WO2021239104A1 - Blockchain-based service processing - Google Patents

Blockchain-based service processing Download PDF

Info

Publication number
WO2021239104A1
WO2021239104A1 PCT/CN2021/096706 CN2021096706W WO2021239104A1 WO 2021239104 A1 WO2021239104 A1 WO 2021239104A1 CN 2021096706 W CN2021096706 W CN 2021096706W WO 2021239104 A1 WO2021239104 A1 WO 2021239104A1
Authority
WO
WIPO (PCT)
Prior art keywords
data
service
business
verification
requester
Prior art date
Application number
PCT/CN2021/096706
Other languages
French (fr)
Chinese (zh)
Inventor
朱永春
曲正云
张文强
杨振宇
陈锐发
刘屹东
Original Assignee
支付宝(杭州)信息技术有限公司
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by 支付宝(杭州)信息技术有限公司 filed Critical 支付宝(杭州)信息技术有限公司
Publication of WO2021239104A1 publication Critical patent/WO2021239104A1/en

Links

Images

Classifications

    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06QINFORMATION AND COMMUNICATION TECHNOLOGY [ICT] SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES; SYSTEMS OR METHODS SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES, NOT OTHERWISE PROVIDED FOR
    • G06Q20/00Payment architectures, schemes or protocols
    • G06Q20/38Payment protocols; Details thereof
    • G06Q20/382Payment protocols; Details thereof insuring higher security of transaction
    • G06Q20/3821Electronic credentials
    • G06Q20/38215Use of certificates or encrypted proofs of transaction rights
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/60Protecting data
    • G06F21/602Providing cryptographic facilities or services
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/60Protecting data
    • G06F21/62Protecting access to data via a platform, e.g. using keys or access control rules
    • G06F21/6218Protecting access to data via a platform, e.g. using keys or access control rules to a system of files or objects, e.g. local or distributed file system or database
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/60Protecting data
    • G06F21/64Protecting data integrity, e.g. using checksums, certificates or signatures
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06QINFORMATION AND COMMUNICATION TECHNOLOGY [ICT] SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES; SYSTEMS OR METHODS SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES, NOT OTHERWISE PROVIDED FOR
    • G06Q20/00Payment architectures, schemes or protocols
    • G06Q20/38Payment protocols; Details thereof
    • G06Q20/382Payment protocols; Details thereof insuring higher security of transaction
    • G06Q20/3825Use of electronic signatures
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06QINFORMATION AND COMMUNICATION TECHNOLOGY [ICT] SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES; SYSTEMS OR METHODS SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES, NOT OTHERWISE PROVIDED FOR
    • G06Q20/00Payment architectures, schemes or protocols
    • G06Q20/38Payment protocols; Details thereof
    • G06Q20/382Payment protocols; Details thereof insuring higher security of transaction
    • G06Q20/3829Payment protocols; Details thereof insuring higher security of transaction involving key management

Definitions

  • This specification relates to the field of computer technology, and in particular to a method, device and equipment for business processing based on blockchain.
  • the security of Internet-based financial transactions has always been an important topic of concern to financial institutions.
  • the commonly used means is to use dedicated hardware devices to store identifiable business requesters (such as a company or institution). Etc.), and the digital certificate stored in the hardware device cannot be read.
  • the hardware device can be connected to the device that performs Internet financial transactions (ie, the device used by the business requester) to sign the transmitted information in the Internet financial transaction.
  • the device that performs Internet financial transactions ie, the device used by the business requester
  • the hardware device can be connected to the device that performs Internet financial transactions (ie, the device used by the business requester) to sign the transmitted information in the Internet financial transaction.
  • a financial institution specifically a bank, etc.
  • the service processing method provided by the embodiment of this specification is applied to a blockchain node and includes: obtaining the deposit information generated by the service authorizer to the service requester, deploying a first smart contract based on the deposit information, and the first smart contract A smart contract is used to verify the signature data of the service requester according to the deposit information.
  • Receive a first service request from the service requester where the first service request includes service data and endorsement data.
  • the first smart contract is called to verify the signed data, and the verification result is obtained. If the verification result is passed, the service data and the endorsement data are sent to the service authorizer so that the service authorizer can perform a second verification on the endorsement data, and the verification is based on the service data after passing the verification.
  • Receiving the processing result returned by the service authorizer returning the processing result to the service requesting party, and sending the service requesting party initiated by the service requesting party based on the processing result and related to the business data corresponding to the service data 2.
  • the business request is processed.
  • a service processing method provided by the embodiment of this specification, applied to a service authorizing party includes: generating a digital certificate and deposit information for the service requesting party.
  • the digital certificate is issued to the service requester, and the deposit certificate information is sent to a predetermined blockchain node, so that the blockchain node deploys a first smart contract based on the deposit information.
  • a smart contract is used to verify the signature data of the service requester according to the deposit information, and when the first service request of the service requester is received, call the first smart contract to Sign the data for verification, and get the verification result.
  • the chain node processes the second service request related to the service corresponding to the service data initiated by the service requester based on the processing result.
  • the embodiment of this specification provides a blockchain-based business processing method, which is applied to a first blockchain node accessing a first blockchain, including: through the first blockchain and a business authorization agency corresponding to The cross-chain transmission channel of the second blockchain obtains the deposit information generated by the second blockchain node to the business requester from the second blockchain, and deploys the first smart contract based on the deposit information, so The first smart contract is used to verify the signature data of the service requester according to the deposit information. Receive a first service request from the service requester, where the first service request includes service data and endorsement data. The first smart contract is called to verify the signed data, and the verification result is obtained.
  • the business data and endorsement data are sent to the second blockchain node in the second blockchain through the cross-chain transmission channel, so that the second The blockchain node performs secondary verification on the signed data, and after the verification is passed, business processing is performed based on the business data to obtain a processing result.
  • the processing result returned by the second blockchain node is received, the processing result is returned to the service requester, and the processing result is initiated to the service requester based on the processing result.
  • the second service request related to the service corresponding to the service data is processed.
  • the embodiment of this specification provides a blockchain-based service processing method, which is applied to a second blockchain node connected to a second blockchain, and includes: generating a digital certificate and deposit information for a service requester. Issue the digital certificate to the service requester, and send it to the first blockchain node of the first blockchain through the cross-chain transmission channel of the first blockchain and the second blockchain.
  • the deposit information so that the first blockchain node deploys a first smart contract based on the deposit information, and the first smart contract is used to add to the service requester according to the deposit information
  • the signed data is verified, and when the first service request of the service requester is received, the first smart contract is invoked to verify the signed data, and the verification result is obtained.
  • the node sends when the verification result is passed, and the signature data is data generated based on the digital certificate. Perform secondary verification on the signed data. If the verification is passed, perform business processing based on the business data to obtain the processing result, and return the processing result to the first zone of the first blockchain A block chain node, so that the first block chain node processes, based on the processing result, a second service request related to the service corresponding to the service data initiated by the service requester.
  • a service processing device includes: a contract deployment module, which obtains the deposit information generated by the service authorizer to the service requester, and deploys a first smart contract based on the deposit information, the first smart contract It is used to verify the signature data of the service requester according to the deposit information.
  • the request receiving module receives a first service request from the service requester, where the first service request includes service data and endorsement data.
  • the first verification module calls the first smart contract to verify the signed data, and obtain a verification result.
  • the data sending module if the verification result is passed, sends the service data and the endorsed data to the service authorizing party, so that the service authorizing party performs secondary verification on the endorsed data, and the verification is based on
  • the business data is processed to obtain a processing result.
  • the processing module receives the processing result returned by the service authorizer, returns the processing result to the service requester, and initiates the service corresponding to the service data to the service requester based on the processing result
  • the related second service request is processed.
  • a service processing device includes: a generating module, which generates a digital certificate and certificate information for a service requester.
  • a sending module which issues the digital certificate to the service requester, and sends the deposit information to a predetermined blockchain node, so that the blockchain node deploys the first smart contract based on the deposit information,
  • the first smart contract is used to verify the signature data of the service requester according to the deposit information, and when the first service request of the service requester is received, call the first smart contract Verifying the endorsed data to obtain a verification result.
  • the data receiving module receives the business data and endorsement data sent by the blockchain node.
  • the business data and endorsement data are sent by the blockchain node when the verification result is passed.
  • the signature data is data generated based on the digital certificate.
  • the secondary verification module performs secondary verification on the signed data. If the verification is passed, business processing is performed based on the business data to obtain the processing result, and the processing result is returned to the blockchain node to The blockchain node is enabled to process a second service request related to the service corresponding to the service data initiated by the service requester based on the processing result.
  • the embodiment of this specification provides a blockchain-based business processing device, including: an information acquisition and contract deployment module, through the cross-chain transmission channel of the first blockchain and the second blockchain corresponding to the business authorization agency , Obtain the deposit certificate information generated by the second blockchain node to the service requester from the second blockchain, deploy a first smart contract based on the deposit information, and the first smart contract is used to The deposit information verifies the signature data of the service requester.
  • the request module receives a first service request from the service requester, where the first service request includes service data and endorsement data.
  • the calling module calls the first smart contract to verify the signed data, and obtain a verification result.
  • the cross-chain transmission module if the verification result is passed, sends the business data and endorsement data to the second blockchain node in the second blockchain through the cross-chain transmission channel to The second blockchain node is allowed to perform secondary verification on the signed data, and after the verification is passed, business processing is performed based on the business data to obtain a processing result.
  • the processing module receives the processing result returned by the second blockchain node through the cross-chain transmission channel, returns the processing result to the service requester, and requests the service based on the processing result
  • the second service request related to the service corresponding to the service data initiated by the party is processed.
  • the embodiment of this specification provides a blockchain-based business processing device, including: a certificate and information generation module, which generates a digital certificate and certificate information for a business requester.
  • the certificate and information sending module issues the digital certificate to the service requester, and sends the digital certificate to the first block chain through the cross-chain transmission channel of the first block chain and the second block chain.
  • a blockchain node sends the deposit information so that the first blockchain node deploys a first smart contract based on the deposit information, and the first smart contract is used to check the deposit information according to the deposit information.
  • the signature data of the service requester is verified, and when the first service request of the service requester is received, the first smart contract is invoked to verify the signature data, and the verification result is obtained.
  • the data receiving module receives the service data and endorsement data sent by the first blockchain node of the first blockchain through the cross-chain transmission channel, where the service data and endorsement data are the first A blockchain node sends when the verification result is passed, and the endorsement data is data generated based on the digital certificate.
  • the verification module performs secondary verification on the signed data. If the verification is passed, perform business processing based on the business data to obtain the processing result, and return the processing result to the first blockchain A first blockchain node, so that the first blockchain node processes, based on the processing result, a second service request related to the service corresponding to the service data initiated by the service requester.
  • a service processing device includes a processor and a memory arranged to store computer-executable instructions.
  • the processor When the executable instructions are executed, the processor:
  • the generated deposit certificate information deploys a first smart contract based on the deposit certificate information, and the first smart contract is used to verify the signature data of the service requester according to the deposit certificate information.
  • the first smart contract is called to verify the signed data, and the verification result is obtained. If the verification result is passed, the service data and the endorsement data are sent to the service authorizer so that the service authorizer can perform a second verification on the endorsement data, and the verification is based on the service data after passing the verification.
  • Receiving the processing result returned by the service authorizer returning the processing result to the service requesting party, and sending the service requesting party initiated by the service requesting party based on the processing result and related to the business data corresponding to the service data 2.
  • a service processing device includes a processor and a memory arranged to store computer-executable instructions.
  • the processor When the executable instructions are executed, the processor: generates a digital certificate for the service requester And deposit information.
  • the digital certificate is issued to the service requester, and the deposit certificate information is sent to a predetermined blockchain node, so that the blockchain node deploys a first smart contract based on the deposit information.
  • a smart contract is used to verify the signature data of the service requester according to the deposit information, and when the first service request of the service requester is received, call the first smart contract to Sign the data for verification, and get the verification result.
  • Receive the service data and endorsement data sent by the blockchain node where the service data and endorsement data are sent by the blockchain node when the verification result is passed, and the endorsement data is based on Data generated by the digital certificate. Perform secondary verification on the signed data. If the verification is passed, perform business processing based on the business data to obtain the processing result, and return the processing result to the blockchain node so that the block
  • the chain node processes the second service request related to the service corresponding to the service data initiated by the service requester based on the processing result.
  • the embodiment of this specification provides a blockchain-based business processing device, which includes a processor and a memory arranged to store computer-executable instructions.
  • the processor When the executable instructions are executed, the processor:
  • the first block chain and the cross-chain transmission channel of the second block chain corresponding to the business authorization agency obtain the deposit information generated by the second block chain node to the business requester from the second block chain.
  • the deposit certificate information deploys a first smart contract, and the first smart contract is used to verify the signature data of the service requester according to the deposit certificate information.
  • the first smart contract is called to verify the signed data, and the verification result is obtained.
  • the business data and endorsement data are sent to the second blockchain node in the second blockchain through the cross-chain transmission channel, so that the second The blockchain node performs secondary verification on the signed data, and after the verification is passed, business processing is performed based on the business data to obtain a processing result.
  • the processing result returned by the second blockchain node is received through the cross-chain transmission channel, the processing result is returned to the service requester, and the transaction initiated by the service requester is based on the processing result.
  • the service-related second service request corresponding to the service data is processed.
  • the embodiment of this specification provides a blockchain-based business processing device, which includes a processor and a memory arranged to store computer-executable instructions.
  • the processor When the executable instructions are executed, the processor: The digital certificate and deposit information of the requesting party. Issue the digital certificate to the service requester, and send it to the first blockchain node of the first blockchain through the cross-chain transmission channel of the first blockchain and the second blockchain The deposit information, so that the first blockchain node deploys a first smart contract based on the deposit information, and the first smart contract is used to add to the service requester according to the deposit information
  • the signed data is verified, and when the first service request of the service requester is received, the first smart contract is invoked to verify the signed data, and the verification result is obtained.
  • the node sends when the verification result is passed, and the signature data is data generated based on the digital certificate. Perform secondary verification on the signed data. If the verification is passed, perform business processing based on the business data to obtain the processing result, and return the processing result to the first zone of the first blockchain A block chain node, so that the first block chain node processes, based on the processing result, a second service request related to the service corresponding to the service data initiated by the service requester.
  • Figure 1 is an embodiment of a service processing method in this specification
  • Figure 2 is a schematic structural diagram of a business processing system in this specification
  • FIG. 3 is another embodiment of the service processing method in this specification.
  • Figure 4 is another embodiment of a service processing method in this specification.
  • FIG. 5 is another embodiment of the service processing method in this specification.
  • Figure 6 is another embodiment of the service processing method in this specification.
  • FIG. 7 is another embodiment of the service processing method in this specification.
  • Figure 8 is an embodiment of a business processing method based on blockchain in this specification.
  • Figure 9 is a schematic structural diagram of another business processing system in this specification.
  • Fig. 10 is another embodiment of a blockchain-based business processing method in this specification.
  • Figure 11 is an embodiment of a service processing device in this specification.
  • Figure 12 is another embodiment of a service processing device in this specification.
  • Figure 13 is an embodiment of a business processing device based on blockchain in this specification.
  • FIG. 14 is another embodiment of a business processing device based on blockchain in this specification.
  • Figure 15 is an embodiment of a service processing device in this specification.
  • Figure 16 is another embodiment of a service processing device in this specification.
  • the embodiment of this specification provides a business processing method.
  • the execution body of the method can be a blockchain node, the blockchain node can be a terminal device or a server, and the terminal device can be mobile such as mobile phones, tablets, etc. Terminal equipment can also be equipment such as personal computers.
  • the server can be an independent server, or a server cluster composed of multiple servers.
  • the system architecture involved in the embodiment of this specification may be as shown in FIG. 2.
  • the method may specifically include the following steps: in step S102, obtaining the deposit information generated by the service authorizing party to the service requesting party, and deploying a first smart contract based on the deposit information, and the first smart contract is used to pair according to the deposit information
  • the endorsement data of the business requester is verified.
  • the business authorization party may be the party that grants the corresponding authority to the business requesting party requesting the execution of a certain business, and the business requesting party may be the party requesting the execution of a certain business.
  • it may include a certain logistics organization and a financial institution. If it is necessary to apply for financing from the financial institution, for the financing business, the logistics institution can be the business requester. Since the financial institution needs to grant the logistics institution the authority to apply for financing from the financial institution, the financial institution can act as Business authorized party.
  • the deposit information can be the information that the business authorizing party needs to record or store, so that it can be used as a basis for subsequent business disputes or information verification.
  • the deposit information can include a variety of different information, such as the relevant information of the business authorizing party (such as The identity of the business authorizer, the digital identity information of the business authorizer, the identity of the business requester, the digital identity information of the business requester, and authorization-related information.
  • the digital identity information can include multiple types, such as DID (Decentralized IDentity, Decentralized identity identifier) etc.).
  • the first smart contract can be a smart contract constructed from deposit information.
  • the smart contract is a computer protocol designed to spread, verify, or perform a certain process in an informatized manner. The smart contract allows to be carried out without a third party.
  • the first smart contract may include an agreement on which the contract participants can execute the rights and obligations agreed by the contract participants.
