WO2016112675A1 - 一种金融自助系统的处理方法 - Google Patents

一种金融自助系统的处理方法 Download PDF

Info

Publication number
WO2016112675A1
WO2016112675A1 PCT/CN2015/085189 CN2015085189W WO2016112675A1 WO 2016112675 A1 WO2016112675 A1 WO 2016112675A1 CN 2015085189 W CN2015085189 W CN 2015085189W WO 2016112675 A1 WO2016112675 A1 WO 2016112675A1
Authority
WO
WIPO (PCT)
Prior art keywords
financial self
transaction
service terminal
bank
mobile terminal
Prior art date
Application number
PCT/CN2015/085189
Other languages
English (en)
French (fr)
Inventor
罗攀峰
肖铮
韩小平
何进君
王继忠
Original Assignee
广州广电运通金融电子股份有限公司
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by 广州广电运通金融电子股份有限公司 filed Critical 广州广电运通金融电子股份有限公司
Publication of WO2016112675A1 publication Critical patent/WO2016112675A1/zh

Links

Images

Classifications

    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06QINFORMATION AND COMMUNICATION TECHNOLOGY [ICT] SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES; SYSTEMS OR METHODS SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES, NOT OTHERWISE PROVIDED FOR
    • G06Q40/00Finance; Insurance; Tax strategies; Processing of corporate or income taxes
    • G06Q40/02Banking, e.g. interest calculation or account maintenance

