology. It is independent of the chip card receiving station and allows these programs to be transferred to another chip card. 12 This paper size applies to China National Standard (CNS) A4 specifications (210X297 mm): (Read the precautions on the back before filling in this Page) Ordered by the Central Bureau of Standards of the Ministry of Economic Affairs, Consumer Cooperatives, Cooperative Policy 491980 2497pif.doc / 002 A7 _ Zhu7 V. Description of the invention (/ 〇 According to the present invention (price plus service VAS), new additional functions are learned through the microprocessor chip card These additional functions can be converted by the VAS teller machine, and the VAS teller mechanism on the microprocessor chip card becomes the receiving table to accommodate VAS application. VAS application is an individual understanding of special additional functions. When the electronic wallet is paid through the chip card (pay function) and the VAS application (additional function) is performed through separate mechanisms, however, the chip card user or the card holder In the hands of the two, both can be viewed as a single procedure. The microprocessor chip card is extended by a VAS teller machine that can accommodate multiple independent applications. It enables these applications to use delete or transfer, which can only be used by authoritative system operators. The VAS teller machine is independent of other system components on the microprocessor chip card from the viewpoint of data and security technology protection. All VASJK aircraft are self-defined or self-functional. It defines an independent security protection architecture for VAS applications to use independent security protection functions. These security architectures use special keys, which are not special manufacturers and are independent of the identification characteristics of the chip card receiving station. Printed by the Consumers' Cooperative of the Central Standards Bureau of the Ministry of Economic Affairs (please read the notes on the back before filling this page) The VAS application also uses a mechanism to obtain special keys for the terminal. With these VAS applications, the terminals and the individual data generated by them can be positively identified. In the VAS teller machine, the VAS application forms a file through the function of the VAS teller machine and uses the available data to control the relevant 4 interface points. The VAS teller machine also allows and controls the secure exchange of service data between peers. VAS ATMs actively control the authentication and uniqueness of the converted data frame. VAS ATMs and other 13 paper sizes are applicable to Chinese National Standard (CNS) A4 specifications (21 × 297 mm) ': 497pif.d〇c / 002 ΚΒ Β7 Printed by the Consumers' Cooperative of the Central Standards Bureau of the Ministry of Economic Affairs Explanation (//) An advantage when using the program chip card comparison is that this view is independent of the special chip card receiving station. It provides a security protection architecture that is independent of the receiver's special security mechanisms (for example: keys, identification data, PIN, signature program). A further advantage of the VAS ATM concept is that the number of different application programs for chip cards is not strictly restricted and preset in advance when the chip card is manufactured or issued. At present, loading application programs into chip cards can be freely chosen by chip card users and is limited only by the amount of storage capacity available on special chip cards. The number of chip card VAS applications loaded at any time depends on the actual use of the chip card. The chip card user individually assembles the VAS application on the card; this combination will need to be modified later. The VAS holder allows a multi-function card. The functions of the card can be assembled and used in different ways according to the number and nature of applications in the life cycle. It is therefore also possible to load and use a single chip card application as required for individual special chip cards in the past. VAS applications can also be converted to other cards. In this way, the VAS application can continue to be used beyond the life cycle of the card; during the life cycle of such an application, the user of the follower chip card is followed. The microprocessor chip card with additional services is a very suitable medium for the distribution and sales of services. The path of the microprocessor chip card with data protection can be used as a payment method, a billing unit and price storage. It can provide additional services and is very flexible to control compliance with customer needs after the card is issued. It also actively controls the authentication and security of participating terminals to ensure the uniqueness and correctness of the converted data. (Please read the notes on the back before filling this page)-The size of the bound paper is applicable to the Chinese National Standard (CNS) A4 (210X297 mm) 491980 A7 B7 2497pif.doc / 002 5. Description of the invention (/ 〆) Section 2 Figure ·· Shows a system block diagram. It shows the elements of the system. A system operator makes the system available. VAS applications can be loaded, deleted, and transferred on the service terminal (ST), and the VAS applications can be selected, viewed, and translated. The providers of VAS applications, so-called VAS providers, design their own VAS applications based on the basic conditions of the system operators and try their best to follow their own wishes. The corresponding terminal program can later be checked for correctness and closed with a digital signature. Figure 3: Data flow in the system. The VAS application can be used by the system operator at the terminal of the chip card user. Similarly, the VAS application of the present invention must be loaded into the VAS teller machine of the chip card after a possible action occurs. The VAS application that appears on the card at the transaction terminal (HT) is used to use or delete VAS data. In order to provide the microprocessor chip card VAS function, a chip card VAS teller machine is added in addition to the existing applications (such as payment applications like e-wallets). VAS ATMs use functions that allow entry, deletion and transfer of VAS applications. These management functions are used by external system operators and the card has security to prevent them from being used by outsiders. The VAS ATM includes a transfer data repository that can be used to perform data exchange between VAS applications. Two instructions, TRANSFER and TAKE are used to control transfer storage. Instruction ★ Move > Create a space in the transfer memory area to collect data specifically for individual applications. In addition to practical data, these spaces (please read the notes on the back before filling this page)
、1T 經濟部中央標準局員工消費合作社印製 本紙張尺度適用中國國家標準(CNS ) Α4規格(21〇Χ297公釐) 經濟部中央榡準局員工消費合作社印製 491980 2497pif.d〇c/002 A7 B7 _ 五、發明説明(〇) 還包括了日期、終止日期以及控制流程所需的辨認數據。 使用指令'' 取得''物件會從轉移儲存區取出並且標示已被 取出。依照特殊的應用程式,物件被標示爲有效或已無效。 轉移後的數據由VAS櫃員機加以檢討其正確性和唯一性。 VAS應用程式使用VAS應用程式使應用程式可用並加以控 制。取得VAS數據的路徑由VAS應用程式使用VAS櫃員機 中所有應用程式皆適用的機制來控制。一個VAS提供者在 VAS櫃員機中操作一個或多個VAS應用程式。VAS應用程 式的使用由VAS數據的進入、讀取和處理來定義。 VAS櫃員機擁有交互服務。交互服務需要路徑取得一 般數據,轉移服務需求並發送不同伙伴之間的服務。 底下根據本發明參考幾個例子列出晶片卡可行的服務 和應用。 每一個例子依據目前的習知技藝敘述其功能及進一步 了解。將來功能可以由一個或多個應用程式模仿。 首先來看“內部服務”: 例子A:顧客倶樂部 一家百貨公司經營一個顧客倶樂部。顧客變成一位倶 樂部成員並且符合這個身份可接受非成員無法得到的特殊、 倶樂部服務。現在倶樂部成員以一份倶樂部員工文件在倶 樂部環境中認證身份。倶樂部員工文件在加入時就準備 好,不可轉移且依規定有其促限。倶樂部會員卡無法進行 特殊的父易,即沒有接顧客交易額。因此倶樂部會員卡與 存在於身份和交易額的紅利程式是分開的。 本紙張尺度適用中國國家標準(CNS ) Α4規格(2l〇^7^i7 (請先閲讀背面之注意事項再填寫本頁) ί裝· 491980 2497pif.doc/002 A7 B7 五、發明説明(//) 明 比照·批發商會員卡、_員卡、圖書會員卡。 目的·倶楽部成員可由VAS櫃員機中一個應用程式證 經濟部中央標準局員工消費合作社印製 例子B :紅利系統 一個顧客每次交易有紅利要求權。這紅利會累積並可 以在顧客決疋任何時間被換成貨幣利潤。紅利權在一定的 期限內有效並且可以不具名或屬名使用。紅利權隨交易額 或使用頻率而增加。 比照:邁爾與莫耳(Miles & M〇re)的記點身份。 目的:點數計算由VAS櫃員機中的一個應用程式來管 理。 例子C :折扣 顧客受到一份排定的交易折扣,這種折扣在每次交易 都有。晶片不管理交易的歷史,每次交易是獨立進行的。 目的:折扣授予由VAS應用程式認證。 例子D :認證文件功能 本人可以藉由晶片的性質向第三團體證明授予他的先 決服務。此人與認證文件的關連必須於每次的交易中確定 [圖片、個人身份號碼PIN、生物尺度(biometrics)]。認 證文件的身份用作一種安全保護特性。 比照:網路路徑、家庭銀行路徑、電話卡。 目的:正確性由VAS應用程式證明。 例子E :價値單位。 價値單位以單一或多重用途來購買或消費,每次交易 17 本紙張尺度適用中國國家標準(CNS ) A4規格(2丨〇><297公釐) (#.先閱讀背面之注意事項再填寫本頁) 一裝· 、?τ 經濟部中央標準局員工消費合作社印製 491980 24 97pif . doc/ 0 02 A7 ____ B7_ 五、發明説明() 這個價値會被減少一個或多個單位,使用者是可轉移的, 並且有用途的限制。 比照:單程旅行票據、單程旅行票據、捐款者音樂會 入場券、橡皮球戲+點券、電影入場券、電話單位。 目的:交易由VAS應用程式合理安排。 例子F :使用者發送。 服務的使用以時間、頻率和數量記錄並且根據價目表 提供。服務未被要求前無法事先知道。 比照:餐券、短期停票據。 目的:由VAS應用程式根據價目表允許提供服務。適 用每個特殊情況發送的數據會儲存在VAS櫃員機中。 例子G :數據記錄(可流動數據基層) 這個應用允許數據由持卡者轉移到VAS提供,交易因 而可自動進行。目前仍必須手工進行,從這些數據沒有余 錢轉移可得。 比照:完成游泳票、購物淸單、現金收據、電話註冊。 目的··一個VAS提供者可從晶片卡得到數據,因此可 以直接提供所需的服務(例如:提供電話連接’連結所需 的買賣、次數、泳票的電子組成和記錄)。數據可以短期 或長期儲存在晶片卡中。 底下就舉一些“交互服務”的例子。 當多個VAS提供參與服務中,交互服務便產生。這跟 離開一個VAS提供環境的數據一直相連接著。現在是由紙 張記錄(paper records)來進行。 18 本紙張尺度適用中國國家標準(CNS ) A4規格(21〇><297公釐) ~ (讀先閲讀背面之注意事項再填寫本頁} :裝' 訂 經濟部中央標準局員工消費合作社印製 491980 2497pif.doc/002 A7 B7 五、發明説明(/έ) 例子A :旅遊票價退還 一家百貨公司退還顧客到百貨公司使用大眾運輸交通 的旅行票。顧客必須給百貨公司單程旅行票。百貨公司在 票上記錄已被退還。有可能百貨公司輪流從大眾連輸退給 顧客部份的錢。 目的:退還程序由電子方式進行。 例子B:旅行券 百貨公司當發票買賣的價値爲歸程時退還顧客金錢。 顧客在售票公司接到(來自)一張大眾交通運輸的票或付低 於票價的價錢。交通運輸事業發送憑證給百貨公司。 目的:模仿VAS應用程式有關貿易和大眾交通事業之 間電子記帳機制。 例子C :顧客停車 當使用特別的停車庫時,百貨公司退還顧客部分的停 車費。停車庫由一個獨立事業操作並且每位顧客可以從百 貨公司收到金錢付費。 目的:模仿VAS應用程式有關貿易和停車車庫之間電 子記帳機制。 例子D :多邊紅利程式 一組貿易事業和服務提供者同意聯合紅利程式。 目的:每位伙伴可以存脹或記入借方欄以紅利點方式 非一般晶片卡上的記帳方式。伙伴之間的服務記帳用此系 統進行。 例子E:服務提供者之間紅利點的認同 19 本紙張尺度適用中國國家標準(CNS ) A4規格(210X297公釐) (誚先閲讀背面之注意事項再填寫本頁) 、τ 491980 2497pif.doc/002 A7 B7 經濟部中央標準局員工消費合作社印製 五、發明説明(/7) 每個服務提供者操作自己的紅利程式但跟其他取得同 意認同集合的紅利點。已知例子爲租車和航運哩數收集的 認同。 目的:支持紅利點對晶片卡的轉移。每個VAS提供者 一開始收集他自己的點數與其他人沒有干涉。某些機制體 可以轉移。 例子F :晚班計程車 購買大眾運輸公司的乘票據可以同時乘計程車(例如晚 上十點以後)爲了記帳目的,計乘車事業必須保證提供乘 票據,票上註明使用計程車以避免濫用。 目的:VAS應用程式允許這項服務的使用,控制和記 帳。 根據本發明底下更進一步敘述晶片卡的結構: 較特別的是具有VAS功能的微處理器晶片卡包含VAS 櫃員機。 VAS櫃員機獨立地建構一個應用程式並且單獨存在或 其至與基礎晶片卡接受台上的其他應用程式平行存在。VAS 櫃員機完全自己定義並擁有自我功能,它沒有付費功能仍 可操作,特別是VAS櫃員機定義一個獨立安全保護架構使 用VAS應用程式可以使用獨立安全保護功能。 部份的價値附加服務是由顧客在VAS提供者的終端機 進行交易。VAS提供者有意監視這些交易爲了系統控制的 目的或是收集統計的或其他的數據,爲了統一晶片卡上的 數據結構並達最佳化,應用程式的特殊辨識並不建議使 20 (請先閲讀背面之注意事項再填寫本頁) 本紙張尺度適用中國國家榡準(CNs ) Μ規格(210X297公釐) 491980 4 9 7p i f . doc /0 0 2 A7 B7 經濟部中央標準局員工消費合作社印製 五、發明説明(β) 用,而建議使用上述提供的功能因而減輕管理自我計數 (numbering)系統的負擔。 VAS櫃員機的安全保護架構使用這個系統廣泛明確的 身份證以便得到晶片卡特殊鍵。原則上可以使用晶片卡特 定號碼但最好不要因爲當VAS櫃員機在不同的接受台執行 時,某些情況可能會使用到相抵觸的計數系統。 VAS櫃員機身份證由系統作者提供,當製作VAS櫃員 機時由晶片卡發行者輸入。在刪除VAS櫃員機時它會跟著 破壞而從系統除去。假如不包含VAS應用程式並且VAS櫃 員機身份證被去除,VAS櫃員機就視爲已經被刪除。 在VAS櫃員機從舊的到新的晶片卡整個轉移過程中, VAS櫃員機身份證和VAS應用程式一起轉移。這樣的轉移 對應VAS櫃員機從舊的釓出放到新的晶片卡之後,舊的晶 片卡不再含有VAS櫃員機。而新的晶片卡上原有的VAS櫃 員機在操作中被覆蓋新的因而刪除。既然VAS容納哭器身 份證從舊的轉移到新的晶片卡,VAS提供者基本系統不需 要轉換參考號碼(reference numbers)。 個別VAS應用程式只要在現在的vas提供者控制之下 可以在兩個不同的vas櫃員機之間轉移,過程中vas櫃員 機身份證和VAS應用程式的關聯會改變,會被記錄在VAS 提供者基本系統中。 VAS櫃員機不包含個人化的特質。VAS應用程式可能含 有個人化的數據,但是爲了數據保護的理由並增加記憶體 使用儘量保持最少量個人化數據。VAS應用程式如果需要 本紙張尺度適用中國國家標準(CNS ) A4規格(210X297公釐) (讀先閲讀背面之注意事項再填寫本頁} -裝· 、11 491980 2497pif.d〇c/〇〇2 A7 ____ B7 經濟部中央標準局員工消費合作社印製 五、發明説明(7) 必須在基本系統中儲存個人相關數據並且利用VAS櫃員機 身份證產生與晶片卡的聯繫。 提供交互服務構成VAS櫃員機一個重要的特性。交互 服務fit要得到一般數據,服務要求的轉移和不同伙伴服務 的記帳的路徑。VAS櫃員機必須可以這樣做但是要確保內 部服務中的應用程式安全無虞。 所謂的內部服務VAS應用程式是在VAS提供者外在控 制下ί木作的應用程式。VAS提供者定義應用程式的安全性 獨立外界的事物。若沒有鍵打開外界是無法修改VAS數據 的。 爲了有效執行交互服務,同伴必須能夠枝得一般數據, 經由多步驟(mul t iple—s tep)安全保護機制可以了解取得 數據的連結路徑(joint access)。 連結路徑第一步經由大眾轉移範圍(publ i c t rans f er fields)前進。VAS提供者可以不需要鍵且不知道彼此的應 用程式經由這些場來交換數據。終端機僅需要適當的鍵把 數據輸入轉移範圍中,但要讀取則不能。任何人可以無限 制地讀取,假如兩者都有輸入料可用的鍮匙,VAS提供者 和同伴間兩方向皆可進行數據交換。轉移數據可以由VAS 提供者的內部服務VAS應用程式產生或相對地VAS提供者 可以將數據從轉移範圍送到他的內部服務VAS應用程式。 第二步是取消VAS數據所代表的價値單位。VAS提供 者將價値單位藉由一種輸入數據的特殊鍵引進VAS數據。 價値單位可經由交互服務的伙伴來消耗,他們具備來 22 本紙張尺度適用中國國家標準(CNS ) A4規格(210X297公釐) (請先閱讀背面之注意事項再填寫本頁) !0 ,項再填. 裝· 訂 491980 24 97pif . doc/0 〇2 A7 B7 經濟部中央標準局員工消費合作社印製 五、發明説明(>) 自整體負責的VAS提供者用於作單位消除的一種鍵。在這 個階段’伙伴們擁有相互不同的權利與私人VAS數據有交 互作用。 第三個步驟是無由所有參與的交服務把直接數據送 入VAS數據的路徑。這個方法需要伙伴間適當程度的信任, 因爲VAS數據可以不受限制地被修改。 轉移範圍充當VAS應用程式之間的連結。轉移範圍的 數據由VAS櫃員機中VAS應用程式所產生。假如這樣做的 人不會用到他自己的VAS應用程式,數據也可直接輸入轉 移範圍。 原則上轉移範圍可用於所有的應用程式,然而只有授 予鍵者可以進入,只有依據規則即規則R&R授予權利的接 收者可以從轉移範圍移去數據。接收者檢查送給他的轉移 數據並且在他自己的系統中取出這些數據。 爲了避免在大眾交換中操作轉移數據,生產者引進一 種認證特性並且VAS櫃員機引進一種序號。轉送報導的唯 一性由這些元素確保也保證數據的原貌。 必要時,生產者提供轉移數據的接收者,執行正確性 檢驗的方法。如果不需要數據會準確地數到。那時只有當 生產VAS提供者的基本系統中需要記帳時才會檢驗正確特 性。 數據由轉移範圍取出不失去正確性只有一次機會。取 出時數據被作記號且以副具保留在轉移範圍中。如此可確 保即使數據取出一段時間轉移程序的正確性。 23 (請先閲讀背面之注意事項再填寫本頁) %·、 1T Printed by the Consumer Cooperatives of the Central Standards Bureau of the Ministry of Economic Affairs This paper is printed in accordance with the Chinese National Standard (CNS) A4 specification (21 × 297 mm) Printed by the Consumer Cooperatives of the Central Standards Bureau of the Ministry of Economy 491980 2497pif.d〇c / 002 A7 B7 _ V. The description of the invention (〇) also includes the date, the end date and the identification data required for the control process. Using the command `` Get '' the object will be removed from the transfer storage area and marked as removed. Objects are marked as valid or invalid according to a special application. The transferred data is reviewed for correctness and uniqueness by a VAS teller machine. The VAS application uses the VAS application to make the application available and controlled. The path to obtain VAS data is controlled by the VAS application using a mechanism applicable to all applications in the VAS teller machine. A VAS provider operates one or more VAS applications in a VAS teller machine. The use of VAS applications is defined by the entry, reading and processing of VAS data. VAS teller machines have interactive services. Interactive services require paths to obtain general data, transfer service requirements, and send services between different partners. The following list of possible services and applications for chip cards according to the invention with reference to several examples. Each example describes its function and further understanding based on current know-how. Future functionality can be mimicked by one or more applications. First look at "internal services": Example A: Customer club A department store runs a customer club. The customer becomes a club member and meets this status to accept special, club services that are not available to non-members. Club members now verify their identity in the club environment with a club employee file. Club employee documents are prepared upon joining and are non-transferable and subject to restrictions as required. Club membership cards are not eligible for special parent transactions, that is, they do not pick up customer transactions. Therefore, the club membership card is separate from the bonus program that exists in the identity and transaction amount. This paper size applies the Chinese National Standard (CNS) Α4 specification (2l〇 ^ 7 ^ i7 (please read the precautions on the back before filling this page). 491980 2497pif.doc / 002 A7 B7 V. Description of the invention (// ) Mingbi · Wholesaler membership card, _member card, book membership card. Purpose · The members of the ministry can print an application in a VAS teller machine to print an example of the employee ’s consumer cooperative of the Central Standards Bureau of the Ministry of Economics. Example B: Bonus system. Dividend claim. This bonus will accumulate and can be exchanged for monetary profit at any time when the customer decides. Dividend right is valid for a certain period and can be used anonymously or generically. Dividend right increases with the transaction amount or frequency of use. Contrast: Miles & Moore's point-to-point identity. Purpose: Point calculations are managed by an application in a VAS teller machine. Example C: Discount customers receive a scheduled transaction discount. This discount is available for each transaction. The chip does not manage the history of the transaction, and each transaction is conducted independently. Purpose: The discount is granted by the VAS application. Example D: Recognition Document function I can prove to the third party the prerequisite service granted to him by the nature of the chip. This person's connection with the authentication document must be determined in each transaction [picture, personal identification number PIN, biometrics]. The identity of the authentication document is used as a security protection feature. Comparison: Internet path, home banking path, phone card. Purpose: The correctness is proved by the VAS application. Example E: Price unit. Price unit is purchased or consumed for single or multiple purposes. 17 papers per transaction are applicable to China National Standard (CNS) A4 specifications (2 丨 〇 < 297 mm) (#. Please read the precautions on the back before filling this page) One pack ·,? Τ Economy Printed by the Consumer Standards Cooperative of the Ministry of Standards of the People's Republic of China 491980 24 97pif .doc / 0 02 A7 ____ B7_ V. Description of the invention () This price will be reduced by one or more units, the user is transferable, and there are restrictions on use. Contrast: one-way travel ticket, one-way travel ticket, donor concert ticket, rubber ball + point ticket, movie ticket, telephone unit. The transaction is reasonably arranged by the VAS application. Example F: Send by the user. The use of the service is recorded in time, frequency and quantity and provided according to the price list. The service cannot be known before it is requested. Comparing: meal coupons, short-term stop bills. Purpose : The VAS application allows the service to be provided according to the price list. The data sent for each special case will be stored in the VAS ATM. Example G: Data recording (mobile data base) This application allows data to be transferred by the cardholder to the VAS Therefore, the transaction can be carried out automatically. At present, it must still be carried out manually, and no spare money can be transferred from these data. Comparison: Complete swimming ticket, shopping list, cash receipt, telephone registration. Purpose · A VAS provider can obtain data from chip cards, and therefore can directly provide the required services (for example: providing telephone connections' links to purchases, sales, electronic composition and records of swimming tickets). The data can be stored on the chip card in the short or long term. Here are some examples of "interactive services". When multiple VAS provide participation services, interactive services are generated. This has been linked to data leaving a VAS-provided environment. It is now done with paper records. 18 This paper size applies the Chinese National Standard (CNS) A4 specification (21〇 > < 297 mm) ~ (Read the precautions on the back before filling out this page}: Bookmark the 'Staff Consumer Cooperative of the Central Standards Bureau of the Ministry of Economic Affairs Printing 491980 2497pif.doc / 002 A7 B7 V. Description of Invention (/) Example A: Travel fare refund A department store refunds a travel ticket from a customer to a department store using public transportation. The customer must give the department store a one-way travel ticket. The department store records that the ticket has been refunded. It is possible that the department store took turns losing money from the public to the customer. Purpose: The refund process is performed electronically. Example B: Travel voucher department store when the invoice purchase price is the return journey The customer's money is refunded. The customer receives (from) a ticket for public transportation at the ticketing company or pays less than the fare. The transportation business sends a voucher to the department store. Purpose: To imitate the VAS application on trade and public transportation Electronic billing mechanism between businesses Example C: Customer parking When a special parking garage is used, the department store refunds the customer's parking The parking garage is operated by an independent business and each customer can receive money to pay from the department store. Purpose: To imitate the VAS application regarding the electronic billing mechanism between trade and parking garages. Example D: Multilateral bonus program for a group of trading businesses and services The provider agrees to the joint bonus program. Purpose: Each partner can inflate or credit the debit column with a bonus point method other than the general chip card billing method. Service billing between partners is performed using this system. Example E: Service Provider Recognition of bonus points 19 This paper size is applicable to Chinese National Standard (CNS) A4 (210X297 mm) () Please read the notes on the back before filling this page), τ 491980 2497pif.doc / 002 A7 B7 Central Standard of the Ministry of Economic Affairs Printed by the Bureau ’s Consumer Cooperatives. 