WO2018076443A1 - 一种无卡取款的方法、装置和系统 - Google Patents

一种无卡取款的方法、装置和系统 Download PDF

Info

Publication number
WO2018076443A1
WO2018076443A1 PCT/CN2016/107836 CN2016107836W WO2018076443A1 WO 2018076443 A1 WO2018076443 A1 WO 2018076443A1 CN 2016107836 W CN2016107836 W CN 2016107836W WO 2018076443 A1 WO2018076443 A1 WO 2018076443A1
Authority
WO
WIPO (PCT)
Prior art keywords
self
service device
mobile terminal
information
connection
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Ceased
Application number
PCT/CN2016/107836
Other languages
English (en)
French (fr)
Inventor
邹家须
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Yulong Computer Telecommunication Scientific Shenzhen Co Ltd
Original Assignee
Yulong Computer Telecommunication Scientific Shenzhen Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Yulong Computer Telecommunication Scientific Shenzhen Co Ltd filed Critical Yulong Computer Telecommunication Scientific Shenzhen Co Ltd
Publication of WO2018076443A1 publication Critical patent/WO2018076443A1/zh
Anticipated expiration legal-status Critical
Ceased legal-status Critical Current

Links

Images

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L9/00Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
    • H04L9/32Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials
    • H04L9/3247Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials involving digital signatures
    • GPHYSICS
    • G06COMPUTING OR CALCULATING; COUNTING
    • G06KGRAPHICAL DATA READING; PRESENTATION OF DATA; RECORD CARRIERS; HANDLING RECORD CARRIERS
    • G06K7/00Methods or arrangements for sensing record carriers, e.g. for reading patterns
    • G06K7/10Methods or arrangements for sensing record carriers, e.g. for reading patterns by electromagnetic radiation, e.g. optical sensing; by corpuscular radiation
    • G06K7/10009Methods or arrangements for sensing record carriers, e.g. for reading patterns by electromagnetic radiation, e.g. optical sensing; by corpuscular radiation sensing by radiation using wavelengths larger than 0.1 mm, e.g. radio-waves or microwaves
    • G06K7/10257Methods or arrangements for sensing record carriers, e.g. for reading patterns by electromagnetic radiation, e.g. optical sensing; by corpuscular radiation sensing by radiation using wavelengths larger than 0.1 mm, e.g. radio-waves or microwaves arrangements for protecting the interrogation against piracy attacks
    • GPHYSICS
    • G06COMPUTING OR CALCULATING; COUNTING
    • G06KGRAPHICAL DATA READING; PRESENTATION OF DATA; RECORD CARRIERS; HANDLING RECORD CARRIERS
    • G06K7/00Methods or arrangements for sensing record carriers, e.g. for reading patterns
    • G06K7/10Methods or arrangements for sensing record carriers, e.g. for reading patterns by electromagnetic radiation, e.g. optical sensing; by corpuscular radiation
    • G06K7/10544Methods or arrangements for sensing record carriers, e.g. for reading patterns by electromagnetic radiation, e.g. optical sensing; by corpuscular radiation by scanning of the records by radiation in the optical part of the electromagnetic spectrum
    • GPHYSICS
    • G07CHECKING-DEVICES
    • G07FCOIN-FREED OR LIKE APPARATUS
    • G07F19/00Complete banking systems; Coded card-freed arrangements adapted for dispensing or receiving monies or the like and posting such transactions to existing accounts, e.g. automatic teller machines
    • G07F19/20Automatic teller machines [ATMs]
    • G07F19/202Depositing operations within ATMs
    • GPHYSICS
    • G07CHECKING-DEVICES
    • G07FCOIN-FREED OR LIKE APPARATUS
    • G07F19/00Complete banking systems; Coded card-freed arrangements adapted for dispensing or receiving monies or the like and posting such transactions to existing accounts, e.g. automatic teller machines
    • G07F19/20Automatic teller machines [ATMs]
    • G07F19/203Dispensing operations within ATMs
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/08Network architectures or network communication protocols for network security for authentication of entities
    • H04L63/083Network architectures or network communication protocols for network security for authentication of entities using passwords
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/08Network architectures or network communication protocols for network security for authentication of entities
    • H04L63/0861Network architectures or network communication protocols for network security for authentication of entities using biometrical features, e.g. fingerprint, retina-scan
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W4/00Services specially adapted for wireless communication networks; Facilities therefor
    • H04W4/80Services using short range communication, e.g. near-field communication [NFC], radio-frequency identification [RFID] or low energy communication

