WO2015192500A1 - 一种远程共享方法、vtm终端、网络侧设备及系统 - Google Patents

一种远程共享方法、vtm终端、网络侧设备及系统 Download PDF

Info

Publication number
WO2015192500A1
WO2015192500A1 PCT/CN2014/086564 CN2014086564W WO2015192500A1 WO 2015192500 A1 WO2015192500 A1 WO 2015192500A1 CN 2014086564 W CN2014086564 W CN 2014086564W WO 2015192500 A1 WO2015192500 A1 WO 2015192500A1
Authority
WO
WIPO (PCT)
Prior art keywords
vtm
remote
dynamic password
sharing
password
Prior art date
Application number
PCT/CN2014/086564
Other languages
English (en)
French (fr)
Inventor
景玲
Original Assignee
中兴通讯股份有限公司
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by 中兴通讯股份有限公司 filed Critical 中兴通讯股份有限公司
Priority to EP14895464.7A priority Critical patent/EP3157193A4/en
Publication of WO2015192500A1 publication Critical patent/WO2015192500A1/zh

Links

Images

Classifications

    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/60Protecting data
    • G06F21/62Protecting access to data via a platform, e.g. using keys or access control rules
    • G06F21/629Protecting access to data via a platform, e.g. using keys or access control rules to features or functions of an application
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/08Network architectures or network communication protocols for network security for authentication of entities
    • H04L63/083Network architectures or network communication protocols for network security for authentication of entities using passwords
    • H04L63/0838Network architectures or network communication protocols for network security for authentication of entities using passwords using one-time-passwords
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/10Network architectures or network communication protocols for network security for controlling access to devices or network resources
    • H04L63/105Multiple levels of security
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F2221/00Indexing scheme relating to security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F2221/21Indexing scheme relating to G06F21/00 and subgroups addressing additional information or applications relating to security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F2221/2113Multi-level security, e.g. mandatory access control
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F2221/00Indexing scheme relating to security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F2221/21Indexing scheme relating to G06F21/00 and subgroups addressing additional information or applications relating to security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F2221/2149Restricted operating environment