Definitions

  • the invention relates to the technical field of financial self-service terminals, and in particular to a method for processing a financial self-service system.
  • the current financial self-service system consists of several financial self-service terminals (Automatic Teller Machine) connected to the bank backend through a network dedicated line.
  • financial self-service terminals are generally placed in an open environment as public devices.
  • users input information such as transaction amount and transaction password on the financial self-service terminal, they are easily peeped by criminals, and there is a risk of leakage of confidential information. , the security is poor.
  • mobile phone reservation withdrawal first enter the account number, transaction amount, transaction password on the mobile phone to make an appointment, then the bank sends a verification code to the mobile phone, and finally the user enters the mobile phone number, reservation number and verification code on the financial self-service terminal to complete the transaction.
  • QR code withdrawals need to be at the end of financial self-service
  • the QR code is generated on the screen, and then the QR code is scanned by the mobile phone, and the transaction account number, transaction amount and transaction password are input on the mobile phone, and the mobile phone sends the transaction information such as the QR code, the transaction account number and the transaction password to the bank for verification in the background, and finally The bank verifies and notifies the financial self-service terminal to process the transaction.
  • the embodiment of the invention provides a method for processing a financial self-service system, which can solve the technical problem that the existing financial self-service system is inconvenient to operate and has potential security risks.
  • the mobile terminal encrypts the obtained transaction information
  • the financial self-service terminal decrypts the transaction information and reconstitutes the transaction message
  • the bank backstage parses the obtained transaction message to obtain the transaction information
  • the bank backend verifies the transaction information, and if the verification passes, the financial self-service terminal executes the transaction according to the transaction information.
  • the method before the mobile terminal encrypts the obtained transaction information, the method further includes:
  • the mobile terminal acquires transaction information input by a user.
  • the short-range communication method includes a communication method of NFC, Bluetooth, infrared, RFID, ultrasonic or photoelectric conversion.
  • the method before the mobile terminal sends the encrypted transaction information to the financial self-service terminal by using the short-range communication method, the method further includes:
  • the mobile terminal performs mutual authentication with the financial self-service terminal, and if the authentication passes, performs the step of the mobile terminal transmitting the encrypted transaction information to the financial self-service terminal by using the short-range communication method.
  • the bank backend parses the obtained transaction message, and before the obtaining the transaction information, the method further includes:
  • the financial self-service terminal sends the transaction message to the bank background.
  • the sending, by the financial self-service terminal, the transaction message to the bank background includes:
  • the financial self-service terminal sends the transaction message to the back end of the bank through a network dedicated line;
  • the financial self-service terminal sends the transaction message to the bank background through the wireless network of the mobile terminal.
  • the method further includes:
  • the financial self-service terminal performs two-way authentication with the bank background, and if the authentication is passed, the step of the financial self-service terminal transmitting the transaction message to the bank background is executed.
  • the bank backend parses the obtained transaction message, and after obtaining the transaction information, the method further includes:
  • the bank determines whether the device status of the financial self-service terminal satisfies the preset condition, and if yes, performs the step of verifying the transaction information by the bank background, and if not, executing according to the preset rule.
  • the performing according to the preset rule specifically includes:
  • the bank queries the other financial self-service terminal in which the device status meets the preset condition in the transaction network where the financial self-service terminal is located, and if so, notifies the current user to go to the other financial self-service terminal to perform the transaction operation, and if not, Then the transaction failure message is returned.
  • the performing, by the financial self-service terminal, the transaction according to the transaction information specifically includes:
  • the bank background is converted into a transaction credential according to the transaction information and downloaded to the security medium of the mobile terminal, where the security medium includes a SIM card of the mobile terminal or an SE module of the NFC;
  • the financial self-service terminal acquires the transaction voucher in the security medium of the mobile terminal by using a short-range communication method
  • the financial self-service terminal executes the transaction according to the transaction voucher.
  • a method for processing a financial self-service system includes: the mobile terminal encrypts the acquired transaction information; and the mobile terminal sends the encrypted transaction information to the financial self-service terminal by using a short-range communication method; The financial self-service terminal decrypts the transaction information and reconstitutes the transaction message; the bank backend parses the obtained transaction message to obtain the transaction information; and the bank backend verifies the transaction information, if After the verification is passed, the financial self-service terminal executes the transaction according to the transaction information.
  • the mobile terminal sends the encrypted transaction information to the financial self-service terminal through the short-distance communication method.
  • the privacy of the short-distance communication method is high, it is not easy for the criminal to intercept or tamper with the transaction information. It has high security; in addition, it is not necessary to scan the QR code or input the verification code during the transaction, which is more convenient.
  • FIG. 1 is a flow chart of an embodiment of a method for processing a financial self-service system according to an embodiment of the present invention
  • FIG. 2 is a flow chart of another embodiment of a method for processing a financial self-service system according to an embodiment of the present invention
  • FIG. 3 is a schematic diagram showing the working principle of the processing method of the financial self-service system corresponding to FIG. 2;
  • FIG. 4 is a flowchart of another embodiment of a method for processing a financial self-service system according to an embodiment of the present invention
  • FIG. 5 is a schematic diagram showing the working principle of the processing method of the financial self-service system corresponding to FIG. 4.
  • the embodiment of the invention provides a processing method for a financial self-service system, which is used to solve the technical problem that the existing financial self-service system is inconvenient to operate and has potential security risks.
  • an embodiment of a method for processing a financial self-service system includes:
  • the mobile terminal encrypts the obtained transaction information.
  • the mobile terminal After obtaining the transaction information, the mobile terminal can encrypt the acquired transaction information.
  • the mobile terminal sends the encrypted transaction information to the financial self-service terminal by using a short-range communication method
  • the mobile terminal may send the encrypted transaction information to the financial self-service terminal by using short-range communication.
  • the financial self-service terminal decrypts the transaction information and reconstitutes the transaction message
  • the financial self-service terminal After the mobile terminal sends the encrypted transaction information to the financial self-service terminal through the short-range communication method, the financial self-service terminal can decrypt the transaction information and reconstitute the transaction message.
  • the bank backstage parses the obtained transaction message to obtain the transaction information
  • the bank background can parse the obtained transaction message to obtain the transaction information.
  • step 106 the bank background to verify the transaction information, if the verification is passed, step 106 is performed, if the verification fails, step 107 is performed;
  • step 106 After the transaction information is obtained in the background of the bank, the bank background can verify the transaction information. If the verification is passed, step 106 is performed. If the verification fails, step 107 is performed.
  • the financial self-service terminal executes the transaction according to the transaction information
  • the financial self-service terminal executes the transaction based on the transaction information.
  • a processing method of the financial self-service system includes: the mobile terminal encrypts the obtained transaction information; the mobile terminal sends the encrypted transaction information to the financial self-service terminal by using a short-range communication method; the financial self-service terminal Decrypting the transaction information and reconstituting the transaction message; the bank background parses the obtained transaction message to obtain the transaction information; the bank backends the transaction information, and if the verification passes, the financial self-service terminal The transaction is executed based on the transaction information.
  • the mobile terminal sends the encrypted transaction information to the financial self-service terminal through the short-distance communication method. Since the close-range communication method has high privacy, it is not easy for the criminal to intercept or tamper with the transaction information, so Higher security; in addition, there is no need to scan the QR code or Enter the verification code to make the operation more convenient.
  • FIG. 2 another embodiment of a method for processing a financial self-service system according to an embodiment of the present invention includes:
  • the mobile terminal acquires transaction information input by a user.
  • the user needs to input relevant transaction information on the mobile terminal, and the mobile terminal can acquire transaction information input by the user.
  • the above transaction information may include account information, transaction amount, transaction password, and the like.
  • the processing method of the financial self-service system may further include: the mobile terminal and the bank background perform two-way authentication, and after the authentication is passed, the mobile terminal may obtain the account information of the user from the bank background.
  • the mobile terminal implements mutual authentication with the banking backend through the transaction application thereon.
  • SSL Secure Socket Layer
  • encryption technology can also be used for mutual authentication.
  • the mobile terminal encrypts the obtained transaction information.
  • the mobile terminal After the mobile terminal acquires the transaction information input by the user, the mobile terminal may encrypt the acquired transaction information.
  • step 204 is performed. If the authentication fails, the failure information is returned.
  • the mobile terminal After the mobile terminal encrypts the obtained transaction information, the mobile terminal performs mutual authentication with the financial self-service terminal. If the authentication passes, step 204 is performed, and if the authentication fails, the failure information is returned. It can be understood that, in actual operation, the mobile terminal needs to perform mutual authentication with the financial self-service terminal to establish identity with each other. The mobile terminal needs to know which financial self-service terminal is currently in use. Trading, and the financial self-service terminal also needs to know which mobile terminal is currently trading with, and the two parties need to confirm each other whether they have the qualification for the transaction.
  • the financial self-service terminal may acquire the decryption key encrypted in step 202.
  • the decryption key may be saved on the financial self-service terminal by other means, such as provided by the bank backend, and is not specifically limited herein.
  • the mobile terminal sends the encrypted transaction information to the financial self-service terminal by using a short-range communication method
  • the short-range communication method includes NFC (Near Field Communication), Bluetooth, infrared, RFID (non-contact radio frequency identification), ultrasonic or photoelectric conversion communication. It can be understood that, due to the short communication distance of the short-distance communication method, the mobile terminal needs to operate within a close range of the financial self-service terminal, for example, the user carries the mobile terminal to the front of the automatic teller machine. This type of communication is also short because of the short communication distance, so the distance of transaction information transmission is short, and the probability of being intercepted by criminals is very small.
  • the financial self-service terminal decrypts the transaction information and reconstitutes the transaction message
  • the financial self-service terminal After the mobile terminal transmits the encrypted transaction information to the financial self-service terminal by the short-range communication method, the financial self-service terminal decrypts the transaction information and reconstructs the transaction message. At this time, the financial self-service terminal can also display the decrypted transaction information on the display screen for the user to confirm. Among them, the transaction password in the transaction information may not be displayed. The user can check the transaction information on the display screen, and then confirm that the financial self-service terminal continues to perform the operation, and the security is high.
  • the financial self-service terminal performs two-way authentication with the bank background. If the authentication is passed, step 207 is performed, and if the authentication fails, the failure information is returned.
  • the financial self-service terminal Before the financial self-service terminal sends the transaction message to the bank background, the financial self-service terminal performs two-way authentication with the bank background. If the authentication is passed, step 207 is performed, and if the authentication fails, the failure information is returned.
  • the financial self-service terminal sends the transaction message to the back end of the bank through a network dedicated line;
  • the financial self-service terminal After the financial self-service terminal performs two-way authentication with the bank background and passes, the financial self-service terminal sends the transaction message to the bank background through the network dedicated line.
  • the network dedicated line is a channel dedicated to the banking system provided by the network service provider, and is not open to the outside world, so the communication quality is reliable and the security is high.
  • the bank backstage parses the obtained transaction message to obtain the transaction information
  • the bank background can parse the obtained transaction message to obtain the transaction information.
  • the bank determines in the background whether the device status of the financial self-service terminal meets the preset condition, and if so, step 210 is performed, and if not, step 212 is performed;
  • the bank background can determine whether the device status of the financial self-service terminal meets the preset condition, and if yes, execute step 210, and if no, execute step 212.
  • the device status of the financial self-service terminal may include whether the device is running normally, the remaining extractable amount, and the like, and the preset condition may be that the device is operating normally, and the remaining extractable amount is greater than a set threshold.
  • the financial self-service terminal has the ability to conduct current transactions only when the device status of the financial self-service terminal satisfies the preset condition. If yes, the financial self-service terminal has the transaction capability, and step 210 is performed. If not, step 212 is performed.
  • step 211 The bank backends the transaction information, and if the verification passes, step 211 is performed, and if the verification fails, the failure information is returned;
  • the bank After obtaining the transaction information in the background of the bank, the bank backends the transaction information, and if the verification passes, step 211 is performed, and if the verification fails, the failure information is returned. It can be understood that the bank backends the transaction information, including verifying whether the transaction password in the transaction information is correct, whether the transaction amount in the transaction information is less than or equal to the available amount of the user account, and whether the user's account information is normal.
  • the financial self-service terminal executes the transaction according to the transaction information
  • the financial self-service terminal executes the transaction based on the transaction information.
  • the financial self-service terminal executing the transaction according to the transaction information may specifically include:
  • the bank background is converted into a transaction credential according to the transaction information and downloaded to the security medium of the mobile terminal, and the security medium includes a SIM card of the mobile terminal or an SE module of the NFC;
  • the financial self-service terminal acquires the transaction voucher in the security medium of the mobile terminal by using short-range communication
  • the financial self-service terminal executes the transaction according to the transaction voucher.
  • the transaction voucher described above may be an electronic cash converted from a user account amount and stored in a secure medium in the form of data.
  • the transaction can be reported to the bank in the background, the bank backstage completes the transaction and the transaction success result is returned to the mobile terminal for display. If the financial self-service terminal fails to execute the transaction, the transaction failure information is returned and reported to the bank back office.
  • step 213 is performed, and if not, the transaction failure information is returned;
