TWM601411U - System for digital account application by using ATM to obtain authentication - Google Patents

System for digital account application by using ATM to obtain authentication Download PDF

Info

Publication number
TWM601411U
TWM601411U TW109207965U TW109207965U TWM601411U TW M601411 U TWM601411 U TW M601411U TW 109207965 U TW109207965 U TW 109207965U TW 109207965 U TW109207965 U TW 109207965U TW M601411 U TWM601411 U TW M601411U
Authority
TW
Taiwan
Prior art keywords
data
server
atm
certificate
account application
Prior art date
Application number
TW109207965U
Other languages
Chinese (zh)
Inventor
許宏維
林舒婉
郭彥宏
王國河
Original Assignee
國泰世華商業銀行股份有限公司
臺灣網路認證股份有限公司
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by 國泰世華商業銀行股份有限公司, 臺灣網路認證股份有限公司 filed Critical 國泰世華商業銀行股份有限公司
Priority to TW109207965U priority Critical patent/TWM601411U/en
Publication of TWM601411U publication Critical patent/TWM601411U/en

Links

Images

Landscapes

  • Financial Or Insurance-Related Operations Such As Payment And Settlement (AREA)

Abstract

一種藉由自動櫃員機獲得認證以進行數帳申請之系統,其透過自動櫃員機與憑證載具連接以取得簽章資料後,傳送簽章資料至驗證伺服器驗證,當簽章資料通過驗證時,數銀伺服器依據自動櫃員機所取得之客戶基本資料取得帳戶申請資料,並依據帳戶申請資料進行帳戶處理作業之技術手段,可以改用自動櫃員機完成開戶之身分確認,並達成讓開戶者自由選擇方便的時間與地點完成身分確認的技術功效。A system that uses an automated teller machine to obtain authentication for account application. After the automated teller machine is connected to the certificate carrier to obtain the signature data, the signature data is sent to the verification server for verification. When the signature data is verified, the data The silver server obtains the account application data based on the customer's basic information obtained by the ATM, and uses the technical means of account processing operations based on the account application data. It can use the ATM to complete the identity confirmation of the account opening, and achieve a convenient choice for the account opener Time and place to complete the technical effect of identity verification.

Description

藉由自動櫃員機獲得認證以進行數帳申請之系統A system that is authenticated by ATMs for account application

一種數位帳戶申請系統,特別係指一種藉由自動櫃員機獲得認證以進行數帳申請之系統。A digital account application system, in particular, a system that is authenticated by an automated teller machine to perform digital account application.

銀行是提供支付、存款、儲蓄、貸款、電匯等業務的金融機構。要使用銀行所提供的業務,通常需要先在銀行開戶。Banks are financial institutions that provide services such as payments, deposits, savings, loans, and wire transfers. To use the services provided by the bank, you usually need to open an account with the bank first.

目前雖然可以透過網路銀行或行動銀行在線上開設數位帳戶,但這樣的開戶方式依身分確認之方式不同,所開設的數位帳戶的等級亦有不同,也就是等級較低之數位帳戶與經過較完整身分確認而開設的數位帳戶相比有諸多限制,例如,部分交易無法執行或交易時可動用的金額較低等。若要開設具有較完整功能的數位帳戶,仍然與開設一般帳戶相同,需要臨櫃由銀行的服務人員檢視開戶者所提供的開戶資料,藉以判斷是否允許開戶者開戶。Although it is currently possible to open a digital account online through Internet banking or mobile banking, the method of opening such an account depends on the method of identity verification, and the level of the digital account opened is also different. Compared with the digital accounts opened for full identity verification, there are many restrictions, for example, some transactions cannot be executed or the amount that can be used during the transaction is lower. If you want to open a digital account with more complete functions, it is still the same as opening a general account. The bank's service staff must check the account opening information provided by the account holder at the counter to determine whether the account holder is allowed to open the account.

為了要讓透過網路銀行或行動銀行在線上開戶的開戶者不需要在臨櫃進行身分確認,目前也可以在線上開戶過程中讓開戶者上傳證件影本或證件影像,藉以提供銀行的服務人員判斷是否允許開戶者開戶。但這樣的開戶流程便需要等待銀行服務人員審核,無法即時為開戶者開戶。為了解決這樣的問題,也有銀行提供開戶者使用自然人憑證等數位憑證(digital certificate)在線上開戶過程中進行身分檢核。然而,自然人憑證需要透過讀卡機讀取,但並非所有的開戶者都擁有讀卡機可以使用,且即使開戶者擁有讀卡機也常會因為讀卡機所連接之客戶裝置中作業系統的系統環境或於作業系統中執行之應用程式或瀏覽器的原則(policy)造成無法存取讀卡機或無法透過讀卡機取得數位憑證的情況,造成開戶者的不便與困擾。In order to allow account holders who open online accounts through online banking or mobile banking to not need to confirm their identity at the counter, at present, account holders can also upload ID copies or ID images during the online account opening process, so as to provide bank service personnel to judge Whether to allow account holders to open an account. However, such an account opening process needs to wait for bank service personnel to review, and it is impossible to open an account for the account holder immediately. In order to solve this problem, some banks also provide account holders to use digital certificates such as natural person certificates to conduct identity verification during the online account opening process. However, natural person certificates need to be read through a card reader, but not all account holders have a card reader to use, and even if the account holder has a card reader, it is often due to the operating system of the client device connected to the card reader The environment or the policy of the application or browser running in the operating system causes the situation that the card reader cannot be accessed or the digital certificate cannot be obtained through the card reader, causing inconvenience and trouble for the account holder.

綜上所述,可知先前技術中長期以來一直存在目前各種線上開戶方式都可能導致開戶者無法完成即時帳戶申請的問題,因此有必要提出改進的技術手段,來解決此一問題。In summary, it can be seen that there has been a long-standing problem in the prior art that various online account opening methods may cause account holders to fail to complete instant account applications. Therefore, it is necessary to propose improved technical means to solve this problem.

有鑒於先前技術存在目前各種線上開戶方式都可能導致開戶者無法即時完成帳戶申請的問題,本創作遂揭露一種藉由自動櫃員機獲得認證以進行數帳申請之系統,其中:In view of the fact that various online account opening methods in the prior art may cause the account opener to be unable to complete the account application in real time, this creation reveals a system that uses an ATM to obtain certification for account application. Among them:

本創作所揭露之藉由自動櫃員機獲得認證以進行數帳申請之系統,至少包含:憑證載具;自動櫃員機,用以取得客戶基本資料,及用以與憑證載具連接,並透過憑證載具取得簽章資料;驗證伺服器,用以驗證自動櫃員機所傳送之簽章資料並產生相對應之驗證結果;數銀伺服器,用以接收自動櫃員機所傳送之客戶基本資料,及用以判斷驗證伺服器所傳送之驗證結果表示簽章資料通過驗證時,依據客戶基本資料取得帳戶申請資料,並依據帳戶申請資料進行對應之帳戶處理作業。The system disclosed in this creation for the application of a digital account through the authentication of an automatic teller machine, at least includes: a certificate carrier; the automatic teller machine is used to obtain basic customer information, and is used to connect to the certificate carrier through the certificate carrier Obtain signature data; verification server to verify the signature data sent by the ATM and generate corresponding verification results; digital bank server to receive basic customer data sent by the ATM, and to verify The verification result sent by the server indicates that when the signature data is verified, the account application data is obtained based on the customer's basic data, and the corresponding account processing operations are performed based on the account application data.

本創作所揭露之系統如上,與先前技術之間的差異在於本創作透過自動櫃員機與憑證載具連接以取得簽章資料後,傳送簽章資料至驗證伺服器驗證,當簽章資料通過驗證時,數銀伺服器依據自動櫃員機所取得之客戶基本資料取得帳戶申請資料,並依據帳戶申請資料進行帳戶處理作業,藉以解決先前技術所存在的問題,並可以達成讓開戶者自由選擇方便的時間與地點完成帳戶申請的技術功效。The system disclosed in this creation is as above. The difference between this creation and the previous technology is that after the creation is connected to the voucher carrier through the ATM to obtain the signature data, the signature data is sent to the verification server for verification. When the signature data is verified , The Digital Bank server obtains account application information based on the customer’s basic information obtained by the ATM, and performs account processing operations based on the account application information, so as to solve the problems of the previous technology and achieve a convenient time and The technical function of the location to complete the account application.

以下將配合圖式及實施例來詳細說明本創作之特徵與實施方式,內容足以使任何熟習相關技藝者能夠輕易地充分理解本創作解決技術問題所應用的技術手段並據以實施,藉此實現本創作可達成的功效。The following will describe in detail the features and implementation of this creation in conjunction with the drawings and embodiments. The content is sufficient to enable anyone familiar with relevant skills to easily and fully understand the technical means used in this creation to solve technical problems and implement them accordingly. The achievable effect of this creation.

本創作可以提供使用者(開戶者)使用憑證載具在自動櫃員機選擇申請帳戶處理作業後,使用電腦或手機等客戶裝置填寫申請資料以使數銀伺服器完成帳戶處理作業。其中,本創作所提之帳戶處理作業,例如開戶或帳戶升級等,但本創作並不以此為限。This creation can provide users (account holders) to use the credential carrier to select the application account processing operation at the ATM, and then use the computer or mobile phone and other client devices to fill in the application information so that the digital bank server can complete the account processing operation. Among them, the account processing operations mentioned in this creation, such as account opening or account upgrade, etc., but this creation is not limited to this.

本創作所提之憑證載具為可以儲存數位憑證(digital certificate)並可以執行如晶片作業系統(Chip Operating System, COS)以加密資料及/或對資料簽章等能夠管理與使用數位憑證的硬體裝置,例如晶片卡(IC卡)等,但本創作並不以此為限;本創作所提之自動櫃員機包含但不限於自動提款機(Automated Teller Machine, ATM)或自動存款機(Cash Deposit Machine, CDM)等提供一種或多種銀行業務之服務的自動化設備;本創作所提之數銀伺服器包含但不限於網路銀行伺服器或行動銀行伺服器等透過網路提供服務的計算設備。The certificate carrier mentioned in this creation is a hardware that can store digital certificates and can run such as Chip Operating System (COS) to encrypt data and/or sign data, which can manage and use digital certificates. Physical devices, such as chip cards (IC cards), etc., but this creation is not limited to this; the automated teller machines mentioned in this creation include but are not limited to automatic teller machines (Automated Teller Machine, ATM) or automatic deposit machines (Cash Deposit Machine, CDM) and other automated equipment that provide one or more banking services; the digital bank server mentioned in this creation includes, but is not limited to, online banking servers or mobile banking servers and other computing devices that provide services over the Internet .

