WO2012130130A1 - 安全数码卡及在安全数码卡上实现近场通讯功能的方法 - Google Patents

安全数码卡及在安全数码卡上实现近场通讯功能的方法 Download PDF

Info

Publication number
WO2012130130A1
WO2012130130A1 PCT/CN2012/073100 CN2012073100W WO2012130130A1 WO 2012130130 A1 WO2012130130 A1 WO 2012130130A1 CN 2012073100 W CN2012073100 W CN 2012073100W WO 2012130130 A1 WO2012130130 A1 WO 2012130130A1
Authority
WO
WIPO (PCT)
Prior art keywords
card
field communication
near field
module
card reader
Prior art date
Application number
PCT/CN2012/073100
Other languages
English (en)
French (fr)
Inventor
顾建良
顾瞻
Original Assignee
惠州Tcl移动通信有限公司
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by 惠州Tcl移动通信有限公司 filed Critical 惠州Tcl移动通信有限公司
Publication of WO2012130130A1 publication Critical patent/WO2012130130A1/zh

Links

Images

Classifications

    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06QINFORMATION AND COMMUNICATION TECHNOLOGY [ICT] SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES; SYSTEMS OR METHODS SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES, NOT OTHERWISE PROVIDED FOR
    • G06Q20/00Payment architectures, schemes or protocols
    • G06Q20/30Payment architectures, schemes or protocols characterised by the use of specific devices or networks
    • G06Q20/34Payment architectures, schemes or protocols characterised by the use of specific devices or networks using cards, e.g. integrated circuit [IC] cards or magnetic cards
    • G06Q20/352Contactless payments by cards