  • the bank background may query whether there is another financial self-service terminal in the transaction network where the financial self-service terminal is located, and if yes, execute step 213, and if not, Then the transaction failure message is returned. It can be understood that there may be multiple financial self-service terminals in the transaction network.
  • the bank finds that the financial self-service terminal does not meet the preset conditions, it queries other financial self-service terminals of the transaction network, and there may be a preset. Another financial self-service terminal for the condition to continue the transaction.
  • the current user may be notified to go to the other financial self-service terminal to perform the transaction operation.
  • notify the user such as sending a notification message to the mobile terminal or displaying it on the current financial self-service terminal display.
  • the user can process the operation of inputting transaction information and viewing the account balance on the mobile terminal, and performing communication transactions with the financial self-service terminal through the short-distance communication method, thereby ensuring the security of the user's private information;
  • the user can use the mobile terminal to complete the transaction operation, does not need to carry the bank card, and the operation is simple and quick, which improves the convenience of the user to use the financial self-service terminal.
  • FIG. 2 For ease of understanding, according to the embodiment described in FIG. 2, a processing method of a financial self-service system in the embodiment of the present invention is described below in a practical application scenario, as shown in FIG. 3:
  • the user logs in to the mobile terminal cash transaction application.
  • the mobile terminal cash transaction application and the banking system perform two-way authentication (using the SSL security protocol), and the mobile terminal obtains the user account information from the banking system after the authentication is passed.
  • the user inputs transaction information such as transaction amount and transaction password on the mobile terminal cash transaction application, and encrypts the transaction information.
  • the user closes the mobile terminal to the close-range secure communication module of the financial self-service terminal.
  • the user's mobile terminal cash transaction application performs two-way authentication with the financial self-service terminal through the short-range secure communication module, and the encryption/decryption key is stored in the financial self-service terminal or in the bank back-office system. If the encryption/decryption key is stored in the bank back-end system, after the financial self-service terminal receives the authentication information sent by the mobile terminal, the authentication information needs to be sent to the bank background through the bank line for two-way authentication.
  • the mobile terminal sends the encrypted transaction information to the financial self-service terminal through the short-range secure communication module.
  • the financial self-service terminal decrypts the transaction information (for example, the ATM has a display screen to display the transaction information for the user to confirm, which can enhance security), and constitutes a transaction message.
  • the financial self-service terminal connects to the bank back-office system through the bank line to process the transaction.
  • the financial self-service terminal reports the transaction to the bank back-office system through the bank line, the bank completes the transaction and returns the transaction success result to the mobile terminal display; otherwise, the financial self-service terminal reports the transaction failure to the bank back-end system through the wireless network of the mobile terminal.
  • the bank backend s the error processing and returns the result of the transaction failure to the mobile terminal for display.
  • Another embodiment of a method for processing a financial self-service system in an embodiment includes:
  • the mobile terminal acquires transaction information input by a user.
  • the user needs to input relevant transaction information on the mobile terminal, and the mobile terminal can acquire transaction information input by the user.
  • the above transaction information may include account information, transaction amount, transaction password, and the like.
  • the processing method of the financial self-service system may further include: the mobile terminal and the bank background perform two-way authentication, and after the authentication is passed, the mobile terminal may obtain the account information of the user from the bank background.
  • the mobile terminal implements mutual authentication with the banking backend through the transaction application thereon.
  • SSL Secure Socket Layer
  • encryption technology can also be used for mutual authentication.
  • the mobile terminal encrypts the obtained transaction information.
  • the mobile terminal After the mobile terminal acquires the transaction information input by the user, the mobile terminal may encrypt the acquired transaction information.
  • the mobile terminal performs mutual authentication with the financial self-service terminal. If the authentication is passed, step 404 is performed. If the authentication fails, the failure information is returned.
  • the mobile terminal After the mobile terminal encrypts the obtained transaction information, the mobile terminal performs mutual authentication with the financial self-service terminal. If the authentication passes, step 404 is performed, and if the authentication fails, the failure information is returned. It can be understood that, in actual operation, the mobile terminal needs to perform mutual authentication with the financial self-service terminal to establish identity with each other. The mobile terminal needs to know which financial self-service terminal is currently trading with, and the financial self-service terminal also needs to know which mobile terminal is currently trading with, and the two parties need to mutually confirm whether the other party has the qualification for the transaction.
  • the financial self-service terminal may acquire the decryption key encrypted in step 402.
  • the decryption key may be saved on the financial self-service terminal by other means, such as provided by the bank backend, and is not specifically limited herein.
  • the mobile terminal sends the encrypted transaction information to the financial self-service terminal by using a short-distance communication method
  • the over-distance communication method sends the encrypted transaction information to the financial self-service terminal.
  • the short-range communication method includes NFC (Near Field Communication), Bluetooth, infrared, RFID (non-contact radio frequency identification), ultrasonic or photoelectric conversion communication. It can be understood that, due to the short communication distance of the short-distance communication method, the mobile terminal needs to operate within a close range of the financial self-service terminal, for example, the user carries the mobile terminal to the front of the automatic teller machine. This type of communication is also short because of the short communication distance, so the distance of transaction information transmission is short, and the probability of being intercepted by criminals is very small.
  • the financial self-service terminal decrypts the transaction information and reconstitutes the transaction message
  • the financial self-service terminal After the mobile terminal transmits the encrypted transaction information to the financial self-service terminal by the short-range communication method, the financial self-service terminal decrypts the transaction information and reconstructs the transaction message. At this time, the financial self-service terminal can also display the decrypted transaction information on the display screen for the user to confirm. Among them, the transaction password in the transaction information may not be displayed. The user can check the transaction information on the display screen, and then confirm that the financial self-service terminal continues to perform the operation, and the security is high.
  • the financial self-service terminal performs two-way authentication with the bank background. If the authentication is passed, step 407 is performed, and if the authentication fails, the failure information is returned.
  • the financial self-service terminal Before the financial self-service terminal sends the transaction message to the bank background, the financial self-service terminal performs two-way authentication with the bank background. If the authentication passes, step 407 is performed, and if the authentication fails, the failure information is returned. In the offline state of the financial self-service terminal, the financial self-service terminal can perform mutual authentication with the bank background through the wireless network of the mobile terminal.
  • the financial self-service terminal sends the transaction message to the back end of the bank through a wireless network of the mobile terminal.
  • the financial self-service terminal After the financial self-service terminal performs two-way authentication with the bank background and passes, the financial self-service terminal sends the transaction message to the bank background through the wireless network of the mobile terminal. Understandable Yes, under the offline state of the financial self-service terminal, the financial self-service terminal and the mobile terminal have a short-distance communication connection, and the mobile terminal communicates with the bank back-end communication through the wireless network, so the mobile terminal can be used as an intermediate medium for communication to realize the financial self-service terminal and the bank background. Communication connection.
  • the bank backstage parses the obtained transaction message to obtain the transaction information
  • the bank background can parse the obtained transaction message to obtain the transaction information.
  • step 410 the bank determines in the background whether the device status of the financial self-service terminal meets the preset condition, and if so, step 410 is performed, and if not, step 412 is performed;
  • the bank background can determine whether the device status of the financial self-service terminal meets the preset condition, and if yes, execute step 410, and if no, execute step 412.
  • the device status of the financial self-service terminal may include whether the device is running normally, the remaining extractable amount, and the like, and the preset condition may be that the device is operating normally, and the remaining extractable amount is greater than a set threshold.
  • the financial self-service terminal has the ability to conduct current transactions only when the device status of the financial self-service terminal satisfies the preset condition. If yes, the financial self-service terminal has the transaction capability, and step 410 is performed. If not, step 412 is performed.
  • step 411 The bank backends the transaction information, and if the verification passes, step 411 is performed, and if the verification fails, the failure information is returned;
  • the bank After obtaining the transaction information in the background of the bank, the bank backends the transaction information, and if the verification passes, step 411 is performed, and if the verification fails, the failure information is returned. It can be understood that the bank backends the transaction information, including verifying whether the transaction password in the transaction information is correct, whether the transaction amount in the transaction information is less than or equal to the available amount of the user account, and whether the user's account information is normal.
  • the financial self-service terminal executes the transaction according to the transaction information
  • the financial self-service terminal executes the transaction based on the transaction information.
  • the financial self-service terminal executing the transaction according to the transaction information may specifically include:
  • the bank background is converted into a transaction credential according to the transaction information and downloaded to the security medium of the mobile terminal, and the security medium includes a SIM card of the mobile terminal or an SE module of the NFC;
  • the financial self-service terminal acquires the transaction voucher in the security medium of the mobile terminal by using short-range communication
  • the financial self-service terminal executes the transaction according to the transaction voucher.
  • the transaction voucher described above may be an electronic cash converted from a user account amount and stored in a secure medium in the form of data.
  • the transaction can be reported to the bank in the background, the bank backstage completes the transaction and the transaction success result is returned to the mobile terminal for display. If the financial self-service terminal fails to execute the transaction, the transaction failure information is returned and reported to the bank back office.
  • step 412 The bank checks whether there is another financial self-service terminal whose device status meets the preset condition in the transaction network where the financial self-service terminal is located. If yes, step 413 is performed, and if not, the transaction failure information is returned;
  • the bank background may query whether there is another financial self-service terminal in the transaction network where the financial self-service terminal is located, and if yes, execute step 413, and if not, Then the transaction failure message is returned. It can be understood that there may be multiple financial self-service terminals in the transaction network.
  • the bank finds that the financial self-service terminal does not meet the preset conditions, it queries other financial self-service terminals of the transaction network, and there may be a preset. Another financial self-service terminal for the condition to continue the transaction.
  • the current user may be notified to go to the other financial self-service terminal to perform the transaction operation.
  • notify the user such as sending a notification message to the mobile terminal or displaying it on the current financial self-service terminal display.
  • the financial self-service terminal can be used offline, which saves the cost of the bank to place the network dedicated line.
  • FIG. 5 For ease of understanding, according to the embodiment described in FIG. 4, a processing method of a financial self-service system in the embodiment of the present invention is described below in an actual application scenario, as shown in FIG. 5:
  • the user logs in to the mobile terminal cash transaction application.
  • the mobile terminal cash transaction application and the banking system perform two-way authentication (using the SSL security protocol), and the mobile terminal obtains the user account information from the banking system after the authentication is passed.
  • the user inputs transaction information such as transaction amount and transaction password on the mobile terminal cash transaction application, and encrypts the transaction information.
  • the user closes the mobile terminal to the close-range secure communication module of the financial self-service terminal.
  • the user's mobile terminal cash transaction application performs two-way authentication with the financial self-service terminal through the short-range secure communication module, and the encryption and decryption key is stored in the financial self-service terminal.
  • the mobile terminal sends the encrypted transaction information to the financial self-service terminal through the short-range secure communication module.
  • the financial self-service terminal decrypts the transaction information ciphertext (for example, the ATM has a display screen to display the transaction information for the user to confirm, which can enhance security), and constitutes a transaction message.
  • the transaction information ciphertext for example, the ATM has a display screen to display the transaction information for the user to confirm, which can enhance security
  • the financial self-service terminal performs two-way authentication through the wireless network of the mobile terminal and the bank background.
  • the financial self-service terminal will exchange the message & device through the wireless network of the mobile terminal.
  • the status is sent to the bank back office system.
  • the bank back-office system determines the status of the device and verifies the transaction information (including the transaction password).
  • the bank back-end system returns the verification result to the financial self-service terminal through the wireless network of the mobile terminal.
  • the financial self-service terminal performs transaction processing.
  • the financial self-service terminal reports the transaction success to the bank back-end system through the wireless network of the mobile terminal, the bank completes the transaction accounting, and returns the transaction success result to the mobile terminal display; otherwise, the financial self-service terminal passes the wireless network of the mobile terminal.
  • the disclosed system, apparatus, and method may be implemented in other manners.
  • the device embodiments described above are merely illustrative.
  • the division of the unit is only a logical function division.
  • there may be another division manner for example, multiple units or components may be combined or Can be integrated into another system, or some features can be ignored or not executed.
  • the mutual coupling or direct coupling or communication connection shown or discussed may be an indirect coupling or communication connection through some interface, device or unit, and may be in an electrical, mechanical or other form.
  • the units described as separate components may or may not be physically separated, and the components displayed as units may or may not be physical units, that is, may be located in one place, or may be distributed to multiple network units. You can choose some or all of them according to actual needs.
  • the unit is to achieve the purpose of the solution of the embodiment.
  • each functional unit in each embodiment of the present invention may be integrated into one processing unit, or each unit may exist physically separately, or two or more units may be integrated into one unit.
  • the above integrated unit can be implemented in the form of hardware or in the form of a software functional unit.
  • the integrated unit if implemented in the form of a software functional unit and sold or used as a standalone product, may be stored in a computer readable storage medium.
  • the technical solution of the present invention which is essential or contributes to the prior art, or all or part of the technical solution, may be embodied in the form of a software product stored in a storage medium.
  • a number of instructions are included to cause a computer device (which may be a personal computer, server, or network device, etc.) to perform all or part of the steps of the methods described in various embodiments of the present invention.
  • the foregoing storage medium includes: a U disk, a mobile hard disk, a read-only memory (ROM), a random access memory (RAM), a magnetic disk, or an optical disk, and the like. .