Definitions

  • the invention relates to the field of application of VTM technology in financial services, in particular to a remote sharing for VTM terminal, VTM network side device and VTM system in VTM system for realizing remote sharing between customers and bank staff in VTM system.
  • the Virtual Teller Machine (VTM) service is an emerging banking service that combines electronic banking services with manual counter services. It combines visual, audio, self-service and personal services (bank staff directs customers through video to complete business), for example The bank staff communicates with the customer in the video to guide the customer's operation; however, due to the different perceptions of the VTM service, there are still situations in which some functions are not understood. Therefore, only remote video guidance is not enough;
  • the VTM service provides a desktop sharing function. When customers encounter difficulties, they can share their business interface to the bank staff. The bank staff can see the actual operation interface and guide the customer in the video.
  • the related VTM sharing adopts the technology of assigning a shared password or multiple shared passwords to each VTM terminal (different financial services correspond to different shared passwords, such as card opening service corresponding password 1, transfer service corresponding password 2, etc.)
  • the assistance request is sent to the VTM network side device, and the bank staff uses the password provided by the bank to log in to the VTM terminal used by the customer to obtain the customer's business desktop for targeted guidance; While it is convenient for users to use, there may be hidden dangers of customer information. For example, if other people illegally obtain/use the shared password to log in to the customer's VTM terminal, they can steal the customer's identity information, bank card information, etc. .
  • the embodiment of the invention provides a remote sharing method, a VTM terminal, a network side device and a system, to solve the problem that the user information in the related remote sharing technology is not secure.
  • a remote sharing method for a VTM terminal in a VTM system comprising:
  • the remote sharing request is verified, and if the verification is passed, the desktop of the financial service is remotely shared.
  • the method further includes: acquiring a service right of the financial service, and setting a sharing right of the shared password according to the service right;
  • the step of remotely sharing the desktop of the financial service includes: remotely sharing the desktop of the financial service that matches the sharing authority.
  • the method before the sending the remote assistance request, the method further includes: receiving a user operation, and setting a assistance right of the remote assistance;
  • setting the shared password according to the dynamic password further comprising: setting a sharing right of the shared password according to the assisting authority;
  • the step of remotely sharing the desktop of the financial service includes: remotely sharing the desktop of the financial service that matches the sharing authority.
  • the method further includes:
  • a remote sharing method for a VTM network side device in a VTM system comprising:
  • the method further includes:
  • a remote sharing method for a VTM system comprising:
  • the VTM terminal receives a selection operation when the user uses the VTM terminal to perform remote assistance for the financial service, and generates a dynamic password;
  • the VTM terminal sets a shared password according to the dynamic password, and sends a remote assistance request carrying the dynamic password to the VTM network side device;
  • the VTM network side device extracts the dynamic password, and sends a remote sharing request to the VTM terminal according to the dynamic password;
  • the VTM terminal receives the remote sharing request sent by the VTM network side device, and verifies the remote sharing request. If the verification is passed, the VTM terminal remotely shares the desktop of the financial service to the VTM network side device.
  • a VTM terminal includes: a first processing module, a setting module, a first sending module, a first receiving module, and a sharing module, where
  • the first processing module is configured to: receive a selection operation when the user uses the VTM terminal to perform remote assistance for the financial service, and generate a dynamic password;
  • the setting module is configured to: set a shared password according to the dynamic password;
  • the first sending module is configured to: send a remote assistance request that carries the dynamic password to a VTM network side device;
  • the first receiving module is configured to: receive a remote sharing request sent by the VTM network side device according to the dynamic password;
  • the sharing module is configured to: verify the remote sharing request, and if the verification passes, remotely share the desktop of the financial service.
  • the method further includes a shared interrupt module and a clear module, wherein:
  • the shared interrupt module is configured to: receive a user operation, disconnect the remote sharing according to a user operation, or receive a disconnect request sent by a VTM network side device, and disconnect the remote sharing;
  • the clearing module is configured to: after the shared interrupt module disconnects the remote share, clear the shared password.
  • a VTM network side device includes: a second receiving module, a second processing module, a second sending module, and a shared communication module, where
  • the second receiving module is configured to: receive, by the VTM terminal, a remote assistance request that carries a dynamic password;
  • the second processing module is configured to: extract the dynamic password
  • the second sending module is configured to: send a remote sharing request to the VTM terminal according to the dynamic password;
  • the shared communication module is configured to: receive a desktop of a financial service remotely shared by the VTM terminal, and establish remote sharing with the VTM terminal.
  • a VTM system comprising any of the VTM terminals as described above and any of the VTM network side devices as described above.
  • the remote sharing technology of the above technical solution performs the user selected financial service in the VTM terminal If the user does not know how to operate, the user selects the remote assistance selection operation and generates a dynamic password.
  • the VTM terminal sets the shared password based on the dynamic password, and the VTM network side device initiates a remote sharing request based on the dynamic password, thereby implementing the VTM terminal.
  • the shared password can not be illegally logged into the VTM terminal to steal customer information, ensuring that the user information is not illegally obtained by others, solving the problem of insecure user information in the related remote sharing technology, and enhancing the user experience. .
  • FIG. 1 is a schematic diagram of functional modules of a VTM system according to a first embodiment of the present invention
  • FIG. 2 is a flowchart of a remote sharing method according to a second embodiment of the present invention.
  • FIG. 3 is a flowchart of a remote sharing method according to a third embodiment of the present invention.
  • FIG. 4 is a flowchart of a remote sharing method according to a fourth embodiment of the present invention.
  • FIG. 5 is a flowchart of a remote sharing method according to a fifth embodiment of the present invention.
  • the core idea of the present invention is to improve the setting mechanism of the shared password in the related VTM remote sharing, and provide a mechanism for setting a shared password based on the dynamic password, and on the basis of solving the related remote sharing technology, the shared password is used by others. Illegal knowledge of the user information caused by the security risks.
  • the VTM system 1 is a schematic diagram of a VTM system according to a first embodiment of the present invention.
  • the VTM system 1 provided by the present invention includes: a VTM terminal 11 and a VTM network side device 12;
  • the VTM terminal 11 is configured to: send a remote assistance request to the VTM network side device 12 upon receiving a selection operation when the user needs to remotely assist the financial service using the VTM terminal;
  • the VTM terminal 11 refers to a VTM virtual teller machine operated by a customer, which integrates a video system, ID card identification, fingerprint identification, electronic signature, etc., and the customer can use the VTM terminal to complete business such as card opening and wealth management, so that Provide customers with 24-hour service; if the customer chooses to open the card, the VTM terminal automatically invokes the service interface to prompt the customer how to complete the card opening. If the customer cannot understand the prompt of the VTM terminal, they can use the video and the bank. The staff communicates. If the card opening service cannot be completed in the video with the bank staff (if a function button cannot be found), the remote assistance function can be selected at this time, and the VTM terminal 11 receives the user's selection operation. Generating a dynamic password, adding the dynamic password to the remote assistance request, and sending it to the VTM network side device 12 to request remote assistance of the bank staff;
  • the VTM terminal 11 There are many algorithms for generating a dynamic password by the VTM terminal 11, such as the time when the remote assistance function is selected, the source ID (the device number of the VTM terminal), the destination ID (the number of the staff serving the customer, the code, etc.) and a random number.
  • the source ID the device number of the VTM terminal
  • the destination ID the number of the staff serving the customer, the code, etc.
  • a random number a random number when receiving a remote assistance request, using the random number as a dynamic password, etc.
  • the dynamic password can be binary, Hexadecimal and so on, of course, can also be a string of letters, a mixture of letters and numbers, etc.;
  • the VTM network side device 12 is configured to: send a remote sharing request to the VTM terminal 11 according to the remote assistance request;
  • the VTM network side device 12 includes a VTM platform, which provides an access path for bank staff.
  • the bank staff can access the VTM platform and the client.
  • the VTM network side device receives the remote assistance request sent by the VTM terminal (carrying There is a dynamic password), and then the dynamic password in the remote assistance request can be extracted, and the remote sharing request is sent to the VTM terminal 11 according to the dynamic password;
  • the VTM terminal 11 is further configured to: set a remote shared password according to the dynamic password, receive and verify the remote sharing request initiated by the VTM network side device 12 according to the dynamic password, and remotely share the desktop of the financial service to the VTM network side device 12 after the verification is passed. ;
  • the VTM terminal 11 sets the remote shared password according to the dynamic password.
  • the mechanism may be directly using the dynamic password as a shared password, or performing a specific algorithm on the dynamic password (eg, square, In reverse order, if there are multiple algorithms, the user may be prompted to select an algorithm to calculate the shared password, or the number or letter corresponding to the specific location of the dynamic password (such as the first eight digits, the last ten digits, the odd digits, etc.).
  • a shared password it can also be a combination of multiple mechanisms, such as the first eight bits of the dynamic password to obtain a shared password, etc., in actual work, the user can also be prompted to select a mechanism to generate a shared password; VTM network side device 12
  • the mechanism for initiating a remote sharing request according to the dynamic password may be that the VTM network side device 12 generates a shared password according to the dynamic password (the mechanism is the same as the mechanism for setting the shared password by the VTM terminal), and then the remote sharing request sent at this time carries one.
  • the shared password is used by the VTM terminal to compare the shared password carried in the remote sharing request with the shared password in the VTM terminal. If the authentication is consistent, the verification succeeds.
  • the VTM network side device 12 initiates a remote sharing request according to the dynamic password. It can be no dynamic password processing, and the remote sharing request carries a dynamic password.
  • the VTM terminal processes the dynamic password carried in the remote sharing request (the same process as the VTM terminal sets the shared password according to the dynamic password), and if the shared password obtained by the comparison is the same as the shared password in the VTM terminal, the verification succeeds; When the VTM verification is passed, it can be considered that the bank worker/VTM network side device that sent the remote sharing request is legal, and the information of the VTM terminal is not stolen.
  • the VTM terminal 11 will use the desktop of the current service ( Mainly the current interface) is shared; after receiving the shared desktop, the VTM network side device can specifically guide/assisted the user operation to complete the financial service.
  • the embodiment provides a solution for sharing the financial service desktop between the VTM terminal and the VTM network side device based on the dynamic password, and solves the security risk caused by the fixed password in the related art.
  • the VTM terminal 11 includes: a first processing module 111, a setting module 112, a first sending module 113, a first receiving module 114, and a sharing module 115. ,among them,
  • the first processing module 111 is configured to: receive a selection operation when the user needs to remotely assist the financial service using the VTM terminal, and generate a dynamic password;
  • the setting module 112 is configured to: set a shared password according to the dynamic password;
  • the first sending module 113 is configured to: send a remote assistance request carrying a dynamic password to the VTM network side device;
  • the first receiving module 114 is configured to: receive, according to the dynamic password, the VTM network side device sends Remote sharing request;