本創作所提之計算設備包含但不限於一個或多個處理器、一條或多條記憶體模組、以及連接不同硬體元件(包括記憶體模組和處理器)的匯流排等硬體元件。透過所包含之多個硬體元件,計算設備可以載入並執行作業系統,使作業系統在計算設備上運行,也可以執行軟體或程式。另外,計算設備也包含一個外殼,上述之各個硬體元件設置於外殼內。The computing devices mentioned in this creation include but are not limited to one or more processors, one or more memory modules, and hardware components such as buses connecting different hardware components (including memory modules and processors) . Through the included multiple hardware components, the computing device can load and execute the operating system, make the operating system run on the computing device, and can also execute software or programs. In addition, the computing device also includes a housing, and the above-mentioned hardware components are arranged in the housing.

本創作所提之計算設備的匯流排可以包含一種或多個類型,例如包含資料匯流排(data bus)、位址匯流排(address bus)、控制匯流排(control bus)、擴充功能匯流排(expansion bus)、及/或局域匯流排(local bus)等類型的匯流排。計算設備的匯流排包括但不限於的工業標準架構(Industry Standard Architecture, ISA)匯流排、周邊元件互連(Peripheral Component Interconnect, PCI)匯流排、視頻電子標準協會(Video Electronics Standards Association, VESA)局域匯流排、以及串列的通用序列匯流排(Universal Serial Bus, USB)、快速周邊元件互連(PCI Express, PCI-E/PCIe)匯流排等。The bus of the computing device mentioned in this creation can include one or more types, for example, including data bus, address bus, control bus, and extended function bus ( expansion bus), and/or local bus (local bus). The bus bars of computing devices include but are not limited to the Industry Standard Architecture (ISA) bus, Peripheral Component Interconnect (PCI) bus, and the Video Electronics Standards Association (VESA) Bureau Domain bus, serial universal serial bus (Universal Serial Bus, USB), fast peripheral component interconnection (PCI Express, PCI-E/PCIe) bus, etc.

本創作所提之計算設備的處理器與匯流排耦接。處理器包含暫存器(Register)組或暫存器空間,暫存器組或暫存器空間可以完全的被設置在處理晶片上,或全部或部分被設置在處理晶片外並經由專用電氣連接及/或經由匯流排耦接至處理器。處理器可為處理單元、微處理器或任何合適的處理元件。若計算設備為多處理器設備,也就是計算設備包含多個處理器,則計算設備所包含的處理器都相同或類似,且透過匯流排耦接與通訊。處理器可以解釋一個電腦指令或一連串的多個電腦指令以進行特定的運算或操作,例如,數學運算、邏輯運算、資料比對、複製/移動資料等,藉以驅動計算設備中的其他硬體元件或運行作業系統或執行各種程式及/或模組。The processor of the computing device mentioned in this creation is coupled with the bus. The processor contains a register group or register space. The register group or register space can be completely set on the processing chip, or all or part of it can be set outside the processing chip and connected via a dedicated electrical connection And/or coupled to the processor via the bus. The processor may be a processing unit, a microprocessor, or any suitable processing element. If the computing device is a multi-processor device, that is, the computing device includes multiple processors, the processors included in the computing device are all the same or similar, and they are coupled and communicated through a bus. The processor can interpret a computer instruction or a series of multiple computer instructions to perform specific operations or operations, such as mathematical operations, logical operations, data comparison, copy/move data, etc., to drive other hardware components in the computing device Or run the operating system or execute various programs and/or modules.

計算設備中通常也包含一個或多個晶片組(Chipset)。計算設備的處理器可以與晶片組耦接或透過匯流排與晶片組電性連接。晶片組是由一個或多個積體電路(Integrated Circuit, IC)組成,包含記憶體控制器以及周邊輸出入(I/O)控制器等,也就是說,記憶體控制器以及周邊輸出入控制器可以包含在一個積體電路內,也可以使用兩個或更多的積體電路實現。晶片組通常提供了輸出入和記憶體管理功能、以及提供多個通用及/或專用暫存器、計時器等,其中,上述之通用及/或專用暫存器與計時器可以讓耦接或電性連接至晶片組的一個或多個處理器存取或使用。Computing equipment usually also contains one or more chipsets (Chipset). The processor of the computing device can be coupled to the chipset or electrically connected to the chipset through a bus. The chipset is composed of one or more integrated circuits (Integrated Circuit, IC), including memory controller and peripheral input/output (I/O) controller, that is, memory controller and peripheral input/output control The device can be included in one integrated circuit, or it can be implemented using two or more integrated circuits. Chipsets usually provide I/O and memory management functions, as well as multiple general and/or dedicated registers, timers, etc., among which the above-mentioned general and/or dedicated registers and timers can be coupled or One or more processors electrically connected to the chipset are accessed or used.

計算設備的處理器也可以透過記憶體控制器存取安裝於計算設備上的記憶體模組和大容量儲存區中的資料。上述之記憶體模組包含任何類型的揮發性記憶體(volatile memory)及/或非揮發性(non-volatile memory, NVRAM)記憶體,例如靜態隨機存取記憶體(Static Random Access Memory, SRAM)、動態隨機存取記憶體(Dynamic Random Access Memory, DRAM)、唯讀記憶體(Read-Only Memory, ROM)、快閃記憶體(Flash memory)等。上述之大容量儲存區可以包含任何類型的儲存裝置或儲存媒體,例如,硬碟機、光碟(optical disc)、隨身碟(flash drive)、記憶卡(memory card)、固態硬碟(Solid State Disk, SSD)、或任何其他儲存裝置等。也就是說,記憶體控制器可以存取靜態隨機存取記憶體、動態隨機存取記憶體、快閃記憶體、硬碟機、固態硬碟中的資料。The processor of the computing device can also access the data in the memory module and the mass storage area installed on the computing device through the memory controller. The above-mentioned memory modules include any type of volatile memory (volatile memory) and/or non-volatile memory (NVRAM), such as static random access memory (SRAM) , Dynamic Random Access Memory (DRAM), Read-Only Memory (ROM), Flash memory, etc. The above-mentioned mass storage area can include any type of storage device or storage medium, such as hard disk drives, optical discs, flash drives, memory cards, and solid state disks. , SSD), or any other storage device, etc. In other words, the memory controller can access data in static random access memory, dynamic random access memory, flash memory, hard disk drives, and solid state drives.

計算設備的處理器也可以透過周邊輸出入控制器經由周邊輸出入匯流排與周邊輸出裝置、周邊輸入裝置、通訊介面、及GPS接收器等周邊裝置或介面連接並通訊。周邊輸入裝置可以是任何類型的輸入裝置,例如鍵盤、滑鼠、軌跡球、觸控板、搖桿等,周邊輸出裝置可以是任何類型的輸出裝置,例如顯示器、印表機等,周邊輸入裝置與周邊輸出裝置也可以是同一裝置,例如觸控螢幕等。通訊介面可以包含無線通訊介面及/或有線通訊介面,無線通訊介面可以包含支援無線區域網路(如Wi-Fi、Zigbee等)、藍牙、紅外線、近場通訊(Near-field communication, NFC)、3G/4G/5G等行動通訊網路(蜂巢式網路)或其他無線資料傳輸協定的介面,有線通訊介面可為乙太網路裝置、DSL數據機、纜線(Cable)數據機、非同步傳輸模式(Asynchronous Transfer Mode, ATM)裝置、或光纖通訊介面及/或元件等。處理器可以週期性地輪詢(polling)各種周邊裝置與介面,使得計算設備能夠透過各種周邊裝置與介面進行資料的輸入與輸出,也能夠與具有上面描述之硬體元件的另一個計算設備進行通訊。The processor of the computing device can also connect and communicate with peripheral output devices, peripheral input devices, communication interfaces, and GPS receivers and other peripheral devices or interfaces through peripheral I/O controllers via peripheral I/O buses. The peripheral input device can be any type of input device, such as a keyboard, mouse, trackball, touchpad, joystick, etc., the peripheral output device can be any type of output device, such as a display, a printer, etc., a peripheral input device It can also be the same device as the peripheral output device, such as a touch screen. The communication interface can include a wireless communication interface and/or a wired communication interface. The wireless communication interface can include support for wireless local area networks (such as Wi-Fi, Zigbee, etc.), Bluetooth, infrared, and near-field communication (NFC), 3G/4G/5G and other mobile communication network (cellular network) or other wireless data transmission protocol interface, wired communication interface can be Ethernet device, DSL modem, cable modem, asynchronous transmission Mode (Asynchronous Transfer Mode, ATM) devices, or optical fiber communication interfaces and/or components, etc. The processor can periodically poll various peripheral devices and interfaces, so that the computing device can input and output data through various peripheral devices and interfaces, and can also communicate with another computing device with the hardware components described above. communication.

以下先以「第1圖」本創作所提之藉由自動櫃員機獲得認證以進行數帳申請之系統架構圖來說明本創作的運作。如「第1圖」所示,本創作之系統含有自動櫃員機110、憑證載具120、驗證伺服器130、數銀伺服器170,及可附加的身分確認伺服器150、資料伺服器160、客戶裝置180、中繼伺服器190。其中,自動櫃員機110、驗證伺服器130、身分確認伺服器150、資料伺服器160、數銀伺服器170、客戶裝置180及中繼伺服器190為計算設備。The following describes the operation of this creation with the system architecture diagram mentioned in "Picture 1" of this creation that is certified by the ATM for account application. As shown in "Figure 1", the system of this creation includes an automated teller machine 110, a certificate carrier 120, a verification server 130, a digital bank server 170, and an additional identity verification server 150, a data server 160, and a client The device 180 and the relay server 190. Among them, the automated teller machine 110, the verification server 130, the identity verification server 150, the data server 160, the digital bank server 170, the client device 180, and the relay server 190 are computing devices.

自動櫃員機110可以透過有線網路或無線網路與驗證伺服器130及數銀伺服器170連接,並可以傳送資料或訊號給驗證伺服器130或數銀伺服器170,也可以接收驗證伺服器130或數銀伺服器170所傳送的資料或訊號。本創作所提之無線網路包含等行動通訊網路(蜂巢式網路)或無線區域網路等;本創作所提之有線網路例如乙太網路或光纖網路等。但本創作所提之有線或無線網路並不以上述為限。。The ATM 110 can be connected to the verification server 130 and the digital bank server 170 through a wired or wireless network, and can send data or signals to the verification server 130 or the digital bank server 170, and can also receive the verification server 130 Or the data or signal sent by the digital bank server 170. The wireless network mentioned in this creation includes mobile communication network (cellular network) or wireless local area network, etc.; the wired network mentioned in this creation is such as Ethernet or optical fiber network. However, the wired or wireless network mentioned in this creation is not limited to the above. .