Definitions

  • the present invention relates to the field of electronic information technology, and in particular to a secure digital card and a method for implementing a near field communication function on a secure digital card.
  • SIM Subscriber
  • customer identification module Near field communication of the card, that is, integrating the near field communication module inside the SIM card.
  • the Chinese utility model patent with the application number 200920131699.X disclosed on March 3, 2010, "an SD card”, whose main technology is: through SD (Secure)
  • the Digital, Secure Digital) card embeds a near field communication control chip, a near field communication antenna and a smart card.
  • the SD card Combined with storage technology, smart card technology and near field communication technology, the SD card not only has the storage function of the traditional SD card, but also has a near field. Communication functions and functions of smart cards.
  • the inventor of the present application has also found that when the technical solution implements mobile payment, information such as a user key is not stored in the memory module or stored in the smart card, and these are open to the user, although the information may be encrypted. But it may also be cracked and the security is low.
  • the technical problem mainly solved by the present invention is that the security of the mobile phone payment is low, and a secure digital card and a method for realizing the near field communication function on the secure digital card can be provided, which can improve the payment security of the mobile phone.
  • a technical solution adopted by the embodiment of the present invention is to provide a secure digital card, including a card controller module, a memory module and an interface driver module respectively connected to the card controller module, and the security
  • the digital card further includes: a near field communication module electrically connected to the card controller module for detecting whether the card reader is close to and communicating with the card reader when approaching; the security module electrically connecting the card controller a module, configured to store a first key for verifying the card reader when the near field communication module communicates with the card reader; and a near field communication antenna electrically connected to the near field communication module for reading the card Wirelessly connecting, and the near field communication antenna is an annular near field communication antenna formed by a security digital card; wherein the card controller module further comprises a configuration unit for the near field communication module and the card reader Before communication, configure the near field communication module according to the configuration file of the corresponding near field communication module.
  • the near field communication module is specifically configured to: when the near field communication antenna senses the card reader, notify the card controller module to acquire the first key from the security module, and send the second key with the card reader. The key is verified, and the card reader is subjected to the card reading operation after the verification is passed.
  • the card controller module includes an identification code processing unit, configured to acquire a first identification code of the secure digital card from the configuration file, and write the first identification code into the near field communication module.
  • the card controller module includes a parsing unit, configured to parse the first key from the configuration file, and store the first key in the security module.
  • a secure digital card including a card controller module, a memory module and an interface driver module respectively connected to the card controller module
  • the secure digital card further includes: a near field communication module electrically connected to the card controller module for detecting whether the card reader is in proximity and communicating with the card reader; the security module electrically connecting the card controller module, a first key for verifying the card reader when the near field communication module communicates with the card reader; a near field communication antenna electrically connected to the near field communication module for performing with the card reader Wireless connections.
  • the near field communication antenna is an annular near field communication antenna formed by a surrounding security digital card.
  • the card controller module includes a configuration unit configured to configure the near field communication module according to a configuration file of the corresponding near field communication module before the near field communication module communicates with the card reader.
  • the near field communication module is specifically configured to: when the near field communication antenna senses the card reader, notify the card controller module to acquire the first key from the security module, and send the second key with the card reader. The key is verified, and the card reader is subjected to the card reading operation after the verification is passed.
  • the card controller module includes an identification code processing unit, configured to acquire a first identification code of the secure digital card from the configuration file, and write the first identification code into the near field communication module.
  • the card controller module includes a parsing unit, configured to parse the first key from the configuration file, and store the first key in the security module.
  • another technical solution adopted by the embodiment of the present invention is to provide a method for implementing a near field communication function on a secure digital card, comprising the following steps: using a near field communication antenna disposed on a secure digital card Detecting whether the card reader is close to; when detecting that a card reader is close, verifying the card reader with the first key of the security module set on the security digital card; after being verified, adopting setting on the security digital card
  • the near field communication module and the near field communication antenna communicate with the card reader.
  • the detecting, by the near field communication antenna disposed on the secure digital card, whether the card reader is close to the step, further comprises: detecting whether a configuration file corresponding to the near field communication module exists in the memory module, and after detecting the existence of the configuration file, Configure the near field communication module according to the configuration file.
  • the step of verifying the card reader by using the first key of the security module disposed on the secure digital card includes obtaining the first identification code of the secure digital card and the first key pair set on the security module Verify.
  • the step of verifying the card reader by using the first key of the security module disposed on the secure digital card further includes parsing the first key from the security module.
  • the invention has the beneficial effects that when the mobile phone payment is implemented in the prior art, the information such as the user key is not stored in the memory module or stored in the smart card, and the information is open to the user, although the information may be encrypted.
  • the security may be low.
  • the security module that is not open to the user is added, the key of the secure digital card is stored, and the security of the mobile payment is improved. Simply purchasing a secure digital card with near field communication function can realize mobile payment without the inconvenience of replacing the SIM card.
  • FIG. 1 is a schematic structural view of an embodiment of a secure digital card of the present invention
  • FIG. 2 is a schematic flow chart of a first embodiment of a method for implementing a near field communication function on a secure digital card according to the present invention
  • FIG. 3 is a schematic structural diagram of a card controller of a security digital card embodiment of the present invention.
  • FIG. 4 is a schematic flow chart of a second embodiment of a method for implementing a near field communication function on a secure digital card according to the present invention.
  • the secure digital card includes: an interface driver module 11, a card controller module 12, and near field communication (ie, NFC, Near) Field Communication module 13, security module 14, memory module interface 15, memory module 16, and near field communication antenna 17.
  • an interface driver module 11 a card controller module 12
  • near field communication ie, NFC, Near
  • security module 14 memory module interface 15, memory module 16, and near field communication antenna 17.
  • a near field communication module 13 electrically connected to the card controller module 12 for detecting whether the card reader is close to and in communication with the card reader when approaching;
  • a security module 14 electrically connected to the card controller module 12 for storing a first key for verifying the card reader when the near field communication module 13 communicates with the card reader;
  • the near field communication antenna 17 is electrically connected to the near field communication module 13 for wireless connection with the card reader.
  • the near field communication module 13 is electrically connected to the card controller module 12 for detecting whether the card reader (not shown) is close to and communicating with the card reader, mainly for modulating or demodulating data sent by the card reader. .
  • the card controller module 12 accesses the near field communication module 13 through an internal parallel data interface, that is, the near field communication module 13 functions as a peripheral device of the connection card controller module 12, just like the memory module 16.
  • the baseband chip (not shown) communicates through DATA0 ⁇ DATA3, CLK, CMD to access the near field communication module 13.
  • the security module 14 is electrically connected to the card controller module 12 for storing a first key for verifying the card reader when the near field communication module 13 communicates with the card reader. Since the security unit is a component that is additionally integrated inside the secure digital card and is not a file defined by the secure digital card specification, the security module 14 is not directly open to the user.