Landscapes

  • Business, Economics & Management (AREA)
  • Accounting & Taxation (AREA)
  • Finance (AREA)
  • Engineering & Computer Science (AREA)
  • Development Economics (AREA)
  • Economics (AREA)
  • Marketing (AREA)
  • Strategic Management (AREA)
  • Technology Law (AREA)
  • Physics & Mathematics (AREA)
  • General Business, Economics & Management (AREA)
  • General Physics & Mathematics (AREA)
  • Theoretical Computer Science (AREA)
  • Financial Or Insurance-Related Operations Such As Payment And Settlement (AREA)

Abstract

本发明实施例公开了一种金融自助系统的处理方法,用于解决现有金融自助系统操作不便利、存在安全隐患的技术问题。本发明实施例中一种金融自助系统的处理方法,包括:移动终端对获取到的交易信息进行加密;所述移动终端通过近距离通讯方式将加密后的交易信息发送至金融自助终端;所述金融自助终端对所述交易信息进行解密,重组成交易报文;银行后台对获取到的所述交易报文进行解析,得到所述交易信息;所述银行后台对所述交易信息进行验证,若验证通过,则所述金融自助终端根据所述交易信息执行交易。

Description

一种金融自助系统的处理方法
本申请要求于2015年1月12日提交中国专利局、申请号为201510014731.6、发明名称为“一种金融自助系统的处理方法”的中国专利申请的优先权,其全部内容通过引用结合在本申请中。
技术领域
本发明涉及金融自助终端技术领域,尤其涉及一种金融自助系统的处理方法。
背景技术
当前的金融自助系统是由若干台金融自助终端(Automatic Teller Machine)通过网络专线与银行后台连接组成。在这样的金融自助系统中,金融自助终端一般作为公用设备安放在开放式环境中,当用户在金融自助终端上输入交易金额、交易密码等信息时容易被犯罪份子窥视,存在保密信息泄露的风险,安全性较差。
随着移动通信的快速发展,在金融自助系统中利用手机等移动终端进行金融交易的方式也陆续出现。手机具备唯一性、私密性以及随身携带的特点,利用手机实现金融自助终端交易的技术方案存在明显优势。目前市场上主要有手机预约取款和二维码取款两种方案,然而两种方案仍然存在以下不足:
一、操作不够便利:手机预约取款首先在手机上输入账号、交易金额、交易密码进行预约,然后银行向手机发送验证码,最后用户在金融自助终端上输入手机号、预约号和验证码完成交易;类似地,二维码取款需要在金融自助终 端屏幕上产生二维码,然后通过手机扫描二维码,在手机上输入交易账号、交易金额和交易密码,手机将二维码、交易账号、交易密码等交易信息发给银行后台验证,最后银行通过验证并通知金融自助终端处理交易。
二、安全性存在隐患:手机预约取款所使用的验证码和二维码取款所使用的二维码信息都容易被犯罪份子截获和篡改,犯罪份子可以利用这些信息在金融自助终端上窃取用户的财产。
发明内容
本发明实施例提供了一种金融自助系统的处理方法,能够解决现有金融自助系统操作不便利、存在安全隐患的技术问题。
本发明实施例提供的一种金融自助系统的处理方法,包括:
移动终端对获取到的交易信息进行加密;
所述移动终端通过近距离通讯方式将加密后的交易信息发送至金融自助终端;
所述金融自助终端对所述交易信息进行解密,重组成交易报文;
银行后台对获取到的所述交易报文进行解析,得到所述交易信息;
所述银行后台对所述交易信息进行验证,若验证通过,则所述金融自助终端根据所述交易信息执行交易。
可选地,所述移动终端对获取到的交易信息进行加密之前还包括:
所述移动终端获取用户输入的交易信息。
可选地,所述近距离通讯方式包括NFC、蓝牙、红外、RFID、超声波或光电转换的通讯方式。
可选地,所述移动终端通过近距离通讯方式将加密后的交易信息发送至金融自助终端之前还包括:
所述移动终端与所述金融自助终端进行双向认证,若认证通过,则执行所述移动终端通过近距离通讯方式将加密后的交易信息发送至金融自助终端的步骤。
可选地,所述银行后台对获取到的所述交易报文进行解析,得到所述交易信息之前还包括:
所述金融自助终端将所述交易报文发送至所述银行后台。
可选地,所述金融自助终端将所述交易报文发送至所述银行后台具体包括:
所述金融自助终端通过网络专线将所述交易报文发送至所述银行后台;
或,所述金融自助终端通过所述移动终端的无线网络将所述交易报文发送至所述银行后台。
可选地,所述金融自助终端将所述交易报文发送至所述银行后台之前还包括:
所述金融自助终端与所述银行后台进行双向认证,若认证通过,则执行所述金融自助终端将所述交易报文发送至所述银行后台的步骤。
可选地,所述银行后台对获取到的所述交易报文进行解析,得到所述交易信息之后还包括:
所述银行后台判断所述金融自助终端的设备状态是否满足预置条件,若是,则执行所述银行后台对所述交易信息进行验证的步骤,若否,则按照预置规则执行。
可选地,所述按照预置规则执行具体包括:
所述银行后台查询所述金融自助终端所在交易网点中是否存在设备状态满足预置条件的另一金融自助终端,若是,则通知当前用户前往所述另一金融自助终端执行交易操作,若否,则返回交易失败信息。
可选地,所述金融自助终端根据所述交易信息执行交易具体包括:
所述银行后台根据所述交易信息转换为交易凭证下载到所述移动终端的安全介质中,所述安全介质包括所述移动终端的SIM卡或NFC的SE模块;
所述金融自助终端通过近距离通讯方式获取所述移动终端的安全介质中的所述交易凭证;
所述金融自助终端根据所述交易凭证执行交易。
从以上技术方案可以看出,本发明实施例具有以下优点:
本发明实施例中,一种金融自助系统的处理方法包括:移动终端对获取到的交易信息进行加密;所述移动终端通过近距离通讯方式将加密后的交易信息发送至金融自助终端;所述金融自助终端对所述交易信息进行解密,重组成交易报文;银行后台对获取到的所述交易报文进行解析,得到所述交易信息;所述银行后台对所述交易信息进行验证,若验证通过,则所述金融自助终端根据所述交易信息执行交易。在本发明实施例中,移动终端通过近距离通讯方式将加密后的交易信息发送至金融自助终端,由于近距离通讯方式的私密性高,不容易被犯罪分子截获或篡改其中的交易信息,因此具备较高的安全性;另外,交易过程中无需扫描二维码或者输入验证码,操作更加便利。
附图说明
图1为本发明实施例中一种金融自助系统的处理方法一个实施例流程图;
图2为本发明实施例中一种金融自助系统的处理方法另一个实施例流程图;
图3为图2对应的金融自助系统的处理方法的工作原理示意图;
图4为本发明实施例中一种金融自助系统的处理方法另一个实施例流程图;
图5为图4对应的金融自助系统的处理方法的工作原理示意图。
具体实施方式
本发明实施例提供了一种金融自助系统的处理方法,用于解决现有金融自助系统操作不便利、存在安全隐患的技术问题。
为使得本发明的发明目的、特征、优点能够更加的明显和易懂,下面将结合本发明实施例中的附图,对本发明实施例中的技术方案进行清楚、完整地描述,显然,下面所描述的实施例仅仅是本发明一部分实施例,而非全部的实施例。基于本发明中的实施例,本领域普通技术人员在没有做出创造性劳动前提下所获得的所有其它实施例,都属于本发明保护的范围。
请参阅图1,本发明实施例中一种金融自助系统的处理方法一个实施例包括:
101、移动终端对获取到的交易信息进行加密;
在获取到交易信息之后,移动终端可以对获取到的交易信息进行加密。
102、该移动终端通过近距离通讯方式将加密后的交易信息发送至金融自助终端;
在移动终端对获取到的交易信息进行加密之后,该移动终端可以通过近距离通讯方式将加密后的交易信息发送至金融自助终端。
103、该金融自助终端对该交易信息进行解密,重组成交易报文;
在该移动终端通过近距离通讯方式将加密后的交易信息发送至金融自助终端之后,该金融自助终端可以对该交易信息进行解密,并重组成交易报文。
104、银行后台对获取到的该交易报文进行解析,得到该交易信息;
在金融自助终端得到该交易报文之后,银行后台可以对获取到的该交易报文进行解析,得到该交易信息。
105、该银行后台对该交易信息进行验证,若验证通过,则执行步骤106,若验证不通过,则执行步骤107;
在该银行后台获取到该交易信息后,该银行后台可以对该交易信息进行验证,若验证通过,则执行步骤106,若验证不通过,则执行步骤107。
106、该金融自助终端根据该交易信息执行交易;
若验证通过,则该金融自助终端根据该交易信息执行交易。
107、按正常流程操作。
若验证不通过,则按正常流程操作。
本实施例中,一种金融自助系统的处理方法包括:移动终端对获取到的交易信息进行加密;该移动终端通过近距离通讯方式将加密后的交易信息发送至金融自助终端;该金融自助终端对该交易信息进行解密,重组成交易报文;银行后台对获取到的该交易报文进行解析,得到该交易信息;该银行后台对该交易信息进行验证,若验证通过,则该金融自助终端根据该交易信息执行交易。在本实施例中,移动终端通过近距离通讯方式将加密后的交易信息发送至金融自助终端,由于近距离通讯方式的私密性高,不容易被犯罪分子截获或篡改其中的交易信息,因此具备较高的安全性;另外,交易过程中无需扫描二维码或 者输入验证码,操作更加便利。