  • the first smart contract may include a trigger condition that triggers the execution of the first smart contract and a result corresponding to the trigger condition.
  • the first smart contract may include one or more trigger conditions, and each trigger condition may correspond to a result, such as
  • the trigger condition of the first smart contract is: the deposit certificate information matches the data to be verified provided by the service requester, and the result of the trigger condition is: the identity verification of the service requester passes, etc.
  • the security of Internet-based financial transactions has always been an important topic of concern to financial institutions.
  • the commonly used means is to use dedicated hardware devices to store identifiable business requesters (such as The digital certificate of the identity of a certain enterprise or organization, etc., and the digital certificate stored in the hardware device cannot be read.
  • the hardware device can be connected to the device that performs Internet financial transactions (ie, the device used by the business requester) to sign the transmitted information in the Internet financial transaction.
  • a financial institution specifically a bank, etc.
  • the service authorizer can generate the corresponding digital certificate for the service requester, but the digital certificate does not need to be stored in the hardware device, but can be constructed in the form of software or application.
  • the digital certificate file specifically, the business requester can apply to the business authorizer for access or execution authority of a certain business, and the business authorizer can obtain relevant data of the business requester, such as the business status information of the business requester, and the business request Information such as the development prospects of the party and the fixed resources owned by the business requesting party.
  • the business authorizer can verify whether the business requester has the qualification to access or execute the business based on the above data. If it is determined that the business requester has the qualification to access or execute the business, it can generate a digital certificate for the business requester. If it is determined that the service requester does not have the qualifications to access or execute the service, the corresponding notification message can be sent to the service requester.
  • the service authorizer can send the generated digital certificate file to the service requester, so that when the service requester needs to access or perform the above-mentioned services, the corresponding data can be processed through the digital certificate and then sent to the service Authorized party.
  • a blockchain can be constructed to store the above-mentioned certificate information in the blockchain.
  • the blockchain is essentially a decentralized database. It is a series of data blocks associated with cryptographic methods. Each data block can contain stored data and related information (for example, it can be used to verify the validity of its data). (Or anti-counterfeiting) and information to generate the next block, etc.).
  • the anti-tampering, anti-counterfeiting and traceability of the data on the blockchain can be better applied. If the relevant behavioral data in the use, management and processing of the evidence information is added to the blockchain, the evidence information Will not be able to change and deny. Therefore, the deposit information can be maintained through the blockchain. In this way, the signature data of the business requester can be verified based on the deposit information in the blockchain, so as to ensure the accuracy of the deposit information.
  • the blockchain node can be used to respond to the relevant processing of the business authorizer and the business requester, so as to provide related services to the business requester of a certain business process.
  • the business authorizer sends the generated digital certificate to the business
  • the requesting party it can also generate deposit information for the business requester, and the business authorizing party can provide the deposit information to the blockchain node in the above-mentioned blockchain, and the blockchain node can obtain the deposit information, And the deposit information can be stored in the blockchain.
  • blockchain nodes can also formulate verification and verification rules for the business requester based on the obtained deposit information, and can generate corresponding smart contracts (i.e., the first smart contract) based on the verification and verification rules , And the first smart contract can be deployed to the blockchain network where the blockchain node is located.
  • the deposit certificate information and the corresponding first smart contract are stored in the blockchain, and other organizations or personnel cannot tamper with the deposit. Certificate information and the corresponding first smart contract, and the blockchain node can verify and verify the business requester through the first smart contract.
  • step S104 a first service request from the service requester is received, and the first service request includes service data and endorsement data.
  • Business data can be data related to a business request.
  • a business request is a request to apply for a credit line of a resource (such as a credit line of a loan, etc.) from a business authorizing party.
  • the business data can be the data required to apply for a credit line of a resource.
  • the business status information of the business requester, the development prospects of the business requester, and the fixed resources owned by the business requester can be specifically set according to the actual situation, which is not limited in the embodiment of this specification.
  • the signed data can be data obtained by signature processing of certain data, in which the above-mentioned digital certificate can be used for signature processing and so on.
  • the service requesting party can make a service request to the service authorizing party.
  • the relevant service request can be set in advance.
  • Page the page can be set with a request entry for one or more services (specifically, it can be embodied by means of buttons or hyperlinks, etc.).
  • the service requester can open the above page through the terminal device and enter a certain entry through the above request entry.
  • the above-mentioned digital certificate or authorization information can sign information related to the identity of the service requester.
  • the digital certificate or authorization information can include a pair of keys, which can include The public key and private key can be used to sign the information related to the identity of the service requester through the private key to generate the signature data.
  • the terminal equipment of the service requester can use the above-mentioned service data and signature data, and the number The public key in the certificate or authorization information generates the first service request, and the first service request can be sent to the blockchain node, so that the blockchain node can receive the first service request from the service requester.
  • the public key can also be used to sign the information related to the service requester's identity, and
  • the private key is sent to the blockchain node etc. through the first service request.
  • the service data can also be signed in the above-mentioned manner, so as to ensure the security of the service data in the transmission process.
  • step S106 the first smart contract is called to verify the above-mentioned signed data, and the verification result is obtained.
  • the blockchain node after the blockchain node receives the first service request, it can analyze the first service request, and extract the signature data and the corresponding key (such as the public key mentioned above) from it. Then, the blockchain The node can call the first smart contract to verify the signature data. Specifically, the first smart contract can record the deposit information generated by the service authorizer to the service requester, and the blockchain node can use the above key pair to add The signed data is decrypted, and the data content in the signed data is obtained. The decrypted data content can be compared with the deposit information recorded in the first smart contract. If the decrypted data content is compared with the data recorded in the first smart contract If the deposit information matches, it can be determined that the verification of the aforementioned signed data is passed.
  • the first smart contract can record the deposit information generated by the service authorizer to the service requester, and the blockchain node can use the above key pair to add
  • the signed data is decrypted, and the data content in the signed data is obtained.
  • the decrypted data content does not match the deposit information recorded in the first smart contract, it can be determined that the verification of the aforementioned signed data has not passed.
  • a notification message that the identity verification has failed can be sent to the service requester, so that the service requester can resend the first service request.
  • it can also send a notification message to the service authorizing party that the verification of the endorsed data of the service requesting party has failed, so that the service authorizing party can adjust the risk level of the service requesting party according to the actual situation, and notify the service requesting party in time through other channels Protect the security of related data, etc., so as to obtain the verification result of verifying the above-mentioned signed data.
  • step S108 if the verification result is passed, the service data and the signature data are sent to the service authorizing party so that the service authorizing party will perform a second verification of the signature data, and after the verification is passed, the business data will be performed based on the service data. Processing, get the processing result.
  • the blockchain node verifies the above-mentioned signed data by calling the first smart contract, and can obtain the corresponding verification result. If the verification result is passed, it indicates that the identity of the business requester is correct. Continue to perform the follow-up related processing to send the above-mentioned business data and endorsement data to the business authorized party.
  • the service authorizer receives the service data and the signature data, it can also perform secondary verification on the signature data, and then decrypt the signature data through the digital certificate or the key in the authorization information to obtain the signature data
  • the data content obtained by decryption can be compared with the evidence information. If the data content obtained by decryption matches the evidence information, it can be determined that the verification of the above-mentioned signed data is passed. If the data content obtained by decryption matches If the deposit information recorded in the first smart contract does not match, it can be determined that the verification of the above-mentioned signed data has not passed.
  • the business authorizer can perform business processing on the business corresponding to the first business request based on the business data, and obtain the corresponding processing result.
  • the first business request is an application for resources from the business authorizer
  • the business authorizing party can determine whether the business requester can apply for the credit line of the resource based on the business data, and the value range of the credit line of the resource that can be applied for, etc. If the service authorizer determines based on the service data that the service requester cannot apply for the credit limit of the resource, it can generate the corresponding processing result.
  • the service authorizer determines based on the service data that the service requester can apply for the credit limit of the resource, it can obtain the service The value range of the credit line of the resource that the requester can apply for, and the corresponding processing result can be generated based on the obtained value range of the credit line of the resource that the service requester can apply for.
  • the business authorized party can return the processing result obtained above to the blockchain node.
  • step S110 the above processing result returned by the service authorizer is received, the processing result is returned to the service requester, and the second service request initiated by the service requester and related to the service corresponding to the above service data is processed based on the processing result .
  • the second business request may be a business request related to the business corresponding to the above-mentioned business data, and the second business request may be different from the above-mentioned first business request.
  • the first business request may be an application for a credit line (such as a loan).
  • the second service request may be a request for resource expenditure from a blockchain node or a service authorizer, etc., which can be specifically set according to the actual situation, which is not limited in the embodiment of this specification.
  • the blockchain node can receive the above-mentioned processing result returned by the service authorizer, and can return the processing result to the service requester. Then, the blockchain node can process the second service request related to the service corresponding to the above-mentioned service data that is subsequently initiated by the service requester based on the processing result. However, take a request for resource expenditure from a blockchain node or a business authorizer as an example. If the processing result received by the blockchain node is that the business requester cannot apply for the credit line of the resource, it will subsequently receive the request initiated by the business requester When the second service request is related to the service corresponding to the above service data, the second service request can be refused to be processed.
  • the second service request can be processed based on the value range of the credit line of the resource that the service requester can apply for, such as the second service If the value of the resource that needs to be spent in the request is within the above numerical range, the service requester can be provided with the resource that needs to be spent. If the value of the resource that needs to be spent in the second service request is not within the above numerical range, it can be Refuse to process the second service request, etc.
  • the embodiment of this specification provides a service processing method.
  • the first smart contract is deployed by the service authorizer to the deposit information generated by the service requester.
  • the first smart contract is called to the second
  • the signature data in a business request is verified. If the verification is passed, the business data and the signature data are sent to the business authorizing party for secondary verification.
  • the business requester uploads the data signature to the blockchain platform,
  • the blockchain platform performs multi-party data processing (such as data comparison, etc.) on the data, so that the processed data has higher credibility, thereby increasing the possibility of obtaining higher authority from the business authorized party.
  • the blockchain platform performs financial-level verification and signature verification on the business requester, making the data transmitted between the business authorizing party and the business requesting party more secure, and it can also perform transactions initiated by the business requesting party based on the processing results of the business authorizing party.
  • the business-related second business request corresponding to the business data is processed, which reduces the risk of business processing (such as financing, etc.), and improves the security and reliability of business processing.
  • the embodiment of this specification provides a business processing method
  • the execution subject of the method can be a blockchain node
  • the blockchain node can be a terminal device or a server
  • the terminal device can be mobile such as mobile phones, tablets, etc.
  • Terminal equipment can also be equipment such as personal computers.
  • the server can be an independent server, or a server cluster composed of multiple servers.
  • the method may specifically include the following steps: in step S302, obtaining the deposit information generated by the service authorizing party to the service requesting party, and deploying a first smart contract based on the deposit information, and the first smart contract is used for pairing with the deposit information according to the deposit information
  • the endorsement data of the business requester is verified.
  • step S302 For the specific processing process of step S302, please refer to the related content in the above-mentioned first embodiment, which will not be repeated here.
  • the service authorizer can generate a digital certificate for the service requester. For the above situation, it can also be processed by the following steps A2 to A6.
  • step A2 a digital certificate generated by the service authorizer for the service requester is obtained, and the digital certificate is used to generate the signature data.
  • a digital certificate refers to a digital authentication that marks the identity information of all parties in an Internet transaction.
  • the digital certificate can encrypt or decrypt information and data exchanged by users on the Internet, thereby ensuring the integrity and security of the information and data.
  • the basic structure of a digital certificate is a pair of keys through which encryption and decryption can be implemented.
  • the keys can include a private key and a public key.
  • the private key can be used for signature and decryption, and the public key can be used for signature verification and encryption, etc. .
  • the business requester can apply to the business authorizer for the access or execution authority of a certain business, and the business authorizer can obtain the relevant data of the business requester, and based on the above data, whether the business requester has access or executes the service The qualification of the business is verified. If it is determined that the business requester has the qualifications to access or perform the business, a digital certificate can be generated for the business requester, and the generated digital certificate can be sent to the business requester.
  • the business authorizer can also send the generated digital certificate to the blockchain node to store the digital certificate, or the blockchain node can query the business authorizer for the newly created digital certificate regularly or irregularly. The newly created digital certificate can be pulled from the terminal device of the service authorizer, so that the blockchain node can obtain the digital certificate generated by the service authorizer for the service requester.
  • step A4 the digital identity information of the service requester is obtained.
  • Digital identity information refers to information that identifiably portrays the business requester or business authorizer through digital information, that is, the real identity information is condensed into the form of a digital code, so as to provide personal information to the business requester or business authorizer. Binding, querying and verifying the real-time behavioral information. Digital identity information can include not only the birth information, individual descriptions, biometrics, and other identity coding information of the business requester or business authorizer, but also personal behavior information with multiple attributes (such as transaction information or entertainment information). Digital identity information can be displayed in a variety of ways, such as DID (Decentralized Identity) and so on.
  • DID Decentralized Identity
  • step A6 the above-mentioned digital certificate is stored in association with the digital identity information of the service requester.
  • the above-mentioned digital certificate can be associated with the digital identity information of the service requester, and the above-mentioned digital certificate can be stored correspondingly with the digital identity information of the service requester.
  • the business authorizer can issue one or more digital certificates for each business requester, and different business authorizers can also issue one or more digital certificates for each business requester.
  • a digital certificate can be associated with the digital identity information of the business requester, and can be stored in the blockchain accordingly.
  • the above-mentioned certificate information may include one or more of the following: the key of the digital certificate (such as the public key of the digital certificate, etc.), the information of the issuer of the digital certificate (that is, the relevant information of the business authorizing party) , The user information of the digital certificate (i.e. the relevant information of the service requester), the relationship information between the digital certificate and the issuer (i.e. the relationship information between the digital certificate and the business authorizing party), the relationship information between the digital certificate and the user (i.e. The relationship information between the digital certificate and the service requester), etc., in actual applications, in addition to the above information, the deposit information can also include a variety of other information, which can be set according to the actual situation. The embodiment of this specification There is no restriction on this.
  • step S304 a first service request from the service requester is received, and the first service request includes service data and endorsement data.
  • the first service request may be a resource application request
  • the resource application request may be a request to apply for a certain resource credit line from a service authorizing party, such as a financing request.
  • the signed data may be data obtained by signing relevant information provided by the service requester (such as information related to the service requester, etc.) through a digital certificate.
  • step S306 the first smart contract is called to verify the above-mentioned signed data, and the verification result is obtained.
  • step S308 if the verification result is passed, the service data and the signature data are sent to the service authorizer.
  • step S310 the first smart contract is called to verify the authenticity of the business data, and the verification result of the business data is obtained.
  • the first smart contract can also be set up with rules to verify the authenticity of the business data in the first business request.
  • the blockchain node calls the first smart contract to verify the above signed data, and the verification passes After that, the first smart contract can be called again, and the authenticity of the business data can be verified through the rules set in the first smart contract to verify the authenticity of the business data in the first business request, which can be as specific as the blockchain node.
  • the blockchain node can obtain the waybill and logistics with the business requester from the business requester and other trusted information sources.
  • the obtained data can be matched or compared with the above-mentioned business data, so as to determine the authenticity of the business data provided by the business requester. At the same time, it can also determine the business status of the business requester and other related information. Determine the information as the basis for subsequent processing.
  • step S312 the verification result of the business data is sent to the business authorizing party, so that the business authorizing party performs business processing based on the verification result of the business data and the business data after the second verification of the aforesaid data is passed, Get the processing result.
  • the blockchain node since the blockchain node has verified the authenticity of the business data provided by the business requester, the verification results have a high degree of credibility, so the business authorizing party will pass the second verification of the above-mentioned endorsed data. Then, based on the verification result of the business data and the business data, the business corresponding to the first business request can be processed to obtain the corresponding processing result.
  • the specific processing process please refer to the relevant content of step S108 in the first embodiment. This will not be repeated here.
  • step S314 the processing result returned by the service authorizer is received, and the processing result is returned to the service requester.
  • the service related business request initiated by the service requester corresponding to the above service data can also be processed based on the processing result, which may specifically include the following processing of step S316 and step S318.
  • step S316 a second smart contract is generated according to the above processing result and the processing rules of the business corresponding to the above business data, and the second smart contract is deployed in the blockchain.
  • the business processing rules corresponding to the above business data can include multiple types.
  • the above processing rules can include, for example, resource use rules (e.g., the maximum amount spent each time, the spent time Etc.), the usage rules of the requested resource (such as the scope or field of use of the resource, etc.).
  • the second smart contract may be a smart contract different from the above-mentioned first smart contract. In practical applications, the second smart contract and the first smart contract can also be combined into one smart contract for use, which is not limited in the embodiment of this specification.
  • the blockchain node can determine the business processing rules corresponding to the business data for the business corresponding to the business data, and can generate corresponding intelligence based on the processing results and the business processing rules corresponding to the business data.
  • Contract that is, the second smart contract
  • the second smart contract can be deployed to the blockchain network where the blockchain node is located.
  • the blockchain node initiates the above-mentioned business data to the business requester through the second smart contract
  • the second service request related to the corresponding service is processed.
  • step S318 when a second service request related to the service corresponding to the above-mentioned service data initiated by the service requester is received, the second smart contract is called to process the second service request, and the obtained second service request is The processing result is sent to the service authorizer and service requester.
