WO2016141865A1 - 用于移动近场支付的数据传输方法及用户设备 - Google Patents

用于移动近场支付的数据传输方法及用户设备 Download PDF

Info

Publication number
WO2016141865A1
WO2016141865A1 PCT/CN2016/075757 CN2016075757W WO2016141865A1 WO 2016141865 A1 WO2016141865 A1 WO 2016141865A1 CN 2016075757 W CN2016075757 W CN 2016075757W WO 2016141865 A1 WO2016141865 A1 WO 2016141865A1
Authority
WO
WIPO (PCT)
Prior art keywords
communication link
pos terminal
user equipment
communication
near field
Prior art date
Application number
PCT/CN2016/075757
Other languages
English (en)
French (fr)
Inventor
尹亚伟
冯亮
刘国宝
万四爽
Original Assignee
中国银联股份有限公司
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by 中国银联股份有限公司 filed Critical 中国银联股份有限公司
Priority to US15/557,023 priority Critical patent/US20180075446A1/en
Priority to KR1020177026718A priority patent/KR20180005653A/ko
Priority to KR1020217000968A priority patent/KR102242848B1/ko
Priority to JP2017547950A priority patent/JP6797821B2/ja
Priority to EP16761092.2A priority patent/EP3270519A4/en
Publication of WO2016141865A1 publication Critical patent/WO2016141865A1/zh

Links

Images

Classifications

    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06QINFORMATION AND COMMUNICATION TECHNOLOGY [ICT] SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES; SYSTEMS OR METHODS SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES, NOT OTHERWISE PROVIDED FOR
    • G06Q20/00Payment architectures, schemes or protocols
    • G06Q20/30Payment architectures, schemes or protocols characterised by the use of specific devices or networks
    • G06Q20/32Payment architectures, schemes or protocols characterised by the use of specific devices or networks using wireless devices
    • G06Q20/327Short range or proximity payments by means of M-devices
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06QINFORMATION AND COMMUNICATION TECHNOLOGY [ICT] SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES; SYSTEMS OR METHODS SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES, NOT OTHERWISE PROVIDED FOR
    • G06Q20/00Payment architectures, schemes or protocols
    • G06Q20/30Payment architectures, schemes or protocols characterised by the use of specific devices or networks
    • G06Q20/32Payment architectures, schemes or protocols characterised by the use of specific devices or networks using wireless devices
    • G06Q20/327Short range or proximity payments by means of M-devices
    • G06Q20/3278RFID or NFC payments by means of M-devices
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06QINFORMATION AND COMMUNICATION TECHNOLOGY [ICT] SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES; SYSTEMS OR METHODS SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES, NOT OTHERWISE PROVIDED FOR
    • G06Q20/00Payment architectures, schemes or protocols
    • G06Q20/04Payment circuits
    • G06Q20/047Payment circuits using payment protocols involving electronic receipts
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06QINFORMATION AND COMMUNICATION TECHNOLOGY [ICT] SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES; SYSTEMS OR METHODS SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES, NOT OTHERWISE PROVIDED FOR
    • G06Q20/00Payment architectures, schemes or protocols
    • G06Q20/08Payment architectures
    • G06Q20/20Point-of-sale [POS] network systems
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06QINFORMATION AND COMMUNICATION TECHNOLOGY [ICT] SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES; SYSTEMS OR METHODS SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES, NOT OTHERWISE PROVIDED FOR
    • G06Q20/00Payment architectures, schemes or protocols
    • G06Q20/08Payment architectures
    • G06Q20/20Point-of-sale [POS] network systems
    • G06Q20/206Point-of-sale [POS] network systems comprising security or operator identification provisions, e.g. password entry
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06QINFORMATION AND COMMUNICATION TECHNOLOGY [ICT] SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES; SYSTEMS OR METHODS SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES, NOT OTHERWISE PROVIDED FOR
    • G06Q20/00Payment architectures, schemes or protocols
    • G06Q20/30Payment architectures, schemes or protocols characterised by the use of specific devices or networks
    • G06Q20/32Payment architectures, schemes or protocols characterised by the use of specific devices or networks using wireless devices
    • G06Q20/322Aspects of commerce using mobile devices [M-devices]
    • G06Q20/3223Realising banking transactions through M-devices
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06QINFORMATION AND COMMUNICATION TECHNOLOGY [ICT] SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES; SYSTEMS OR METHODS SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES, NOT OTHERWISE PROVIDED FOR
    • G06Q20/00Payment architectures, schemes or protocols
    • G06Q20/30Payment architectures, schemes or protocols characterised by the use of specific devices or networks
    • G06Q20/32Payment architectures, schemes or protocols characterised by the use of specific devices or networks using wireless devices
    • G06Q20/325Payment architectures, schemes or protocols characterised by the use of specific devices or networks using wireless devices using wireless networks
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06QINFORMATION AND COMMUNICATION TECHNOLOGY [ICT] SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES; SYSTEMS OR METHODS SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES, NOT OTHERWISE PROVIDED FOR
    • G06Q20/00Payment architectures, schemes or protocols
    • G06Q20/38Payment protocols; Details thereof
    • G06Q20/382Payment protocols; Details thereof insuring higher security of transaction
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04BTRANSMISSION
    • H04B5/00Near-field transmission systems, e.g. inductive loop type
    • H04B5/48
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L9/00Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
    • H04L9/08Key distribution or management, e.g. generation, sharing or updating, of cryptographic keys or passwords
    • H04L9/0816Key establishment, i.e. cryptographic processes or cryptographic protocols whereby a shared secret becomes available to two or more parties, for subsequent use
    • H04L9/0819Key transport or distribution, i.e. key establishment techniques where one party creates or otherwise obtains a secret value, and securely transfers it to the other(s)
    • H04L9/0825Key transport or distribution, i.e. key establishment techniques where one party creates or otherwise obtains a secret value, and securely transfers it to the other(s) using asymmetric-key encryption or public key infrastructure [PKI], e.g. key signature or public key certificates