Definitions

  • the present invention relates to the field of communications technologies, and in particular, to a method, apparatus, and system for cardless withdrawal.
  • the traditional method of withdrawing money on a bank self-service cash dispenser is to input the password of the bank card through the bank card as the medium, and the bank password can be used to check the money after the correct password is checked.
  • This method requires more steps. Moreover, it is limited by the media, and cannot meet the intelligent demand for the withdrawal method. Moreover, the bank card information is easily copied illegally, the password is easily cracked, and the security is low.
  • the technical problem to be solved by the embodiments of the present invention is to provide a method, device and system for cardless withdrawal, which can improve the security of cardless withdrawal and meet the intelligent demand for information security.
  • an embodiment of the present invention provides a method for cardless withdrawal, including:
  • the mobile terminal acquires user information, and sends a response message to the self-service device, where the response message includes user information;
  • the mobile terminal sends the request amount and the signature verification information to the self-service device to facilitate the withdrawal of the withdrawal.
  • the method further includes:
  • the authentication information includes one or more of a fingerprint, a password, a gesture, and a password
  • the mobile terminal establishes a connection with the self-service device.
  • the mobile terminal establishes a connection with the self-service device, including:
  • the mobile terminal establishes a connection with the self-service device by means of short-range wireless communication NFC, or the mobile terminal establishes a connection with the self-service device by scanning a graphic code.
  • an embodiment of the present invention further provides a method for cardless withdrawal, including:
  • the self-service device obtains a response message of the mobile terminal, where the response message includes user information
  • the self-service device sends the response message to the server for identification, and if the server receives the verification information for the response message, forwarding the verification information to the mobile terminal;
  • the self-service device receives a request amount of the mobile terminal and signature verification information for signing the verification information, and generates a withdrawal request including a request amount and signature verification information, and sends the withdrawal request to the server;
  • the self-service device performs a withdrawal process according to the requested amount.
  • the method further includes:
  • the self-service device establishes a connection with the mobile terminal by means of short-range wireless communication NFC, or the self-service device establishes a connection with the mobile terminal by scanning a graphic code.
  • the self-service device and the mobile terminal establish a connection by using a scanning graphic code, which specifically includes:
  • the self-service device invokes the camera module to read the graphic code displayed on the mobile terminal, and generates communication connection information, or
  • the self-service device establishes a connection with the mobile terminal according to the communication connection information.
  • the embodiment of the invention further provides a device for cardless withdrawal, comprising:
  • a receiving module configured to receive a read request sent by the self-service device, where the read request is used to request reply to the user information
  • a sending module configured to send a response message to the self-service device, where the response message includes user information
  • the receiving module is further configured to receive verification information returned by the self-service device according to the response message;
  • a security module configured to store a digital certificate and a signature key, and sign the verification information based on the signature key to obtain signature verification information;
  • the sending module is further configured to send the request amount and the signature verification information to the self-service device, so as to complete the withdrawal.
  • the device further includes: a display module, configured to display a user interface for establishing a connection with the self-service device;
  • the receiving module is further configured to receive authentication information input on the user interface, where the authentication information includes one or more of a fingerprint, a password, a gesture, and a password;
  • the connection module is configured to establish a connection with the self-service device if the authentication information is valid.
  • the connection module is specifically configured to establish a connection with the self-service device by using a short-range wireless communication NFC, or establish a connection with the self-service device by using a scanning graphic code.
  • the embodiment of the invention further provides a device for cardless withdrawal, comprising:
  • An obtaining module configured to obtain a response message of the mobile terminal, where the response message includes user information
  • a communication module configured to send the response message to the server for identification, and if the server receives the verification information for the response message, forward the verification information to the mobile terminal;
  • the communication module is further configured to receive a request amount of the mobile terminal and signature verification information for encrypting the verification information
  • Generating a module configured to generate a withdrawal request including a request amount and signature verification information
  • the communication module is further configured to send the withdrawal request to the server;
  • the processing module is configured to: if receiving the confirmation message of the server, the self-service device performs a withdrawal process according to the requested amount.
  • the device further comprises:
  • the connection module is configured to establish a connection with the mobile terminal by using a short-range wireless communication NFC, or establish a connection with the mobile terminal by using a scanning graphic code.
  • the device further includes a camera module configured to read a graphic code displayed on the mobile terminal;
  • connection module is configured to establish a connection with the mobile terminal by using a scanning graphic code, and is specifically configured to generate communication connection information according to a graphic code displayed on the mobile terminal read by the camera module, or
  • the embodiment of the invention further provides a system for cardless withdrawal, comprising: a mobile terminal, a self-service device, and a server;
  • the self-service device sends a read request to the mobile terminal, and the read request is used to request the mobile terminal to reply to user information;
  • the mobile terminal receives and responds to the read request, acquires user information, and sends a response message to the self-service device, where the response message includes user information;
  • the self-service device further receives the response message and sends the response message to a server;
  • the server identifies the response message, and if the recognition result is that the response message is valid, issuing verification information for the response message to the self-service device;
  • the self-service device further forwards the verification information to the mobile terminal;
  • the mobile terminal further receives the verification information, and after signing the verification information based on the signature key, obtains signature verification information, and sends the request amount and the signature verification information to the self-service device;
  • the self-service device further generates a withdrawal request including a request amount and signature verification information, and sends the withdrawal request to the server;
  • the server further verifies whether the withdrawal request is valid according to the withdrawal request, and if valid, sends a confirmation message to the self-service device;
  • the self-service device further performs a withdrawal process according to the requested amount.
  • Implementing various embodiments of the present invention or implementations thereof has the following beneficial effects: receiving a read request of the self-service device through the mobile terminal, and then responding to the request, acquiring user information, and transmitting a response message including the user information to the self-service device, further
  • the mobile terminal receives the verification information returned by the self-service device, and the mobile terminal encrypts the verification information based on the signature key to obtain signature verification information, and sends the request amount and the signature verification information to the self-service device.
  • FIG. 1 is a schematic flow chart of a cardless withdrawal method according to a first embodiment of the present invention
  • FIG. 2 is a schematic flow chart of a cardless withdrawal method according to a second embodiment of the present invention.
  • FIG. 3 is a schematic diagram of information interaction provided by a second embodiment of the present invention.
  • FIG. 4 is a schematic structural diagram of a cardless withdrawal device according to a third embodiment of the present invention.
  • FIG. 5 is a schematic structural diagram of a cardless withdrawal device according to a fourth embodiment of the present invention.
  • FIG. 6 is a schematic structural diagram of a cardless withdrawal device according to a fifth embodiment of the present invention.
  • FIG. 7 is a schematic structural diagram of a cardless withdrawal device according to a sixth embodiment of the present invention.
  • FIG. 8 is a schematic structural diagram of a cardless withdrawal system according to a seventh embodiment of the present invention.
  • FIG. 1 is a schematic flowchart of a cardless withdrawal method according to a first embodiment of the present invention.
  • the method of the embodiment of the present invention may be performed by various intelligent terminals.
  • the smart terminal may be a terminal with a payment processing function, such as a smart phone, a tablet computer, or a smart wearable device.
  • the cardless withdrawal method in the embodiment of the present invention includes the following steps:
  • the mobile terminal receives a read request sent by the self-service device, where the read request is used to request the mobile terminal to reply to the user information.
  • the mobile terminal before receiving the read request sent by the self-service device, the mobile terminal further includes: displaying a user interface that establishes a connection with the self-service device; receiving authentication information input on the user interface, where the authentication information includes One or more of a fingerprint, a password, a gesture, and a password; if the authentication information is valid, the mobile terminal establishes a connection with the self-service device.
  • the user interface may be a mobile banking interface of the bank, or may be an interface preset by the mobile terminal to interact with the self-service device. Of course, other types of user interfaces may also be used.
  • the mobile terminal receives the authentication information input by the user, and the mobile terminal checks whether the authentication information is correct, and if the authentication information is correct, enters the mobile terminal and the self-service device. If the authentication information is incorrect, the password displayed on the current user interface is incorrect. The user can choose to enter the password again or opt out of the current user interface.
  • the authentication information includes a fingerprint, a password, a gesture, a password, and the like.
  • the user can pre-set which one or more authentication methods are used when entering the user interface, and can also use the default authentication mode of the mobile terminal, and of course, can also be used. other methods.
  • the user presets the authentication information that enters the current user interface, and the mobile terminal stores the authentication information.
  • the mobile device Whether the terminal compares the authentication information input by the user with the pre-stored authentication information, and if the same, the mobile terminal enters a page for establishing a connection with the self-service device, and if not, displays the password on the user interface of the mobile terminal. Wrong prompt message.
  • the mobile terminal establishes a connection with the self-service device, including: the mobile terminal establishes a connection with the self-service device by using a short-range wireless communication NFC, or the mobile terminal and the self-service device adopt a scan graphic code. The way to establish a connection.
  • NFC is a non-contact RFID and interoperability technology. It combines an inductive card reader, inductive card and point-to-point function on a single chip. Compatible devices for identification and data exchange. Among them, the use of NFC technology requires the built-in NFC chip in the mobile terminal, so that the data can realize the function of bidirectional transmission. This technology is suitable for electronic money payment, which greatly guarantees the security of cardless withdrawal.
  • the mobile terminal if the mobile terminal establishes a connection with the self-service device in an NFC manner, after the user inputs the authentication information, the mobile terminal checks whether the authentication information is correct, and the self-service device is in the mobile device.
  • the terminal can establish a connection within a distance (for example, within 2 meters), then the mobile terminal directly establishes a connection with the self-service device.
  • the mobile terminal establishes a connection with the self-service device by scanning a graphic code
  • the mobile terminal checks the authentication information correctly
  • the mobile terminal The current interface displays a graphic code including communication connection information, and the graphic code is placed in the camera of the self-service device. If the camera of the self-service device recognizes the graphic code successfully, the mobile terminal establishes a connection with the self-service device.
  • the self-service device displays a graphic code including the communication connection information on the current interface, and the mobile terminal scans the graphic code. If the scan is successful, the mobile terminal establishes a connection with the self-service device.
  • the graphic code may be in the form of a two-dimensional code, a barcode, or the like, and the graphic code includes related information for establishing a communication connection, and the information is generally composed of binary numbers of 0 and 1, so as to be recognized by a computer device or the like.
  • the mobile terminal acquires user information in response to the read request, and sends a response message to the self-service device, where the response message includes user information.
  • the user information may include digital certificate information and card information, wherein the digital certificate may be preset in the mobile terminal, and when the mobile terminal receives the read request sent by the self-service device, the digital certificate is read.
  • Information may include information stored in the bank card, such as a user account, a user password, etc., and the card information may be manually input by the user or may be pre-stored by the mobile terminal. When the mobile terminal receives the read request from the self-service device, Then read the card information.
  • the mobile terminal After the mobile terminal obtains the digital certificate information and the card information, the digital certificate information and the card information are compressed into the communication packet to generate a response message, and the response message is sent to the self-service device through the communication connection.
  • the mobile terminal receives the verification information returned by the self-service device according to the response message, and encrypts the verification information based on the signature key to obtain signature verification information.
  • the verification information refers to information that is received by the mobile terminal after the response message of the mobile terminal is verified and the verification result is valid.
  • the verification information may be a random number. If the mobile terminal receives the random number, the mobile terminal uses the signature key to digitally sign the random number to generate a random number carrying the digital signature, and The random number after digital signature is encapsulated into the signature verification information.
  • the mobile terminal sends the request amount and the signature verification information to the self-service device, so as to complete the withdrawal.
  • the mobile terminal may send the signature verification information to the self-service device, and then input the amount of the withdrawal by the user, and send the amount to the self-service device; or the mobile terminal may also input the user at the same time.
  • the request amount and signature verification information are sent to the self-service device.
  • the request amount can be the withdrawal amount.
  • the self-service device needs to verify the request amount and the signature verification information.
  • the self-service device compares the request amount with The signature verification information is forwarded to the server, and the server verifies the signature verification information, and checks whether the requested amount exceeds the stored amount on the card according to the card information acquired by the self-service device before, if the server verifies that the signature verification information is valid, and the request is If the amount does not exceed the stored amount, the server issues a command to confirm the withdrawal to the self-service device, and the self-service device performs the cash withdrawal operation according to the requested amount.
  • the mobile terminal first establishes a connection with the self-service device, and then receives the read request of the self-service device, and then responds to the request, acquires the user information, and sends a response message including the user information to the self-service.
  • the device further receives the verification information returned by the self-service device, encrypts the verification information based on the signature key, obtains signature verification information, and sends the request amount and the signature verification information to the self-service device.
  • FIG. 2 it is a schematic flowchart of a cardless withdrawal method according to a second embodiment of the present invention.
  • the method of the embodiment of the present invention may be implemented by various highly sophisticated mechatronic terminals.
  • the terminal may be a terminal with a payment processing function such as a self-service cash dispenser ATM or an automatic deposit machine CDM.
  • the cardless withdrawal method in the embodiment of the present invention includes the following steps:
  • the self-service device acquires a response message of the mobile terminal, where the response message includes user information.
  • the user information may include digital certificate information and card information, wherein the digital certificate may be preset in the mobile terminal, and when the mobile terminal receives the read request sent by the self-service device, the digital certificate is read.
  • Information may include information stored in a bank card such as a user account, a user password, and the like.
  • the method further includes: the self-service device establishes a connection with the mobile terminal by using a short-range wireless communication NFC, or the self-service device and the mobile terminal adopt The way to scan the graphic code is to establish a connection.
  • the self-service device and the mobile terminal establish a connection by using a scanning graphic code
  • the method includes: the self-service device invoking the camera module to read a graphic code displayed on the mobile terminal, generating communication connection information, or Displaying a graphic code on the display interface of the self-service device, and receiving communication connection information returned by the mobile terminal after scanning the graphic code; the self-service device establishes a connection with the mobile terminal according to the communication connection information.
  • the self-service device establishes a connection with the mobile terminal by using an NFC
  • the mobile terminal checks that the authentication information is correct, and the self-service device is in the The mobile terminal can establish a connection within the distance (for example, within 2 meters), then the self-service device directly establishes a connection with the mobile terminal.
  • the self-service device establishes a connection with the mobile terminal by scanning a graphic code
  • the mobile terminal checks the authentication information correctly
  • the mobile terminal The current interface displays a graphic code including communication connection information, and the graphic code is placed in the camera of the self-service device. If the camera of the self-service device recognizes the graphic code successfully, the mobile terminal establishes a connection with the self-service device.
  • the self-service device displays a graphic code including the communication connection information on the current interface, and the mobile terminal scans the graphic code. If the scan is successful, the self-service device establishes a connection with the mobile terminal.
  • the self-service device sends the response message to the server for identification, and if the server receives the verification information for the response message, forwarding the verification information to the mobile terminal.
  • the step of the server identifying the response message may be: first extracting user information included in the response message, the user information may include digital certificate information and card information, wherein the card information may specifically include bank card account information. And the password information of the corresponding account.
  • the server identifies whether the digital certificate information is valid according to the card information. If the digital certificate information is valid and corresponds to the card information, the server issues verification information for the response message.
  • the mobile terminal digitally signs the random number by using the personal private key, and sends the digital signature to the self-service device terminal, so that the self-service device terminal sends the digital signature to the server for verification.
  • the self-service device receives a request amount of the mobile terminal and signature verification information for signing the verification information, and generates a withdrawal request including a request amount and signature verification information, and sends the withdrawal request to the server. .
  • the verification information may be a random number or other verification methods.
  • the server generates and sends a set of random numbers to the self-service device, and the self-service device forwards the mobile device to the mobile terminal, and the mobile terminal digitally signs the random number by using a signature key, and includes The digital signature of the random number is sent to the self-service device, which is forwarded to the server by the self-service device.
  • the server uses the user public key to verify whether the random number in the digital signature is consistent with the random number generated by the server. If they are consistent, the transaction authentication is determined to pass.
  • the self-service device If receiving the confirmation message of the server, the self-service device performs a withdrawal process according to the requested amount.