  • the second service request can be a resource expenditure request, which can be a request to withdraw a certain amount of resources from the credit limit of the resource that has been applied for. For example, if the credit limit of the resource that has been applied for is 100,000 yuan, the resource The request for disbursement may be a request for disbursing 50,000 yuan from it, etc.
  • the business requester can make a business request to the blockchain node or the business authorizer.
  • the relevant page of the business request can be set in advance, and the page can be set with a certain item or
  • the service requester can open the above-mentioned page through the terminal device, and enter the relevant page of the corresponding service (such as resource utilization service, etc.) through the above-mentioned request entrance.
  • the information entered in the input box generates a second service request, which can be sent to the blockchain node, so that the blockchain node can receive the second service request from the service requester.
  • the blockchain node After the blockchain node receives the second business request related to the business corresponding to the above business data initiated by the business requester, it can call the second smart contract to process the second business request, and process the obtained second business request The result is sent to the service authorizer and service requester.
  • the second service request may be a resource utilization request, and the second service request may include the number of resources that need to be used.
  • the blockchain node may assign the first 2. The number of resources that need to be spent in the service request is compared with the credit limit of the resource that has been applied for.
  • the party sends a second service request so that the service authorizer transfers the resources that need to be spent to the service requester. If the amount of resources that needs to be spent is greater than the credit limit of the resource that has been applied for, it can refuse to perform to the service requester Resource utilization processing, and at the same time, corresponding notification messages can be sent to the service requester and service authorizer.
  • the embodiment of this specification provides a service processing method.
  • the first smart contract is deployed by the service authorizer to the deposit information generated by the service requester.
  • the first smart contract is called to the second
  • the signature data in a business request is verified. If the verification is passed, the business data and the signature data are sent to the business authorizing party for secondary verification.
  • the business requester uploads the data signature to the blockchain platform,
  • the blockchain platform performs multi-party data processing (such as data comparison, etc.) on the data, so that the processed data has higher credibility, thereby increasing the possibility of obtaining higher authority from the business authorized party.
  • the blockchain platform performs financial-level verification and verification of the business requester, making the data transmitted between the business authorizing party and the business requesting party more secure, and it can also be based on the processing results of the business authorizing party and the corresponding business data.
  • the business processing rules generate a second smart contract, and process the second business request related to the business corresponding to the business data initiated by the business requester through the second smart contract, which reduces the risk of business processing (such as financing, etc.), so that The security and reliability of business processing are improved.
  • the embodiment of this specification provides a service processing method.
  • the execution subject of the method can be the terminal device of the service authorizer, and the service authorizer can execute or access one or more different services to the service requester.
  • the authorizing party such as financial institutions (such as banks, etc.)
  • the terminal equipment of the business authorizing party can be mobile terminal equipment such as mobile phones, tablet computers, personal computers and other equipment, or an independent server or multiple devices.
  • the method may specifically include the following steps: in step S402, a digital certificate and certificate information for the service requester are generated.
  • step S404 the above-mentioned digital certificate is issued to the service requester, and the above-mentioned deposit information is sent to a predetermined blockchain node, so that the blockchain node deploys the first smart contract based on the deposit information, and the first smart contract uses
  • the signature data of the service requester is verified according to the deposit information, and when the first service request of the service requester is received, the first smart contract is invoked to verify the signature data, and the verification result is obtained.
  • step S406 the business data and the signature data sent by the blockchain node are received, the business data and the signature data are sent by the blockchain node when the above verification result is passed, and the signature data is generated based on the above digital certificate The data.
  • step S408 the second verification is performed on the above-mentioned signed data. If the verification is passed, the business processing is performed based on the above-mentioned business data to obtain the processing result, and the processing result is returned to the blockchain node, so that the blockchain node Based on the processing result, the second service request initiated by the service requester and related to the service corresponding to the above-mentioned service data is processed.
  • the embodiment of this specification provides a service processing method.
  • the first smart contract is deployed by the service authorizer to the deposit information generated by the service requester.
  • the first smart contract is called to the second
  • the signature data in a business request is verified. If the verification is passed, the business data and the signature data are sent to the business authorizing party for secondary verification.
  • the business requester uploads the data signature to the blockchain platform,
  • the blockchain platform performs multi-party data processing (such as data comparison, etc.) on the data, so that the processed data has higher credibility, thereby increasing the possibility of obtaining higher authority from the business authorized party.
  • the blockchain platform performs financial-level verification and signature verification on the business requester, making the data transmitted between the business authorizing party and the business requesting party more secure, and it can also perform transactions initiated by the business requesting party based on the processing results of the business authorizing party.
  • the business-related second business request corresponding to the business data is processed, which reduces the risk of business processing (such as financing, etc.), and improves the security and reliability of business processing.
  • the embodiment of this specification provides a service processing method.
  • the execution subject of the method can be the terminal equipment of the service authorizer, and the service authorizer can execute or access one or more different services to the service requester.
  • the authorizing party such as financial institutions (such as banks, etc.)
  • the terminal equipment of the business authorizing party can be mobile terminal equipment such as mobile phones, tablet computers, personal computers and other equipment, or an independent server or multiple devices.
  • the method may specifically include the following steps: In step S502, a digital certificate and certificate information for the service requester are generated.
  • the deposit information may include one or more of the following: digital certificate key, digital certificate issuer information, digital certificate user information, digital certificate and issuer relationship information, digital certificate and user relationship information.
  • step S504 a verifiable statement is generated based on the above-mentioned digital certificate.
  • a verifiable statement can be a kind of normative information used to describe certain attributes of individuals, organizations, and other entities.
  • a verifiable statement can realize evidence-based trust, and a verifiable statement can prove to other entities that certain attributes of the current entity The information of these attributes is credible.
  • a verifiable statement can be generated based on the digital certificate, and the content of the digital certificate can be written into the verifiable statement, or,
  • the data of the digital certificate can be stored in a predetermined storage area or storage component, and the storage address of the digital certificate can be written into the verifiable statement.
  • the verifiable statement may also include relevant information about the business authorizer who issued the verifiable statement, such as information that can be used to verify or prove the identity of the business authorizer, etc., which can be set according to actual conditions. There is no restriction on this.
  • some information in the verifiable statement can also be encrypted to obtain the ciphertext corresponding to the information, and the remaining information in the verifiable statement can be kept in plaintext.
  • step S506 the verifiable statement is issued to the service requester, and the above-mentioned deposit information is sent to the predetermined blockchain node, so that the blockchain node deploys the first smart contract based on the deposit information, and the first smart contract uses
  • the signature data of the service requester is verified according to the deposit information, and when the first service request of the service requester is received, the first smart contract is invoked to verify the signature data, and the verification result is obtained.
  • the first service request may be a resource application request.
  • the verifiable statement can be issued to the corresponding service requester respectively.
  • the received verifiable statement can be verified. If the verification result is passed, the corresponding digital certificate can be obtained based on the verifiable statement, and the business requester can store the obtained digital certificate In the above manner, the service requester can obtain and store a digital certificate based on the received verifiable statement.
  • step S508 the above-mentioned business data and endorsement data sent by the blockchain node are received.
  • the business data and endorsement data are sent by the blockchain node when the above-mentioned verification result is passed, and the endorsement data is generated based on the digital certificate.
  • the data is transmitted.
  • step S510 the second verification is performed on the above-mentioned signed data. If the verification is passed, business processing is performed based on the above-mentioned business data to obtain the processing result, and the processing result is returned to the blockchain node so that the blockchain node Based on the foregoing processing result, the second service request initiated by the service requester and related to the service corresponding to the foregoing service data is processed.
  • the second service request may be a resource expenditure request.
  • the embodiment of this specification provides a service processing method.
  • the first smart contract is deployed by the service authorizer to the deposit information generated by the service requester.
  • the first smart contract is called to the second
  • the signature data in a business request is verified. If the verification is passed, the business data and the signature data are sent to the business authorizing party for secondary verification.
  • the business requester uploads the data signature to the blockchain platform,
  • the blockchain platform performs multi-party data processing (such as data comparison, etc.) on the data, so that the processed data has higher credibility, thereby increasing the possibility of obtaining higher authority from the business authorized party.
  • the blockchain platform performs financial-level verification and signature verification on the business requester, making the data transmitted between the business authorizing party and the business requesting party more secure, and it can also issue digital certificates to the business requesting party through a verifiable statement. , Which reduces the risk of business processing (such as financing, etc.), and further improves the security and reliability of business processing.
  • the embodiment of this specification provides a service processing method.
  • the execution subject of the method can be a blockchain node and a terminal device of a service authorizer, and the blockchain node and a terminal device of the service authorizer can be a terminal.
  • Device or server, terminal device can be mobile terminal device such as mobile phone, tablet computer, or device such as personal computer.
  • the server can be an independent server, or a server cluster composed of multiple servers.
  • the method may specifically include the following steps: In step S602, the service authorizing party generates a digital certificate and deposit information for the service requesting party.
  • the deposit information may include one or more of the following: digital certificate key, digital certificate issuer information, digital certificate user information, digital certificate and issuer relationship information, digital certificate and user relationship information.
  • step S604 the service authorizer generates a verifiable statement based on the aforementioned digital certificate, issues the verifiable statement to the service requester, and sends the aforementioned certificate information to a predetermined blockchain node.
  • step S606 the blockchain node deploys a first smart contract based on the deposit information, and the first smart contract is used to verify the signature data of the service requester according to the deposit information.
  • the service authorizer can generate a digital certificate for the service requester.
  • the blockchain node obtains the information generated by the service authorizer for the service requester.
  • a digital certificate which is used to generate signature data; obtain the digital identity information of the service requester, and store the above-mentioned digital certificate in association with the digital identity information of the service requester.
  • step S608 the blockchain node receives a first service request from the service requester, and the first service request includes service data and endorsement data.
  • step S610 the blockchain node invokes the first smart contract to verify the above-mentioned signature data, and obtain the verification result.
  • step S612 if the verification result is passed, the blockchain node sends the above-mentioned service data and signature data to the service authorizer.
  • step S614 the blockchain node invokes the first smart contract to verify the authenticity of the business data, and obtain the verification result of the business data.
  • step S616 the blockchain node sends the verification result of the business data to the business authorizer.
  • steps S614 and S616 are only an optional processing flow. In actual applications, the processing of the above steps S614 and S616 can also be set before step S610, or set between step S610 and step S612, or set in It is executed synchronously with step S610 and step S612, and can be specifically set according to actual conditions.
  • step S618 the service authorizing party performs secondary verification on the above-mentioned signed data, and if the verification is passed, the service processing is performed based on the above-mentioned service data to obtain the processing result, and the processing result is returned to the blockchain node.
  • step S620 the blockchain node returns the foregoing processing result to the service requester, and based on the processing result, processes the second service request initiated by the service requester and related to the service corresponding to the foregoing service data.
  • the business request initiated by the service requester corresponding to the above business data can also be processed based on the processing results, which may specifically include the following content: according to the above processing results and the above
  • the business processing rules corresponding to the business data are generated, the second smart contract is generated, and the second smart contract is deployed in the blockchain; when the blockchain node receives the second business related to the business corresponding to the above business data initiated by the business requester
  • the second smart contract is called to process the second service request, and the obtained processing result of the second service request is sent to the service authorizer and the service requester.
  • the embodiment of this specification provides a service processing method.
  • the first smart contract is deployed by the service authorizer to the deposit information generated by the service requester.
  • the first smart contract is called to the second
  • the signature data in a business request is verified. If the verification is passed, the business data and the signature data are sent to the business authorizing party for secondary verification.
  • the business requester uploads the data signature to the blockchain platform,
  • the blockchain platform performs multi-party data processing (such as data comparison, etc.) on the data, so that the processed data has higher credibility, thereby increasing the possibility of obtaining higher authority from the business authorized party.
  • the blockchain platform performs financial-level verification and verification of the business requester, making the data transmitted between the business authorizing party and the business requesting party more secure, and it can also be based on the processing results of the business authorizing party and the corresponding business data.
  • the business processing rules generate a second smart contract, and the second business request initiated by the business requester and related to the business data corresponding to the business data is processed through the second smart contract, so that the security and reliability of business processing are improved.
  • a digital certificate can also be issued to the business requester through a verifiable statement, which reduces the risk of business processing (such as financing, etc.), and further improves the security and reliability of business processing.
  • the corresponding application scenario is an application scenario in which a business requester (such as a certain enterprise or organization) requests financing from a financial institution ,
  • the first business request can be an application request for a credit line of a resource
  • the second business request can be a resource expenditure request
  • the business authorized party can be a financial institution.
  • the embodiment of this specification provides a business processing method.
  • the execution subject of the method can be a blockchain node and a terminal device of a financial institution.
  • the blockchain node and a terminal device of the financial institution can be a terminal device or Servers and terminal devices can be mobile terminal devices such as mobile phones and tablet computers, or devices such as personal computers.
  • the server can be an independent server or a server cluster composed of multiple servers.
  • the method may specifically include the following steps: In step S702, the financial institution generates a digital certificate and deposit information for the service requester.
  • the deposit information may include one or more of the following: digital certificate key, digital certificate issuer information, digital certificate user information, digital certificate and issuer relationship information, digital certificate and user relationship information.
  • step S704 the financial institution generates a verifiable statement based on the above-mentioned digital certificate, issues the verifiable statement to the service requester, and sends the above-mentioned deposit information to a predetermined blockchain node.
  • step S706 the blockchain node deploys a first smart contract based on the deposit information, and the first smart contract is used to verify the signature data of the service requester according to the deposit information.
  • the financial institution can generate a digital certificate for the business requester.
  • the blockchain node obtains the digital certificate generated by the financial institution for the business requester .
  • the digital certificate is used to generate the signature data; to obtain the digital identity information of the service requester, and store the above-mentioned digital certificate in association with the digital identity information of the service requester.
  • step S708 the blockchain node receives an application request for the credit line of the resource of the service requester, and the application request includes the service data and the endorsement data.
  • step S710 the blockchain node invokes the first smart contract to verify the above-mentioned signature data, and obtain the verification result.
  • step S712 if the verification result is passed, the blockchain node sends the above-mentioned business data and signature data to the financial institution.
  • step S714 the blockchain node invokes the first smart contract to verify the authenticity of the business data, and obtain the verification result of the business data.
  • step S716 the blockchain node sends the verification result of the above-mentioned business data to the financial institution.
  • step S718 the financial institution performs secondary verification on the above-mentioned endorsed data. If the verification is passed, it will perform business processing based on the above-mentioned business data to obtain the result of the application for the credit line of the resource, and return the result of the application to the blockchain node .
  • step S720 the blockchain node returns the foregoing application result to the service requester, and processes the resource utilization request initiated by the service requester based on the application result.
  • the resource expenditure request initiated by the service requester can also be processed based on the application result, which may specifically include the following: processing according to the above application result and the service corresponding to the above business data Rules, generate a second smart contract, and deploy the second smart contract in the blockchain; when the blockchain node receives a resource utilization request initiated by the business requester, the second smart contract is called to process the resource utilization request , And send the processing result of the obtained resource expenditure request to the financial institution and the business requester.
  • the embodiment of this specification provides a business processing method based on the deployment of the first smart contract to the deposit information generated by the business requester by the business authorizer.
  • the first smart contract is called to The signature data in the first business request is verified. If the verification is passed, the business data and the signature data are sent to the business authorizing party for secondary verification.
  • the business requester uploads the data to the blockchain platform by the signature .
  • the blockchain platform performs multi-party data processing (such as data comparison, etc.) on the data, so that the processed data has higher credibility, thereby increasing the possibility of obtaining higher authority from the business authorized party.
  • the blockchain platform performs financial-level verification and verification of the business requester, making the data transmitted between the business authorizing party and the business requesting party more secure, and it can also be based on the processing result of the business authorizing party and corresponding to the above-mentioned business data
  • the second smart contract is generated by the business processing rules of, and the second business request related to the business corresponding to the business data initiated by the business requester is processed through the second smart contract, so that the security and reliability of business processing are improved.
  • the digital certificate can also be issued to the business requester through a verifiable statement, which reduces the risk of financing and credit, and further improves the security and reliability of business processing.
  • the embodiment of this specification provides a blockchain-based business processing method.
  • the execution subject of the method may be the first blockchain node in the first blockchain, and the first blockchain node may be A terminal device or server.
  • the terminal device can be a mobile terminal device such as a mobile phone, a tablet computer, or a device such as a personal computer.
  • the server can be an independent server, or a server cluster composed of multiple servers.
  • the system architecture involved in the embodiments of this specification can be shown in Figure 9, that is, the business authorized party in the above embodiment can construct a blockchain (ie, the second blockchain), and each different business authorized party can be used as the second area.
  • a node in the block chain can be shown in Figure 9, that is, the business authorized party in the above embodiment can construct a blockchain (ie, the second blockchain), and each different business authorized party can be used as the second area.
  • a node in the block chain ie, the second blockchain
  • the method may specifically include the following steps: in step S802, the second blockchain node is obtained from the second blockchain through the cross-chain transmission channel of the second blockchain corresponding to the first blockchain and the business authorization agency For the deposit information generated by the service requester, a first smart contract is deployed based on the deposit information, and the first smart contract is used to verify the signature data of the service requester according to the deposit information.