Definitions

  • the present invention relates to the field of electronic information technology, and in particular to a data transmission method and user equipment for mobile near field payment.
  • NFC Near Field Communication
  • the user terminal and the POS terminal have two interaction processes, and the first interaction (ie, the transaction request phase) includes: application selection, application initialization, reading application data, and generating dynamic application ciphertext.
  • the second interaction ie, the transaction response phase
  • the user equipment needs to continuously approach the POS terminal, and in an extreme case, the duration can reach several tens of seconds.
  • the technical solution of the present application proposes to establish a second communication link by using other network communication methods with longer communication distance and faster transmission speed (for example, WIFI, Bluetooth, etc.) to complete the second interaction with the POS terminal. .
  • WIFI wireless fidelity
  • Bluetooth wireless fidelity
  • the network transmission speed of the second communication link is faster, which helps the relevant value-added service system to push the electronic purchase orders, electronic receipts, vouchers, coupons and other bill information to the user equipment after the transaction is completed, thereby further improving the user. Payment experience.
  • This information push method is applicable to both the online transaction process and the offline transaction process.
  • a method for data transmission for mobile near field payment performed in a user equipment comprising: establishing a first communication link based on near field communication with a POS terminal; After the first communication link is established, a secure channel is established with the POS terminal, so that the first interaction related to the transaction request is performed with the POS terminal through the secure channel; and the second communication chain is established with the POS terminal.
  • a road wherein the second communication link has a longer communication distance and a faster transmission speed than the first communication link, and the second communication link is configured to perform data transmission in an encrypted manner; Via the second communication link, the user equipment and the POS terminal perform a second interaction related to a transaction response.
  • the first interaction between the user equipment and the POS terminal includes one or more of the following operations: application selection, application initialization, reading application data, and generating dynamic application ciphertext. .
  • the second interaction between the user equipment and the POS terminal includes one or more of the following operations: verifying the ARPC ciphertext, sending a script execution notification, and executing the script.
  • the method may further include, after establishing the second communication link, the user equipment is configured to initiate a timer and simultaneously disconnect the first communication link based on near field communication with the POS terminal.
  • the method may further include receiving, via the second communication link, the pushed electronic receipt from the value added service system via the POS terminal.
  • the above method may further include releasing the resource associated with the second communication link upon receiving the electronic ticket and upon detecting that the POS terminal actively disconnects the second communication link.
  • the user equipment master when the timer reaches a preset threshold, the user equipment master The second communication link with the POS terminal is dynamically disconnected.
  • the user equipment is configured to encrypt data using an asymmetric encryption algorithm for transmission on the second communication link.
  • the second communication link is a WiFi link or a Bluetooth link.
  • a user equipment for mobile near field payment comprising: a security application configured to provide a secure storage and operating environment for sensitive information; a near field communication module configured to be associated with a POS The terminal establishes a first communication link based on near field communication; and a second communication module configured to establish a second communication link with the POS terminal, the second communication link communicating with the first communication link The distance is longer, the transmission speed is faster, and the second communication link is configured to perform data transmission in an encrypted manner, wherein the security application is configured to be associated with the POS terminal after the first communication link is established Establishing a secure channel for performing a first interaction with the POS terminal in connection with the transaction request, and wherein the user equipment and the second communication link established by the second communication module The POS terminal performs a second interaction related to the transaction response.
  • the first interaction related to the transaction request includes one or more of the following operations: application selection, application initialization, reading application data, and generating dynamic application ciphertext.
  • the second interaction related to the transaction response includes one or more of the following operations: verifying the ARPC ciphertext, transmitting the script execution notification, and executing the script.
  • the user equipment may further include: a timer, wherein the timer is started after the second communication link is established.
  • the near field communication module in the user equipment disconnects the first communication link based on near field communication with the POS terminal.
  • the second communication module is configured to receive the pushed electronic receipt from the value added service system via the POS terminal.
  • the second communication module is further configured to detect whether the POS terminal actively disconnects the second communication link after receiving the electronic ticket; if yes, releasing the second communication The resources associated with the link.
  • the second communication module is configured to actively disconnect the second communication link with the POS terminal.
  • the security module is configured to encrypt data using an asymmetric encryption algorithm and further transmit the encrypted data using the second communication link.
  • the second communication link is a WiFi link or a Bluetooth link.
  • the technical solution of the present application takes a short time for data transmission by means of the second communication link with longer communication distance and faster transmission speed.
  • the user equipment When processing online transactions, the user equipment only needs to be close to the POS terminal to complete the payment, which improves the user experience.
  • the electronic mail purchase order, electronic receipt, voucher, coupon and other bill information are pushed to the user equipment through the second communication link, thereby solving the problem of electronic ticket transmission and further improving the user payment experience.
  • FIG. 1 is a system diagram of an entire system including a user equipment, a POS terminal, a backend payment system, and a value added service system, according to an embodiment of the present application;
  • FIG. 2 is a system flow diagram in accordance with one embodiment of the present application.
  • a user equipment for mobile near field payment comprising: a security application configured to provide a secure storage and operating environment for sensitive information; a near field communication module configured to be associated with a POS terminal Establishing a first communication link based on near field communication; and a second communication module configured to establish a second communication link with the POS terminal, and a communication distance of the second communication link from the first communication link Longer, faster transmission speed, and the second communication link is configured to perform data transmission in an encrypted manner, wherein the security application is configured to establish with the POS terminal after the first communication link is established a secure channel for performing a first interaction with the POS terminal in connection with the transaction request, and wherein the user equipment and the second communication link established via the second communication module The POS terminal performs a second interaction related to the transaction response.
  • the secure element SE in the user equipment provides a secure storage and operating environment for sensitive information such as card applications, IC card personalization information, and keys.
  • the SE implementation scheme may employ technologies such as eSE, NFC-SIM, and NFC-SD. Or use HCE (short for Host-based Card Emulation, based on host card emulation) technology to simulate card programs.
  • the user equipment may also include an NFC and a second communication module (WIFI, Bluetooth or other communication technology).
  • POS terminals In order to communicate with user equipment, POS terminals also have NFC and WIFI communication functions (or other communication technologies such as Bluetooth).
  • the back-end payment system is responsible for payment operations, and the value-added service system is responsible for pushing bill information such as electronic purchase orders, electronic receipts, vouchers, and coupons.
  • step a the user holds the user equipment close to the POS terminal and enters the NFC induction. Range, establishing an NFC-based first communication link with the POS terminal. Then, as shown in step b, after completing the establishment of the first communication link, the POS terminal establishes a secure channel with the SE (or HCE), and then interacts, including application selection, application initialization, reading application data, and generating dynamic application secrets. Text and other operations.
  • the user equipment establishes a second communication link (eg, WIFI, Bluetooth, etc.) with the POS. The link transmits data in an encrypted manner.
  • a second communication link eg, WIFI, Bluetooth, etc.
  • the user equipment and the POS terminal hold public and private keys, and the asymmetric encryption algorithm is used to encrypt and transmit data. Subsequently, as shown in step d, the POS terminal forwards the payment information to the backend payment system and interacts.
  • the user terminal starts a timer after completing the second communication link.
  • the user equipment disconnects the NFC-based first communication link from the POS terminal, and the user equipment prompts: “The user equipment can leave the POS terminal”.
  • the user equipment displays the second communication link signal strength during the process of leaving the POS terminal. Prompt the user to keep the connection of the second communication link, and do not leave the second communication connection range.
  • step e after the POS terminal completes the interaction with the back-end payment system, the POS terminal performs a second interaction with the user equipment through the second communication link, for example, verifying the ARPC ciphertext, formulating a script, and the like, and completing the remaining payment process. At this point, the payment process ends. If it is an offline transaction, this step can be omitted.
  • the subsequent processing steps may further include: the back-end payment system notifying the value-added service system (as shown in step f1), or the POS terminal notifying the value-added service system (as shown in step f2), pushing the electronic purchase order, the electronic receipt, Bill information such as vouchers and coupons to the user equipment.
  • the ticket information is pushed from the value-added service system to the user equipment via the second communication link via the POS terminal (as shown in step g1) (as shown in step g2).
  • the POS terminal After receiving the receipt of the ticket information, the POS terminal actively disconnects the second communication link.
  • the user terminal detects that the communication link is closed, the related resources are released.
  • the user terminal timer reaches the preset threshold, if the second communication link is normal, the user terminal actively disconnects the second communication link and releases related resources to ensure security.
  • the user equipment first establishes a first communication link with the POS terminal through the NFC, and completes the interaction in the transaction request phase.
  • Other communication methods such as WIFI and Bluetooth
  • WIFI and Bluetooth that have longer communication distances and faster transmission speeds establish a second communication link.
  • the POS terminal completes the interaction with the background payment system
  • the POS terminal completes the transaction response phase interaction with the user terminal through the second communication link, and finally completes the payment transaction process.
  • the related value-added service system pushes the electronic purchase order, the electronic receipt, the voucher, the coupon, and the like information to the user equipment through the second communication link.
  • the second communication link has a faster data transmission time and a shorter time

