TWM581251U - Netwok bank system - Google Patents

Netwok bank system Download PDF

Info

Publication number
TWM581251U
TWM581251U TW108204412U TW108204412U TWM581251U TW M581251 U TWM581251 U TW M581251U TW 108204412 U TW108204412 U TW 108204412U TW 108204412 U TW108204412 U TW 108204412U TW M581251 U TWM581251 U TW M581251U
Authority
TW
Taiwan
Prior art keywords
online banking
push
server
mobile device
banking server
Prior art date
Application number
TW108204412U
Other languages
Chinese (zh)
Inventor
楊孟臻
Original Assignee
臺灣銀行股份有限公司
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by 臺灣銀行股份有限公司 filed Critical 臺灣銀行股份有限公司
Priority to TW108204412U priority Critical patent/TWM581251U/en
Publication of TWM581251U publication Critical patent/TWM581251U/en

Links

Abstract

一種網路銀行系統包含一網路銀行伺服器、一推播伺服器、及一行動裝置。當該行動裝置與該網路銀行伺服器建立連線,並將一包含一身分帳號的推播驗證請求傳送至該網路銀行伺服器時,該網路銀行伺服器根據該推播驗證請求,使得該推播伺服器將一推播訊息傳送至該行動裝置。接著,該行動裝置在一推播應用程式中,根據一使用者所輸入的一交易密碼,產生一動態密碼,並將該動態密碼傳送至該推播伺服器。該推播伺服器在驗證該動態密碼正確之後,通知該網路銀行伺服器驗證成功,使得該網路銀行伺服器對該行動裝置提供該網路銀行服務。An online banking system includes an online banking server, a push server, and a mobile device. When the mobile device establishes a connection with the online banking server and transmits a push verification request including an identity account to the online banking server, the online banking server determines the request according to the push. The push server is caused to transmit a push message to the mobile device. Then, in a push application, the mobile device generates a dynamic password according to a transaction password input by a user, and transmits the dynamic password to the push server. After verifying that the dynamic password is correct, the push server notifies the online banking server that the verification is successful, so that the online banking server provides the online banking service to the mobile device.

Description

網路銀行系統Online banking system

本新型是有關於一種網路銀行系統,特別是指一種方便使用者登入的網路銀行系統。The present invention relates to an online banking system, and more particularly to an online banking system that facilitates user login.

現行的網路銀行服務不論是在個人或企業網路銀行服務都是以統一編號(身分證號碼)、使用者代號、及使用者密碼等資訊作為登入驗證的方式。然而,各家銀行的代號及密碼的規則與長度不一,對客戶來說,除了必須記清楚一堆代號與密碼之外,還要在登入時輸入防止駭客登入的驗證碼,以讓駭客難以遠端操控,卻也因此造成客戶在使用上的困擾。此外,由於行動裝置上的虛擬鍵盤並不如傳統電腦的實體鍵盤般地易於操作,在輸入使用者代號、使用者密碼時也常有輸入不成功或誤填等情況發生,而造成客戶的不方便。因此,這些現象便成為一個待解決的問題。The current online banking service uses the unified number (identity number), user code, and user password as the means of login verification in both personal and corporate online banking services. However, the rules and lengths of the code and password of each bank are different. For the customer, in addition to having to remember a bunch of code and password, you must also enter the verification code to prevent the hacker from logging in during login. It is difficult for the customer to control the remote end, but it also causes the customer to be troubled in use. In addition, since the virtual keyboard on the mobile device is not as easy to operate as the physical keyboard of the conventional computer, when the user code and the user password are input, the input is unsuccessful or mis-filled, and the customer is inconvenient. . Therefore, these phenomena have become a problem to be solved.

因此,本新型的目的,即在提供一種方便使用者登入的網路銀行系統。Therefore, the purpose of the present invention is to provide an online banking system that facilitates user login.

於是,本新型網路銀行系統,包含一網路銀行伺服器、一推播伺服器、及一行動裝置。Thus, the novel online banking system includes an online banking server, a push server, and a mobile device.

該網路銀行伺服器用於提供一網路銀行服務。該推播伺服器電連接該網路銀行伺服器。The online banking server is used to provide an online banking service. The push server is electrically connected to the online banking server.