5. Description of the Invention (/ 7) Each service provider operates its own bonus program but collects the bonus points with other consent groups. Known examples are the identification of car rental and shipping mileage collection. Purpose: Support the transfer of bonus points to chip cards. Each VAS provider collects his own points at the beginning, unlike others There is interference. Some mechanisms can be transferred. Example F: Evening taxis can purchase taxi tickets of public transportation companies at the same time (for example, after 10 pm). For accounting purposes, the taxi business must ensure that the tickets are provided. Indicate the use of a taxi to avoid abuse. Purpose: The VAS application allows the use, control, and billing of this service. According to the present invention, the structure of the chip card is further described: More specifically, the microprocessor chip card with VAS function contains VAS ATM: The VAS ATM independently constructs an application and exists alone or in parallel with other applications on the base chip card receiving desk. The VAS teller machine is completely self-defined and has its own functions. It can be operated without paying functions. In particular, the VAS teller machine defines an independent security protection structure. The VAS application can use independent security protection functions. Part of the price / additional services are performed by customers at the VAS provider's terminal. The VAS provider intentionally monitors these transactions for system control purposes or collects statistical or other data. In order to unify the data structure on the chip card and optimize it, the special identification of the application program does not recommend using 20 (read first Note on the back, please fill in this page again) This paper size is applicable to China National Standards (CNs) M specifications (210X297 mm) 491980 4 9 7p if. Doc / 0 0 2 A7 B7 5. Description of the invention (β), and it is recommended to use the functions provided above to reduce the burden of managing self-numbering systems. The security protection architecture of the VAS teller machine uses this system's broad and clear identity card to get special keys for chip cards. In principle, chip card-specific numbers can be used but it is best not to use conflicting counting systems in some cases when VAS tellers are executed at different reception desks. The VAS ATM ID is provided by the system author and entered by the chip card issuer when making the VAS ATM. When the VAS teller machine is deleted, it will be removed from the system following the destruction. If the VAS application is not included and the VAS ATM ID is removed, the VAS ATM is considered deleted. During the entire transfer process of the VAS ATM from the old to the new chip card, the VAS ATM ID and the VAS application are transferred together. This transfer corresponds to the release of the VAS teller machine from the old one to the new chip card. The old chip card no longer contains the VAS teller machine. The original VAS ATM on the new chip card was overwritten during operation and was deleted. Since the VAS accommodates the ID card holder from the old to the new chip card, the VAS provider basic system does not need to switch reference numbers. Individual VAS applications can be transferred between two different vas teller machines under the control of the current vas provider. During the process, the association between the vas teller machine ID and the VAS application will change and will be recorded in the VAS provider basic system in. VAS ATMs do not contain personal qualities. VAS applications may contain personalised data, but for data protection reasons and increased memory usage, try to keep the smallest amount of personalised data. VAS application If the paper size is required, the Chinese national standard (CNS) A4 specification (210X297 mm) is applied (read the precautions on the back before filling in this page)-installed, 11 491980 2497pif.d〇c / 〇〇2 A7 ____ B7 Printed by the Consumer Cooperatives of the Central Standards Bureau of the Ministry of Economic Affairs 5. Description of the invention (7) Personal data must be stored in the basic system and contact with the chip card must be generated using the VAS ATM ID. Providing interactive services constitutes an important VAS ATM The characteristics of the interactive service fit are to obtain general data, the transfer of service requirements and the path of accounting for different partner services. The VAS teller machine must be able to do so but to ensure that the applications in the internal service are secure. The so-called internal service VAS application It is a wooden application under the external control of a VAS provider. The VAS provider defines the security of the application and is independent of external things. Without the key to open the outside, VAS data cannot be modified. In order to effectively perform interactive services, the companion must Able to get general data, through multi-step (mul t iple-s tep) security protection machine The system can understand the link access to obtain data (joint access). The first step of the link path is through the public transfer fields (publ ict rans fer field). VAS providers can use these fields without the need for keys and do not know each other's applications Exchange data. The terminal only needs the appropriate keys to enter data into the transfer range, but it ca n’t read it. Anyone can read it unlimitedly. If both have input keys available, VAS providers and companions Data can be exchanged in both directions. The transfer data can be generated by the VAS provider's internal service VAS application or, in contrast, the VAS provider can send data from the transfer area to his internal service VAS application. The second step is to cancel The price unit represented by the VAS data. The VAS provider introduces the price unit to the VAS data through a special key for inputting data. The price unit can be consumed by partners who interact with the service. They have 22 paper standards that are applicable to Chinese national standards (CNS ) A4 size (210X297mm) (Please read the notes on the back before filling out this page)! 0, fill in the items again. · Order 491980 24 97pif.doc / 0 〇2 A7 B7 Printed by the Consumer Cooperatives of the Central Standards Bureau of the Ministry of Economic Affairs. 5. Description of the invention (>) The VAS provider responsible for the unit as a key for unit elimination. At this stage 'Partners have mutually different rights to interact with private VAS data. The third step is the path for direct data to be entered into VAS data by all participating services. This method requires an appropriate level of trust between partners because VAS Data can be modified without restrictions. The transfer scope acts as a link between VAS applications. The transfer range data is generated by the VAS application in the VAS teller machine. If the person doing this does not use his own VAS application, the data can also be entered directly into the transfer range. In principle, the transfer range can be used for all applications, but only those who grant the key can enter, and only the recipients who have been granted rights according to the rule, namely the rule R & R, can remove data from the transfer range. The recipient checks the transfer data sent to him and retrieves the data in his own system. In order to avoid operating transfer data in mass exchange, producers introduce a certification feature and VAS teller machines introduce a serial number. The uniqueness of the forwarding report is ensured by these elements as well as the original appearance of the data. When necessary, the producer provides the recipient of the transferred data and performs a correctness check. If the data is not needed, it will be counted accurately. At that time, correct characteristics were checked only when accounting was required in the basic system that produced the VAS provider. There is only one chance for data to be retrieved from the transfer range without losing accuracy. The data is marked at the time of extraction and retained in the transfer range as a vice. This ensures the correctness of the transfer procedure even if the data is removed for a period of time. 23 (Please read the notes on the back before filling this page)% ·
、1T 本紙張尺度適用中國國家標準(CNS ) A4規格(210X297公釐) 經濟部中央標準局員工消費合作社印袋 491980 2497pif.doc/002 A7 B7_ 五、發明説明(>0 在轉移範圍中的數據帶有一個終止日期。被終止的數 。轉移範圍中的數 據在取出時就做了記號因而不會立刻被取代。然而如果轉 移儲存區在一組轉移數據截止已完全被塡滿了,持久者必 須在服務終端機上刪去不再需要的內容。 爲VAS應用程式的模式化定義三種操作。這些操作作 用在VAS數據上。應用程式的載入和刪除是VAS櫃員機的 功能,底下的文章中不考慮。 購物:一般爲給予服務的購物且建立當案拿證明在VAS 應用程式的VAS數據中。 取消:一般指沒有或完全或部份使用到應用程式的VAS 數據授予服務的屐行。這個程序產生一個電子收據存在轉 移範圍中。這份收據計著一個適當的終止日期,到時可以 從轉移儲存區將它刪去。 取出:一般指電子收據從轉移範圍取回作進一步的程 序(例如基本系統)。保留一份收據備份並當作取消的證 明。 VAS數據的”獲得”只有透過個別的VAS提供者進行。VAS 數據的”取消”只有經由利用購物或VAS提供者認證的交互 服務伙伴產生服務的VAS提供者才會發生。”取出”也可以 由任何其他的VAS提供者執行。一個交互服務進入VAS數 據沒有同等權利將引起伙伴”徹出”身份轉移。如此發現的 電子收據會被系統操作者和VAS提供者的本系統來記帳。 “購物”和“取消”可以在單一步中發生。 24 本紙張尺度適用中國國家標準(CNS ) A4規格(210X297公釐)" ' ' (請先閱讀背面之注意事項再填寫本頁) -装· 訂 491980 2497pif.d〇c/0〇. A7 B7 經濟部中央標準局員工消費合作社印製 五、發明説明(》) 具有相同特性的VAS應用程式可以區分爲幾類。這些 類別構成VAS櫃員機中數據結構的基礎。當執行應用程式 時VAS提供考選擇一種應用程式類別。 在本文’中定義底下的應用程式類別: •點數數據庫 •票據 •辨識文件 •憑證 •數據庫 點數數據庫指的是使用點數價値記帳的一種應用程式 類別’由進入或取出點數帳戶,價値可以被記錄和消去。 透過VAS提供者進行價値的登記,因而數據庫進入新的記 帳平衡。經由”取消,,操作電子收據存在轉移儲存區當證明 進行價値的借方登記。進入這兩項功能要靠兩種不同的路 徑鍵來達成。 “票據”代表一種存在價値場可被取消且消失一次或多 次的一種應用程式類別。應用程式類別中的價値記帳,” 票據”只可以執行一次。 辨識文件代表VAS數據接收授予證明的一種應用程式 類別。證明通常不被使用而取消。然而預定標準之後例如 一段時間後,它就失去效用。根據應用程式的定義依靠應 用程式的設計辨識文件的正確性或者發出文件的行爲會加 以文件化,例如:使用月票的團體計程車旅程:晶片卡產 生電子收據。收據由計程車業提交到大眾運輸公司並且記 25 本紙張尺度適用中國國家標準(CNS ) A4規格(210X297公釐)~爾 (請先閱讀背面之注意事項再填寫本頁) :裝·、 1T This paper size applies the Chinese National Standard (CNS) A4 specification (210X297 mm). Printed bags for employees' cooperatives of the Central Standards Bureau of the Ministry of Economic Affairs 491980 2497pif.doc / 002 A7 B7_ 5. Description of the invention (> 0 The data has an expiration date. The number is terminated. The data in the transfer range is marked when it is taken out and will not be replaced immediately. However, if the transfer storage area is completely full at the end of a set of transfer data, it will be durable. The user must delete the content that is no longer needed on the service terminal. Define three operations for the VAS application model. These operations operate on the VAS data. Loading and deleting applications is a function of the VAS teller machine, the article below Not considered. Shopping: Generally, the service is given for purchase and the certification is established in the VAS data of the VAS application. Cancellation: Generally refers to the behavior of the VAS data grant service that does not use the application completely or partially. This procedure generates an electronic receipt that is stored in the transfer area. This receipt counts for an appropriate expiration date, at which time Delete it in the storage area. Take out: Generally refers to the receipt of electronic receipts from the transfer area for further procedures (such as the basic system). Keep a copy of the receipt and use it as proof of cancellation. The "access" of VAS data is only through individual VAS provider. "Cancellation" of VAS data will only occur if the VAS provider generated the service by using an interactive service partner authenticated by shopping or VAS provider. "Fetch" can also be performed by any other VAS provider. An interaction There is no equal right for the service to enter VAS data and it will cause the partner to "exit out" identity transfer. The electronic receipt thus discovered will be recorded by the system operator and the VAS provider's system. "Shopping" and "Cancel" can occur in a single step . 24 This paper size applies the Chinese National Standard (CNS) A4 specification (210X297 mm) " '(Please read the precautions on the back before filling out this page)-binding 491980 2497pif.d〇c / 0〇. A7 B7 Printed by the Consumer Cooperatives of the Central Standards Bureau of the Ministry of Economic Affairs 5. Description of the invention (") VAS applications with the same characteristics can be divided into several These categories form the basis of the data structure in the VAS teller machine. VAS provides a choice of application categories when executing applications. The following categories of applications are defined in this article: • Points database • Tickets • Identification documents • Vouchers • Databases The credits database refers to an application category that uses credits and credits for billing. By entering or withdrawing credits, credits can be recorded and deleted. The credits are registered through the VAS provider, so the database enters a new accounting balance. "Cancel, the operation of the electronic receipt exists in the transfer storage area as proof of price debit registration. Access to these two functions is accomplished by two different path keys. A "ticket" represents an application category where the presence market can be cancelled and disappeared one or more times. Price billing in the application category, "tickets" can only be executed once. The identification file represents an application category for the certificate of receipt of VAS data. Proofs are usually cancelled without being used. However, after a predetermined standard, for example, after a period of time, it becomes ineffective. According to the definition of the application, depending on the design of the application to identify the correctness of the document or the act of issuing the document will be documented, for example: a group taxi journey using a monthly pass: an electronic receipt generated by a chip card. The receipt is submitted to the public transportation company by the taxi industry and the 25 paper sizes are applicable to the Chinese National Standard (CNS) A4 specification (210X297 mm) ~ Seoul (please read the precautions on the back before filling this page):
、1T 491980 A7 B7 2497pif.doc/002 五、發明説明) 帳。辨識文件可選擇式的在晶片卡的轉移儲存區中經由電 子收據加以文件化。 憑證代表用以將服務提供放在晶片卡臨時儲存區的一 種應用程式類別。這些電子憑證額外儲存在VAS櫃員機的 轉移儲存區中。使用憑證的應用程式按規定不可同於生產 的應用程式。憑證從轉移儲存區取出僅可使用一次並且由 晶片卡加以茭件化。在基本系統的記憶中可由VAS櫃員機 產生的正確性特質。 數據記憶體(Data memory)代表,VAS提供者儲存數據 於VAS櫃員機以提供顧客額外服務(例如:速食餐廳的最 新菜單、備用號碼最新號碼、服務趨向、建議欄)這些數 據僅作爲資訊用對VAS提供者不可要求任何服務。達到數 據的路徑由VAS提供者控制。 每個應用程式類別具有傳統使用周期的特徵,底下的 表繪示以上定義的三種操作用於應用程式類別的VAS數據 的頻率(請注意·· “購物,’不意謂“載入應用程式,,且“取出,,不 表示”刪去應用程式。) (祷先閱讀背面之注意事項再填寫本頁) ;裝· 、訂 經濟部中央標準局員工消費合作社印製 26 本紙張尺度適用中國國家標準(CNS ) A4規格(21〇χ297公釐) 491980 kl 五、發明説明(W) _「__1表1.使用_期 2497pif.doc/002 點數4 票據 身份 憑證 數據記憶體 數據庫 購買 複數 單數 單數 單數 複數*** 取消 複數 複數 複數 單數 不用 取出 複數 複數 複數 單數 不用 ***在應用程式類別”數據記憶體"中不要求使用權,應 用僅將數據放入應用程式中。 第4圖繪不上列應用程式類別和經由交易模型的操 作。 根據本發明底下將一步探討晶片卡的安全架構〇爲了 確保安全性,定義了底下的鍵。 ^ (讀先閱讀背面之注意事項再填寫本頁) 經濟部中央標準局員工消費合作社印製 名字 地點 表2.鍵表 --__— 擁有者 -------- 敘述 Kso VAS櫃員機 系統操作者 管理VAS櫃員機的鍵 KaUT VAS櫃員機 系統操作者 認證VAS櫃員機的鍵 KsiGVASC VAS櫃員機 系統操作者 將父易數據譯成密碼的鍵 KGKoec VAS櫃員機 系統操作者 獲侍 KGKDED PIX 的鍵____ KlVASP VAS應用程式 VAS提供者 寫入VAS數據的鍵 KrvaSP VAS應用程式 VAS提供者 讀取VAS數據的鍵 KGKDECi PIX VAS提供者 VAS提供者 獲得KDEC的鍵 ^DEC 交易終端機 VAS提供者 認證交易終端機的鍵 27 本紙張尺度適用中國國家標準(CNS ) A4規格(210X 297公釐) 經濟部中央標準局員工消費合作社印製 491980 2497pif.doc/002 A7 B7 五、發明説明( 安全架構是以VAS櫃員機或VAS應用程式的生周期爲 基礎並且依據參與實例的責任加以分層管理。從第5圖可 以得到明顯的圖解說明。 底下說明一下VAS櫃員機以及所使用應用程式的結 構。 VAS櫃員機以及VAS特殊補充的指令不是由發行者連 結其他非VAS應用程式使用於晶片卡上就是最晚由授權的 VAS提供者放入在服務終端機上現行的晶片卡接受台。 底下是第二種可能的機制:系統操作者認同發行者於 一種暫時鍵KSQ*。發行者以只有他知道的鍵打開晶片卡, 建立VAS櫃員機的檔案並且特別將KSQ*寫進DF_VAS。系統 操作者後來(例如晶片卡第一次與服務終端機取得連繫)以 只有他知道的鍵KSQ取代鍵KSQ*。系統操作者現在可以輸 入進一步的數據例如KGKDEC或可能他自己在具有動態記憶 體管理的接受台時產生或刪去VAS應用程式檔案。如此可 確保VAS卡在第一次使用後發行者不再能夠進入VAS櫃員 機而只有系統操作者可以進入。因爲缺乏任何數據結構以 及與其他應用程式的數據交換,VAS櫃員機的安全架構因 而獨立於出現在晶片卡接受台上的其他應用程式。 在本發明使用的一個特殊實施例稱爲第一種可能中: 發行者必須有系統操作者的指示才能使VAS櫃員機包括 VAS晶片卡上所有的鍵。 VAS櫃員機由一預設的數據結構,預定的路徑條件(Acs) 和一些大體(global)的數據組成。大體的數據包括用以載 28 本紙張尺度適用中國國家標準(CNS )八4娜(21〇Χ297公楚) 一:- (請先閱讀背面之注意事項再填寫本頁) -裝· 訂 491980 2497pif.doc/002 A7 B7 經濟部中央標準局員工消費合作社印策 五、發明説明(W) 入或刪除應用程式的鍵ksq。使用這把僅有系統操作者知 道的鍵可以確保僅有被允許的VAS應用程式可以載入。因 此晶片卡需要由系統操作者對KSQ作外界的驗證。 只要持卡者想要在服務終端機上載入VAS應用程式, 可使用的VAS提供者就會指示系統操作依令行事。當載入 VAS應用程式於VAS櫃員機時VAS提供者鍵KuASP和KRVASP 轉移到之後將這些鍵放入應用程式的系統操作者手上。鍵 KRVASP允許VAS提供者保護應用程式數據避免被寫入並且 另外內部的數據也不會被讀取。因此晶片卡需要VAS提供 者以KLVASP爲基礎的外界驗證,即晶片卡積極地檢查終端 機的正確性。在成功地執行這項功能之後,終端機上被允 許寫入VAS應用程式並且也可以讀取應用程式中的內部 VAS數據。一個內部的驗證即藉由交易終端機檢查VAS應 用程式(以及晶片卡)的正確性可以選擇性地發生。當VAS 應用程式由持卡者使用時,這些內部VAS數據可以寫入應 用程式或布具有取得K^ASP鍵路徑的選擇性終端機上修 改。”購買”功能因此可由更新記錄(UPDATE RECORD)指令 來達成它必須使用KtVASP鍵作外界驗證才能進行。 僅當之前由KRVASPS Ks。或PIN正確路徑或系統操作者 的密碼作外界的驗證讀取VAS應用程式所有非內部的數據 才被允許。提供PIN/密碼(Password)保護路徑用以允許持 卡者觀察終機或皮夾上的數據。持卡者可以在服務終端機 上選擇性地產生或去除讀取價値或身份數據的PIN/密碼保 護。 29 (請先閱讀背面之注意事項再填寫本頁) -裝.1T 491980 A7 B7 2497pif.doc / 002 V. Description of the invention). The identification file is optionally documented via an electronic receipt in the transfer storage area of the chip card. A certificate represents an application category used to place service offerings in the chip card's temporary storage area. These electronic vouchers are additionally stored in the transfer storage area of the VAS ATM. An application that uses a certificate must not be the same as a production application. The voucher is removed from the transfer storage area and used only once and is documented by the chip card. The correctness trait that can be generated by the VAS teller in the memory of the basic system. Data memory (Data memory) represents that VAS providers store data on VAS teller machines to provide additional services to customers (for example: the latest menu of fast food restaurants, the latest numbers of backup numbers, service trends, and suggestion columns). These data are only used for information. VAS providers must not request any services. The path to the data is controlled by the VAS provider. Each application category has the characteristics of a traditional usage cycle. The table below shows the frequency of the three operations defined above for the VAS data of the application category (please note that "shopping, 'does not mean" loading the application, And "remove, do not show" delete the application.) (Please read the precautions on the back before filling in this page); install, and order printed by the Central Consumers Bureau of the Ministry of Economic Affairs, Consumer Cooperatives 26 This paper size applies to Chinese national standards (CNS) A4 specification (21 × 297 mm) 491980 kl V. Description of the invention (W) _ "__1 Table 1. Use _ period 2497pif.doc / 002 points 4 ticket ID voucher data memory database purchase plural singular singular singular Plural *** Cancel plural, plural, singular, do not take out plural, plural, singular, and *** do not require usage rights in the application category "data memory", the application only puts data into the application. Figure 4 does not show the application categories and operations via transaction models. According to the present invention, the security architecture of the chip card will be discussed in one step. In order to ensure security, the keys below are defined. ^ (Read the precautions on the back before filling out this page) Printed Names and Locations Table of Employees' Cooperatives of the Central Standards Bureau of the Ministry of Economic Affairs 2. Key Table --__— Owner -------- Describe Kso VAS ATM system Operator manages the keys of VAS teller machine KaUT VAS teller machine keys Operator authentication key of VAS teller machine KsiGVASC VAS teller machine key that translates parent easy data into password KGKoec VAS teller machine operator receives key of KGKDED PIX ____ KlVASP VAS application Key for program VAS provider to write VAS data KrvaSP VAS Application key for VAS provider to read VAS data KGKDECi PIX VAS provider VAS provider to obtain KDEC key ^ DEC Trading terminal VAS provider key to authenticate trading terminal 27 This paper size applies to Chinese National Standard (CNS) A4 (210X 297 mm) Printed by the Consumer Cooperative of the Central Standards Bureau of the Ministry of Economic Affairs 491980 2497pif.doc / 002 A7 B7 V. Description of the invention (The security architecture is based on a VAS teller machine or VAS The life cycle of the program is based on and is managed hierarchically according to the responsibilities of participating instances. From Figure 5, it is obvious that The following explains the structure of the VAS teller machine and the applications used. The VAS teller machine and the special supplementary instructions of the VAS are either linked by the publisher to other non-VAS applications and used on the chip card, or put in by the authorized VAS provider at the latest. The current chip card receiving station on the service terminal. Below is the second possible mechanism: the system operator agrees with the issuer on a temporary key KSQ *. The issuer opens the chip card with a key only known to him, and establishes the VAS teller machine. File and specifically write KSQ * into DF_VAS. The system operator later (for example, the chip card first contacts the service terminal) replaces the key KSQ * with the key KSQ that only he knows. The system operator can now enter further data For example, KGKDEC or he may generate or delete VAS application files when receiving desks with dynamic memory management. This ensures that after the first use of the VAS card, the issuer can no longer access the VAS teller machine and only the system operator can In. Because of the lack of any data structure and data exchange with other applications, VAS tellers The security architecture is thus independent of other applications appearing on the chip card receiving desk. In a special embodiment used in the present invention is called the first possibility: The publisher must have the instructions of the system operator to enable the VAS teller machine to include VAS All keys on the chip card. The VAS teller machine consists of a preset data structure, predetermined path conditions (Acs) and some general (global) data. The general data includes 28 paper sizes which are applicable to Chinese National Standards (CNS), Ba Na (21〇 × 297). 1: (Please read the precautions on the back before filling out this page)-Binding · Order 491980 2497pif .doc / 002 A7 B7 The policy of employee consumer cooperatives of the Central Standards Bureau of the Ministry of Economic Affairs. 5. Description of invention (W) The key ksq for entering or deleting applications. Using this key, which is known only to the system operator, ensures that only allowed VAS applications can be loaded. Therefore, the chip card requires external verification of the KSQ by the system operator. As long as the cardholder wants to load the VAS application on the kiosk, the available VAS provider will instruct the system to operate in accordance with the order. When the VAS application is loaded into the VAS teller machine, the VAS provider keys KuASP and KRVASP are transferred to the system operator and these keys are then put into the hands of the system operator of the application. The key KRVASP allows VAS providers to protect application data from being written and internal data cannot be read. Therefore, the chip card needs external verification based on KLVASP by the VAS provider, that is, the chip card actively checks the correctness of the terminal. After successfully performing this function, the terminal is allowed to write to the VAS application and can also read the internal VAS data in the application. An internal verification can optionally occur by checking the correctness of the VAS application (and chip card) via the transaction terminal. When the VAS application is used by the cardholder, these internal VAS data can be written to the application or modified on a selective terminal that has access to the K ^ ASP key path. The "Buy" function can therefore be achieved by the UPDATE RECORD instruction. It must be performed using the KtVASP key for external verification. Only if before by KRVASPS Ks. Or the correct path of the PIN or the password of the system operator for external verification is allowed to read all non-internal data of the VAS application. Provide PIN / Password protection path to allow cardholders to observe the data on the terminal or wallet. Cardholders can selectively generate or remove PIN / password protection for reading price or identity data on the service terminal. 29 (Please read the notes on the back before filling this page)-installed.