Landscapes

  • Business, Economics & Management (AREA)
  • Engineering & Computer Science (AREA)
  • Accounting & Taxation (AREA)
  • General Business, Economics & Management (AREA)
  • Theoretical Computer Science (AREA)
  • General Physics & Mathematics (AREA)
  • Strategic Management (AREA)
  • Physics & Mathematics (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Finance (AREA)
  • Computer Security & Cryptography (AREA)
  • Signal Processing (AREA)
  • Mobile Radio Communication Systems (AREA)
  • Telephone Function (AREA)
  • Financial Or Insurance-Related Operations Such As Payment And Settlement (AREA)
  • Cash Registers Or Receiving Machines (AREA)
  • Telephonic Communication Services (AREA)
  • Management, Administration, Business Operations System, And Electronic Commerce (AREA)

Abstract

一种在用户设备中执行的用于移动近场支付的数据传输的方法,包括:与POS终端建立基于近场通信的第一通讯链路;在所述第一通讯链路建立后,与所述POS终端建立安全通道,以便通过该安全通道与所述POS终端进行与交易请求相关的第一次交互;与所述POS终端建立第二通讯链路,其中,相比于所述第一通讯链路,所述第二通讯链路的通信距离更长、传输速度更快,并且所述第二通讯链路设置成以加密方式进行数据传输;经由所述第二通讯链路,所述用户设备与所述POS终端进行与交易应答相关的第二次交互。还涉及一种用于移动近场支付的用户设备。