  • the near field communication antenna 17 is electrically connected to the near field communication module 13 for wireless connection with a card reader, and can exchange data with the card reader.
  • the first key of the secure digital card is stored by adding the security module 14, because the security module 14 is not directly opened to the user, so the difficulty of cracking the first key is improved, thereby improving Mobile payment security.
  • the near field communication antenna 17 forms an annular near field communication antenna 17 around the secure digital card.
  • the near-field antenna 17 by enclosing the near-field antenna 17 around the secure digital card, the high performance of the antenna is ensured, and the size, structure, and appearance of the secure digital card are reduced.
  • the card controller module 12 is configured to detect whether a configuration file exists in the memory module 16, and when the configuration file exists, the card controller module 12 is configured according to the corresponding near field communication module 13.
  • the configuration file configures the near field communication module 13.
  • the near field communication module 13 is configured to notify the card controller module 12 to acquire the first key from the security module 14 when the near field communication antenna 17 senses the card reader, and send the first key with the card reader.
  • the second key (of course, the card reader may store the second key in advance, that is, the second key is burned in the card reader or stored in the card reader by other means) for verification, after the verification is passed Accept the card reader's card reading operation.
  • FIG. 3 is a schematic structural diagram of a card controller of the embodiment of the secure digital card of the present invention.
  • the card controller module 12 further includes an identifier processing unit 121 for acquiring a first identification code of the secure digital card from the configuration file, and writing the first identification code to the near field communication module 13.
  • the card controller module 12 further includes a parsing unit 122, configured to parse the first key from the configuration file, and store the first key in the security module 14.
  • the configuration file is an nfc.ini file.
  • the contents of the Nfc.ini file are:
  • the configuration file that is, the nfc.ini file, includes the software version, the first identification code, and the first key.
  • the configuration file is created by a baseband chip (not shown).
  • the content that the card controller module 12 mainly configures for the near field communication module 13 is the software version, the first identification code, and the first key.
  • the card controller module 12 When the card controller module 12 detects that the nfc.ini file exists in the memory module 16, the card controller module 12 reads the nfc.ini file and parses the nfc.ini file. Obtaining the first identification code of the secure digital card, and writing the first identification code into the near field communication module 13 for the first identification code obtained when the card reader reads the secure digital card; acquiring the card a first key, the first key is not open to the user, and the first key is stored by the security module 14 inside the secure digital card, so the key here is not a clear code, that is, has been added The secret password is displayed, so the card controller module 12 of the secure digital card needs to parse the first key according to its internal parsing unit 122, and then write the first key into the security module inside the secure digital card. 14 in.
  • the near field communication module 13 is configured according to the configuration file by the card controller module 12, and the first key is stored by setting the parsing unit 122 in the card controller module 12.
  • the process to the security module 14 is performed in the form of a password to further improve security.
  • the near field communication antenna 17 is further configured to couple electric field energy to the card controller module 12 and the near field communication module 13 for power.
  • the electric field energy is coupled by the near field communication antenna 17, and the electric field energy is converted into electric energy, which provides power for the near field communication function and achieves passivation.
  • FIG. 2 is a schematic flowchart of a method for implementing a near field communication function on a secure digital card according to the present invention.
  • step S1 the near field communication antenna disposed on the secure digital card is used to detect whether the card reader is close.
  • step S2 when it is detected that the card reader is approaching, the card reader is verified by using the first key of the security module disposed on the secure digital card.
  • step S3 after the verification is passed, the near field communication module and the near field communication antenna disposed on the secure digital card are used to communicate with the card reader.
  • the card controller module 12 detects whether the card reader is close by the near field communication antenna 17, and the detection principle is to detect the change of the electric field.
  • the card controller module 12 obtains the first key obtained by the parsing from the security module 14, and verifies with the second key sent by the card reader.
  • the card controller module 12 accepts the card reader's card reading operation to the near field communication module 13, and exchanges data with the card reader through the near field communication antenna 17, and when the verification fails, the card controller module 12 The card reader is denied the card reading operation of the near field communication module 13.
  • the security of the mobile phone payment is improved by obtaining the first key of the secure digital card from the security module 14 and verifying with the second key sent by the card reader.
  • the method before the step S1, further includes: detecting whether a configuration file corresponding to the near field communication module 13 exists in the memory module 16, and configuring the near field communication module according to the configuration file when the configuration file exists 13.
  • step S2 the method further includes acquiring a first identification code of the secure digital card, and writing the near field communication module 13.
  • the method further includes parsing the first key. Because the first key is stored in the security module 14 in the form of a password, when the second key is verified, it is first parsed.
  • the near field communication module 13 by configuring the near field communication module 13 according to the configuration file, and acquiring the first identification code and the first key of the secure digital card, when the card reader is close, verifying the first key and The second key, when the verification is successful, performs data communication. While implementing the near field communication function, the user is more secure using the near field communication function.
  • FIG. 4 is a schematic flowchart of a second embodiment of a method for implementing a near field communication function on a secure digital card. Includes the following substeps:
  • step S400 it is detected whether there is a card reader approaching.
  • Step S401 acquiring a first identification code.
  • Step S402 determining whether the identification code is successfully verified.
  • Step S403 obtaining the first key when the verification is successful.
  • Step S404 verifying the first key and determining whether the verification is successful.
  • Step S405 accepting the card reading operation of the card reader when the verification is successful.
  • the second key is sent from the card reader.
  • the near field communication module 13 detects that a card reader is approaching, that is, when an electric field approaches, that is, when the card reader accesses the near field communication module 13 (see FIG. 1)
  • the card reader sends a second identification code to
  • the card controller module 12 acquires the first identification code written into the near field communication module 13 and performs verification with the second identification code.
  • key verification is performed.
  • the near field communication module 13 When performing key verification, the near field communication module 13 notifies the card controller module 12 to acquire the first key, and the card controller module 12 retrieves the first key from the security module 14, and will A key is verified with the second key sent by the card reader, and if the verification is successful, the near field communication module 13 accepts the card reading operation of the card reader. If the verification of the identification code sent by the card reader fails, or the key verification fails, the card controller module 12 prohibits the near field communication module 13 from being accessed by the card reader until the next time the near field communication module 13 detects an electric field. Close.
  • the security of the user using the near field communication function is improved by the identification code verification and the key verification.
  • the first key is encrypted or parsed in step S3.
  • the first key is not open to the user, and the first key is stored by the security module 14 (see FIG. 1) inside the secure digital card, so the first key here is not a clear code, ie The password display has been added, so the card controller module 12 of the secure digital card needs to parse the first key according to its internal parsing unit 122, and then write the first key into the secure digital card.
  • Security module 14 in.
  • the security of using the near field communication function by the user is further improved by encrypting or decrypting the first key.
  • the user can simply implement the mobile payment function by simply purchasing a corresponding secure digital card with near field communication function. And because the added security module 14 makes mobile payment more secure. Also, because the near field communication antenna 17 surrounds the secure digital card, the volume is smaller and the structure is more compact.