、tT 本紙張尺度適用中國國家標準(CNS ) A4規格(210X297公釐) 經濟部中央標準局員工消費合作社印製 491980 2497pif.doc/002 A7 _ B7 五、發明説明(>;;) VAS櫃員機的大體數據與用來註記從轉移範圍取得的 數據的鍵KSIG_VASC:關。藉由註記,這些交易數據的完整性 可以加以檢驗,只要當它們必須被安全地轉移避免互相記 帳交互服務伙伴之間的操作。除了由交互服務伙伴選擇性 引進註記外,以KSIC_VASC爲基礎的註記和由VAS櫃員機管 理的交易記數器,附加於晶片卡由“取出”操作發行的數據 組。因爲一方面轉移範圍的讀取任何人都可以,但某一方 面晶片卡對KSIG_VASC的註記僅在要求“取出”操作時(且只可 發生一次)才產生。任何不會允許的雙重憑證記帳是看得 出來的。每個交互服務伙伴可以有系統操作者認同有關取 出券的正確性一性。除此之外,VAS櫃員機的正確性可 以藉由系統操作者檢查註記來證明。 當晶片卡接受台使用不對稱鍵程序時,也可以使用 KSIG_VASC爲一私人(秘密)鍵在晶片卡中用以註記或者從私 人的鍵生產鍵獲得這樣一鍵。VAS提供者在這種情況下可 以使用它們自己公開的鍵以爲自己檢驗註記而不必侵犯到 其他的操作者。 部份VAS櫃員機的數據由大體鍵產生鍵KGKdec;形成, 它有能力產生路徑鍵KDEC給所有VAS提供者的所有終端機 作”取消”操作的作證檢驗。(底下會進一步處理主題鍵的 獲得與檢驗)。貨幣有價數據的取消並不依照如載入或購 買使用權時相同的安全度量標準。因此必須使用大體鍵取 代僅用於應用程式的特殊鍵才是夠。這大體鍵起初被轉換 成應用程式鍵並且後來又重新轉成終端機鍵。VAS提供者 30 本紙張尺度適用中國國家標準(CNS ) A4規格(210X297公釐) ' 一 -裝-- (請先閱讀背面之注意事項再填寫本頁), TT This paper size applies to Chinese National Standard (CNS) A4 (210X297 mm) Printed by the Consumer Cooperatives of the Central Standards Bureau of the Ministry of Economic Affairs 491980 2497pif.doc / 002 A7 _ B7 V. Description of the invention (>;;) VAS teller machine The general data and key KSIG_VASC: Off for annotating data obtained from the transition range. By note, the integrity of these transaction data can be checked as long as they must be safely transferred to avoid interactions between mutual billing interactions between service partners. In addition to the selective introduction of annotations by interactive service partners, KSIC_VASC-based annotations and transaction registers managed by VAS tellers are added to the data set issued by the chip card by the "remove" operation. Because on the one hand, the reading of the transfer range can be done by anyone, but in some aspects the chip card's note on KSIG_VASC is only generated when a “remove” operation is required (and it can only happen once). Any double voucher accounting that would not be allowed is visible. Each interactive service partner can have the system operator agree on the correctness of the withdrawal ticket. In addition, the correctness of the VAS teller machine can be proved by checking the notes by the system operator. When the chip card receiving station uses an asymmetric key program, KSIG_VASC can also be used as a private (secret) key in the chip card to annotate or obtain such a key from a private key production key. VAS providers can use their own public keys in this case to check the annotations for themselves without infringing other operators. Part of the data of the VAS teller machine is generated by the general key KGKdec; it has the ability to generate the path key KDEC for all terminals of all VAS providers to testify the "cancel" operation. (The acquisition and verification of subject keys will be further processed below). The cancellation of monetary value data does not follow the same security metrics as when loading or purchasing usage rights. Therefore, it is sufficient to use a general key instead of a special key that is used only for the application. This general key was initially converted into an application key and later re-converted into a terminal key. VAS Provider 30 This paper size is applicable to Chinese National Standard (CNS) A4 specification (210X297 mm) 'One-pack-(Please read the precautions on the back before filling this page)
、1T 噃 491980 經濟部中央標準局員工消費合作社印製 2497pif.doc/002 A7 B7 五、發明説明(>ί) 僅知道大體鍵應用特殊推導產生自己的終端機鍵。這在底 下簡短描述: 我們以rnac(k,d)代表使DES對訊息d和DES鍵K作訊 息驗證密碼的計算。只要訊息不長八位元,這就對應如此 的編纂(預設ICV=〇)我們以macp(k,d)表mac(k,d)對成對 位兀子系列的改編計算。結果k’=macp(k,d)再次成有效的 DES 鍵。 應用程式特殊終端機鍵的計算進行如下: 1·每塊晶片卡儲存一鍵KGKDEC,對所有晶片卡是相 等的並且由系統操作者保密。系統操作者個人式 地將鍵放下晶片卡中。從這鍵所有其他的VAS應 用程式和終端機鍵可以推導出來。 2 · VAS提供者想要引進VAS應用程式A使得 AIDa=RIDvas、PIXA。系統操作者觀在從鍵KGKDEC和 應用程式硃特鍵PIX計算 KGK DEC PIX = macp(KGKDEC,PIXA) 並且將這鍵交給VAS提供者。 3.這個VAS提供者利用他們的終端機身份所有終端 機的KGKDEC,PIX推導他們特殊的鍵而”轉移”指令假 設使用於VAS應用程式A · KDEC 二 macp(KGKDEC,PIx,終端機身份) =macp(macp(KGKDEC:,PIXA),終端機身份) VAS提供者儲存這些鍵於他的終端棧上。當VAS提供 者自己不使用終端機時,他產生鍵並且將它們分給終端機 本紙張尺度適用中國國家標準(CNS〉A4規格(210X297公t ) (請先閱讀背面之注意事項再填寫本頁) :裝· 訂 經濟部中央標準局員工消費合作社印製 491980 2497pif.doc/002 A7 _____B7_ _ 五、發明説明(>7 ) 的操作者。 4.假如指令包括一組由轉移儲存區訊息特殊數據”數 據”和密碼C,VAS卡僅執行”轉移”指令。晶片卡 身份認得KGPEC而且此外由終端獲得使用者數據” 數據”和密碼C終端機身份以及PIX (或晶片卡本 身知道PIX,也可以看到”轉移”指令的敘述)。晶 片卡現在能夠由使用者數據計算密碼C’ : mac(macp(macp(KGKDEC,PIX),終端機身份子),數據) =mac(macp(KGKDE(:,PIX,終端機身份),數據) =mac(KDEC,數據)=C’ 現在晶片卡比較自己計算出來的密碼C’與終端機得到 的密碼C。假如兩者不同,就會終止交易並且顯示錯誤訊 息。當兩者相似時,VAS卡就會執行”轉移”指令。 各種不同的安全度量就有不同的服務終端機或交易者 終端結構(個別作載入或購買之用)以及簡單交易者終端結 構(用作取消)。爲了執行”取消”操作,終端機必須知道KDEC 檢驗自己於晶片卡是否正確。假如那鍵KDEC遭受侵犯_,侵 略者能執行單一終端機的功能。然而這個程序會記錄在晶 片卡當中。文件格式包含一個明確的序號取消欄以及終端 機身份。 VAS應用程式使用VAS櫃員機的安全服務以便使進入 VAS數據通道規律化。執行VAS特殊函數僅限於通道使用 所定義的授權範圍。 一般說來,每一個VAS應用程式應該要有大眾皆可進 32 本紙張尺度適用中國國家標準(CNS ) A4規格(210X297公釐) (請先閱讀背面之注意事項再填寫本頁) 裝· 訂 491980 A7 B7 2497pif.doc/002 五、發明説明(>) 入的數據區(例:藉由錢包讀値)以及負責的VAS提供者私 人數據區,後者可以保護不被第三者(例如內在管理數據) 進入。若考慮下根據IS07816-4晶片卡放有提供區別路徑 以保護個別的基本檔案記錄(EF)必須使用多重檔案,每個 包含一個記錄,顯示對不同VAS應用程式的瀏覽。 ϋϋ tfrlai m mat ιϋϋ mu —ϋ ϋιϋ mi a-^m emMi§ ma— 1·—— ^ mi· ·1111> In m nil— (就先閱讀背面之注意事項再填寫本頁) 經濟部中央標準局員工消費合作社印製 33 本紙張尺度適用中國國家標準(CNS ) A4規格(210X297公釐) 491980 2497pif.doc/002 A7 B7 五、發明説明) 表3 · 檔案摘要 檔名 內容 傳統使用 存取俣護 基本檔 案_鍵 包括僅VAS提供者 知道的鍵K_P, KRVASP ’(註:對每 一個VAS應用程式 和每一塊晶片卡, VAS提供者提供單 一鍵 VAS提供者在被允許將 VAS數據寫入EFJNFO, EF一INTERNAL 和 EF_VALUE,並允許從 EF_INTERNAL讀取數據 前必須對 KlVASP 驗證自 己終端機在被允許從 EF_INF0, EFJVALUE 讀 取VAS數據前必須藉 由 KRVASP 驗證自己° (#先閱讀背面之注意事 1· 項再填· 裝— :寫本頁) 訂 基本檔 案_資訊 經由VAS應用程式 非內部資訊 票據資訊 紅利程式資訊 身份辨識文件資訊 停車票據資訊 經濟部中央標準局員工消費合作社印掣 基本檔 案_內部 VAS應用程式內部 數據 內部計算器以額外鍵 敘述帳目、稅捐資訊: •紅利程式 •折扣尺里___ 4 3 這些數據單元內容僅 可以由VAS提供者寫 入(知道LVASP作外部 認證),只有可能在終 端具有通道達KRVASP或 Kso讀取或假如持卡者 輸入正確PIN(PIN由 持卡者保護) 這些數據單元內容僅 由VAS提供者寫入和 讀取’基本上由hVASp 的了解作外门 準 標 家 國 國 中 用 適 尺 一也 *紙 本 |釐 公 7 9 2 491980 2497pif.doc/002 Λ1 B7 五、發明説明(W) • 隱藏身份性質 • 密碼 以保護通道安全 基本檔 VAS應用程式價單 追個數據單元包括一 只有VAS提供者可以 案_價値 元 個VAS提供者應用程 由外寫入這些數據(由 式數的價値。 kVASP的了解作外部認 • 帳目敘述 言登)由VAS提供者授權 • 剩餘價値大眾運輸 的伙伴在內部可以用 票據 “取消”指令減低價値 • 信用卡 (藉由以KDEC取消操作 • 使用者櫃檯 的簽名方式)讀取關於 ef^info (恭先閱讀背面之注意事 1· •項再填< 裝-- :寫本頁) 訂 經濟部中央標準局員工消費合作社印製 因此,對於應用程式類別點數儲藏轉辨識文件和資抖 記憶體藉由將VAS數據區分成四種基本檔案(如第6圖所 繪示)便可進行區分路徑保護。四種基本檔案包含底下的 資或由底下方式保護。 這種基本檔案結構支持達到所有應用程式類別相同的 區分權利。1T 噃 491980 Printed by the Consumer Cooperatives of the Central Standards Bureau of the Ministry of Economic Affairs 2497pif.doc / 002 A7 B7 V. Description of the Invention (>) Only the general keys are applied to generate special terminal keys. This is briefly described below: Let us use rnac (k, d) to represent the calculation of the message d and the DES key K by DES. As long as the message is not eight bits long, this corresponds to such a compilation (default ICV = 0). We use the macp (k, d) table mac (k, d) to calculate the adaptation of the paired Wuzi series. As a result, k '= macp (k, d) becomes a valid DES key again. The calculation of the special terminal keys of the application program is performed as follows: 1. Each chip card stores one key of KGKDEC, which is equal to all chip cards and kept confidential by the system operator. The system operator personally places the key in the chip card. All other VAS applications and terminal keys can be derived from this key. 2 · VAS provider wants to introduce VAS application A so that AIDa = RIDvas, PIXA. The system operator calculates KGK DEC PIX = macp (KGKDEC, PIXA) from the key KGKDEC and the application Jute key PIX and gives this key to the VAS provider. 3. This VAS provider uses their terminal identity for all terminal's KGKDEC, PIX derives their special keys and the "transfer" instruction is assumed to be used in VAS application A · KDEC two macp (KGKDEC, PIx, terminal identity) = macp (macp (KGKDEC :, PIXA), terminal identity) The VAS provider stores these keys on his terminal stack. When the VAS provider does not use the terminal himself, he generates keys and assigns them to the terminal. The paper size is applicable to the Chinese national standard (CNS> A4 specification (210X297mmt)) (Please read the precautions on the back before filling this page. ): Binding and printing printed by the Consumer Cooperatives of the Central Standards Bureau of the Ministry of Economic Affairs 491980 2497pif.doc / 002 A7 _____B7_ _ V. Operators of the invention description (> 7) 4. If the instruction includes a group of special information Data "data" and password C, the VAS card only executes the "transfer" instruction. The chip card identity recognizes KGPEC and in addition the user data is obtained by the terminal "data" and password C terminal identity and PIX (or the chip card itself knows PIX, also You can see the description of the "Transfer" instruction). The chip card can now calculate the password C 'from user data: mac (macp (macp (KGKDEC, PIX), terminal identity), data) = mac (macp (KGKDE ( :, PIX, terminal identity), data) = mac (KDEC, data) = C 'Now the chip card compares the password C' calculated by itself with the password C obtained by the terminal. If the two are different, it will Stop the transaction and display an error message. When the two are similar, the VAS card will execute the "transfer" instruction. Various security measures have different service terminals or trader terminal structures (individual for loading or purchasing) And a simple trader terminal structure (for cancellation). In order to perform a "cancel" operation, the terminal must know whether KDEC has verified that it is correct with the chip card. If that key KDEC is violated, the invader can perform the function of a single terminal. However, this program will be recorded in the chip card. The file format includes a clear serial number cancellation bar and terminal identity. The VAS application uses the security service of the VAS teller machine to regularize the access to the VAS data channel. The implementation of VAS special functions is limited to channel use The authorized scope as defined. Generally speaking, every VAS application should be accessible to the public. This paper size is applicable to the Chinese National Standard (CNS) A4 specification (210X297 mm) (Please read the precautions on the back before filling out (This page) Binding · Order 491980 A7 B7 2497pif.doc / 002 V. Description of the invention (>) Enter Data area (eg, read through a wallet) and the private data area of the responsible VAS provider, the latter can be protected from access by a third party (such as internal management data). If considered, it is provided according to IS07816-4 chip card Differentiating paths to protect individual Basic Archive Records (EF) must use multiple files, each containing one record, showing browsing to different VAS applications. Ϋϋ tfrlai m mat ιϋϋ mu —ϋ ϋιϋ mi a- ^ m emMi§ ma— 1 · —— ^ mi · · 1111 > In m nil— (Just read the notes on the back before filling in this page) Printed by the Staff Consumer Cooperatives of the Central Bureau of Standards of the Ministry of Economics 33 This paper size applies to China National Standard (CNS) A4 (210X297 mm) 491980 2497pif.doc / 002 A7 B7 V. Description of the invention) Table 3 · Archive summary file contents Traditional use access protection basic files _ Keys include keys K_P, KRVASP only known to VAS providers' (Note : For each VAS application and each chip card, the VAS provider provides a single key. The VAS provider is allowed to write VAS data into EFJNFO, EF_INTERNAL and EF_VALUE, and Before being allowed to read data from EF_INTERNAL, KlVASP must be used to verify its own terminal. Before being allowed to read VAS data from EF_INF0, EFJVALUE, it must be verified by KRVASP. (#Please read the notes on the back 1 · Items, then fill and install—: (Write this page) Order basic file_Information via VAS application Non-internal information Bill information Dividend program information Identification document information Parking ticket Information Ministry of the Central Standards Bureau of the Ministry of Economy Staff Consumer Cooperatives Print basic files_Internal VAS application Internal data Internal calculator Use the extra keys to describe the account and tax information: • Bonus program • Discount rule ___ 4 3 The content of these data units can only be written by the VAS provider (known as LVASP for external authentication), and it is only possible to have access to KRVASP in the terminal. Or Kso reads or if the cardholder enters the correct PIN (PIN is protected by the cardholder) These data unit contents are written and read only by the VAS provider 'Basically used by hVASp's knowledge as an outside door home country Measure one size * paper | centimeter 7 9 2 491980 2497pif.doc / 002 Λ1 B7 V. Description of the invention (W) • Hidden identity nature • Password to protect channel security Basic file VAS application The price list chases a data unit that includes only a VAS provider that can write a case_ Price 値 元 A VAS provider application writes these data from the outside (by the price of the formula 値. The understanding of kVASP is externally recognized. • Account description is authorized. • Authorized by VAS provider. • Surplus price: Public transportation partners can use the ticket “cancel” order to reduce the price internally. • Credit card (canceled by KDEC. (Signature method) Read about ef ^ info (Please read the notes on the back 1 · • Fill in the items and then fill in:: write this page) Order printed by the Staff Consumer Cooperative of the Central Standards Bureau of the Ministry of Economic Affairs The point storage transfer identification file and the data jitter memory can be distinguished for path protection by dividing the VAS data into four basic files (as shown in Figure 6). The four basic files contain assets or are protected by them. This basic file structure supports the same differentiated rights for all application categories.