  • the sharing module 115 is configured to: verify the remote sharing request, and if the verification passes, remotely share the desktop of the financial service.
  • This embodiment provides a specific solution for how the VTM terminal generates a dynamic password, sets a shared password according to the dynamic password, and when the desktop is shared, so that the technology provided by the present application can be implemented in the relevant VTM terminal.
  • the VTM terminal 11 shown in FIG. 1 further includes a shared interrupt module and a clearing module; the shared interrupt module is configured to: receive a user operation, disconnect the remote share according to a user operation, or receive a disconnection sent by the VTM network side device. Open the request, disconnect the remote share; the clear module is set to: after the shared interrupt module disconnects the remote share, clear the shared password.
  • the dynamic password and the shared password are cleared, so that the subsequent shared operations may regenerate the dynamic password instead of using the repeated dynamic password, which further enhances the user experience.
  • the VTM network side device 12 includes: a second receiving module 121, a second processing module 122, a second sending module 123, and a shared communication module. 124, of which
  • the second receiving module 121 is configured to: receive, by the VTM terminal, a remote assistance request that carries a dynamic password;
  • the second processing module 122 is configured to: extract a dynamic password
  • the second sending module 123 is configured to: send a remote sharing request to the VTM terminal according to the dynamic password;
  • the shared communication module 124 is configured to: receive a desktop of a financial service remotely shared by the VTM terminal, and establish remote sharing with the VTM terminal.
  • This embodiment provides a specific solution for how the VTM network side device obtains the dynamic password and how to obtain the shared desktop of the VTM terminal by using the dynamic password, so that the technology provided by the present application can be implemented in the related VTM network side device.
  • FIG. 2 is a flowchart of a remote sharing method according to a second embodiment of the present invention. As shown in FIG. 2, in the embodiment, the remote sharing method package for a VTM terminal in a VTM system provided by the present invention is provided. Including the following steps:
  • S201 Receive a selection operation when the user needs to remotely assist the financial service using the VTM terminal, and generate a dynamic password
  • S203 Send a remote assistance request carrying a dynamic password to the VTM network side device.
  • S204 Receive a remote sharing request sent by the VTM network side device according to the dynamic password.
  • S205 Verify the remote sharing request. If the verification is passed, the desktop of the financial service is shared remotely. If the verification fails, the desktop is not shared, and the customer and the bank staff are reminded.
  • This embodiment describes the implementation of the remote sharing method on the VTM terminal side.
  • the VTM terminal only shares the desktop when the shared password authentication based on the dynamic password is passed, thereby ensuring information security.
  • step S202 and step S203 in FIG. 2 may be performed simultaneously, or may be performed in sequence, and step S203 may be performed before step S202.
  • the method shown in FIG. 2 further includes: obtaining a service right of the financial service, and setting a share permission of the shared password according to the service right; and optionally, such as opening a card service, while setting the shared password according to the dynamic password.
  • the business authority of the card opening business is that the user identity information is invisible, while the business authority of the wealth management business is that the user fund information is not visible, and different business rights correspond to different sharing rights;
  • the step of remotely sharing the desktop of the financial service is specifically: remotely sharing the desktop of the financial service matching the sharing authority;
  • This embodiment provides a permission setting mechanism.
  • different sharing rights can be set according to service rights, thereby further ensuring information security.
  • the method shown in FIG. 2 before the method for transmitting the remote assistance request to the VTM network side device (step S201), the method shown in FIG. 2 further includes: receiving a user operation, and setting the assistance right of the remote assistance;
  • the method further includes: setting the sharing permission of the shared password according to the assisting authority;
  • the step of remotely sharing the desktop of the financial service is specifically: remotely sharing the desktop of the financial service matching the sharing authority.
  • the method further includes: receiving a user operation, disconnecting the remote sharing according to the user operation, or receiving the sending by the VTM network side device. Disconnect the request, disconnect the remote share; clear the dynamic secret and share the password;
  • the dynamic secret and the shared password are cleared, so that the dynamic password is used only once. Then, even if the other party cracks the dynamic password, the dynamic secret obtained by the crack is invalid in the next sharing, further enhancing the information security. .
  • FIG. 3 is a flowchart of a remote sharing method according to a third embodiment of the present invention.
  • the remote sharing method for a VTM network side device in a VTM system provided by the present invention includes the following steps:
  • the receiving VTM terminal sends a remote assistance request carrying a dynamic password.
  • S304 Receive a desktop of a financial service remotely shared by the VTM terminal, and establish a remote sharing with the VTM terminal.
  • the remote sharing method shown in FIG. 3 further includes: receiving an assistance termination request sent by the VTM terminal, disconnecting the remote sharing, or receiving a bank staff operation, according to the bank The staff action disconnects the remote share; clears the dynamic password.
  • the present invention also provides a remote sharing method for a VTM system.
  • the remote sharing method includes:
  • the VTM terminal receives a selection operation when the user needs to remotely assist the financial service using the VTM terminal, and generates a dynamic password;
  • the VTM terminal sets a remote shared password according to the dynamic password, and sends a remote assistance request carrying the dynamic password to the VTM network side device;
  • the VTM network side device extracts a dynamic password, and sends a remote sharing request to the VTM terminal according to the dynamic password;
  • the VTM terminal receives the remote sharing request sent by the VTM network side device to verify the remote sharing request. If the verification is passed, the VTM terminal remotely shares the desktop of the financial service to the VTM network side device.
  • FIG. 4 is a flowchart of the remote sharing method according to the fourth embodiment of the present invention. It can be seen that, in this embodiment, the remote sharing method for the VTM system provided by the present invention includes the following steps:
  • the VTM terminal receives the user's selection operation and generates a dynamic password.
  • the bank staff needs remote assistance to select the remote assistance function.
  • the VTM terminal After receiving the user's selection operation, the VTM terminal generates a dynamic password.
  • the VTM terminal according to the time of the selection operation, the source ID (the device number of the VTM terminal), and the destination ID (the number of the staff serving the customer) , code, etc.) is added to a random number to get a dynamic password;
  • the VTM terminal sets a shared password and a sharing right according to the dynamic password, and sends a remote assistance request carrying the dynamic password to the VTM network side device.
  • the VTM terminal directly sets the dynamic password as a shared password. After that, the VTM terminal acquires the service authority of the service, and sets the sharing authority according to the service authority (the other party can operate the desktop/the other party cannot operate the desktop), and because the user is Can not find the handwriting function, need the bank staff to help find, set the sharing permission to "the other party can operate the desktop / user identity information is not visible";
  • step S403 The VTM terminal receives and verifies the remote sharing request sent by the VTM network side device according to the dynamic password; if the verification passes, step S404 is performed, otherwise returns to step S401;
  • the VTM network side device receives the remote assistance request, extracts the dynamic password, and sends the remote sharing request according to the dynamic password, and the VTM terminal performs the verification after receiving the remote sharing request;
  • Method 1 The VTM network side device 12 generates a shared password according to the dynamic password (the mechanism is the same as the mechanism for setting the shared password by the VTM terminal), and then the remote sharing request sent at this time carries a shared password, and the VTM terminal pairs the remote share.
  • the shared password carried in the request is compared with the shared password in the VTM terminal, and if they are consistent, the verification is passed;
  • the VTM network side device 12 does not process the dynamic password, and the remote sharing request carries the dynamic password.
  • the VTM terminal processes the dynamic password carried in the remote sharing request (shared with the VTM terminal according to the dynamic password setting). The password is processed the same. If the shared password obtained by the comparison is the same as the shared password in the VTM terminal, the verification is passed;
  • the VTM network side device sends the remote sharing request carrying the dynamic password by using the mode 2;
  • the VTM terminal sends the desktop of the current service to the VTM network side device in an operable manner
  • S405 The VTM terminal and the VTM network side device perform remote assistance, and after the completion of the assistance, the remote sharing is interrupted, and the dynamic password and the shared password are cleared.
  • the VTM terminal sets the sharing authority according to the service authority, which further enhances the security of the information.
  • FIG. 5 is the first embodiment of the present invention.
  • the VTM terminal generates a dynamic password according to the user's selection operation, and sets the assistance authority;
  • the bank staff needs remote assistance, and the user selects the remote assistance.
  • the assistance authority is set;
  • the VTM terminal sets a shared password according to the dynamic password, sets the sharing permission according to the assisting authority, and sends a remote assistance request carrying the dynamic password to the VTM network side device.
  • the VTM terminal directly sets the dynamic password as a shared password, and then the VTM terminal sets the sharing permission as “the inoperable desktop of the other party” according to the assisting authority (the invisible and inoperable interface of some important information peers);
  • step S503 The VTM terminal receives and verifies the remote sharing request sent by the VTM network side device according to the dynamic password; if the verification passes, step S504 is performed, otherwise returns to step S501;
  • the VTM network side device sends the remote sharing request carrying the shared password obtained by the dynamic password processing in the manner of the fourth embodiment.
  • the VTM terminal sends the desktop of the current service to the VTM network side device in an inoperable form, and at the same time, shields important information such as identity information and bank card information in the desktop;
  • S505 The VTM terminal and the VTM network side device perform remote assistance. After the completion of the assistance, the remote sharing is interrupted, and the dynamic password and the shared password are cleared.
  • the VTM terminal When the VTM terminal performs the financial service selected by the user, if the user does not know how to operate, the user selects the remote assistance selection operation and generates a dynamic password, and the VTM terminal sets the shared password based on the dynamic password, and the VTM network side device is based on the dynamic password. Initiating a remote sharing request, thereby realizing the sharing of the financial service desktop of the VTM terminal; in this process, the customer and the bank staff do not need to know the shared password (which will not cause a password leak), and the shared password is based on the dynamic password setting.
  • a mechanism for setting sharing rights is provided, and the sharing authority of the bank staff is set according to the actual situation, which avoids some important information being viewed by the bank staff, thereby enhancing information security;
  • the dynamic password and the shared password are cleared, so that the subsequent shared operations may regenerate the dynamic password instead of using the repeated dynamic password, which further enhances the user experience.
  • the remote sharing technology of the above technical solution when the VTM terminal executes the financial service selected by the user, if the user does not know how to operate, the user selects a remote assistance selection operation and generates a dynamic password, and the VTM terminal sets the shared password based on the dynamic password.
  • the VTM network side device initiates a remote sharing request based on the dynamic password, thereby implementing the sharing of the financial service desktop of the VTM terminal.
  • the client and the bank staff do not need to know the shared password (it will not cause a password leak), and
  • the shared password is set based on the dynamic password, and other people cannot know the shared password, and thus cannot illegally log in to the VTM terminal to steal the customer information, thereby ensuring that the user information is not illegally obtained by others, and the related information is solved.
  • the problem of insecure user information in remote sharing technology enhances the user experience. Therefore, the present invention has strong industrial applicability.