Landscapes

  • Engineering & Computer Science (AREA)
  • Business, Economics & Management (AREA)
  • Microelectronics & Electronic Packaging (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Accounting & Taxation (AREA)
  • Strategic Management (AREA)
  • Physics & Mathematics (AREA)
  • General Business, Economics & Management (AREA)
  • General Physics & Mathematics (AREA)
  • Theoretical Computer Science (AREA)
  • Telephone Function (AREA)
  • Storage Device Security (AREA)

Abstract

本发明公开了一种安全数码卡及在安全数码卡上实现近场通讯功能的方法。安全数码卡包括卡控制器模块、分别与所述卡控制器模块连接的存储器模块和接口驱动器模块,所述安全数码卡还包括:近场通讯模块,其电连接所述卡控制器模块,用于检测读卡器是否靠近并与读卡器进行通讯;安全模块,其电连接所述卡控制器模块,用于存储在近场通讯模块与读卡器进行通讯时、对读卡器进行验证的第一密钥;近场通讯天线,其电连接所述近场通讯模块,用于与读卡器进行无线连接。通过上述方式,本发明能够提高手机支付的安全性。

Description

安全数码卡及在安全数码卡上实现近场通讯功能的方法
【技术领域】
本发明涉及电子信息技术领域,特别是涉及一种安全数码卡及在安全数码卡上实现近场通讯功能的方法。
【背景技术】
随着电子银行业务的发展,现代人的消费支付工具已经不局限于现金,而是扩展到银行卡、网上银行和手机银行;手机支付作为一种崭新的支付方式,具有方便、低廉等优点,变得越来越普及。但无论是在开展业务的形式还是在用户推广方面都有较大的局限,主要是因为安全隐患、技术保障和信用制度等因素。解决这些问题的传统技术方法有中国移动提出的基于SIM(Subscriber Identity Module,客户识别模块)卡的近场通讯,即在SIM卡内部集成近场通讯模块。但是如果用户想增加该功能,需要另行更换专门的集成近场通讯的SIM卡,成本高、不方便。
为试图解决上述问题,公开日为2010年3月3日,申请号为200920131699.X的中国实用新型专利公开了“一种SD卡”,其主要技术是:通过在SD(Secure Digital,安全数码)卡中嵌入近场通讯控制芯片、近场通讯天线和智能卡,结合存储技术、智能卡技术以及近场通讯技术,不仅使SD卡具有传统SD卡的存储功能,而且还具有近场通讯功能和智能卡的功能。
但是,本申请发明人还发现,该技术方案实现手机支付时,用户密钥等信息不是存储于存储器模块中,就是存储于智能卡中,这些是对用户开放的,尽管这些信息可能是加密的,但是也可能被破解,安全性较低。
【发明内容】
本发明主要解决的技术问题是在实现手机支付时安全性较低的问题,提供一种安全数码卡及在安全数码卡上实现近场通讯功能的方法,能够提高手机支付安全性。
为解决上述技术问题,本发明实施例采用的一个技术方案是:提供一种安全数码卡,包括卡控制器模块、分别与所述卡控制器模块连接的存储器模块和接口驱动器模块,所述安全数码卡还包括:近场通讯模块,其电连接所述卡控制器模块,用于检测读卡器是否靠近并在靠近时与读卡器进行通讯;安全模块,其电连接所述卡控制器模块,用于存储在近场通讯模块与读卡器进行通讯时、对读卡器进行验证的第一密钥;近场通讯天线,其电连接所述近场通讯模块,用于与读卡器进行无线连接,并且所述近场通讯天线是环绕安全数码卡形成的环状近场通讯天线;其中,所述卡控制器模块进一步包括配置单元,用于在近场通讯模块与读卡器通讯之前,根据对应近场通讯模块的配置文件配置近场通讯模块。
其中,所述近场通讯模块具体用于在近场通讯天线感测到读卡器时,通知卡控制器模块从安全模块中获取第一密钥,并与所述读卡器发送的第二密钥进行验证,验证通过后接受读卡器的读卡操作。
其中,所述卡控制器模块包括识别码处理单元,用于从所述配置文件中获取安全数码卡的第一识别码,并将所述第一识别码写入近场通讯模块。
其中,所述卡控制器模块包括解析单元,用于从所述配置文件中解析出第一密钥,并将所述第一密钥存储于安全模块。
为解决上述技术问题,本发明实施例采用的另一个技术方案是:提供一种安全数码卡,包括卡控制器模块、分别与所述卡控制器模块连接的存储器模块和接口驱动器模块,所述安全数码卡还包括:近场通讯模块,其电连接所述卡控制器模块,用于检测读卡器是否靠近并与读卡器进行通讯;安全模块,其电连接所述卡控制器模块,用于存储在近场通讯模块与读卡器进行通讯时、对读卡器进行验证的第一密钥;近场通讯天线,其电连接所述近场通讯模块,用于与读卡器进行无线连接。
其中,所述近场通讯天线是环绕安全数码卡形成的环状近场通讯天线。
其中,所述卡控制器模块包括配置单元,用于在近场通讯模块与读卡器通讯之前,根据对应近场通讯模块的配置文件配置近场通讯模块。