記住應用程式類別現在綜合放於單一設計種類中它會 記下基本檔案的個數和大小,因爲對應用程式不同的空間 需求,所浪費的儲存容量可以減到最低,應用程式類別點 數儲存區召票據需要相同的資源EF-KEY,ef JNF0, EF—INTERNAL,EF—VALUE,因而倂入一個設計f麗類“DFjrr,,。 對應用程式類別辨識文件和數據記憶體’基本檜案EF_KEY 35 本紙張尺度適用中國國家標準(CNS ) A4規格(210X297公釐) ------- 491980 2497pif.doc/002 A7 B7 經濟部中央標準局員工消費合作社印製 五、發明説明(》) 和EF—INFO就足夠了,因此倂入設計種類EF—PT。考慮個 數,有P個設計種類EF_PT物件和a個設計種類EF—AD在 應用類別點數儲存區和票據的VAS應用程式中。個別辨識 文件和數據儲存可以被載入。 特別是應用程式類別憑證,應該提供所有VAS參與者 大眾讀取路徑以作連結數據交換,我們使用設計種類轉移 範圍。寫入路徑可能由’轉移’指令的運用預設正確KDEC作 記號間接達到。這個設計種類剛好由隸屬VAS櫃員機大體 數據的基本檔案EFJTRANSFER的一個項目組成。這個類別 的物件就記錄在檔案中。我們也把這個設計種類視爲 EF_TRANSFER 。 第7圖中繪示的設計種類存在VAS櫃員機中。這些設 計種類形成VAS櫃員機的儲存模式。 儲存模式可由兩個方式獲得。特質端賴晶片卡接受台。 對VAS櫃員機中儲存區的固定劃分: 對執行DF_PT和DF_AD,物件的最大個數p或a由發 行者固定並且由發行者“創造檔案'CREATE FILE)指令載 送到晶片卡。物件個別被標示爲DFJT和DF_AD。VAS應 用程式之後可以被載入自由物件,即不被其他VAS應用程 式B用。要載什入或刪除應用程式,僅需要“更新記 錄"(UPDATE RECORD)指令。 因此發行者依照他自己需要,固定兩個設計種類可能 物件的個數,然而這些可能不同於實際持卡的VAS使用者 形式,細分割保留在整個晶片卡的生命周期。VAS應用程 36 本紙張尺度適用中國國家標準(CNS ) A4規格(21〇><297公釐) ' (詩先閲讀背面之注意事項再填寫本頁) 訂 491980 2 4 9 7p i f. doc/〇 〇 2 ΑΊ B7 經濟、那中央標準局員工消費合作社印製 五、發明説明(w) 式載入一個屬於適當設計種類的物件。因此,例如一個VAS 應用程式代表辨識文件,假如沒有設計種類DFJU)物件可 用時’也可以容納在設計種類EFJP物件中。VAS應用程式 分配給一物件靠著輸入VAS應用程式的PIX,載入物件的 FID和應用程式淸楚的名稱三項到VAS櫃員機的大體數據 基層EF—DIR中進行。應用程式的取出就對應這三項從 EF 一 DIR取出’以及跟著應用程式的記憶體破壞性讀取(由” 更新記錄”指示)。 這種使用到晶片卡接受台的修改並不進行DF/EF結構 動態的產生或刪除。 對每一個要負載的VAS應用程式設計種類物件的動態 連構’必須以”創造檔案”指令建構檔案來強調設計種類的 重要。刪除VAS應用程式時,它占據的EDFJEF整個從晶 片台釓出,因而儲存空間空掉。設計種類物件的最大個數 在此不額外由發行者決定僅視可得的儲存容量而定。 這樣的修改預先假設了一個藉由晶片卡操作系統動態 數據基層管理。 在接下來的例子中,我們將從第一種修改開始,因爲 第二種對可使用的晶片卡接受台有較高的要求。然而假如 動態記憶體管理可用並且確保比起管理價値有較多的儲存 容量可由物件的動態建構來節省,現行的想法可以提倡並 且提供持卡者較的彈性。 底下展示數據結構和指令,藉此VAS櫃員機中和VAS 顧客卡的功能可以實際與其他系統元素作比較。更進一步 37 本紙張尺度適用中國國家標準(CNS ) A4規格(210X297公釐) (請先閱讀背面之注意事項再填寫本頁) 厂裝- 、1Τ 491980 2 4 9 7 p i f . doc / 0 0 2 A7 _______B7 五、發明説明(今() 對描述VAS櫃員機中和終端機之間個別反應的傳統商業情 況進行VAS操作。 底下是執行時的先決條件: •忽略接受台而對每一塊晶片卡提供交易終端機相同 的數據和指令價面。依此所需的指令淸楚地在它們 編碼時被描述。 •服務終端機可以了解晶片卡接受台,藉由接受台的 特殊指令達到功能。依此,這些交易部份正式地被 寫下來。提供這樣功能的方式保留給晶片卡的製 造者。 第7圖中描繪了各種不同的VAS櫃員機設計種類。第 8圖繪示VAS櫃員機中的數據結構。第9圖繪示設計種類 DF__PT的數據結構。第10圖顯示執行類DFJVD的數據結構。 通往VAS櫃員機中的檔案由底下存取條件(AC)加以限 制: (請先閱讀背面之注意事項再填寫本貢) i裝·Remember that the application category is now integrated in a single design category. It will record the number and size of basic files. Because of the different space requirements for the application, the wasted storage capacity can be minimized. The application category points are stored. The district call ticket needs the same resources EF-KEY, ef JNF0, EF_INTERNAL, EF_VALUE, so a design f class "DFjrr," is entered. Identify the file and data memory of the application category 'basic project EF_KEY 35 This paper size applies Chinese National Standard (CNS) A4 specification (210X297 mm) ------- 491980 2497pif.doc / 002 A7 B7 Printed by the Consumer Cooperative of the Central Standards Bureau of the Ministry of Economic Affairs And EF_INFO are enough, so the design category EF_PT is considered. Considering the number, there are P design category EF_PT objects and a design category EF_AD in the VAS application of the application category point storage area and bill . Individual identification files and data storage can be loaded. In particular, the application category certificate should provide a public read path for all VAS participants for linking data exchange. We use The design category is used to transfer the range. The writing path may be reached indirectly by the use of the "transfer" instruction to preset the correct KDEC mark. This design category consists of an item of the basic file EFJTRANSFER belonging to the general data of the VAS teller machine. Objects in this category Recorded in the file. We also consider this design type as EF_TRANSFER. The design types shown in Figure 7 are stored in the VAS ATM. These design types form the storage mode of the VAS ATM. The storage mode can be obtained in two ways. The characteristics depend on the characteristics Chip card receiving station. Fixed division of storage area in VAS teller machine: For the implementation of DF_PT and DF_AD, the maximum number of objects p or a is fixed by the issuer and is sent to the chip card by the issuer's "CREATE FILE" instruction . Objects are individually labeled as DFJT and DF_AD. VAS applications can then be loaded into free objects, ie not used by other VAS applications B. To load or delete applications, only the "Update Record" (UPDATE RECORD) instruction is required. Therefore, the publisher fixes the number of possible objects of two design types according to his own needs. However, these may be different from those of the actual card holder. VAS user form, finely divided and retained throughout the life cycle of the chip card. VAS application process 36 This paper size applies Chinese National Standard (CNS) A4 specifications (21〇 > < 297mm) Note for this page, please fill in this page) Order 491980 2 4 9 7p i f. Doc / 〇〇2 ΑΊ B7 Economy, then printed by the Consumer Standards Cooperative of the Central Bureau of Standards 5. The invention description (w) is loaded into a suitable design category. Therefore, for example, a VAS application representative identifies the document. If no design type DFJU is available, the object can also be contained in the design type EFJP object. The VAS application is assigned to an object by inputting the PIX of the VAS application. The three items of the FID of the input object and the name of the application are entered into the general data base EF-DIR of the VAS teller machine. The removal of the application corresponds to these three 'Remove from EF-DIR' and follow the application's memory destructive reading (indicated by "Update Record"). This modification to the chip card receiving station does not dynamically generate or delete the DF / EF structure. The dynamic concatenation of design objects of each VAS application to be loaded must use the "create file" command to construct a file to emphasize the importance of the design type. When a VAS application is deleted, the EDFJEF it occupies is completely removed from the wafer table, so The storage space is empty. The maximum number of design types of objects is not determined by the publisher here. It only depends on the available storage capacity. Such a modification assumes a dynamic data base management by the chip card operating system in advance. In the following example, we will start with the first modification, because the second one has higher requirements for the usable chip card receiving station. However, if dynamic memory management is available and ensure more storage than the management price Capacity can be saved by the dynamic construction of objects, and current ideas can promote and provide cardholders with more flexibility. Data structure and instructions, so that the function of the VAS teller machine and the VAS customer card can be compared with other system elements. Further, this paper size applies the Chinese National Standard (CNS) A4 specification (210X297 mm) (please read the back first) Please pay attention to this page and fill in this page) Factory-installed, 1T 491980 2 4 9 7 pif. Doc / 0 0 2 A7 _______B7 V. Description of the invention (now () For the traditional commercial description of the individual reaction between the VAS teller and the terminal Perform VAS operations under the circumstances. The following are the prerequisites for implementation: • Ignore the receiving station and provide the same data and order price for the transaction terminal for each chip card. The instructions required to do so are described clearly when they are coded. • The service terminal can understand the chip card receiving station, and achieve the function by the special instruction of the receiving station. Accordingly, these transactions were formally written down. The way to provide such functionality is reserved for chip card makers. Figure 7 depicts various VAS teller machine designs. Figure 8 shows the data structure in the VAS teller machine. Figure 9 shows the data structure of the design type DF__PT. Figure 10 shows the data structure of the execution class DFJVD. Access to the files in the VAS teller machine is restricted by the following access conditions (AC): (Please read the precautions on the back before filling out this tribute)
、1T 經濟部中央標準局員工消費合作社印製 8 3 本紙張尺度適用中國國家標準(CNS ) Α4規格(210Χ297公釐) 491980 2497pif.doc/002 A7 B7 五、發明説明(今乙) 表4.存取條件 數據庫 Admin 讀出存取 寫入存取 DF一VAS Ks〇 NEV NEV EF—ID Kso ALW Kso EF—DIR Ks〇 ALW Ks〇 Global 鍵 Kso NEV Ks〇 PIN Kso NEV Kso EF—VERSION Kso ALW Kso EF一SEQ Ks〇 ALW Kso EF_TRANSFER Ks〇 ALW Kso DF 一 X (X=PTl9...PTD, .··ADi,···ADa) Kso NEV NEV EF一KEY Kso NEV Kso EF_INF〇 Ks〇 PIN 或 KRVASP 或 Kso Klvasp EF_INTERNAL Kso Klvasp Klvasp EF_VALUE Kso PIN 或 KRVASP 或 Kso i Klvasp 經濟部中央標準局員工消費合作社印製 (請先閱讀背面之注意事項再填寫本頁) 在文章中AC有底下的意義: • ALW(總是)=指令通往數據基層的路徑總是被允許。 39 本紙張尺度適用中國國家標準(CNS ) A4規格(210X297公釐) 491980 2497pif·d〇c/002 A7 B7 經濟部中央標準局員工消費合作社印製 五、發明説明(”) • NEV(從未)=指令通往數據基層的路徑從未被允許。 • KSQ=通過路徑前必須先由鍵KsQ作系統操作者的外 部認證。 • Klvasp=通過路徑前必須先由鍵klvasp作VAS提供者 的外部認證。 • KRVASp=通過路徑前必須先由鍵klvasp作VAS提供者 的外部認證。 • PIN=通過路徑前必須由持卡者輸入正確piN並且以 指令VERIFY淸楚送到晶片卡。 • PIN或KRVASPS KS():r通過路徑前可由持卡者輸入正 確PIN或由VAS提供者使用Krvasp作外部認證或由 系統操作者使用Kso外部認證。 文章中特別要注意上面表示“或,,連接的路徑選擇權按 規定在晶片卡操作系統中是不提供的。在使用的方,必須 牽涉特殊履行價値(或者:具有固定安全品質的特殊讀取 指令)。 在基檔案記錄中的數據領域依照下列的格式來區分: 資訊交換標準碼(ASCII),二進位,二進制編碼的十進制 (BCD),日期,格式串。 格式串形式的數據元素包括可以被持卡者在終端機上 瀏覽的包裝形式VAS數據。 最佳數據儲存使用淸晰文字和二進數據綜合經由格 式化巨集指令變得可展示。所有VAS櫃員機的基本檔案(EF) 依據IS07816-4定義爲具有固定長度記錄的線性格式化EF 40 本紙張尺度適用f關家縣(CNS) A4規格(210><297公楚) C 请先閱讀背面之注意事項再填寫本頁) -裝- 訂 一線 491980 A7 B7 497pif . doc/〇〇2 五、發明説明(w) 數據庫。 DF_VAS的基本檔案EF—IS由一個包含VAS櫃員機的身 份記錄組成。 DF_VAS的基本檔案EF—DIR由nrDIR記錄組成。對每— 個載入VAS櫃員機的VAS應用程式而言’它的所有權認同 延伸(PIX)和物質的儲存基地(應用程式被載入DFJ(的FID) 被固定在EFJ)IR的一個記錄中。PIX好比像一個密碼數字 認證應用程式以及應用程式所分配的服務提供者。 EF_DIR的入口動態地建構在系統操作者的服務終端機 上。沒有入日的記錄以一個空的TLV物件’61’建構。 當載入一個VAS應用程式時必須尋找一個適當設計種 類的自由儲存區域,輸入某此VAS數據,最後在EF_DIR 中產生一個新的記錄。當刪除應用程式時,一個空的TLV 物件必須因此寫入EFJ)IR中。 DF__VAS的基本檔案EF_VERSION由一個包含VAS櫃員 機版本號碼的記錄組成。版本號碼可以由終端機使用來區 分不同的VAS櫃員機修正和/或不同的軟體版本。DF_VAS 的基本檔案EFjEQ由一個包含下個轉移範圍項目的個數 記錄。 序號由輔助的’轉移’指令讀出。這個指令會在轉移範 圍EFJTRANSFER中產生一個記錄。 尤其來自EF__SEQ的序號會被轉送至k個記錄中。連帶 確保來自轉移範圍的每一個記錄僅被取出一次並且以序號 註名來記錄的”取出”指令,可以保證原始證件或收據僅被 本紙張尺度適用中國國家標準(CNS ) A4規格(210X297公釐) -----:--,--私衣------訂-----^線 Γ請先閱讀背面之注意事項再填寫本頁} 經濟部中央標準局員工消費合作社印製 491980 2497pif.doc/002 A7 B7 經濟部中央標率局員工消費合作社印製 五、發明説明(外) .取出一次。 接下來,我們更詳細來處理轉移儲存區。 轉移儲存區在VAS櫃員機中建構且包括 錄。這些檔案記錄的項目包括由’轉移’指令產生的轉移數 據。VAS應用程式間交換的數據同’證件’類別的VAS數據 儲存區經由轉移儲存區來執行。 轉移儲存區可以不受限制地讀取,然而寫入路徑僅能 由VAS特殊’轉移’和’取出’指令。 由’轉移’指令載入數據以’最新使用,的演算法在晶片卡 中進行。在數據基層中最舊的記錄可以尋找記錄的前二位 元最小値來決定。 當數據場有數據取出和/或移去時會在轉移儲存區中 由’取出’指令標記。每一次在轉移儲存區中數據以新數據 寫入而被刪除。 在轉移儲存區中每一項記錄包含:例如一個終止日期, 終端機身份,PIX,序號和可選擇的進一步數據。在EFJ( 表中(其中LPL,"·Ρίρ,AD!,…Ada)的每一個基本檔案 EF一INFO包括一個有終止日期以及VAS應用程式的一般VAS 數據的記錄。例如,票據的性質(單程或回數票)或者上車| 位置可由此處輸入。然而F_INF0泌須至少包含一個淸晰 的應用程式文字名稱它可以由’檢視,應用程式的操作讀 取。實用的數據必須先由VAS提供者用^當的外界鍵演算 法保護。 假如KSQ或KRAVASP作外部認證時或者在致能的PIN保 42 Γ 請先閱讀背面之注意事項再填寫本頁} * m ml In —J.i I 11— -I -1· 1^1 !— I— mi i_li _1.1 Printed by the Consumer Cooperatives of the Central Standards Bureau of the Ministry of Economic Affairs 8 3 This paper size applies to the Chinese National Standard (CNS) A4 specification (210 × 297 mm) 491980 2497pif.doc / 002 A7 B7 V. Description of the invention (today B) Table 4. Access condition database Admin read access write access DF-VAS Ks〇NEV NEV EF-ID Kso ALW Kso EF-DIR Ks〇ALW Ks〇Global key Kso NEV Ks〇PIN Kso NEV Kso EF-VERSION Kso ALW Kso EF-SEQ Ks〇ALW Kso EF_TRANSFER Ks〇ALW Kso DF-X (X = PTl9 ... PTD, ..ADi, ... ADa) Kso NEV NEV EF-KEY Kso NEV Kso EF_INF〇Ks〇PIN or KRVASP Or Kso Klvasp EF_INTERNAL Kso Klvasp Klvasp EF_VALUE Kso PIN or KRVASP or Kso i Klvasp Printed by the Consumer Cooperatives of the Central Standards Bureau of the Ministry of Economic Affairs (please read the notes on the back before filling this page) AC has the following meaning in the article: • ALW (Always) = The path to the data base is always allowed. 39 This paper size applies the Chinese National Standard (CNS) A4 specification (210X297 mm) 491980 2497pif · doc / 002 A7 B7 Printed by the Consumer Cooperatives of the Central Standards Bureau of the Ministry of Economic Affairs 5. Description of invention (") • NEV (never ) = Instruction to the data base is never allowed. KSQ = The key operator KsQ must be used as the external operator's external authentication before passing the path. • Klvasp = The key klvasp must be used as the outside of the VAS provider before passing the path. Authentication. • KRVASp = The external authentication of the VAS provider must be performed by the key klvasp before passing the path. • PIN = The cardholder must enter the correct piN before passing the path and send it to the chip card with the command VERIFY. • PIN or KRVASPS KS (): r The cardholder can enter the correct PIN before passing the path, or external authentication using Krvasp by the VAS provider or external authentication using Kso by the system operator. In the article, pay special attention to the above means "or, the connection path selection The rights are not provided in the chip card operating system according to regulations. The party using it must involve a special performance price (or: a special read instruction with a fixed safety quality). The data fields in the base file record are distinguished according to the following formats: Information exchange standard (ASCII), binary, binary-coded decimal (BCD), date, format string. The data elements in the format string include packaged VAS data that can be viewed by the cardholder on the terminal. The best data storage uses clear text and a combination of binary data to become displayable through formatted macro instructions. The basic files (EF) of all VAS ATMs are defined as linear format EF 40 with fixed length records according to IS07816-4. This paper size is applicable to Guanjia County (CNS) A4 specifications (210 > < 297). C Read the notes on the reverse side and fill out this page)-Binding-Order a line 491980 A7 B7 497pif .doc / 〇〇2 V. Description of invention (w) Database. The basic file EF_IS of DF_VAS consists of an identity record containing a VAS teller machine. The basic file EF_DIR of DF_VAS consists of nrDIR records. For each VAS application loaded into a VAS teller machine, its ownership identification extension (PIX) and physical storage base (application loaded into DFJ (FID) are fixed in a record of EFJ) IR. PIX is like a cryptographic digital authentication application and the service provider assigned by the application. The EF_DIR entry is dynamically built on the service terminal of the system operator. The record without entry date is constructed with an empty TLV object '61'. When loading a VAS application, it is necessary to find a free storage area of appropriate design type, input some VAS data, and finally generate a new record in EF_DIR. When deleting an application, an empty TLV object must therefore be written to EFJIR. The DF__VAS basic file EF_VERSION consists of a record containing the version number of the VAS teller. The version number can be used by the terminal to distinguish between different VAS teller machine corrections and / or different software versions. The basic file EFjEQ of DF_VAS is recorded by one containing the number of the next transfer range item. The serial number is read by the auxiliary 'Move' instruction. This instruction generates a record in the branch range EFJTRANSFER. In particular, the sequence number from EF__SEQ will be forwarded to k records. Together with the "Remove" instruction to ensure that each record from the transfer range is retrieved only once and recorded with a serial number note, it can ensure that the original certificate or receipt is only applicable to the Chinese National Standard (CNS) A4 specification (210X297 mm) on this paper size ) -----:-,-Private clothing ------ Order ----- ^ line Γ Please read the precautions on the back before filling out this page} Production 491980 2497pif.doc / 002 A7 B7 Printed by the Consumer Cooperatives of the Central Standards Bureau of the Ministry of Economic Affairs 5. Description of Invention (Outside). Take out once. Next, we deal with transfer storage in more detail. The transfer storage area is constructed in the VAS ATM and includes records. The items recorded in these archives include branch data generated by the 'transfer' instruction. The data exchanged between VAS applications is the same as the VAS data storage type of "Certificate". The transfer memory area can be read without restriction, however the write path can only be executed by the VAS special 'Move' and 'Fetch' instructions. The data loaded by the 'transfer' instruction is 'latest used' and the algorithm is performed on the chip card. The oldest record in the data base can be determined by looking for the lowest two bits of the record. When the data field has data fetched and / or removed, it will be marked in the transfer storage area by the 'fetch' instruction. Each time data is written in the transfer storage area as new data, it is deleted. Each entry in the transfer storage area contains, for example, an expiration date, terminal identity, PIX, serial number, and optionally further data. Each basic file EF_INFO in the EFJ table (where LPL, " · Ρίρ, AD!, ... Ada) includes a record with the end date and general VAS data of the VAS application. For example, the nature of the ticket ( One-way or multiple votes) or boarding | The location can be entered here. However, F_INF0 must contain at least a clear application text name. It can be read by 'View, application operation. Practical data must first be VAS The provider is protected by the current external key algorithm. If KSQ or KRAVASP is used for external authentication or the enabled PIN is guaranteed 42 Γ Please read the precautions on the back before filling in this page} * m ml In —Ji I 11— -I -1 · 1 ^ 1! — I— mi i_li _