Abstract

一种远程共享方法、VTM终端、网络侧设备及系统,该远程共享方法包括:接收到用户在使用VTM终端进行金融业务需远程协助时的选择操作,生成动态密码;根据动态密码设置共享密码;向VTM网络侧设备发送携带动态密码的远程协助请求;接收VTM网络侧设备根据动态密码发送的远程共享请求;验证远程共享请求,若验证通过,将金融业务的桌面远程共享出去。通过上述技术方案的实施,VTM终端与VTM网络侧设备基于动态密码实现VTM终端的金融业务桌面的共享,共享双方都无需知道该动态密码,其他人员无法得知该动态密码,进而也就不能非法登录到VTM终端以盗取客户信息,解决了相关远程共享技术中用户信息不安全的问题。

Description

一种远程共享方法、VTM终端、网络侧设备及系统 技术领域
本发明涉及金融业务中VTM技术运用领域,尤其涉及一种用于实现VTM系统中客户与银行工作人员之间进行远程共享的用于VTM系统中VTM终端、VTM网络侧设备及VTM系统的远程共享方法、VTM终端、网络侧设备及系统。
背景技术
虚拟柜员机(VTM,Virtual Teller Machine)服务是综合电子银行服务和人工柜台服务的新兴银行服务,其结合了视、听、自助和专人服务(银行工作人员人员通过视频指引客户完成业务办理),例如银行工作人员在视频中与客户交流,指导客户操作;但由于客户对VTM服务的认知不同,仍然会出现不明白一些功能如何操作的情况,因此,仅有远程视频指导是不够的;为此,VTM服务提供了桌面共享功能,客户遇到困难时可以将自己的业务界面共享给银行工作人员,银行工作人员看到实际操作界面,同时在视频中指导客户如何操作。
相关的VTM共享采用这样的技术:为每一个VTM终端分配一个共享密码或者多个共享密码(不同的金融业务对应不同的共享密码,如开卡业务对应密码1、转账业务对应密码2等等),当客户需要远程协助时,发起协助请求到VTM网络侧设备,银行工作人员利用银行提供的密码登录到该客户所使用的VTM终端,获取该客户的业务桌面以进行针对性的指导;该技术在方便了用户使用的同时,会出现客户信息不安全的隐患,如,其他人员非法获取/使用共享密码登陆到该客户的VTM终端后,就可以盗取该客户的身份信息、银行卡信息等。
因此,如何提供一种可以保护客户信息不被盗取的VTM远程共享技术,是本领域技术人员亟待解决的技术问题。
发明内容
本发明实施例提供了一种远程共享方法、VTM终端、网络侧设备及系统,以解决相关远程共享技术中用户信息不安全的问题。
为解决上述技术问题,采用如下技术方案:
一种用于VTM系统中VTM终端的远程共享方法,包括:
接收到用户在使用所述VTM终端进行金融业务需远程协助时的选择操作,生成动态密码;
根据所述动态密码设置共享密码;
向VTM网络侧设备发送携带所述动态密码的远程协助请求;
接收所述VTM网络侧设备根据所述动态密码发送的远程共享请求;
验证所述远程共享请求,若验证通过,将所述金融业务的桌面远程共享出去。
可选地,在根据所述动态密码设置远程共享密码的同时,还包括:获取所述金融业务的业务权限,根据所述业务权限设置所述共享密码的共享权限;
所述将所述金融业务的桌面远程共享出去的步骤包括:将与所述共享权限匹配的所述金融业务的桌面远程共享出去。
可选地,在发送所述远程协助请求之前,还包括:接收用户操作,设置远程协助的协助权限;
在根据所述动态密码设置共享密码的同时,还包括:根据所述协助权限设置所述共享密码的共享权限;
所述将所述金融业务的桌面远程共享出去的步骤包括:将与所述共享权限匹配的所述金融业务的桌面远程共享出去。
可选地,在将所述金融业务的桌面远程共享出去之后,还包括:
接收用户操作,根据用户操作断开所述远程共享,或者接收所述VTM网络侧设备发送的断开请求,断开所述远程共享;
清除所述动态密码及共享密码。
一种用于VTM系统中VTM网络侧设备的远程共享方法,包括:
接收VTM终端发送的携带有动态密码的远程协助请求;
提取所述动态密码;
根据所述动态密码向所述VTM终端发送远程共享请求;
接收所述VTM终端远程共享的金融业务的桌面,建立与所述VTM终端的远程共享。
可选地,在建立与所述VTM终端的远程共享之后,还包括:
接收所述VTM终端发送的协助终止请求,断开所述远程共享,或者接收银行工作人员操作,根据银行工作人员操作断开所述远程共享;
清除所述动态密码。
一种用于VTM系统的远程共享方法,包括:
VTM终端接收到用户在使用所述VTM终端进行金融业务需远程协助时的选择操作,生成动态密码;
所述VTM终端根据所述动态密码设置共享密码,向VTM网络侧设备发送携带所述动态密码的远程协助请求;
所述VTM网络侧设备提取所述动态密码,根据所述动态密码向所述VTM终端发送远程共享请求;
所述VTM终端接收所述VTM网络侧设备发送的远程共享请求,验证所述远程共享请求,若验证通过,所述VTM终端将所述金融业务的桌面远程共享到所述VTM网络侧设备。
一种VTM终端,包括:第一处理模块、设置模块、第一发送模块、第一接收模块及共享模块,其中,
所述第一处理模块设置成:接收到用户在使用所述VTM终端进行金融业务需远程协助时的选择操作,生成动态密码;
所述设置模块设置成:根据所述动态密码设置共享密码;
所述第一发送模块设置成:向VTM网络侧设备发送携带所述动态密码的远程协助请求;
所述第一接收模块设置成:接收所述VTM网络侧设备根据所述动态密码发送的远程共享请求;
所述共享模块设置成:验证所述远程共享请求,若验证通过,将所述金融业务的桌面远程共享出去。
可选地,还包括共享中断模块及清除模块,其中:
所述共享中断模块设置成:接收用户操作,根据用户操作断开所述远程共享,或者接收VTM网络侧设备发送的断开请求,断开所述远程共享;
所述清除模块设置成:在所述共享中断模块断开远程共享后,清除所述共享密码。
一种VTM网络侧设备,包括:第二接收模块、第二处理模块、第二发送模块及共享通信模块,其中,
所述第二接收模块设置成:接收VTM终端发送携带有动态密码的远程协助请求;
所述第二处理模块设置成:提取所述动态密码;
所述第二发送模块设置成:根据所述动态密码向所述VTM终端发送远程共享请求;
所述共享通信模块设置成:接收所述VTM终端远程共享的金融业务的桌面,建立与所述VTM终端的远程共享。
一种VTM系统,包括如上所述的任意一种VTM终端及如上所述的任意一种VTM网络侧设备。
本发明的有益效果:
上述技术方案的远程共享技术,在VTM终端执行用户选择的金融业务 时,若用户不知该如何操作,则接收用户选择远程协助的选择操作,并生成动态密码,VTM终端基于该动态密码设置共享密码,VTM网络侧设备基于动态密码发起远程共享请求,进而实现VTM终端的金融业务桌面的共享,在这个过程中,客户及银行工作人员都无需知道该共享密码(就不会导致密码泄露),并且该共享密码是基于动态密码设置的,其他人员也就无法得知该共享密码,进而也就不能非法登录到VTM终端以盗取客户信息,保证了用户信息不会被他人非法获取,解决了相关远程共享技术中用户信息不安全的问题,增强了用户的使用体验。
附图概述
图1为本发明第一实施例提供的VTM系统的功能模块示意图;
图2为本发明第二实施例提供的远程共享方法的流程图;
图3为本发明第三实施例提供的远程共享方法的流程图;
图4为本发明第四实施例提供的远程共享方法的流程图;
图5为本发明第五实施例提供的远程共享方法的流程图。
本发明的较佳实施方式
现通过具体实施方式结合附图的方式对本发明做出进一步的诠释说明。
本发明的核心思想是针对相关VTM远程共享中共享密码的设置机制进行改进,提供一种基于动态密码来设置共享密码的机制,在此基础上解决相关远程共享技术所存在的因共享密码被他人非法获知所导致的用户信息存在安全隐患的问题。
第一实施例:
图1为本发明第一实施例提供的VTM系统的示意图,由图1可知,在本实施例中,本发明提供的VTM系统1包括:VTM终端11及VTM网络侧设备12;其中,