其中,所述近场通讯模块具体用于在近场通讯天线感测到读卡器时,通知卡控制器模块从安全模块中获取第一密钥,并与所述读卡器发送的第二密钥进行验证,验证通过后接受读卡器的读卡操作。
其中,所述卡控制器模块包括识别码处理单元,用于从所述配置文件中获取安全数码卡的第一识别码,并将所述第一识别码写入近场通讯模块。
其中,所述卡控制器模块包括解析单元,用于从所述配置文件中解析出第一密钥,并将所述第一密钥存储于安全模块。
为解决上述技术问题,本发明实施例采用的另一个技术方案是:提供一种在安全数码卡上实现近场通讯功能的方法,包括如下步骤:采用设置于安全数码卡上的近场通讯天线检测读卡器是否靠近;在检测到有读卡器靠近时,采用设置于安全数码卡上的安全模块的第一密钥对读卡器进行验证;在验证通过后采用设置于安全数码卡上的近场通讯模块和近场通讯天线与读卡器通讯。
其中,采用设置于安全数码卡上的近场通讯天线检测读卡器是否靠近步骤前,还包括:检测存储器模块中是否存在对应近场通讯模块的配置文件,在检测到存在所述配置文件后根据配置文件配置近场通讯模块。
其中,采用设置于安全数码卡上安全模块的第一密钥对读卡器进行验证步骤中,包括获取所述安全数码卡的第一识别码和设置于安全模块的第一密钥对读卡器进行验证。
其中,采用设置于安全数码卡上的安全模块的第一密钥对读卡器进行验证步骤中,还包括从安全模块中解析出第一密钥。
本发明的有益效果是:区别于现有技术实现手机支付时,用户密钥等信息不是存储于存储器模块中,就是存储于智能卡中,这些是对用户开放的,尽管这些信息可能是加密的,但是也可能被破解,安全性较低的情况,本发明实施例通过增加不对用户开放的安全模块,实现对安全数码卡的密钥等的存储,提高手机支付的安全性;同时,用户只需简单地购买具有近场通讯功能的安全数码卡,就可以实现手机支付,免去更换SIM卡的不便。
【附图说明】
图1是本发明安全数码卡实施例的结构示意图;
图2是本发明在安全数码卡上实现近场通讯功能的方法第一实施例的流程示意图;
图3是本发明安全数码卡实施例卡控制器的结构示意图;
图4是本发明在安全数码卡上实现近场通讯功能的方法第二实施例的流程示意图。
【具体实施方式】
下面结合附图和实施例对本发明进行详细说明。
参阅图1,是本发明安全数码卡实施例的结构示意图。所述安全数码卡包括:接口驱动器模块11、卡控制器模块12、近场通讯(即NFC,Near Field Communication)模块13、安全模块14、存储器模块接口15、存储器模块16和近场通讯天线17。
近场通讯模块13,其电连接所述卡控制器模块12,用于检测读卡器是否靠近并在靠近时与读卡器进行通讯;
安全模块14,其电连接所述卡控制器模块12,用于存储在近场通讯模块13与读卡器进行通讯时、对读卡器进行验证的第一密钥;
近场通讯天线17,其电连接所述近场通讯模块13,用于与读卡器进行无线连接。
所述近场通讯模块13电连接卡控制器模块12,用于检测读卡器(图未示)是否靠近并与读卡器进行通讯,主要是对读卡器发送的数据进行调制或解调。所述卡控制器模块12通过内部并行数据接口对近场通讯模块13进行访问,即将所述近场通讯模块13作为连接卡控制器模块12外围设备,如同存储器模块16一样。基带芯片(图未示)通过DATA0~DATA3,CLK,CMD来进行通讯,从而对近场通讯模块13进行访问。
所述安全模块14电连接卡控制器模块12,用于存储在近场通讯模块13与读卡器进行通讯时、对读卡器进行验证的第一密钥。因为安全单元是另外集成在安全数码卡内部的一个部件,不属于安全数码卡规范所定义的文件,因此所述安全模块14并不直接向用户开放。
所述近场通讯天线17,其电连接所述近场通讯模块13,用于与读卡器进行无线连接,可以与读卡器交换数据。
在本发明实施例中,通过增加安全模块14,实现对安全数码卡的第一密钥等的存储,因为安全模块14并不直接向用户开放,所以为破解第一密钥提高难度,从而提高手机支付的安全性。
在本发明另一实施例中,所述近场通讯天线17,所述近场通讯天线17环绕安全数码卡形成环状近场通讯天线17。
在本发明实施例中,通过将所述近场天线17环绕安全数码卡,保证天线较高性能的同时,减小所述安全数码卡的体积、结构紧凑、外形也更美观简洁。
在本发明另一实施例中,所述卡控制器模块12用于检测存储器模块16中是否存在配置文件,所述配置文件存在时,所述卡控制器模块12根据对应近场通讯模块13的配置文件配置近场通讯模块13。
所述近场通讯模块13用于在近场通讯天线17感测到读卡器时,通知卡控制器模块12从安全模块14中获取第一密钥,并与所述读卡器发送的第二密钥(当然,所述读卡器可以事先存储有第二密钥,即第二密钥是烧固在读卡器中的,或者通过其它方式存储在读卡器中)进行验证,验证通过后接受读卡器的读卡操作。
请参阅图3,是本发明安全数码卡实施例卡控制器的结构示意图。所述卡控制器模块12还包括识别码处理单元121,用于从所述配置文件中获取安全数码卡的第一识别码,并将所述第一识别码写入近场通讯模块13。
另外,所述卡控制器模块12还包括解析单元122,用于从所述配置文件中解析出第一密钥,并将所述第一密钥存储于安全模块14。
例如,所述配置文件为nfc.ini文件。简要的,所述Nfc.ini文件内容:
[Version]
NFC_SD VERSION=1.0
[CARD_ID]
ID=12345678
[CARD_KEY]
KEY=ABCDEF