該行動裝置儲存一對應一身分帳號的裝置符記(Token),並安裝一推播應用程式。其中,當該行動裝置與該網路銀行伺服器建立連線,並將一包含該身分帳號的推播驗證請求傳送至該網路銀行伺服器時,該網路銀行伺服器根據該推播驗證請求,使得該推播伺服器將一推播訊息傳送至該行動裝置。接著,該行動裝置在該推播應用程式中,根據一使用者所輸入的一交易密碼,產生一動態密碼,並將該動態密碼傳送至該推播伺服器。該推播伺服器在驗證該動態密碼正確之後,使得網路銀行伺服器對該行動裝置提供該網路銀行服務。The mobile device stores a device token corresponding to an identity account and installs a push application. Wherein, when the mobile device establishes a connection with the online banking server and transmits a push verification request including the identity account to the online banking server, the online banking server verifies according to the push broadcast The request causes the push server to transmit a push message to the mobile device. Then, the mobile device generates a dynamic password according to a transaction password input by the user in the push application, and transmits the dynamic password to the push server. After the push server verifies that the dynamic password is correct, the network banking server provides the mobile banking service to the mobile device.

在一些實施態樣中,其中,該網路銀行伺服器對該行動裝置藉由一種回應式網頁設計(Responsive web design,RWD)的網頁提供該網路銀行服務,該身分帳號是一統一編號或一身分證號碼,該行動裝置在該網頁中輸入該統一編號或該身分證號碼,並選擇產生該推播驗證請求。In some implementations, wherein the online banking server provides the online banking service to the mobile device via a Responsive web design (RWD) webpage, the identity account number is a unified number or A mobile phone number, the mobile device inputs the unified number or the identity card number in the webpage, and selects to generate the push verification request.

在另一些實施態樣中,其中,該交易密碼是藉由該使用者在該推播應用程式中自行預先設定。In other implementations, the transaction password is pre-set by the user in the push application.

在另一些實施態樣中,其中,該行動裝置是一智慧型手機、一平板電腦、或其他具備通訊及連網功能的電子設備。In other implementations, the mobile device is a smart phone, a tablet computer, or other electronic device with communication and networking functions.

在另一些實施態樣中,該網路銀行系統還包含一電腦主機。其中,當該電腦主機與該網路銀行伺服器建立連線,並將包含該身分帳號的該推播驗證請求傳送至該網路銀行伺服器時,該網路銀行伺服器根據該推播驗證請求,使得該推播伺服器將該推播訊息傳送至該行動裝置。接著,該行動裝置在該推播應用程式中,根據該使用者所輸入的該交易密碼,產生該動態密碼,並將該動態密碼傳送至該推播伺服器。該推播伺服器在驗證該動態密碼正確之後,使得該網路銀行伺服器對該電腦主機提供該網路銀行服務。In other implementations, the online banking system also includes a computer host. Wherein, when the computer host establishes a connection with the online banking server and transmits the push verification request including the identity account to the online banking server, the online banking server verifies according to the push broadcast The request causes the push server to transmit the push message to the mobile device. Then, the mobile device generates the dynamic password according to the transaction password input by the user in the push application, and transmits the dynamic password to the push server. After verifying that the dynamic password is correct, the push server enables the online banking server to provide the online banking service to the host computer.

在一些實施態樣中,其中,該身分帳號是一統一編號或一身分證號碼,該網路銀行伺服器對該電腦主機藉由一網頁提供該網路銀行服務,該電腦主機在該網頁中輸入該統一編號或該身分證號碼,並選擇產生該推播驗證請求。該交易密碼是藉由該使用者在該推播應用程式中自行預先設定。In some implementations, wherein the identity account is a unified number or a ID number, the online banking server provides the online banking service to the computer host by using a webpage, where the computer host is in the webpage Enter the unified number or the ID card number and choose to generate the push verification request. The transaction password is pre-set by the user in the push application.

在另一些實施態樣中,其中,該行動裝置包括一影像擷取單元,該電腦主機包括一顯示單元。當該電腦主機與該網路銀行伺服器建立連線,並將一個二維條碼驗證請求傳送至該網路銀行伺服器時,該網路銀行伺服器根據該二維條碼驗證請求,通知該推播伺服器產生一個二維條碼,且該推播伺服器將該二維條碼傳送至該網路銀行伺服器,該網路銀行伺服器再將該二維條碼傳送至該電腦主機,使得該顯示單元顯示該二維條碼。In other implementations, the mobile device includes an image capture unit, and the computer host includes a display unit. When the computer host establishes a connection with the online banking server and transmits a two-dimensional barcode verification request to the online banking server, the online banking server notifies the push according to the two-dimensional barcode verification request. The broadcast server generates a two-dimensional barcode, and the push server transmits the two-dimensional barcode to the online banking server, and the online banking server transmits the two-dimensional barcode to the host computer, so that the display The unit displays the two-dimensional barcode.