Description

用于移动近场支付的数据传输方法及用户设备 技术领域
本发明涉及电子信息技术领域,具体来说,涉及一种用于移动近场支付的数据传输方法及用户设备。
背景技术
移动近场支付是指通过手机等其他移动设备进行支付,移动设备与商户POS终端采用NFC、红外和蓝牙等通道进行信息交互。NFC(全称Near Field Communication)是目前一种较为成熟的短距离无线通讯技术。他允许电子设备之间进行非接触式点对点数据传输交换数据。
目前,在联机交易流程规范中,用户终端与POS终端有两次交互过程,第一次交互(即交易请求阶段)包括:应用选择、应用初始化、读应用数据、生成动态应用密文等操作。在POS终端完成与后台支付系统操作后,执行第二次交互(即交易应答阶段),包括:验证ARPC密文、发送脚本执行通知、执行脚本等操作。在基于NFC移动近场支付情境下,由于NFC感应距离有限,在联机交易中,为了完成以上两次交互,用户设备需要持续靠近POS终端,在极端情况下,持续时间可达到数十秒。
另外,由于缺乏快捷的数据传输通道,在交易完成后,用户终端无法及时收到推送的电子票据信息。
发明内容
为了解决上述问题,本申请的技术方案提出借助其他通信距离更长、传输速度更快网络通讯方式(例如:WIFI、蓝牙等),建立第二通讯链路,来完成与POS终端第二次交互。这样,用户设备只需要一次靠近POS终端,即可完成支付交易。
同时,第二通讯链路的网络传输速度更快,有助于在交易完成后,相关增值服务系统推送电子签购单、电子小票、凭证、优惠券等票据信息至用户设备,进一步完善用户支付体验。该信息推送方式既适用于联机交易流程,也适用于脱机交易流程。
根据本申请的一个方面,提供了一种在用户设备中执行的用于移动近场支付的数据传输的方法,所述方法包括:与POS终端建立基于近场通信的第一通讯链路;在所述第一通讯链路建立后,与所述POS终端建立安全通道,以便通过该安全通道与所述POS终端进行与交易请求相关的第一次交互;与所述POS终端建立第二通讯链路,其中,相比于所述第一通讯链路,所述第二通讯链路的通信距离更长、传输速度更快,并且所述第二通讯链路设置成以加密方式进行数据传输;经由所述第二通讯链路,所述用户设备与所述POS终端进行与交易应答相关的第二次交互。
在上述方法中,所述用户设备与所述POS终端之间进行的所述第一次交互包括下列操作中的一项或多项:应用选择、应用初始化、读应用数据、生成动态应用密文。
在上述方法中,所述用户设备与所述POS终端之间进行的所述第二次交互包括下列操作中的一项或多项:验证ARPC密文、发送脚本执行通知、执行脚本。
上述方法还可包括:在建立所述第二通讯链路后,所述用户设备配置成启动计时器,并且同时断开与所述POS终端的基于近场通信的第一通讯链路。
上述方法还可包括:通过所述第二通讯链路,从增值服务系统经由所述POS终端接收推送的电子票据。
上述方法还可包括:在接收所述电子票据后并且在检测到所述POS终端主动断开所述第二通讯链路时,释放与所述第二通讯链路相关联的资源。
在上述方法中,在所述计时器到达预设阈值时,所述用户设备主 动断开与所述POS终端的第二通讯链路。
在上述方法中,所述用户设备配置成采用非对称加密算法加密数据从而在所述第二通讯链路上进行传输。
在上述方法中,所述第二通讯链路为WiFi链路或蓝牙链路。
根据本申请的另一个方面,提供了一种用于移动近场支付的用户设备,包括:安全应用,配置用于为敏感信息提供安全的存储和运行环境;近场通信模块,配置成与POS终端建立基于近场通信的第一通讯链路;以及第二通信模块,配置成与所述POS终端建立第二通讯链路,所述第二通讯链路比所述第一通讯链路的通信距离更长、传输速度更快,并且所述第二通讯链路设置成以加密方式进行数据传输,其中,在所述第一通讯链路建立后,所述安全应用配置成与所述POS终端建立安全通道,以便通过该安全通道与所述POS终端进行与交易请求相关的第一次交互,并且其中,经由所述第二通信模块所建立的第二通讯链路,所述用户设备与所述POS终端进行与交易应答相关的第二次交互。
在上述用户设备中,所述与交易请求相关的第一次交互包括下列操作中的一项或多项:应用选择、应用初始化、读应用数据、生成动态应用密文。
在上述用户设备中,所述与交易应答相关的第二次交互包括下列操作中的一项或多项:验证ARPC密文、发送脚本执行通知、执行脚本。
上述用户设备还可包括:计时器,其中在建立所述第二通讯链路后,所述计时器被启动。
在上述用户设备中,在所述计时器被启动的同时,所述用户设备中的近场通信模块断开与所述POS终端的基于近场通信的第一通讯链路。
在上述用户设备中,所述第二通信模块配置成从增值服务系统经由所述POS终端接收推送的电子票据。
在上述用户设备中,所述第二通信模块还配置成在接收所述电子票据后检测所述POS终端是否主动断开所述第二通讯链路;如果是,则释放与所述第二通讯链路相关联的资源。
在上述用户设备中,在所述计时器到达预设阈值时,所述第二通信模块配置成主动断开与所述POS终端的第二通讯链路。
在上述用户设备中,所述安全模块配置成采用非对称加密算法来对数据进行加密,并进而利用所述第二通讯链路传输加密数据。
在上述用户设备中,所述第二通讯链路为WiFi链路或蓝牙链路。
相比仅使用NFC通道的近场支付方法,本申请的技术方案借助通信距离更长、传输速度更快的第二通讯链路,数据传输花费时间短。在处理联机交易时,用户设备仅需要一次靠近POS终端即可完成支付,提升了用户操作体验。同时,通过第二通讯链路推送电子签购单、电子小票、凭证、优惠券等票据信息至用户设备,解决了电子票据传输的问题,进一步提升了用户支付体验。