自動櫃員機110負責取得客戶基本資料,並負責將所取得之客戶基本資料傳送到數銀伺服器170。一般而言,自動櫃員機110可以提供基本資料輸入介面給使用者輸入客戶基本資料。The ATM 110 is responsible for obtaining basic customer information, and is responsible for transmitting the obtained basic customer information to the digital bank server 170. Generally speaking, the ATM 110 can provide a basic data input interface for the user to input basic customer data.

本創作所提之客戶基本資料包含客戶識別資料及客戶通訊資料。其中,客戶識別資料是可以表示特定客戶的資料,例如身分證字號、護照號碼或簽證號碼等通常與客戶具有一對一關係的資料;客戶通訊資料為能夠與客戶連絡的資料,例如電話號碼或電子郵件等。但客戶識別資料與客戶通訊資料都不以上述為限。The basic customer information mentioned in this creation includes customer identification information and customer communication information. Among them, customer identification information is information that can indicate a specific customer, such as ID card number, passport number or visa number, and other information that usually has a one-to-one relationship with the customer; customer communication information is information that can be contacted with the customer, such as phone number or Email etc. However, customer identification data and customer communication data are not limited to the above.

自動櫃員機110也負責與憑證載具120連接。一般而言,自動櫃員機110可以提供一種或多種連接介面,如晶片卡插槽、記憶卡插槽、USB插槽等,使得憑證載具120可以透過相對應的連接介面與自動櫃員機110連接。舉例來說,當憑證載具120為晶片卡時,連接介面可以是設置於自動櫃員機110上之讀卡機(圖中未示)的晶片卡插槽。The ATM 110 is also responsible for connecting with the credential carrier 120. Generally speaking, the ATM 110 can provide one or more connection interfaces, such as a chip card slot, a memory card slot, a USB slot, etc., so that the credential carrier 120 can be connected to the ATM 110 through a corresponding connection interface. For example, when the credential carrier 120 is a chip card, the connection interface may be a chip card slot of a card reader (not shown in the figure) provided on the ATM 110.

自動櫃員機110也負責透過憑證載具120取得簽章資料。在本創作中,簽章資料可以包含目標資料及憑證載具120對目標資料簽章所產生的簽章值,在部分的實施例中,簽章資料也可以包含目標資料及/或憑證載具120所儲存的數位憑證。一般而言,目標資料可以包含自動櫃員機110所產生之欲透過驗證伺服器130傳送給數銀伺服器170的資料,例如客戶識別資料或隨機產生之特定長度的資料等,但本創作並不以此為限。The automated teller machine 110 is also responsible for obtaining signature data through the credential carrier 120. In this creation, the signature data may include the target data and the signature value generated by the certificate carrier 120 on the target data. In some embodiments, the signature data may also include the target data and/or the certificate carrier 120 stored digital certificates. Generally speaking, the target data can include data generated by the ATM 110 to be sent to the digital bank server 170 through the verification server 130, such as customer identification data or randomly generated data of a specific length. However, this creation does not This is limited.

一般而言,自動櫃員機110可以取得憑證密碼,並可以執行預先儲存或安裝之憑證載具120的驅動程式以驅動憑證載具120,藉以在憑證載具120被驅動後,將所取得的憑證密碼及目標資料傳送到憑證載具120,並接收憑證載具120所傳回的簽章資料。其中,自動櫃員機110可以顯示密碼輸入介面給使用者輸入憑證密碼來取得憑證密碼,另外,在部分的實施例中,自動櫃員機110也可以預先安裝安控元件,並可以執行安控元件,藉以透過安控元件將憑證密碼及目標資料傳送給憑證載具120,及透過安控元件接收憑證載具120所傳回的簽章資料。但自動櫃員機110透過憑證載具120取得簽章資料的方式並不以上述為限。Generally speaking, the ATM 110 can obtain the certificate password, and can execute the pre-stored or installed driver of the certificate carrier 120 to drive the certificate carrier 120, so that after the certificate carrier 120 is driven, the obtained certificate password And the target data are sent to the certificate carrier 120, and the signature data returned by the certificate carrier 120 is received. Among them, the ATM 110 can display a password input interface for the user to enter the credential password to obtain the credential password. In addition, in some embodiments, the automated teller machine 110 can also be pre-installed with security control components and can execute the security control components through The security control component transmits the certificate password and target data to the certificate carrier 120, and receives the signature data returned by the certificate carrier 120 through the security control component. However, the manner in which the ATM 110 obtains the signature data through the certificate carrier 120 is not limited to the above.

自動櫃員機110也負責將所取得之簽章資料傳送至驗證伺服器130。在部分的實施例中,自動櫃員機110也可以將簽章資料及客戶基本資料中的客戶識別資料一同傳送給驗證伺服器130。The ATM 110 is also responsible for sending the obtained signature data to the verification server 130. In some embodiments, the automated teller machine 110 may also send the signature data and the customer identification data in the customer basic data to the verification server 130 together.

自動櫃員機110也可以接收數銀伺服器170所傳送的資料使用請求,並可以在螢幕上顯示全部或部分的資料使用請求。其中,資料使用請求可以包含要求使用者授權同意使用其他來源之資料(如使用者存留於自動櫃員機110所屬銀行中之其他伺服器或存留於與自動櫃員機110所屬銀行合作之其他單位或機構之外部伺服器內的資料等)的授權說明。The ATM 110 can also receive the data use request sent by the digital bank server 170, and can display all or part of the data use request on the screen. Among them, the data use request may include a request for the user to authorize and agree to use data from other sources (for example, the user is stored in another server in the bank to which the ATM 110 belongs or stored outside of other units or institutions that cooperate with the bank to which the ATM 110 belongs. Data in the server, etc.).

自動櫃員機110也可以取得與所接收到之資料使用請求相對應的回應訊息,並可以將所取得的回應訊息傳送至數銀伺服器170。一般而言,自動櫃員機110可以提供授權選擇介面給使用者選擇同意授權或拒絕授權,並依據使用者在選擇介面中的選擇產生表示同意或拒絕授權的回應訊息。The ATM 110 can also obtain a response message corresponding to the received data use request, and can send the obtained response message to the digital bank server 170. Generally speaking, the automated teller machine 110 may provide an authorization selection interface for the user to choose to agree to authorization or to reject the authorization, and generate a response message indicating agreement or rejection of authorization according to the user's selection in the selection interface.

在部分的實施例中,自動櫃員機110也可以接收數銀伺服器170所傳送的帳戶申請資料,並顯示所接收到的帳戶申請資料。其中,本創作所提之帳戶申請資料包含但不限於客戶的姓名、識別資料、性別、生日、住址、通訊資料等資料項目,但本創作並不以此為限。帳戶申請資料也可以包含使用者持有之身分證件的證件影像。其中,使用者的身分證件通常是身分證、駕照、健保卡等具有開戶者之面部影像的證件。In some embodiments, the automated teller machine 110 may also receive the account application data sent by the digital bank server 170 and display the received account application data. Among them, the account application materials mentioned in this creation include but are not limited to the customer's name, identification data, gender, birthday, address, communication data and other data items, but this creation is not limited to this. The account application data can also include the ID image of the user's identity certificate. Among them, the user's identity document is usually an identity card, a driver's license, a health insurance card, and other documents that have the facial image of the account holder.

自動櫃員機110也可以產生修改訊息,並可以將修改訊息傳回數銀伺服器170。其中,自動櫃員機110可以提供資料確認介面給使用者確認帳戶申請資料是否正確或是否需要調整,若是,則可以產生表示資料正確或資料沒有修改等相同或相似意義的修改訊息;若否,則自動櫃員機110可以提供使用者在資料編輯介面中修改所接收到的帳戶申請資料(也就是更改帳戶申請資料中的一個或多個資料項目),並可以產生包含使用者修改後之帳戶申請資料的修改訊息。The automated teller machine 110 can also generate a modification message, and can send the modification message back to the digital bank server 170. Among them, the ATM 110 can provide a data confirmation interface to the user to confirm whether the account application data is correct or need to be adjusted. If it is, it can generate a modification message indicating that the data is correct or the data has not been modified, etc., with the same or similar meaning; if not, it will automatically The teller machine 110 can provide the user to modify the received account application data in the data editing interface (that is, modify one or more data items in the account application data), and can generate a modification including the account application data modified by the user message.

自動櫃員機110還可以接收數銀伺服器170所傳送的作業處理結果或提示訊息,或可以接收驗證伺服器130所傳送的驗證結果,並可以顯示所接收到的提示訊息/作業處理結果/驗證結果。甚至,自動櫃員機110也可以依據提示訊息/作業處理結果/驗證結果播放相對應的聲音或影像。The ATM 110 can also receive the operation processing result or prompt message sent by the digital bank server 170, or can receive the verification result sent by the verification server 130, and can display the received prompt message/operation processing result/verification result . Furthermore, the ATM 110 can also play the corresponding sound or video according to the prompt message/operation processing result/verification result.

憑證載具120負責儲存私鑰(private key)及數位憑證,其中,私鑰通常為憑證載具120的持有者所擁有,數位憑證包含與憑證載具120所儲存之私鑰對應的公鑰(public key)及憑證序號。The certificate carrier 120 is responsible for storing private keys and digital certificates. The private key is usually owned by the holder of the certificate carrier 120, and the digital certificate includes the public key corresponding to the private key stored in the certificate carrier 120 (Public key) and certificate serial number.

憑證載具120可以使用所儲存之私鑰加密目標資料或對目標資料簽章。憑證載具120在對目標資料簽章後,可以產生簽章資料,並可以將所產生的簽章資料傳回自動櫃員機110。一般而言,憑證載具120所儲存的私鑰經過加密,但本創作並不以此為限。憑證載具120可以接收自動櫃員機110所傳送的憑證密碼,並使用所取得的憑證密碼解密所儲存的私鑰。The certificate carrier 120 can use the stored private key to encrypt or sign the target data. After the certificate carrier 120 signs the target data, it can generate signature data, and can send the generated signature data back to the ATM 110. Generally speaking, the private key stored in the certificate carrier 120 is encrypted, but this creation is not limited to this. The certificate carrier 120 can receive the certificate password sent by the automated teller machine 110, and use the obtained certificate password to decrypt the stored private key.