、1T -線· 本紙張尺度適用中國國家榡準(CNS ) A4規格(210X297公釐) 24 9 7pif . doc/ 0 02 A7 _____B7___ 五、發明説明(f〇) 護下持卡者輸入一個正確的PIN時這個基本檔案是可讀取 的。 在DF—X記錄中(其中ΧιζΡΐ,...Ptp,ADi,…Ada)的每 一個基本檔案EFJNTERNAL由一個可以包含VAS提供者的 VAS數據並涉及載入VAS應用程式程式的記錄。並非持 卡者也不是任自其他VAS提供者可以讀取這些內部數據。 在 DFJ(記錄中(其中 XziPTi,".Ptp,AD!,…Ada)每一 個基本檔案EF_VALUE包含一個擁有一個VAS數據整數値 領域的記錄。假如以KSQ或KRVASP作外部認證或者在致能的 PIN保護情況下持卡者輸入正確的PIN或正確的密碼,這 個基本檔案便可以被讀取。 底下的鍵領域由VAS櫃員機或VAS應用程式來使用。 接下來我們從一個單純的DS譯碼開始即所有VAS櫃員機 的鍵是DES鍵並且用八位元編碼(包含相同的佔元)。 在VAS櫃員機和VAS應用程式中底下它們的KID(鍵認 同)指示的鍵作爲參考: 表5. VAS櫃員機鍵 鍵 KID Kso ‘00, Kaut ‘01, KsiGVASC ‘02, KGK廳 ‘03, 經濟部中央標準局員工消費合作社印製 (貧先閱讀背面之注意事項再填寫本頁) 每一支鍵配合一個錯誤的運算器。适樣的登記無法以 43 本紙張尺度適用中國國家標準(CNS ) A4規格(210X297公釐) 491980 2497pif.doc/〇〇2 A7 B7 經濟部中央標準局員工消費合作社印製 五、發明説明(以) 這鍵通過認證並且一旦運算器輸入限制時就無法進一步使 用。 在VAS應用程式中底下它們的KID指示的鍵作爲參考: 表6. VAS應用鍵 鍵 KID Klvasp ,04, Krvasp ,05, 每一支鍵配合一個錯誤的運算器。這樣的登記無法以 這鍵通過認證並且一旦運算器輸入限制時就無法進一步使 用。 VAS櫃員機包括一個私人辨識號碼或密碼(PIN)。這是 用來以’證明’指令辨識持卡者。PIN連到一個錯誤運算器 登記每一項錯誤輸竹並設限阻止PIN比對。這種設限可由 系統操作者使用管理指令加以消除。一旦正確PIN輸入後, 錯誤運算器就會被去除。 底下的參數由晶片卡發行者於晶片卡接受台可用空間 選出依照它個人意願提供VAS櫃員機。 • P設計種類EF_PT物件的最大個數 =可以同時載入VAS櫃員機的應用程式類別’點數儲 存’和’轉’的VAS應用程式最大個數。 • a設計種類DF_AD物件的最大個數 =可以同時載竹VAS櫃員機的應用程式類別’身份文 件’和’數據儲存’的VAS應用程式最大個數。 44 本紙張尺度適用中國國家標準(CNS ) A4規格(210X297公釐) (諸先閲讀背面之注意事項再填寫本頁) •裝· 491980 2497pif.d〇c/002 A7 B7 五、發明説明、 1T-line · This paper size is applicable to China National Standard (CNS) A4 specification (210X297mm) 24 9 7pif .doc / 0 02 A7 _____B7___ 5. Description of invention (f〇) The cardholder under protection enters a correct This basic file is readable at the PIN. Each elementary file EFJNTERNAL in the DF-X record (where XιζΡΐ, ... Ptp, ADi, ... Ada) consists of a record that can contain VAS data from a VAS provider and involves loading a VAS application program. This internal data can be read by neither the cardholder nor any other VAS provider. In the DFJ (records (where XziPTi, " .Ptp, AD!, ... Ada)) each basic file EF_VALUE contains a record with a VAS data integer 値 field. If KSQ or KRVASP is used for external authentication or is enabled In the case of PIN protection, the cardholder can input the correct PIN or correct password, and this basic file can be read. The key fields below are used by the VAS teller machine or VAS application. Next we start with a simple DS decoding That is, the keys of all VAS teller machines are DES keys and are encoded in eight bits (including the same accountant). The keys indicated by their KID (key identification) in VAS teller machines and VAS applications are for reference: Table 5. VAS teller machines Keys KID Kso '00, Kaut '01, KsiGVASC '02, KGK Hall '03, printed by the Consumer Cooperatives of the Central Standards Bureau of the Ministry of Economic Affairs (please read the precautions on the back before filling this page) Each key is associated with an error A suitable register cannot be applied to 43 paper sizes in accordance with the Chinese National Standard (CNS) A4 (210X297 mm) 491980 2497pif.doc / 〇〇2 A7 B7 Economy Printed by the Ministry of Standards and Staff ’s Consumer Cooperatives. 5. Description of the invention (with) This key is certified and cannot be used further once the input of the calculator is restricted. In the VAS application, the keys indicated by their KIDs are used as a reference: Table 6. VAS uses the key keys KID Klvasp, 04, Krvasp, 05. Each key is equipped with a wrong calculator. Such registration cannot be authenticated with this key and cannot be further used once the calculator input limit. VAS ATM includes a private Identification number or password (PIN). This is used to identify the cardholder with a 'proof' command. The PIN is connected to an error calculator to register each error entry and set limits to prevent PIN comparison. This limit can be operated by the system The user uses management instructions to eliminate it. Once the correct PIN is entered, the wrong calculator will be removed. The parameters below are selected by the chip card issuer in the available space of the chip card receiving desk to provide a VAS teller machine according to its personal wishes. • P design type EF_PT Maximum number of objects = Application category 'point storage' that can be loaded into VAS ATM simultaneously The maximum number of VAS applications that are 'turned'. • a The maximum number of design types DF_AD objects = the maximum number of VAS applications that can be loaded with bamboo VAS ATMs at the same time, such as 'identity documents' and 'data storage'. 44 This paper size applies Chinese National Standard (CNS) A4 specification (210X297 mm) (Read the precautions on the back before filling out this page) • Packing · 491980 2497pif.d〇c / 002 A7 B7 V. Description of the invention
• nrDiR物件的最大總數:nrDIR=p+a 在EF_DIR中記錄的個數是nrDIR • nrEF_TRANSFER · EEJRANSFER 記錄的個數 描述基本檔案旳數據儲存需求如下: 位元組 VAS櫃員機的總體數據EF_ID 4 9*(p+a) 1 2 64+2 48* πref.transfer (p+a)*32 (p+a)*62 p* 10 p*3 r 請先閱讀背面之注意事項再填寫本頁)• The maximum total number of nrDiR objects: nrDIR = p + a The number of records in EF_DIR is nrDIR • nrEF_TRANSFER · The number of EEJRANSFER records describes the basic file and data storage requirements are as follows: The overall data of the byte VAS teller machine EF_ID 4 9 * (p + a) 1 2 64 + 2 48 * πref.transfer (p + a) * 32 (p + a) * 62 p * 10 p * 3 r Please read the notes on the back before filling this page)
EF一DIR EF.VERSI0N EF—SEC 總體鍵,Pin 轉移範圍 EF_TRANSFEREF-DIR EF.VERSI0N EF-SEC overall key, Pin transfer range EF_TRANSFER
VAS提供者的所權數據EF_KEYVAS provider's ownership data EF_KEY
EF_INFOREF_INTERN ALEF_INFOREF_INTERN AL
EF VALUE 經濟部中央標準局員工消費合作社印製 假如我們選擇底下的値爲參數P,a和nrEF_ TRANSFER ? ^ 麼下列爲VAS櫃員機最小的儲存需求(對輔助指令沒有儲 存需求): 參數 儲存需求 P=8,a=3,nrEF_TRANSFER=15 2030 位兀組 p=10,a=5,πγερ transfer=2〇 2758 faa兀組 最大儲存需求大約高於最小儲存需求差不多10%° 45 本紙張尺度適用中國國家標準(CNS ) A4規格(210X297公釐) 491980 2497pif.doc/002 A7 B7 經濟部中央標準局員工消費合作社印繁 五、發明説明〇今) 底上根據本發明對晶片卡的指令加以詳細說明。 ,讀取記錄(READ RECORD)指令用來從線性基本檔案中讀 取數據。晶片卡在回答中提供記錄的內容。基本檔案(EF) 以簡短檔案認同(short file identifierHSFI)作參考。 狀態碼‘9000’顯示一次成功的指令執行;任何不一樣 的碼被視爲錯誤。 ‘更新記錄’(UPDATE RECORD)指令用以將數據輸入線性 基本檔案的記錄中。這個指令訊息包括基本檔案參考値’ 記錄以及數據。 晶片卡的回應包含狀態碼。狀態碼’9000’顯示成功的 指令結論。其他狀態碼表示錯誤。‘取得密碼’(GETCHALLNGE) 指令從晶片卡要求一個隨機數。這個隨機數用來連接在’ 外部認證’指令中的動態認證。 晶片卡回覆訊息包括一個隨機數,八位元長和一個狀 態碼。狀態碼’9000’表示指示的成功執行。任何不同的狀 態碼表示錯誤。 指令‘外部認證’(EXTERNAL AUTHENTICATE)允許終端機 對晶片卡做認證。這個指令用在認證系統操作者和VAS提 供者的VAS應用程式文章中。指令轉送一個密碼給晶片卡 並於之前藉隨機數編碼由終端機產生。晶片卡將密碼與一 參與値比較。假如兩個値相同晶片卡內部記錄這支鍵路徑 條件認證已發生。假如比對是負的,晶片卡將發出’不授 權’的狀態並且減少內部錯誤操作運算。一旦這樣的運算 達到零値時,任何‘外部認證’的進一步執行會以’認證中斷’ 46 本紙張尺度適用中國國家標準(CNS ) A4規格(210X297公釐) 請 先 閱 讀 背 $ 填 寫裝 本衣 頁 訂 線EF VALUE Printed by the Consumer Cooperatives of the Central Standards Bureau of the Ministry of Economic Affairs. If we select 値 as the parameter P, a and nrEF_ TRANSFER? ^ What is the minimum storage requirement for VAS teller machines (there is no storage requirement for auxiliary instructions): Parameter storage requirement P = 8, a = 3, nrEF_TRANSFER = 15 2030 Bit group p = 10, a = 5, πγερ transfer = 2〇 2758 The maximum storage requirement of the faa group is approximately higher than the minimum storage requirement by approximately 10% ° 45 This paper scale applies to China National Standard (CNS) A4 Specification (210X297 mm) 491980 2497pif.doc / 002 A7 B7 Employee Consumer Cooperatives of the Central Standards Bureau of the Ministry of Economic Affairs of the People's Republic of China and India 5. Description of the Invention ○ The instructions for the chip card according to the present invention are explained in detail at the bottom . The READ RECORD instruction is used to read data from a linear basic file. The chip card provided the content of the record in the answer. The Elementary File (EF) refers to the short file identifier (HSFI). The status code '9000' indicates a successful instruction execution; any different code is considered an error. The 'UPDATE RECORD' instruction is used to enter data into the records of the linear base file. This command message includes basic file reference 値 ’records and data. The chip card's response contains a status code. The status code '9000' shows the successful instruction conclusion. Other status codes indicate errors. The "GETCHALLNGE" instruction requests a random number from the chip card. This random number is used to connect the dynamic authentication in the 'External Authentication' instruction. The chip card response message includes a random number, eight bits long, and a status code. A status code of '9000' indicates successful execution of the indication. Any different status code indicates an error. The instruction 'EXTERNAL AUTHENTICATE' allows the terminal to authenticate the chip card. This directive is used in VAS application articles for certification system operators and VAS providers. The instruction forwards a password to the chip card and is previously generated by the terminal by random number encoding. The chip card compares the password with a participant. If two key paths are recorded internally on the same chip card, conditional authentication has occurred. If the comparison is negative, the chip card will issue an 'unauthorized' state and reduce internal error operation operations. Once such an operation reaches zero, any further implementation of 'external certification' will be interrupted by 'authentication'. 46 This paper size applies to China National Standard (CNS) A4 specifications (210X297 mm). Please read the back first and fill in this shirt. Page guide
經濟部中央標準局員工消費合作社印II 491980 2497pif.doc/002 A7 B7 五、發明説明(^) 狀態予以停止。 晶片卡的回覆訊息包含狀態碼。成功的執行指令和關 於晶片卡終端機的認證由狀態碼‘9000’揩示。任何不同的 碼表示錯誤。 內部認證(INTERNAL AUTHENTICATE)指令用以由終端機 檢查VAS櫃員機的正確性。爲了這目的晶片卡由終端機推 導參考數據計算出一個密碼。終端機輪流形成密碼與晶片 卡的値作比較。當相等時,終端機確VAS櫃員機的正確性。 晶片卡的回覆包含密碼和執行指令的狀態碼。成功的 執行指令由狀態碼‘9000’表示。任何不同的狀態碼表示錯 誤。 證明(VERIFY)指令用來驗證持卡者PIN。指令轉送未 編碼PIN數據到晶片卡與儲存參考値入比較。假如輸人和j 儲存値相等,路徑狀況“PIN”被視爲允許。 晶片卡的回覆訊息包括狀態碼,狀態碼‘9000’表示$ 功執行指令。其他碼表示錯誤。 轉移(TRANSFER)指令在轉移儲存區中產生一個項目。 爲這個指令定義三種操作模式: 1 ·藉由降低’票據’或’點數儲存’類別應用程式的 E一VALUE領域中的數値在轉移範圍中產生〜個帛 目。 2·藉由在’身份文件’類別應用程式中收據的授予在 轉移範圍中產生一個項目。 3 ·藉由在’證件’類別應用程式中證件的產生在轉移 47 本紙張尺度適用中國國家標準(CNS ) A4規格(210X 297公釐) (請先閱讀背面之注意事項再填寫本頁} -裝· -線 491980 2497pif.doc/002 經濟部中央標準局員工消費合作社印繁 五、發明説明(〇 範圍中產生一個項目。 操作模式由晶片卡自動選擇:假如指令任選擇的應用 程式DF中執行,首行檢楂是否出現EF JALUE。假如 EF_VALUE出現,晶片卡執行1或模式2指令,假如在VAS 櫃員機中沒有應用程式DF被選出,則使用模式3。 當呼叫‘轉移’指令時,終端機提供晶片卡下列數據: •目前曰期 •在轉移範圍中項目的終止日期 •產生這個項目終端機的認證 •轉移範圍的使用者數據 • VAS應用程式的PIX(僅模式3適用) •被去掉的單元個數(僅模式1適用) •與上述數據有關的巨集指令(MAC),序號和VAS櫃 員機號碼。 一旦‘轉移’指令呼叫時,晶片卡執行下列程序: 1. 在轉移移儲存區中尋找一個自由項目。(下者以反 順序提供存在項目被重寫入的優先權”標記爲移去 的項目”,“標記爲取出的項目”,已達終止日期”)。 2. 在模式1和2中把PIX貼於終端機數據上。 3. 從步驟2把序號貼於數據上。 4. 在步驟3把VAS櫃員機身份貼於數據上。 5 ·在 KGKdec 下編譯 導出 KGKdec,pix。 6·在KGKDE(:,PIX編譯終端機身份導出KDEC。 7·經由步驟4數據產生巨集指令(MAC)。 Γ 請先閱讀背面之注意事項再填寫本頁) •裝·Printed by the Consumer Standards Cooperative of the Central Standards Bureau of the Ministry of Economic Affairs II 491980 2497pif.doc / 002 A7 B7 V. Description of Invention (^) The status shall be stopped. The reply message of the chip card contains a status code. Successful execution of the instruction and authentication of the chip card terminal is indicated by the status code '9000'. Any different code indicates an error. The internal authentication (INTERNAL AUTHENTICATE) instruction is used by the terminal to check the correctness of the VAS teller machine. For this purpose, the chip card calculates a password by deriving the reference data from the terminal. The terminal turns to form a password and compares it with the chip card. When equal, the terminal verifies the correctness of the VAS teller machine. The chip card's reply contains the password and the status code of the execution command. Successful execution is indicated by status code '9000'. Any different status code indicates an error. The VERIFY command is used to verify the cardholder PIN. The command transfers the uncoded PIN data to the chip card and compares it with the stored reference entry. If the input and j store 値 are equal, the path condition "PIN" is considered allowed. The reply message of the chip card includes a status code, and the status code '9000' indicates a $ work execution instruction. Other codes indicate errors. The TRANSFER instruction generates an item in the transfer storage area. Three operating modes are defined for this instruction: 1. By reducing the number in the E_VALUE field of the 'ticket' or 'point storage' category application, ~ targets are generated in the transfer range. 2. Generate an item in the transfer scope by granting a receipt in the 'identity document' category application. 3 · By transferring the certificate in the “Certificate” category application 47 paper sizes are applicable to the Chinese National Standard (CNS) A4 specification (210X 297 mm) (Please read the precautions on the back before filling this page}- Install · -line 491980 2497pif.doc / 002 Employee Consumer Cooperatives of the Central Standards Bureau of the Ministry of Economic Affairs of the People's Republic of China printed five. Invention Description (0 items are generated in the scope. The operation mode is automatically selected by the chip card: if the instruction DF is selected to execute The first line checks whether EF JALUE appears. If EF_VALUE appears, the chip card executes the 1 or mode 2 instruction. If no application DF is selected in the VAS teller machine, mode 3 is used. When the 'Transfer' instruction is called, the terminal Provide the following data of the chip card: • Current date • The end date of the project in the transfer area • The certification of the terminal that generated this item • User data of the transfer area • PIX of the VAS application (only mode 3 is applicable) • Removed Number of units (only for mode 1) • Macro instruction (MAC), serial number and VAS teller machine number related to the above data. Once ' When calling the 'Move' command, the chip card performs the following procedures: 1. Look for a free item in the transfer storage area. (The following provides the priority of existing items being rewritten in the reverse order "items marked for removal", "The item marked for removal" has reached the end date "). 2. Paste PIX on the terminal data in modes 1 and 2. 3. Paste the serial number on the data from step 2. 4. On step 3, VAS teller identity is attached to the data. 5 · Compile and export KGKdec, pix under KGKdec. 6 · Compile terminal identity under KGKDE (:, PIX to export KDEC. 7. Generate macro instruction (MAC) via step 4 data. Γ Please (Please read the notes on the back before filling out this page)
、1T ------1 - -- - - - 11 —If - I I» n^l ϋϋ - 1 —I— -1-- 本紙張尺度適用中國國家標準(CNS ) Α4規格(210X297公釐) 491980 2497pif.doc/002 A7 B7、 1T ------ 1-----11 —If-II »n ^ l ϋϋ-1 —I— -1-- This paper size applies to China National Standard (CNS) Α4 specification (210X297 mm) ) 491980 2497pif.doc / 002 A7 B7
經濟部中央標準局員工消費合作社印I 五、發明説明(必) 8. 從步驟7與終端機MAC比較。假如値不同晶片卡 中斷功能並且降低對KGKDEC的錯誤運算。 9. 對模式1:測示在應用程式載入登記中的値域 EF_VALUE。假如在値域中出現不是的單元,晶片 卡中斷此時的功能,否則應用程式的値域會以此 數宜減少。 10. 指令訊息的組合。 11 .由1中EF_SEQ內容之增量 指令訊息中包括的範圍,例如是終止日期、終端機身 份、交易數據與操作模式之範圍(包括有如模式3,PIX), 就如同密碼一樣。 密碼的計算是以鍵KDEC,數據係經由例如包括有交易 數據與終端身份的MAC來。 TRANSFER指令的回應訊息若是成功的話,包括8位元 組(Byte)長度之數據範與2位元組長度之狀態碼π9000”。 具有與"9000"不同之狀態碼的回應訊息被解讀成錯誤碼。 回應訊息之數據範圍包含有無錯誤之狀態(例如特別是在 指令訊息之密碼爲正確時),以指令訊息KDEC:編碼之密碼。 在此方式之下,不論任何理由,VAS櫃員機執行認證。 TAKE指令提供自設計種類EFJTRANSFER中之標的物的 取消。理論上,TAKE指令之執行代表著從儲存EFJTRANSFER 中記錄之讀出,記錄繼續被保存在儲存中直到儲存空間需 被一新的輸入元所取代時,這數據組才被標記爲取消。考 慮理論上之狀況,爲了取消一數據組,任何人均可使用TAKE 49 (_請先閲讀背面之注意事項再填寫本頁) 裝·Printed by the Consumer Standards Cooperative of the Central Bureau of Standards of the Ministry of Economic Affairs I. Explanation of the Invention (Required) 8. Compare with the MAC of the terminal from step 7. If different chip cards interrupt the function and reduce KGKDEC error calculation. 9. For Mode 1: Measure the EF_VALUE in the application load register. If there is not a unit in the domain, the chip card interrupts the function at this time, otherwise the domain of the application program should be reduced by this number. 10. Combination of command messages. 11. The range included in the increment of the EF_SEQ content in the instruction message, such as the expiration date, terminal body, transaction data, and operation mode (including mode 3, PIX), is like a password. The calculation of the password is based on the key KDEC, and the data is via, for example, a MAC including transaction data and terminal identity. If the response message of the TRANSFER instruction is successful, it includes an 8-byte data range and a 2-byte status code π9000 ”. The response message with a status code different from " 9000 " is interpreted as an error The data range of the response message includes the status of whether there is an error (such as especially when the password of the command message is correct), using the command message KDEC: coded password. In this way, the VAS teller machine performs authentication for whatever reason. The TAKE instruction provides the cancellation of the subject matter in the design type EFJTRANSFER. Theoretically, the execution of the TAKE instruction represents the reading from the record stored in EFJTRANSFER, and the record continues to be stored in storage until the storage space needs to be replaced by a new input element. This data set is marked as canceled when replaced. Considering the theoretical situation, in order to cancel a data set, anyone can use TAKE 49 (_Please read the precautions on the back before filling this page).