附图说明
在参照附图阅读了本发明的具体实施方式以后,本领域技术人员将会更清楚地了解本发明的各个方面。本领域技术人员应当理解的是:这些附图仅仅用于配合具体实施方式说明本发明的技术方案,而并非意在对本发明的保护范围构成限制。
图1是根据本申请的一个实施例、包括用户设备、POS终端、后端支付系统和增值服务系统的整个系统场景图;
图2是根据本申请的一个实施例的系统流程图。
具体实施方式
下面介绍的是本发明的多个可能实施例中的一些,旨在提供对本发明的基本了解,并不旨在确认本发明的关键或决定性的要素或限定所要保护的范围。容易理解,根据本发明的技术方案,在不变更本发 明的实质精神下,本领域的一般技术人员可以提出可相互替换的其它实现方式。因此,以下具体实施方式以及附图仅是对本发明的技术方案的示例性说明,而不应当视为本发明的全部或者视为对本发明技术方案的限定或限制。
根据本申请的一个方面,提供了一种用于移动近场支付的用户设备,包括:安全应用,配置用于为敏感信息提供安全的存储和运行环境;近场通信模块,配置成与POS终端建立基于近场通信的第一通讯链路;以及第二通信模块,配置成与所述POS终端建立第二通讯链路,所述第二通讯链路比所述第一通讯链路的通信距离更长、传输速度更快,并且所述第二通讯链路设置成以加密方式进行数据传输,其中,在所述第一通讯链路建立后,所述安全应用配置成与所述POS终端建立安全通道,以便通过该安全通道与所述POS终端进行与交易请求相关的第一次交互,并且其中,经由所述第二通信模块所建立的第二通讯链路,所述用户设备与所述POS终端进行与交易应答相关的第二次交互。
图1为根据本申请的一个实施例的系统的具体场景图。从图1中可见,整个系统包括用户设备、POS终端、后端支付系统和增值服务系统。其中,用户设备中的安全元件SE为卡片应用、IC卡个人化信息、密钥等敏感信息提供安全的存储和运行环境,SE的实现方案可采用eSE、NFC-SIM和NFC-SD等技术。或是采用HCE(Host-based Card Emulation的缩写,基于主机卡模拟)技术模拟卡片程序。用户设备还可包括NFC和第二通讯模块(WIFI、蓝牙或其他通讯技术)。
为了与用户设备通信,POS终端同样具备NFC和WIFI通讯功能(或蓝牙等其他通讯技术)。此外,后端支付系统负责支付操作,增值服务系统负责推送电子签购单、电子小票、凭证、优惠券等票据信息。
参考图2,图2示出了根据本申请的一个实施例的流程图。具体来说,在步骤a,用户手持用户设备靠近POS终端,进入NFC感应 范围,与POS终端建立基于NFC的第一通讯链路。接着,如步骤b所示,在完成第一通讯链路建立后,POS终端与SE(或者HCE)建立安全通道,然后进行交互,其中包括应用选择、应用初始化、读应用数据、生成动态应用密文等操作。在步骤c,用户设备与POS建立第二通讯链路(例如:WIFI、蓝牙等)。链路以加密方式进行数据传输,建立通讯链路方式有很多,例如:用户设备与POS终端持有公私钥,采用非对称加密算法加密传输数据。随后,如步骤d所示,POS终端转发支付信息给后端支付系统,并进行交互。
在一个优选的实施例中,在完成第二通讯链路后,用户终端启动计时器。同时,用户设备与POS终端断开基于NFC的第一通讯链路,用户设备提示:“用户设备可以离开POS终端”。在另一个优选的实施例中,在离开POS终端过程中,用户设备显示第二通讯链路信号强度。提示用户保持第二通讯链路的连接,不要离开第二通讯连接范围。
在步骤e中,POS终端完成与后端支付系统交互后,通过第二通讯链路与用户设备进行第二次交互,例如:验证ARPC密文、制定脚本等,完成剩余支付流程。至此,支付流程结束。如果为脱机交易,则此步骤可省略。
后续的处理处理步骤还可包括:后端支付系统通知增值服务系统(如步骤f1所示),或者POS终端通知增值服务系统(如步骤f2所示),推送电子签购单、电子小票、凭证、优惠券等票据信息至用户设备。票据信息从增值服务系统,经由POS终端(如步骤g1所示),通过第二通讯链路,推送至用户设备(如步骤g2所示)。
在完成接收票据信息后,POS终端主动断开第二通讯链路。当用户终端检测到通讯链路关闭时,释放相关资源。可选地,当用户终端计时器到达预设阀值时,如果第二通讯链路正常,则用户终端主动断开第二通讯链路,释放相关资源,以保证安全。
综上所述,在本申请的技术方案中,用户设备首先通过NFC与POS终端建立第一通讯链路,完成交易请求阶段的交互。同时,借助 其他通信距离更长、传输速度更快的网络通讯方式(例如,WIFI和蓝牙等),建立第二通讯链路。在POS终端完成与后台支付系统交互后,POS终端通过第二通讯链路与用户终端完成交易应答阶段的交互,最终完成支付交易流程。在完成支付流程后,相关增值服务系统通过第二通讯链路将电子签购单、电子小票、凭证、优惠券等票据信息推送至用户设备。
该方案至少具有如下优点:
1)在联机交易过程中,用户设备仅需要一次靠近POS终端,即可完成支付交易,提升用户操作体验;
2)第二通讯链路的数据传输速度更快,花费时间也更短;
3)通过第二通讯链路将电子签购单、电子小票、凭证、优惠券等票据信息推送至用户设备,解决了电子票据传输的问题,进一步提升用户支付体验。
上文中,参照附图描述了本发明的具体实施方式。但是,本领域中的普通技术人员能够理解,在不偏离本发明的精神和范围的情况下,还可以对本发明的具体实施方式作各种变更和替换。这些变更和替换都落在本发明权利要求书所限定的范围内。