注:所述配置文件,即nfc.ini文件中包括软件版本、第一识别码和第一密钥。另外所述配置文件由基带芯片(图未示)创建。所述卡控制器模块12对近场通讯模块13主要配置的内容即是软件版本、第一识别码和第一密钥。
当所述卡控制器模块12检测到存储器模块16中存在nfc.ini文件时,所述卡控制器模块12就会去读取nfc.ini文件,并解析所述nfc.ini文件。从中获取所述安全数码卡的第一识别码,将所述第一识别码写入近场通讯模块13内,用于读卡器读取安全数码卡时获取的第一识别码;获取卡的第一密钥,所述第一密钥对用户是不开放的,通过安全数码卡内部的安全模块14来实现对第一密钥的存储,所以这里的密钥不是一个明码,即已经加过密的密码显示,所以安全数码卡的卡控制器模块12需要根据自己内部的解析单元122,解析出所述第一密钥,然后将所述第一密钥写入安全数码卡内部的安全模块14中。
在本发明实施例中,通过所述卡控制器模块12,根据配置文件对近场通讯模块13进行配置,并通过在所述卡控制器模块12中设置解析单元122,将第一密钥存储到安全模块14的过程是以密码形式进行的,进一步提高安全性。
在本发明的另一实施例中,所述近场通讯天线17还用于耦合电场能量,提供给所述卡控制器模块12和近场通讯模块13电源。
在本发明实施例中,通过近场通讯天线17耦合电场能量,将电场能量转化为电能的功能,为近场通讯功能提供电源,实现无源化。
请参阅图2,是本发明在安全数码卡上实现近场通讯功能的方法实施例的流程示意图。
步骤S1,采用设置于安全数码卡上的近场通讯天线检测读卡器是否靠近。
步骤S2,在检测到有读卡器靠近时,采用设置于安全数码卡上的安全模块的第一密钥对读卡器进行验证。
步骤S3,在验证通过后采用设置于安全数码卡上的近场通讯模块和近场通讯天线与读卡器通讯。
并请参阅图1,本发明实施例,卡控制器模块12通过近场通讯天线17检测是不是有读卡器靠近,其检测原理是通过检测电场的变化。当有读卡器靠近时,卡控制器模块12从安全模块14中获取解析得到的第一密钥,并与读卡器发送的第二密钥进行验证。当验证通过时,卡控制器模块12接受读卡器对近场通讯模块13的读卡操作,并通过近场通讯天线17与读卡器交换数据,当验证未通过时,卡控制器模块12拒绝读卡器对近场通讯模块13的读卡操作。
在本发明实施例中,通过从安全模块14中获取安全数码卡的第一密钥,并与读卡器发送的第二密钥进行验证,提高手机支付的安全性。
在本发明另一实施例中,在步骤S1前,还包括:检测存储器模块16中是否存在对应近场通讯模块13的配置文件,在所述配置文件存在时,根据配置文件配置近场通讯模块13。
在步骤S2中,还包括获取所述安全数码卡的第一识别码,并写入近场通讯模块13。另外,在步骤S2中,还包括对所述第一密钥进行解析。因为所述第一密钥是以密码的形式存储在安全模块14中的,与所述第二密钥进行验证时,要先对其进行解析。
在本发明实施例中,通过根据所述配置文件配置近场通讯模块13,并获取安全数码卡的第一识别码和第一密钥,在读卡器靠近时,验证所述第一密钥和第二密钥,验证成功时,进行数据通讯。实现近场通讯功能的同时,使用户使用近场通讯功能更加安全。
请参阅图4,是在安全数码卡上实现近场通讯功能的方法第二实施例的流程示意图。包括如下子步骤:
步骤S400,检测是否有读卡器靠近。
步骤S401,获取第一识别码。
步骤S402,判断识别码是否验证成功。
步骤S403,获在验证成功时获取第一密钥。
步骤S404,验证所述第一密钥并判断是否验证成功。
步骤S405,在验证成功时接受读卡器的读卡操作。
步骤S400到S405中,譬如,所述第二密钥是从读卡器发送过来的。当近场通讯模块13检测到有读卡器靠近时,即有电场靠近时,即读卡器要访问近场通讯模块13(参阅图1)时,所述读卡器发送第二识别码给近场通讯模块13,所述卡控制器模块12获取写入近场通讯模块13的第一识别码并与第二识别码进行验证。当第二识别码与第一识别码验证成功时,进行密钥验证。在进行密钥验证的时候,所述近场通讯模块13通知卡控制器模块12,获取所述第一密钥,所述卡控制器模块12从安全模块14取出第一密钥,并将第一密钥与读卡器发送的第二密钥进行验证,如果验证成功,则所述近场通讯模块13接受读卡器的读卡操作。如果读卡器发送的识别码验证失败,或者密钥验证失败,所述卡控制器模块12禁止近场通讯模块13被读卡器访问,直到下一次所述近场通讯模块13检测到有电场接近。
在本发明实施例中,通过识别码验证与密钥验证,提高用户使用近场通讯功能的安全性。
在本发明另一实施例中,在步骤S3中,对所述第一密钥加密或者解析。譬如,所述第一密钥是不对用户开放的,通过安全数码卡内部的安全模块14(参阅图1)来实现对第一密钥的存储,所以这里的第一密钥不是一个明码,即已经加过密的密码显示,所以安全数码卡的卡控制器模块12需要根据自己内部的解析单元122,解析出所述第一密钥,然后将所述第一密钥写入安全数码卡内部的安全模块14中。
在本发明实施例中,通过对第一密钥加密或解密,进一步提高用户使用近场通讯功能的安全性。
通过上述实施例,用户只需简单的购买相应的具备近场通讯功能的安全数码卡就可以实现手机支付功能。并且因为增加的安全模块14使手机支付更安全。还因为将近场通讯天线17环绕安全数码卡,使得体积更小、结构更紧凑。
以上所述仅为本发明的实施例,并非因此限制本发明的专利范围,凡是利用本发明说明书及附图内容所作的等效结构或等效流程变换,或直接或间接运用在其他相关的技术领域,均同理包括在本发明的专利保护范围内。