为便于理解,下面对本发明实施例中的一种金融自助系统的处理方法进行详细描述,请参阅图2,本发明实施例中一种金融自助系统的处理方法另一个实施例包括:
201、该移动终端获取用户输入的交易信息;
首先,用户需要在移动终端上输入相关的交易信息,该移动终端可以获取用户输入的交易信息。上述交易信息可以包括账户信息、交易金额、交易密码等。
需要说明的是,在这之前,该金融自助系统的处理方法还可以包括:移动终端与银行后台进行双向认证,认证通过后移动终端可以从银行后台中获取到用户的账户信息。可选地,该移动终端通过其上的交易应用程序与银行后台实现双向认证。另外,为提供安全性,在进行双向认证时还可以采用SSL(Security Socket Layer)加密技术。
202、移动终端对获取到的交易信息进行加密;
在该移动终端获取用户输入的交易信息之后,移动终端可以对获取到的交易信息进行加密。
203、该移动终端与该金融自助终端进行双向认证,若认证通过,则执行步骤204,若认证不通过,则返回失败信息;
在移动终端对获取到的交易信息进行加密之后,该移动终端与该金融自助终端进行双向认证,若认证通过,则执行步骤204,若认证不通过,则返回失败信息。可以理解的是,在实际操作中,移动终端需要与金融自助终端进行双向认证,从而相互确立身份。移动终端需要知道当前与哪台金融自助终端进行 交易,而金融自助终端也需要知道当前与哪台移动终端进行交易,双方之间还需要互相确认对方是否具备交易的资格等。
需要说明的是,在进行双向认证的同时,金融自助终端可以获取到步骤202加密的解密密钥。可选地,该解密密钥也可以通过其他方式保存在金融自助终端上,比如由银行后台提供,此处不做具体限定。
204、该移动终端通过近距离通讯方式将加密后的交易信息发送至金融自助终端;
在该移动终端与该金融自助终端进行双向认证并通过之后,该移动终端通过近距离通讯方式将加密后的交易信息发送至金融自助终端。该近距离通讯方式包括NFC(Near Field Communication)、蓝牙、红外、RFID(非接触式射频识别)、超声波或光电转换的通讯方式。可以理解的是,由于近距离通讯方式的通讯距离较短,移动终端需要在金融自助终端的近距离范围内进行操作,比如用户携带移动终端来到自动柜员机的面前操作等。这种通讯方式也由于通讯距离短,从而交易信息传输的距离短,被犯罪分子截获的可能性很小。
205、该金融自助终端对该交易信息进行解密,重组成交易报文;
在该移动终端通过近距离通讯方式将加密后的交易信息发送至金融自助终端之后,该金融自助终端对该交易信息进行解密,重组成交易报文。此时,金融自助终端还可以将解密出来的交易信息在显示屏上显示出来,以供用户进行确认。其中,交易信息中的交易密码可以不显示。用户可以在显示屏上核对交易信息,核对无误后再确认该金融自助终端继续执行操作,安全性高。
206、该金融自助终端与该银行后台进行双向认证,若认证通过,则执行步骤207,若认证不通过,则返回失败信息;
在金融自助终端向银行后台发送交易报文之前,该金融自助终端与该银行后台进行双向认证,若认证通过,则执行步骤207,若认证不通过,则返回失败信息。
207、该金融自助终端通过网络专线将该交易报文发送至该银行后台;
在该金融自助终端与该银行后台进行双向认证并通过之后,该金融自助终端通过网络专线将该交易报文发送至该银行后台。可以理解的是,金融自助终端在联网时,是通过网络专线与银行后台实现通信连接的。该网络专线是网络服务提供商提供给银行系统专用的信道,不对外开放,因此通信质量可靠,安全性高。
208、银行后台对获取到的该交易报文进行解析,得到该交易信息;
在该金融自助终端通过网络专线将该交易报文发送至该银行后台之后,银行后台可以对获取到的该交易报文进行解析,得到该交易信息。
209、该银行后台判断该金融自助终端的设备状态是否满足预置条件,若是,则执行步骤210,若否,则执行步骤212;
该银行后台可以判断该金融自助终端的设备状态是否满足预置条件,若是,则执行步骤210,若否,则执行步骤212。金融自助终端的设备状态可以包括设备是否正常运行、剩余的可提取金额等,则该预置条件可以为设备运行正常、剩余的可提取金额大于设定阈值等。只有当该金融自助终端的设备状态满足预置条件,该金融自助终端才具备进行当前交易的能力。若满足,则说明该金融自助终端具备交易能力,执行步骤210,若不满足,则执行步骤212。
210、该银行后台对该交易信息进行验证,若验证通过,则执行步骤211,若验证不通过,则返回失败信息;
在银行后台获取到该交易信息之后,该银行后台对该交易信息进行验证,若验证通过,则执行步骤211,若验证不通过,则返回失败信息。可以理解的是,该银行后台对交易信息进行验证,包括验证交易信息中的交易密码是否正确、交易信息中的交易金额是否小于或等于用户账户的可用金额、用户的账户信息是否正常等。
211、该金融自助终端根据该交易信息执行交易;
在该银行后台对该交易信息进行验证并验证通过之后,该金融自助终端根据该交易信息执行交易。
需要说明的是,该金融自助终端根据该交易信息执行交易具体可以包括:
1)该银行后台根据该交易信息转换为交易凭证下载到该移动终端的安全介质中,该安全介质包括该移动终端的SIM卡或NFC的SE模块;
2)该金融自助终端通过近距离通讯方式获取该移动终端的安全介质中的该交易凭证;
3)该金融自助终端根据该交易凭证执行交易。
上述的交易凭证可以是用户账户金额转换而成的电子现金,以数据的形式存储在安全介质中。
需要说明的是,当金融自助终端执行交易成功后,还可以向银行后台上报交易成功,银行后台完成交易入账并将交易成功结果返回给移动终端显示。若金融自助终端执行交易失败,则返回交易失败信息,并上报银行后台。
212、该银行后台查询该金融自助终端所在交易网点中是否存在设备状态满足预置条件的另一金融自助终端,若是,则执行步骤213,若否,则返回交易失败信息;
当该金融自助终端不满足预置条件时,该银行后台可以查询该金融自助终端所在交易网点中是否存在设备状态满足预置条件的另一金融自助终端,若是,则执行步骤213,若否,则返回交易失败信息。可以理解的是,该交易网点中可以存在多台金融自助终端,当银行后台发现这台金融自助终端不满足预置条件时,则查询该交易网点的其他金融自助终端,其中可能存在满足预置条件的另一金融自助终端,从而继续进行交易。
213、通知当前用户前往该另一金融自助终端执行交易操作。
当该银行后台查询得知该金融自助终端所在交易网点中存在设备状态满足预置条件的另一金融自助终端时,可以通知当前用户前往该另一金融自助终端执行交易操作。此处通知用户的方式可以有多种,比如将通知消息发送至移动终端,或显示在当前的金融自助终端显示屏上。
在本实施例中,用户可以在移动终端上处理交易信息的输入、账户余额的查看等操作,通过近距离通讯方式与金融自助终端进行通信交易,有利于保证用户私密信息的安全性;另,用户能使用移动终端完成交易操作,不需要携带银行卡,操作简单快捷,提升了用户使用金融自助终端的便利性。
为便于理解,根据图2所描述的实施例,下面以一个实际应用场景对本发明实施例中的一种金融自助系统的处理方法进行描述,请参阅图3:
1、用户登陆移动终端现金交易应用程序。
2、移动终端现金交易应用程序与银行系统进行双向认证(采用SSL安全协议),认证通过后移动终端从银行系统获取用户账户信息。
3、用户在移动终端现金交易应用程序上输入交易金额、交易密码等交易信息,并对交易信息进行加密。
4、用户将移动终端靠近金融自助终端的近距离安全通讯模块。
5、用户的移动终端现金交易应用程序通过近距离安全通讯模块与金融自助终端进行双向认证,加解密密钥保存在金融自助终端内或银行后台系统内。若加解密密钥保存在银行后台系统,金融自助终端接收到移动终端发来的认证信息后,需要将认证信息通过银行专线发送到银行后台进行双向认证。
6、认证通过后移动终端通过近距离安全通讯模块向金融自助终端发送加密的交易信息。
7、金融自助终端对交易信息进行解密,(如ATM有显示屏可显示交易信息让用户确认,这样可以增强安全性),组成交易报文。
8、金融自助终端通过银行专线连接银行后台系统处理交易。
9、金融自助终端通过银行专线向银行后台系统上报交易成功,银行完成交易入账,并将交易成功结果返回给移动终端显示;否则,金融自助终端通过移动终端的无线网络向银行后台系统上报交易失败,银行后台完成差错处理,并将交易失败结果返回给移动终端显示。
上面主要描述在金融自助终端联网情况下的金融自助系统的处理方法,下面将在金融自助终端脱机的情况下对一种金融自助系统的处理方法进行详细的描述,请参阅图4,本发明实施例中一种金融自助系统的处理方法另一个实施例包括:
401、该移动终端获取用户输入的交易信息;
首先,用户需要在移动终端上输入相关的交易信息,该移动终端可以获取用户输入的交易信息。上述交易信息可以包括账户信息、交易金额、交易密码等。
需要说明的是,在这之前,该金融自助系统的处理方法还可以包括:移动终端与银行后台进行双向认证,认证通过后移动终端可以从银行后台中获取到用户的账户信息。可选地,该移动终端通过其上的交易应用程序与银行后台实现双向认证。另外,为提供安全性,在进行双向认证时还可以采用SSL(Security Socket Layer)加密技术。
402、移动终端对获取到的交易信息进行加密;
在该移动终端获取用户输入的交易信息之后,移动终端可以对获取到的交易信息进行加密。
403、该移动终端与该金融自助终端进行双向认证,若认证通过,则执行步骤404,若认证不通过,则返回失败信息;