VTM终端11,设置成:在接收到用户在使用VTM终端进行金融业务需远程协助时的选择操作,向VTM网络侧设备12发送远程协助请求;
可选地,VTM终端11是指客户操作的VTM虚拟柜员机,其集成了视频系统、身份证识别、指纹识别、电子签名等,客户可以利用VTM终端完成开卡、理财等业务,这样,就可以为客户提供24小时的服务;若客户在选择开卡这一金融业务时,VTM终端自动调用该业务界面,提示客户如何完成开卡,若客户不能理解VTM终端的提示,就可以通过视频与银行工作人员进行交流,若在与银行工作人员视频中,仍不能完成开卡业务(如找不到某功能按钮),此时就可以选择远程协助功能,VTM终端11在接收到用户的选择操作时,生成动态密码,并将该动态密码添加到远程协助请求中,一并发送至VTM网络侧设备12,请求银行工作人员的远程协助;
VTM终端11生成动态密码的算法很多,如将选择远程协助功能的时间、来源ID(VTM终端的设备编号)、目的ID(为该客户服务的工作人员的编号、代码等等)与一个随机数相加/相乘得到动态密码,也可以是其他的动态密码生成机制,如在接收到远程协助请求时,产生一个随机数,将该随机数作为动态密码等等机制,动态密码可以采用二进制、16进制等等,当然,还可以是字母串、字母与数字混合串等;
VTM网络侧设备12设置成:根据远程协助请求发送远程共享请求至VTM终端11;
可选地,VTM网络侧设备12包括VTM平台,该VTM平台为银行工作人员提供接入路径,当用户需要通过视频与银行工作人员进行交流时,银行工作人员就可以接入VTM平台,与客户进行视频/音频通信,若银行工作人员通过视频/音频通信仍不能帮助用户完成业务,就需要远程协助用户完成业务,此时,VTM网络侧设备就会接收到VTM终端发送的远程协助请求(携带有动态密码),进而就可以提取远程协助请求中的动态密码,并根据动态密码发送远程共享请求到VTM终端11;
VTM终端11还设置成:根据动态密码设置远程共享密码,接收并验证VTM网络侧设备12根据动态密码发起的远程共享请求,在验证通过后,将金融业务的桌面远程共享到VTM网络侧设备12;
可选地,VTM终端11根据动态密码设置远程共享密码的机制可以是直接将动态密码作为共享密码,也可以是对动态密码执行特定算法(如平方、 倒序等,有多个算法时,也可以提示用户选择一个算法)运算得到共享密码,还可以是将动态密码特定位置(如前八位、后十位、奇数位等)所对应的数字、字母等作为共享密码,还可以是多种机制相结合,如将动态密码的前八位平方运算得到共享密码等等,在实际工作时还可以提醒用户选择一个机制生成共享密码;VTM网络侧设备12根据动态密码发起远程共享请求的机制可以是VTM网络侧设备12根据动态密码生成共享密码(机制与VTM终端设置共享密码的机制相同),那么此时所发送的远程共享请求中所携带的就是一个共享密码,VTM终端对远程共享请求中所携带的共享密码与VTM终端内的共享密码比对,若一致,则验证通过,相应的,VTM网络侧设备12根据动态密码发起远程共享请求的机制还可以是不对动态密码处理,远程共享请求中所携带的就是动态密码,此时,VTM终端对远程共享请求中所携带的动态密码进行处理(与VTM终端根据动态密码设置共享密码的处理相同),比对得到的共享密码与VTM终端内的共享密码,若一致,则验证通过;在VTM验证通过时,就可以认为是发送该远程共享请求的银行工作人员/VTM网络侧设备是合法的,自己的信息不会被盗取,此时,VTM终端11就将当前业务的桌面(主要是当前界面)共享出去;VTM网络侧设备在接收到共享的桌面后,就可以具体的指导/协助用户操作以完成金融业务。
本实施例提供了一种基于动态密码来完成VTM终端与VTM网络侧设备之间金融业务桌面共享的方案,解决了相关技术中固定密码所导致的安全隐患。
针对VTM终端11,由图1可知,在本实施例中,本发明提供的VTM终端11包括:第一处理模块111、设置模块112、第一发送模块113、第一接收模块114及共享模块115,其中,
第一处理模块111设置成:接收到用户在使用VTM终端进行金融业务需远程协助时的选择操作,生成动态密码;
设置模块112设置成:根据动态密码设置共享密码;
第一发送模块113设置成:向VTM网络侧设备发送携带动态密码的远程协助请求;
第一接收模块114设置成:接收VTM网络侧设备根据动态密码发送的 远程共享请求;
共享模块115设置成:验证远程共享请求,若验证通过,将金融业务的桌面远程共享出去。
本实施例针对VTM终端如何生成动态密码、根据动态密码设置共享密码及在何时共享桌面都给出了具体的方案,使得本申请所提供的技术可以在相关的VTM终端内得以实施。
在一些实施例中,图1所示的VTM终端11还包括共享中断模块及清除模块;共享中断模块设置成:接收用户操作,根据用户操作断开远程共享,或者接收VTM网络侧设备发送的断开请求,断开远程共享;清除模块设置成:在共享中断模块断开远程共享后,清除共享密码。本实施例在每次共享结束后都清除动态密码及共享密码,使得后续可能存在的共享操作都要重新生成动态密码,而不是使用重复的动态密码,进一步增强了用户的使用体验。
针对VTM网络侧设备12,由图1可知,在本实施例中,本发明提供的VTM网络侧设备12包括:第二接收模块121、第二处理模块122、第二发送模块123及共享通信模块124,其中,
第二接收模块121设置成:接收VTM终端发送携带有动态密码的远程协助请求;
第二处理模块122设置成:提取动态密码;
第二发送模块123设置成:根据动态密码向VTM终端发送远程共享请求;
共享通信模块124设置成:接收VTM终端远程共享的金融业务的桌面,建立与VTM终端的远程共享。
本实施例针对VTM网络侧设备如何获取动态密码、如何利用动态密码获得VTM终端的共享桌面给出了具体的方案,使得本申请所提供的技术可以在相关的VTM网络侧设备内得以实施。
第二实施例:
图2为本发明第二实施例提供的远程共享方法的流程图;由图2可知,在本实施例中,本发明提供的用于VTM系统中VTM终端的远程共享方法包 括以下步骤:
S201:接收到用户在使用VTM终端进行金融业务需远程协助时的选择操作,生成动态密码;
S202:根据动态密码设置共享密码;
S203:向VTM网络侧设备发送携带动态密码的远程协助请求;
S204:接收VTM网络侧设备根据动态密码发送的远程共享请求;
S205:验证远程共享请求,若验证通过,将金融业务的桌面远程共享出去,若验证未通过,不共享桌面,并提醒客户及银行工作人员。
本实施例对远程共享方法在VTM终端侧的体现做出了说明,VTM终端仅在基于动态密码的共享密码验证通过时,共享桌面,保证了信息安全。
在一些实施例中,图2中的步骤S202与步骤S203是可以同时进行的,也可以分先后顺序,步骤S203可以在步骤S202之前执行。
在一些实施例中,图2所示的方法在根据动态密码设置共享密码的同时,还包括:获取金融业务的业务权限,根据业务权限设置共享密码的共享权限;可选地,如开卡业务与理财业务,开卡业务的业务权限是用户身份信息不可见,而理财业务的业务权限是用户资金信息不可见,不同的业务权限就对应不同的共享权限;
将金融业务的桌面远程共享出去的步骤具体是:将与共享权限匹配的金融业务的桌面远程共享出去;
本实施例提供了权限设置机制,VTM中的可以根据业务权限设置不同的共享权限,进一步保证了信息安全。
在一些实施例中,图2所示的方法在向VTM网络侧设备发送远程协助请求(步骤S201)之前,还包括:接收用户操作,设置远程协助的协助权限;
在根据动态密码设置远程共享密码的同时,还包括:根据协助权限设置共享密码的共享权限;
将金融业务的桌面远程共享出去的步骤具体是:将与共享权限匹配的金融业务的桌面远程共享出去。