、1T 線 本紙張尺度適用中國國家標準(CNS ) Α4規格(210X 297公釐〉 491980 2 4 9 7pi f . doc /0 0 2 A7 經濟部中央標隼局員工消費合作社印製 五、發明説明(Θ ) -- 指令,然而根據R&R,這組數據只有;VAS提供者才有用。 移除的程序可假定如下所述,希望移除憑證或是收據 的VAS提供者先搜尋到適當數據組之轉移儲存(例如是在 SEEK指令或是藉由每一記錄之明確讀取),此數據組可在 任何狀況下被讀取且其內容亦可被檢查。 在此回應下之數據組的顯示因而非爲必要,更可認爲 記錄之數目爲已知。 B^ TAKE指令提供下列之模式·· •當數據無效時’移除並同時註解。 •移除而無上述註解時,數據仍然有效。 指令訊息包括範圍有終端機身份、應用之ρίχ與由終 端機產生之一隨機數。 指令PIX代表移除數據之應用,它與移除之數據組ρΙχ 不同,它完全地提供影響移除交易終端機之KDEC的衍生。 卡片的回應訊息,包括有關呈現於指令訊息與VAS櫃 員機中轉移範圍之記錄數據的KSnVASC之一密碼Q、以終 端機之KDEC影響經由C!移除的一密碼c2、與由指令訊息所 得之隨機數。回應訊息更包括狀態碼,鍵KDEC由更前所述 而得,藉著VAS櫃員機經由KDEC所得密碼其確實性無庸置 疑。確實性之證實與單一性可藉由系統操作器中密碼C(由 於C是由串列數目、轉移記錄範圍之移除位元、與VAS櫃 員機身份所得)之計算得證。 狀態碼"9000”指示指令之成功執行,不同的狀態碼則 被認定爲錯誤。 50 本紙張尺度適用中國國家標準(CNS ) Α4規格(210X297公釐) (請先閲讀背面之注意事 4 項再填」 裝-- :寫本頁}1. The paper size of the 1T line is applicable to the Chinese National Standard (CNS) A4 specification (210X 297 mm) 491980 2 4 9 7pi f. Doc / 0 0 2 A7 Printed by the Consumer Cooperatives of the Central Standardization Bureau of the Ministry of Economic Affairs Θ)-instruction, but according to R & R, this set of data is only useful for the VAS provider. The removal procedure can be assumed as described below. The VAS provider who wishes to remove the certificate or receipt first searches for the appropriate data set Transfer storage (such as in the SEEK instruction or by explicit reading of each record), this data set can be read under any conditions and its content can also be checked. Display of the data set under this response Therefore, it is not necessary, and the number of records can be considered to be known. The B ^ TAKE instruction provides the following modes ... • When data is invalid, it is removed and annotated at the same time. When removed without the above annotations, the data is still valid. The instruction message includes the identity of the terminal, the application of ρίχ and a random number generated by the terminal. The instruction PIX stands for the application of removing data. It is different from the removed data group ρχ, which completely provides impact Derivation of KDEC of the transaction terminal. The response message of the card includes a password Q of KSnVASC related to the recorded data presented in the instruction message and the transfer range in the VAS teller machine, and a password c2 removed by C! Due to the KDEC of the terminal. And the random number obtained from the command message. The response message also includes a status code. The key KDEC is obtained as described above. The authenticity of the password obtained by the KDEC through the VAS teller machine is beyond doubt. Confirmation of authenticity and unity can be borrowed. It is verified by the calculation of the password C in the system operator (because C is obtained by the number of serials, the removed bits of the transfer record range, and the identity of the VAS teller machine). The status code " 9000 "indicates the successful execution of the instruction. The status code was found to be an error. 50 This paper size applies the Chinese National Standard (CNS) Α4 specification (210X297 mm) (Please read the 4 notes on the back before filling it out. '' Loading-: Write this page}
、1T 491980 2497pif.doc/002 A7 B7 五、發明説明(<4) 要被認定的是so需要根據ID0/IEC 7816_5之一 AIDvas。換句話說,需要VAS系統中5位元組長之一 RIDvas。 表 DF—VAS 之 AIDvas 被讀取作·· AIDvas = RIDvasxPIXdf_vas 〇 對每一 VAS應用程式a而言,爲了能由櫃員機中以AIDa =RIDvasxPIXdf_vas來明確地認證前者,一三位元組長之 依據R&R被宣告。在DF_VAS之選擇後,包含有VAS應用 程式A之一表可以使用選擇檔案<pIXa>來被選擇。 更新鍵(KID,K)代表由卡片接受台之一指令,藉此使 用鍵認證身份以一新的K値來取代一鍵。 在VAS應用程式離開持卡者於交易終端機所使用之設 計種類DF-PT或是DF_AD(相對於應用種類指標儲存、票、 認證文件或是數據庫)以前,必須在適當之VAS持有人的 服務終端機載入VAS櫃員機。基本上,當VAS櫃員機被設 定時,卡片宣告者可以一 VAS提供者與一 SO載入一個以 上的VAS應用程式至VAS提供者來下指令。諸如此類之載 入程序構成一特殊之狀況,在此描述如下說明。 VAS應用程式之載入程序: 經濟部中央標準局員工消費合作社印製 1. 持卡者插入一 VAS卡於一服務終端機。 2. 服務終端機檢查VAS櫃員機是否存在: •選擇檔案<AIDvas>(若是VAS櫃員機不可選擇時顯示 錯誤) •讀取檔案<EF_JD之SFI,〇>(顯示VAS櫃員機之數 目) 本紙張尺度適用中國國家標準(CNS ) A4規格(210X297公釐) 491980 2497pif.doc/002 A7 B7 五、發明説明(巧) 選擇性地檢查VAS櫃員機之有效性,服務終端機 需要一 VAS櫃員機之內部認證: •內部認證<隨機數,KAUT$ KID> 服務終端機檢查回應與在此一狀態下之錯誤以終 止程序(以錯誤顯示)。 3 ·服務終端機提供持卡者各種選項之選擇,其中之 一是讀取載入VAS應用程式,這可由持卡者來作 選擇。可載入於服務終端機之所有VAS應用程式 顯示給持卡者,並等待一選擇。因此,啓動檢視 VAS應用程式之操作,持卡者選擇設計種類 或DF_AD之一 VAS應用程式A。 經濟部中央標準局員工消費合作社印製 (諸先閱讀背面之注意事項再填寫本頁} 4.服務終端機經由操作VAS應用程式之選擇來檢視 VAS櫃員機,至於所選擇之VAS應用程式是否有 PIXA已載入於卡中。肯定的是,錯誤的訊息會顯 示,若不是的話,檢查適於A之設計種類的標的 物仍適用於VAS櫃員機,可藉著搜尋EFJ)IR中之 一記錄來進行(例如使用SEEK指令);若是不適 用,即顯示錯誤訊息。若記錄是空的,包括DFJ( 之FIDdf_x中並無VAS應用程式被載入。 5·適於A之設計種類的下一自由物件以VAS應用程 式A被載入,爲此服務終端機要求自VAS提供者 離線(例如是透過VAS提供者SAM)二鍵KLVASP與 KRVASP並指定這些給新的VAS應用程式: •選擇檔案<FIDdf_x> 本紙張尺度適用中國國家標準(CNS ) A4規格(210X297公釐) 491980 經濟部中央標準局員工消費合作社印繁 2497pif.doc/002 _____B7 五、發明説明(θ) •取得密碼 •外部認證<KS0(隨機數),KS0之KID> •更新鍵<KuASP 之 KID, kVASP> •更新鍵<KRVASP 之 KID, KRVASP> •外部認證<KLVASP(隨機數hKwspiKID〉 •更新記錄<DFJ(之EF_INFO的SFI,數據〉 •更新記錄<DFJ(之EF_INTERNAL的SFI,數據〉 •選擇性的(起始):更新記錄<DF_X之EF_VALUE的SFI, 數據> 6·在輸入元成功的進入EFs中時,服務終端機執行 進入VAS應用程S<PIXA,FIDdf_x>之操作,其連接 DFJ(至PIXA,並藉由PIXA來允許選擇檔案(在經 由選擇檔案AIDvas2優先選擇之後)。 此一藉由轉移儲存而致能之機構,例如可能爲被意欲 執行內部或各種服務而無適當之DF結構的VAS提供者所 使用。一持卡者,特別是優先使用此VAS應用程式者,並 不需要於此類終端機中首先載入,相反地,他必需在交易 終端機中直接自我宣告一憑證或是一收據,並在不同的終 端機中兌現(藉由操作移除),或僅出現憑證或收據(藉由 讀取)。設計種類EFJTRANSFER之VAS應用程式的載入, 可藉由輸入VAS數據或此類操作之取得而被明確地了解。 在本文中,設計種類EFJTRANSFER之交易參考更如下所述。 下列將描述輸入VAS應用程式操作之模式。 若是VAS應用程式被載入於VAS櫃員機中,一終端機 53 本紙張尺度適用^國國家標準(CNS ) A4規格(210父297公楚1 一 " ' Γ 請先閱讀背面之注意事項再填寫本頁) •裝_1T 491980 2497pif.doc / 002 A7 B7 V. Description of the invention (< 4) What is to be identified is that it requires AIDvas according to one of ID0 / IEC 7816_5. In other words, RIDvas, one of the 5-byte leaders in the VAS system, is required. Table DF—VAS's AIDvas is read as ... AIDvas = RIDvasxPIXdf_vas 〇 For each VAS application a, in order to be able to explicitly authenticate the former from the teller machine with AIDa = RIDvasxPIXdf_vas, one or three digits of the leader of the group R & R was declared. After the selection of DF_VAS, one of the tables containing the VAS application A can be selected using the selection file < pIXa >. The update key (KID, K) represents an instruction from one of the card receiving stations, thereby using a key authentication identity to replace a key with a new K 値. Before the VAS application leaves the design type DF-PT or DF_AD (relative to the application type index storage, ticket, authentication document or database) used by the cardholder at the transaction terminal, it must be in the appropriate VAS holder's The service terminal is loaded into the VAS teller machine. Basically, when the VAS teller machine is set, the card announcer can load more than one VAS application program from a VAS provider and a SO to the VAS provider to give instructions. Such loading procedures constitute a special situation, which is described here. VAS application loading procedure: Printed by the Consumer Cooperatives of the Central Standards Bureau of the Ministry of Economic Affairs 1. The cardholder inserts a VAS card into a service terminal. 2. The service terminal checks whether the VAS teller machine exists: • Select the file < AIDvas > (if the VAS teller machine is not selectable, an error is displayed) • Read the file < SFI of EF_JD, 0 > (display the number of VAS teller machines) Standards are applicable to China National Standard (CNS) A4 specifications (210X297 mm) 491980 2497pif.doc / 002 A7 B7 V. Description of the invention (ingenious) Selectively check the validity of the VAS ATM, the service terminal needs an internal certification of the VAS ATM : • Internal authentication < random number, KAUT $ KID > The service terminal checks the response and errors in this state to terminate the program (shown with an error). 3. The service terminal provides various options for cardholders. One of them is to load and load VAS applications, which can be selected by the cardholder. All VAS applications that can be loaded into the kiosk are displayed to the cardholder and wait for a choice. Therefore, to start the operation of viewing the VAS application, the cardholder chooses one of the design type or DF_AD VAS application A. Printed by the Consumer Cooperatives of the Central Standards Bureau of the Ministry of Economic Affairs (please read the notes on the back before filling out this page) 4. The service terminal checks the VAS teller machine through the choice of operating the VAS application. As to whether the selected VAS application has PIXA It has been loaded into the card. Surely, the error message will be displayed. If not, check the object of the design type suitable for A is still applicable to the VAS ATM, you can do this by searching one of the records in EFJ) IR. (Eg using the SEEK command); if not, an error message is displayed. If the record is empty, no VAS application is loaded in the FIDdf_x including DFJ (. 5 · The next free object of the design type suitable for A is loaded with VAS application A. For this service terminal requires the The VAS provider is offline (for example, through the VAS provider SAM) two keys KLVASP and KRVASP and assign these to the new VAS application: • Select the file < FIDdf_x > This paper size applies the Chinese National Standard (CNS) A4 specification (210X297) PCT) 491980 Employee Consumer Cooperatives, Central Standards Bureau, Ministry of Economic Affairs, India 2497pif.doc / 002 _____B7 V. Description of the invention (θ) • Obtain password • External authentication < KS0 (random number), KID of KS0 > • Update key < KuASP KID, kVASP > • Update key < KID, KRVASP > of KRVASP; External authentication < KLVASP (random number hKwspiKID〉) • Update record < DFJ (of EF_INFO SFI, data) • Update record < DFJ (of EF_INTERNAL SFI, data> • Optional (start): Update record < SFI of EF_VALUE of DF_X, data > 6. When the input element successfully enters the EFs, the service terminal executes the entry VAS application S < PIX A, FIDdf_x > operation, which connects to DFJ (to PIXA, and allows selection of files by PIXA (after preferential selection via selection file AIDvas2). This mechanism, which is enabled by transfer storage, may be intended, for example Used by VAS providers who perform internal or various services without a proper DF structure. A cardholder, especially a user who prefers to use this VAS application, does not need to be loaded first in such a terminal. Instead, he A voucher or a receipt must be self-declared directly in the transaction terminal, and cashed in different terminals (removed by operation), or only vouchers or receipts (by reading) appear. Design type EFJTRANSFER VAS Application loading can be clearly understood by entering VAS data or obtaining such operations. In this article, the transaction reference of the design type EFJTRANSFER is described below. The following describes the mode of input VAS application operation. If the VAS application is loaded into the VAS teller machine, a terminal 53 paper size is applicable to the national standard (CNS) A4 specification (210 father 297 public Chu 1 1 & quo) t; 'Γ Please read the notes on the back before filling this page) • 装 _
,1T 線 491980 2497pif.doc/002 A7 B7 五、發明説明(以) 將不知道其實際位置,其中Χ = ΡΊ\,...PTP,ADi,...ADa 之VAS應用程式已載入於DF—X抑或未被載入。從卡片製 造者之觀點來看,有可能是可被分開檢查之兩種設計模 式;在本文中,要特別注意的是ZKA標準之一致性。 第一種狀況:可對EFJ)IR存取時 會先遇到下列之狀態: •目前與DF_X之FIDs有關之AIDs中,一EF_DIR(特 別是在DF_VAS之下的)存在於卡片接受台之標準型 態。 •這種EFJDIR可被任何人來讀取(讀取記錄之AC: ALW) •若是县有ΡΙΧ^之VAS應用程式A被系統操作器載 入於一未使用之DF_X,例如是將一輸入元(迎_111) 載入(made into)於存在的基本檔案時(非建立檔 案),就有可能因藉著一經由FIDX所傳來之DF_X 以更新記錄(UPDATE RECORD)之輸入元而增加數據 庫EF_DIR。因此,更新記錄之AC可經由鍵Kso來 實施(enforce)—外部之認證。 經濟部中央標準局員工消費合作社印製 (誇先閱讀背面之注意事項再填寫本頁) •若是在DF__VAS之優先選擇(prior selecti 〇丑)後’ 選擇檔案(SELECT FILE)<E14>之指令傳送至卡片 中時,對於一已載入VAS應用程式A之DFJ(就可 直接選擇。 •若是一被載入於DF_X與其輔助之基本檔案之VAS 應用程式A,將被持卡者於服務終端機請求刪除時’ 本紙張尺度適用中國國家標準(CNS) A4規格(210X297公釐) 經濟部中央標準局員工消費合作社印製 491980 2497pif.doc/002 A7 _____B7____ 五、發明説明( 相對之數據庫會由於刪除檔(DELETE FILE)而不被 刪除,但是輸入之數據會被樣本値(dummy value) 所取代。因此,就可由EF_DIR來刪除輸入元PIXA。 (特別是對輸入元PIXA與DFJ(之關聯檔案,例如 是以經由鍵KSQ之優先外部認證的更新記錄。) •由於DFJ(之數値是固定的,故而EF_DIR記錄之値 就可知。 若是這個方法得以實現,那麼就可得到下列之結果: • VAS應用程式之直接選擇,在DF_VAS選擇之後就 可以使用選擇檔案PIXA。 第二種狀況:無法對EF_DIR存取時 假使對於特殊之卡片接受台(card platform),如前段 所述之EF-DIR無法接受或是EF_DIR的讀寫存取無法執行 時’在數據庫EF—VASDIR下之DF—VAS必須有一預備措施 用以連接一載入PIXA之VAS應用程式系統至其位於DFJ 之實際存儲區(storage locality),藉由系統操作器之明 確的更新記錄指令來帶入(在經由KSQ之優先外部認證 後),由EF—VASDIR之記錄讀取與刪除即可如前述之可行。 操作輸入元VAS應用程式的表現,進行如下: 一包括PIXA之VAS應用程式A先以FIDdf_x載入於一 自由DF—X,包括FiDdf_x記錄之數目被記載於服務終端機 cjn 〇 1.選擇檔案410^>(若是VAS櫃員機不可選擇即顯 示錯誤) 55 本紙張尺度顧巾關( CNS ) A4規格(21〇、/297公釐1 一 ~ ' -----;丨丨裝-------訂-----00 (资先閲讀背面之注意事項再填寫本頁) 491980 2497pif.doc/002 A7 B7 五、發明説明(θ) 2. 取得密碼(CHALLENGE) 3. 外部認證<KS0(隨機數),Kso之KID> 4. 更新記錄<DF_VAS 之 EF_DIR 的 SFI,以 FIDdf_x 記錄的數,PIXa,FIDdf_x) 設計種類DF^PT或DF_AD的VAS應用程式僅可在終端 機之持卡者的請求下刪除(在系統操作器的控制下),設計 種類EN_TRANSFER的VAS應用程式可在任何地方被任何人 給刪除。當刪除之時,區別設計種類DF_PT與DF_AD以及 個別設計種類ENJTRANSFER的VAS應用程式是必須的。 刪除如設計種類DF_PT或DF__AD的VAS應用程式之程 序如下: 1. 持卡者將VAS卡插入於服務終端機中。 2. 服務終端機檢查是否有一 VAS櫃員機存在。 •選擇檔案<AIDvas>(若是VAS櫃員機不可選擇時顯示 錯誤) •讀取記錄<ef_id>(vas櫃員機身份的顯示) 經濟部中央標準局員工消費合作社印裝 (請先閱讀背面之注意事項再填寫本頁) 3. 服務終端機提供持卡者各種選項’可由此讀取到 刪除VAS應用程式,此乃由持卡者選擇。載入於 VAS櫃員機之所有設計種類的所有VAS應用程式, 現在顯示給持卡者並等待其選擇。爲了此一目的, 觀察VAS應用程式之運作即被啓動。持卡者藉由 AIDa選擇設計種類DF_PT或DF_!aD的VAS應用程 式A,被載入VAS應用程式之標的即被標記爲 DF A ° 本紙張尺度適用中國國家標準(CNS) A4規格(210X297公釐) 經濟部中央標準局員工消費合作社印製 491980 五、發明説明(巧) 4.在DF_A2選擇後,服務終端機之自我認證如下: •選擇檔案<PIXA> •取得密碼 •外部認證<KSQ(隨機數),KSQ之KID> 5 . DF_A檔案之內容被刪除(EF_KEY需求1T line 491980 2497pif.doc / 002 A7 B7 V. The description of the invention (to) will not know its actual location, where X = ΡΊ \, ... PTP, ADi, ... ADa VAS application has been loaded in DF-X or not loaded. From the card maker's point of view, there may be two design models that can be checked separately; in this article, special attention should be paid to the consistency of the ZKA standard. The first situation: EFJ) IR access will encounter the following conditions first: • Among the AIDs currently related to DF_X's FIDs, an EF_DIR (especially under DF_VAS) exists in the card receiving station standard Type. • This EFJDIR can be read by anyone (AC: ALW for reading records) • If the VAS application A of the county has PIX ^ is loaded into an unused DF_X by the system operator, for example, an input element (Welcome_111) When loading (made into) the existing basic file (not creating the file), it is possible to increase the database by updating the input element of the UPDATE RECORD by a DF_X sent from FIDX EF_DIR. Therefore, the AC for updating records can be enforced through the key Kso-external authentication. Printed by the Consumers 'Cooperative of the Central Standards Bureau of the Ministry of Economic Affairs (please read the precautions on the back before filling out this page) • If it is after DF__VAS's priority selection (prior selecti 〇 ugly)' Select file (SELECT FILE) < E14 > instruction When sending to the card, you can directly select a DFJ () that has been loaded into the VAS application A. • If it is a VAS application A loaded into DF_X and its auxiliary basic files, the cardholder will use the service terminal When requesting deletion of the machine 'This paper size applies to Chinese National Standard (CNS) A4 (210X297 mm) Printed by the Consumer Cooperatives of the Central Standards Bureau of the Ministry of Economic Affairs 491980 2497pif.doc / 002 A7 _____B7____ V. Description of the invention DELETE FILE is not deleted, but the input data will be replaced by the dummy value. Therefore, EF_DIR can be used to delete the input element PIXA. (Especially the input files of the input element PIXA and DFJ ( For example, update records based on priority external authentication via key KSQ.) • Since the number of DFJ (is fixed, the number of EF_DIR records can be known. If this method is implemented, then the following results can be obtained: • Direct selection of the VAS application, after the selection of DF_VAS, the selection file PIXA can be used. The second situation: if EF_DIR cannot be accessed, it will be accepted for a special card (Card platform), as described in the previous paragraph, when EF-DIR is unacceptable or EF_DIR read-write access cannot be performed, DF-VAS under database EF-VASDIR must have a preparatory measure to connect to a PIXA The VAS application program system is stored in the DFJ's actual storage area (storage locality), which is brought in by a clear update record command of the system operator (after the priority external authentication by KSQ), and read by the records of EF-VASDIR The operation of the input meta VAS application is performed as follows: A VAS application A including PIXA is first loaded into a free DF-X with FIDdf_x, and the number of records including FiDdf_x is recorded in the service Terminal cjn 〇1. Select file 410 ^ > (If the VAS teller machine is not selectable, it will display an error) 55 This paper size Gu Jinguan (CNS) A4 specifications 21〇 、 / 297mm 1 1 ~ '-----; 丨 丨 installed ------- order ----- 00 (read the precautions on the back before filling this page) 491980 2497pif. doc / 002 A7 B7 V. Description of the invention (θ) 2. Get password (CHALLENGE) 3. External authentication < KS0 (random number), KID of Kso > 4. Update record < SFI of EF_DIR of DF_VAS, recorded as FIDdf_x Number, PIXa, FIDdf_x) VAS applications of design type DF ^ PT or DF_AD can only be deleted at the request of the cardholder of the terminal (under the control of the system operator). VAS applications of design type EN_TRANSFER can be downloaded at Deleted anywhere by anyone. When deleting, it is necessary to distinguish between design types DF_PT and DF_AD and VAS applications of individual design types ENJTRANSFER. The procedure for deleting a VAS application such as the design type DF_PT or DF__AD is as follows: 1. The cardholder inserts the VAS card into the kiosk. 2. The service terminal checks if a VAS teller machine exists. • Selected file < AIDvas > (if VAS teller machine is not selectable, error will be displayed) • Read record < ef_id > (display of vas teller machine's identity) Printed by employee consumer cooperative of Central Standard Bureau of Ministry of Economic Affairs (Fill in this page again) 3. The service terminal provides cardholders with a variety of options' from which you can read the delete VAS application, which is chosen by the cardholder. All VAS applications of all design types loaded in the VAS teller machine are now displayed to the cardholder and waiting for their choice. For this purpose, observe the operation of the VAS application and start it. The cardholder chooses the design type DF_PT or DF_! AD for VAS application A through AIDa. The object loaded into the VAS application will be marked as DF A ° This paper size applies the Chinese National Standard (CNS) A4 specification (210X297) (%) Printed by the Consumer Cooperatives of the Central Standards Bureau of the Ministry of Economic Affairs 491980 V. Description of the Invention (Clever) 4. After the selection of DF_A2, the self-authentication of the service terminal is as follows: • Selection file < PIXA > • Get password • External authentication < KSQ (random number), KID of KSQ> 5. The content of the DF_A file is deleted (EF_KEY requirements