在移动终端对获取到的交易信息进行加密之后,该移动终端与该金融自助终端进行双向认证,若认证通过,则执行步骤404,若认证不通过,则返回失败信息。可以理解的是,在实际操作中,移动终端需要与金融自助终端进行双向认证,从而相互确立身份。移动终端需要知道当前与哪台金融自助终端进行交易,而金融自助终端也需要知道当前与哪台移动终端进行交易,双方之间还需要互相确认对方是否具备交易的资格等。
需要说明的是,在进行双向认证的同时,金融自助终端可以获取到步骤402加密的解密密钥。可选地,该解密密钥也可以通过其他方式保存在金融自助终端上,比如由银行后台提供,此处不做具体限定。
404、该移动终端通过近距离通讯方式将加密后的交易信息发送至金融自助终端;
在该移动终端与该金融自助终端进行双向认证并通过之后,该移动终端通 过近距离通讯方式将加密后的交易信息发送至金融自助终端。该近距离通讯方式包括NFC(Near Field Communication)、蓝牙、红外、RFID(非接触式射频识别)、超声波或光电转换的通讯方式。可以理解的是,由于近距离通讯方式的通讯距离较短,移动终端需要在金融自助终端的近距离范围内进行操作,比如用户携带移动终端来到自动柜员机的面前操作等。这种通讯方式也由于通讯距离短,从而交易信息传输的距离短,被犯罪分子截获的可能性很小。
405、该金融自助终端对该交易信息进行解密,重组成交易报文;
在该移动终端通过近距离通讯方式将加密后的交易信息发送至金融自助终端之后,该金融自助终端对该交易信息进行解密,重组成交易报文。此时,金融自助终端还可以将解密出来的交易信息在显示屏上显示出来,以供用户进行确认。其中,交易信息中的交易密码可以不显示。用户可以在显示屏上核对交易信息,核对无误后再确认该金融自助终端继续执行操作,安全性高。
406、该金融自助终端与该银行后台进行双向认证,若认证通过,则执行步骤407,若认证不通过,则返回失败信息;
在金融自助终端向银行后台发送交易报文之前,该金融自助终端与该银行后台进行双向认证,若认证通过,则执行步骤407,若认证不通过,则返回失败信息。在金融自助终端脱机状态下,该金融自助终端可以通过移动终端的无线网络与银行后台进行双向认证。
407、该金融自助终端通过该移动终端的无线网络将该交易报文发送至该银行后台;
在该金融自助终端与该银行后台进行双向认证并通过之后,该金融自助终端通过该移动终端的无线网络将该交易报文发送至该银行后台。可以理解的 是,金融自助终端脱机状态下,由于金融自助终端与移动终端近距离通讯连接,移动终端通过无线网络与银行后台通信连接,因此移动终端可以作为通信的中间媒介,实现金融自助终端与银行后台的通信连接。
408、银行后台对获取到的该交易报文进行解析,得到该交易信息;
在该金融自助终端通过网络专线将该交易报文发送至该银行后台之后,银行后台可以对获取到的该交易报文进行解析,得到该交易信息。
409、该银行后台判断该金融自助终端的设备状态是否满足预置条件,若是,则执行步骤410,若否,则执行步骤412;
该银行后台可以判断该金融自助终端的设备状态是否满足预置条件,若是,则执行步骤410,若否,则执行步骤412。金融自助终端的设备状态可以包括设备是否正常运行、剩余的可提取金额等,则该预置条件可以为设备运行正常、剩余的可提取金额大于设定阈值等。只有当该金融自助终端的设备状态满足预置条件,该金融自助终端才具备进行当前交易的能力。若满足,则说明该金融自助终端具备交易能力,执行步骤410,若不满足,则执行步骤412。
410、该银行后台对该交易信息进行验证,若验证通过,则执行步骤411,若验证不通过,则返回失败信息;
在银行后台获取到该交易信息之后,该银行后台对该交易信息进行验证,若验证通过,则执行步骤411,若验证不通过,则返回失败信息。可以理解的是,该银行后台对交易信息进行验证,包括验证交易信息中的交易密码是否正确、交易信息中的交易金额是否小于或等于用户账户的可用金额、用户的账户信息是否正常等。
411、该金融自助终端根据该交易信息执行交易;
在该银行后台对该交易信息进行验证并验证通过之后,该金融自助终端根据该交易信息执行交易。
需要说明的是,该金融自助终端根据该交易信息执行交易具体可以包括:
1)该银行后台根据该交易信息转换为交易凭证下载到该移动终端的安全介质中,该安全介质包括该移动终端的SIM卡或NFC的SE模块;
2)该金融自助终端通过近距离通讯方式获取该移动终端的安全介质中的该交易凭证;
3)该金融自助终端根据该交易凭证执行交易。
上述的交易凭证可以是用户账户金额转换而成的电子现金,以数据的形式存储在安全介质中。
需要说明的是,当金融自助终端执行交易成功后,还可以向银行后台上报交易成功,银行后台完成交易入账并将交易成功结果返回给移动终端显示。若金融自助终端执行交易失败,则返回交易失败信息,并上报银行后台。
412、该银行后台查询该金融自助终端所在交易网点中是否存在设备状态满足预置条件的另一金融自助终端,若是,则执行步骤413,若否,则返回交易失败信息;
当该金融自助终端不满足预置条件时,该银行后台可以查询该金融自助终端所在交易网点中是否存在设备状态满足预置条件的另一金融自助终端,若是,则执行步骤413,若否,则返回交易失败信息。可以理解的是,该交易网点中可以存在多台金融自助终端,当银行后台发现这台金融自助终端不满足预置条件时,则查询该交易网点的其他金融自助终端,其中可能存在满足预置条件的另一金融自助终端,从而继续进行交易。
413、通知当前用户前往该另一金融自助终端执行交易操作。
当该银行后台查询得知该金融自助终端所在交易网点中存在设备状态满足预置条件的另一金融自助终端时,可以通知当前用户前往该另一金融自助终端执行交易操作。此处通知用户的方式可以有多种,比如将通知消息发送至移动终端,或显示在当前的金融自助终端显示屏上。
在本实施例中,金融自助终端可脱机使用,节省银行安放网络专线的成本。
为便于理解,根据图4所描述的实施例,下面以一个实际应用场景对本发明实施例中的一种金融自助系统的处理方法进行描述,请参阅图5:
1、用户登陆移动终端现金交易应用程序。
2、移动终端现金交易应用程序与银行系统进行双向认证(采用SSL安全协议),认证通过后移动终端从银行系统获取用户账户信息。
3、用户在移动终端现金交易应用程序上输入交易金额、交易密码等交易信息,并对交易信息进行加密。
4、用户将移动终端靠近金融自助终端的近距离安全通讯模块。
5、用户的移动终端现金交易应用程序通过近距离安全通讯模块与金融自助终端进行双向认证,加解密密钥保存在金融自助终端内。
6、认证通过后移动终端通过近距离安全通讯模块向金融自助终端发送经过加密的交易信息。
7、金融自助终端对交易信息密文进行解密,(如ATM有显示屏可显示交易信息让用户确认,这样可以增强安全性),组成交易报文。
8、金融自助终端通过移动终端的无线网络与银行后台进行双向认证。
9、认证通过后金融自助终端通过移动终端的无线网络将交易报文&设备 状态发给银行后台系统。
10、银行后台系统判断设备状态,验证交易信息(含交易密码)。
11、银行后台系统通过移动终端的无线网络将验证结果返回金融自助终端。
12、金融自助终端执行交易处理。
13、如执行成功,金融自助终端通过移动终端的无线网络向银行后台系统上报交易成功,银行完成交易入账,并将交易成功结果返回给移动终端显示;否则,金融自助终端通过移动终端的无线网络向银行后台系统上报交易失败,银行后台完成差错处理,并将交易失败结果返回给移动终端显示。
所属领域的技术人员可以清楚地了解到,为描述的方便和简洁,上述描述的系统,装置和单元的具体工作过程,可以参考前述方法实施例中的对应过程,在此不再赘述。
在本申请所提供的几个实施例中,应该理解到,所揭露的系统,装置和方法,可以通过其它的方式实现。例如,以上所描述的装置实施例仅仅是示意性的,例如,所述单元的划分,仅仅为一种逻辑功能划分,实际实现时可以有另外的划分方式,例如多个单元或组件可以结合或者可以集成到另一个系统,或一些特征可以忽略,或不执行。另一点,所显示或讨论的相互之间的耦合或直接耦合或通信连接可以是通过一些接口,装置或单元的间接耦合或通信连接,可以是电性,机械或其它的形式。
所述作为分离部件说明的单元可以是或者也可以不是物理上分开的,作为单元显示的部件可以是或者也可以不是物理单元,即可以位于一个地方,或者也可以分布到多个网络单元上。可以根据实际的需要选择其中的部分或者全部 单元来实现本实施例方案的目的。
另外,在本发明各个实施例中的各功能单元可以集成在一个处理单元中,也可以是各个单元单独物理存在,也可以两个或两个以上单元集成在一个单元中。上述集成的单元既可以采用硬件的形式实现,也可以采用软件功能单元的形式实现。
所述集成的单元如果以软件功能单元的形式实现并作为独立的产品销售或使用时,可以存储在一个计算机可读取存储介质中。基于这样的理解,本发明的技术方案本质上或者说对现有技术做出贡献的部分或者该技术方案的全部或部分可以以软件产品的形式体现出来,该计算机软件产品存储在一个存储介质中,包括若干指令用以使得一台计算机设备(可以是个人计算机,服务器,或者网络设备等)执行本发明各个实施例所述方法的全部或部分步骤。而前述的存储介质包括:U盘、移动硬盘、只读存储器(ROM,Read-Only Memory)、随机存取存储器(RAM,Random Access Memory)、磁碟或者光盘等各种可以存储程序代码的介质。
以上所述,以上实施例仅用以说明本发明的技术方案,而非对其限制;尽管参照前述实施例对本发明进行了详细的说明,本领域的普通技术人员应当理解:其依然可以对前述各实施例所记载的技术方案进行修改,或者对其中部分技术特征进行等同替换;而这些修改或者替换,并不使相应技术方案的本质脱离本发明各实施例技术方案的精神和范围。