Claims (19)

  1. 一种在用户设备中执行的用于移动近场支付的数据传输的方法,所述方法包括:
    与POS终端建立基于近场通信的第一通讯链路;
    在所述第一通讯链路建立后,与所述POS终端建立安全通道,以便通过该安全通道与所述POS终端进行与交易请求相关的第一次交互;
    与所述POS终端建立第二通讯链路,其中,相比于所述第一通讯链路,所述第二通讯链路的通信距离更长、传输速度更快,并且所述第二通讯链路设置成以加密方式进行数据传输,
    经由所述第二通讯链路,所述用户设备与所述POS终端进行与交易应答相关的第二次交互。
  2. 如权利要求1所述的方法,其中,所述用户设备与所述POS终端之间进行的所述第一次交互包括下列操作中的一项或多项:应用选择、应用初始化、读应用数据、生成动态应用密文。
  3. 如权利要求1所述的方法,其中,所述用户设备与所述POS终端之间进行的所述第二次交互包括下列操作中的一项或多项:验证ARPC密文、发送脚本执行通知、执行脚本。
  4. 如权利要求1所述的方法,还包括:在建立所述第二通讯链路后,所述用户设备配置成启动计时器,并且同时断开与所述POS终端的基于近场通信的第一通讯链路。
  5. 如权利要求1所述的方法,还包括:通过所述第二通讯链路,从增值服务系统经由所述POS终端接收推送的电子票据。
  6. 如权利要求5所述的方法,还包括:在接收所述电子票据后并且在检测到所述POS终端主动断开所述第二通讯链路时,释放与所述第二通讯链路相关联的资源。
  7. 如权利要求4所述的方法,其中,在所述计时器到达预设阈值 时,所述用户设备主动断开与所述POS终端的第二通讯链路。
  8. 如权利要求1所述的方法,其中,所述用户设备配置成采用非对称加密算法加密数据从而在所述第二通讯链路上进行传输。
  9. 如权利要求1所述的方法,其中,所述第二通讯链路为WiFi链路或蓝牙链路。
  10. 一种用于移动近场支付的用户设备,包括:
    安全应用,配置用于为敏感信息提供安全的存储和运行环境;
    近场通信模块,配置成与POS终端建立基于近场通信的第一通讯链路;以及
    第二通信模块,配置成与所述POS终端建立第二通讯链路,所述第二通讯链路比所述第一通讯链路的通信距离更长、传输速度更快,并且所述第二通讯链路设置成以加密方式进行数据传输,
    其中,在所述第一通讯链路建立后,所述安全应用配置成与所述POS终端建立安全通道,以便通过该安全通道与所述POS终端进行与交易请求相关的第一次交互,
    并且其中,经由所述第二通信模块所建立的第二通讯链路,所述用户设备与所述POS终端进行与交易应答相关的第二次交互。
  11. 如权利要求10所述的用户设备,其中,所述与交易请求相关的第一次交互包括下列操作中的一项或多项:应用选择、应用初始化、读应用数据、生成动态应用密文。
  12. 如权利要求10所述的用户设备,其中,所述与交易应答相关的第二次交互包括下列操作中的一项或多项:验证ARPC密文、发送脚本执行通知、执行脚本。
  13. 如权利要求10所述的用户设备,还包括:计时器,其中在建立所述第二通讯链路后,所述计时器被启动。
  14. 如权利要求13所述的用户设备,其中,在所述计时器被启动的同时,所述用户设备中的近场通信模块断开与所述POS终端的基于近场通信的第一通讯链路。
  15. 如权利要求10所述的用户设备,其中,所述第二通信模块配置成从增值服务系统经由所述POS终端接收推送的电子票据。
  16. 如权利要求15所述的用户设备,其中,所述第二通信模块还配置成在接收所述电子票据后检测所述POS终端是否主动断开所述第二通讯链路;如果是,则释放与所述第二通讯链路相关联的资源。
  17. 如权利要求13所述的用户设备,其中,在所述计时器到达预设阈值时,所述第二通信模块配置成主动断开与所述POS终端的第二通讯链路。
  18. 如权利要求10所述的用户设备,其中,所述安全模块配置成采用非对称加密算法来对数据进行加密,并进而利用所述第二通讯链路传输加密数据。
  19. 如权利要求10所述的用户设备,其中,所述第二通讯链路为WiFi链路或蓝牙链路。
PCT/CN2016/075757 2015-03-11 2016-03-07 用于移动近场支付的数据传输方法及用户设备 WO2016141865A1 (zh)