Claims (14)

  1. 一种安全数码卡,包括卡控制器模块、分别与所述卡控制器模块连接的存储器模块和接口驱动器模块,其特征在于,所述安全数码卡还包括:
    近场通讯模块,其电连接所述卡控制器模块,用于检测读卡器是否靠近并在靠近时与读卡器进行通讯;
    安全模块,其电连接所述卡控制器模块,用于存储在近场通讯模块与读卡器进行通讯时、对读卡器进行验证的第一密钥;
    近场通讯天线,其电连接所述近场通讯模块,用于与读卡器进行无线连接,并且所述近场通讯天线是环绕安全数码卡形成的环状近场通讯天线;
    其中,所述卡控制器模块进一步包括配置单元,用于在近场通讯模块与读卡器通讯之前,根据对应近场通讯模块的配置文件配置近场通讯模块。
  2. 根据权利要求1所述的安全数码卡,其特征在于,所述近场通讯模块具体用于在近场通讯天线感测到读卡器时,通知卡控制器模块从安全模块中获取第一密钥,并与所述读卡器发送的第二密钥进行验证,验证通过后接受读卡器的读卡操作。
  3. 根据权利要求2所述的安全数码卡,其特征在于,所述卡控制器模块包括识别码处理单元,用于从所述配置文件中获取安全数码卡的第一识别码,并将所述第一识别码写入近场通讯模块。
  4. 根据权利要求3所述的安全数码卡,其特征在于,所述卡控制器模块包括解析单元,用于从所述配置文件中解析出第一密钥,并将所述第一密钥存储于安全模块。
  5. 一种安全数码卡,包括卡控制器模块、分别与所述卡控制器模块连接的存储器模块和接口驱动器模块,其特征在于,所述安全数码卡还包括:
    近场通讯模块,其电连接所述卡控制器模块,用于检测读卡器是否靠近并在靠近时与读卡器进行通讯;
    安全模块,其电连接所述卡控制器模块,用于存储在近场通讯模块与读卡器进行通讯时、对读卡器进行验证的第一密钥;
    近场通讯天线,其电连接所述近场通讯模块,用于与读卡器进行无线连接。
  6. 根据权利要求5所述的安全数码卡,其特征在于,所述近场通讯天线是环绕安全数码卡形成的环状近场通讯天线。
  7. 根据权利要求5所述的安全数码卡,其特征在于,所述卡控制器模块包括配置单元,用于在近场通讯模块与读卡器通讯之前,根据对应近场通讯模块的配置文件配置近场通讯模块。
  8. 根据权利要求7所述的安全数码卡,其特征在于,所述近场通讯模块具体用于在近场通讯天线感测到读卡器时,通知卡控制器模块从安全模块中获取第一密钥,并与所述读卡器发送的第二密钥进行验证,验证通过后接受读卡器的读卡操作。
  9. 根据权利要求8所述的安全数码卡,其特征在于,所述卡控制器模块包括识别码处理单元,用于从所述配置文件中获取安全数码卡的第一识别码,并将所述第一识别码写入近场通讯模块。
  10. 根据权利要求9所述的安全数码卡,其特征在于,所述卡控制器模块包括解析单元,用于从所述配置文件中解析出第一密钥,并将所述第一密钥存储于安全模块。
  11. 一种在安全数码卡上实现近场通讯功能的方法,其特征在于,包括如下步骤:
    采用设置于安全数码卡上的近场通讯天线检测读卡器是否靠近;
    在检测到有读卡器靠近时,采用设置于安全数码卡上安全模块的第一密钥对读卡器进行验证;
    在验证通过后采用设置于安全数码卡上的近场通讯模块和近场通讯天线与读卡器通讯。
  12. 根据权利要求11所述的方法,其特征在于,采用设置于安全数码卡上的近场通讯天线检测读卡器是否靠近步骤前,还包括:检测存储器模块中是否存在对应近场通讯模块的配置文件,在检测到存在所述配置文件后根据配置文件配置近场通讯模块。
  13. 根据权利要求12所述的方法,其特征在于,采用设置于安全数码卡上安全模块的第一密钥对读卡器进行验证步骤中,包括获取所述安全数码卡的第一识别码和设置于安全模块的第一密钥对读卡器进行验证。
  14. 根据权利要求13所述的方法,其特征在于,采用设置于安全数码卡上安全模块的第一密钥对读卡器进行验证步骤之前,还包括从安全模块中解析出第一密钥。
PCT/CN2012/073100 2011-03-30 2012-03-27 安全数码卡及在安全数码卡上实现近场通讯功能的方法 WO2012130130A1 (zh)

Applications Claiming Priority (2)

Application Number Priority Date Filing Date Title
CN201110079102.3A CN102156897B (zh) 2011-03-30 2011-03-30 安全数码卡及在安全数码卡上实现近场通讯功能的方法
CN201110079102.3 2011-03-30