在一些实施例中,图2所示的方法在将金融业务的桌面远程共享出去(步骤S205)之后,还包括:接收用户操作,根据用户操作断开远程共享,或者接收VTM网络侧设备发送的断开请求,断开远程共享;清除动态密及共享密码;
本实施例在共享结束后清除动态密及共享密码,使得动态密码仅利用一次,那么,即使他人破解了动态密码,在下次共享时,破解得到的动态密也是无效的,进一步增强了信息安全性。
第三实施例:
图3为本发明第三实施例提供的远程共享方法的流程图;由图3可知,在本实施例中,本发明提供的用于VTM系统中VTM网络侧设备的远程共享方法包括以下步骤:
S301:接收VTM终端发送携带有动态密码的远程协助请求;
S302:提取动态密码;
S303:根据动态密码向VTM终端发送远程共享请求;
S304:接收VTM终端远程共享的金融业务的桌面,建立与VTM终端的远程共享。
在一些实施例中,图3所示的远程共享方法在建立与VTM终端的远程共享之后,还包括:接收VTM终端发送的协助终止请求,断开远程共享,或者接收银行工作人员操作,根据银行工作人员操作断开远程共享;清除动态密码。
同时,本发明还提供了一种用于VTM系统的远程共享方法,在一个实施例中,该远程共享方法包括:
VTM终端接收到用户在使用VTM终端进行金融业务需远程协助时的选择操作,生成动态密码;
VTM终端根据动态密码设置远程共享密码,向VTM网络侧设备发送携带动态密码的远程协助请求;
VTM网络侧设备提取动态密码,根据动态密码向VTM终端发送远程共享请求;
VTM终端接收VTM网络侧设备发送的远程共享请求,验证远程共享请求,若验证通过,VTM终端将金融业务的桌面远程共享到VTM网络侧设备。
现结合具体应用实例对本发明做进一步的诠释说明。
第四实施例:
在本实施例中,做如下设定:用户进行开卡业务时,不知道如何调用手写板写入参考话;图4为本发明第四实施例提供的远程共享方法的流程图;由图4可知,在本实施例中,本发明提供的用于VTM系统的远程共享方法包括以下步骤:
S401:VTM终端接收用户的选择操作,生成动态密码;
用户进行开卡业务时,不知道如何调用手写板写入参考话,与银行工作人员进行视频后也不能解决,因此,需要银行工作人员远程协助,进行选择远程协助功能的选择操作;
VTM终端在接收用户的选择操作后,生成动态密码;在本实施例中,VTM终端根据选择操作的时间、来源ID(VTM终端的设备编号)、目的ID(为该客户服务的工作人员的编号、代码等等)与一个随机数相加得到动态密码;
S402:VTM终端根据动态密码设置共享密码及共享权限,并向VTM网络侧设备发送携带有动态密码的远程协助请求;
在本实施例中,VTM终端直接将动态密码设置为共享密码,之后,VTM终端获取业务的业务权限,并根据业务权限设置共享权限(对方可操作桌面/对方不可操作桌面),又因为用户是无法找到手写功能,需要银行工作人员帮忙找,就设置共享权限为“对方可操作桌面/用户身份信息不可见”;
S403:VTM终端接收并验证VTM网络侧设备根据动态密码发送的远程共享请求;验证通过,执行步骤S404,否则返回步骤S401;
VTM网络侧设备在接收到远程协助请求,提取动态密码,根据动态密码发送远程共享请求,VTM终端接收到远程共享请求后进行验证;
可选地,VTM网络侧设备根据动态密码发送的远程共享请求有两个方式:
方式一、VTM网络侧设备12根据动态密码生成共享密码(机制与VTM终端设置共享密码的机制相同),那么此时所发送的远程共享请求中所携带的就是一个共享密码,VTM终端对远程共享请求中所携带的共享密码与VTM终端内的共享密码比对,若一致,则验证通过;
方式二、VTM网络侧设备12不对动态密码处理,远程共享请求中所携带的就是动态密码,此时,VTM终端对远程共享请求中所携带的动态密码进行处理(与VTM终端根据动态密码设置共享密码的处理相同),比对得到的共享密码与VTM终端内的共享密码,若一致,则验证通过;
在本实施例中,假定VTM网络侧设备采用方式二发送携带有动态密码的远程共享请求;
S404:VTM终端将当前业务的桌面共享出去;
在本实施例中,VTM终端将当前业务的桌面以可操作的形式发送到VTM网络侧设备;
S405:VTM终端与VTM网络侧设备进行远程协助,协助结束后,中断远程共享,清除动态密码及共享密码。
在第四实施例中,VTM终端根据业务权限设置了共享权限,进一步增强了信息的安全性。
第五实施例:
在本实施例中,做如下假定:用户先选择协助权限(一些重要信息对端不可见、不可操作界面),问题是“不能判断某项内容的输入格式是否正确”,图5为本发明第五实施例提供的远程共享方法的流程图;由图5可知,在本实施例中,本发明提供的用于VTM系统的远程共享方法包括以下步骤:
S501:VTM终端根据用户的选择操作,生成动态密码,并设置协助权限;
在本实施例中,用户进行开卡业务时,不能判断某项内容的输入格式是否正确,与银行工作人员进行视频后也不能解决,因此,需要银行工作人员远程协助,并且用户在选择远程协助功能的同时,设置了协助权限;
S502:VTM终端根据动态密码设置共享密码,根据协助权限设置共享权限,并向VTM网络侧设备发送携带有动态密码的远程协助请求;
在本实施例中,VTM终端直接将动态密码设置为共享密码,之后,VTM终端根据协助权限(一些重要信息对端不可见、不可操作界面)设置共享权限为“对方不可操作桌面”;
S503:VTM终端接收并验证VTM网络侧设备根据动态密码发送的远程共享请求;验证通过,执行步骤S504,否则返回步骤S501;
在本实施例中,假定VTM网络侧设备采用第四实施例中的方式一发送携带有对动态密码处理得到的共享密码的远程共享请求;
S504:VTM终端将当前业务的桌面共享出去;
在本实施例中,VTM终端将当前业务的桌面以不可操作的形式发送到VTM网络侧设备,同时,针对桌面内的身份信息、银行卡信息等重要信息进行屏蔽;
S505:VTM终端与VTM网络侧设备进行远程协助,协助结束后,中断远程共享,清除动态密码及共享密码。
综上可知,通过本发明的实施,至少存在以下有益效果:
在VTM终端执行用户选择的金融业务时,若用户不知该如何操作,则接收用户选择远程协助的选择操作,并生成动态密码,VTM终端基于该动态密码设置共享密码,VTM网络侧设备基于动态密码发起远程共享请求,进而实现VTM终端的金融业务桌面的共享;在这个过程中,客户及银行工作人员都无需知道该共享密码(就不会导致密码泄露),并且该共享密码是基于动态密码设置的,其他人员也就无法得知该共享密码,进而也就不能非法登录到VTM终端以盗取客户信息,保证了用户信息不会被他人非法获取,解决了相关远程共享技术中用户信息不安全的问题,增强了用户的使用体验;
进一步的,提供了设置共享权限的机制,根据实际情况来设置银行工作人员的共享权限,避免了一些重要信息被银行工作人员查看,增强了信息安全性;
进一步的,在每次共享结束后都清除动态密码及共享密码,使得后续可能存在的共享操作都要重新生成动态密码,而不是使用重复的动态密码,进一步增强了用户的使用体验。
以上仅是本发明的具体实施方式而已,并非对本发明做任何形式上的限制,凡是依据本发明的技术实质对以上实施方式所做的任意简单修改、等同变化、结合或修饰,均仍属于本发明技术方案的保护范围。
工业实用性
上述技术方案的远程共享技术,在VTM终端执行用户选择的金融业务时,若用户不知该如何操作,则接收用户选择远程协助的选择操作,并生成动态密码,VTM终端基于该动态密码设置共享密码,VTM网络侧设备基于动态密码发起远程共享请求,进而实现VTM终端的金融业务桌面的共享,在这个过程中,客户及银行工作人员都无需知道该共享密码(就不会导致密码泄露),并且该共享密码是基于动态密码设置的,其他人员也就无法得知该共享密码,进而也就不能非法登录到VTM终端以盗取客户信息,保证了用户信息不会被他人非法获取,解决了相关远程共享技术中用户信息不安全的问题,增强了用户的使用体验。因此本发明具有很强的工业实用性。