  • the deposit information may include one or more of the following: digital certificate key, digital certificate issuer information, digital certificate user information, digital certificate and issuer relationship information, digital certificate and user relationship information.
  • the business authorization institution may be an institution or organization where the business authorization party is located in the above embodiment, and the second blockchain corresponding to the business authorization institution may be, for example, the blockchain corresponding to a financial institution.
  • the cross-chain transmission channel is the channel used by the first blockchain and the second blockchain for cross-chain information transmission.
  • the cross-chain transmission channel can be set based on preset rules or protocols, which can be set according to actual conditions. The embodiments of this specification do not limit this.
  • the second blockchain node in the second blockchain can generate a digital certificate for the business requester.
  • it can also be handled in the following way: through the above-mentioned cross-chain transmission channel, from the second blockchain Obtain the digital certificate generated by the second blockchain node for the service requester, the digital certificate is used to generate the above-mentioned endorsed data; obtain the digital identity information of the service requester; and the digital certificate and the digital identity information of the service requester Associated storage.
  • step S804 a first service request from the service requester is received, where the first service request includes service data and endorsement data.
  • step S806 the first smart contract is invoked to verify the above-mentioned signed data, and the verification result is obtained.
  • step S808 if the verification result is passed, the above-mentioned business data and signature data are sent to the second blockchain node in the second blockchain through the above-mentioned cross-chain transmission channel, so that the second blockchain The node performs secondary verification on the signed data, and after the verification is passed, performs business processing based on the business data to obtain the processing result.
  • other data in the first business request can also be verified.
  • the following provides an optional processing method, which may specifically include the following: The authenticity of the business data is verified to obtain the verification result of the business data; the verification result of the business data is sent to the second block chain node in the second block chain through the above-mentioned cross-chain transmission channel, so that the second zone After the block chain node passes the second verification of the above-mentioned signed data, it performs business processing based on the verification result of the business data and the business data to obtain the processing result.
  • step S810 through the above-mentioned cross-chain transmission channel, the processing result returned by the second blockchain node is received, and the processing result is returned to the service requester, and based on the processing result, the data corresponding to the above-mentioned service data initiated by the service requester The business-related second business request is processed.
  • the specific processing methods for processing the second service request related to the business corresponding to the above-mentioned business data initiated by the service requester based on the above-mentioned processing result can be various, and an optional processing method is provided below, which may specifically include the following content :
  • a second smart contract is generated, and the second smart contract is deployed in the first blockchain; when the business requester initiates the request and corresponds to the business data
  • the second smart contract is called to process the second business request, and the processing result of the second business request is sent to the second blockchain through the above-mentioned cross-chain transmission channel
  • the second blockchain node According to the above processing results and the business processing rules corresponding to the above business data, a second smart contract is generated, and the second smart contract is deployed in the first blockchain; when the business requester initiates the request and corresponds to the business data
  • the second smart contract is called to process the second business request, and the processing result of the second business request is sent to the second blockchain through the above-mentioned cross-chain transmission channel The second
  • the first service request may be a resource application request
  • the second service request may be a resource expenditure request
  • the embodiment of this specification provides a blockchain-based business processing method.
  • the first smart contract is deployed to the deposit information generated by the business requester through the second blockchain node in the second blockchain.
  • the first smart contract is called to verify the signature data in the first business request. If the verification is passed, the business data and signature data are sent to the business authorizing party through the cross-chain transmission channel.
  • the business requester uploads the data to the first blockchain platform by adding signatures, and the first blockchain platform performs multi-party data processing (such as data comparison, etc.) on the data, so that the processed data has more High credibility, thereby increasing the possibility of obtaining higher authority from the second blockchain, and performing financial-level verification and verification of the business requester through the first blockchain platform, reducing business processing (such as financing, etc.) make the data transmitted between the second blockchain and the business requester more secure.
  • multi-party data processing such as data comparison, etc.
  • the embodiment of this specification provides a blockchain-based business processing method.
  • the execution subject of the method may be a second blockchain node in the second blockchain, and the second blockchain node may be A terminal device or server.
  • the terminal device can be a mobile terminal device such as a mobile phone, a tablet computer, or a device such as a personal computer.
  • the server can be an independent server, or a server cluster composed of multiple servers.
  • the method may specifically include the following steps: in step S1002, the digital certificate and certificate information of the service requester are directed.
  • the deposit information may include one or more of the following: digital certificate key, digital certificate issuer information, digital certificate user information, digital certificate and issuer relationship information, digital certificate and user relationship information.
  • step S1004 the above-mentioned digital certificate is issued to the service requester, and the deposit is sent to the first blockchain node of the first blockchain through the cross-chain transmission channel of the first blockchain and the second blockchain. Certificate information, so that the first blockchain node deploys the first smart contract based on the deposit information.
  • the first smart contract is used to verify the signature data of the business requester according to the deposit information, and when the business request is received When the party’s first business request, the first smart contract is called to verify the signed data, and the verification result is obtained.
  • processing methods for issuing a digital certificate to a business requester there are various processing methods for issuing a digital certificate to a business requester.
  • An optional processing method is provided below, which may specifically include the following: generate a verifiable statement based on the above digital certificate; issue a verifiable statement to the business Requester.
  • step S1006 through the above-mentioned cross-chain transmission channel, the above-mentioned service data and endorsement data sent by the first blockchain node of the first blockchain are received.
  • the verification result is sent when it is passed, and the signature data is data generated based on the above-mentioned digital certificate.
  • step S1008 perform secondary verification on the above-mentioned signed data. If the verification is passed, perform business processing based on the above-mentioned business data to obtain the processing result, and return the above-mentioned processing result to the first blockchain of the first blockchain Node, so that the first blockchain node processes the second service request related to the service corresponding to the service data initiated by the service requester based on the processing result.
  • the first service request may be a resource application request
  • the second service request may be a resource expenditure request
  • the embodiment of this specification provides a blockchain-based business processing method.
  • the first smart contract is deployed to the deposit information generated by the business requester through the second blockchain node in the second blockchain.
  • the first smart contract is called to verify the signature data in the first business request. If the verification is passed, the business data and signature data are sent to the business authorizing party through the cross-chain transmission channel.
  • the business requester uploads the data to the first blockchain platform by adding signatures, and the first blockchain platform performs multi-party data processing (such as data comparison, etc.) on the data, so that the processed data has more High credibility, thereby increasing the possibility of obtaining higher authority from the second blockchain, and performing financial-level verification and verification of the business requester through the first blockchain platform, reducing business processing (such as financing, etc.) make the data transmitted between the second blockchain and the business requester more secure.
  • multi-party data processing such as data comparison, etc.
  • the embodiment of this specification also provides a service processing device, as shown in FIG. 11.
  • the service processing device includes: a contract deployment module 1101, a request receiving module 1102, a first verification module 1103, a data sending module 1104, and a processing module 1105.
  • the contract deployment module 1101 which obtains the deposit certificate generated by the service authorizer to the service requester Information, a first smart contract is deployed based on the deposit information, and the first smart contract is used to verify the signature data of the service requester according to the deposit information
  • request receiving module 1102 receiving the service The first service request of the requesting party, the first service request includes service data and endorsement data; the first verification module 1103, which calls the first smart contract to verify the endorsement data, and obtains the verification result; data
  • the sending module 1104, if the verification result is passed sends the service data and the endorsed data to the service authorizer, so that the service authorizer can perform a second verification on the endorsed data, and after the verification is passed, it is based on The business data is processed to obtain a processing result;
  • the device further includes: a digital certificate obtaining module, which obtains a digital certificate generated by the service authorizer for the service requester, the digital certificate is used to generate the signature data; the identity information obtains A module to obtain the digital identity information of the service requester; an association module to store the digital certificate in association with the digital identity information of the service requester.
  • a digital certificate obtaining module which obtains a digital certificate generated by the service authorizer for the service requester, the digital certificate is used to generate the signature data
  • the identity information obtains A module to obtain the digital identity information of the service requester
  • an association module to store the digital certificate in association with the digital identity information of the service requester.
  • the deposit information includes one or more of the following: the key of the digital certificate, the information of the issuer of the digital certificate, the information of the user of the digital certificate, the digital certificate The relationship information between the certificate and the issuer, and the relationship information between the digital certificate and the user.
  • the processing module 1105 includes: a contract generation unit, which generates a second smart contract according to the processing result and the processing rules of the business corresponding to the business data, and deploys the second smart contract In the blockchain; the processing unit, when receiving a second service request related to the service corresponding to the service data initiated by the service requester, invokes the second smart contract to perform the second service request Processing, and sending the obtained processing result of the second service request to the service authorizing party and the service requesting party.
  • the first service request is a resource application request
  • the second service request is a resource expenditure request
  • the device further includes: a second verification module, which invokes the first smart contract to verify the authenticity of the business data, and obtains the verification result of the business data; the result sending module sends the verification result of the business data; The verification result of the business data is sent to the business authorizing party, so that the business authorizing party performs business processing based on the verification result of the business data and the business data after the second verification of the signed data is passed, Get the processing result.
  • a second verification module which invokes the first smart contract to verify the authenticity of the business data, and obtains the verification result of the business data
  • the result sending module sends the verification result of the business data
  • the verification result of the business data is sent to the business authorizing party, so that the business authorizing party performs business processing based on the verification result of the business data and the business data after the second verification of the signed data is passed, Get the processing result.
  • the embodiment of this specification provides a service processing device.
  • the first smart contract is deployed by the service authorizer to the deposit information generated by the service requester.
  • the first smart contract is called to the second
  • the signature data in a business request is verified. If the verification is passed, the business data and the signature data are sent to the business authorizing party for secondary verification.
  • the business requester uploads the data signature to the blockchain platform,
  • the blockchain platform performs multi-party data processing (such as data comparison, etc.) on the data, so that the processed data has higher credibility, thereby increasing the possibility of obtaining higher authority from the business authorized party.
  • the blockchain platform performs financial-level verification and signature verification on the business requester, making the data transmitted between the business authorizing party and the business requesting party more secure, and it can also perform transactions initiated by the business requesting party based on the processing results of the business authorizing party.
  • the business-related second business request corresponding to the business data is processed, which reduces the risk of business processing (such as financing, etc.), and improves the security and reliability of business processing.
  • the embodiment of this specification also provides a service processing device, as shown in FIG. 12.
  • the service processing device includes: a generating module 1201, a sending module 1202, a data receiving module 1203, and a secondary verification module 1204.
  • the generating module 1201 generates a digital certificate and deposit information for the service requester;
  • the digital certificate is issued to the service requester, and the deposit information is sent to a predetermined blockchain node, so that the blockchain node deploys a first smart contract based on the deposit information, and the first smart
  • the contract is used to verify the endorsement data of the service requester according to the deposit information, and when the first service request of the service requester is received, call the first smart contract to endorse the endorsement The data is verified, and the verification result is obtained;
  • the data receiving module 1203 receives the business data and endorsement data sent by the blockchain node, where the business data and endorsement data are the verification results of the blockchain node The result is sent when the result is passed, the endorsed data is data generated based on the digital certificate;
  • the sending module 1202 includes: a processing unit that generates a verifiable statement based on the digital certificate; and a sending unit that issues the verifiable statement to the service requester.
  • the first service request is a resource application request
  • the second service request is a resource expenditure request
  • the deposit information includes one or more of the following: the key of the digital certificate, the information of the issuer of the digital certificate, the information of the user of the digital certificate, the digital certificate The relationship information between the certificate and the issuer, and the relationship information between the digital certificate and the user.
  • the embodiment of this specification provides a service processing device.
  • the first smart contract is deployed by the service authorizer to the deposit information generated by the service requester.
  • the first smart contract is called to the second
  • the signature data in a business request is verified. If the verification is passed, the business data and the signature data are sent to the business authorizing party for secondary verification.
  • the business requester uploads the data signature to the blockchain platform,
  • the blockchain platform performs multi-party data processing (such as data comparison, etc.) on the data, so that the processed data has higher credibility, thereby increasing the possibility of obtaining higher authority from the business authorized party.
  • the blockchain platform performs financial-level verification and signature verification on the business requester, making the data transmitted between the business authorizing party and the business requesting party more secure, and it can also perform transactions initiated by the business requesting party based on the processing results of the business authorizing party.
  • the business-related second business request corresponding to the business data is processed, which reduces the risk of business processing (such as financing, etc.), and improves the security and reliability of business processing.
  • the embodiment of this specification also provides a business processing device based on blockchain, as shown in FIG. 13.
  • the blockchain-based business processing device includes: an information acquisition and contract deployment module 1301, a request module 1302, a calling module 1303, a cross-chain transmission module 1304, and a processing module 1305.
  • the first block chain and the cross-chain transmission channel of the second block chain corresponding to the business authorization agency obtain the deposit information generated by the second block chain node to the business requester from the second block chain.
  • the deposit certificate information deploys a first smart contract, and the first smart contract is used to verify the signature data of the service requester according to the deposit information; the request module 1302 receives the first smart contract of the service requester.
  • the first service request includes service data and endorsement data; call module 1303, call the first smart contract to verify the endorsement data, and obtain the verification result; cross-chain transmission module 1304, if verified If the result is passed, the business data and endorsement data are sent to the second blockchain node in the second blockchain through the cross-chain transmission channel, so that the second block
  • the chain node performs secondary verification on the signed data, and after the verification is passed, performs business processing based on the business data to obtain the processing result; the processing module 1305 receives the second blockchain node through the cross-chain transmission channel
  • the processing result is returned to the service requester, and a second service request related to the service corresponding to the service data initiated by the service requester is processed based on the processing result.
  • the device further includes: a certificate obtaining module, which obtains from the second block chain the information generated by the second block chain node for the service requester through the cross-chain transmission channel A digital certificate, the digital certificate is used to generate the signature data; an identity information acquisition module, which acquires the digital identity information of the service requester; an association module, which combines the digital certificate with the digital identity information of the service requester Associated storage.
  • a certificate obtaining module which obtains from the second block chain the information generated by the second block chain node for the service requester through the cross-chain transmission channel A digital certificate, the digital certificate is used to generate the signature data
  • an identity information acquisition module which acquires the digital identity information of the service requester
  • an association module which combines the digital certificate with the digital identity information of the service requester Associated storage.
  • the processing module 1305 includes: a contract generation unit, which generates a second smart contract according to the processing result and the processing rules of the business corresponding to the business data, and deploys the second smart contract In the first blockchain; the processing unit, when receiving a second service request related to the service corresponding to the service data initiated by the service requester, call the second smart contract to the first 2.
  • the service request is processed, and the obtained processing result of the second service request is sent to the second blockchain node in the second blockchain through the cross-chain transmission channel.
  • the device further includes: a verification module, which invokes the first smart contract to verify the authenticity of the business data, and obtains the verification result of the business data; and the result sending module passes the cross-chain The transmission channel, which sends the verification result of the business data to the second blockchain node in the second blockchain, so that the second blockchain node performs a secondary operation on the signed data After the verification is passed, business processing is performed based on the verification result of the business data and the business data to obtain the processing result.
  • a verification module which invokes the first smart contract to verify the authenticity of the business data, and obtains the verification result of the business data
  • the result sending module passes the cross-chain The transmission channel, which sends the verification result of the business data to the second blockchain node in the second blockchain, so that the second blockchain node performs a secondary operation on the signed data
  • the deposit information includes one or more of the following: the key of the digital certificate, the information of the issuer of the digital certificate, the information of the user of the digital certificate, the digital certificate The relationship information between the certificate and the issuer, and the relationship information between the digital certificate and the user.
  • the first service request is a resource application request
  • the second service request is a resource expenditure request
  • the embodiment of this specification provides a blockchain-based business processing device, which deploys the first smart contract to the deposit information generated by the business requester through the second blockchain node in the second blockchain, and when the business request is received
  • the first smart contract is called to verify the signature data in the first business request. If the verification is passed, the business data and signature data are sent to the business authorizing party through the cross-chain transmission channel.
  • the business requester uploads the data to the first blockchain platform by adding signatures, and the first blockchain platform performs multi-party data processing (such as data comparison, etc.) on the data, so that the processed data has more High credibility, thereby increasing the possibility of obtaining higher authority from the second blockchain, and performing financial-level verification and verification of the business requester through the first blockchain platform, reducing business processing (such as financing, etc.) make the data transmitted between the second blockchain and the business requester more secure.
  • multi-party data processing such as data comparison, etc.
  • the embodiment of this specification also provides a business processing device based on the blockchain, as shown in FIG. 14.
  • the blockchain-based business processing device includes: a certificate and information generating module 1401, a certificate and information sending module 1402, a data receiving module 1403, and a verification module 1404.
  • a certificate and information generating module 1401 which generates a number for the business requester Certificate and deposit information
  • the certificate and information sending module 1402 which issues the digital certificate to the service requester, and sends the digital certificate to the
  • the first blockchain node of the first blockchain sends the deposit information, so that the first blockchain node deploys a first smart contract based on the deposit information, and the first smart contract is used according to
  • the deposit information verifies the endorsed data of the service requester, and upon receiving the first service request of the service requester, calls the first smart contract to verify the endorsed data, Obtain the verification result;
  • the data receiving module 1403, through the cross-chain transmission channel receives the business data and endorsement data sent by the first blockchain node of the first blockchain, the business data and endorsement
  • the data is sent by the first blockchain node when the verification result is passed, and the endorsement data is data generated based on the digital certificate;
  • the verification module 1404 performs secondary verification on the endorsement data, If the verification is passed, business processing is performed based on the business data
  • the certificate and information sending module 1402 includes: a processing unit that generates a verifiable statement based on the digital certificate; and a sending unit that issues the verifiable statement to the service requester.