該行動裝置在該推播應用程式中,藉由該影像擷取單元擷取該顯示單元上的該二維條碼,再根據該使用者所輸入的該交易密碼,產生該動態密碼,藉由該使用者將該動態密碼輸入至該電腦主機,並經由該網路銀行伺服器傳送至該推播伺服器。該推播伺服器在驗證該動態密碼正確之後,使得該網路銀行伺服器對該電腦主機提供該網路銀行服務。The mobile device captures the two-dimensional barcode on the display unit by the image capturing unit, and generates the dynamic password according to the transaction password input by the user, by using the The user inputs the dynamic password to the host computer and transmits the push password to the push server via the online banking server. After verifying that the dynamic password is correct, the push server enables the online banking server to provide the online banking service to the host computer.

在一些實施態樣中,其中,該網路銀行伺服器對該電腦主機藉由一網頁提供該網路銀行服務,該電腦主機在該網頁中選擇產生該二維條碼驗證請求。In some implementations, the online banking server provides the online banking service to the computer host via a webpage, and the computer host selects to generate the two-dimensional barcode verification request in the webpage.

在一些實施態樣中,其中,該交易密碼是藉由該使用者在該推播應用程式中自行預先設定。In some implementations, the transaction password is pre-set by the user in the push application.

在另一些實施態樣中,其中,該電腦主機是一桌上型電腦。In other implementations, wherein the computer host is a desktop computer.

本新型的功效在於:藉由該行動裝置產生包含該身分帳號如統一編號或身分證號碼的該推播驗證請求,該推播伺服器將該推播訊息傳送至該行動裝置,及根據該交易密碼正確以產生該動態密碼,使得該使用者僅需要輸入該統一編號或該身分證號碼及自訂的該交易密碼,就能夠在該網路銀行伺服器成功登入,以在該行動裝置使用該網路銀行服務,而大幅地提升使用的便利性。The utility model has the following advantages: the mobile device generates the push verification request including the identity account number such as a uniform number or an identity card number, and the push server transmits the push broadcast message to the mobile device, and according to the transaction The password is correct to generate the dynamic password, so that the user only needs to input the unified number or the identity card number and the customized transaction password, so that the online banking server can successfully log in to use the mobile device. Online banking services, which greatly enhance the convenience of use.

在本新型被詳細描述之前,應當注意在以下的說明內容中,類似的元件是以相同的編號來表示。Before the present invention is described in detail, it should be noted that in the following description, similar elements are denoted by the same reference numerals.

參閱圖1,本新型網路銀行系統的一第一實施例,包含一網路銀行伺服器2、一推播伺服器3、及一行動裝置1。在本實施例中,該行動裝置1是一智慧型手機,而在其他實施例中,該行動裝置1也可以是一平板電腦,或其他具備通訊及連網功能的電子設備。Referring to FIG. 1, a first embodiment of the novel online banking system includes an online banking server 2, a push server 3, and a mobile device 1. In this embodiment, the mobile device 1 is a smart phone, and in other embodiments, the mobile device 1 can also be a tablet computer or other electronic device with communication and networking functions.

該網路銀行伺服器2電連接該推播伺服器3,例如以有線的方式建立連線,並屬於一銀行,且用於提供該銀行的一網路銀行服務。在本實施例中,該推播伺服器3屬於該銀行,即由該銀行自行建置,而在其他實施例中,該推播伺服器3也可以屬於一第三方公司的雲端伺服器。The online banking server 2 is electrically connected to the push server 3, for example, to establish a connection in a wired manner, and belongs to a bank, and is used to provide an online banking service of the bank. In this embodiment, the push server 3 belongs to the bank, that is, it is built by the bank. In other embodiments, the push server 3 can also belong to a cloud server of a third-party company.