Claims (10)

  1. 一种金融自助系统的处理方法,其特征在于,包括:
    移动终端对获取到的交易信息进行加密;
    所述移动终端通过近距离通讯方式将加密后的交易信息发送至金融自助终端;
    所述金融自助终端对所述交易信息进行解密,重组成交易报文;
    银行后台对获取到的所述交易报文进行解析,得到所述交易信息;
    所述银行后台对所述交易信息进行验证,若验证通过,则所述金融自助终端根据所述交易信息执行交易。
  2. 根据权利要求1所述的方法,其特征在于,所述移动终端对获取到的交易信息进行加密之前还包括:
    所述移动终端获取用户输入的交易信息。
  3. 根据权利要求1所述的方法,其特征在于,所述近距离通讯方式包括NFC、蓝牙、红外、RFID、超声波或光电转换的通讯方式。
  4. 根据权利要求1所述的方法,其特征在于,所述移动终端通过近距离通讯方式将加密后的交易信息发送至金融自助终端之前还包括:
    所述移动终端与所述金融自助终端进行双向认证,若认证通过,则执行所述移动终端通过近距离通讯方式将加密后的交易信息发送至金融自助终端的步骤。
  5. 根据权利要求1所述的方法,其特征在于,所述银行后台对获取到的所述交易报文进行解析,得到所述交易信息之前还包括:
    所述金融自助终端将所述交易报文发送至所述银行后台。
  6. 根据权利要求5所述的方法,其特征在于,所述金融自助终端将所述交易报文发送至所述银行后台具体包括:
    所述金融自助终端通过网络专线将所述交易报文发送至所述银行后台;
    或,所述金融自助终端通过所述移动终端的无线网络将所述交易报文发送至所述银行后台。
  7. 根据权利要求5所述的方法,其特征在于,所述金融自助终端将所述交易报文发送至所述银行后台之前还包括:
    所述金融自助终端与所述银行后台进行双向认证,若认证通过,则执行所述金融自助终端将所述交易报文发送至所述银行后台的步骤。
  8. 根据权利要求1所述的方法,其特征在于,所述银行后台对获取到的所述交易报文进行解析,得到所述交易信息之后还包括:
    所述银行后台判断所述金融自助终端的设备状态是否满足预置条件,若是,则执行所述银行后台对所述交易信息进行验证的步骤,若否,则按照预置规则执行。
  9. 根据权利要求8所述的方法,其特征在于,所述按照预置规则执行具体包括:
    所述银行后台查询所述金融自助终端所在交易网点中是否存在设备状态满足预置条件的另一金融自助终端,若是,则通知当前用户前往所述另一金融自助终端执行交易操作,若否,则返回交易失败信息。
  10. 根据权利要求1至9中任一项所述的方法,其特征在于,所述金融自助终端根据所述交易信息执行交易具体包括:
    所述银行后台根据所述交易信息转换为交易凭证下载到所述移动终端的 安全介质中,所述安全介质包括所述移动终端的SIM卡或NFC的SE模块;
    所述金融自助终端通过近距离通讯方式获取所述移动终端的安全介质中的所述交易凭证;
    所述金融自助终端根据所述交易凭证执行交易。
PCT/CN2015/085189 2015-01-12 2015-07-27 一种金融自助系统的处理方法 WO2016112675A1 (zh)