  • the server determines that the signature verification information of the random number is valid, it is also required to check whether the account balance is greater than or equal to the requested amount based on the card information, and if the account balance is greater than or equal to the requested amount, the server issues a command to confirm the withdrawal.
  • the self-service device performs the cash-out step by the self-service device; if the account balance is less than the requested amount, the server issues a command for failing the withdrawal to the self-service device, and the self-service device displays a prompt message indicating that the balance is insufficient on the display screen.
  • step S1 the user opens the application of the banking service, enters the interface of the banking service application, selects step S2, enters the cardless withdrawal service, and then the mobile terminal establishes a connection with the self-service device, and sends an instruction to perform the cardless withdrawal operation to the
  • the self-service device, the self-service device performs step S3 for the instruction, and sends a response message for obtaining the user information to the mobile terminal, and the mobile terminal can find the user information in the preset chip, and then proceeds to step S4 to respond to the user information.
  • the message is sent to the self-service device, and the self-service device proceeds to step S5 to forward the response message to the server for identification.
  • Step S7 is performed by the self-service device, and the verification information is forwarded to the mobile device, and the mobile device needs to perform step S8, based on the personal private key.
  • the verification message is signed and the signature verification information is sent to the self-service device, and then the user performs step S9 on the mobile terminal to input the withdrawal amount, and the mobile terminal executes S10 to send the withdrawal amount and the signature verification message to the self-service device, and then the server The server verifies that the signature verification information and the withdrawal amount are valid. If valid, the server performs step S11: authorization on the self-service device, and commands the self-service device to perform step S12, and according to the withdrawal amount, the user can withdraw cash.
  • the self-service device first establishes a connection with the mobile terminal, obtains a response message that the mobile terminal includes the user information, and then forwards the message to the server for identification, and if the server receives the verification information. And forwarding the verification information to the mobile terminal, and forwarding the signature verification information and the request amount of the mobile terminal to the server for processing, which can ensure the authenticity and integrity of the withdrawal operation, reduce the operation steps of the withdrawal, and improve the cardless operation.
  • the security of withdrawals meets the intelligent needs for information security.
  • the device embodiment of the present invention is used to perform the first embodiment and the second embodiment of the method of the present invention.
  • the relevant parts of the embodiment of the present invention are shown.
  • FIG. 4 is a schematic structural diagram of a cardless withdrawal device according to a third embodiment of the present invention.
  • the device in the embodiment of the present invention may be disposed in various intelligent terminals.
  • the terminal may be a terminal with a payment processing function, such as a smart phone, a tablet computer, or a smart wearable device.
  • the cardless withdrawal device in the embodiment of the present invention includes:
  • the receiving module 401 is configured to receive a read request sent by the self-service device, and the read request is used to request to reply to the user information.
  • the obtaining module 402 is configured to obtain user information in response to the read request.
  • the user information may include digital certificate information and card information, where the digital certificate is stored in the security module of the terminal, and when the mobile terminal receives the read request from the self-service device, it reads the security module.
  • Information in a digital certificate may include information stored in the bank card, such as a user account, a user password, etc., and the card information may be manually input by the user or may be pre-stored by the security module.
  • the receiving module receives the read request from the self-service device, Then read the card information.
  • the sending module 403 is configured to send a response message to the self-service device, where the response message includes user information.
  • the receiving module 401 is further configured to receive the verification information returned by the self-service device according to the response message.
  • the security module 404 is configured to store the digital certificate and the signature key, and after signing the verification information based on the signature key, obtain signature verification information.
  • the sending module 403 is further configured to send the request amount and the signature verification information to the self-service device, so as to complete the withdrawal.
  • the device further includes: a display module 405, configured to display a user interface that establishes a connection with the self-service device; wherein the receiving module 401 is further configured to receive authentication information input on the user interface, The authentication information includes one or more of a fingerprint, a password, a gesture, and a password.
  • the connection module 406 is configured to establish a connection with the self-service device if the authentication information is valid.
  • connection module 406 is specifically configured to establish a connection with the self-service device by using a short-range wireless communication NFC, or establish a connection with the self-service device by using a scanning graphic code.
  • the connection module first establishes a connection with the self-service device, and then the receiving module receives the read request of the self-service device, and then the acquiring module responds to the request, acquires user information, and the sending module sends the user including The response message of the information is sent to the self-service device. Further, the receiving module receives the verification information returned by the self-service device, and the security module signs the verification information based on the signature key, and obtains signature verification information, and the request is sent by the sending module. The amount and the signature verification information are sent to the self-service device, which can ensure the authenticity and integrity of the withdrawal operation, reduce the operation steps of the withdrawal, improve the security of the card-free withdrawal, and meet the intelligent demand for information security.
  • FIG. 5 is a schematic structural diagram of a cardless withdrawal device according to a fourth embodiment of the present invention.
  • the device according to the embodiment of the present invention may be disposed in various highly sophisticated mechatronic terminals.
  • the device The terminal may be a terminal with a payment processing function such as a self-service cash dispenser ATM or an automatic deposit machine CDM.
  • the cardless withdrawal device in the embodiment of the present invention includes:
  • the obtaining module 504 is configured to obtain a response message of the mobile terminal, where the response message includes user information.
  • the communication module 501 is configured to send the response message to the server for identification, and if the server receives the verification information for the response message, forward the verification information to the mobile terminal.
  • the communication module 501 is further configured to receive a request amount of the mobile terminal and signature verification information for signing the verification information.
  • the generating module 502 is configured to generate a withdrawal request including the requested amount and the signature verification information.
  • the communication module 501 is further configured to send the withdrawal request to the server.
  • the processing module 503 is configured to: if receiving the confirmation message of the server, the self-service device performs a withdrawal process according to the requested amount.
  • the device further includes: a connection module 506, configured to establish a connection with the mobile terminal by using a short-range wireless communication NFC, or establish a connection with the mobile terminal by using a scanning graphic code.
  • a connection module 506 configured to establish a connection with the mobile terminal by using a short-range wireless communication NFC, or establish a connection with the mobile terminal by using a scanning graphic code.
  • the device further includes a camera module 505 configured to read a graphic code displayed on the mobile terminal; the connection module 506 is configured to establish a connection with the mobile terminal by using a scanning graphic code, where the specific setting is Generating communication connection information according to the graphic code displayed on the mobile terminal read by the camera module, or displaying the graphic code on the display interface, receiving communication connection information returned by the mobile terminal after scanning the graphic code; and according to the communication connection Information establishes a connection with the mobile terminal.
  • a camera module 505 configured to read a graphic code displayed on the mobile terminal
  • the connection module 506 is configured to establish a connection with the mobile terminal by using a scanning graphic code, where the specific setting is Generating communication connection information according to the graphic code displayed on the mobile terminal read by the camera module, or displaying the graphic code on the display interface, receiving communication connection information returned by the mobile terminal after scanning the graphic code; and according to the communication connection Information establishes a connection with the mobile terminal.
  • the connection module first establishes a connection with the mobile terminal, and the acquiring module acquires a response message that the mobile terminal includes the user information, and then the communication module forwards the message to the server for identification, if the communication
  • the module forwards the verification information to the mobile terminal, and forwards the signature verification information and the request amount of the mobile terminal to the server for processing, thereby ensuring the authenticity and integrity of the withdrawal operation, and reducing the withdrawal.
  • the operation steps improve the security of card-free withdrawals and meet the intelligent requirements for information security.
  • FIG. 6 is a schematic structural diagram of a cardless withdrawal device according to a fifth embodiment of the present invention.
  • the device may be a terminal with a payment processing function, such as a smart phone, a tablet computer, or a smart wearable device.
  • the cardless withdrawal device in the embodiment of the present invention includes: at least one user interface 601; at least one processor 602, such as a CPU; at least one memory 603; at least one output device 604, the user interface 601, processing The 602, the memory 603, and the output device 604 are connected by a bus. Among them, the bus is used to implement connection communication between these components.
  • the user interface 601 and the output device 604 of the device in the embodiment of the present invention may be wired transmission ports, or may be wireless devices, for example, including antenna devices, for performing signaling or data communication with other node devices.
  • the processor 602 can be a central processing unit (CPU), a network processor (NP), or a combination of a CPU and an NP.
  • CPU central processing unit
  • NP network processor
  • the processor 602 can also further include a hardware chip.
  • the hardware chip may be an application-specific integrated circuit (ASIC), a programmable logic device (PLD), or a combination thereof.
  • the PLD may be a complex programmable logic device (CPLD), a field-programmable gate array (FPGA), a general array logic (GAL), or any combination thereof.
  • the memory 603 may include a volatile memory such as a random-access memory (RAM); the memory may also include a non-volatile memory such as a flash memory (flash) Memory), hard disk drive (HDD) or solid-state drive (SSD); the memory 603 may also include a combination of the above types of memories.
  • RAM random-access memory
  • non-volatile memory such as a flash memory (flash) Memory), hard disk drive (HDD) or solid-state drive (SSD)
  • the memory 603 may also include a combination of the above types of memories.
  • the memory 603 is further configured to store program instructions.
  • the processor 602 can invoke the program instructions stored in the memory 603 to implement the cardless withdrawal method as shown in the first embodiment and the third embodiment of the present application.
  • the user interface 601 is configured to receive a read request sent by the self-service device, where the read request is used to request the mobile terminal to reply to the user information.
  • the processor 602 is configured to respond to the read request.
  • the user interface 601 is configured to obtain user information.
  • the output device 604 is configured to send a response message to the self-service device, where the response message includes user information.
  • the user interface 601 is further configured to receive verification information returned by the self-service device according to the response message.
  • the processor 602 is further configured to: after signing the verification information based on a signature key, obtain signature verification information.
  • the output device 604 is further configured to send the request amount and the signature verification information to the self-service device, so as to complete the withdrawal.
  • the method further includes: the processor 602 displays a user interface that establishes a connection with the self-service device; and the user interface 601 receives the authentication information input on the user interface.
  • the authentication information includes one or more of a fingerprint, a password, a gesture, and a password; if the authentication information is valid, the processor 602 establishes a connection with the self-service device.
  • the establishing a connection between the processor and the self-service device includes: establishing a connection with the self-service device by using a short-range wireless communication NFC, or establishing a connection with the self-service device by using a scanning graphic code.
  • the connection is first established by the processor and the self-service device, and then the user interface receives the read request of the self-service device, and then the processor responds to the request, and the user information is obtained by the user interface, and the output device is obtained by the output device.
  • the user device receives the verification information returned by the self-service device, and the processor signs the verification information based on the signature key, and obtains signature verification information, and is obtained by the output device.
  • Sending the request amount and the signature verification information to the self-service device can ensure the authenticity and integrity of the withdrawal operation, reduce the operation steps of the withdrawal, improve the security of the card-free withdrawal, and meet the intelligent demand for information security.
  • FIG. 7 is a schematic structural diagram of a cardless withdrawal device according to a sixth embodiment of the present invention.
  • the device may be a high-precision electromechanical device with a payment processing function, such as a self-service cash dispenser ATM and an automatic deposit machine CDM.
  • Integrated terminal the cardless withdrawal device in the embodiment of the present invention includes: at least one network interface 701; at least one processor 702, such as a CPU; at least one memory 703; at least one output device 704, the network interface 701, processing The 702, the memory 703, and the output device 704 can be connected by a bus. Among them, the bus is used to implement connection communication between these components.
  • the network interface 701 and the output device 704 of the device in the embodiment of the present invention may be wired transmission ports, or may be wireless devices, for example, including antenna devices, for performing signaling or data communication with other node devices.
  • the processor 702 can be a central processing unit (CPU), a network processor (NP), or a combination of a CPU and an NP.
  • CPU central processing unit
  • NP network processor
  • the processor 702 can also further include a hardware chip.
  • the hardware chip may be an application-specific integrated circuit (ASIC), a programmable logic device (PLD), or a combination thereof.
  • the PLD may be a complex programmable logic device (CPLD), a general array logic (GAL), or any combination thereof.
  • the memory 703 may include a volatile memory such as a random-access memory (RAM); the memory may also include a non-volatile memory such as a flash memory (flash) Memory), hard disk drive (HDD) or solid state drive (SSD); the memory 703 may also include a combination of the above types of memories.
  • RAM random-access memory
  • flash flash memory
  • HDD hard disk drive
  • SSD solid state drive
  • the memory 703 is further configured to store program instructions.
  • the processor 702 can invoke the program instructions stored in the memory 703 to implement the cardless withdrawal method as shown in the second embodiment and the fourth embodiment of the present application.
  • the network interface 701 is configured to obtain a response message of the mobile terminal, where the response message includes user information.
  • the output device 704 is configured to send the response message to the server for identification. If the network interface 701 receives the verification information of the server for the response message, the output device 704 forwards the verification information to the mobile terminal;
  • the network interface 701 is further configured to receive a request amount of the mobile terminal and signature verification information for signing the verification information.
  • the processor 702 is configured to generate a withdrawal request including a request amount and signature verification information.
  • the output device 704 is further configured to send the withdrawal request to the server.
  • the processor 702 is configured to perform a withdrawal process according to the requested amount if the network interface 701 receives the confirmation message of the server.
  • the method further includes: the processor establishes a connection with the mobile terminal by using a short-range wireless communication NFC, or the processor and the mobile terminal adopt a manner of scanning a graphic code. establish connection.
  • the processor establishes a connection with the mobile terminal by using a scanning graphic code, and specifically includes: calling a camera module to read a graphic code displayed on the mobile terminal, generating communication connection information, or displaying a graphic code, and receiving the mobile a communication connection information returned by the terminal after scanning the graphic code; establishing a connection with the mobile terminal according to the communication connection information.
  • the connection is first established by the processor and the mobile terminal, and the network interface obtains a response message that the mobile terminal includes the user information, and then the output device forwards the message to the server for identification, if the network After receiving the verification information of the server, the interface forwards the verification information to the mobile terminal, and forwards the signature verification information and the request amount of the mobile terminal to the server for processing, thereby ensuring the authenticity and integrity of the withdrawal operation, and reducing the withdrawal.
  • the operation steps improve the security of card-free withdrawals and meet the intelligent requirements for information security.
  • FIG. 8 is a schematic structural diagram of a cardless withdrawal system according to a seventh embodiment of the present invention.
  • the cardless withdrawal system in the embodiment of the present invention includes: a mobile terminal 801, a self-service device 802, and a server 803.
  • the self-service device 802 is configured to send a read request to the mobile terminal, where the read request is used to request the mobile terminal to reply to user information.
  • the mobile terminal 801 is configured to receive and respond to the read request, acquire user information, and send a response message to the self-service device, where the response message includes user information.
  • the self-service device 802 is further configured to receive the response message and send the response message to a server.
  • the server 803 is configured to identify the response message, and if the response result is that the response message is valid, send verification information for the response message to the self-service device.
  • the self-service device 802 is further configured to forward the verification information to the mobile terminal.
  • the mobile terminal 801 is further configured to receive the verification information, and after signing the verification information based on the signature key, obtain signature verification information, and send the request amount and the signature verification information to the self-service device.
  • the self-service device 802 is further configured to generate a withdrawal request including a request amount and signature verification information, and send the withdrawal request to the server.
  • the server 803 is further configured to verify, according to the withdrawal request, whether the withdrawal request is valid, and if valid, send a confirmation message to the self-service device.
  • the self-service device 802 is further configured to perform a withdrawal process according to the requested amount.
  • step S1 the user opens the application of the banking service, enters the interface of the banking service application, selects step S2, enters the cardless withdrawal service, and then the mobile terminal establishes a connection with the self-service device, and sends an instruction to perform the cardless withdrawal operation to the
  • the self-service device the self-service device performs step S3 for the instruction, and sends a response message for obtaining the user information to the mobile terminal, and the mobile terminal can find the user information in the preset chip, and then proceeds to step S4 to respond to the user information.
  • the message is sent to the self-service device, and the self-service device proceeds to step S5 to forward the response message to the server for identification.
  • Step S7 is performed by the self-service device, and the verification information is forwarded to the mobile device, and the mobile device needs to perform step S8, based on the personal private key.
  • the verification message is signed and the signature verification information is sent to the self-service device, and then the user performs step S9 on the mobile terminal to input the withdrawal amount, and the mobile terminal executes S10 to send the withdrawal amount and the signature verification message to the self-service device, and then the server The server verifies that the signature verification information and the withdrawal amount are valid. If valid, the server performs step S11: authorization on the self-service device, and commands the self-service device to perform step S12, and according to the withdrawal amount, the user can withdraw cash.
  • the storage medium may be a magnetic disk, an optical disk, a read-only memory (ROM), or a random access memory (RAM).