  • the first service request is a resource application request
  • the second service request is a resource expenditure request
  • the deposit information includes one or more of the following: the key of the digital certificate, the information of the issuer of the digital certificate, the information of the user of the digital certificate, the digital certificate The relationship information between the certificate and the issuer, and the relationship information between the digital certificate and the user.
  • the embodiment of this specification provides a blockchain-based business processing device, which deploys the first smart contract to the deposit information generated by the business requester through the second blockchain node in the second blockchain, and when the business request is received
  • the first smart contract is called to verify the signature data in the first business request. If the verification is passed, the business data and signature data are sent to the business authorizing party through the cross-chain transmission channel.
  • the business requester uploads the data to the first blockchain platform by adding signatures, and the first blockchain platform performs multi-party data processing (such as data comparison, etc.) on the data, so that the processed data has more High credibility, thereby increasing the possibility of obtaining higher authority from the second blockchain, and performing financial-level verification and verification of the business requester through the first blockchain platform, reducing business processing (such as financing, etc.) make the data transmitted between the second blockchain and the business requester more secure.
  • multi-party data processing such as data comparison, etc.
  • the embodiment of this specification also provides a service processing device, as shown in FIG. 15.
  • the service processing device may be the terminal device of the service authorizer provided in the foregoing embodiment or the second blockchain node that accesses the second blockchain.
  • Business processing equipment may have relatively large differences due to different configurations or performances, and may include one or more processors 1501 and a memory 1502, and the memory 1502 may store one or more storage applications or data.
  • the memory 1502 may be short-term storage or persistent storage.
  • the application program stored in the memory 1502 may include one or more modules (not shown in the figure), and each module may include a series of computer-executable instructions for the business processing device.
  • the processor 1501 may be configured to communicate with the memory 1502, and execute a series of computer-executable instructions in the memory 1502 on the service processing device.
  • the business processing equipment may also include one or more power supplies 1503, one or more wired or wireless network interfaces 1504, one or more input and output interfaces 1505, and one or more keyboards 1506.
  • the business processing device includes a memory and one or more programs, wherein one or more programs are stored in the memory, and one or more programs may include one or more modules, and each The module may include a series of computer-executable instructions for the business processing equipment, and the one or more programs configured to be executed by one or more processors include computer-executable instructions for performing the following:
  • the deposit information generated by the requesting party deploys a first smart contract based on the deposit information, and the first smart contract is used to verify the signature data of the service requester according to the deposit information; receiving the The first business request of the business requester, the first business request includes business data and endorsement data; the first smart contract is called to verify the endorsement data, and the verification result is obtained; if the verification result is passed, Then the service data and the signature data are sent to the service authorizer, so that the service authorizer performs a secondary verification on the signature data, and after the verification is passed, the service processing is performed based on the service data, and the processing is obtained Result; receiving the processing
  • it further includes: obtaining a digital certificate generated by the service authorizer for the service requester, where the digital certificate is used to generate the endorsement data; and obtaining the digital identity information of the service requester;
  • the digital certificate is stored in association with the digital identity information of the service requester.
  • the deposit information includes one or more of the following: the key of the digital certificate, the information of the issuer of the digital certificate, the information of the user of the digital certificate, the digital certificate The relationship information between the certificate and the issuer, and the relationship information between the digital certificate and the user.
  • the processing of a second service request related to the service corresponding to the service data initiated by the service requester based on the processing result includes: according to the processing result and the service The processing rules of the business corresponding to the data are generated, a second smart contract is generated, and the second smart contract is deployed in the blockchain; when the second smart contract initiated by the service requester is received and the second related to the business corresponding to the business data is received When a service request is made, the second smart contract is called to process the second service request, and the obtained processing result of the second service request is sent to the service authorizer and the service requester.
  • the first service request is a resource application request
  • the second service request is a resource expenditure request
  • it further includes: invoking the first smart contract to verify the authenticity of the business data to obtain the verification result of the business data; and sending the verification result of the business data to the business authorizing party , So that the service authorizing party performs a service process based on the verification result of the service data and the service data after the second verification of the signed data is passed, and the processing result is obtained.
  • the business processing device includes a memory and one or more programs, wherein one or more programs are stored in the memory, and the one or more programs may include one or more modules, and Each module may include a series of computer-executable instructions for the business processing equipment, and the one or more programs configured to be executed by one or more processors include computer-executable instructions for performing the following: A block chain and a cross-chain transmission channel of a second block chain corresponding to a business authorization agency, from the second block chain to obtain the deposit information generated by the second block chain node to the business requester, based on the The deposit information deploys a first smart contract, and the first smart contract is used to verify the signature data of the service requester according to the deposit information; receiving the first service request of the service requester, the The first service request includes service data and endorsement data; the first smart contract is called to verify the endorsement data, and the verification result is obtained; if the verification result is passed, the cross-chain transmission channel is used to transfer all The business data and the signature data are sent to
  • it further includes: obtaining a digital certificate generated by the second blockchain node for the service requester from the second blockchain through the cross-chain transmission channel, the digital certificate It is used to generate the signature data; obtain the digital identity information of the service requester; and store the digital certificate in association with the digital identity information of the service requester.
  • the processing of a second service request related to the service corresponding to the service data initiated by the service requester based on the processing result includes: according to the processing result and the service The processing rules of the business corresponding to the data, generate a second smart contract, and deploy the second smart contract in the first blockchain; when receiving the business initiated by the business requester and corresponding to the business data When a related second business request is made, the second smart contract is called to process the second business request, and the obtained processing result of the second business request is sent to the said cross-chain transmission channel.
  • it further includes: invoking the first smart contract to verify the authenticity of the business data to obtain the verification result of the business data; and verifying the business data through the cross-chain transmission channel
  • the result is sent to the second blockchain node in the second blockchain, so that after the second blockchain node passes the second verification of the signed data, the data based on the business data Perform business processing on the verification result and the business data to obtain a processing result.
  • the embodiment of this specification provides a service processing device.
  • the first smart contract is deployed by the service authorizer to the deposit information generated by the service requester.
  • the first smart contract is called to the second
  • the signature data in a business request is verified. If the verification is passed, the business data and the signature data are sent to the business authorizing party for secondary verification.
  • the business requester uploads the data signature to the blockchain platform,
  • the blockchain platform performs multi-party data processing (such as data comparison, etc.) on the data, so that the processed data has higher credibility, thereby increasing the possibility of obtaining higher authority from the business authorized party.
  • the blockchain platform performs financial-level verification and signature verification on the business requester, making the data transmitted between the business authorizing party and the business requesting party more secure, and it can also perform transactions initiated by the business requesting party based on the processing results of the business authorizing party.
  • the business-related second business request corresponding to the business data is processed, which reduces the risk of business processing (such as financing, etc.), and improves the security and reliability of business processing.
  • the embodiment of this specification also provides a service processing device, as shown in FIG. 16.
  • the service processing device may be the blockchain node provided in the above embodiment or the first blockchain node connected to the first blockchain.
  • Business processing equipment may have relatively large differences due to different configurations or performances, and may include one or more processors 1601 and a memory 1602, and the memory 1602 may store one or more storage applications or data.
  • the memory 1602 may be short-term storage or persistent storage.
  • the application program stored in the memory 1602 may include one or more modules (not shown in the figure), and each module may include a series of computer-executable instructions for the business processing device.
  • the processor 1601 may be configured to communicate with the memory 1602, and execute a series of computer-executable instructions in the memory 1602 on the service processing device.
  • the business processing equipment may also include one or more power supplies 1603, one or more wired or wireless network interfaces 1604, one or more input and output interfaces 1605, and one or more keyboards 1606.
  • the business processing device includes a memory and one or more programs, wherein one or more programs are stored in the memory, and one or more programs may include one or more modules, and each The module may include a series of computer-executable instructions for the business processing equipment, and the one or more programs configured to be executed by one or more processors include computer-executable instructions for performing the following: Digital certificate and deposit information; the digital certificate is issued to the service requester, and the deposit information is sent to a predetermined blockchain node, so that the blockchain node deploys the first based on the deposit information A smart contract, the first smart contract is used to verify the signature data of the service requester according to the deposit information, and when the first service request of the service requester is received, call the The first smart contract verifies the signature data to obtain a verification result; receives the business data and signature data sent by the blockchain node, where the business data and signature data are the blockchain node Send when the verification result is passed, the endorsement data is data generated based on the digital certificate; perform secondary verification on the endorsement
  • the issuance of the digital certificate to the service requester includes: generating a verifiable statement based on the digital certificate; and issuing the verifiable statement to the service requester.
  • the first service request is a resource application request
  • the second service request is a resource expenditure request
  • the deposit information includes one or more of the following: the key of the digital certificate, the information of the issuer of the digital certificate, the information of the user of the digital certificate, the digital certificate The relationship information between the certificate and the issuer, and the relationship information between the digital certificate and the user.
  • the business processing device includes a memory and one or more programs, wherein one or more programs are stored in the memory, and the one or more programs may include one or more modules, and Each module may include a series of computer-executable instructions for the business processing equipment, and the one or more programs configured to be executed by one or more processors include computer-executable instructions for performing the following: generate a business request Party’s digital certificate and deposit information; issue the digital certificate to the service requester, and send it to the first block through the cross-chain transmission channel of the first block chain and the second block chain.
  • the first blockchain node of the chain sends the deposit certificate information so that the first blockchain node deploys a first smart contract based on the deposit information, and the first smart contract is used to
  • the information verifies the endorsed data of the service requester, and when the first service request of the service requester is received, the first smart contract is invoked to verify the endorsed data, and the verification result is obtained;
  • Through the cross-chain transmission channel receive the service data and endorsement data sent by the first
  • the issuance of the digital certificate to the service requester includes: generating a verifiable statement based on the digital certificate; and issuing the verifiable statement to the service requester.
  • the embodiment of this specification provides a service processing device.
  • the first smart contract is deployed by the service authorizer to the deposit information generated by the service requester.
  • the first smart contract is called to the second
  • the signature data in a business request is verified. If the verification is passed, the business data and the signature data are sent to the business authorizing party for secondary verification.
  • the business requester uploads the data signature to the blockchain platform,
  • the blockchain platform performs multi-party data processing (such as data comparison, etc.) on the data, so that the processed data has higher credibility, thereby increasing the possibility of obtaining higher authority from the business authorized party.
  • the blockchain platform performs financial-level verification and signature verification on the business requester, making the data transmitted between the business authorizing party and the business requesting party more secure, and it can also perform transactions initiated by the business requesting party based on the processing results of the business authorizing party.
  • the business-related second business request corresponding to the business data is processed, which reduces the risk of business processing (such as financing, etc.), and improves the security and reliability of business processing.
  • the embodiment of this specification also provides a service processing system, as shown in FIG. 2 or 9.
  • the business processing system may include a blockchain node, a business authorizer, and a business requester.
  • the specific processing procedures that the blockchain node, business authorizer and business requester need to perform please refer to the first embodiment to the sixth embodiment above.
  • the business processing system can also be constructed in the following manner, that is, the business processing system can include a first blockchain (which may include a first blockchain node), a second blockchain (wherein It can include the second blockchain node (that is, the business authorizer) and the business requester, the first blockchain node in the first blockchain, the second blockchain node in the second blockchain, and the business requester.
  • a first blockchain which may include a first blockchain node
  • a second blockchain wherein It can include the second blockchain node (that is, the business authorizer) and the business requester, the first blockchain node in the first blockchain, the second blockchain node in the second blockchain, and the business requester.
  • the embodiment of this specification provides a business processing system.
  • the first smart contract is deployed by the business authorizer to the deposit information generated by the business requester.
  • the first smart contract is called to the second
  • the signature data in a business request is verified. If the verification is passed, the business data and the signature data are sent to the business authorizing party for secondary verification.
  • the business requester uploads the data signature to the blockchain platform,
  • the blockchain platform performs multi-party data processing (such as data comparison, etc.) on the data, so that the processed data has higher credibility, thereby increasing the possibility of obtaining higher authority from the business authorized party.
  • the blockchain platform performs financial-level verification and signature verification on the business requester, making the data transmitted between the business authorizing party and the business requesting party more secure, and it can also perform transactions initiated by the business requesting party based on the processing results of the business authorizing party.
  • the business-related second business request corresponding to the business data is processed, which reduces the risk of business processing (such as financing, etc.), and improves the security and reliability of business processing.
  • a Programmable Logic Device (such as a Field Programmable Gate Array (FPGA)) is such an integrated circuit whose logic function is determined by the user's programming of the device.
  • HDL Hardware Description Language
  • the controller can be implemented in any suitable manner.
  • the controller can take the form of, for example, a microprocessor or a processor and a computer-readable medium storing computer-readable program codes (such as software or firmware) executable by the (micro)processor. , Logic gates, switches, application specific integrated circuits (ASICs), programmable logic controllers and embedded microcontrollers.
  • controllers include but are not limited to the following microcontrollers: ARC 625D, Atmel AT91SAM, Microchip PIC18F26K20 and Silicon Labs C8051F320, the memory controller can also be implemented as a part of the control logic of the memory.
  • controllers in addition to implementing the controller in a purely computer-readable program code manner, it is completely possible to program the method steps to make the controller use logic gates, switches, application specific integrated circuits, programmable logic controllers, and embedded logic.
  • the same function can be realized in the form of a microcontroller or the like. Therefore, such a controller can be regarded as a hardware component, and the devices included in it for realizing various functions can also be regarded as a structure within the hardware component. Or even, the device for realizing various functions can be regarded as both a software module for realizing the method and a structure within a hardware component.
  • a typical implementation device is a computer.
  • the computer may be, for example, a personal computer, a laptop computer, a cell phone, a camera phone, a smart phone, a personal digital assistant, a media player, a navigation device, an email device, a game console, a tablet computer, a wearable device, or Any combination of these devices.
  • one or more embodiments of this specification can be provided as a method, a system, or a computer program product. Therefore, one or more embodiments of this specification may adopt the form of a complete hardware embodiment, a complete software embodiment, or an embodiment combining software and hardware. Moreover, one or more embodiments of this specification may adopt a computer program implemented on one or more computer-usable storage media (including but not limited to disk storage, CD-ROM, optical storage, etc.) containing computer-usable program codes. The form of the product.
  • computer-usable storage media including but not limited to disk storage, CD-ROM, optical storage, etc.
  • These computer program instructions can also be stored in a computer-readable memory that can guide a computer or other programmable business processing equipment to work in a specific manner, so that the instructions stored in the computer-readable memory produce an article of manufacture including the instruction device.
  • the device implements the functions specified in one process or multiple processes in the flowchart and/or one block or multiple blocks in the block diagram.
  • These computer program instructions can also be loaded on a computer or other programmable service processing equipment, so that a series of operation steps are executed on the computer or other programmable equipment to produce computer-implemented processing, so as to execute on the computer or other programmable equipment.
  • the instructions provide steps for implementing functions specified in a flow or multiple flows in the flowchart and/or a block or multiple blocks in the block diagram.
  • the computing device includes one or more processors (CPU), input/output interfaces, network interfaces, and memory.
  • the memory may include non-permanent memory in a computer-readable medium, random access memory (RAM) and/or non-volatile memory, such as read-only memory (ROM) or flash memory (flash RAM).
  • RAM random access memory
  • ROM read-only memory
  • flash RAM flash memory
  • Computer-readable media includes permanent and non-permanent, removable and non-removable media, and information storage can be realized by any method or technology.
  • Information can be computer-readable instructions, data structures, program modules, or other data.
  • Examples of computer storage media include, but are not limited to, phase change memory (PRAM), static random access memory (SRAM), dynamic random access memory (DRAM), other types of random access memory (RAM), read-only memory (ROM), electrically erasable programmable read-only memory (EEPROM), flash memory or other memory technology, CD-ROM, digital versatile disc (DVD) or other optical storage, Magnetic cassettes, magnetic tape magnetic disk storage or other magnetic storage devices or any other non-transmission media can be used to store information that can be accessed by computing devices. According to the definition in this article, computer-readable media does not include transitory media, such as modulated data signals and carrier waves.
  • PRAM phase change memory
  • SRAM static random access memory
  • DRAM dynamic random access memory
  • RAM random access memory
  • ROM read-only memory
  • EEPROM electrically erasable programmable read-only memory
  • flash memory or other memory technology
  • CD-ROM compact disc
  • DVD digital versatile disc
  • Magnetic cassettes magnetic tape magnetic disk storage or other magnetic storage devices or any other non
  • one or more embodiments of this specification can be provided as a method, a system or a computer program product. Therefore, one or more embodiments of this specification may adopt the form of a complete hardware embodiment, a complete software embodiment, or an embodiment combining software and hardware. Moreover, one or more embodiments of this specification may adopt a computer program implemented on one or more computer-usable storage media (including but not limited to disk storage, CD-ROM, optical storage, etc.) containing computer-usable program codes. The form of the product.
  • computer-usable storage media including but not limited to disk storage, CD-ROM, optical storage, etc.