Klvasp, EF_INTERNAL與EF_VALUE,因此前者會先被系統 操作器刪除): •更新鍵<KLVASP 之 KID,“00..·00”〉 •更新鍵<KRVASP2KID,“00...00”> •取得密碼 •外部認證<KlVASP(隨機數),KlVASP2KID> •更新記錄<DF_A 之 EF_INF0 的 SFI,“00·..00”> •更新記錄<DF_A 之 EF_INTERNAL 的 SFI,“00···00”> •更新記錄<DF_A 之 EF_VALUE 的 SFI,“00·.·00”> 6.當輸入元成功地進入EF時,服務終端機後來會使 得VAS應用程式之輸入元自EF_DIR被刪除: •選擇檔案<AIDvas>(若是VAS櫃員機無法選擇時顯示 錯誤) •更新記錄<DF_VAS之EF_DIR的SFI,FIDdf_a記錄之 數,“00··.00,,> 若是以PIXA之選擇檔案無以實行時,PIXA至DF_A之 內部連結失效。 < 接下來的是設計種類EF_TRANSFER : 根據R&R,設計種類EF_TRANSFER的VAS應用程式只 ! .II------ (·請先閱讀背面之注意事項再填寫本頁) 訂-----^線 本紙張尺度適用中國國家標準(CNS ) A4規格(210X29*7公釐) 491980 :497pif.doc/002 A7 B7 經濟部中央標準局員工消費合作社印製 五、發明説明(β) 能在交易終端機或是服務終端機(僅管在實際上這只可能 存在有一種)之持卡者的明確請求下才可被刪除。若是轉 移儲存沒有足夠的空間以儲存新的物件(例如是一憑證或 是一收據)時’自EFJTRANSFER刪除之標的物變得特別需 要,刪除的程序經常需要間接地以補充的指令TAKE來執 行。這一^指令僅用以對被移動之標的物作記’因此’可被 一伴隨之指令TRANSFER自由地取代。 VAS應用程式之刪除程序如下: 1. 持卡者插入一 VAS卡於一可顯示EFJTRANSFER終 端機上(可檢視VAS應用程式操作之特殊櫃)。 2. 終端機檢查VAS櫃員機是否存在: •選擇檔案<AIDvas>(若是VAS櫃員機無法選擇時顯示 錯誤) •讀取記錄<EF_ID之SFI,0>(VAS櫃員機身份之顯 示) 3. 終端機提供持卡者許多選項之選擇,其一爲讀取 到刪除VAS應用程式,這可由持卡者來選擇。至 少,設計種類EFJTRANSFER的VAS應用程式現在 顯示給持卡者,並可在此作一選擇,這可由檢視 VAS應用程式之特殊櫃來。持卡者自包括有一憑 證與一收據之設計櫃選擇一標的物,此一標的物 具有記錄數A,持卡者可作此^選擇。 4. 在移入時,終端機以記錄數A對記錄作標記,並 使用指令TAKE傳送A( —由本身,本身之PIX與 Γ 請先閲讀背面之注意事項再填寫本頁) •裝· ιϋ_— ml ϋϋ ϋϋ —ϋ I " .^—^1 ϋΗη m ι^ϋ I ϋϋ ·1^ϋ 本紙張尺度適用中國國家標準(CNS ) A4規格(210X297公釐) 491980 2497pif.doc/〇〇2 A7 B7 經濟部中央標準局員工消費合作社印製 五、發明説明(0) 終端機之身份計算之隨機數): • TAKE<A,隨機數,PIX,終端機身份> 被移動之標記記錄現在可用以接收一新的憑證或收 據。 VAS應用程式之選擇如下所述: 假使設計種類DF—PT或是DF-AD之VAS應用程式A, 以載入VAS應用程式之操作被載入於VAS櫃員機中時,可 由一終端機之一個階段來作選擇。一開始,VAS櫃員機先 被選擇,然後VAS應用程式包括其PIXA : 1· Μ擇檔案<AIDvas>(右是VAS檀員機無法選擇時顯 示錯誤) 服務終端機可用以檢查VAS櫃員機之確實性,因 此服務終端機需要VAS櫃員機之一內部認證: •讀取記錄<EF_ID之SFI,0>(VAS櫃員機身份之 顯示) •內部認證<隨機數,KAUT之KID> 服務終端機檢查回應並終斷錯誤操作(顯示錯 誤)。 2·選擇檔(若是VAS應用程式A未載入於VAS 櫃員機時顯示錯誤) 交易終端機(KGKAUT無法使用)可經由VAS應用程式A 之認證檢查來間接決定VAS櫃員機之認,此乃因爲VAS 應用程式僅可被載入於一服務終端機,在載入之程序時並 檢查VAS櫃員機之認證。VAS應用程式A之認證檢查可以 59 本紙張尺度適用中國國家ϋ ( CNS ) A4規格(210X297公釐1 靡 -----*---r----Ί--,--裝------訂-----線 • (‘請先閲讀背面之注意事項再填寫本頁) 經濟部中央標準局員工消費合作社印裝 491980 2 4 9 7pi f . doc / 0 02 A7 B7 五、發明説明(β) 帶回到交易終端機,測試VAS櫃員機是否包括有VAS應用 程式Α之鍵KlVASPS KRVASP,這可在交易終端機中作如下之 測試: •內部認證〈隨機數,KRVASP或KLVASP之KID〉 爲了測試VAS櫃員機A是否載入於VAS櫃員機中’可 以隨機選擇;在選擇檔案之回應訊息的錯誤顯示下,可得 到目前不存在的結論。 設計種類EFJTRANSFER之VAS應用程式的選擇,可藉 由檢視VAS應用程式與終端機之數據儲存而不需懷疑’因 爲終端機知道自EFJTRANSFER之指示物件的記錄數,因此 可根據記錄數來對所需物件作選擇。 檢視VAS應用程式之效能表現之方式如下所述: 檢視VAS應用程式之操作,可在終端機上列出設計種 類DF_PT,DF_AD與EF_TRANSER的所有VAS應用程式。 由於設計種類EFJTRANSFER之VAS應用程式沒有存取保 護,故得以顯示在交易終端機上,並且交易終端機之設計 種類DFJT或DF_AD的應用亦有選擇性的讀取權(KRVASP所 屬)。 如此之VAS應用程式進行如下: 1. 持卡者插入一 VAS卡(VAS櫃員機有效之晶片卡) 於終端機。 2. 服務終端機測試VAS櫃員機是否<存在: •選擇檔案,<AIDvas>(VAS無法選擇時顯示錯誤) •讀取記錄<EF_ID之SFI,〇>(VAS櫃員機身份之顯 60 本紙張尺度適用中國國家標率(CNS ) A4規格(21〇'〆297公釐) " - :--,--^-裝------訂-----^線 (‘請先閱讀背面之注意事項再填寫本頁) 經濟部中央標準局員工消費合作社印繁 五、發明説明(^) 示) VAS櫃員機之有效性被選擇性的檢查,因此服務終端_ 機要求VAS櫃員機之內部認證: •內部認證<隨機數,KAUT之KID> 服務終端機測試回應與錯誤(並顯示錯誤)中斷的 程序。 3. 服務終端機展示給持卡者各種不同的選擇。其中 之一是讀取檢視VAS應用程式,這可由持卡者選 擇。 4. 服務終端機之自我認證: •取得密碼 •外部認證<KS0(隨機數),KS0之KID> 5. 對於設計種類DF_PT與DF_AD的VAS應用程式, 各別的VAS應用程式可被選擇,可由EF_DIR的內 容以成功地控制,在鍵KSQ之外部認證後,顯示各 別之EFJNF0內容與EF_VALUE(或R&R之一部份): •對 i: 0,…,nrDIR-l •讀取記錄<EF_DIR之SFI,i> 若相對之DF載入於VAS應用程式時,回應訊息、 PIXA顯示“00··00”,在EF—DIR之讀取記錄選擇時, 可使用一尋找指令。 •若是PIXA不爲“00. .〇〇”時 •選擇檔案<PIXA> •讀取記錄<EF_INFO之SFI,〇> 本紙張尺度適用中國國家標準(CNS)A4規格(210X297公釐) —^----p--.—^-裝-- (‘請先閱讀背面之注意事項再填寫本頁)Klvasp, EF_INTERNAL and EF_VALUE, so the former will be deleted by the system operator first): • Update key < KID of KLVASP, "00 .. · 00"> • Update key < KRVASP2KID, "00 ... 00" > • Obtain password • External authentication < KlVASP (random number), KlVASP2KID > • Update record < SFI of EF_INF0 of DF_A, "00 · ..00" > • Update record < SFI of EF_INTERNAL of DF_A, "00 · ·· 00 "> • Update record < SFI of EF_VALUE of DF_A," 00 ··· 00 "> 6. When the input element successfully enters EF, the service terminal will later make the input element of the VAS application EF_DIR is deleted: • Select file < AIDvas > (If VAS ATM cannot be selected, display error) • Update record < SFI of EF_DIR of DF_VAS, number of FIDdf_a records, "00 ·· .00, > If it is PIXA When the selection file is not implemented, the internal link of PIXA to DF_A becomes invalid. ≪ The next is the design type EF_TRANSFER: According to R & R, the VAS application of design type EF_TRANSFER is only! .II ------ (· (Please read the notes on the back before filling out this page) ----- ^ The size of the paper is applicable to China National Standard (CNS) A4 (210X29 * 7mm) 491980: 497pif.doc / 002 A7 B7 Printed by the Consumer Cooperatives of the Central Standards Bureau of the Ministry of Economic Affairs β) Can be deleted at the explicit request of the cardholder of the transaction terminal or the service terminal (only if there may actually be one). If the transfer storage does not have enough space to store new objects (For example, a voucher or a receipt) when the subject matter deleted from EFJTRANSFER becomes particularly needed, the deleted program often needs to be executed indirectly with a supplementary instruction TAKE. This ^ instruction is only used for the subject being moved. The "note" can be replaced freely by an accompanying instruction TRANSFER. The deletion procedure of the VAS application is as follows: 1. The cardholder inserts a VAS card into a terminal that can display EFJTRANSFER (you can view the operation of the VAS application) (Special cabinet) 2. The terminal checks if the VAS teller machine exists: • Select the file < AIDvas > (if the VAS teller machine cannot be selected, an error is displayed) • Read the record < EF_ID S FI, 0 > (Display of VAS teller identity) 3. The terminal provides many options for cardholders. One is to read and delete the VAS application, which can be selected by the cardholder. At least, the VAS application of design type EFJTRANSFER is now displayed to cardholders and can choose here, which can be viewed by the special cabinet of the VAS application. The card holder selects a target from the design cabinet including a certificate and a receipt. This target has a record number A. The card holder can make this choice. 4. When moving in, the terminal marks the record with the record number A and transmits the instruction TAKE (—by itself, its own PIX and Γ, please read the precautions on the back before filling this page) • Install · ιϋ_— ml ϋϋ ϋϋ —ϋ I ". ^ — ^ 1 ϋΗη m ι ^ ϋ I ϋϋ · 1 ^ ϋ This paper size applies to China National Standard (CNS) A4 (210X297 mm) 491980 2497pif.doc / 〇〇2 A7 B7 Printed by the Employees' Cooperative of the Central Standards Bureau of the Ministry of Economic Affairs 5. Description of the Invention (0) Random number for terminal identity calculation): • TAKE < A, random number, PIX, terminal identity > Marked records being moved are now available To receive a new voucher or receipt. The choice of VAS application program is as follows: If the design type DF-PT or DF-AD VAS application program A is used to load the VAS application program into the VAS teller machine, it can be a stage of a terminal Make your choice. At the beginning, the VAS ATM was selected first, and then the VAS application included its PIXA: 1 · M selection file < AIDvas > (Right shows an error when the VAS ATM cannot be selected) The service terminal can be used to check the authenticity of the VAS ATM Therefore, the service terminal needs one of the internal authentications of the VAS teller machine: • Read the record < SFI of EF_ID, > (display of the identity of the VAS teller machine) • Internal authentication < random number, KID of KAUT > The service terminal checks the response and Terminates incorrect operation (display error). 2 · Selection file (if VAS application A is not loaded on the VAS teller machine, an error is displayed) The transaction terminal (KGKAUT cannot be used) can indirectly determine the recognition of the VAS teller machine through the certification check of the VAS application A. This is because of the VAS application The program can only be loaded into a service terminal, and the VAS teller certificate is checked during the loaded program. VAS application A certification inspection can be 59 paper size applicable to China's national standard (CNS) A4 size (210X297 mm 1 extra ----- * --- r ---- Ί-,-installed- ---- Order ----- line • ('Please read the notes on the back before filling this page) Printed by the Consumer Cooperatives of the Central Standards Bureau of the Ministry of Economic Affairs 491980 2 4 9 7pi f. Doc / 0 02 A7 B7 5 2. Description of the invention (β) Take it back to the trading terminal and test whether the VAS teller machine includes the key of the VAS application program KlVASPS KRVASP. This can be tested in the trading terminal as follows: • Internal certification (random number, KRVASP or KLVASP) KID> In order to test whether the VAS teller machine A is loaded in the VAS teller machine, it can be randomly selected; under the error display of the response message of the selected file, a conclusion that does not currently exist can be obtained. The choice of the VAS application of the design type EFJTRANSFER can be By viewing the data storage of the VAS application and the terminal, there is no need to doubt 'Because the terminal knows the number of records of the indicated object from EFJTRANSFER, it can choose the required object based on the number of records. View the performance of the VAS application Fang As follows: View the operation of the VAS application, you can list all VAS applications of the design type DF_PT, DF_AD and EF_TRANSER on the terminal. Since the VAS application of the design type EFJTRANSFER has no access protection, it can be displayed on the trading terminal On-board, and the application of the design type DFJT or DF_AD of the transaction terminal also has selective read rights (KRVASP belongs). So the VAS application program is as follows: 1. The cardholder inserts a VAS card (VAS ATM is valid Chip card) on the terminal. 2. The service terminal tests whether the VAS teller machine < exists: • Select file, < AIDvas > (display error when VAS cannot be selected) • Read record < SFI of EF_ID, 〇 > ( VAS teller machine identity display 60 This paper size is applicable to China National Standards (CNS) A4 specification (21〇'〆297mm) "-:-,-^-装 ------ Order --- -^ Line ('Please read the notes on the back before filling out this page) Printed by the Consumer Cooperatives of the Central Bureau of Standards of the Ministry of Economic Affairs of the People's Republic of China 5. Description of the Invention (^) The validity of the VAS teller machine is selectively checked, so the service Terminal_machine The internal authentication of the VAS teller machine is required: • Internal authentication < random number, KID of KAUT > Service terminal test response and error (and error display) interrupt procedures. 3. The service terminal shows the cardholder various options. One of them is the reading and viewing VAS app, which can be chosen by the cardholder. 4. Self-authentication of the service terminal: • Obtain a password • External authentication < KS0 (random number), KID of KS0 > 5. For VAS applications of design types DF_PT and DF_AD, each VAS application can be selected, Can be successfully controlled by the contents of EF_DIR. After external authentication of key KSQ, the respective contents of EFJNF0 and EF_VALUE (or part of R & R) are displayed: • For i: 0, ..., nrDIR-l • Read Record <SFI, i of EF_DIR> If the DF is loaded in the VAS application, the response message and PIXA will display "00 ·· 00". You can use a search command when selecting the record of EF_DIR. • If PIXA is not “00. .〇〇” • Select file < PIXA > • Read the record < SFI of EF_INFO, 〇 > — ^ ---- p --.— ^-装-('Please read the notes on the back before filling this page)
’1T 經濟部中央標準局員工消費合作社印製 491980 2497pif.d〇c/002 Αη B7 五、發明説明(^7) •回應訊息之顯示(部份選擇性) •讀取記錄<EF_VALUE 之 SFI,0> •選擇檔案<AIDvas> 6.對設計種類EF^TRANSFER之VAS應用程式, EFJTRANSFER內容(或R&R之一部份)之每一記錄 顯示: •選擇檔案<AIDvas> •對 i= 0,…,nrEF_TRANSFER—1 •讀取記錄<EF_TRANSFER 之 SFI,i> (回應訊息顯示EF_TRANSFER之第i個記錄內容) •若內容是空的,內容則以說明顯示(例如:取出/ 終止) 對有檢視權利(KRVASP)之交易終端機而言,檢視設計種 類DF_PT或DF_AD之應用,進行描述物件至兩種變化:對 外部認證,使用鍵KRVASP而非KSQ(僅適用於系統操作器)。 若是交易終端機對KGKAUT無法進行,並仍希望能檢查VAS 應用程式認證,透過交易終端機而非內部認證可要求認證 (至少一)VAS應用程式,根據KRVASP或KlVASP鍵之卡的熟悉 描述來進行。 對於設計種類EF_TRANSFER之VAS應用程式,每一記 錄之EFJTRANSFER的內容(或R&R之一部份)均可如上所述 地成功列出。 、 說明VAS應用程式之操作程序類似,因此,終端機提 供持卡者一項說明VAS應用程式之選擇,除了由操作檢視 62 本紙張尺度適用中國國家標準(CNS ) A4規格(210X297公釐) (請先閱讀背面之注意事項再填寫本頁) -裝·'1T Printed by the Consumers' Cooperative of the Central Bureau of Standards of the Ministry of Economic Affairs 491980 2497pif.d〇c / 002 Αη B7 V. Description of the Invention (^ 7) • Display of the response message (partially selective) • Read the record < EF_VALUE of SFI ≫ • Select file < AIDvas > 6. For VAS applications of design type EF ^ TRANSFER, each record of EFJTRANSFER content (or part of R & R) shows: • Select file < AIDvas > • Right i = 0, ..., nrEF_TRANSFER—1 • Read record < SFI, i of EF_TRANSFER (response message shows the i-th record content of EF_TRANSFER) • If the content is empty, the content is displayed with a description (for example: Termination) For transaction terminals with inspection rights (KRVASP), the application of the inspection design type DF_PT or DF_AD is described in two ways: for external authentication, use the key KRVASP instead of KSQ (only applicable to system operators) ). If the transaction terminal cannot perform KGKAUT and still want to check the VAS application certification, you can request authentication (at least one) of the VAS application through the transaction terminal instead of internal authentication, according to the familiar description of the KRVASP or KlVASP key card . For VAS applications of design type EF_TRANSFER, the contents of each recorded EFJTRANSFER (or part of R & R) can be successfully listed as described above. The procedure for explaining the VAS application is similar. Therefore, the terminal provides the cardholder with a choice of explaining the VAS application. Except for the operation review, 62 paper sizes are applicable to the Chinese National Standard (CNS) A4 specification (210X297 mm) ( (Please read the notes on the back before filling out this page)
、1T 491980 2497pif.doc/〇〇2 八7 B7 經濟部中央標準局員工消費合作社印聚 五、發明説明(“) 而顯示之數據外,亦可顯示來自需由VAS提供者(例如是 外部編碼數據)說明之EF-INFO與EFJALUE的數據,以及 來自EF_INTERNAL之數據。無論如何,對於一個VAS提供 者(依其選擇)而言,均可在終端機之適當鍵使用VAS應用 程式。讀取VAS應用程式之EF_INTERNAL,需要KLVASP鍵(外 部認證)。對於基本檔案EF_INFO,EF_INTERN與EF_VALUE 之外部編碼數據,如同轉移儲存EF_TRANSFER,亦需要VAS 提供者之適當鍵。終端機程式可迅速地辨識出VAS應用程 式所選擇之PIX輔助,因而數據說明之應用鍵便可行。 “VAS應用程式的轉移”操作代表所有或選定的來源卡 (source card)的VAS應用程式轉移到服務終端機上的標 的晶片卡(target card)。這個先決條件是在標的卡的VAS 櫃員機中,沒有VAS應用程式載入並且轉移後的所有VAS 應用程式會從晶片卡刪除。兩者可由“刪除一個VAS應用 程式”操作連續使用來達成。此外,VAS晶片卡必須加以認 證而且標的卡必須提供充足的儲存容量。轉移操作本身基 本是從EF_INTERNAL和鍵KLVASP,KRVASP讀取數據的VAS應 用程式檢視操作之延伸以及,,載入一個VAS應用程式”操作 的重覆使用。 連結VAS數據,VAS櫃員機身份也被轉移到標的卡以 便標卡的VAS應用程式也能如原先在來源卡中正確地教1 行。理由是從VAS提供者得到的鍵由VA<S櫃員機身份來證 實然而鍵沒有改變地被拷貝。再者,VAS提供者並不希望 改變在基本系統中的記帳方式因爲它一般藉由VAS櫃員機 63 本紙張尺度適用中國國家標準(CNS ) A4規格(210X297公釐) Γ 請先閲讀背面之注意事項再填寫本頁) -裝.1T 491980 2497pif.doc / 〇〇2 8 7 B7 Printed by the Consumers' Cooperative of the Central Standards Bureau of the Ministry of Economic Affairs of the People's Republic of China 5. Inventory (") In addition to the data displayed, it can also be displayed from the VAS provider (such as an external code) Data) EF-INFO and EFJALUE data, as well as data from EF_INTERNAL. In any case, for a VAS provider (as it chooses), the VAS application can be used at the appropriate key on the terminal. Read VAS The EF_INTERNAL of the application requires the KLVASP key (external authentication). For the external encoding data of the basic files EF_INFO, EF_INTERN and EF_VALUE, as well as the transfer and storage of EF_TRANSFER, the appropriate key of the VAS provider is also required. The terminal program can quickly identify the VAS application The program selects the PIX auxiliary, so the application key of the data description can be used. The "VAS application transfer" operation represents the transfer of all or selected source card VAS applications to the target chip card on the service terminal ( target card). This prerequisite is that in the VAS ATM of the target card, no VAS application is loaded and All VAS applications after the transfer will be deleted from the chip card. Both can be achieved by continuous use of the "delete a VAS application" operation. In addition, the VAS chip card must be authenticated and the underlying card must provide sufficient storage capacity. The transfer operation itself Basically, it is an extension of the VAS application viewing operation that reads data from EF_INTERNAL and the keys KLVASP, KRVASP, and the repeated use of the "Load a VAS application" operation. Linking the VAS data, the VAS ATM identity is also transferred to the target card, so that the VAS application of the standard card can also correctly teach 1 line in the source card. The reason is that the keys obtained from the VAS provider were verified by the VA < S teller machine identity however the keys were copied without change. Furthermore, the VAS provider does not want to change the billing method in the basic system because it generally uses a VAS teller machine. 63 This paper size is applicable to the Chinese National Standard (CNS) A4 specification (210X297 mm) Γ Please read the notes on the back first (Fill in this page again)-Install.