當該銀行的一個客戶(即使用者)欲使用該銀行所提供的該網路銀行服務時,該客戶需要先至該銀行的其中一分行,在該客戶的該行動裝置1安裝一推播應用程式(APP),並註冊一身分帳號及對應該身分帳號及該行動裝置1的一裝置符記(Token)。該行動裝置1儲存該裝置符記,以使得該推播伺服器3能夠對該行動裝置1提供推播服務。另外,在其他實施例中,該客戶也可以在線上例如以晶片金融卡驗證的方式申請在該行動裝置1安裝該推播應用程式。When a customer (ie, a user) of the bank wants to use the online banking service provided by the bank, the customer needs to go to one of the bank's branches to install a push application on the mobile device 1 of the customer. Program (APP), and register a personal account number and a device account (Token) corresponding to the identity account and the mobile device 1. The mobile device 1 stores the device token to enable the push server 3 to provide a push service to the mobile device 1. In addition, in other embodiments, the client may also apply to install the push application on the mobile device 1 online, for example, in the form of a wafer financial card verification.

當該客戶在該行動裝置1欲使用該網路銀行服務時,該客戶藉由該行動裝置1的一瀏覽器連線至該網路銀行伺服器2所提供的一種回應式網頁設計(Responsive web design,RWD)的網頁,並在該網頁中輸入該身分帳號,並選擇採用一種推播驗證的方式,則該行動裝置1產生一推播驗證請求。該行動裝置1還將該推播驗證請求傳送至該網路銀行伺服器2。在本實施例中,當該客戶是自然人時,該身分帳號是該客戶的依身分證號碼,當該客戶是一法人時,該身分帳號是一統一編號,但不以此為限。When the client wants to use the online banking service in the mobile device 1, the client connects to a response webpage provided by the online banking server 2 via a browser of the mobile device 1 (Responsive web) The webpage of design, RWD), and enters the identity account in the webpage, and selects a push verification method, and the mobile device 1 generates a push verification request. The mobile device 1 also transmits the push verification request to the online banking server 2. In this embodiment, when the customer is a natural person, the identity account number is the customer's personal identification number. When the customer is a legal person, the identity account number is a unified number, but not limited thereto.

該網路銀行伺服器2在接收到該推播驗證請求時,根據該推播驗證請求,使得該推播伺服器3將一推播訊息傳送至該行動裝置1。接著,該客戶在檢視該推播訊息之後,藉由該行動裝置1在該推播應用程式中,輸入該客戶預先設定的一交易密碼。該推播應用程式藉此產生一動態密碼,並將該動態密碼傳送至該推播伺服器3。該推播伺服器3在驗證該動態密碼正確之後,通知該網路銀行伺服器2驗證成功,以使得該網路銀行伺服器2對該行動裝置1提供該網路銀行服務。更詳細地說,該交易密碼在該使用者首次設定時,就由該推播應用程式根據該身分帳號、該行動裝置1的一裝置序號等資訊產生一種子(Seed),且該種子儲存在該行動裝置1的該裝置符記及該推播伺服器3中。該動態密碼是根據該交易密碼、一交易資料、及該種子運算而產生,該推播伺服器3根據該動態密碼、該交易資料、及該種子運作作比對,而能夠驗證該動態密碼是否正確。Upon receiving the push verification request, the online banking server 2 causes the push server 3 to transmit a push message to the mobile device 1 according to the push verification request. Then, after the client views the push message, the mobile device 1 inputs a transaction password preset by the client in the push application. The push application thereby generates a dynamic password and transmits the dynamic password to the push server 3. After verifying that the dynamic password is correct, the push server 3 notifies the online banking server 2 that the verification is successful, so that the online banking server 2 provides the mobile banking service to the mobile device 1. In more detail, when the user first sets the transaction password, the push application generates a seed according to the identity account, a device serial number of the mobile device 1, and the like, and the seed is stored in the seed. The device of the mobile device 1 is recorded in the push server 3. The dynamic password is generated according to the transaction password, a transaction data, and the seed operation, and the push server 3 can verify whether the dynamic password is based on the dynamic password, the transaction data, and the seed operation. correct.

另外要補充說明的是:該動態密碼的產生方式是屬於一種行動推播一次性密碼(One time password,OTP)的技術,即以對稱金鑰加密法產生加密的種子(Seed)給每位註冊的用戶。換句話說,每位用戶的行動裝置1上的該推播應用程式具有獨特的該裝置符記,且禁止安裝在破解(Root或JB)的行動裝置1上。該推播伺服器3能夠根據時間,例如該推播訊息所產生的時間、該動態密碼被產生的時間等諸多相對的時間關係,對該動態密碼驗證其正確性。因此,相對其他以圖形鎖、指紋辨識等不具備裝置符記的驗證技術,具有更高的安全性。In addition, it should be added that the dynamic password is generated by a technology that pushes one-time password (OTP), that is, a symmetric seed encryption method is used to generate an encrypted seed (Seed) for each registration. User. In other words, the push application on the mobile device 1 of each user has a unique device token and is prohibited from being installed on the mobile device 1 of the hack (Root or JB). The push server 3 can verify the correctness of the dynamic password according to time, for example, the time generated by the push message, the time when the dynamic password is generated, and the like. Therefore, it has higher security than other verification technologies that do not have device symbols such as graphic locks and fingerprint recognition.