  • One or more embodiments of this specification may be described in the general context of computer-executable instructions executed by a computer, such as program modules.
  • program modules include routines, programs, objects, components, data structures, etc. that perform specific tasks or implement specific abstract data types.
  • One or more embodiments of this specification can also be practiced in distributed computing environments. In these distributed computing environments, tasks are performed by remote processing devices connected through a communication network. In a distributed computing environment, program modules can be located in local and remote computer storage media including storage devices.

Abstract

Disclosed are a blockchain-based service processing method, apparatus and device, which are applied to a blockchain node. The method comprises: acquiring certificate storage information generated by a service authorization party for a service requesting party, and deploying a first smart contract on the basis of the certificate storage information, wherein the first smart contract is used for verifying encrypted and signed data; receiving a first service request from the service requesting party, wherein the first service request comprises service data and the encrypted and signed data; calling the first smart contract to verify the encrypted and signed data, so as to obtain a verification result; if the verification result indicates that verification is passed, sending the service data and the encrypted and signed data to the service authorization party, such that the service authorization party performs secondary verification on the encrypted and signed data, and performs, after verification is passed, service processing on the basis of the service data, so as to obtain a processing result; receiving the processing result returned by the service authorization party, returning the processing result to the service requesting party, and on the basis of the processing result, processing a second service request initiated by the service requesting party.

Description

基于区块链的业务处理Blockchain-based business processing 技术领域Technical field
本说明书涉及计算机技术领域,尤其涉及一种基于区块链的业务处理的方法、装置及设备。This specification relates to the field of computer technology, and in particular to a method, device and equipment for business processing based on blockchain.
背景技术Background technique
一直以来,基于互联网的金融交易安全都是金融机构关注的重要课题,目前,对于基于互联网的金融交易安全,普遍采用的手段是使用专用硬件设备来存储可标识业务请求方(如某企业或机构等)的身份的数字证书,并且存储在该硬件设备内的数字证书不可被读取。在实际应用的过程中,可通过将该硬件设备与执行互联网金融交易的设备(即业务请求方所使用的设备)进行连接,从而在互联网的金融交易中对传输的信息进行签名,业务授权方(如金融机构,具体如银行等)可对上述经过签名的信息进行验证,以确定业务请求方的身份信息,从而实现基于点对点交易的金融级的用户身份核验。The security of Internet-based financial transactions has always been an important topic of concern to financial institutions. At present, for the security of Internet-based financial transactions, the commonly used means is to use dedicated hardware devices to store identifiable business requesters (such as a company or institution). Etc.), and the digital certificate stored in the hardware device cannot be read. In the actual application process, the hardware device can be connected to the device that performs Internet financial transactions (ie, the device used by the business requester) to sign the transmitted information in the Internet financial transaction. (For example, a financial institution, specifically a bank, etc.) can verify the above-mentioned signed information to determine the identity information of the service requester, thereby realizing financial-level user identity verification based on peer-to-peer transactions.
对于业务请求方而言,随着基于互联网业务的增长,会有越来越多的针对互联网业务进行资源申请(如融资等)等业务需求,而越来越多的金融机构也提出了基于互联网业务进行核身、验证签名和授权等需求。为此,上述基于点对点交易的身份核验与签名验证等方式遇到了新的业务挑战,因此,需要提供一种基于互联网的金融交易中更优的核身、验证签名和授权等处理的技术方案。For business requesters, with the growth of Internet-based services, there will be more and more business needs such as resource applications (such as financing, etc.) for Internet services, and more and more financial institutions have also proposed Internet-based services. The business conducts verification, signature verification, and authorization requirements. For this reason, the aforementioned methods of identity verification and signature verification based on peer-to-peer transactions have encountered new business challenges. Therefore, it is necessary to provide a better technical solution for processing such as verification, signature verification, and authorization in Internet-based financial transactions.
发明内容Summary of the invention
本说明书实施例提供的一种业务处理方法,应用于区块链节点,包括:获取业务授权方对业务请求方生成的存证信息,基于所述存证信息部署第一智能合约,所述第一智能合约用于根据所述存证信息对所述业务请求方的加签数据进行验证。接收所述业务请求方的第一业务请求,所述第一业务请求中包括业务数据和加签数据。调用所述第一智能合约对所述加签数据进行验证,得到验证结果。若验证结果为通过,则将所述业务数据和加签数据发送至所述业务授权方,以使所述业务授权方对所述加签数据进行二次验证,验证通过后基于所述业务数据进行业务处理,得到处理结果。接收所述业务授权方返回的所述处理结果,将所述处理结果返回所述业务请求方,并基于所述处理结果对所述业务请求方发起的与所述业务数据对应的业务相关的第二业务请求进行处理。The service processing method provided by the embodiment of this specification is applied to a blockchain node and includes: obtaining the deposit information generated by the service authorizer to the service requester, deploying a first smart contract based on the deposit information, and the first smart contract A smart contract is used to verify the signature data of the service requester according to the deposit information. Receive a first service request from the service requester, where the first service request includes service data and endorsement data. The first smart contract is called to verify the signed data, and the verification result is obtained. If the verification result is passed, the service data and the endorsement data are sent to the service authorizer so that the service authorizer can perform a second verification on the endorsement data, and the verification is based on the service data after passing the verification. Perform business processing and get the processing result. Receiving the processing result returned by the service authorizer, returning the processing result to the service requesting party, and sending the service requesting party initiated by the service requesting party based on the processing result and related to the business data corresponding to the service data 2. The business request is processed.
本说明书实施例提供的一种业务处理方法,应用于业务授权方,包括:生成针对业务请求方的数字证书和存证信息。将所述数字证书颁发给所述业务请求方,并向预定区块链节点发送所述存证信息,以使所述区块链节点基于所述存证信息部署第一智能合约,所述第一智能合约用于根据所述存证信息对所述业务请求方的加签数据进行验证,并在接收到所述业务请求方的第一业务请求时,调用所述第一智能合约对所述加签数据进行验证,得到验证结果。接收所述区块链节点发送的所述业务数据和加签数据,所述业务数据和加签数据是所述区块链节点在所述验证结果为通过时发送,所述加签数据是基于所述数字证书生成的数据。对所述加签数据进行二次验证,若验证通过,则基于所述业务数据进行业务处理,得到处理结果,并将所述处理结果返回给所述区块链节点,以使所述区块链节点基于所述处理结果对所述业务请求方发起的与所述业务数据对应的业务相关的第二业务请求进行处理。A service processing method provided by the embodiment of this specification, applied to a service authorizing party, includes: generating a digital certificate and deposit information for the service requesting party. The digital certificate is issued to the service requester, and the deposit certificate information is sent to a predetermined blockchain node, so that the blockchain node deploys a first smart contract based on the deposit information. A smart contract is used to verify the signature data of the service requester according to the deposit information, and when the first service request of the service requester is received, call the first smart contract to Sign the data for verification, and get the verification result. Receive the service data and endorsement data sent by the blockchain node, where the service data and endorsement data are sent by the blockchain node when the verification result is passed, and the endorsement data is based on Data generated by the digital certificate. Perform secondary verification on the signed data. If the verification is passed, perform business processing based on the business data to obtain the processing result, and return the processing result to the blockchain node so that the block The chain node processes the second service request related to the service corresponding to the service data initiated by the service requester based on the processing result.
本说明书实施例提供的一种基于区块链的业务处理方法,应用于接入第一区块链的第一区块链节点,包括:通过所述第一区块链和业务授权机构对应的第二区块链的跨 链传输通道,从所述第二区块链中获取第二区块链节点对业务请求方生成的存证信息,基于所述存证信息部署第一智能合约,所述第一智能合约用于根据所述存证信息对所述业务请求方的加签数据进行验证。接收所述业务请求方的第一业务请求,所述第一业务请求中包括业务数据和加签数据。调用所述第一智能合约对所述加签数据进行验证,得到验证结果。若验证结果为通过,则通过所述跨链传输通道,将所述业务数据和加签数据发送至所述第二区块链中的所述第二区块链节点,以使所述第二区块链节点对所述加签数据进行二次验证,验证通过后基于所述业务数据进行业务处理,得到处理结果。通过所述跨链传输通道,接收所述第二区块链节点返回的所述处理结果,将所述处理结果返回所述业务请求方,并基于所述处理结果对所述业务请求方发起的与所述业务数据对应的业务相关的第二业务请求进行处理。The embodiment of this specification provides a blockchain-based business processing method, which is applied to a first blockchain node accessing a first blockchain, including: through the first blockchain and a business authorization agency corresponding to The cross-chain transmission channel of the second blockchain obtains the deposit information generated by the second blockchain node to the business requester from the second blockchain, and deploys the first smart contract based on the deposit information, so The first smart contract is used to verify the signature data of the service requester according to the deposit information. Receive a first service request from the service requester, where the first service request includes service data and endorsement data. The first smart contract is called to verify the signed data, and the verification result is obtained. If the verification result is passed, the business data and endorsement data are sent to the second blockchain node in the second blockchain through the cross-chain transmission channel, so that the second The blockchain node performs secondary verification on the signed data, and after the verification is passed, business processing is performed based on the business data to obtain a processing result. Through the cross-chain transmission channel, the processing result returned by the second blockchain node is received, the processing result is returned to the service requester, and the processing result is initiated to the service requester based on the processing result. The second service request related to the service corresponding to the service data is processed.
本说明书实施例提供的一种基于区块链的业务处理方法,应用于接入第二区块链的第二区块链节点,包括:生成针对业务请求方的数字证书和存证信息。将所述数字证书颁发给所述业务请求方,并通过第一区块链和所述第二区块链的跨链传输通道,向所述第一区块链的第一区块链节点发送所述存证信息,以使所述第一区块链节点基于所述存证信息部署第一智能合约,所述第一智能合约用于根据所述存证信息对所述业务请求方的加签数据进行验证,并在接收到所述业务请求方的第一业务请求时,调用所述第一智能合约对所述加签数据进行验证,得到验证结果。通过所述跨链传输通道,接收所述第一区块链的第一区块链节点发送的所述业务数据和加签数据,所述业务数据和加签数据是所述第一区块链节点在所述验证结果为通过时发送,所述加签数据是基于所述数字证书生成的数据。对所述加签数据进行二次验证,若验证通过,则基于所述业务数据进行业务处理,得到处理结果,并将所述处理结果返回给所述第一区块链的所述第一区块链节点,以使所述第一区块链节点基于所述处理结果对所述业务请求方发起的与所述业务数据对应的业务相关的第二业务请求进行处理。The embodiment of this specification provides a blockchain-based service processing method, which is applied to a second blockchain node connected to a second blockchain, and includes: generating a digital certificate and deposit information for a service requester. Issue the digital certificate to the service requester, and send it to the first blockchain node of the first blockchain through the cross-chain transmission channel of the first blockchain and the second blockchain The deposit information, so that the first blockchain node deploys a first smart contract based on the deposit information, and the first smart contract is used to add to the service requester according to the deposit information The signed data is verified, and when the first service request of the service requester is received, the first smart contract is invoked to verify the signed data, and the verification result is obtained. Through the cross-chain transmission channel, receive the service data and endorsement data sent by the first blockchain node of the first blockchain, where the service data and endorsement data are the first blockchain The node sends when the verification result is passed, and the signature data is data generated based on the digital certificate. Perform secondary verification on the signed data. If the verification is passed, perform business processing based on the business data to obtain the processing result, and return the processing result to the first zone of the first blockchain A block chain node, so that the first block chain node processes, based on the processing result, a second service request related to the service corresponding to the service data initiated by the service requester.
本说明书实施例提供的一种业务处理装置,包括:合约部署模块,获取业务授权方对业务请求方生成的存证信息,基于所述存证信息部署第一智能合约,所述第一智能合约用于根据所述存证信息对所述业务请求方的加签数据进行验证。请求接收模块,接收所述业务请求方的第一业务请求,所述第一业务请求中包括业务数据和加签数据。第一验证模块,调用所述第一智能合约对所述加签数据进行验证,得到验证结果。数据发送模块,若验证结果为通过,则将所述业务数据和加签数据发送至所述业务授权方,以使所述业务授权方对所述加签数据进行二次验证,验证通过后基于所述业务数据进行业务处理,得到处理结果。处理模块,接收所述业务授权方返回的所述处理结果,将所述处理结果返回所述业务请求方,并基于所述处理结果对所述业务请求方发起的与所述业务数据对应的业务相关的第二业务请求进行处理。A service processing device provided by an embodiment of this specification includes: a contract deployment module, which obtains the deposit information generated by the service authorizer to the service requester, and deploys a first smart contract based on the deposit information, the first smart contract It is used to verify the signature data of the service requester according to the deposit information. The request receiving module receives a first service request from the service requester, where the first service request includes service data and endorsement data. The first verification module calls the first smart contract to verify the signed data, and obtain a verification result. The data sending module, if the verification result is passed, sends the service data and the endorsed data to the service authorizing party, so that the service authorizing party performs secondary verification on the endorsed data, and the verification is based on The business data is processed to obtain a processing result. The processing module receives the processing result returned by the service authorizer, returns the processing result to the service requester, and initiates the service corresponding to the service data to the service requester based on the processing result The related second service request is processed.
本说明书实施例提供的一种业务处理装置,包括:生成模块,生成针对业务请求方的数字证书和存证信息。发送模块,将所述数字证书颁发给所述业务请求方,并向预定区块链节点发送所述存证信息,以使所述区块链节点基于所述存证信息部署第一智能合约,所述第一智能合约用于根据所述存证信息对所述业务请求方的加签数据进行验证,并在接收到所述业务请求方的第一业务请求时,调用所述第一智能合约对所述加签数据进行验证,得到验证结果。数据接收模块,接收所述区块链节点发送的所述业务数据和加签数据,所述业务数据和加签数据是所述区块链节点在所述验证结果为通过时发送,所述加签数据是基于所述数字证书生成的数据。二次验证模块,对所述加签数据进行二次验证,若验证通过,则基于所述业务数据进行业务处理,得到处理结果,并将所述处理结果返回给所述区块链节点,以使所述区块链节点基于所述处理结果对所述业务请求 方发起的与所述业务数据对应的业务相关的第二业务请求进行处理。A service processing device provided by an embodiment of this specification includes: a generating module, which generates a digital certificate and certificate information for a service requester. A sending module, which issues the digital certificate to the service requester, and sends the deposit information to a predetermined blockchain node, so that the blockchain node deploys the first smart contract based on the deposit information, The first smart contract is used to verify the signature data of the service requester according to the deposit information, and when the first service request of the service requester is received, call the first smart contract Verifying the endorsed data to obtain a verification result. The data receiving module receives the business data and endorsement data sent by the blockchain node. The business data and endorsement data are sent by the blockchain node when the verification result is passed. The signature data is data generated based on the digital certificate. The secondary verification module performs secondary verification on the signed data. If the verification is passed, business processing is performed based on the business data to obtain the processing result, and the processing result is returned to the blockchain node to The blockchain node is enabled to process a second service request related to the service corresponding to the service data initiated by the service requester based on the processing result.
本说明书实施例提供的一种基于区块链的业务处理装置,包括:信息获取与合约部署模块,通过所述第一区块链和业务授权机构对应的第二区块链的跨链传输通道,从所述第二区块链中获取第二区块链节点对业务请求方生成的存证信息,基于所述存证信息部署第一智能合约,所述第一智能合约用于根据所述存证信息对所述业务请求方的加签数据进行验证。请求模块,接收所述业务请求方的第一业务请求,所述第一业务请求中包括业务数据和加签数据。调用模块,调用所述第一智能合约对所述加签数据进行验证,得到验证结果。跨链传输模块,若验证结果为通过,则通过所述跨链传输通道,将所述业务数据和加签数据发送至所述第二区块链中的所述第二区块链节点,以使所述第二区块链节点对所述加签数据进行二次验证,验证通过后基于所述业务数据进行业务处理,得到处理结果。处理模块,通过所述跨链传输通道,接收所述第二区块链节点返回的所述处理结果,将所述处理结果返回所述业务请求方,并基于所述处理结果对所述业务请求方发起的与所述业务数据对应的业务相关的第二业务请求进行处理。The embodiment of this specification provides a blockchain-based business processing device, including: an information acquisition and contract deployment module, through the cross-chain transmission channel of the first blockchain and the second blockchain corresponding to the business authorization agency , Obtain the deposit certificate information generated by the second blockchain node to the service requester from the second blockchain, deploy a first smart contract based on the deposit information, and the first smart contract is used to The deposit information verifies the signature data of the service requester. The request module receives a first service request from the service requester, where the first service request includes service data and endorsement data. The calling module calls the first smart contract to verify the signed data, and obtain a verification result. The cross-chain transmission module, if the verification result is passed, sends the business data and endorsement data to the second blockchain node in the second blockchain through the cross-chain transmission channel to The second blockchain node is allowed to perform secondary verification on the signed data, and after the verification is passed, business processing is performed based on the business data to obtain a processing result. The processing module receives the processing result returned by the second blockchain node through the cross-chain transmission channel, returns the processing result to the service requester, and requests the service based on the processing result The second service request related to the service corresponding to the service data initiated by the party is processed.