Claims (11)

  1. 一种用于VTM系统中VTM终端的远程共享方法,包括:
    接收到用户在使用所述VTM终端进行金融业务需远程协助时的选择操作,生成动态密码;
    根据所述动态密码设置共享密码;
    向VTM网络侧设备发送携带所述动态密码的远程协助请求;
    接收所述VTM网络侧设备根据所述动态密码发送的远程共享请求;
    验证所述远程共享请求,若验证通过,将所述金融业务的桌面远程共享出去。
  2. 如权利要求1所述的远程共享方法,其中:
    在根据所述动态密码设置远程共享密码的同时,还包括:获取所述金融业务的业务权限,根据所述业务权限设置所述共享密码的共享权限;
    所述将所述金融业务的桌面远程共享出去的步骤包括:将与所述共享权限匹配的所述金融业务的桌面远程共享出去。
  3. 如权利要求1所述的远程共享方法,其中:
    在发送所述远程协助请求之前,还包括:接收用户操作,设置远程协助的协助权限;
    在根据所述动态密码设置共享密码的同时,还包括:根据所述协助权限设置所述共享密码的共享权限;
    所述将所述金融业务的桌面远程共享出去的步骤包括:将与所述共享权限匹配的所述金融业务的桌面远程共享出去。
  4. 如权利要求1至3任一项所述的远程共享方法,其中,在将所述金融业务的桌面远程共享出去之后,还包括:
    接收用户操作,根据用户操作断开所述远程共享,或者接收所述VTM网络侧设备发送的断开请求,断开所述远程共享;
    清除所述动态密码及共享密码。
  5. 一种用于VTM系统中VTM网络侧设备的远程共享方法,包括:
    接收VTM终端发送的携带有动态密码的远程协助请求;
    提取所述动态密码;
    根据所述动态密码向所述VTM终端发送远程共享请求;
    接收所述VTM终端远程共享的金融业务的桌面,建立与所述VTM终端的远程共享。
  6. 如权利要求5所述的远程共享方法,其中,在建立与所述VTM终端的远程共享之后,还包括:
    接收所述VTM终端发送的协助终止请求,断开所述远程共享,或者接收银行工作人员操作,根据银行工作人员操作断开所述远程共享;
    清除所述动态密码。
  7. 一种用于VTM系统的远程共享方法,包括:
    VTM终端接收到用户在使用所述VTM终端进行金融业务需远程协助时的选择操作,生成动态密码;
    所述VTM终端根据所述动态密码设置共享密码,向VTM网络侧设备发送携带所述动态密码的远程协助请求;
    所述VTM网络侧设备提取所述动态密码,根据所述动态密码向所述VTM终端发送远程共享请求;
    所述VTM终端接收所述VTM网络侧设备发送的远程共享请求,验证所述远程共享请求,若验证通过,所述VTM终端将所述金融业务的桌面远程共享到所述VTM网络侧设备。
  8. 一种VTM终端,包括:第一处理模块、设置模块、第一发送模块、第一接收模块及共享模块,其中,
    所述第一处理模块设置成:接收到用户在使用所述VTM终端进行金融业务需远程协助时的选择操作,生成动态密码;
    所述设置模块设置成:根据所述动态密码设置共享密码;
    所述第一发送模块设置成:向VTM网络侧设备发送携带所述动态密码 的远程协助请求;
    所述第一接收模块设置成:接收所述VTM网络侧设备根据所述动态密码发送的远程共享请求;
    所述共享模块设置成:验证所述远程共享请求,若验证通过,将所述金融业务的桌面远程共享出去。
  9. 如权利要求8所述的VTM终端,还包括共享中断模块及清除模块,其中:
    所述共享中断模块设置成:接收用户操作,根据用户操作断开所述远程共享,或者接收VTM网络侧设备发送的断开请求,断开所述远程共享;
    所述清除模块设置成:在所述共享中断模块断开远程共享后,清除所述共享密码。
  10. 一种VTM网络侧设备,包括:第二接收模块、第二处理模块、第二发送模块及共享通信模块,其中,
    所述第二接收模块设置成:接收VTM终端发送携带有动态密码的远程协助请求;
    所述第二处理模块设置成:提取所述动态密码;
    所述第二发送模块设置成:根据所述动态密码向所述VTM终端发送远程共享请求;
    所述共享通信模块设置成:接收所述VTM终端远程共享的金融业务的桌面,建立与所述VTM终端的远程共享。
  11. 一种VTM系统,包括:如权利要求8或9所述的VTM终端及如权利要求10所述的VTM网络侧设备。
PCT/CN2014/086564 2014-06-16 2014-09-15 一种远程共享方法、vtm终端、网络侧设备及系统 WO2015192500A1 (zh)