參閱圖2,本新型網路銀行系統的一第二實施例,包含一網路銀行伺服器2、一推播伺服器3、一行動裝置1、及一電腦主機4。在本實施例中,該電腦主機4是一桌上型電腦,但不以此為限。該網路銀行伺服器2、該推播伺服器3、及該行動裝置1都與該第一實施例相同。Referring to FIG. 2, a second embodiment of the new online banking system includes an online banking server 2, a push server 3, a mobile device 1, and a computer host 4. In this embodiment, the computer main unit 4 is a desktop computer, but is not limited thereto. The online banking server 2, the push server 3, and the mobile device 1 are all the same as the first embodiment.

當該客戶在該電腦主機4欲使用該網路銀行服務時,該客戶藉由該電腦主機4的一瀏覽器連線至該網路銀行伺服器2所提供的一網頁,並在該網頁中輸入該身分帳號,並選擇採用一種推播驗證的方式,則該電腦主機4產生該推播驗證請求。該電腦主機4還將該推播驗證請求傳送至該網路銀行伺服器2。在本實施例中,當該客戶是自然人時,該身分帳號是該客戶的依身分證號碼,當該客戶是一法人時,該身分帳號是一統一編號,但不以此為限。When the client wants to use the online banking service on the computer host 4, the client connects to a webpage provided by the online banking server 2 through a browser of the computer host 4, and is in the webpage. Entering the identity account and selecting a push verification method, the computer host 4 generates the push verification request. The host computer 4 also transmits the push verification request to the online banking server 2. In this embodiment, when the customer is a natural person, the identity account number is the customer's personal identification number. When the customer is a legal person, the identity account number is a unified number, but not limited thereto.

該網路銀行伺服器2在接收到該推播驗證請求時,根據該推播驗證請求,使得該推播伺服器3將該推播訊息傳送至該行動裝置1。接著,該客戶在檢視該推播訊息之後,藉由該行動裝置1在該推播應用程式中,輸入該客戶預先設定的該交易密碼。該推播應用程式藉此產生該動態密碼,並將該動態密碼傳送至該推播伺服器3。該推播伺服器3在驗證該動態密碼正確之後,通知該網路銀行伺服器2驗證成功,以使得該網路銀行伺服器2對該電腦主機4提供該網路銀行服務。Upon receiving the push verification request, the online banking server 2 causes the push server 3 to transmit the push message to the mobile device 1 based on the push verification request. Then, after the client views the push message, the mobile device 1 inputs the transaction password preset by the client in the push application. The push application thereby generates the dynamic password and transmits the dynamic password to the push server 3. After verifying that the dynamic password is correct, the push server 3 notifies the online banking server 2 that the verification is successful, so that the online banking server 2 provides the online banking service to the host computer 4.

參閱圖2,本新型網路銀行系統的一第三實施例,大致上是與該第二實施例相同,不同的地方在於:該行動裝置1包括一影像擷取單元11,如攝影模組或相機模組,該電腦主機4包括一顯示單元41,如螢幕。Referring to FIG. 2, a third embodiment of the present invention is substantially the same as the second embodiment. The difference is that the mobile device 1 includes an image capturing unit 11, such as a photography module or A camera module, the computer host 4 includes a display unit 41, such as a screen.

當該客戶在該電腦主機4欲使用該網路銀行服務時,該客戶藉由該電腦主機4的該瀏覽器連線至該網路銀行伺服器2所提供的該網頁,並選擇採用一種二維條碼驗證的方式,則該電腦主機4產生該二維條碼驗證請求。該電腦主機4還將該二維條碼驗證請求傳送至該網路銀行伺服器2。When the client wants to use the online banking service on the computer host 4, the client connects to the webpage provided by the online banking server 2 by using the browser of the computer host 4, and selects a second type. In the manner of the barcode verification, the computer host 4 generates the two-dimensional barcode verification request. The host computer 4 also transmits the two-dimensional barcode verification request to the online banking server 2.