驗證伺服器130可以透過有線或無線網路與自動櫃員機110、數銀伺服器170及身分確認伺服器150連接,並可以接收自動櫃員機110、數銀伺服器170及/或身分確認伺服器150所傳送的資料或訊號,也可以傳送資料或訊號給自動櫃員機110、數銀伺服器170及/或身分確認伺服器150。The authentication server 130 can be connected to the ATM 110, the digital bank server 170, and the identity verification server 150 through a wired or wireless network, and can receive the automatic teller machine 110, the digital bank server 170, and/or the identity verification server 150. The transmitted data or signal may also be transmitted to the ATM 110, the digital bank server 170, and/or the identity verification server 150.

驗證伺服器130負責接收自動櫃員機110所傳送的簽章資料,並負責驗證所接收到的簽章資料以產生相對應之驗證結果,及負責將所產生之驗證結果傳送到數銀伺服器170(及自動櫃員機110)。一般而言,驗證伺服器130可以如習知驗證數位簽章的方式,由簽章資料所包含的數位憑證中取得使用者的公鑰,並使用使用者的公鑰與簽章資料所包含的目標資料驗證簽章資料以產生驗證結果。當簽章資料通過驗證時,驗證伺服器130所產生的驗證結果可以包含簽章資料中的目標資料,但本創作並不以此為限。The verification server 130 is responsible for receiving the signature data sent by the ATM 110, and for verifying the received signature data to generate the corresponding verification result, and for sending the generated verification result to the digital bank server 170 ( And ATM 110). Generally speaking, the verification server 130 can obtain the user's public key from the digital certificate contained in the signature data as in the conventional way of verifying digital signatures, and use the user's public key and the signature data contained in the digital certificate. The target data verifies the signature data to generate verification results. When the signature data is verified, the verification result generated by the verification server 130 may include the target data in the signature data, but this creation is not limited to this.

驗證伺服器130也可以接收自動櫃員機110所傳送的客戶識別資料。在部分的實施例中,驗證伺服器130還可以由所接收到之簽章資料包含的數位憑證中讀出憑證序號,並可以產生包含所接收之客戶識別資料及所讀出之憑證序號的憑證確認資料,也可以將所產生的憑證確認資料傳送給身分確認伺服器150。The verification server 130 can also receive the customer identification data sent by the automated teller machine 110. In some embodiments, the verification server 130 can also read the certificate serial number from the digital certificate contained in the received signature data, and can generate a certificate containing the received customer identification data and the read certificate serial number The confirmation data, or the generated certificate confirmation data can be sent to the identity confirmation server 150.

驗證伺服器130也可以接收身分確認伺服器150所傳送的身分確認結果,並可以在所接收到之簽章資料通過驗證伺服器130自身的驗證且所接收到之身分確認結果表示所產生之憑證確認資料通過身分確認伺服器150的驗證時,才產生表示簽章資料通過驗證的驗證結果,反之,若簽章資料沒有通過驗證伺服器130的驗證,或身分確認結果表示憑證確認資料沒有通過身分確認伺服器150的驗證時,驗證伺服器130可以產生表示簽章資料沒有通過驗證的驗證結果。The verification server 130 may also receive the identity verification result sent by the identity verification server 150, and may verify that the received signature data is verified by the verification server 130 itself and the received identity verification result represents the generated certificate Only when the verification data passes the verification of the identity verification server 150, a verification result indicating that the signature data has passed the verification is generated. On the contrary, if the signature data does not pass the verification of the verification server 130, or the identity verification result indicates that the certificate verification data does not pass the identity When verifying the verification by the server 150, the verification server 130 may generate a verification result indicating that the signature data has not passed the verification.

身分確認伺服器150可以透過有線或無線網路與驗證伺服器130連接,並可以接收驗證伺服器130所傳送的資料或訊號,也可以傳送資料或訊號給驗證伺服器130。The identity verification server 150 can be connected to the verification server 130 via a wired or wireless network, and can receive data or signals sent by the verification server 130, and can also send data or signals to the verification server 130.

身分確認伺服器150可以接收驗證伺服器130所傳送的憑證確認資料,並可以由設置於身分確認伺服器150的儲存媒體(圖中未示)或與身分確認伺服器150連接之外部儲存裝置(圖中未示)讀出與憑證確認資料中之憑證序號相對應之數位憑證的相關資料。身分確認伺服器150所讀出之數位憑證的相關資料包含憑證擁有者的識別資料。The identity verification server 150 can receive the certificate verification data sent by the verification server 130, and can use the storage medium (not shown in the figure) set in the identity verification server 150 or an external storage device connected to the identity verification server 150 ( (Not shown in the picture) Read out the relevant data of the digital voucher corresponding to the voucher serial number in the voucher confirmation data. The relevant data of the digital certificate read by the identity verification server 150 includes the identification data of the certificate owner.

身分確認伺服器150也可以判斷所讀出之數位憑證的相關資料所包含之憑證擁有者的識別資料是否與憑證確認資料中的客戶識別資料相符,並產生相對應的身分確認結果,也就是產生表示憑證確認資料中之客戶識別資料是否與憑證確認資料中的數位憑證關聯的身分確認結果,及將所產生的身分確認結果傳回驗證伺服器130。若憑證擁有者之識別資料與憑證確認資料中的客戶識別資料相同,則身分確認伺服器150可以確認憑證確認資料與驗證伺服器130所接收到之簽章資料中的數位憑證的擁有者相符,也就是確認憑證確認資料中之識別資料與憑證確認資料中的數位憑證關聯,反之,若憑證擁有者之識別資料與憑證確認資料中的客戶識別資料不同或不相符,則身分確認伺服器150可以判斷憑證確認資料與數位憑證之擁有者不符,即確認憑證確認資料中之客戶識別資料與憑證確認資料中的數位憑證沒有關聯。The identity verification server 150 can also determine whether the identification data of the certificate owner contained in the relevant data of the digital certificate read out matches the customer identification data in the certificate confirmation data, and generate the corresponding identity confirmation result, that is, generate It indicates whether the customer identification data in the certificate confirmation data is associated with the digital certificate in the certificate confirmation data, and the result of the generated identity confirmation is returned to the authentication server 130. If the identification data of the certificate owner is the same as the customer identification data in the certificate confirmation data, the identity verification server 150 can confirm that the certificate confirmation data matches the owner of the digital certificate in the signature data received by the verification server 130. That is, the identification data in the certificate confirmation data is associated with the digital certificate in the certificate confirmation data. On the contrary, if the identification data of the certificate owner is different or inconsistent with the customer identification data in the certificate confirmation data, the identity confirmation server 150 can It is determined that the certificate confirmation data does not match the owner of the digital certificate, that is, the customer identification data in the certificate confirmation data is not related to the digital certificate in the certificate confirmation data.

資料伺服器160可以透過有線或無線網路與數銀伺服器170連接,並可以接收數銀伺服器170所傳送的資料或訊號,也可以傳送資料或訊號給數銀伺服器170The data server 160 can be connected to the digital bank server 170 via a wired or wireless network, and can receive data or signals sent by the digital bank server 170, and can also send data or signals to the digital bank server 170

資料伺服器160可以儲存客戶資料。資料伺服器160所儲存之客戶資料為客戶預先存留於資料伺服器160之提供者(如銀行)的資料。一般而言,客戶資料的資料項目包含帳戶申請資料的所有資料項目。The data server 160 can store customer data. The customer data stored in the data server 160 is the data of a provider (such as a bank) stored in the data server 160 in advance by the customer. Generally speaking, the data items of customer data include all data items of account application data.

資料伺服器160也可以接收數銀伺服器170所傳送的客戶識別資料,並可以依據所接收到的客戶識別資料讀出相對應的客戶資料,及可以將所讀出之客戶資料傳回數銀伺服器170。The data server 160 can also receive the customer identification data sent by the digital bank server 170, and can read the corresponding customer data based on the received customer identification data, and can send the read customer data back to the digital bank Server 170.

數銀伺服器170可以透過有線或無線網路與自動櫃員機110、驗證伺服器130、資料伺服器160、客戶裝置180連接,並可以接收自動櫃員機110、驗證伺服器130、資料伺服器160及/或客戶裝置180所傳送的資料或訊號,也可以傳送資料或訊號給自動櫃員機110、驗證伺服器130、資料伺服器160及/或客戶裝置180。The digital bank server 170 can be connected to the ATM 110, the authentication server 130, the data server 160, and the client device 180 through a wired or wireless network, and can receive the ATM 110, the authentication server 130, the data server 160 and/or Or the data or signal sent by the client device 180 can also send the data or signal to the ATM 110, the verification server 130, the data server 160 and/or the client device 180.

數銀伺服器170負責接收自動櫃員機110所傳送的客戶基本資料。在部分的實施例中,數銀伺服器170也可以產生與所接收到之客戶基本資料對應的序號。其中,數銀伺服器170可以使用流水號產生序號,也可以對客戶基本資料進行特定運算以產生序號,本創作並沒有特別的限制。上述之特定運算例如雜湊(Hash)運算、或由申請資料中抽取出特定位置的字元進行組合等,但本創作並不以此為限。The digital bank server 170 is responsible for receiving basic customer information transmitted by the ATM 110. In some embodiments, the digital bank server 170 may also generate a serial number corresponding to the received customer basic data. Among them, the digital silver server 170 can use the serial number to generate the serial number, or perform specific operations on the customer's basic data to generate the serial number. There is no special restriction on this creation. The above-mentioned specific operations such as hash operations, or combinations of characters in specific positions extracted from the application materials, but this creation is not limited to this.

數銀伺服器170也負責接收驗證伺服器130所傳送的驗證結果,並負責判斷所接收到之驗證結果是否表示自動櫃員機110所產生的簽章資料通過驗證。若驗證結果表示簽章資料沒有通過驗證,數銀伺服器170可以產生相對應的提示訊息,並將所產生的提示訊息傳送至自動櫃員機110。The digital bank server 170 is also responsible for receiving the verification result sent by the verification server 130, and is responsible for determining whether the received verification result indicates that the signature data generated by the ATM 110 has been verified. If the verification result indicates that the signature data has not passed the verification, the digital bank server 170 can generate a corresponding prompt message and send the generated prompt message to the ATM 110.