Priority Applications (5)

Application Number Priority Date Filing Date Title
US15/557,023 US20180075446A1 (en) 2015-03-11 2016-03-07 Data transmission method for mobile near field payment and user equipment
KR1020177026718A KR20180005653A (ko) 2015-03-11 2016-03-07 모바일 근거리 결제 방식의 데이터 전송을 위한 방법 및 사용자 장치
KR1020217000968A KR102242848B1 (ko) 2015-03-11 2016-03-07 모바일 근거리 결제 방식의 데이터 전송을 위한 방법 및 사용자 장치
JP2017547950A JP6797821B2 (ja) 2015-03-11 2016-03-07 モバイル近接型決済用データ伝送方法及びユーザ機器
EP16761092.2A EP3270519A4 (en) 2015-03-11 2016-03-07 Data transmission method for mobile near field payment and user equipment

Applications Claiming Priority (2)

Application Number Priority Date Filing Date Title
CN201510105097.7A CN105590200A (zh) 2015-03-11 2015-03-11 用于移动近场支付的数据传输方法及用户设备
CN201510105097.7 2015-03-11

Publications (1)

Publication Number Publication Date
WO2016141865A1 true WO2016141865A1 (zh) 2016-09-15

Family

ID=55929765

Family Applications (1)

Application Number Title Priority Date Filing Date
PCT/CN2016/075757 WO2016141865A1 (zh) 2015-03-11 2016-03-07 用于移动近场支付的数据传输方法及用户设备

Country Status (7)

Country Link
US (1) US20180075446A1 (zh)
EP (1) EP3270519A4 (zh)
JP (1) JP6797821B2 (zh)
KR (2) KR20180005653A (zh)
CN (1) CN105590200A (zh)
TW (1) TW201633228A (zh)
WO (1) WO2016141865A1 (zh)

Families Citing this family (11)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CA2980768A1 (en) * 2015-03-31 2016-10-06 Visa International Service Association Multi-protocol data transfer
GB201613027D0 (en) * 2016-07-28 2016-09-14 Mastercard International Inc M/chip next gen overview
CN106357663A (zh) * 2016-09-30 2017-01-25 中国银联股份有限公司 用于hce模式的数据加密方法
US10475005B1 (en) * 2016-10-25 2019-11-12 Worldpay, Llc Systems and methods for second tap e-receipt option for NFC-enabled payment vehicles
CN107730064A (zh) * 2017-02-28 2018-02-23 西安艾润物联网技术服务有限责任公司 优惠券发放控制方法及装置
CN108960811B (zh) * 2018-05-29 2021-01-15 创新先进技术有限公司 一种支付方法及客户端
KR20200079045A (ko) * 2018-12-24 2020-07-02 삼성전자주식회사 전자 장치 및 전자 장치의 제어 방법
EP3813265A1 (en) * 2019-10-24 2021-04-28 Mastercard International Incorporated Data processing apparatuses and methods
CN111356119A (zh) * 2020-03-12 2020-06-30 京东方科技集团股份有限公司 一种数据传输方法及相关设备
WO2021251889A1 (en) * 2020-06-11 2021-12-16 Crunchfish Digital Cash Ab Real-time digital proximity payments by proxy
SE2050694A1 (en) * 2020-06-11 2021-12-12 Crunchfish Digital Cash Ab Real-time digital proximity payments by proxy

Citations (8)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101567108A (zh) * 2008-04-24 2009-10-28 北京爱奥时代信息科技有限公司 Nfc手机-pos机支付方法及系统
CN101599191A (zh) * 2008-06-04 2009-12-09 中国移动通信集团公司 一种显示交易信息的方法及移动终端设备
CN101867396A (zh) * 2010-04-29 2010-10-20 中兴通讯股份有限公司 基于nfc的电子凭证的传输方法和系统、pos机和nfc终端
CN101958026A (zh) * 2010-09-15 2011-01-26 宇龙计算机通信科技(深圳)有限公司 一种用户认证模块的设置方法和设置系统
CN102271012A (zh) * 2011-08-18 2011-12-07 中兴通讯股份有限公司 近场通信终端、系统及方法
CN103218713A (zh) * 2013-05-13 2013-07-24 上海盛本通讯科技有限公司 基于智能平台的多功能pos终端、系统及其支付方法
CN103679443A (zh) * 2012-09-18 2014-03-26 中国银联股份有限公司 一种利用手机终端进行的支付方法及其处理系统
WO2014063546A1 (zh) * 2012-10-25 2014-05-01 中国银联股份有限公司 处理来自移动终端的数据访问请求的设备和方法