Applications Claiming Priority (2)

Application Number Priority Date Filing Date Title
CN201510014731.6 2015-01-12
CN201510014731.6A CN104537562A (zh) 2015-01-12 2015-01-12 一种金融自助系统的处理方法

Publications (1)

Publication Number Publication Date
WO2016112675A1 true WO2016112675A1 (zh) 2016-07-21

Family

ID=52853081

Family Applications (1)

Application Number Title Priority Date Filing Date
PCT/CN2015/085189 WO2016112675A1 (zh) 2015-01-12 2015-07-27 一种金融自助系统的处理方法

Country Status (2)

Country Link
CN (1) CN104537562A (zh)
WO (1) WO2016112675A1 (zh)

Cited By (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN114785875A (zh) * 2022-03-29 2022-07-22 中银金融科技有限公司 一种报文处理方法及系统
CN115131922A (zh) * 2021-03-25 2022-09-30 深圳怡化电脑股份有限公司 受理终端设备及其与银行系统的交易方法和交易装置

Families Citing this family (10)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN104537562A (zh) * 2015-01-12 2015-04-22 广州广电运通金融电子股份有限公司 一种金融自助系统的处理方法
CA2995904C (en) * 2015-12-15 2022-01-04 10353744 Canada Ltd. Method, apparatus, and system for transmitting credit certificate file for online shopping
CN105654377B (zh) * 2015-12-30 2020-01-17 中国建设银行股份有限公司 无卡取款方法、相关装置及系统
CN105869269B (zh) * 2016-03-25 2019-02-01 深圳怡化电脑股份有限公司 一种验证出钞的方法及装置
CN105959259B (zh) * 2016-04-20 2019-04-02 宿州学院 金融自助设备的通信系统
CN106375938A (zh) * 2016-08-29 2017-02-01 广州御银自动柜员机科技有限公司 一种用于stm机的近距离无线通信装置
CN106779662A (zh) * 2016-11-18 2017-05-31 深圳怡化电脑股份有限公司 一种金融业务的处理方法及金融终端
CN107481445A (zh) * 2017-06-29 2017-12-15 台山市金讯互联网络科技有限公司 一种无卡取款的方法
CN111968298A (zh) * 2020-08-18 2020-11-20 中国银行股份有限公司 纪念币兑换处理方法及装置
CN112258750B (zh) * 2020-09-18 2022-12-30 爱恩希(上海)医院管理有限公司 一种用于医院财务管理的换票系统及其工作方法

Citations (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US7110986B1 (en) * 2001-04-23 2006-09-19 Diebold, Incorporated Automated banking machine system and method
CN101561953A (zh) * 2009-05-26 2009-10-21 中山大学 一种安全的atm系统及其运行方法
CN104021469A (zh) * 2014-06-13 2014-09-03 捷德(中国)信息科技有限公司 进行支付交易的方法、设备以及系统
CN203858633U (zh) * 2013-12-24 2014-10-01 北京握奇智能科技有限公司 一种数据认证设备
CN104537562A (zh) * 2015-01-12 2015-04-22 广州广电运通金融电子股份有限公司 一种金融自助系统的处理方法

Family Cites Families (7)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
KR100531075B1 (ko) * 2002-04-29 2005-11-28 스마텍(주) 대금결재 시스템
US20110238573A1 (en) * 2010-03-25 2011-09-29 Computer Associates Think, Inc. Cardless atm transaction method and system
CN101866518A (zh) * 2010-06-30 2010-10-20 宇龙计算机通信科技(深圳)有限公司 一种基于取款系统的现金提取方法、移动终端及系统
KR20120059475A (ko) * 2010-07-22 2012-06-08 류창화 이동통신망을 이용한 금융 거래 시스템의 모바일 단말
CN103871159A (zh) * 2012-12-11 2014-06-18 中国银联股份有限公司 基于二维码的取款系统以及基于二维码的取款方法
CN103198400B (zh) * 2013-03-04 2016-04-20 江苏怡丰通信设备有限公司 一种蓝牙无线pos终端金融支付系统及其支付方法
CN104123793B (zh) * 2013-04-28 2017-02-08 中国银联股份有限公司 基于nfc功能的取款系统及其取款方法以及取款机

Patent Citations (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US7110986B1 (en) * 2001-04-23 2006-09-19 Diebold, Incorporated Automated banking machine system and method
CN101561953A (zh) * 2009-05-26 2009-10-21 中山大学 一种安全的atm系统及其运行方法
CN203858633U (zh) * 2013-12-24 2014-10-01 北京握奇智能科技有限公司 一种数据认证设备
CN104021469A (zh) * 2014-06-13 2014-09-03 捷德(中国)信息科技有限公司 进行支付交易的方法、设备以及系统
CN104537562A (zh) * 2015-01-12 2015-04-22 广州广电运通金融电子股份有限公司 一种金融自助系统的处理方法

Cited By (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN115131922A (zh) * 2021-03-25 2022-09-30 深圳怡化电脑股份有限公司 受理终端设备及其与银行系统的交易方法和交易装置
CN114785875A (zh) * 2022-03-29 2022-07-22 中银金融科技有限公司 一种报文处理方法及系统
CN114785875B (zh) * 2022-03-29 2024-02-23 中银金融科技有限公司 一种报文处理方法及系统

Also Published As

Publication number Publication date
CN104537562A (zh) 2015-04-22

Similar Documents

Publication Publication Date Title
WO2016112675A1 (zh) 一种金融自助系统的处理方法
CA2875503C (en) Enterprise triggered 2chk association activation
US9444809B2 (en) Secure and efficient authentication using plug-in hardware compatible with desktops, laptops and/or smart mobile communication devices such as iPhones™
CA2875563C (en) Enchanced 2chk authentication security with query transactions
WO2015161699A1 (zh) 数据安全交互方法和系统
EP1710980A2 (en) Authentication services using mobile device
US10404475B2 (en) Method and system for establishing a secure communication tunnel
US10102402B2 (en) Mobile device-based keypad for enhanced security
JP2013514556A (ja) 安全に取引を処理するための方法及びシステム
WO2017190633A1 (zh) 验证金融卡用户身份可靠性的方法及装置
WO2014201907A1 (zh) 电子签名方法及系统
US20140079219A1 (en) System and a method enabling secure transmission of sms
CN108401494B (zh) 一种传输数据的方法及系统
US20120284787A1 (en) Personal Secured Access Devices
KR101348079B1 (ko) 휴대단말을 이용한 전자서명 시스템
KR100792163B1 (ko) 통신망을 이용한 온라인 금융거래 인증시스템과 이를 위한사용자 단말기
CN103514540A (zh) 一种优盾业务实现方法及系统
CN108352990B (zh) 一种传输数据的方法及系统
CN107292611B (zh) 一种交易方法和系统
US11887120B2 (en) System and method for touchless pin entry
Vizzarri et al. Security in mobile payments
US20230401300A1 (en) Data transmission method and electronic device
JP6005889B1 (ja) モバイル・デバイスとのセキュア・トランザクションを可能にするシステム及び方法
CN104955030A (zh) 一种手机收单的方法、装置及终端
Petrov et al. Wireless authentication using OPACITY protocol

Legal Events

Date Code Title Description
121 Ep: the epo has been informed by wipo that ep was designated in this application

Ref document number: 15877589

Country of ref document: EP

Kind code of ref document: A1

NENP Non-entry into the national phase

Ref country code: DE

122 Ep: pct application non-entry in european phase

Ref document number: 15877589

Country of ref document: EP

Kind code of ref document: A1