數銀伺服器170也負責在判斷所接收到的驗證結果表示簽章資料通過驗證時,依據所接收到之客戶基本資料取得帳戶申請資料,並依據所取得的帳戶申請資料進行對應的帳戶處理作業。數銀伺服器170也可以將帳戶處理作業的作業處理結果傳送給自動櫃員機110。其中,作業處理結果可以表示帳戶申請作業成功完成或表示帳戶申請作業無法完成,作業處理結果也可以包含帳戶申請作業無法完成的原因,但本創作並不以此為限。The digital bank server 170 is also responsible for obtaining account application data based on the received customer basic information when determining that the received verification result indicates that the signature data has passed verification, and performing corresponding account processing operations based on the obtained account application data . The digital bank server 170 may also transmit the operation processing result of the account processing operation to the automated teller machine 110. The job processing result may indicate that the account application job was successfully completed or that the account application job could not be completed. The job processing result may also include the reason why the account application job could not be completed, but this creation is not limited to this.

在部分的實施例中,數銀伺服器170可以傳送資料使用請求給自動櫃員機110,並可以接收自動櫃員機110傳回的回應訊息,及可以依據所接收到的回應訊息選擇取得帳戶申請資料的方式。例如,當回應訊息表示客戶不同意授權時,數銀伺服器170可以選擇依據所接收到之客戶基本資料中的客戶通訊資料傳送資料填寫訊息至客戶裝置180,並接收客戶裝置180所傳送的帳戶申請資料。其中,數銀伺服器170可以依據客戶通訊資料的類型以相對應之簡訊、電子郵件、即時通訊等方式將資料填寫訊息傳送至客戶裝置180。In some embodiments, the digital bank server 170 can send a data use request to the ATM 110, and can receive a response message from the ATM 110, and can select the method of obtaining account application information based on the received response message . For example, when the response message indicates that the customer does not agree to the authorization, the digital bank server 170 can choose to send data to the client device 180 based on the customer communication data in the received customer basic information, and receive the account sent by the client device 180 Application information. Among them, the digital bank server 170 can send the data filling message to the client device 180 by corresponding SMS, email, instant messaging, etc. according to the type of the client communication data.

而當回應訊息表示客戶同意授權時,數銀伺服器170可以選擇連線至資料伺服器160,並可以依據客戶基本資料中的客戶識別資料由資料伺服器160下載相對應的客戶資料,及依據所下載的客戶資料產生帳戶申請資料。其中,數銀伺服器170可以由客戶資料中讀取出帳戶申請資料所包含之資料項目,並依據所讀出之資料項目產生帳戶申請資料。When the response message indicates that the customer agrees to the authorization, the digital bank server 170 can choose to connect to the data server 160, and can download the corresponding customer data from the data server 160 based on the customer identification data in the basic customer data, and the basis The downloaded client information generates account application information. Among them, the digital bank server 170 can read out the data items contained in the account application data from the customer data, and generate account application data based on the read data items.

甚至,數銀伺服器170可以將所產生之帳戶申請資料傳送給自動櫃員機110,並接收自動櫃員機110傳回之修改訊息。當修改訊息表示資料正確或資料沒有修改等相同或相似意義時,數銀伺服器170使用所產生的帳戶申請資料進行對應的帳戶處理作業;而當修改訊息表示資料不正確,也就是表示帳戶申請資料被修改時,數銀伺服器170可以由修改訊息中讀出被修改之帳戶申請資料,並使用修改後之帳戶申請資料進行對應的帳戶處理作業。Furthermore, the digital bank server 170 can send the generated account application data to the ATM 110, and receive the modification message returned by the ATM 110. When the modification message indicates that the data is correct or the data has not been modified and has the same or similar meaning, the digital bank server 170 uses the generated account application data to perform the corresponding account processing operations; and when the modification message indicates that the data is incorrect, it means that the account is applied for When the data is modified, the digital bank server 170 can read the modified account application data from the modification message, and use the modified account application data to perform corresponding account processing operations.

客戶裝置180可以透過有線或無線網路與數銀伺服器170連接,並可以傳送資料或訊號給數銀伺服器170,也可以接收數銀伺服器170所傳送的資料或訊號。例如,客戶裝置180可以接收數銀伺服器170所傳送的資料填寫訊息,並可以傳送帳戶申請資料至數銀伺服器170。The client device 180 can be connected to the digital bank server 170 via a wired or wireless network, and can send data or signals to the digital bank server 170, and can also receive data or signals sent by the digital bank server 170. For example, the client device 180 can receive the data filling message sent by the digital bank server 170, and can send account application data to the digital bank server 170.

在部分的實施例中,資料填寫訊息可以包含數銀伺服器170的連接訊息,上述之連接訊息可以是一個網址或鏈結,使得客戶裝置180可以開啟並顯示帳戶申請資料的輸入介面,進而讓使用者可以操作客戶裝置180在輸入介面中填寫帳戶申請資料。In some embodiments, the data filling message may include the connection message of the digital bank server 170. The above connection message may be a website or link, so that the client device 180 can open and display the input interface of the account application data, and then The user can operate the client device 180 to fill in the account application information in the input interface.

另外,為了安全性、管理性、擴充性及/或其他考量因素,本創作還可以包含中繼伺服器190。中繼伺服器190可以透過有線或無線網路與自動櫃員機110、驗證伺服器130與數銀伺服器170連接,使得自動櫃員機110、驗證伺服器130與數銀伺服器170所發出的資料或訊號可以透過中繼伺服器190轉送,例如,中繼伺服器190可以接收自動櫃員機110所傳送的簽章資料並將所接收到的簽章資料傳送至驗證伺服器130,也可以接收自動櫃員機110所傳送的客戶基本資料及修改訊息並將所接收到的客戶基本資料/修改訊息傳送至數銀伺服器170,也可以接收驗證伺服器130所傳送的驗證結果並將所接收到的驗證結果傳送給數銀伺服器170(及自動櫃員機110),也可以接收數銀伺服器170所產生的帳戶申請資料或作業處理結果並將帳戶申請資料/作業處理結果傳送至自動櫃員機110等。In addition, for security, management, scalability, and/or other considerations, the creation may also include a relay server 190. The relay server 190 can be connected to the ATM 110, the verification server 130, and the digital bank server 170 through a wired or wireless network, so that the ATM 110, the verification server 130, and the digital bank server 170 send data or signals It can be forwarded through the relay server 190. For example, the relay server 190 can receive the signature data sent by the automated teller machine 110 and send the received signature data to the verification server 130, or it can receive the signature data sent by the automated teller machine 110. The basic customer data and modification message sent and the basic customer data/modification message received are sent to the digital bank server 170, and the verification result sent by the verification server 130 can also be received and the received verification result sent to The digital bank server 170 (and the automated teller machine 110) can also receive the account application data or operation processing result generated by the digital bank server 170 and send the account application data/operation processing result to the automatic teller machine 110, etc.

需要特別說明的是,若本創作中包含中繼伺服器190,則自動櫃員機110可以包含電文閘道器(圖中未示),電文閘道器可以將自動櫃員機110欲傳送的資料轉換為電文後再傳送給中繼伺服器190,中繼伺服器190可以將所接收到的電文還原為自動櫃員機110欲傳送的資料後,在轉送到目的地,也就是驗證伺服器130或數銀伺服器170;中繼伺服器190也可以將驗證伺服器130或數銀伺服器170傳送給自動櫃員機110的電文轉換為電文後再傳送給自動櫃員機110,自動櫃員機110可以在接收到電文後將所接收到的電文還原為驗證伺服器130或數銀伺服器170所發出的資料。It should be noted that if the creation includes a relay server 190, the ATM 110 may include a text gateway (not shown in the figure), and the text gateway can convert the data to be sent by the ATM 110 into a text Then send it to the relay server 190. The relay server 190 can restore the received message to the data to be sent by the ATM 110, and then forward it to the destination, that is, the verification server 130 or the digital bank server. 170; the relay server 190 can also convert the telegrams sent by the verification server 130 or the digital bank server 170 to the ATM 110 into a telegram and then send it to the ATM 110. The ATM 110 can receive the telegram after receiving the telegram. The received message is restored to the data sent by the verification server 130 or the digital bank server 170.

接著以一個實施例來解說本創作的運作方式,並請參照「第2A圖」本創作所提之藉由自動櫃員機獲得認證以進行數帳申請之方法流程圖。在本實施例中,假設客戶裝置180為手機,且自動櫃員機110、驗證伺服器130及數銀伺服器170間是透過中繼伺服器190傳送資料或訊號,但本創作並不以此為限。Next, an embodiment is used to explain the operation of this creation, and please refer to the flowchart of the method of obtaining authentication by the ATM in the creation mentioned in "Figure 2A" for the application of account number. In this embodiment, it is assumed that the client device 180 is a mobile phone, and the ATM 110, the verification server 130, and the digital bank server 170 transmit data or signals through the relay server 190, but this creation is not limited to this .

首先,自動櫃員機110可以取得客戶基本資料,並可以將所取得的客戶基本資料傳送給數銀伺服器170(步驟210)。在本實施例中,假設使用者可以操作自動櫃員機110,若自動櫃員機110的使用者介面320如「第3A圖」所示,使用者可以選擇最下排中間之「業務申辦」的功能選項322,使得自動櫃員機110可以顯示如「第3B圖」之基本資料輸入介面330以提供使用者輸入客戶基本資料,也就是輸入身分證字號(客戶識別資料)與電話號碼(客戶通訊資料)等資料,並可以透過中繼伺服器190將被輸入的客戶基本資料傳送給數銀伺服器170。First, the ATM 110 can obtain the basic customer information, and can send the obtained customer basic information to the digital bank server 170 (step 210). In this embodiment, it is assumed that the user can operate the automated teller machine 110. If the user interface 320 of the automated teller machine 110 is as shown in "Figure 3A", the user can select the "Business Application" option 322 in the middle of the bottom row , So that the ATM 110 can display the basic data input interface 330 such as "Figure 3B" to provide the user to input basic customer data, that is, to enter the ID number (customer identification data) and telephone number (customer communication data) and other information, And the inputted basic customer data can be sent to the digital bank server 170 through the relay server 190.