Landscapes

  • Engineering & Computer Science (AREA)
  • Physics & Mathematics (AREA)
  • Computer Security & Cryptography (AREA)
  • Signal Processing (AREA)
  • Health & Medical Sciences (AREA)
  • General Physics & Mathematics (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • General Engineering & Computer Science (AREA)
  • Electromagnetism (AREA)
  • General Health & Medical Sciences (AREA)
  • Toxicology (AREA)
  • Finance (AREA)
  • Theoretical Computer Science (AREA)
  • Accounting & Taxation (AREA)
  • Computer Vision & Pattern Recognition (AREA)
  • Computer Hardware Design (AREA)
  • Computing Systems (AREA)
  • Artificial Intelligence (AREA)
  • Business, Economics & Management (AREA)
  • Biomedical Technology (AREA)
  • Financial Or Insurance-Related Operations Such As Payment And Settlement (AREA)
  • Control Of Vending Devices And Auxiliary Devices For Vending Devices (AREA)
  • Telephone Function (AREA)
  • Telephonic Communication Services (AREA)

Abstract

一种无卡取款的方法、装置和系统,其中方法包括:移动终端接收自助设备发出的读取请求,所述读取请求用于请求所述移动终端回复用户信息(S101);所述移动终端响应所述读取请求,获取用户信息,并向所述自助设备发送响应消息,所述响应消息包括用户信息(S102);所述移动终端接收所述自助设备根据所述响应消息返回的验证信息,并基于签名密钥对所述验证信息进行签名后,得到签名验证信息(S103);所述移动终端将请求数额和所述签名验证信息发送给所述自助设备,以便于完成取款(S104)。该方法可提高无卡取款的安全性,满足对信息安全的智能化需求。