該網路銀行伺服器2在接收到該二維條碼驗證請求時,通知該推播伺服器3產生一個二維條碼,且該推播伺服器3將該二維條碼傳送至該網路銀行伺服器2,該網路銀行伺服器2再將該二維條碼傳送至該電腦主機4,使得該顯示單元41顯示該二維條碼。該客戶藉由該行動裝置1的該影像擷取單元11,在該推播應用程式中擷取該顯示單元41所顯示的該二維條碼,再根據該使用者所輸入的該交易密碼,產生該動態密碼,並將該二維條碼及該動態密碼傳送至該推播伺服器3。該推播伺服器3在驗證該動態密碼正確之後,通知該網路銀行伺服器2驗證成功,以使得該網路銀行伺服器2對該電腦主機4提供該網路銀行服務。When receiving the two-dimensional barcode verification request, the online banking server 2 notifies the push server 3 to generate a two-dimensional barcode, and the push server 3 transmits the two-dimensional barcode to the online banking servo. The online banking server 2 transmits the two-dimensional barcode to the computer host 4, so that the display unit 41 displays the two-dimensional barcode. The image capture unit 11 of the mobile device 1 captures the two-dimensional barcode displayed by the display unit 41 in the push application, and generates the transaction password according to the transaction password input by the user. The dynamic password is transmitted to the push server 3 by the two-dimensional barcode and the dynamic password. After verifying that the dynamic password is correct, the push server 3 notifies the online banking server 2 that the verification is successful, so that the online banking server 2 provides the online banking service to the host computer 4.

綜上所述,藉由該網路銀行系統所提供的該推播驗證或該二維條碼驗證的方式,使用者(即客戶)僅需要輸入該身分帳號(如統一編號或身分證號碼)與自訂的該交易密碼,或僅需要輸入該交易密碼而不需要輸入該身分帳號,即能便利且快速地登入網路銀行服務。此外,該動態密碼的驗證方式也會在資料傳輸過程中採加密保護,以保障並提升資料的安全性與隱密性,故確實能達成本新型的目的。In summary, the user (ie, the customer) only needs to input the identity account (such as a uniform number or an identity card number) by using the push verification or the two-dimensional barcode verification provided by the online banking system. Customizing the transaction password, or simply entering the transaction password without entering the identity account, can conveniently and quickly log into the online banking service. In addition, the verification method of the dynamic password is also encrypted and protected during the data transmission process to ensure and enhance the security and privacy of the data, so the purpose of the novel can be achieved.

惟以上所述者,僅為本新型的實施例而已,當不能以此限定本新型實施的範圍,凡是依本新型申請專利範圍及專利說明書內容所作的簡單的等效變化與修飾,皆仍屬本新型專利涵蓋的範圍內。However, the above is only the embodiment of the present invention. When the scope of the novel implementation cannot be limited thereto, all simple equivalent changes and modifications according to the scope of the patent application and the contents of the patent specification are still This new patent covers the scope.

1‧‧‧行動裝置 11‧‧‧影像擷取單元 2‧‧‧網路銀行伺服器 3‧‧‧推播伺服器 4‧‧‧電腦主機 41‧‧‧顯示單元1‧‧‧ mobile device  11‧‧‧Image capture unit  2‧‧‧Internet Banking Server  3‧‧‧Pushing server  4‧‧‧Computer host  41‧‧‧Display unit

本新型的其他的特徵及功效,將於參照圖式的實施方式中清楚地呈現,其中: 圖1是一方塊圖,說明本新型網路銀行系統的一第一實施例;及 圖2是一方塊圖,說明本新型網路銀行系統的一第二實施例及一第三實施例。 Other features and effects of the novel will be apparent from the embodiments of the drawings, in which:  1 is a block diagram showing a first embodiment of the novel online banking system; and  2 is a block diagram showing a second embodiment and a third embodiment of the novel online banking system.  