在自動櫃員機110取得客戶基本資料後,自動櫃員機110可以提示使用者連接憑證載具120及自動櫃員機110,並可以透過所連接之憑證載具120取得簽章資料(步驟230),及將透過憑證載具120取得之簽章資料傳送給驗證伺服器130。在本實施例中,假設如「第2B圖」之流程所示,若使用者所持有的憑證載具120為實體的自然人憑證,則自動櫃員機110可以執行已預先安裝之自然人憑證的驅動程式,並可以顯示插入自然人憑證的提示訊息,及可以在使用者將自然人憑證插入自動櫃員機110的晶片卡插槽而連接憑證載具120及自動櫃員機110(步驟232)後,顯示憑證密碼的密碼輸入介面,及可以在使用者於密碼輸入介面中輸入憑證密碼後取得使用者所輸入的憑證密碼,並可以透過預先安裝於自動櫃員機110內的安控元件傳送目標資料及所取得的憑證密碼給憑證載具120(步驟233),使得憑證載具120可以使用自動櫃員機110所提供的憑證密碼解密所儲存的私鑰,並可以使用解密所得的私鑰對自動櫃員機110所傳送的目標資料簽章以產生簽章資料(步驟235)後,將簽章資料傳回自動櫃員機110,使自動櫃員機110可以透過安控元件接收憑證載具120所產生的簽章資料(步驟237),並可以將使用者所輸入之客戶識別資料及憑證載具120所產生的簽章資料傳送給驗證伺服器130(步驟238)。After the ATM 110 obtains the customer's basic information, the ATM 110 can prompt the user to connect the credential carrier 120 and the automated teller machine 110, and can obtain the signature data through the connected credential carrier 120 (step 230), and pass the credential The signature data obtained by the vehicle 120 is sent to the verification server 130. In this embodiment, it is assumed that as shown in the process of "Figure 2B", if the certificate carrier 120 held by the user is a physical natural person certificate, the ATM 110 can execute the driver for the pre-installed natural person certificate , And can display the prompt message for inserting the natural person certificate, and can display the password input of the certificate password after the user inserts the natural person certificate into the chip card slot of the ATM 110 and connects the certificate carrier 120 and the ATM 110 (step 232) Interface, and can obtain the certificate password entered by the user after the user enters the certificate password in the password input interface, and can send the target data and the obtained certificate password to the certificate through the security control component pre-installed in the ATM 110 The carrier 120 (step 233) enables the certificate carrier 120 to use the certificate password provided by the ATM 110 to decrypt the stored private key, and to use the decrypted private key to sign the target data sent by the ATM 110 After the signature data is generated (step 235), the signature data is sent back to the ATM 110, so that the ATM 110 can receive the signature data generated by the credential carrier 120 through the security component (step 237), and can send the user The input customer identification data and the signature data generated by the certificate carrier 120 are sent to the verification server 130 (step 238).

在驗證伺服器130接收到自動櫃員機110所傳送的識別資料及簽章資料後,可以驗證所接收到的簽章資料以產生相對應的驗證結果,並可以將所產生的驗證結果傳回數銀伺服器170(步驟250)。在本實施例中,假設驗證伺服器130可以由簽章資料中之數位憑證中讀出憑證序號,並可以依據憑證序號取得對應之公鑰,及可以使用所取得之公鑰驗證簽章資料以產生相對應的驗證結果,也就是產生簽章資料是否通過驗證的驗證結果,驗證伺服器130並可以透過中繼伺服器190將所產生的驗證結果傳送到數銀伺服器170,也可以透過中繼伺服器190將驗證結果傳送到自動櫃員機110顯示。After the verification server 130 receives the identification data and the signature data sent by the ATM 110, it can verify the received signature data to generate a corresponding verification result, and can send the generated verification result back to the digital bank Server 170 (step 250). In this embodiment, it is assumed that the verification server 130 can read the certificate serial number from the digital certificate in the signature data, and can obtain the corresponding public key according to the certificate serial number, and can use the obtained public key to verify the signature data. Generate the corresponding verification result, that is, whether the signature data is verified or not. The verification server 130 can also send the generated verification result to the digital bank server 170 through the relay server 190, or through the middle The server 190 then transmits the verification result to the ATM 110 for display.

若在本實施例中還包含身分確認伺服器150,則驗證伺服器130也可以在簽章資料通過驗證後,將所接收到的識別資料及所讀出之憑證序號傳送至身分確認伺服器150,使得身分確認伺服器150可以判斷驗證伺服器130所接收到之簽章資料所包含的數位憑證是否為憑證載具120之持有者所擁有,也就是由身分確認伺服器150判斷所接收到之識別資料與所接收到之憑證序號是否相關聯以產生相對應之身分確認結果,並可以將身分確認結果傳回驗證伺服器130,驗證伺服器130可以在所接收到之身分確認結果表示識別資料與憑證序號相關聯時才產生表示簽章資料通過驗證的驗證結果;但若驗證伺服器130判斷身分確認結果表示識別資料與憑證序號沒有關聯,則驗證伺服器130可以產生表示簽章資料沒有通過驗證的驗證結果。之後,驗證伺服器130可以透過中繼伺服器190將所產生的驗證結果傳送至數銀伺服器170(及自動櫃員機110)。If the identity verification server 150 is also included in this embodiment, the verification server 130 may also send the received identification data and the read certificate serial number to the identity verification server 150 after the signature data is verified. , So that the identity verification server 150 can determine whether the digital certificate contained in the signature data received by the verification server 130 is owned by the holder of the certificate carrier 120, that is, the identity verification server 150 determines the received Is the identification data associated with the received certificate serial number to generate the corresponding identity verification result, and the identity verification result can be sent back to the verification server 130, and the verification server 130 can indicate the identity in the received identity verification result When the data is associated with the certificate serial number, the verification result indicating that the signature data has passed verification is generated; but if the verification server 130 determines that the identity verification result indicates that the identification data is not related to the certificate serial number, the verification server 130 can generate a verification result indicating that the signature data is not The verification result that passed the verification. After that, the verification server 130 may send the generated verification result to the digital bank server 170 (and the automated teller machine 110) through the relay server 190.

在數銀伺服器170接收到驗證伺服器130所傳送之驗證結果後,數銀伺服器170可以依據驗證結果判斷自動櫃員機110所取得的簽章資料是否通過驗證伺服器130的驗證。若否,則數銀伺服器170可以透過中繼伺服器190將表示簽章資料驗證失敗的提示訊息傳送給自動櫃員機110顯示。After the digital bank server 170 receives the verification result sent by the verification server 130, the digital bank server 170 can determine whether the signature data obtained by the ATM 110 passes the verification by the verification server 130 according to the verification result. If not, the digital bank server 170 may send a prompt message indicating that the verification of the signature data has failed to the ATM 110 through the relay server 190 for display.

而若驗證結果表示自動櫃員機110所取得的簽章資料通過驗證伺服器130驗證,數銀伺服器170可以依據自動櫃員機110所傳送的客戶基本資料取得帳戶申請資料(步驟270)。在本實施例中,假設數銀伺服器170可以在驗證結果表示簽章資料通過驗證時產生資料使用請求,並可以將所產生的資料使用請求透過中繼伺服器190傳送給自動櫃員機110(步驟272)。If the verification result indicates that the signature data obtained by the ATM 110 is verified by the verification server 130, the digital bank server 170 can obtain the account application data according to the basic customer information sent by the ATM 110 (step 270). In this embodiment, it is assumed that the digital bank server 170 can generate a data use request when the verification result indicates that the signature data is verified, and can send the generated data use request to the ATM 110 through the relay server 190 (step 272).

自動櫃員機110在接收到數銀伺服器170所傳送的資料使用請求後,可以顯示包含表示將由資料伺服器160取得客戶資料的授權說明351的授權選擇介面350,並可以提供使用者選擇同意授權或不同意授權,如「第3C圖」所示。自動櫃員機110可以依據使用者的選擇產生表示同意或不同意授權的回應訊息,並可以將所產生的回應訊息透過中繼伺服器190傳回數銀伺服器170(步驟273)。After the automated teller machine 110 receives the data use request sent by the digital bank server 170, it can display the authorization selection interface 350 containing the authorization description 351 indicating that the data server 160 will obtain the customer data, and can provide the user with the option to agree to authorization or Disagree with the authorization, as shown in "Figure 3C". The automated teller machine 110 can generate a response message indicating approval or disapproval of authorization according to the user's selection, and can send the generated response message back to the digital bank server 170 through the relay server 190 (step 273).

數銀伺服器170在接收到自動櫃員機110所傳送的回應訊息後,可以依據所接收到的回應訊息選擇取得帳戶申請資料的方式。更詳細的,數銀伺服器170可以判斷回應訊息是否表示同意授權,若是,則數銀伺服器170可以將自動櫃員機110所傳送之客戶基本資料中的客戶識別資料傳送給資料伺服器160,藉以由資料伺服器160下載使用者先前存留在銀行端的客戶資料,並可以依據所下載的客戶資料產生帳戶申請資料;而若數銀伺服器170判斷回應訊息表示不同意授權,則數銀伺服器170可以依據客戶基本資料中的客戶通訊資料傳送資料填寫訊息至客戶裝置180,如此,在使用者操作客戶裝置180依據資料填寫訊息開啟帳戶申請資料的輸入介面後,可以操作客戶裝置180在所開啟的輸入介面中填寫帳戶申請資料,並可以操作客戶裝置180將完成填寫的帳戶申請資料傳送給數銀伺服器170,使得數銀伺服器170可以接收客戶裝置180所傳送之使用者填寫的帳戶申請資料(步驟275)。After the digital bank server 170 receives the response message sent by the automated teller machine 110, it can select the method of obtaining account application information according to the received response message. In more detail, the digital bank server 170 can determine whether the response message indicates consent to authorization. If so, the digital bank server 170 can send the customer identification data in the basic customer data sent by the ATM 110 to the data server 160, thereby The data server 160 downloads the user's customer data previously stored in the bank, and can generate account application data based on the downloaded customer data; and if the data server 170 determines that the response message indicates that the authorization is not approved, the data server 170 The user can send data and fill in the message to the client device 180 based on the client communication data in the client’s basic data. In this way, after the user operates the client device 180 to open the input interface of the account application data based on the data fill in the information, the client device 180 can be operated The account application information is filled in the input interface, and the client device 180 can be operated to send the completed account application information to the digital bank server 170, so that the digital bank server 170 can receive the user-filled account application data sent by the client device 180 (Step 275).