Description

一种无卡取款的方法、装置和系统
本申请要求于2016年10月27日提交中国专利局,申请号为201610969892.5、发明名称为“一种无卡取款的方法、装置和系统”的中国专利申请的优先权,其全部内容通过引用结合在本申请中。
技术领域
本发明涉及通信技术领域,尤其涉及一种无卡取款的方法、装置和系统。
背景技术
随着通信技术的发展,为满足对信息安全的需求,移动终端的功能也在不断的丰富与完善。
传统的在银行自助提款机上进行取款的方式,是必须通过银行卡作为媒介,输入银行卡的密码,银行自助提款机上核对密码正确之后才可进行取款,这种方式需要的操作步骤较多,且受到媒介的限制,不能满足对取款方式的智能化需求,并且,银行卡信息容易被非法复制,密码也容易被破解,安全性较低。
发明内容
本发明实施例所要解决的技术问题在于,提供一种无卡取款的方法、装置和系统,可提高无卡取款的安全性,满足对信息安全的智能化需求。
为了解决上述技术问题,本发明实施例提供了一种无卡取款的方法,包括:
移动终端接收自助设备发出的读取请求,所述读取请求用于请求所述移动终端回复用户信息;
所述移动终端响应所述读取请求,获取用户信息,并向所述自助设备发送响应消息,所述响应消息包括用户信息;
所述移动终端接收所述自助设备根据所述响应消息返回的验证信息,并基于签名密钥对所述验证信息进行签名后,得到签名验证信息;
所述移动终端将请求数额和所述签名验证信息发送给所述自助设备,以便于完成取款。
其中,所述移动终端接收自助设备发出的读取请求之前,还包括:
显示与自助设备建立连接的用户界面;
接收在所述用户界面上输入的鉴权信息,所述鉴权信息包括指纹、口令、手势、密码的一种或多种;
若所述鉴权信息有效,则所述移动终端与所述自助设备建立连接。
其中,所述移动终端与所述自助设备建立连接,包括:
所述移动终端与所述自助设备采用近距离无线通讯NFC的方式建立连接,或者所述移动终端与所述自助设备采用扫描图形码的方式建立连接。
相应地,本发明实施例还提供了一种无卡取款的方法,包括:
自助设备获取移动终端的响应消息,所述响应消息包括用户信息;
所述自助设备将所述响应消息发送至服务器进行识别,若接收到所述服务器针对所述响应消息的验证信息,则将所述验证信息转发至所述移动终端;
所述自助设备接收所述移动终端的请求数额和对所述验证信息进行签名的签名验证信息,并生成包括请求数额和签名验证信息的取款请求,将所述取款请求发送至所述服务器;
若接收到所述服务器的确认消息,则所述自助设备根据所述请求数额进行取款处理。
其中,所述自助设备获取移动终端的响应消息之前,还包括:
所述自助设备与所述移动终端采用近距离无线通讯NFC的方式建立连接,或者所述自助设备与所述移动终端采用扫描图形码的方式建立连接。
其中,所述自助设备与所述移动终端采用扫描图形码的方式建立连接,具体包括:
所述自助设备调用摄像模块读取移动终端上显示的图形码,生成通信连接信息,或
在所述自助设备的显示界面上显示图形码,接收所述移动终端扫描所述图形码后返回的通信连接信息;
所述自助设备根据所述通信连接信息与所述移动终端建立连接。
相应地,本发明实施例还提供一种无卡取款的装置,包括:
接收模块,设置为接收自助设备发出的读取请求,所述读取请求用于请求回复用户信息;
获取模块,设置为响应所述读取请求,获取用户信息;
发送模块,设置为向所述自助设备发送响应消息,所述响应消息包括用户信息;
所述接收模块,还设置为接收所述自助设备根据所述响应消息返回的验证信息;
安全模块,设置为存储数字证书和签名密钥,并基于所述签名密钥对所述验证信息进行签名后,得到签名验证信息;
所述发送模块,还设置为将请求数额和签名验证信息发送给所述自助设备,以便于完成取款。
其中,所述装置还包括:显示模块,设置为显示与自助设备建立连接的用户界面;
其中,所述接收模块,还设置为接收在所述用户界面上输入的鉴权信息,所述鉴权信息包括指纹、口令、手势、密码的一种或多种;
连接模块,设置为若所述鉴权信息有效,则与所述自助设备建立连接。
其中,所述连接模块,具体设置为与所述自助设备采用近距离无线通讯NFC的方式建立连接,或者与所述自助设备采用扫描图形码的方式建立连接。
相应地,本发明实施例还提供一种无卡取款的装置,包括:
获取模块,设置为获取移动终端的响应消息,所述响应消息包括用户信息;
通信模块,设置为将所述响应消息发送至服务器进行识别,若接收到所述服务器针对所述响应消息的验证信息,则将所述验证信息转发至所述移动终端;
所述通信模块,还设置为接收所述移动终端的请求数额和对所述验证信息进行加密的签名验证信息;
生成模块,设置为生成包括请求数额和签名验证信息的取款请求;
所述通信模块,还设置为将所述取款请求发送至所述服务器;
处理模块,设置为若接收到所述服务器的确认消息,则所述自助设备根据所述请求数额进行取款处理。
其中,所述装置还包括:
连接模块,设置为与所述移动终端采用近距离无线通讯NFC的方式建立连接,或者与所述移动终端采用扫描图形码的方式建立连接。
其中,所述装置还包括摄像模块,设置为读取移动终端上显示的图形码;
所述连接模块,设置为与所述移动终端采用扫描图形码的方式建立连接,具体设置为根据摄像模块读取的移动终端上显示的图形码,生成通信连接信息,或
在显示界面上显示图形码,接收所述移动终端扫描所述图形码后返回的通信连接信息;
根据所述通信连接信息与所述移动终端建立连接。
相应地,本发明实施例还提供一种无卡取款的系统,包括:移动终端、自助设备、服务器;
所述自助设备,发出读取请求至所述移动终端,所述读取请求用于请求所述移动终端回复用户信息;
所述移动终端,接收并响应所述读取请求,获取用户信息,并向所述自助设备发送响应消息,所述响应消息包括用户信息;
所述自助设备,还接收所述响应消息,并将所述响应消息发送至服务器;
所述服务器,对所述响应消息进行识别,若识别结果为所述响应消息有效,则发出针对所述响应消息的验证信息至所述自助设备;
所述自助设备,还将所述验证信息转发至所述移动终端;
所述移动终端,还接收所述验证信息,基于签名密钥对所述验证信息进行签名后,得到签名验证信息,并将请求数额和所述签名验证信息发送给所述自助设备;
所述自助设备,还生成包括请求数额和签名验证信息的取款请求,将所述取款请求发送至所述服务器;
所述服务器,还根据所述取款请求验证所述取款请求是否有效,若有效,则发出确认消息至所述自助设备;
所述自助设备,还根据所述请求数额进行取款处理。
实施本发明各种实施例或其实现方式,具有如下有益效果:通过移动终端接收自助设备的读取请求,然后响应该请求,获取用户信息,发送包括用户信息的响应消息至该自助设备,进一步的,该移动终端接收该自助设备返回的验证信息,该移动终端基于签名密钥对该验证信息进行加密后,得到签名验证信息,并把请求数额和该签名验证信息发送至该自助设备,可以减少取款的操作步骤,提高无卡取款的安全性,满足对信息安全的智能化需求。
附图说明
为了更清楚地说明本发明实施例或现有技术中的技术方案,下面将对实施例或现有技术描述中所需要使用的附图作简单地介绍,显而易见地,下面描述中的附图仅仅是本发明的一些实施例,对于本领域普通技术人员来讲,在不付出创造性劳动的前提下,还可以根据这些附图获得其他的附图。
图1是本发明第一实施例提供的一种无卡取款方法的示意流程图;
图2是本发明第二实施例提供的一种无卡取款方法的示意流程图;
图3是本发明第二实施例提供的信息交互示意图;
图4是本发明第三实施例提供的一种无卡取款装置的结构示意图;
图5是本发明第四实施例提供的一种无卡取款装置的结构示意图;
图6是本发明第五实施例提供的一种无卡取款装置的结构示意图;
图7是本发明第六实施例提供的一种无卡取款装置的结构示意图;
图8是本发明第七实施例提供的一种无卡取款系统的结构示意图。
具体实施方式
下面将结合本发明实施例中的附图,对本发明实施例中的技术方案进行清楚、完整地描述,显然,所描述的实施例仅仅是本发明一部分实施例,而不是全部的实施例。基于本发明中的实施例,本领域普通技术人员在没有做出创造性劳动前提下所获得的所有其他实施例,都属于本发明保护的范围。
请参阅图1,是本发明第一实施例提供的一种无卡取款方法的示意流程图。本发明实施例的所述方法可以由各种智能终端来执行,具体的,智能终端可以是智能手机、平板电脑、智能可穿戴设备等带支付处理功能的终端。如图1所示,本发明实施例中的无卡取款方法包括以下步骤:
S101、移动终端接收自助设备发出的读取请求,所述读取请求用于请求所述移动终端回复用户信息。
可选的,所述移动终端接收自助设备发出的读取请求之前,还包括:显示与自助设备建立连接的用户界面;接收在所述用户界面上输入的鉴权信息,所述鉴权信息包括指纹、口令、手势、密码的一种或多种;若所述鉴权信息有效,则所述移动终端与所述自助设备建立连接。
需要说明的是,所述用户界面可以是银行的手机银行交互界面,也可以是该移动终端预置的与自助设备交互的界面,当然,也可以是其他类型的用户界面。
具体的,当用户在当前用户界面输入鉴权信息时,移动终端接收到用户输入的鉴权信息,该移动终端核对该鉴权信息是否正确,如果鉴权信息正确,则进入移动终端和自助设备连接的页面,如果鉴权信息不正确,则在当前用户界面显示密码错误,用户可以选择再次输入密码,也可以选择退出当前用户界面。
其中,鉴权信息包括指纹、口令、手势、密码等方式,用户可以预先设置进入用户界面时使用哪一种或多种鉴权方式,也可以使用移动终端默认的鉴权方式,当然还可以使用其他方式。在一些可行的实施例中,用户预先设置进入当前用户界面的鉴权信息,该移动终端存储该鉴权信息,当用户再次进入该用户界面时,需要输入预先设置的鉴权信息,然后由移动终端比对用户输入的鉴权信息和预先存储的鉴权信息是否相同,如果相同,则移动终端与该自助设备进入建立连接的页面,如果不相同,则在移动终端的该用户界面上显示密码错误的提示消息。
其中,所述移动终端与所述自助设备建立连接,包括:所述移动终端与所述自助设备采用近距离无线通讯NFC的方式建立连接,或者所述移动终端与所述自助设备采用扫描图形码的方式建立连接。
需要说明的是,近距离无线通讯NFC是由非接触式射频识别以及互联互通技术演变而来,在单一的芯片上结合感应式读卡器、感应式卡片和点对点的功能,在短距离内与兼容的设备进行识别和数据交换。其中,使用NFC技术需要在该移动终端内置NFC芯片,使得数据能够实现双向传送的功能。这一技术适用于电子货币支付,极大的保证了无卡取款的安全性。
还需要说明的是,若该移动终端与该自助设备采用NFC的方式建立连接,那么用户在该用户界面输入鉴权信息后,若移动终端核对该鉴权信息正确,且该自助设备在该移动终端可建立连接的距离范围内(例如2米内),那么该移动终端直接与该自助设备建立连接。
还需要说明的是,若移动终端与该自助设备采用扫描图形码的方式建立连接,那么用户在该用户界面输入鉴权信息后,若移动终端核对该鉴权信息正确,该移动终端就会在当前界面显示一个包含通信连接信息的图形码,将该图形码放入该自助设备的摄像头处,如果该自助设备的摄像头识别图形码成功,则该移动终端与该自助设备建立连接。或者,用户在该用户界面输入鉴权信息后,若移动终端核对该鉴权信息正确,则该自助设备在当前界面上显示一个包含通信连接信息的图形码,由移动终端扫描该图形码,若扫描成功,则该移动终端与该自助设备建立连接。
其中,图形码可以是二维码、条形码等形式,该图形码中包含有建立通信连接的相关信息,该信息一般由0、1的二进制数字组合而成,以便于计算机等机器设备进行识别。
S102、所述移动终端响应所述读取请求,获取用户信息,并向所述自助设备发送响应消息,所述响应消息包括用户信息。
需要说明的是,该用户信息可以包括数字证书信息和卡片信息,其中,数字证书可以预置于该移动终端内,当移动终端接收到自助设备发出的读取请求时,则读取数字证书中的信息。卡片信息可以包括用户账号,用户密码等存储在银行卡片中的信息,该卡片信息可以由用户手动输入,也可以由移动终端预先存储,当移动终端接收到该自助设备发出的读取请求时,则读取该卡片信息。
其中,当移动终端获取了该数字证书信息和卡片信息之后,则压缩该数字证书信息和卡片信息至通信包中,生成响应消息,再将该响应消息通过通信连接发送给该自助设备。
S103、所述移动终端接收所述自助设备根据所述响应消息返回的验证信息,并基于签名密钥对所述验证信息进行加密后,得到签名验证信息。
需要说明的是,该验证信息是指在对该移动终端的响应消息进行验证,验证结果有效后,该移动终端才会接收到的信息。在一些可行的实施方式中,验证信息可以是随机数,若移动终端接收到随机数,移动终端则利用该签名密钥对随机数进行数字签名,生成携带有该数字签名的随机数,并将进行数字签名后的随机数封装到签名验证信息中。
S104、所述移动终端将请求数额和签名验证信息发送给所述自助设备,以便于完成取款。
在一些可行的实施方式中,移动终端可以是将该签名验证信息发送给自助设备之后,再由用户输入取款的数额,并发送给该自助设备;或者,移动终端也可以是同时将用户输入的请求数额和签名验证信息发送给该自助设备。
还需要说明的是,请求数额可以是取款金额。具体的,该移动终端在将该请求数额和该签名验证信息发送给该自助设备之后,该自助设备需要对该请求数额和该签名验证信息进行验证,一般情况下,自助设备将该请求数额和该签名验证信息转发给服务器,由服务器进行对签名验证信息的验证,以及根据之前该自助设备获取到的卡片信息核对请求数额是否超出卡片上的存储数额,如果服务器验证签名验证信息有效,且请求数额未超出存储数额,那么服务器则发出确认出钞的命令至该自助设备,该自助设备则根据请求数额进行出钞操作。
可以看出,本发明实施例技术方案中,首先通过移动终端与自助设备建立连接,接着接收自助设备的读取请求,然后响应该请求,获取用户信息,发送包括用户信息的响应消息至该自助设备,进一步的,该移动终端接收该自助设备返回的验证信息,基于签名密钥对该验证信息进行加密后,得到签名验证信息,并把请求数额和该签名验证信息发送至该自助设备,可以确保取款操作的真实性、完整性,同时减少了取款的操作步骤,提高无卡取款的安全性,满足对信息安全的智能化需求。
请参阅图2,是本发明第二实施例提供的一种无卡取款方法的示意流程图。本发明实施例的所述方法可以由各种高度精密的机电一体化终端来执行,具体的,该终端可以是自助提款机ATM、自动存款机CDM等带支付处理功能的终端。如图2所示,本发明的实施例中的无卡取款方法包括以下步骤:
S201、自助设备获取移动终端的响应消息,所述响应消息包括用户信息。
需要说明的是,该用户信息可以包括数字证书信息和卡片信息,其中,数字证书可以预置于该移动终端内,当移动终端接收到自助设备发出的读取请求时,则读取数字证书中的信息。卡片信息可以包括用户账号,用户密码等存储在银行卡片中的信息。
可选的,所述自助设备获取移动终端的响应消息之前,还包括:所述自助设备与所述移动终端采用近距离无线通讯NFC的方式建立连接,或者所述自助设备与所述移动终端采用扫描图形码的方式建立连接。
可选的,所述自助设备与所述移动终端采用扫描图形码的方式建立连接,具体包括:所述自助设备调用摄像模块读取移动终端上显示的图形码,生成通信连接信息,或在所述自助设备的显示界面上显示图形码,接收所述移动终端扫描所述图形码后返回的通信连接信息;所述自助设备根据所述通信连接信息与所述移动终端建立连接。
需要说明的是,若该自助设备与该移动终端采用NFC的方式建立连接,那么用户在移动终端的用户界面输入鉴权信息后,若移动终端核对该鉴权信息正确,且该自助设备在该移动终端可建立连接的距离范围内(例如2米内),那么该自助设备直接与该移动终端建立连接。
具体的,若该自助设备与该移动终端采用扫描图形码的方式建立连接,那么用户在移动终端的用户界面输入鉴权信息后,若移动终端核对该鉴权信息正确,该移动终端就会在当前界面显示一个包含通信连接信息的图形码,将该图形码放入该自助设备的摄像头处,如果该自助设备的摄像头识别图形码成功,则该移动终端与该自助设备建立连接。或者,用户在该用户界面输入鉴权信息后,若移动终端核对该鉴权信息正确,则该自助设备在当前界面上显示一个包含通信连接信息的图形码,由移动终端扫描该图形码,若扫描成功,则该自助设备与该移动终端建立连接。
S202、所述自助设备将所述响应消息发送至服务器进行识别,若接收到所述服务器针对所述响应消息的验证信息,则将所述验证信息转发至所述移动终端。
需要说明的是,服务器识别该响应消息的步骤,可以是首先提取出包含在响应消息中的用户信息,用户信息可以包括数字证书信息和卡片信息,其中,卡片信息又可以具体包括银行卡账号信息和对应账号的密码信息。该服务器根据卡片信息识别数字证书信息是否有效,如果数字证书信息有效且与卡片信息相对应,那么该服务器针对该响应消息发出验证信息。
所述移动终端利用所述个人私钥对随机数进行数字签名,并将所述数字签名发送给所述自助设备终端,以便所述自助设备终端将所述数字签名发送给服务器进行验证。
S203、所述自助设备接收所述移动终端的请求数额和对所述验证信息进行签名的签名验证信息,并生成包括请求数额和签名验证信息的取款请求,将所述取款请求发送至所述服务器。
需要说明的是,验证信息可以是随机数,也可以是其他验证方式。在一些可行的实施方式中,该服务器产生并发送一组随机数给该自助设备,由该自助设备转发给该移动终端,该移动终端利用签名密钥对该随机数进行数字签名,并把包含随机数的数字签名发送给该自助设备,由该自助设备转发给该服务器。服务器接收到包含随机数的数字签名后,使用用户公钥验证数字签名中的随机数和服务器产生的随机数是否一致,如果一致,则判断该次交易身份验证通过。