本说明书实施例提供的一种基于区块链的业务处理装置,包括:证书和信息生成模块,生成针对业务请求方的数字证书和存证信息。证书和信息发送模块,将所述数字证书颁发给所述业务请求方,并通过第一区块链和所述第二区块链的跨链传输通道,向所述第一区块链的第一区块链节点发送所述存证信息,以使所述第一区块链节点基于所述存证信息部署第一智能合约,所述第一智能合约用于根据所述存证信息对所述业务请求方的加签数据进行验证,并在接收到所述业务请求方的第一业务请求时,调用所述第一智能合约对所述加签数据进行验证,得到验证结果。数据接收模块,通过所述跨链传输通道,接收所述第一区块链的第一区块链节点发送的所述业务数据和加签数据,所述业务数据和加签数据是所述第一区块链节点在所述验证结果为通过时发送,所述加签数据是基于所述数字证书生成的数据。验证模块,对所述加签数据进行二次验证,若验证通过,则基于所述业务数据进行业务处理,得到处理结果,并将所述处理结果返回给所述第一区块链的所述第一区块链节点,以使所述第一区块链节点基于所述处理结果对所述业务请求方发起的与所述业务数据对应的业务相关的第二业务请求进行处理。The embodiment of this specification provides a blockchain-based business processing device, including: a certificate and information generation module, which generates a digital certificate and certificate information for a business requester. The certificate and information sending module issues the digital certificate to the service requester, and sends the digital certificate to the first block chain through the cross-chain transmission channel of the first block chain and the second block chain. A blockchain node sends the deposit information so that the first blockchain node deploys a first smart contract based on the deposit information, and the first smart contract is used to check the deposit information according to the deposit information. The signature data of the service requester is verified, and when the first service request of the service requester is received, the first smart contract is invoked to verify the signature data, and the verification result is obtained. The data receiving module receives the service data and endorsement data sent by the first blockchain node of the first blockchain through the cross-chain transmission channel, where the service data and endorsement data are the first A blockchain node sends when the verification result is passed, and the endorsement data is data generated based on the digital certificate. The verification module performs secondary verification on the signed data. If the verification is passed, perform business processing based on the business data to obtain the processing result, and return the processing result to the first blockchain A first blockchain node, so that the first blockchain node processes, based on the processing result, a second service request related to the service corresponding to the service data initiated by the service requester.
本说明书实施例提供的一种业务处理设备,包括处理器及被安排成存储计算机可执行指令的存储器,所述可执行指令在被执行时使所述处理器:获取业务授权方对业务请求方生成的存证信息,基于所述存证信息部署第一智能合约,所述第一智能合约用于根据所述存证信息对所述业务请求方的加签数据进行验证。接收所述业务请求方的第一业务请求,所述第一业务请求中包括业务数据和加签数据。调用所述第一智能合约对所述加签数据进行验证,得到验证结果。若验证结果为通过,则将所述业务数据和加签数据发送至所述业务授权方,以使所述业务授权方对所述加签数据进行二次验证,验证通过后基于所述业务数据进行业务处理,得到处理结果。接收所述业务授权方返回的所述处理结果,将所述处理结果返回所述业务请求方,并基于所述处理结果对所述业务请求方发起的与所述业务数据对应的业务相关的第二业务请求进行处理。A service processing device provided by an embodiment of this specification includes a processor and a memory arranged to store computer-executable instructions. When the executable instructions are executed, the processor: The generated deposit certificate information deploys a first smart contract based on the deposit certificate information, and the first smart contract is used to verify the signature data of the service requester according to the deposit certificate information. Receive a first service request from the service requester, where the first service request includes service data and endorsement data. The first smart contract is called to verify the signed data, and the verification result is obtained. If the verification result is passed, the service data and the endorsement data are sent to the service authorizer so that the service authorizer can perform a second verification on the endorsement data, and the verification is based on the service data after passing the verification. Perform business processing and get the processing result. Receiving the processing result returned by the service authorizer, returning the processing result to the service requesting party, and sending the service requesting party initiated by the service requesting party based on the processing result and related to the business data corresponding to the service data 2. The business request is processed.
本说明书实施例提供的一种业务处理设备,包括处理器及被安排成存储计算机可执行指令的存储器,所述可执行指令在被执行时使所述处理器:生成针对业务请求方的数字证书和存证信息。将所述数字证书颁发给所述业务请求方,并向预定区块链节点发送所述存证信息,以使所述区块链节点基于所述存证信息部署第一智能合约,所述第一智能合约用于根据所述存证信息对所述业务请求方的加签数据进行验证,并在接收到所述业务请求方的第一业务请求时,调用所述第一智能合约对所述加签数据进行验证,得到验证结果。接收所述区块链节点发送的所述业务数据和加签数据,所述业务数据和加 签数据是所述区块链节点在所述验证结果为通过时发送,所述加签数据是基于所述数字证书生成的数据。对所述加签数据进行二次验证,若验证通过,则基于所述业务数据进行业务处理,得到处理结果,并将所述处理结果返回给所述区块链节点,以使所述区块链节点基于所述处理结果对所述业务请求方发起的与所述业务数据对应的业务相关的第二业务请求进行处理。A service processing device provided by an embodiment of this specification includes a processor and a memory arranged to store computer-executable instructions. When the executable instructions are executed, the processor: generates a digital certificate for the service requester And deposit information. The digital certificate is issued to the service requester, and the deposit certificate information is sent to a predetermined blockchain node, so that the blockchain node deploys a first smart contract based on the deposit information. A smart contract is used to verify the signature data of the service requester according to the deposit information, and when the first service request of the service requester is received, call the first smart contract to Sign the data for verification, and get the verification result. Receive the service data and endorsement data sent by the blockchain node, where the service data and endorsement data are sent by the blockchain node when the verification result is passed, and the endorsement data is based on Data generated by the digital certificate. Perform secondary verification on the signed data. If the verification is passed, perform business processing based on the business data to obtain the processing result, and return the processing result to the blockchain node so that the block The chain node processes the second service request related to the service corresponding to the service data initiated by the service requester based on the processing result.
本说明书实施例提供的一种基于区块链的业务处理设备,包括处理器及被安排成存储计算机可执行指令的存储器,所述可执行指令在被执行时使所述处理器:通过所述第一区块链和业务授权机构对应的第二区块链的跨链传输通道,从所述第二区块链中获取第二区块链节点对业务请求方生成的存证信息,基于所述存证信息部署第一智能合约,所述第一智能合约用于根据所述存证信息对所述业务请求方的加签数据进行验证。接收所述业务请求方的第一业务请求,所述第一业务请求中包括业务数据和加签数据。调用所述第一智能合约对所述加签数据进行验证,得到验证结果。若验证结果为通过,则通过所述跨链传输通道,将所述业务数据和加签数据发送至所述第二区块链中的所述第二区块链节点,以使所述第二区块链节点对所述加签数据进行二次验证,验证通过后基于所述业务数据进行业务处理,得到处理结果。通过所述跨链传输通道接收所述第二区块链节点返回的所述处理结果,将所述处理结果返回所述业务请求方,并基于所述处理结果对所述业务请求方发起的与所述业务数据对应的业务相关的第二业务请求进行处理。The embodiment of this specification provides a blockchain-based business processing device, which includes a processor and a memory arranged to store computer-executable instructions. When the executable instructions are executed, the processor: The first block chain and the cross-chain transmission channel of the second block chain corresponding to the business authorization agency obtain the deposit information generated by the second block chain node to the business requester from the second block chain. The deposit certificate information deploys a first smart contract, and the first smart contract is used to verify the signature data of the service requester according to the deposit certificate information. Receive a first service request from the service requester, where the first service request includes service data and endorsement data. The first smart contract is called to verify the signed data, and the verification result is obtained. If the verification result is passed, the business data and endorsement data are sent to the second blockchain node in the second blockchain through the cross-chain transmission channel, so that the second The blockchain node performs secondary verification on the signed data, and after the verification is passed, business processing is performed based on the business data to obtain a processing result. The processing result returned by the second blockchain node is received through the cross-chain transmission channel, the processing result is returned to the service requester, and the transaction initiated by the service requester is based on the processing result. The service-related second service request corresponding to the service data is processed.
本说明书实施例提供的一种基于区块链的业务处理设备,包括处理器及被安排成存储计算机可执行指令的存储器,所述可执行指令在被执行时使所述处理器:生成针对业务请求方的数字证书和存证信息。将所述数字证书颁发给所述业务请求方,并通过第一区块链和所述第二区块链的跨链传输通道,向所述第一区块链的第一区块链节点发送所述存证信息,以使所述第一区块链节点基于所述存证信息部署第一智能合约,所述第一智能合约用于根据所述存证信息对所述业务请求方的加签数据进行验证,并在接收到所述业务请求方的第一业务请求时,调用所述第一智能合约对所述加签数据进行验证,得到验证结果。通过所述跨链传输通道,接收所述第一区块链的第一区块链节点发送的所述业务数据和加签数据,所述业务数据和加签数据是所述第一区块链节点在所述验证结果为通过时发送,所述加签数据是基于所述数字证书生成的数据。对所述加签数据进行二次验证,若验证通过,则基于所述业务数据进行业务处理,得到处理结果,并将所述处理结果返回给所述第一区块链的所述第一区块链节点,以使所述第一区块链节点基于所述处理结果对所述业务请求方发起的与所述业务数据对应的业务相关的第二业务请求进行处理。The embodiment of this specification provides a blockchain-based business processing device, which includes a processor and a memory arranged to store computer-executable instructions. When the executable instructions are executed, the processor: The digital certificate and deposit information of the requesting party. Issue the digital certificate to the service requester, and send it to the first blockchain node of the first blockchain through the cross-chain transmission channel of the first blockchain and the second blockchain The deposit information, so that the first blockchain node deploys a first smart contract based on the deposit information, and the first smart contract is used to add to the service requester according to the deposit information The signed data is verified, and when the first service request of the service requester is received, the first smart contract is invoked to verify the signed data, and the verification result is obtained. Through the cross-chain transmission channel, receive the service data and endorsement data sent by the first blockchain node of the first blockchain, where the service data and endorsement data are the first blockchain The node sends when the verification result is passed, and the signature data is data generated based on the digital certificate. Perform secondary verification on the signed data. If the verification is passed, perform business processing based on the business data to obtain the processing result, and return the processing result to the first zone of the first blockchain A block chain node, so that the first block chain node processes, based on the processing result, a second service request related to the service corresponding to the service data initiated by the service requester.
附图说明Description of the drawings
图1为本说明书一种业务处理方法实施例;Figure 1 is an embodiment of a service processing method in this specification;
图2为本说明书一种业务处理系统的结构示意图;Figure 2 is a schematic structural diagram of a business processing system in this specification;
图3为本说明书另一种业务处理方法实施例;Figure 3 is another embodiment of the service processing method in this specification;
图4为本说明书又一种业务处理方法实施例;Figure 4 is another embodiment of a service processing method in this specification;
图5为本说明书又一种业务处理方法实施例;Figure 5 is another embodiment of the service processing method in this specification;
图6为本说明书又一种业务处理方法实施例;Figure 6 is another embodiment of the service processing method in this specification;
图7为本说明书又一种业务处理方法实施例;Figure 7 is another embodiment of the service processing method in this specification;
图8为本说明书一种基于区块链的业务处理方法实施例;Figure 8 is an embodiment of a business processing method based on blockchain in this specification;
图9为本说明书另一种业务处理系统的结构示意图;Figure 9 is a schematic structural diagram of another business processing system in this specification;
图10为本说明书另一种基于区块链的业务处理方法实施例;Fig. 10 is another embodiment of a blockchain-based business processing method in this specification;
图11为本说明书一种业务处理装置实施例;Figure 11 is an embodiment of a service processing device in this specification;
图12为本说明书另一种业务处理装置实施例;Figure 12 is another embodiment of a service processing device in this specification;
图13为本说明书一种基于区块链的业务处理装置实施例;Figure 13 is an embodiment of a business processing device based on blockchain in this specification;
图14为本说明书另一种基于区块链的业务处理装置实施例;FIG. 14 is another embodiment of a business processing device based on blockchain in this specification;
图15为本说明书一种业务处理设备实施例;Figure 15 is an embodiment of a service processing device in this specification;
图16为本说明书另一种业务处理设备实施例。Figure 16 is another embodiment of a service processing device in this specification.
具体实施方式Detailed ways
实施例一Example one
如图1所示,本说明书实施例提供一种业务处理方法,该方法的执行主体可为区块链节点,该区块链节点可是终端设备或服务器,终端设备可如手机、平板电脑等移动终端设备,还可如个人计算机等设备。该服务器可是一个独立的服务器,还可是由多个服务器构成的服务器集群等。本说明书实施例涉及的系统架构可如图2所示。该方法具体可包括以下步骤:在步骤S102中,获取业务授权方对业务请求方生成的存证信息,基于该存证信息部署第一智能合约,第一智能合约用于根据该存证信息对业务请求方的加签数据进行验证。As shown in Figure 1, the embodiment of this specification provides a business processing method. The execution body of the method can be a blockchain node, the blockchain node can be a terminal device or a server, and the terminal device can be mobile such as mobile phones, tablets, etc. Terminal equipment can also be equipment such as personal computers. The server can be an independent server, or a server cluster composed of multiple servers. The system architecture involved in the embodiment of this specification may be as shown in FIG. 2. The method may specifically include the following steps: in step S102, obtaining the deposit information generated by the service authorizing party to the service requesting party, and deploying a first smart contract based on the deposit information, and the first smart contract is used to pair according to the deposit information The endorsement data of the business requester is verified.
业务授权方可是对请求执行某项业务的业务请求方授予相应权限的一方,业务请求方可是请求执行某项业务的一方,例如可包括某一物流机构和一个金融机构,该物流机构基于某些原因需要向该金融机构申请融资,则对于该融资业务,该物流机构可为业务请求方,由于该金融机构需要向该物流机构授予向该金融机构申请融资的权限,因此,该金融机构可作为业务授权方。存证信息可是业务授权方需要记录或存储的信息,以便后续在出现业务纠纷或信息核验时可作为依据使用,存证信息中可包括多种不同的信息,例如业务授权方的相关信息(如业务授权方的标识、业务授权方的数字身份信息、业务请求方的标识、业务请求方的数字身份信息和授权相关的信息,其中的数字身份信息可包括多种,具体如DID(Decentralized IDentity,去中心化身份标识符)等)。第一智能合约可是由存证信息构建的智能合约,其中的智能合约可是一种旨在以信息化方式传播、验证或执行某项处理的计算机协议,智能合约允许在没有第三方的情况下进行可信交互,进行的上述交互可追踪且不可逆转,第一智能合约中可包括合约参与方可在上面执行合约参与方同意的权利和义务的协议。第一智能合约中可包括触发执行该第一智能合约的触发条件,以及触发条件对应的结果,第一智能合约中可包括一个或多个触发条件,每个触发条件可对应有一个结果,如第一智能合约的触发条件为:存证信息与业务请求方提供的待检验数据相匹配,触发条件对应的结果为:业务请求方的身份验证通过等。The business authorization party may be the party that grants the corresponding authority to the business requesting party requesting the execution of a certain business, and the business requesting party may be the party requesting the execution of a certain business. For example, it may include a certain logistics organization and a financial institution. If it is necessary to apply for financing from the financial institution, for the financing business, the logistics institution can be the business requester. Since the financial institution needs to grant the logistics institution the authority to apply for financing from the financial institution, the financial institution can act as Business authorized party. The deposit information can be the information that the business authorizing party needs to record or store, so that it can be used as a basis for subsequent business disputes or information verification. The deposit information can include a variety of different information, such as the relevant information of the business authorizing party (such as The identity of the business authorizer, the digital identity information of the business authorizer, the identity of the business requester, the digital identity information of the business requester, and authorization-related information. The digital identity information can include multiple types, such as DID (Decentralized IDentity, Decentralized identity identifier) etc.). The first smart contract can be a smart contract constructed from deposit information. The smart contract is a computer protocol designed to spread, verify, or perform a certain process in an informatized manner. The smart contract allows to be carried out without a third party. Trusted interaction, the aforementioned interaction is traceable and irreversible, and the first smart contract may include an agreement on which the contract participants can execute the rights and obligations agreed by the contract participants. The first smart contract may include a trigger condition that triggers the execution of the first smart contract and a result corresponding to the trigger condition. The first smart contract may include one or more trigger conditions, and each trigger condition may correspond to a result, such as The trigger condition of the first smart contract is: the deposit certificate information matches the data to be verified provided by the service requester, and the result of the trigger condition is: the identity verification of the service requester passes, etc.