Priority Applications (1)

Application Number Priority Date Filing Date Title
EP14895464.7A EP3157193A4 (en) 2014-06-16 2014-09-15 Remote sharing method, and vtm terminal, network side device and system

Applications Claiming Priority (2)

Application Number Priority Date Filing Date Title
CN201410268385.X 2014-06-16
CN201410268385.XA CN105187463A (zh) 2014-06-16 2014-06-16 一种远程共享方法、vtm终端、网络侧设备及系统

Publications (1)

Publication Number Publication Date
WO2015192500A1 true WO2015192500A1 (zh) 2015-12-23

Family

ID=54909307

Family Applications (1)

Application Number Title Priority Date Filing Date
PCT/CN2014/086564 WO2015192500A1 (zh) 2014-06-16 2014-09-15 一种远程共享方法、vtm终端、网络侧设备及系统

Country Status (3)

Country Link
EP (1) EP3157193A4 (zh)
CN (1) CN105187463A (zh)
WO (1) WO2015192500A1 (zh)

Cited By (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN108335026A (zh) * 2018-01-24 2018-07-27 平安科技(深圳)有限公司 银行密码信息变更实现方法、设备、系统及存储介质
CN111464533A (zh) * 2020-03-31 2020-07-28 山东浪潮通软信息科技有限公司 访问问题界面的系统及方法

Families Citing this family (6)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN105812450B (zh) * 2016-02-01 2018-01-16 平安科技(深圳)有限公司 桌面共享方法和系统
CN105913582A (zh) * 2016-06-20 2016-08-31 中国工商银行股份有限公司 自助服务终端和远程协助服务系统
CN108055575B (zh) * 2017-12-06 2020-04-14 电子科技大学 一种面向小区基于模拟投屏的网络视频共享系统
CN109102392A (zh) * 2018-08-15 2018-12-28 吉林亿联银行股份有限公司 一种征信查询风险预警方法及装置
CN111680810A (zh) * 2020-06-17 2020-09-18 杭州赛鲁班网络科技有限公司 一种远程设备维护和支持的系统及其方法
CN112468479B (zh) * 2020-11-23 2022-10-28 中国建设银行股份有限公司 一种联络中心的远程协助方法以及cti组件

Citations (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102857522A (zh) * 2012-10-12 2013-01-02 广州市品高软件开发有限公司 一种云计算桌面终端的身份认证方法及系统
WO2013036946A1 (en) * 2011-09-09 2013-03-14 Stoneware, Inc. Method and apparatus for key sharing over remote desktop protocol

Family Cites Families (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US6973482B2 (en) * 2001-10-01 2005-12-06 Microsoft Corporation Remote assistance
EP2472452A1 (en) * 2010-12-28 2012-07-04 Amadeus S.A.S. Method of providing assistance to the end-user of a software application
US20130125009A1 (en) * 2011-11-16 2013-05-16 International Business Machines Corporation Remote desktop localized content sharing

Patent Citations (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
WO2013036946A1 (en) * 2011-09-09 2013-03-14 Stoneware, Inc. Method and apparatus for key sharing over remote desktop protocol
CN102857522A (zh) * 2012-10-12 2013-01-02 广州市品高软件开发有限公司 一种云计算桌面终端的身份认证方法及系统

Non-Patent Citations (1)

* Cited by examiner, † Cited by third party
Title
See also references of EP3157193A4 *

Cited By (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN108335026A (zh) * 2018-01-24 2018-07-27 平安科技(深圳)有限公司 银行密码信息变更实现方法、设备、系统及存储介质
CN111464533A (zh) * 2020-03-31 2020-07-28 山东浪潮通软信息科技有限公司 访问问题界面的系统及方法

Also Published As

Publication number Publication date
EP3157193A1 (en) 2017-04-19
CN105187463A (zh) 2015-12-23
EP3157193A4 (en) 2017-04-26

Similar Documents

Publication Publication Date Title
WO2015192500A1 (zh) 一种远程共享方法、vtm终端、网络侧设备及系统
AU2021202620B2 (en) Method of using one device to unlock another device
US10389531B2 (en) Authentication system and authentication method
ES2687191T3 (es) Método de autentificación de red para transacciones electrónicas seguras
WO2017164159A1 (ja) 1:n生体認証・暗号・署名システム
RU2610419C2 (ru) Способ, сервер и система для идентификации человека
US20180211021A1 (en) Authentication device, authentication system, and authentication method
US10798068B2 (en) Wireless information passing and authentication
CN109063438A (zh) 一种数据访问方法、装置、本地数据安全访问设备及终端
CN104202163A (zh) 一种基于移动终端的密码系统
CN105187382A (zh) 防止撞库攻击的多因子身份认证方法
CN108401494B (zh) 一种传输数据的方法及系统
JP6294203B2 (ja) 認証システム
CN112987942A (zh) 键盘输入信息的方法、装置、系统、电子设备和存储介质
US20160105798A1 (en) Process for authenticating an identity of a user
CN102571341B (zh) 一种基于动态图像的认证系统及认证方法
CN110717177A (zh) 一种利用移动终端实时安全解锁计算机的方法
WO2015110043A1 (zh) 一种双通道身份认证选择的装置、系统和方法
US10771970B2 (en) Method of authenticating communication of an authentication device and at least one authentication server using local factor
WO2011060739A1 (zh) 一种安全系统及方法
WO2009018685A1 (fr) Dispositif et méthode de chiffrement et d'authentification anti-cheval de troie utilisant une clef à usage unique
WO2011060738A1 (zh) 一种确认cpu卡内数据的方法
CN108933669B (zh) 一种基于物联同步的二次密码的装置
WO2013182050A1 (zh) 安全性信息交互装置及方法和用于安全性信息交互的ic卡
CN103780392A (zh) 一种针对手机安全单元的人机交互安全确认方法

Legal Events

Date Code Title Description
121 Ep: the epo has been informed by wipo that ep was designated in this application

Ref document number: 14895464

Country of ref document: EP

Kind code of ref document: A1

REEP Request for entry into the european phase

Ref document number: 2014895464

Country of ref document: EP

WWE Wipo information: entry into national phase

Ref document number: 2014895464

Country of ref document: EP

NENP Non-entry into the national phase

Ref country code: DE