Family Cites Families (8)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101171604A (zh) * 2005-03-07 2008-04-30 诺基亚公司 包括智能卡模块和近场通信装置的方法和移动终端设备
JP4585950B2 (ja) * 2005-09-26 2010-11-24 日立オムロンターミナルソリューションズ株式会社 自動取引装置及びモバイル端末
KR101442169B1 (ko) * 2007-11-27 2014-11-03 삼성전자주식회사 공개키 기반의 블루투스 스마트 키 시스템 및 동작 방법
SK288747B6 (sk) * 2009-04-24 2020-04-02 Smk Kk Spôsob a systém bezhotovostnej platobnej transakcie, najmä s použitím bezkontaktného platobného prostriedku
KR101760424B1 (ko) * 2011-05-20 2017-07-31 엘지전자 주식회사 이동 단말기 및 그 제어방법
US8799086B2 (en) * 2011-07-27 2014-08-05 Verifone, Inc. Payment facilitating system for use with a mobile communicator utilizing a near field communication (NFC) link
US9008616B2 (en) * 2011-08-19 2015-04-14 Google Inc. Point of sale processing initiated by a single tap
US20140019367A1 (en) * 2012-07-13 2014-01-16 Apple Inc. Method to send payment data through various air interfaces without compromising user data

Patent Citations (8)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101567108A (zh) * 2008-04-24 2009-10-28 北京爱奥时代信息科技有限公司 Nfc手机-pos机支付方法及系统
CN101599191A (zh) * 2008-06-04 2009-12-09 中国移动通信集团公司 一种显示交易信息的方法及移动终端设备
CN101867396A (zh) * 2010-04-29 2010-10-20 中兴通讯股份有限公司 基于nfc的电子凭证的传输方法和系统、pos机和nfc终端
CN101958026A (zh) * 2010-09-15 2011-01-26 宇龙计算机通信科技(深圳)有限公司 一种用户认证模块的设置方法和设置系统
CN102271012A (zh) * 2011-08-18 2011-12-07 中兴通讯股份有限公司 近场通信终端、系统及方法
CN103679443A (zh) * 2012-09-18 2014-03-26 中国银联股份有限公司 一种利用手机终端进行的支付方法及其处理系统
WO2014063546A1 (zh) * 2012-10-25 2014-05-01 中国银联股份有限公司 处理来自移动终端的数据访问请求的设备和方法
CN103218713A (zh) * 2013-05-13 2013-07-24 上海盛本通讯科技有限公司 基于智能平台的多功能pos终端、系统及其支付方法

Non-Patent Citations (1)

* Cited by examiner, † Cited by third party
Title
See also references of EP3270519A4 *

Also Published As

Publication number Publication date
TW201633228A (zh) 2016-09-16
JP6797821B2 (ja) 2020-12-09
JP2018515827A (ja) 2018-06-14
EP3270519A4 (en) 2018-10-17
KR102242848B1 (ko) 2021-04-22
KR20180005653A (ko) 2018-01-16
CN105590200A (zh) 2016-05-18
EP3270519A1 (en) 2018-01-17
KR20210008148A (ko) 2021-01-20
US20180075446A1 (en) 2018-03-15

Similar Documents

Publication Publication Date Title
WO2016141865A1 (zh) 用于移动近场支付的数据传输方法及用户设备
US20220245609A1 (en) Methods and arrangements for a personal point of sale device
US20190156324A1 (en) Method, device and secure element for conducting a secured financial transaction on a device
US20190150212A1 (en) Midrange contactless transactions
JP5964499B2 (ja) モバイル・デバイスとのセキュア・トランザクションを可能にするシステム及び方法
US8874913B1 (en) Secure communications between devices using a trusted server
TWI633505B (zh) 用於以付款憑據為基礎之行動商務的系統、設備及電腦可讀媒體
US10115101B2 (en) Wireless establishment of identity via bi-directional RFID
US9432087B2 (en) Communication system and method for near field communication
US9544020B2 (en) NFC negotiated pairing
US20170032362A1 (en) Streamlined enrollment of credit cards in mobile wallets
CN105190661A (zh) 使用媒体绑定的安全移动支付
JP2015531108A (ja) ユーザデータを侵害することなく様々なエア・インタフェースによって支払いデータを送信する方法
GB2510431A (en) Mobile wallet transaction system using different communication protocols
US20240013205A1 (en) Discovery and communication using direct radio signal communication
WO2017076173A1 (zh) 一种移动终端及其交易确认方法、装置以及一种智能卡
CN113169873A (zh) 用于非接触卡的密码认证的系统和方法
WO2015159294A1 (en) Using a client terminal wireless personal area network (wpan) transceiver for secure element communication
WO2015101439A1 (en) Method for securing a completion step of an online transaction
AU2018297067A1 (en) Processing payments
JP6005889B1 (ja) モバイル・デバイスとのセキュア・トランザクションを可能にするシステム及び方法
EP3889865A1 (en) Method for handling relay attack and secure element
JP2016096452A (ja) 移動端末及び無線通信システム

Legal Events

Date Code Title Description
121 Ep: the epo has been informed by wipo that ep was designated in this application

Ref document number: 16761092

Country of ref document: EP

Kind code of ref document: A1

REEP Request for entry into the european phase

Ref document number: 2016761092

Country of ref document: EP

WWE Wipo information: entry into national phase

Ref document number: 15557023

Country of ref document: US

ENP Entry into the national phase

Ref document number: 2017547950

Country of ref document: JP

Kind code of ref document: A

NENP Non-entry into the national phase

Ref country code: DE

ENP Entry into the national phase

Ref document number: 20177026718

Country of ref document: KR

Kind code of ref document: A