Claims (10)

一種網路銀行系統,包含: 一網路銀行伺服器,用於提供一網路銀行服務; 一推播伺服器,電連接該網路銀行伺服器;及 一行動裝置,儲存一對應一身分帳號的裝置符記(Token),並安裝一推播應用程式,其中,當該行動裝置與該網路銀行伺服器建立連線,並將一包含該身分帳號的推播驗證請求傳送至該網路銀行伺服器時,該網路銀行伺服器根據該推播驗證請求,使得該推播伺服器將一推播訊息傳送至該行動裝置,接著,該行動裝置在該推播應用程式中,根據一使用者所輸入的一交易密碼,產生一動態密碼,並將該動態密碼傳送至該推播伺服器,該推播伺服器在驗證該動態密碼正確之後,使得該網路銀行伺服器對該行動裝置提供該網路銀行服務。 An online banking system comprising:  An online banking server for providing an online banking service;  a push server that electrically connects to the online banking server; and  a mobile device, storing a device token corresponding to an identity account, and installing a push application, wherein when the mobile device establishes a connection with the online banking server, and includes an identity account When the push verification request is transmitted to the online banking server, the online banking server causes the push server to transmit a push message to the mobile device according to the push verification request, and then the mobile device In the push application, a dynamic password is generated according to a transaction password input by a user, and the dynamic password is transmitted to the push server, after the push server verifies that the dynamic password is correct, The online banking server is caused to provide the online banking service to the mobile device.   如請求項1所述的網路銀行系統,其中,該網路銀行伺服器對該行動裝置藉由一種回應式網頁設計(Responsive web design,RWD)的網頁提供該網路銀行服務,該身分帳號是一統一編號或一身分證號碼,該行動裝置在該網頁中輸入該統一編號或該身分證號碼,並選擇產生該推播驗證請求。The online banking system of claim 1, wherein the online banking server provides the online banking service to the mobile device via a webpage of a Responsive web design (RWD), the identity account Is a unified number or a ID number, the mobile device inputs the unified number or the identity card number in the webpage, and selects to generate the push verification request. 如請求項1所述的網路銀行系統,其中,該交易密碼是藉由該使用者在該推播應用程式中自行預先設定。The online banking system of claim 1, wherein the transaction password is pre-set by the user in the push application. 如請求項1所述的網路銀行系統,其中,該行動裝置是一智慧型手機、一平板電腦、或其他具備通訊及連網功能的電子設備。The online banking system of claim 1, wherein the mobile device is a smart phone, a tablet computer, or other electronic device having communication and networking functions. 如請求項1所述的網路銀行系統,還包含一電腦主機,其中,當該電腦主機與該網路銀行伺服器建立連線,並將包含該身分帳號的該推播驗證請求傳送至該網路銀行伺服器時,該網路銀行伺服器根據該推播驗證請求,使得該推播伺服器將該推播訊息傳送至該行動裝置,接著,該行動裝置在該推播應用程式中,根據該使用者所輸入的該交易密碼,產生該動態密碼,並將該動態密碼傳送至該推播伺服器,該推播伺服器在驗證該動態密碼正確之後,使得該網路銀行伺服器對該電腦主機提供該網路銀行服務。The online banking system of claim 1, further comprising a computer host, wherein the computer host establishes a connection with the online banking server, and transmits the push verification request including the identity account to the computer The online banking server transmits the push message to the mobile device according to the push verification request, and then the mobile device is in the push application. Generating the dynamic password according to the transaction password input by the user, and transmitting the dynamic password to the push server, and the push server makes the online banking server pair after verifying that the dynamic password is correct. The computer host provides the online banking service. 如請求項5所述的網路銀行系統,其中,該身分帳號是一統一編號或一身分證號碼,該網路銀行伺服器對該電腦主機藉由一網頁提供該網路銀行服務,該電腦主機在該網頁中輸入該統一編號或該身分證號碼,並選擇產生該推播驗證請求,該交易密碼是藉由該使用者在該推播應用程式中自行預先設定。The online banking system of claim 5, wherein the identity account is a unified number or a ID number, and the online banking server provides the online banking service to the computer host by using a webpage, the computer The host enters the unified number or the identity card number in the webpage, and selects to generate the push verification request, and the transaction password is preset by the user in the push application. 如請求項5所述的網路銀行系統,其中,該行動裝置包括一影像擷取單元,該電腦主機包括一顯示單元,當該電腦主機與該網路銀行伺服器建立連線,並將一個二維條碼驗證請求傳送至該網路銀行伺服器時,該網路銀行伺服器根據該二維條碼驗證請求,通知該推播伺服器產生一個二維條碼,且該推播伺服器將該二維條碼傳送至該網路銀行伺服器,該網路銀行伺服器再將該二維條碼傳送至該電腦主機,使得該顯示單元顯示該二維條碼, 該行動裝置在該推播應用程式中,藉由該影像擷取單元擷取該顯示單元上的該二維條碼,再根據該使用者所輸入的該交易密碼,產生該動態密碼,藉由該使用者將該動態密碼輸入至該電腦主機,並經由該網路銀行伺服器傳送至該推播伺服器,該推播伺服器在驗證該動態密碼正確之後,使得該網路銀行伺服器對該電腦主機提供該網路銀行服務。 The online banking system of claim 5, wherein the mobile device comprises an image capturing unit, the computer host includes a display unit, and the computer host establishes a connection with the online banking server, and When the two-dimensional barcode verification request is transmitted to the online banking server, the online banking server notifies the push server to generate a two-dimensional barcode according to the two-dimensional barcode verification request, and the push server performs the second Transmitting the barcode to the online banking server, and the online banking server transmits the two-dimensional barcode to the computer host, so that the display unit displays the two-dimensional barcode.  The mobile device captures the two-dimensional barcode on the display unit by the image capturing unit, and generates the dynamic password according to the transaction password input by the user, by using the The user inputs the dynamic password to the host computer, and transmits the push password to the push server via the online banking server, after the push server verifies that the dynamic password is correct, the online banking server causes the online banking server to The computer host provides the online banking service.   如請求項7所述的網路銀行系統,其中,該網路銀行伺服器對該電腦主機藉由一網頁提供該網路銀行服務,該電腦主機在該網頁中選擇產生該二維條碼驗證請求。The online banking system of claim 7, wherein the online banking server provides the online banking service to the computer host via a webpage, and the computer host selects to generate the two-dimensional barcode verification request in the webpage. . 如請求項8所述的網路銀行系統,其中,該交易密碼是藉由該使用者在該推播應用程式中自行預先設定。The online banking system of claim 8, wherein the transaction password is pre-set by the user in the push application. 如請求項5所述的網路銀行系統,其中,該電腦主機是一桌上型電腦。The online banking system of claim 5, wherein the computer host is a desktop computer.
TW108204412U 2019-04-11 2019-04-11 Netwok bank system TWM581251U (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
TW108204412U TWM581251U (en) 2019-04-11 2019-04-11 Netwok bank system