繼續回到「第2A圖」圖,在數銀伺服器170依據自動櫃員機110所傳送的客戶基本資料取得帳戶申請資料(步驟270)後,數銀伺服器170可以依據所取得的帳戶申請資料進行對應的帳戶申請作業(步驟290)。在本實施例中,數銀伺服器170所進行之帳戶申請作業也就是開戶作業或帳戶升級作業,數銀伺服器170可以將作業處理結果透過中繼伺服器190傳送至自動櫃員機110,使得自動櫃員機110可以顯示作業處理結果給使用者。Continue back to the "Figure 2A", after the digital bank server 170 obtains the account application data according to the basic customer information sent by the ATM 110 (step 270), the digital bank server 170 can proceed according to the obtained account application data The corresponding account application operation (step 290). In this embodiment, the account application operation performed by the digital bank server 170 is the account opening operation or the account upgrade operation. The digital bank server 170 can send the processing result of the operation to the ATM 110 through the relay server 190, so that the automatic The teller machine 110 can display the job processing result to the user.

如此,透過本創作,使用者便可以在使用自動櫃員機時使用憑證載具進行帳戶處理作業的申請,再操作自動櫃員機指示數銀伺服器取得帳戶申請資料的方式,藉以完成需要臨櫃的帳戶申請作業。In this way, through this creation, the user can use the voucher carrier to apply for account processing operations when using the ATM, and then operate the ATM to instruct the digital bank server to obtain account application information to complete the account application that requires a counter operation.

上述實施例中,在數銀伺服器170判斷回應訊息表示同意授權而依據由資料伺服器160所下載的客戶資料產生帳戶申請資料後,數銀伺服器170可以透過中繼伺服器190將所產生的帳戶申請資料傳送至自動櫃員機110,自動櫃員機110在接收到數銀伺服器170所傳送的帳戶申請資料後,可以顯示包含所接收到之帳戶申請資料的資料確認介面360給使用者確認,如「第3D圖」所示。自動櫃員機110可以依據使用者的確認結果產生相對應的修改訊息,並可以透過中繼伺服器190將所產生的修改訊息傳送給數銀伺服器170。其中,當使用者選擇確認的功能選項361時,自動櫃員機110可以產生資料正確的修改訊息,而當使用者選擇重新輸入的功能選項362時,自動櫃員機110可以提供使用者修改帳戶申請資料,並產生包含使用者修改後之帳戶申請資料的修改訊息。In the above embodiment, after the digital bank server 170 determines that the response message indicates that the authorization is approved and generates the account application data based on the customer data downloaded by the data server 160, the digital bank server 170 can use the relay server 190 to generate the account application data. The account application data of is sent to the ATM 110. After the ATM 110 receives the account application data sent by the digital bank server 170, it can display the data confirmation interface 360 containing the received account application data for the user to confirm, such as "Figure 3D" as shown. The automated teller machine 110 may generate a corresponding modification message according to the user's confirmation result, and may send the generated modification message to the digital bank server 170 through the relay server 190. Among them, when the user selects the confirmed function option 361, the ATM 110 can generate a modification message with the correct data, and when the user selects the re-entered function option 362, the ATM 110 can provide the user to modify the account application data, and Generate a modified message containing the user's modified account application information.

數銀伺服器170在接收到自動櫃員機110所傳送的修改訊息後,可以在判斷修改訊息表示資料正確時,使用所產生的帳戶申請資料進行帳戶處理作業;也可以在判斷修改訊息表示資料不正確,也就是修改訊息中包含使用者修改過的帳戶處理資料時,使用修改訊息中的帳戶申請資料進行帳戶處理作業。After the digital bank server 170 receives the modification message sent by the ATM 110, it can use the generated account application data for account processing when determining that the modification message indicates that the data is correct; it can also determine that the modification message indicates that the data is incorrect , That is, when the modified message contains the account processing data modified by the user, use the account application data in the modified message for account processing.

綜上所述,可知本創作與先前技術之間的差異在於具有自動櫃員機與憑證載具連接以取得簽章資料後,傳送簽章資料至驗證伺服器驗證,當簽章資料通過驗證時,數銀伺服器依據自動櫃員機所取得之客戶基本資料取得帳戶申請資料,並依據帳戶申請資料進行帳戶處理作業之技術手段,藉由此一技術手段可以來解決先前技術所存在目前各種線上開戶方式都可能導致開戶者無法即時完成開戶申請的問題,進而達成讓開戶者自由選擇方便的時間與地點完成帳戶申請的技術功效。To sum up, it can be seen that the difference between this creation and the previous technology is that after the ATM is connected to the certificate carrier to obtain the signature data, the signature data is sent to the verification server for verification. When the signature data is verified, the data The silver server obtains the account application data based on the customer's basic information obtained by the ATM, and performs the account processing technical means based on the account application data. This technical means can solve the current existing technologies of various online account opening methods. This leads to the problem that the account opener cannot complete the account application immediately, thereby achieving the technical effect of allowing the account opener to freely choose a convenient time and place to complete the account application.

再者,本創作之藉由自動櫃員機獲得認證以進行數帳申請之方法,可在硬體、軟體或硬體與軟體之組合中實現。Furthermore, the method of applying for accounting by obtaining certification through an ATM in this creation can be implemented in hardware, software, or a combination of hardware and software.

雖然本創作所揭露之實施方式如上,惟所述之內容並非用以直接限定本創作之專利保護範圍。任何本創作所屬技術領域中具有通常知識者,在不脫離本創作所揭露之精神和範圍的前提下,對本創作之實施的形式上及細節上作些許之更動潤飾,均屬於本創作之專利保護範圍。本創作之專利保護範圍,仍須以所附之申請專利範圍所界定者為準。Although the implementation of this creation is disclosed as above, the content described is not used to directly limit the scope of patent protection of this creation. Any person with ordinary knowledge in the technical field to which this creation belongs, without departing from the spirit and scope of this creation, makes some changes in the form and details of the implementation of this creation, all belong to the patent protection of this creation range. The scope of patent protection for this creation shall still be subject to the scope of the attached patent application.

110:自動櫃員機 120:憑證載具 130:驗證伺服器 150:身分確認伺服器 160:資料伺服器 170:數銀伺服器 180:客戶裝置 190:中繼伺服器 320:使用者介面 322:功能選項 330:基本資料輸入介面 350:授權選擇介面 351:授權說明 360:資料確認介面 361:功能選項 362:功能選項 步驟210:自動櫃員機取得客戶基本資料,並傳送客戶基本資料至數銀伺服器 步驟230:自動櫃員機連接憑證載具,並透過憑證載具取得簽章資料 步驟232:自動櫃員機連接憑證載具 步驟233:自動櫃員機取得憑證密碼,並透過安控元件傳送憑證密碼至憑證載具 步驟235:憑證載具使用憑證密碼取得數位憑證,並使用數位憑證產生簽章資料 步驟237:自動櫃員機透過安控元件接收憑證載具傳回之簽章資料 步驟238:自動櫃員機傳送簽章資料至驗證伺服器 步驟250:驗證伺服器驗證自動櫃員機傳送之簽章資料,並傳送相對應之驗證結果至數銀伺服器 步驟270:數銀伺服器判斷簽章資料通過驗證伺服器驗證後,依據客戶基本資料取得帳戶申請資料 步驟272:數銀伺服器傳送資料使用請求至自動櫃員機 步驟273:自動櫃員機取得回應訊息並傳送回應訊息至數銀伺服器 步驟275:數銀伺服器依據回應訊息選擇連線至資料伺服器以依據客戶基本資料下載客戶資料並依據客戶資料產生帳戶申請資料,或選擇依據客戶基本資料傳送資料填寫訊息至客戶裝置並接收客戶裝置所傳送之帳戶申請資料 步驟290:數銀伺服器依據帳戶申請資料進行對應之帳戶申請作業 110: ATM 120: Credential Carrier 130: Verification Server 150: Identity Confirmation Server 160: data server 170: Digital Bank Server 180: client device 190: Relay server 320: User Interface 322: function options 330: Basic data input interface 350: Authorization selection interface 351: Authorization Instructions 360: data confirmation interface 361: function options 362: function options Step 210: The ATM obtains the basic customer information and sends the basic customer information to the digital bank server Step 230: The ATM connects to the certificate carrier, and obtains the signature data through the certificate carrier Step 232: Connect the voucher carrier to the ATM Step 233: The ATM obtains the certificate password and sends the certificate password to the certificate carrier through the security control component Step 235: The certificate carrier uses the certificate password to obtain a digital certificate, and uses the digital certificate to generate signature data Step 237: The ATM receives the signature data returned by the certificate carrier through the security control component Step 238: The ATM sends the signature data to the verification server Step 250: The verification server verifies the signature data sent by the ATM, and sends the corresponding verification result to the digital bank server Step 270: After determining that the signature data is verified by the verification server, the digital bank server obtains account application data based on the customer's basic data Step 272: The digital bank server sends a data usage request to the ATM Step 273: The ATM obtains the response message and sends the response message to the digital bank server Step 275: According to the response message, the digital bank server chooses to connect to the data server to download the customer data based on the customer's basic data and generate account application data based on the customer data, or choose to send the data based on the customer's basic data to fill in the message to the client device and receive the customer Account application information sent by the device Step 290: The digital bank server performs the corresponding account application operation based on the account application information

第1圖為本創作所提之藉由自動櫃員機獲得認證以進行數帳申請之架構圖。 第2A圖為本創作所提之藉由自動櫃員機獲得認證以進行數帳申請之流程圖。 第2B圖為本創作所提之由自動櫃員機透過憑證載具取得簽章資料之流程圖。 第2C圖為本創作所提之數銀伺服器依據回應訊息選擇取得帳戶申請資料之流程圖。 第3A圖為本創作實施例所提之功能選擇介面示意圖。 第3B圖為本創作實施例所提之資料輸入介面示意圖。 第3C圖為本創作實施例所提之資料授權說明示意圖。 第3D圖為本創作實施例所提之帳戶申請資料確認示意圖。 Figure 1 is the framework of the creation of an automated teller machine to obtain certification for account application. Figure 2A is the flow chart of the creation of an automated teller machine to obtain certification for account application. Figure 2B is the flow chart of the creation of the signature data obtained by the ATM through the voucher carrier. Figure 2C is the flow chart of the creation of the digital bank server choosing to obtain account application information based on the response message. Figure 3A is a schematic diagram of the function selection interface mentioned in the creative embodiment. Figure 3B is a schematic diagram of the data input interface mentioned in the creation embodiment. Figure 3C is a schematic diagram illustrating data authorization mentioned in the creation embodiment. Figure 3D is a schematic diagram of confirming account application data mentioned in the creation embodiment.