S204、若接收到所述服务器的确认消息,则所述自助设备根据所述请求数额进行取款处理。
还需要说明的是,该服务器判断该随机数的签名验证信息有效之后,还需要基于卡片信息查询账户余额是否大于等于请求数额,如果账户余额大于等于请求数额,则该服务器发出确认取款的命令给自助设备,由该自助设备进行出钞步骤;如果账户余额小于请求数额,则该服务器发出取款失败的命令给自助设备,该自助设备在显示屏上显示余额不足的提示消息。
举例来说,如图3所示,显示了用户、自助设备、服务器、移动终端的信息交互过程。在步骤S1,用户打开银行服务的应用,进入该银行服务应用的界面,选择步骤S2,进入无卡取款服务,然后该移动终端与自助设备建立连接,并发送进行无卡取款操作的指令给该自助设备,自助设备针对该指令进行步骤S3,发出获取用户信息的响应消息给该移动终端,移动终端可以在预置的芯片中查找到用户信息,然后进行步骤S4,将该包含用户信息的响应消息发送给该自助设备,自助设备再进行步骤S5,转发该响应消息给服务器进行识别。
若服务器识别该响应消息有效,则进行步骤S6,发送验证消息给自助设备,由自助设备执行步骤S7,将该验证信息转发给移动设备,该移动设备需要执行步骤S8,基于个人私钥对该验证消息进行签名并发送签名验证信息给自助设备,再由用户在移动终端上执行步骤S9,输入取款金额,由移动终端执行S10,将取款金额和签名验证消息发给该自助设备,然后由服务器识别该签名验证信息和取款金额是否有效,如果有效,则该服务器对该自助设备进行步骤S11:授权,命令该自助设备执行步骤S12,根据取款金额完成出钞步骤,用户即可提取到现金。
可以看出,本发明实施例技术方案中,首先通过自助设备与移动终端建立连接,获取到移动终端包含用户信息的响应消息,然后将该消息转发至服务器进行识别,若接收到服务器的验证信息,则转发该验证信息至该移动终端,并转发该移动终端的签名验证信息和请求数额至服务器进行处理,可以确保取款操作的真实性、完整性,同时减少了取款的操作步骤,提高无卡取款的安全性,满足对信息安全的智能化需求。
下面为本发明装置实施例,本发明装置实施例用于执行本发明方法第一实施例和第二实施例实现的方法,为了便于说明,仅示出了本发明实施例相关的部分,具体未揭示的部分,请参照本发明第一实施例和第二实施例。
请参阅图4,是本发明第三实施例提供的一种无卡取款装置的结构示意图。本发明实施例的所述装置可以设置在各种智能终端中,具体的,该终端可以是智能手机、平板电脑、智能可穿戴设备等带支付处理功能的终端。如图4所示,本发明实施例中的无卡取款装置包括:
接收模块401,设置为接收自助设备发出的读取请求,所述读取请求用于请求回复用户信息。
获取模块402,设置为响应所述读取请求,获取用户信息。
需要说明的是,该用户信息可以包括数字证书信息和卡片信息,其中,数字证书存储于终端的安全模块中,当移动终端接收到自助设备发出的读取请求时,则读取安全模块中的数字证书中的信息。卡片信息可以包括用户账号,用户密码等存储在银行卡片中的信息,该卡片信息可以由用户手动输入,也可以由安全模块预先存储,当接收模块接收到该自助设备发出的读取请求时,则读取该卡片信息。
发送模块403,设置为向所述自助设备发送响应消息,所述响应消息包括用户信息。
其中,所述接收模块401,还设置为接收所述自助设备根据所述响应消息返回的验证信息。
安全模块404,设置为存储数字证书和签名密钥,并基于所述签名密钥对所述验证信息进行签名后,得到签名验证信息。
其中,发送模块403,还设置为将请求数额和签名验证信息发送给所述自助设备,以便于完成取款。
可选的,所述装置还包括:显示模块405,设置为显示与自助设备建立连接的用户界面;其中,所述接收模块401,还设置为接收在所述用户界面上输入的鉴权信息,所述鉴权信息包括指纹、口令、手势、密码的一种或多种;连接模块406,设置为若所述鉴权信息有效,则与所述自助设备建立连接。
可选的,所述连接模块406,具体设置为与所述自助设备采用近距离无线通讯NFC的方式建立连接,或者与所述自助设备采用扫描图形码的方式建立连接。
可以看出,本发明实施例技术方案中,首先通过连接模块与自助设备建立连接,接着接收模块接收自助设备的读取请求,然后获取模块响应该请求,获取用户信息,由发送模块发送包括用户信息的响应消息至该自助设备,进一步的,该接收模块接收该自助设备返回的验证信息,该安全模块基于签名密钥对该验证信息进行签名后,得到签名验证信息,并由发送模块把请求数额和该签名验证信息发送至该自助设备,可以确保取款操作的真实性、完整性,同时减少了取款的操作步骤,提高无卡取款的安全性,满足对信息安全的智能化需求。
请参阅图5,是本发明第四实施例提供的一种无卡取款装置的结构示意图,本发明实施例的所述装置可以设置在各种高度精密的机电一体化终端中,具体的,该终端可以是自助提款机ATM、自动存款机CDM等带支付处理功能的终端。如图5所示,本发明实施例中的无卡取款装置包括:
获取模块504,设置为获取移动终端的响应消息,所述响应消息包括用户信息。
通信模块501,设置为将所述响应消息发送至服务器进行识别,若接收到所述服务器针对所述响应消息的验证信息,则将所述验证信息转发至所述移动终端。
所述通信模块501,还设置为接收所述移动终端的请求数额和对所述验证信息进行签名的签名验证信息。
生成模块502,设置为生成包括请求数额和签名验证信息的取款请求。
所述通信模块501,还设置为将所述取款请求发送至所述服务器。
处理模块503,设置为若接收到所述服务器的确认消息,则所述自助设备根据所述请求数额进行取款处理。
可选的,所述装置还包括:连接模块506,设置为与所述移动终端采用近距离无线通讯NFC的方式建立连接,或者与所述移动终端采用扫描图形码的方式建立连接。
可选的,所述装置还包括摄像模块505,设置为读取移动终端上显示的图形码;所述连接模块506,设置为与所述移动终端采用扫描图形码的方式建立连接,具体设置为根据摄像模块读取的移动终端上显示的图形码,生成通信连接信息,或在显示界面上显示图形码,接收所述移动终端扫描所述图形码后返回的通信连接信息;根据所述通信连接信息与所述移动终端建立连接。
可以看出,本发明实施例技术方案中,首先通过连接模块与移动终端建立连接,获取模块获取到移动终端包含用户信息的响应消息,然后由通信模块将该消息转发至服务器进行识别,若通信模块接收到服务器的验证信息,则转发该验证信息至该移动终端,并转发该移动终端的签名验证信息和请求数额至服务器进行处理,可以确保取款操作的真实性、完整性,同时减少了取款的操作步骤,提高无卡取款的安全性,满足对信息安全的智能化需求。
请参阅图6,是本发明第五实施例提供的一种无卡取款装置的结构示意图,所述装置可以是智能手机、平板电脑、智能可穿戴设备等带支付处理功能的终端。如图6所示,本发明实施例中的无卡取款装置包括:至少一个用户接口601;至少一个处理器602,例如CPU;至少一个存储器603;至少一个输出设备604,上述用户接口601、处理器602、存储器603和输出设备604通过总线连接。其中,总线用于实现这些组件之间的连接通信。其中,本发明实施例中装置的用户接口601和输出设备604可以是有线发送端口,也可以为无线设备,例如包括天线装置,用于与其他节点设备进行信令或数据的通信。
该处理器602可以是中央处理器(central processing unit,CPU),网络处理器(network processor,NP)或者CPU和NP的组合。
该处理器602还可以进一步包括硬件芯片。上述硬件芯片可以是专用集成电路(application-specific integrated circuit,ASIC),可编程逻辑器件(programmable logic device,PLD)或其组合。上述PLD可以是复杂可编程逻辑器件(complex programmable logic device,CPLD),现场可编程逻辑门阵列(field-programmable gate array,FPGA),通用阵列逻辑(generic array logic,GAL)或其任意组合。
该存储器603可以包括易失性存储器(volatile memory),例如随机存取存储器(random-access memory,RAM);存储器也可以包括非易失性存储器(non-volatile memory),例如快闪存储器(flash memory),硬盘(hard disk drive,HDD)或固态硬盘(solid-state drive,SSD);存储器603还可以包括上述种类的存储器的组合。
可选地,该存储器603还用于存储程序指令。该处理器602可以调用该存储器603存储的程序指令,实现如本申请第一实施例、第三实施例所示的无卡取款方法。
该用户接口601,用于接收自助设备发出的读取请求,所述读取请求用于请求所述移动终端回复用户信息。
该处理器602,用于响应所述读取请求。
该用户接口601,用于获取用户信息。
该输出设备604,用于向所述自助设备发送响应消息,所述响应消息包括用户信息。
该用户接口601,还用于接收所述自助设备根据所述响应消息返回的验证信息。
该处理器602,还用于基于签名密钥对所述验证信息进行签名后,得到签名验证信息。
该输出设备604,还用于将请求数额和签名验证信息发送给所述自助设备,以便于完成取款。
可选的,所述用户接口601接收自助设备发出的读取请求之前,还包括:处理器602显示与自助设备建立连接的用户界面;用户接口601接收在所述用户界面上输入的鉴权信息,所述鉴权信息包括指纹、口令、手势、密码的一种或多种;若所述鉴权信息有效,则处理器602与所述自助设备建立连接。
可选的,所述处理器与所述自助设备建立连接,包括:与所述自助设备采用近距离无线通讯NFC的方式建立连接,或者与所述自助设备采用扫描图形码的方式建立连接。
可以看出,本发明实施例技术方案中,首先通过处理器与自助设备建立连接,接着用户接口接收自助设备的读取请求,然后处理器响应该请求,由用户接口获取用户信息,由输出设备发送包括用户信息的响应消息至该自助设备,进一步的,该用户设备接收该自助设备返回的验证信息,处理器基于签名密钥对该验证信息进行签名后,得到签名验证信息,并由输出设备把请求数额和该签名验证信息发送至该自助设备,可以确保取款操作的真实性、完整性,同时减少了取款的操作步骤,提高无卡取款的安全性,满足对信息安全的智能化需求。
请参阅图7,是本发明第六实施例提供的一种无卡取款装置的结构示意图,所述装置可以是是自助提款机ATM、自动存款机CDM等带支付处理功能的高度精密的机电一体化终端。如图7所示,本发明实施例中的无卡取款装置包括:至少一个网络接口701;至少一个处理器702,例如CPU;至少一个存储器703;至少一个输出设备704,上述网络接口701、处理器702、存储器703和输出设备704可以通过总线连接。其中,总线用于实现这些组件之间的连接通信。其中,本发明实施例中装置的网络接口701和输出设备704可以是有线发送端口,也可以为无线设备,例如包括天线装置,用于与其他节点设备进行信令或数据的通信。
该处理器702可以是中央处理器(central processing unit,CPU),网络处理器(network processor,NP)或者CPU和NP的组合。
该处理器702还可以进一步包括硬件芯片。上述硬件芯片可以是专用集成电路(application-specific integrated circuit,ASIC),可编程逻辑器件(programmable logic device,PLD)或其组合。上述PLD可以是复杂可编程逻辑器件(complex programmable logic device,CPLD),通用阵列逻辑(generic array logic,GAL)或其任意组合。
该存储器703可以包括易失性存储器(volatile memory),例如随机存取存储器(random-access memory,RAM);存储器也可以包括非易失性存储器(non-volatile memory),例如快闪存储器(flash memory),硬盘(hard disk drive,HDD)或固态硬盘(solid-state drive,SSD);存储器703还可以包括上述种类的存储器的组合。
可选地,该存储器703还用于存储程序指令。该处理器702可以调用该存储器703存储的程序指令,实现如本申请第二实施例、第四实施例所示的无卡取款方法。
网络接口701,用于获取移动终端的响应消息,所述响应消息包括用户信息。
输出设备704,用于将所述响应消息发送至服务器进行识别。若网络接口701若接收到所述服务器针对所述响应消息的验证信息,则输出设备704将所述验证信息转发至所述移动终端;
该网络接口701,还用于接收所述移动终端的请求数额和对所述验证信息进行签名的签名验证信息。
处理器702,用于生成包括请求数额和签名验证信息的取款请求。
输出设备704,还用于将所述取款请求发送至所述服务器。
该处理器702,用于若网络接口701接收到所述服务器的确认消息,则根据所述请求数额进行取款处理。
可选的,该网络接口获取移动终端的响应消息之前,还包括:处理器与所述移动终端采用近距离无线通讯NFC的方式建立连接,或者处理器与所述移动终端采用扫描图形码的方式建立连接。
可选的,处理器与所述移动终端采用扫描图形码的方式建立连接,具体包括:调用摄像模块读取移动终端上显示的图形码,生成通信连接信息,或显示图形码,接收所述移动终端扫描所述图形码后返回的通信连接信息;根据所述通信连接信息与所述移动终端建立连接。
可以看出,本发明实施例技术方案中,首先通过处理器与移动终端建立连接,网络接口获取到移动终端包含用户信息的响应消息,然后由输出设备将该消息转发至服务器进行识别,若网络接口接收到服务器的验证信息,则转发该验证信息至该移动终端,并转发该移动终端的签名验证信息和请求数额至服务器进行处理,可以确保取款操作的真实性、完整性,同时减少了取款的操作步骤,提高无卡取款的安全性,满足对信息安全的智能化需求。
下面为本发明系统实施例,请参阅图8,是本发明第七实施例提供的一种无卡取款系统的结构示意图。如图8所示,本发明实施例中的无卡取款系统,包括:包括:移动终端801、自助设备802、服务器803。
所述自助设备802,用于发出读取请求至所述移动终端,所述读取请求用于请求所述移动终端回复用户信息。
所述移动终端801,用于接收并响应所述读取请求,获取用户信息,并向所述自助设备发送响应消息,所述响应消息包括用户信息。
所述自助设备802,还用于接收所述响应消息,并将所述响应消息发送至服务器。
所述服务器803,用于对所述响应消息进行识别,若识别结果为所述响应消息有效,则发出针对所述响应消息的验证信息至所述自助设备。
所述自助设备802,还用于将所述验证信息转发至所述移动终端。
所述移动终端801,还用于接收所述验证信息,基于签名密钥对所述验证信息进行签名后,得到签名验证信息,并将请求数额和所述签名验证信息发送给所述自助设备。
所述自助设备802,还用于生成包括请求数额和签名验证信息的取款请求,将所述取款请求发送至所述服务器。
所述服务器803,还用于根据所述取款请求验证所述取款请求是否有效,若有效,则发出确认消息至所述自助设备。
所述自助设备802,还用于根据所述请求数额进行取款处理。
在一些可行的实施方式中,如图3所示,显示了用户、自助设备、服务器、移动终端的信息交互过程。在步骤S1,用户打开银行服务的应用,进入该银行服务应用的界面,选择步骤S2,进入无卡取款服务,然后该移动终端与自助设备建立连接,并发送进行无卡取款操作的指令给该自助设备,自助设备针对该指令进行步骤S3,发出获取用户信息的响应消息给该移动终端,移动终端可以在预置的芯片中查找到用户信息,然后进行步骤S4,将该包含用户信息的响应消息发送给该自助设备,自助设备再进行步骤S5,转发该响应消息给服务器进行识别。
若服务器识别该响应消息有效,则进行步骤S6,发送验证消息给自助设备,由自助设备执行步骤S7,将该验证信息转发给移动设备,该移动设备需要执行步骤S8,基于个人私钥对该验证消息进行签名并发送签名验证信息给自助设备,再由用户在移动终端上执行步骤S9,输入取款金额,由移动终端执行S10,将取款金额和签名验证消息发给该自助设备,然后由服务器识别该签名验证信息和取款金额是否有效,如果有效,则该服务器对该自助设备进行步骤S11:授权,命令该自助设备执行步骤S12,根据取款金额完成出钞步骤,用户即可提取到现金。
本领域普通技术人员可以理解实现上述实施例方法中的全部或部分流程,是可以通过计算机程序来指令相关的硬件来完成,所述的程序可存储于计算机可读取存储介质中,该程序在执行时,可包括如上述各方法的实施例的流程。其中,所述的存储介质可为磁碟、光盘、只读存储记忆体(Read-Only Memory,ROM)或随机存储记忆体(Random Access Memory,RAM)等。
以上所揭露的仅为本发明一种较佳实施例而已,当然不能以此来限定本发明之权利范围,本领域普通技术人员可以理解实现上述实施例的全部或部分流程,并依本发明权利要求所作的等同变化,仍属于发明所涵盖的范围。