Publications (1)

Publication Number Publication Date
WO2012130130A1 true WO2012130130A1 (zh) 2012-10-04

Family

ID=44438386

Family Applications (1)

Application Number Title Priority Date Filing Date
PCT/CN2012/073100 WO2012130130A1 (zh) 2011-03-30 2012-03-27 安全数码卡及在安全数码卡上实现近场通讯功能的方法

Country Status (2)

Country Link
CN (1) CN102156897B (zh)
WO (1) WO2012130130A1 (zh)

Cited By (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US10033435B2 (en) 2014-06-26 2018-07-24 Intel IP Corporation Apparatus, system and method of detecting an activity of a wireless communication device

Families Citing this family (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102156897B (zh) * 2011-03-30 2014-04-02 惠州Tcl移动通信有限公司 安全数码卡及在安全数码卡上实现近场通讯功能的方法
MY153828A (en) * 2012-09-14 2015-03-24 Univ Malaya Liner for prosthetic limb

Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101351813A (zh) * 2005-12-28 2009-01-21 桑迪士克股份有限公司 具有近场通信能力的嵌套存储器系统
CN101868953A (zh) * 2007-12-07 2010-10-20 诺基亚公司 事务处理认证
CN101916476A (zh) * 2010-02-11 2010-12-15 江苏银邦信息技术有限公司 一种基于sd加密卡与近距离无线通信技术相结合的移动数据传输方法
CN102156897A (zh) * 2011-03-30 2011-08-17 惠州Tcl移动通信有限公司 安全数码卡及在安全数码卡上实现近场通讯功能的方法

Family Cites Families (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN201417464Y (zh) * 2009-05-12 2010-03-03 深圳市江波龙电子有限公司 一种sd卡
CN101694596A (zh) * 2009-10-29 2010-04-14 深圳华为通信技术有限公司 数据卡的供电芯片和数据卡
CN102117427B (zh) * 2009-12-30 2013-08-21 晨星软件研发(深圳)有限公司 近场通讯装置

Patent Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101351813A (zh) * 2005-12-28 2009-01-21 桑迪士克股份有限公司 具有近场通信能力的嵌套存储器系统
CN101868953A (zh) * 2007-12-07 2010-10-20 诺基亚公司 事务处理认证
CN101916476A (zh) * 2010-02-11 2010-12-15 江苏银邦信息技术有限公司 一种基于sd加密卡与近距离无线通信技术相结合的移动数据传输方法
CN102156897A (zh) * 2011-03-30 2011-08-17 惠州Tcl移动通信有限公司 安全数码卡及在安全数码卡上实现近场通讯功能的方法

Cited By (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US10033435B2 (en) 2014-06-26 2018-07-24 Intel IP Corporation Apparatus, system and method of detecting an activity of a wireless communication device

Also Published As

Publication number Publication date
CN102156897A (zh) 2011-08-17
CN102156897B (zh) 2014-04-02

Similar Documents

Publication Publication Date Title
WO2014040439A1 (zh) 一种无线网络系统及便携式电子设备
TW201824052A (zh) 基於認證裝置的電子身份證認證服務系統
US20070208949A1 (en) Information security device of universal serial bus human interface device class and data transmission method for same
TWI403145B (zh) 無線網路認證系統及其方法
WO2013071711A1 (zh) 一种处理支付业务的方法和终端
WO2012091351A2 (en) System and method for provisioning over the air of confidential information on mobile communicative devices with non-uicc secure elements
CN202004846U (zh) 一种可保护移动支付安全的手机盾
US9065806B2 (en) Internet based security information interaction apparatus and method
CN101599832A (zh) 一种实现网络系统登录的个人身份认证方法及系统
WO2012130130A1 (zh) 安全数码卡及在安全数码卡上实现近场通讯功能的方法
CN103632081A (zh) 加密存储设备及其认证系统、认证方法
CN103984911A (zh) 密码键盘、支付系统及其支付方法
WO2017034281A1 (en) Apparatus and method for secure electronic payment
WO2012091350A2 (en) System and method for secure containment of sensitive financial information stored in a mobile communication terminal
US20070180507A1 (en) Information security device of universal serial bus human interface device class and data transmission method for same
TWI588676B (zh) 裝置配對方法
CN107005575A (zh) 一种具有动态令牌otp功能的智能卡及其工作方法
CN101557588B (zh) 一种用户证书的管理及使用方法及移动终端
CN103051640A (zh) 一种基于蓝牙的网银安全设备及其数据通讯方法
CN112235794B (zh) 一种带加密芯片wapi模块和传输方法
CN202816040U (zh) 带有蓝牙的个人金融安全终端
WO2013174317A2 (zh) 金融卡、移动终端及移动支付系统
WO2023193585A1 (zh) 电子证执照正副本认证装置及方法
CN103237306A (zh) 一种手机身份认证终端的Usbkey及应用
KR20140046332A (ko) 모바일 단말기용 ic 카드 리더 장치 및 ic 카드 리더 장치에서 독출한 ic 카드 정보 처리 방법

Legal Events

Date Code Title Description
121 Ep: the epo has been informed by wipo that ep was designated in this application

Ref document number: 12764911

Country of ref document: EP

Kind code of ref document: A1

NENP Non-entry into the national phase

Ref country code: DE

122 Ep: pct application non-entry in european phase

Ref document number: 12764911

Country of ref document: EP

Kind code of ref document: A1