、1T 線 491980, 1T line 491980
經濟部中央標準局員工消費合作社印I 2497pif.doc/002 A7 ___B7_ 五、發明説明(心) 身份來認證VAS晶片卡。基本上確定在VAS櫃員機身份旳 轉移移中代表系統唯一性的這個號碼會從來源卡刪除。 爲了能夠特別讀取基本檔案EF_INTERNAL和鍵, KRVASP,經由鍵KSC)(如在”刪除個VAS應用程式”操作中)作 外部認證後,服務終端機首先重寫鍵ΚίνΑ5Ρ並且在對KuASP 重新認證後由EF_INTERNAL重寫數據。 除了設計種類〇1?和DF_AD的VAS應用程式外,檔案 EFJTRANSFER也必須重寫。爲此必須連續使用”移去”操作 移去尙未標示爲已移去或終止的設計種類物件,藉由 KSIG_VASC檢查它們的註記且轉移到標的卡的EF JRANSFER 上。在標的卡上,另一方面,物件被標示爲未移去使得它 們仍然有效。 最後,VAS櫃員機總體數據必須轉移。特別是標的卡 的序號必須適合來源卡的數値,輸入VAS數據的程序如下: 依照VAS應用程式的特性,在交易終端機上有三種可 能的輸入VAS數據情形: 第一,設計種類DFJ或DF_AD情況下的購買。 VAS提供者將數據輸入設計種類DF_PT或DF_AD的VAS 應用程式A中。 VAS數據的輸入進行如下: 1 .持卡者將VAS卡放入交易終端機。 2.交易者終端檢查是否VAS櫃員機存在: •選擇檔案<AIDvas>(錯誤顯示當VAS櫃員機無法選 取) 64 本紙張尺度適用中國國家$準(CNS ) A4規格(210X297公釐〉 (請先閱讀背面之注意事項再填寫本頁) 蛉 項再填· 裝· 、11 491980 2497pif.doc/002 A7 B7 經濟部中央標準局員工消費合作社印繁 五、發明説明uy •讀取記錄<即〜比之SFI,0>(顯示VAS櫃員機身份) 3 ·檢查VAS櫃員機的正確性。 假如父易終端機本身擁有主人鍵KGKAUT,它可以要求 VAS櫃員機的內部認證: •內部認證〈隨機數,Kaut2 KID> 交易終端機(沒有可用的KGKaut)可以間接地由VAS應 用程式A的認證來檢驗VAS櫃員機的正確性,理由是VAS 應用程式只有在認證VAS櫃員機時方能在服務終端機上載 入。VAS應用程式A的認證也可以使用回來檢測交易終 端機是否VAS櫃員機包含開啓VAS應用程式a的鍵KlVASP 或KRVASP。這可由交易終端機檢查。例如: •選擇檔案<ΡΙΧΑ>(錯誤顯示不當VAS應用程式A未 載入VAS櫃員機) •內部認證〈隨機數,KRVASP之KIDS Kmsp> 交易終端機檢查其覆並且有錯誤時(以錯誤顯示)中斷 程序。 4·交易終端機選擇VAS應用程式A自我認證並且描 述執行交易所須的基本檔案: •選擇檔案<PIXA>(省略當已在第三步驟執行過) •取得密碼 •外部認證<KLVASP(隨機數)’ KLVASP+ KID> •選擇性:更新記錄<DFJ(之EF_INFO的SFI,數據〉 •選擇性:更新記錄<DFJ(之EFJNTERNAL的SFI,數 據> 本紙張尺度適用中國國家標準(CNS ) A4規格(210X297公釐) (請先閲讀背面之注意事項再填寫本頁) 裝' 491980 2497pif.doc/002 A7 B7 五、發明説明(“) •選擇性:更新記錄<DF_X之EF_VALUE的SFI,數據 > 現在接著講設計種類ef_transfer中的購買。 特別對設計種類EF_TRANSFER的VAS應用程式而言(應 用程式:類別”證件,,),VAS提供者不需要爲了應用佔據所有 權檔案結構DFJ(。結困是不需要在使用VAs應用程式證件 前’過去服務終端機爲了載入VAS應用程式。他也可直接 在交易終端機上,發行證件或收據並且在不同終端機上歸 還(用‘移去’操作)或直接顯示證件或收據(以讀取方式)。 因此輸入VAS數據造成設計種類EF_TRANSFER VAS應用程 式白勺內部載入。對這應用程式類別,設計種類存在由個別’ 記錄’型式的物件組成。可能只有由指令,,轉移,,才能進入 EF_TRANSFER。交易終端機爲此必須擁有一把有效的取消 鍵KDEC和可用的VAS應用程式A之PIXVAS數據的輸入程 序如下: 1·持卡者將VAS卡放入交易終端機。 2.交易終端機檢查是否VAS櫃員機存在: 經濟部中央標準局負工消費合作社印裝 Γ 請先閱讀背面之注意事項再填寫本頁) •選擇檔案<AIDvas>(錯誤顯示當VAS櫃員機無法選 取) •讀取記錄<EF_ID之SFI,0>(顯示VAS櫃員機號碼) 3·交易終端機讀取序號額外從步驟4輸入MAC: v •讀取記錄(EFJEQ之SFI,0)(序號顯示) 4·指令”轉移”使得記錄輸入到EFJTRANSFER : •轉移<交易日期、終止日期,產生器密碼,日期, 66 本紙張尺度適用中國國家榡準(CNS ) Α4規格(210X297公釐) 491980 2497pif.doc/002 八7 B7 五、發明説明( PIXA,具有 KDEC 的 MAC〉 5·交易終端機可觀察’轉移’指令的回覆訊息來檢查 是否VAS櫃員機是真的(即擁有連結關鍵KDEC)。 本文中’轉移’指令的回覆訊息進一步的參考如下 文。 最後,由價値取消作VAS數據的購買。 VAS提供者可以由使用’轉移’指令以價値取消步驟在轉 移範圍EF—TRANSFER中產生一個授予權(例如證件或收 據)。它可給不同的VAS提供者使用。數據由VAS提供者 可作取消的EF_VALUE或EF—INFO中取消。持卡者要求在 EF_TRANSFER中物件的形式。 輸入VAS數據程序如下: 1 ·持卡者將VAS卡放入交易終端機。 2. 交易終端機檢查是否VAS櫃員機存在。 •選擇檔案<AIDvas>(當VAS應用程式A無法選擇時, 顯示錯誤) •讀取記錄<EF_ID之SFI,0>(VAS櫃員機身份之顯 示) 經濟部中央標率局員工消費合作社印5本 (t先閲讀背面之注意事項再填寫本頁) 3. 交易終端機讀取序號額外從步驟4輸入MAC: •讀取記錄<EF_SEQ之SFI,0>(序數之顯示) 4. 交易終端機選擇VAS應用程式A : •選擇檔案<PIXA>(錯誤顯示,當vks應用程式A未 被載入VAS櫃員機時) 5 ·交易終端機使用’轉移’指令從EF_VALUE或EF_ INF0 本紙張尺度適用中國國家標準(CNS〉A4規格(210X297公釐) 491980 24 97pif . doc/0 02 A7 B7 經濟部中央標率局員工消費合作社印製 五、發明説明 取消數據可能例子如下: •轉移<數據,具有KDEC:的MAC> ‘轉移’的指令訊息組成已經描述。假如可以由KDEC 形成有關數據的正確註記,終端機可獲執行取消的權 利。這個註記由VAS櫃員機檢查。假如成功,由VAS 櫃員機在.EFJTRANSFER建立一個建立一個記錄並且序 號增加。 6.交易者終端可以由’轉移’指令回覆訊息檢查是否 VAS櫃員機是正確的(即擁有一般關鍵KDEe)。 我們現在將處理取消VAS數據的程序。有兩種取消程 序: 一方面,設計種類DF_PT或DFJVD之VAS應用程式的 VAS數據可由適當的VAS提供者以取消操作來取消.即由取 消的VAS數據購買。那樣說來,價値花費了而不同價値的 潛在使用權產生了。 另一方面,VAS數據僅可以一次由輔助指令’TAKE’從 EF_TRANSFER取出。那種情況下,使用權用完了,剩下在 轉移範圍中可進一步使用的數據(例如:回數票仍用於回 程)代表需要時被取出直到佃其他物件重疊上去。 由指令’TAKE’VAS數據取消程序如下: 1 ·持卡者將VAS卡放入交易終端機。 2·交易終端機檢查是否VAS櫃員機<存在。 •選擇檔案<AIDvas>(當VAS應用程式A無法選擇時, 顯示錯誤) 68 本紙張尺度適用中國國家標準(CMS ) A4規格(210X297公釐) (請先閱讀背面之注意事項再填寫本頁) .裝------訂-----線—---j---- 491980 24 97pif , doc/0 02 A7 B7 經濟部中央標準局員工消費合作社印製 五、發明説明(Μ ) •讀取記錄<EF-ID之SFI,0>(VAS櫃員機身份之顯 示) 3·交易終端機先從EFJTRANSFER展示使用,,檢視VAS 應用程式”操作的特例可取得的物件以便決定是否 可取得所需的物件。相同地,指令,尋找,可用來 尋找一個樣本。假如成功的話終端機可知道新搜 尋的記錄號碼i。 4.終端機標示記錄顯示記錄號碼,其中以指令TAKE 傳送i値,爲計算出來的一個隨機數它的PIX和 終端機身份。 • ΤΑΚΕ(ι,隨機數,PIX,終端機身份) 交易終端機使用指令’ TAKE ’從EFJRANSFER讀取數據。 同時確定數據已被取出。另外,指令的執行產生了兩種不 同的密碼匕和匕。 密碼由VAS櫃員機使用KSIC_VASC鍵計算出。因此, 記錄q被移去的物件產生者可以從系統操作者獲得唯性一 與正確性的憑據。交的唯一性和正確性來自於物件原始出 處一 VAS提共者的密碼(並且由晶片卡檢驗,參考”轉移”) 以及交易序列計算器的維持和取出時晶片卡所用的密碼 。丨。 密碼(:2由VAS櫃員機使用KGKDEC鍵取出,由VAS櫃員 機從KGKDEe,PIX和終端機身份獲得。藉由了解連結關鍵 KDEC,VAS櫃員機可以直接對終端機證明其正確性。由於使 用指令’轉移’中會作相似檢驗僅真的證件或收據儲存在一 69 本紙張尺度適用中國國家標準(CNS ) A4規格(210X297公釐) ~ (請先閱讀背面之注意事項再填寫本頁) I ιϋ ί —J i ml I ·ϋι m^i i_i—^ n n —ϋ .Printed by the Consumers Cooperative of the Central Standards Bureau of the Ministry of Economic Affairs I 2497pif.doc / 002 A7 ___B7_ V. Description of Invention (Heart) Identity to authenticate the VAS chip card. Basically confirm that the number representing the uniqueness of the system in the VAS ATM identity transfer will be deleted from the source card. In order to be able to specifically read the basic file EF_INTERNAL and the key, KRVASP, via key KSC) (as in the "Delete a VAS application" operation) for external authentication, the service terminal first rewrites the key ΚίνΑ5Ρ and after re-certifying KuASP Data is rewritten by EF_INTERNAL. In addition to designing VAS applications of type 01 and DF_AD, the file EFJTRANSFER must also be rewritten. To this end, the "remove" operation must be continuously used to remove objects that are not marked as removed or terminated, check their annotations by KSIG_VASC and transfer them to the EF JRANSFER of the target card. On the subject card, on the other hand, the objects are marked as unremoved so that they are still valid. Finally, the overall data of the VAS teller machine must be transferred. In particular, the serial number of the target card must be suitable for the number of source cards. The procedure for entering VAS data is as follows: According to the characteristics of the VAS application, there are three possible situations for entering VAS data on the transaction terminal: First, the design type DFJ or DF_AD Case of purchase. The VAS provider enters data into the VAS application A of design type DF_PT or DF_AD. The input of VAS data is as follows: 1. The cardholder puts the VAS card into the transaction terminal. 2.Trader terminal checks if VAS teller machine exists: • Select file < AIDvas > (error display when VAS teller machine cannot be selected) 64 This paper size applies to China National Standard (CNS) A4 (210X297 mm) (Please read first Note on the back, please fill out this page again.) Refill the items, install, 11 491980 2497pif.doc / 002 A7 B7, the Consumers' Cooperative of the Central Standards Bureau of the Ministry of Economic Affairs, Printing and Publication of the Fifth, the description of the invention uy • Read the record < (Show VAS ATM ID) 3 · Check the correctness of the VAS ATM. If the parent terminal itself has the master key KGKAUT, it can require the internal authentication of the VAS ATM: • Internal authentication <random number, Kaut2 KID> The transaction terminal (no KGKaut available) can be indirectly verified by the VAS application A to verify the correctness of the VAS ATM, because the VAS application can only be loaded on the service terminal when the VAS ATM is authenticated. VAS application The authentication of program A can also be used to check whether the trading terminal VAS teller machine contains the key KlVASP or KRVASP to open the VAS application a. This can be done by the transaction Terminal check. For example: • Select file < PiXA > (incorrect display of VAS application A is not loaded into VAS teller machine) • Internal authentication <random number, KRVASP KIDS Kmsp> When the transaction terminal checks its coverage and there are errors ( (Error display) Interrupt the program. 4. The trading terminal selects VAS application A for self-authentication and describes the basic files required to execute the transaction: • Select file < PIXA > (omitted when it has been performed in the third step) • Obtain a password • External authentication < KLVASP (random number) 'KLVASP + KID > • Selectivity: update record < DFJ (of EF_INFO SFI, data>) • Selectivity: update record < DFJ (of EFJNTERNAL SFI, data) this Paper size applies Chinese National Standard (CNS) A4 specification (210X297 mm) (Please read the notes on the back before filling out this page) Pack '491980 2497pif.doc / 002 A7 B7 V. Description of invention (“) • Optional: Update record < DF_X of EF_VALUE SFI, data > Now let's talk about the purchase in design type ef_transfer. Especially for VAS applications of design type EF_TRANSFER Applications program: Category "Documents ,,), VAS providers do not need to occupy the application file structure DFJ all right (junction storm is not required before using VAs application documents' past service terminals for loading VAS applications. He can also issue a certificate or receipt directly on the transaction terminal and return it on a different terminal (using the 'remove' operation) or display the certificate or receipt directly (by reading). Therefore, inputting VAS data causes the design type EF_TRANSFER VAS application to be loaded internally. For this application category, the design category consists of individual 'record' type objects. It is possible to enter EF_TRANSFER only by instruction, branch. To do this, the transaction terminal must have a valid cancel key KDEC and the PIXVAS data entry procedure for the available VAS application A as follows: 1. The cardholder places the VAS card in the transaction terminal. 2. Check whether the VAS teller machine exists in the transaction terminal: Printed by the Central Standards Bureau of the Ministry of Economic Affairs, Consumer Cooperatives Γ Please read the precautions on the back before filling in this page) • Select file < AIDvas > (Error display when VAS teller machine cannot be selected ) • Read record < EF_ID of SFI, 0 > (display VAS teller number) 3. Transaction terminal read serial number additionally enter MAC from step 4: v • Read record (EFFI's SFI, 0) (serial number display) 4 · The instruction "Transfer" enables records to be entered into EFJTRANSFER: • Transfer < Transaction Date, Termination Date, Generator Password, Date, 66 This paper size applies to China National Standard (CNS) Α4 Specification (210X297 mm) 491980 2497pif. doc / 002 8 7 B7 5. Invention Description (PIXA, MAC with KDEC> 5) The transaction terminal can observe the reply message of the 'Transfer' instruction to check whether the VAS teller machine is real (that is, it has the link key KDEC). In this article The reply message of the 'Transfer' instruction is further referenced as follows. Finally, the purchase of VAS data is cancelled by the price. VAS providers can use the 'Transfer' instruction to値 The cancellation step generates an authorization right (such as a certificate or a receipt) in the transfer range EF-TRANSFER. It can be used by different VAS providers. The data is cancelled by the EF_VALUE or EF-INFO that the VAS provider can cancel. Hold the card The user requires the form of the object in EF_TRANSFER. The procedure for inputting VAS data is as follows: 1. The cardholder places the VAS card in the transaction terminal. 2. The transaction terminal checks whether a VAS teller machine exists. • Select the file < AIDvas > (when VAS When application A cannot be selected, an error is displayed.) • Read the record < EF_ID of SFI, 0 > (display of VAS teller machine identity) 5 copies printed by the Employees ’Cooperative of the Central Standards Bureau of the Ministry of Economy (Fill in this page) 3. The transaction terminal reads the serial number and enters the MAC from step 4: • Read the record < EF_SEQ of SFI, 0 > (ordinal display) 4. Select VAS application A for the transaction terminal: • Select the file < PIXA > (error display, when vks application A is not loaded into the VAS teller machine) 5 · The transaction terminal uses the 'transfer' instruction from EF_VALUE or EF_INF0 This paper standard applies to China Standard (CNS> A4 specification (210X297 mm) 491980 24 97pif.doc / 0 02 A7 B7 Printed by the Central Consumers Bureau of the Ministry of Economic Affairs Employee Cooperatives. V. Description of the invention Possible examples of cancellation of data are as follows: • Transfer < Data with KDEC : MAC > The composition of the instruction message for 'Transfer' has been described. If the correct data can be made by KDEC, the terminal can get the right to cancel. This note is checked by a VAS teller. If successful, the VAS teller creates a record in .EFJTRANSFER and the sequence number is incremented. 6. The trader's terminal can reply to the message by the 'Transfer' instruction to check whether the VAS teller machine is correct (ie, possesses the general key KDEe). We will now proceed with the procedure for cancelling VAS data. There are two cancellation procedures: On the one hand, the VAS data of the VAS application of the design type DF_PT or DFJVD can be cancelled by the appropriate VAS provider with a cancel operation, that is, purchased from the cancelled VAS data. In that way, the price is spent and the potential use rights of different prices are created. On the other hand, VAS data can be fetched from EF_TRANSFER only by the auxiliary instruction 'TAKE' once. In that case, the use right is exhausted, and the remaining data that can be further used in the transfer range (for example, the return ticket is still used for the return journey) is taken out when needed until other objects overlap. The procedure for canceling the VAS data by instruction 'TAKE' is as follows: 1. The cardholder places the VAS card in the transaction terminal. 2. The transaction terminal checks whether the VAS teller machine <exists. • Select file < AIDvas > (when VAS application A cannot be selected, display error) 68 This paper size applies Chinese National Standard (CMS) A4 specification (210X297 mm) (Please read the precautions on the back before filling this page ) .------ Order ----- line --- j ---- 491980 24 97pif, doc / 0 02 A7 B7 Printed by the Consumer Cooperatives of the Central Standards Bureau of the Ministry of Economic Affairs Μ) • Read the record < SFI of EF-ID, 0 > (display of VAS teller identity) 3. The transaction terminal is first displayed and used from EFJTRANSFER, and check the available objects of the "VAS application" operation to determine whether or not The required objects can be obtained. In the same way, the instruction, search, can be used to find a sample. If successful, the terminal can know the newly searched record number i. 4. The terminal displays the record and displays the record number, where the command TAKE is used to send i Alas, its PIX and terminal identity are calculated as a random number. • ΤΑΚΕ (ι, random number, PIX, terminal identity) The transaction terminal uses the instruction 'TAKE' to read data from EFJRANSFER. It is also determined that the data has been Take out. In addition, the execution of the command produced two different passwords and daggers. The password was calculated by the VAS teller machine using the KSIC_VASC key. Therefore, the producer of the object whose record q was removed can obtain uniqueness and correctness from the system operator. The uniqueness and correctness of the transaction comes from the password of the VAS contributor who originally originated the object (and verified by the chip card, refer to "Transfer") and the password used by the chip card when maintaining and removing the transaction sequence calculator.丨. The password (: 2 is taken out by the VAS teller machine using the KGKDEC key and obtained by the VAS teller machine from the KGKDEe, PIX and terminal identity. By understanding the key KDEC, the VAS teller machine can directly prove the correctness of the terminal. Because of the use of instructions A similar test will be performed during the 'transfer'. Only the authentic documents or receipts will be stored in a 69-sheet paper. Applicable to China National Standard (CNS) A4 (210X297 mm) ~ (Please read the precautions on the back before filling out this page.) I ιϋ ί —J i ml I · ϋι m ^ i i_i— ^ nn —ϋ.
、1T 491980 2497pif.doc/002 八7 B7 五、發明説明uy 個正確的VAS櫃員機,取出物件的正確性可以保證。一旦 C2間接地由序號,取出位元和VAS櫃員機身份形成後,VAS 櫃員機甚至可以對終端機證明取出物件的唯一性。 任何人有權利使用’TAKE’指令取出。 再者,在服務終機上,設計種類DF_PT和DF_AD的VAS 應用程式讀取所需的密碼或PIN保護其致能的或減緩是有 可能的。而且VAS櫃員機的PIN可以由了解PIN的持卡者 改變且可由系統操作者以Ks◦使用外部認證來保存。可選 擇長度的非數値符號或符號序列也可以被用爲PIN或密 碼。 綜上所述,雖然本發明已以一較佳實施例揭露如上, 然其並非用以限定本發明,任何熟習此技藝者,在不脫離 本發明之精神和範圍內,當可作各種之更動與潤飾,因此 本發明之保護範圍當視後附之申請專利範圍所界定者爲 準。 -------,--裝------訂-----線 Γ 請先閱讀背面之注意事項再填寫本頁) 經濟部中央標準局員工消費合作社印製 本紙張尺度適用中國國家榡隼(CNS) A4規格(210X297公釐)1T 491980 2497pif.doc / 002 8 7 B7 V. Description of the invention uy correct VAS teller machines, the correctness of taking out items can be guaranteed. Once C2 is indirectly formed by the serial number, the take-out bit and the identity of the VAS teller machine, the VAS teller machine can even prove the uniqueness of the retrieved item to the terminal. Anyone has the right to take out using the 'TAKE' instruction. Moreover, on the service terminal, it is possible to design the VAS applications of the types DF_PT and DF_AD to read the required password or PIN to protect their enabling or slowing down. Moreover, the PIN of the VAS teller machine can be changed by the cardholder who knows the PIN and can be saved by the system operator in Ks using external authentication. Non-numeric symbols or symbol sequences of optional length can also be used as a PIN or password. In summary, although the present invention has been disclosed as above with a preferred embodiment, it is not intended to limit the present invention. Any person skilled in the art can make various changes without departing from the spirit and scope of the present invention. And retouching, so the scope of protection of the present invention shall be determined by the scope of the attached patent application. -------, --- install ------ order ----- line Γ Please read the notes on the back before filling out this page) Printed by the paper Applicable to China National Standard (CNS) A4 (210X297 mm)
Claims (1)
Priority Applications (1)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
TW087102084A TW491980B (en) | 1998-02-16 | 1998-02-16 | Chip card and its using method |
Applications Claiming Priority (1)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
TW087102084A TW491980B (en) | 1998-02-16 | 1998-02-16 | Chip card and its using method |
Publications (1)
Publication Number | Publication Date |
---|---|
TW491980B true TW491980B (en) | 2002-06-21 |
Family
ID=21629508
Family Applications (1)
Application Number | Title | Priority Date | Filing Date |
---|---|---|---|
TW087102084A TW491980B (en) | 1998-02-16 | 1998-02-16 | Chip card and its using method |
Country Status (1)
Country | Link |
---|---|
TW (1) | TW491980B (en) |
-
1998
- 1998-02-16 TW TW087102084A patent/TW491980B/en active
Similar Documents
Publication | Publication Date | Title |
---|---|---|
US12086791B2 (en) | Systems and methods for proxy card and/or wallet redemption card transactions | |
US6549912B1 (en) | Loyalty file structure for smart card | |
AU2006268199B2 (en) | Apparatus and method for integrated payment and electronic merchandise transfer | |
US8196818B2 (en) | Apparatus and method for integrated payment and electronic merchandise transfer | |
RU2635233C2 (en) | Mechanism allowing use of one-time cards in system intended to accept cards according to standards of international payment industry | |
PT1934964E (en) | Transaction apparatus, systems and methods | |
US20030088512A1 (en) | Computer methods and systems for payment applications | |
KR20000069703A (en) | Chip card and method for its use | |
WO2002025495A1 (en) | A computerized method and system for a secure on-line transaction using cardholder authentication | |
JP4942240B2 (en) | Payment processing method using a credit card | |
JP2002207970A (en) | Information card issuing system | |
JP2002083237A (en) | Settlement management method for electronic commerce by prepaid system | |
JP2000508101A (en) | Chip card and usage of chip card | |
TW491980B (en) | Chip card and its using method | |
US8074872B2 (en) | Payment terminal, and associated method and program | |
KR20000054140A (en) | RF-ID intergration system for settlement and rechargement function | |
KR20010000329A (en) | The ON/OFF line electronic commerce method and system using a networking prepaid card and the method of sharing members among the internet site by means of this system | |
BR112013033493B1 (en) | DEMATERIALIZED TRANSFER METHOD AND SAFE SYSTEM | |
KR20190041478A (en) | System and method for exchanging digital bearer securities | |
KR20100057166A (en) | System and method for management of charging/using card by using step and recording medium | |
JP2009245039A (en) | Electronic ticket management system and method |