Claims (13)

  1. 一种无卡取款的方法,其特征在于,包括:
    移动终端接收自助设备发出的读取请求,所述读取请求用于请求所述移动终端回复用户信息;
    所述移动终端响应所述读取请求,获取用户信息,并向所述自助设备发送响应消息,所述响应消息包括用户信息;
    所述移动终端接收所述自助设备根据所述响应消息返回的验证信息,并基于签名密钥对所述验证信息进行签名后,得到签名验证信息;
    所述移动终端将请求数额和所述签名验证信息发送给所述自助设备,以便于完成取款。
  2. 如权利要求1所述的方法,其特征在于,所述移动终端接收自助设备发出的读取请求之前,还包括:
    显示与自助设备建立连接的用户界面;
    接收在所述用户界面上输入的鉴权信息,所述鉴权信息包括指纹、口令、手势、密码的一种或多种;
    若所述鉴权信息有效,则所述移动终端与所述自助设备建立连接。
  3. 如权利要求2所述的方法,其特征在于,所述移动终端与所述自助设备建立连接,包括:
    所述移动终端与所述自助设备采用近距离无线通讯NFC的方式建立连接,或者所述移动终端与所述自助设备采用扫描图形码的方式建立连接。
  4. 一种无卡取款的方法,其特征在于,包括:
    自助设备获取移动终端的响应消息,所述响应消息包括用户信息;
    所述自助设备将所述响应消息发送至服务器进行识别,若接收到所述服务器针对所述响应消息的验证信息,则将所述验证信息转发至所述移动终端;
    所述自助设备接收所述移动终端的请求数额和对所述验证信息进行签名的签名验证信息,并生成包括请求数额和签名验证信息的取款请求,将所述取款请求发送至所述服务器;
    若接收到所述服务器的确认消息,则所述自助设备根据所述请求数额进行取款处理。
  5. 如权利要求4所述的方法,其特征在于,所述自助设备获取移动终端的响应消息之前,还包括:
    所述自助设备与所述移动终端采用近距离无线通讯NFC的方式建立连接,或者所述自助设备与所述移动终端采用扫描图形码的方式建立连接。
  6. 如权利要求5所示的方法,其特征在于,所述自助设备与所述移动终端采用扫描图形码的方式建立连接,具体包括:
    所述自助设备调用摄像模块读取移动终端上显示的图形码,生成通信连接信息,或
    在所述自助设备的显示界面上显示图形码,接收所述移动终端扫描所述图形码后返回的通信连接信息;
    所述自助设备根据所述通信连接信息与所述移动终端建立连接。
  7. 一种无卡取款的装置,其特征在于,包括:
    接收模块,设置为接收自助设备发出的读取请求,所述读取请求用于请求回复用户信息;
    获取模块,设置为响应所述读取请求,获取用户信息;
    发送模块,设置为向所述自助设备发送响应消息,所述响应消息包括用户信息;
    所述接收模块,还设置为接收所述自助设备根据所述响应消息返回的验证信息;
    安全模块,设置为存储数字证书和签名密钥,并基于所述签名密钥对所述验证信息进行签名后,得到签名验证信息;
    所述发送模块,还设置为将请求数额和所述签名验证信息发送给所述自助设备,以便于完成取款。
  8. 如权利要求7所述的装置,其特征在于,还包括:
    显示模块,设置为显示与自助设备建立连接的用户界面;
    其中,所述接收模块,还设置为接收在所述用户界面上输入的鉴权信息,所述鉴权信息包括指纹、口令、手势、密码的一种或多种;
    连接模块,设置为若所述鉴权信息有效,则与所述自助设备建立连接。
  9. 如权利要求7所述的装置,其特征在于,
    所述连接模块,具体设置为与所述自助设备采用近距离无线通讯NFC的方式建立连接,或者与所述自助设备采用扫描图形码的方式建立连接。
  10. 一种无卡取款的装置,其特征在于,包括:
    获取模块,设置为获取移动终端的响应消息,所述响应消息包括用户信息;
    通信模块,设置为将所述响应消息发送至服务器进行识别,若接收到所述服务器针对所述响应消息的验证信息,则将所述验证信息转发至所述移动终端;
    所述通信模块,还设置为接收所述移动终端的请求数额和对所述验证信息进行加密的签名验证信息;
    生成模块,设置为生成包括请求数额和签名验证信息的取款请求;
    所述通信模块,还用于将所述取款请求发送至所述服务器;
    处理模块,设置为若接收到所述服务器的确认消息,则所述自助设备根据所述请求数额进行取款处理。
  11. 如权利要求10所述的装置,其特征在于,还包括:
    连接模块,设置为与所述移动终端采用近距离无线通讯NFC的方式建立连接,或者与所述移动终端采用扫描图形码的方式建立连接。
  12. 如权利要求11所示的装置,其特征在于,还包括:
    摄像模块,设置为读取移动终端上显示的图形码;
    所述连接模块,设置为与所述移动终端采用扫描图形码的方式建立连接,具体设置为根据摄像模块读取的移动终端上显示的图形码,生成通信连接信息,或
    在显示界面上显示图形码,接收所述移动终端扫描所述图形码后返回的通信连接信息;
    根据所述通信连接信息与所述移动终端建立连接。
  13. 一种用于无卡取款的系统,其特征在于,包括:移动终端、自助设备、服务器;
    所述自助设备,发出读取请求至所述移动终端,所述读取请求用于请求所述移动终端回复用户信息;
    所述移动终端,接收并响应所述读取请求,获取用户信息,并向所述自助设备发送响应消息,所述响应消息包括用户信息;
    所述自助设备,还接收所述响应消息,并将所述响应消息发送至服务器;
    所述服务器,对所述响应消息进行识别,若识别结果为所述响应消息有效,则发出针对所述响应消息的验证信息至所述自助设备;
    所述自助设备,还将所述验证信息转发至所述移动终端;
    所述移动终端,还接收所述验证信息,基于签名密钥对所述验证信息进行签名后,得到签名验证信息,并将请求数额和所述签名验证信息发送给所述自助设备;
    所述自助设备,还生成包括请求数额和签名验证信息的取款请求,将所述取款请求发送至所述服务器;
    所述服务器,还根据所述取款请求验证所述取款请求是否有效,若有效,则发出确认消息至所述自助设备;
    所述自助设备,还根据所述请求数额进行取款处理。
PCT/CN2016/107836 2016-10-27 2016-11-30 一种无卡取款的方法、装置和系统 Ceased WO2018076443A1 (zh)