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
TW108204412U TWM581251U (en) 2019-04-11 2019-04-11 Netwok bank system

Publications (1)

Publication Number Publication Date
TWM581251U true TWM581251U (en) 2019-07-21

Family

ID=68050251

Family Applications (1)

Application Number Title Priority Date Filing Date
TW108204412U TWM581251U (en) 2019-04-11 2019-04-11 Netwok bank system

Country Status (1)

Country Link
TW (1) TWM581251U (en)

Similar Documents

Publication Publication Date Title
US11405380B2 (en) Systems and methods for using imaging to authenticate online users
US9741033B2 (en) System and method for point of sale payment data credentials management using out-of-band authentication
EP2873192B1 (en) Methods and systems for using derived credentials to authenticate a device across multiple platforms
TWI635409B (en) Query system, method and non-transitory machine-readable medium to determine authentication capabilities
CN104094270B (en) User certificate is protected for computing device
CN108804906B (en) System and method for application login
US9665868B2 (en) One-time use password systems and methods
US10045210B2 (en) Method, server and system for authentication of a person
JP2018515011A (en) Method and apparatus for authenticating user, method and apparatus for registering wearable device
KR20170056566A (en) System and method for integrating an authentication service within a network architecture
US9124571B1 (en) Network authentication method for secure user identity verification
JP2017519411A (en) System and method for communicating strong authentication events on different channels
TR201810238T4 (en) The appropriate authentication method and apparatus for the user using a mobile authentication application.
JP2014529837A (en) ID authentication management apparatus and method
US20180159842A1 (en) System and method for a single sign on connection in a zero-knowledge vault architecture
TW201121280A (en) Network security verification method and device and handheld electronic device verification method.
EP3900291A1 (en) Secure account access
TW201544983A (en) Data communication method and system, client terminal and server
US11178139B1 (en) Secure computer-implemented authentication
EP2916509B1 (en) Network authentication method for secure user identity verification
CN104021322A (en) Electronic signature method, electronic signature equipment and electronic signature client
TWM581251U (en) Netwok bank system
KR102123405B1 (en) System and method for providing security membership and login hosting service
CN106327194A (en) Password generation method and electronic equipment
TW202242682A (en) System and method of using third-party instant messaging system on authenticating log in to enterprise resource wherein the system includes an enterprise server and an instant messaging system server