110:自動櫃員機 110: ATM

120:憑證載具 120: Credential Carrier

130:驗證伺服器 130: Verification Server

150:身分確認伺服器 150: Identity Confirmation Server

160:資料伺服器 160: data server

170:數銀伺服器 170: Digital Bank Server

180:客戶裝置 180: client device

190:中繼伺服器 190: Relay server

Claims (10)

一種藉由自動櫃員機獲得認證以進行數帳申請之系統,該系統至少包含: 一憑證載具; 一自動櫃員機,用以取得一客戶基本資料,及用以與該憑證載具連接,並透過該憑證載具取得一簽章資料; 一驗證伺服器,用以驗證該自動櫃員機所傳送之該簽章資料並產生相對應之一驗證結果;及 一數銀伺服器,用以接收該自動櫃員機所傳送之該客戶基本資料,及用以判斷該驗證伺服器所傳送之該驗證結果表示該簽章資料通過驗證時,依據該客戶基本資料取得一帳戶申請資料,並依據該帳戶申請資料進行對應之帳戶處理作業。 A system that is authenticated by an automated teller machine for account application, the system includes at least: A certificate carrier; An automated teller machine for obtaining basic customer information and for connecting with the certificate carrier, and obtaining a signature data through the certificate carrier; A verification server for verifying the signature data sent by the ATM and generating a corresponding verification result; and A digital bank server for receiving the customer's basic data sent by the ATM, and for judging that the verification result sent by the verification server indicates that the signature data has passed the verification, and obtaining a data based on the customer's basic data Account application data, and perform corresponding account processing operations based on the account application data. 如請求項1所述之藉由自動櫃員機獲得認證以進行數帳申請之系統,其中該憑證載具是使用一憑證密碼取得一私鑰後使用該私鑰產生一簽章資料並將該簽章資料傳回該自動櫃員機,該自動櫃員機是取得該憑證密碼並透過一安控元件傳送該憑證密碼至該憑證載具,及透過該安控元件接收該憑證載具所傳送之該簽章資料。As described in the request item 1, the system for obtaining the authentication by the ATM for account application, wherein the certificate carrier uses a certificate password to obtain a private key and then uses the private key to generate a signature data and then use the signature Data is returned to the ATM, which obtains the certificate password and transmits the certificate password to the certificate carrier through a security control component, and receives the signature data sent by the certificate carrier through the security control component. 如請求項1所述之藉由自動櫃員機獲得認證以進行數帳申請之系統,其中該自動櫃員機更用以接收該數銀伺服器所傳送之資料使用請求並取得相對應之一回應訊息及傳送該回應訊息至該數銀伺服器,該數銀伺服器是依據該回應訊息選擇依據該客戶基本資料取得該帳戶申請資料之方式。As described in the request item 1, the system for obtaining the authentication by the ATM for account application, wherein the ATM is further used to receive the data use request sent by the digital bank server and obtain a corresponding response message and send The response message is sent to the digital bank server, and the digital bank server selects the method of obtaining the account application information based on the customer's basic information based on the response message. 如請求項3所述之藉由自動櫃員機獲得認證以進行數帳申請之系統,其中該數銀伺服器是於該回應訊息表示同意授權時,連線至一資料伺服器依據該客戶基本資料下載一客戶資料並依據該客戶資料產生該帳戶申請資料,或於該回應訊息表示不同意授權時,依據該客戶基本資料傳送資料填寫訊息至一客戶裝置並接收該客戶裝置所傳送之該帳戶申請資料。As described in the request item 3, the system for obtaining the authentication by the ATM for account application, in which the digital bank server is connected to a data server to download according to the customer's basic information when the response message indicates that the authorization is approved A customer data and generate the account application data based on the customer data, or when the response message indicates that the authorization is disapproved, send the data based on the customer basic data to fill in the message to a client device and receive the account application data sent by the client device . 如請求項3所述之藉由自動櫃員機獲得認證以進行數帳申請之系統,其中該數銀伺服器更用以傳送該帳戶申請資料至該自動櫃員機,該自動櫃員機更用以顯示該帳戶申請資料,及用以取得修改後之帳戶申請資料,並傳送該修改後之帳戶申請資料至該數銀伺服器。As described in claim 3, the system for applying for accounts by obtaining authentication by an ATM, wherein the digital bank server is further used to send the account application data to the ATM, and the ATM is further used to display the account application Data, and used to obtain the modified account application data, and send the modified account application data to the digital bank server. 如請求項1所述之藉由自動櫃員機獲得認證以進行數帳申請之系統,其中該系統更包含一身分確認伺服器,用以接收該驗證伺服器所傳送之該客戶基本資料中之一識別資料,及用以確認該數位憑證與該識別資料關聯。As described in claim 1, the system for obtaining authentication through an automated teller machine for account application, wherein the system further includes an identity verification server for receiving one of the basic customer information sent by the verification server Data, and used to confirm that the digital certificate is associated with the identification data. 如請求項6所述之藉由自動櫃員機獲得認證以進行數帳申請之系統,其中該身分確認伺服器更用以接收該驗證伺服器由該自動櫃員機所轉送之一憑證確認資料,並依據該憑證確認資料中之憑證序號讀取一相關資料,及判斷該相關資料所包含之憑證擁有者的識別資料是否與憑證確認資料中之該識別資料相符以產生表示該識別資料是否與該數位憑證關聯之身分確認結果。As described in claim 6, the authentication server is used to obtain authentication for account application system, wherein the identity confirmation server is further used to receive a certificate confirmation data forwarded by the authentication server from the ATM, and based on the The certificate serial number in the certificate confirmation data reads a piece of relevant data, and determines whether the identification data of the certificate owner contained in the relevant data matches the identification data in the certificate confirmation data to generate an indication of whether the identification data is associated with the digital certificate The result of identity verification. 如請求項7所述之藉由自動櫃員機獲得認證以進行數帳申請之系統,其中該驗證伺服器更用以依據該身分確認伺服器所產生之身分確認結果產生該驗證結果。As described in claim 7, in the system for obtaining authentication by an automated teller machine for account application, the verification server is further used to generate the verification result according to the identity verification result generated by the identity verification server. 如請求項1所述之藉由自動櫃員機獲得認證以進行數帳申請之系統,其中該自動櫃員機更用以接收該數銀伺服器所產生之一作業處理結果或接該該數銀伺服器或該驗證伺服器所產生之一提示訊息,並用以顯示該作業處理結果及該提示訊息。As described in claim 1, the system for obtaining authentication by an automatic teller machine for account application, wherein the automatic teller machine is further used to receive a processing result generated by the digital bank server or to connect to the digital bank server or A prompt message generated by the verification server and used to display the processing result of the operation and the prompt message. 如請求項9所述之藉由自動櫃員機獲得認證以進行數帳申請之系統,其中該自動櫃員機更用以於顯示該作業處理結果或該提示訊息時,播放相對應之聲音或影像。As described in claim 9 of the system for applying for accounting by obtaining authentication through an automated teller machine, the automated teller machine is further used to play the corresponding sound or video when displaying the processing result of the operation or the prompt message.
TW109207965U 2020-06-23 2020-06-23 System for digital account application by using ATM to obtain authentication TWM601411U (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
TW109207965U TWM601411U (en) 2020-06-23 2020-06-23 System for digital account application by using ATM to obtain authentication

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
TW109207965U TWM601411U (en) 2020-06-23 2020-06-23 System for digital account application by using ATM to obtain authentication

Publications (1)

Publication Number Publication Date
TWM601411U true TWM601411U (en) 2020-09-11

Family

ID=73644589

Family Applications (1)

Application Number Title Priority Date Filing Date
TW109207965U TWM601411U (en) 2020-06-23 2020-06-23 System for digital account application by using ATM to obtain authentication

Country Status (1)

Country Link
TW (1) TWM601411U (en)

Cited By (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
TWI742849B (en) * 2020-09-14 2021-10-11 中華電信股份有限公司 System and method for personal information authorization
TWI774011B (en) * 2020-06-23 2022-08-11 國泰世華商業銀行股份有限公司 System for getting certification through automation machine for applying account and method thereof
TWI790495B (en) * 2020-10-30 2023-01-21 臺灣網路認證股份有限公司 System for driving smart card by third-party device for identity verification and method thereof

Cited By (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
TWI774011B (en) * 2020-06-23 2022-08-11 國泰世華商業銀行股份有限公司 System for getting certification through automation machine for applying account and method thereof
TWI742849B (en) * 2020-09-14 2021-10-11 中華電信股份有限公司 System and method for personal information authorization
TWI790495B (en) * 2020-10-30 2023-01-21 臺灣網路認證股份有限公司 System for driving smart card by third-party device for identity verification and method thereof

Similar Documents

Publication Publication Date Title
TWM601411U (en) System for digital account application by using ATM to obtain authentication
CA2914956C (en) System and method for encryption
EP2569692A1 (en) One-time use password systems and methods
TWI644276B (en) System for opening account and applying mobile banking account online and method thereof
TWM592134U (en) System for verifying identity for opening an account using a vehicle in an ATM
TWM539667U (en) System of online credentials application for network transaction via carrier
TWM539668U (en) System for opening account online and applying for mobile banking
TWI724638B (en) System for using carrier to verity identity in machine for opening account and method thereof
TWI774011B (en) System for getting certification through automation machine for applying account and method thereof
TWM620550U (en) System for verifying identity on different devices by verifying valid certificates
TWM618726U (en) System for verifying identity on different devices based on certificates and verification data
TWI792010B (en) System for using automation machine to scan barcode and verify identity for applying account and method thereof
TWM609003U (en) System for transferring to client end to continue operation after confirming the identity on the public equipment
TW201804384A (en) Electronic card creating system and method thereof capable of effectively improving security of card information
TWM601410U (en) System for completing account application by scanning code to verify identity
TWI803907B (en) System for confirming identity on different devices by verifying valid certification and method thereof
TWM588313U (en) System for confirming user identity through financial account information
TWI729535B (en) System for using financial account to confirm identity and method thereof
US11915234B2 (en) System and method for securing a private key transaction within blockchain
US11392941B2 (en) System and method for securing a private key transaction within blockchain
TW201824129A (en) System for applying for certificate online through carrier for transaction and method thereof
TWI777105B (en) System for obtaining additional data when identifying to execute operation and method thereof
TWI754812B (en) System for using a device identification to log in via telecommunication server and method thereof
TWI645345B (en) System, device and method for executing certificate operation on basis of token
KR100963917B1 (en) System for Processing Account Transfer using Graphic User Interface and Program Recording Medium