Applications Claiming Priority (2)

Application Number Priority Date Filing Date Title
CN201610969892.5A CN106506496A (zh) 2016-10-27 2016-10-27 一种无卡取款的方法、装置和系统
CN201610969892.5 2016-10-27

Publications (1)

Publication Number Publication Date
WO2018076443A1 true WO2018076443A1 (zh) 2018-05-03

Family

ID=58320889

Family Applications (1)

Application Number Title Priority Date Filing Date
PCT/CN2016/107836 Ceased WO2018076443A1 (zh) 2016-10-27 2016-11-30 一种无卡取款的方法、装置和系统

Country Status (2)

Country Link
CN (1) CN106506496A (zh)
WO (1) WO2018076443A1 (zh)

Cited By (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN113313888A (zh) * 2021-05-24 2021-08-27 中国银行股份有限公司 基于区块链的atm机无卡取款系统及方法
US11423380B2 (en) * 2020-05-18 2022-08-23 Capital One Services, Llc Remote activation of kiosk to serve product or release cash to customer
US11475421B2 (en) 2020-08-13 2022-10-18 Capital One Services, Llc ATM transactions using barcodes in multiple states
US11494753B2 (en) * 2020-10-01 2022-11-08 Bank Of America Corporation Contactless event processing
US11521188B2 (en) 2020-05-18 2022-12-06 Capital One Services, Llc Using a third party dynamic QR code on a personal mobile device to complete a transaction at an ATM

Families Citing this family (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN108053220B (zh) * 2018-01-11 2019-07-02 平安科技(深圳)有限公司 一种无卡取款的保护方法、设备及存储介质
CN108877098B (zh) * 2018-05-04 2021-07-27 平安科技(深圳)有限公司 无卡取款方法及装置、系统、存储介质和电子设备
CN111985913A (zh) * 2019-05-24 2020-11-24 上海箩箕技术有限公司 无卡交易方法、装置及服务器
CN115050147A (zh) * 2022-05-07 2022-09-13 中国银行股份有限公司 业务处理方法、装置及存储介质
CN114842595A (zh) * 2022-05-11 2022-08-02 中国银行股份有限公司 取款方法、相关装置及计算机存储介质

Citations (6)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US20100294843A1 (en) * 2009-05-21 2010-11-25 Samsung Electronics Co., Ltd. Chip card with contact and contactless modes and method for operating the same
CN103067335A (zh) * 2011-10-18 2013-04-24 中国移动通信集团公司 一种非接触方式实现信息交互的方法、相关设备及系统
CN103401844A (zh) * 2013-07-12 2013-11-20 天地融科技股份有限公司 操作请求的处理方法及系统
CN104065653A (zh) * 2014-06-09 2014-09-24 韩晟 一种交互式身份验证方法、装置、系统和相关设备
CN104182874A (zh) * 2014-08-12 2014-12-03 北京橙鑫数据科技有限公司 多卡合一装置、系统和卡信息加载方法
CN105069615A (zh) * 2015-08-07 2015-11-18 上海微肯网络科技有限公司 信息发布装置以及用户终端验证信息发布装置的方法

Patent Citations (6)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US20100294843A1 (en) * 2009-05-21 2010-11-25 Samsung Electronics Co., Ltd. Chip card with contact and contactless modes and method for operating the same
CN103067335A (zh) * 2011-10-18 2013-04-24 中国移动通信集团公司 一种非接触方式实现信息交互的方法、相关设备及系统
CN103401844A (zh) * 2013-07-12 2013-11-20 天地融科技股份有限公司 操作请求的处理方法及系统
CN104065653A (zh) * 2014-06-09 2014-09-24 韩晟 一种交互式身份验证方法、装置、系统和相关设备
CN104182874A (zh) * 2014-08-12 2014-12-03 北京橙鑫数据科技有限公司 多卡合一装置、系统和卡信息加载方法
CN105069615A (zh) * 2015-08-07 2015-11-18 上海微肯网络科技有限公司 信息发布装置以及用户终端验证信息发布装置的方法

Cited By (11)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US11423380B2 (en) * 2020-05-18 2022-08-23 Capital One Services, Llc Remote activation of kiosk to serve product or release cash to customer
US11521188B2 (en) 2020-05-18 2022-12-06 Capital One Services, Llc Using a third party dynamic QR code on a personal mobile device to complete a transaction at an ATM
US20230112415A1 (en) * 2020-05-18 2023-04-13 Capital One Services, Llc Remote activation of kiosk to serve product or release cash to customer
US11972406B2 (en) 2020-05-18 2024-04-30 Capital One Services, Llc Using a third party dynamic QR code on a personal mobile device to complete a transaction at an ATM
US12051052B2 (en) 2020-05-18 2024-07-30 Capital One Services, Llc Remote activation of kiosk to serve product or release cash to customer
US12354069B2 (en) 2020-05-18 2025-07-08 Capital One Services, Llc Using a third party dynamic QR code on a personal mobile device to complete a transaction at an ATM
US11475421B2 (en) 2020-08-13 2022-10-18 Capital One Services, Llc ATM transactions using barcodes in multiple states
US11829969B2 (en) 2020-08-13 2023-11-28 Capital One Services, Llc ATM transactions using barcodes in multiple states
US12223481B2 (en) 2020-08-13 2025-02-11 Capital One Services, Llc ATM transactions using barcodes in multiple states
US11494753B2 (en) * 2020-10-01 2022-11-08 Bank Of America Corporation Contactless event processing
CN113313888A (zh) * 2021-05-24 2021-08-27 中国银行股份有限公司 基于区块链的atm机无卡取款系统及方法

Also Published As

Publication number Publication date
CN106506496A (zh) 2017-03-15

Similar Documents

Publication Publication Date Title
WO2018076443A1 (zh) 一种无卡取款的方法、装置和系统
WO2020171538A1 (en) Electronic device and method for providing digital signature service of block chain using the same
WO2020062642A1 (zh) 基于区块链的电子合同签署方法、装置、设备及存储介质
WO2019107907A1 (ko) 전자 지불 결제를 제어하는 전자 장치 및 이를 위한 방법
WO2015093734A1 (ko) 빠른 응답 코드를 이용한 인증 시스템 및 방법
WO2021010766A1 (ko) 블록 체인을 이용한 전자 인증 장치 및 그 방법
WO2019144738A1 (zh) 金融业务的验证方法、装置、设备和计算机存储介质
WO2020091525A1 (ko) 생체 인증을 이용한 결제 방법 및 그 전자 장치
WO2018030707A1 (ko) 인증 시스템 및 방법과 이를 수행하기 위한 사용자 단말, 인증 서버 및 서비스 서버
WO2021210918A1 (en) Electronic device for sending cryptocurrency to blockchain account and method for operating the same
WO2016171295A1 (ko) 유비쿼터스 환경에서 인증
WO2015041401A1 (ko) 근거리 무선 통신 기능을 가지는 이동통신단말기를 이용한 일회용 패스워드 무선 인증 시스템 및 방법
WO2019054779A1 (ko) 메시지를 처리하기 위한 전자 장치 및 그의 동작 방법
WO2020213933A1 (ko) 근접 필드 통신 카드의 복제를 위한 방법 및 그 전자 장치
WO2016206530A1 (zh) 一种高级安全的移动支付方法、装置及系统
WO2016085062A1 (ko) 엔에프씨 인증카드를 이용한 인증방법
WO2022146026A1 (ko) 보안 데이터 처리 방법 및 이를 지원하는 전자 장치
WO2020235933A1 (en) System and method for payment authentication
WO2020171466A1 (ko) 전자 장치 및 전자 장치에서의 인증 방법
WO2020034527A1 (zh) 用户个人信息加密授权方法、装置、设备及可读存储介质
WO2019124830A1 (en) Electronic apparatus, electronic system and control method thereof
WO2019164264A1 (en) Electronic apparatus and operating method thereof
WO2013039304A1 (ko) 전자 결제를 위한 회원 등록 방법과 그를 위한 시스템, 장치 및 단말기
WO2012074275A2 (ko) 인터넷 보안을 위한 본인인증 장치, 그 방법 및 이를 기록한 기록매체
WO2020111499A1 (ko) Qr 코드를 이용한 정보 송수신 방법, 장치 및 시스템

Legal Events

Date Code Title Description
121 Ep: the epo has been informed by wipo that ep was designated in this application

Ref document number: 16919937

Country of ref document: EP

Kind code of ref document: A1

NENP Non-entry into the national phase

Ref country code: DE

122 Ep: pct application non-entry in european phase

Ref document number: 16919937

Country of ref document: EP

Kind code of ref document: A1