在实施中,一直以来,基于互联网的金融交易安全都是金融机构关注的重要课题,目前,对于基于互联网的金融交易安全,普遍采用的手段是使用专用硬件设备来存储可标识业务请求方(如某企业或机构等)的身份的数字证书,并且存储在该硬件设备内的数字证书不可被读取。在实际应用的过程中,可通过将该硬件设备与执行互联网金融交易的设备(即业务请求方所使用的设备)进行连接,从而在互联网的金融交易中对传输的信息进行签名,业务授权方(如金融机构,具体如银行等)可对上述经过签名的信息进行验证,以确定业务请求方的身份信息,从而实现基于点对点交易的金融级的用户身份核验。对于业务请求方而言,随着基于互联网业务的增长,会有越来越多的针对互联网业务进行资源申请(如融资等)等业务需求,而越来越多的金融机构也提出了基于互联网业务进行核身、验证签名和授权等需求。为此,上述基于点对点交易的身份核验与签名验证等方式遇到了新的业务挑战,因此,需要提供一种基于互联网的金融交易中更优的核身、验证签名和授权等处理的技术方案。本说明书实施例提供一种能够实现上述技术方案的方法,具体可包括以下内容:随着电子商务的快速发展,大量组织或企业越 来越倾向于采用电子信息的方式进行业务交流和沟通,以降低成本、提升竞争力,为此,可采用向业务请求方颁发授权信息或数字证书等方式,为业务请求方授予某项业务的访问或执行权限,以此来提高信息传输的安全性。本说明书实施例中,基于上述硬件设备中的数字证书,业务授权方可为业务请求方生成相应的数字证书,但该数字证书可不需要存储在硬件设备中,而可以软件或应用程序的方式构建该数字证书的文件,具体地,业务请求方可向业务授权方申请某项业务的访问或执行权限,业务授权方可获取业务请求方的相关数据,例如业务请求方的经营状况信息、业务请求方的发展前景和业务请求方所拥有的固定资源等信息。业务授权方可基于上述数据,对业务请求方是否具备访问或执行该项业务的资质进行验证,如果确定业务请求方具备访问或执行该项业务的资质,则可为业务请求方生成数字证书的文件,如果确定业务请求方不具备访问或执行该项业务的资质,则可向业务请求方发送相应的通知消息。业务授权方可将生成的数字证书的文件发送给业务请求方,这样,当业务请求方需要访问或执行上述业务时,可通过该数字证书对相应的数据进行处理,然后再将其发送给业务授权方。In the implementation, the security of Internet-based financial transactions has always been an important topic of concern to financial institutions. At present, for the security of Internet-based financial transactions, the commonly used means is to use dedicated hardware devices to store identifiable business requesters (such as The digital certificate of the identity of a certain enterprise or organization, etc., and the digital certificate stored in the hardware device cannot be read. In the actual application process, the hardware device can be connected to the device that performs Internet financial transactions (ie, the device used by the business requester) to sign the transmitted information in the Internet financial transaction. (For example, a financial institution, specifically a bank, etc.) can verify the above-mentioned signed information to determine the identity information of the service requester, thereby realizing financial-level user identity verification based on peer-to-peer transactions. For business requesters, with the growth of Internet-based services, there will be more and more business needs such as resource applications (such as financing, etc.) for Internet services, and more and more financial institutions have also proposed Internet-based services. The business conducts verification, signature verification, and authorization requirements. For this reason, the aforementioned methods of identity verification and signature verification based on peer-to-peer transactions have encountered new business challenges. Therefore, it is necessary to provide a better technical solution for processing such as verification, signature verification, and authorization in Internet-based financial transactions. The embodiments of this specification provide a method for realizing the above-mentioned technical solutions, which may specifically include the following content: With the rapid development of e-commerce, a large number of organizations or enterprises are increasingly inclined to use electronic information for business exchanges and communication. Reduce costs and enhance competitiveness. To this end, it is possible to issue authorized information or digital certificates to the service requester to grant the service requester access or execution authority for a certain service, thereby improving the security of information transmission. In the embodiment of this specification, based on the digital certificate in the above hardware device, the service authorizer can generate the corresponding digital certificate for the service requester, but the digital certificate does not need to be stored in the hardware device, but can be constructed in the form of software or application. The digital certificate file, specifically, the business requester can apply to the business authorizer for access or execution authority of a certain business, and the business authorizer can obtain relevant data of the business requester, such as the business status information of the business requester, and the business request Information such as the development prospects of the party and the fixed resources owned by the business requesting party. The business authorizer can verify whether the business requester has the qualification to access or execute the business based on the above data. If it is determined that the business requester has the qualification to access or execute the business, it can generate a digital certificate for the business requester. If it is determined that the service requester does not have the qualifications to access or execute the service, the corresponding notification message can be sent to the service requester. The service authorizer can send the generated digital certificate file to the service requester, so that when the service requester needs to access or perform the above-mentioned services, the corresponding data can be processed through the digital certificate and then sent to the service Authorized party.
业务授权方将生成的数字证书发送给业务请求方时,为了对该数字证书对应的签名信息进行验证,以及对该数字证书对应的相关信息进行存证,可对业务请求方生成的存证信息。而对于存证信息存储的存储设备,考虑到存证信息的准确性、防止被篡改,可构建区块链,将上述存证信息存储于区块链中。区块链本质上是一个去中心化的数据库,是一串使用密码学方法相关联产生的数据块,每一个数据块中可包含存储数据及其相关信息(如可用于验证其数据的有效性(或防伪性)和生成下一个区块的信息等)。区块链在线上数据的防篡改、防伪和可追溯方向能够得到较好的应用,如果将存证信息的使用、管理和等处理中的相关行为数据添加到区块链中,则存证信息将无法更改和抵赖。因此,可通过区块链来维护存证信息,这样,可基于区块链中的存证信息对业务请求方的加签数据进行核验,从而保证存证信息等的准确性。When the service authorizer sends the generated digital certificate to the service requester, in order to verify the signature information corresponding to the digital certificate and to deposit the relevant information corresponding to the digital certificate, the deposit information generated by the service requester can be verified . As for the storage device for the storage of certificate information, considering the accuracy of the certificate information and preventing tampering, a blockchain can be constructed to store the above-mentioned certificate information in the blockchain. The blockchain is essentially a decentralized database. It is a series of data blocks associated with cryptographic methods. Each data block can contain stored data and related information (for example, it can be used to verify the validity of its data). (Or anti-counterfeiting) and information to generate the next block, etc.). The anti-tampering, anti-counterfeiting and traceability of the data on the blockchain can be better applied. If the relevant behavioral data in the use, management and processing of the evidence information is added to the blockchain, the evidence information Will not be able to change and deny. Therefore, the deposit information can be maintained through the blockchain. In this way, the signature data of the business requester can be verified based on the deposit information in the blockchain, so as to ensure the accuracy of the deposit information.
基于上述内容,可通过区块链节点来响应业务授权方和业务请求方的相关处理,以为某业务处理的业务请求方提供相关服务,具体地,当业务授权方将生成的数字证书发送给业务请求方时,还可生成对业务请求方的存证信息,业务授权方可将该存证信息提供给上述区块链中的区块链节点,该区块链节点可获取该存证信息,并可将该存证信息存储到区块链中。Based on the above content, the blockchain node can be used to respond to the relevant processing of the business authorizer and the business requester, so as to provide related services to the business requester of a certain business process. Specifically, when the business authorizer sends the generated digital certificate to the business When the requesting party, it can also generate deposit information for the business requester, and the business authorizing party can provide the deposit information to the blockchain node in the above-mentioned blockchain, and the blockchain node can obtain the deposit information, And the deposit information can be stored in the blockchain.
此外,区块链节点还可基于得到的存证信息,制定对业务请求方的核身和验签规则,并可基于该核身和验签规则生成相应的智能合约(即第一智能合约),并可向该区块链节点所在的区块链网络中部署该第一智能合约,这样,区块链中存储了存证信息和相应的第一智能合约,其它组织或人员无法篡改该存证信息和相应的第一智能合约,而且,区块链节点可通过第一智能合约对业务请求方进行核身和验签。In addition, blockchain nodes can also formulate verification and verification rules for the business requester based on the obtained deposit information, and can generate corresponding smart contracts (i.e., the first smart contract) based on the verification and verification rules , And the first smart contract can be deployed to the blockchain network where the blockchain node is located. In this way, the deposit certificate information and the corresponding first smart contract are stored in the blockchain, and other organizations or personnel cannot tamper with the deposit. Certificate information and the corresponding first smart contract, and the blockchain node can verify and verify the business requester through the first smart contract.
在步骤S104中,接收业务请求方的第一业务请求,该第一业务请求中包括业务数据和加签数据。In step S104, a first service request from the service requester is received, and the first service request includes service data and endorsement data.
业务数据可是与业务请求相关的数据,例如业务请求为向业务授权方申请资源的信用额度(如贷款的信用额度等)的请求,则业务数据可为申请资源的信用额度所需的数据,具体如业务请求方的经营状况信息、业务请求方的发展前景和业务请求方所拥有的固定资源等,具体可根据实际情况设定,本说明书实施例对此不做限定。加签数据可是将某数据进行签名处理得到的数据,其中可通过上述提到的数字证书进行签名处理等。Business data can be data related to a business request. For example, a business request is a request to apply for a credit line of a resource (such as a credit line of a loan, etc.) from a business authorizing party. The business data can be the data required to apply for a credit line of a resource. For example, the business status information of the business requester, the development prospects of the business requester, and the fixed resources owned by the business requester can be specifically set according to the actual situation, which is not limited in the embodiment of this specification. The signed data can be data obtained by signature processing of certain data, in which the above-mentioned digital certificate can be used for signature processing and so on.
在实施中,业务请求方在获取到业务授权方提供的对某业务进行访问或执行的授权信息或数字证书后,可向业务授权方进行业务请求,具体地,可预先设定业务请求的相关页面,该页面中可设置有某一项或多项业务的请求入口(具体可通过按键或超链接等方式体现),业务请求方可通过终端设备打开上述页面,并可通过上述请求入口进入某一项业务的业务请求的相关页面,可通过该页面中提供的与该业务和业务请求方的身 份的相关信息的输入框中输入业务数据和业务请求方身份的相关信息,输入完成后,可点击该页面中的提交按键,此时,上述数字证书或授权信息可对业务请求方身份的相关信息进行签名处理,具体如,该数字证书或授权信息中可包括一对密钥,其中可包括公钥和私钥,可通过其中的私钥对业务请求方身份的相关信息进行签名处理,生成加签数据,然后,业务请求方的终端设备可使用上述业务数据和加签数据,以及该数字证书或授权信息中的公钥生成第一业务请求,可将该第一业务请求发送给区块链节点,从而区块链节点可接收到业务请求方的第一业务请求。In the implementation, after obtaining the authorization information or digital certificate for accessing or executing a certain service provided by the service authorizing party, the service requesting party can make a service request to the service authorizing party. Specifically, the relevant service request can be set in advance. Page, the page can be set with a request entry for one or more services (specifically, it can be embodied by means of buttons or hyperlinks, etc.). The service requester can open the above page through the terminal device and enter a certain entry through the above request entry. For the relevant page of a business request of a business, you can enter the business data and the relevant information of the business requester's identity through the input box of the relevant information related to the business and the identity of the business requester provided on the page. After the input is completed, you can Click the submit button on this page. At this time, the above-mentioned digital certificate or authorization information can sign information related to the identity of the service requester. Specifically, the digital certificate or authorization information can include a pair of keys, which can include The public key and private key can be used to sign the information related to the identity of the service requester through the private key to generate the signature data. Then, the terminal equipment of the service requester can use the above-mentioned service data and signature data, and the number The public key in the certificate or authorization information generates the first service request, and the first service request can be sent to the blockchain node, so that the blockchain node can receive the first service request from the service requester.
上述签名处理过程,除了可通过其中的私钥对业务请求方身份的相关信息进行签名处理,在实际应用,还可通过其中的公钥对业务请求方身份的相关信息进行签名处理,而将其中私钥通过第一业务请求发送给区块链节点等。此外,还可通过上述方式对业务数据进行签名处理,从而保证业务数据在传输过程中的安全性。In the above-mentioned signature processing process, in addition to using the private key to sign the information related to the service requester's identity, in practical applications, the public key can also be used to sign the information related to the service requester's identity, and The private key is sent to the blockchain node etc. through the first service request. In addition, the service data can also be signed in the above-mentioned manner, so as to ensure the security of the service data in the transmission process.
在步骤S106中,调用第一智能合约对上述加签数据进行验证,得到验证结果。In step S106, the first smart contract is called to verify the above-mentioned signed data, and the verification result is obtained.
在实施中,区块链节点接收到第一业务请求后,可对第一业务请求进行分析,从中可提取加签数据和相应的密钥(如上述的公钥等),然后,区块链节点可调用第一智能合约对该加签数据进行核验,具体地,第一智能合约中可记录有业务授权方对业务请求方生成的存证信息,区块链节点可通过上述密钥对加签数据进行解密,得到加签数据中的数据内容,可将解密得到的数据内容与第一智能合约中记录的存证信息进行比对,如果解密得到的数据内容与第一智能合约中记录的存证信息匹配,则可确定对上述加签数据的验证通过,如果解密得到的数据内容与第一智能合约中记录的存证信息不匹配,则可确定对上述加签数据的验证未通过,此时,可向业务请求方发送身份核验失败的通知消息,以便业务请求方可重新发送第一业务请求。此外,还可向业务授权方发送对业务请求方的加签数据的验证未通过的通知消息,以便业务授权方根据实际情况调整业务请求方的风险等级,并可通过其它途径及时通知业务请求方保护相关数据的安全性等,从而得到对上述加签数据进行验证的验证结果。In implementation, after the blockchain node receives the first service request, it can analyze the first service request, and extract the signature data and the corresponding key (such as the public key mentioned above) from it. Then, the blockchain The node can call the first smart contract to verify the signature data. Specifically, the first smart contract can record the deposit information generated by the service authorizer to the service requester, and the blockchain node can use the above key pair to add The signed data is decrypted, and the data content in the signed data is obtained. The decrypted data content can be compared with the deposit information recorded in the first smart contract. If the decrypted data content is compared with the data recorded in the first smart contract If the deposit information matches, it can be determined that the verification of the aforementioned signed data is passed. If the decrypted data content does not match the deposit information recorded in the first smart contract, it can be determined that the verification of the aforementioned signed data has not passed. At this time, a notification message that the identity verification has failed can be sent to the service requester, so that the service requester can resend the first service request. In addition, it can also send a notification message to the service authorizing party that the verification of the endorsed data of the service requesting party has failed, so that the service authorizing party can adjust the risk level of the service requesting party according to the actual situation, and notify the service requesting party in time through other channels Protect the security of related data, etc., so as to obtain the verification result of verifying the above-mentioned signed data.
在步骤S108中,若验证结果为通过,则将上述业务数据和加签数据发送至业务授权方,以使业务授权方对该加签数据进行二次验证,验证通过后基于该业务数据进行业务处理,得到处理结果。In step S108, if the verification result is passed, the service data and the signature data are sent to the service authorizing party so that the service authorizing party will perform a second verification of the signature data, and after the verification is passed, the business data will be performed based on the service data. Processing, get the processing result.
在实施中,区块链节点通过调用第一智能合约对上述加签数据进行验证,可得到相应的验证结果,如果得到的验证结果为验证通过,则表明业务请求方的身份正确,此时可继续执行后续相关处理,即可将上述业务数据和加签数据发送至业务授权方。业务授权方接收到该业务数据和加签数据后,也可对该加签数据进行二次验证,即可通过数字证书或授权信息中的密钥对加签数据进行解密,得到加签数据中的数据内容,可将解密得到的数据内容与存证信息进行比对,如果解密得到的数据内容与存证信息匹配,则可确定对上述加签数据的验证通过,如果解密得到的数据内容与第一智能合约中记录的存证信息不匹配,则可确定对上述加签数据的验证未通过。In the implementation, the blockchain node verifies the above-mentioned signed data by calling the first smart contract, and can obtain the corresponding verification result. If the verification result is passed, it indicates that the identity of the business requester is correct. Continue to perform the follow-up related processing to send the above-mentioned business data and endorsement data to the business authorized party. After the service authorizer receives the service data and the signature data, it can also perform secondary verification on the signature data, and then decrypt the signature data through the digital certificate or the key in the authorization information to obtain the signature data The data content obtained by decryption can be compared with the evidence information. If the data content obtained by decryption matches the evidence information, it can be determined that the verification of the above-mentioned signed data is passed. If the data content obtained by decryption matches If the deposit information recorded in the first smart contract does not match, it can be determined that the verification of the above-mentioned signed data has not passed.
如果对上述加签数据的验证通过,则业务授权方可基于该业务数据对第一业务请求对应的业务进行业务处理,得到相应的处理结果,例如,第一业务请求为向业务授权方申请资源的信用额度(如贷款的信用额度等)的请求,则业务授权方可基于该业务数据,确定业务请求方是否能够申请资源的信用额度,以及能够申请到的资源的信用额度的数值范围等,如果业务授权方基于该业务数据确定业务请求方无法申请资源的信用额度,则可生成相应的处理结果,如果业务授权方基于该业务数据确定业务请求方能够申请资源的信用额度,则可获取业务请求方能够申请到的资源的信用额度的数值范围,并可基于获取到的业务请求方能够申请到的资源的信用额度的数值范围生成相应的处理结果。业务授权方可将上述得到的处理结果返回给区块链节点。If the verification of the above-mentioned endorsed data is passed, the business authorizer can perform business processing on the business corresponding to the first business request based on the business data, and obtain the corresponding processing result. For example, the first business request is an application for resources from the business authorizer For the request for a credit line (such as a credit line for a loan, etc.), the business authorizing party can determine whether the business requester can apply for the credit line of the resource based on the business data, and the value range of the credit line of the resource that can be applied for, etc. If the service authorizer determines based on the service data that the service requester cannot apply for the credit limit of the resource, it can generate the corresponding processing result. If the service authorizer determines based on the service data that the service requester can apply for the credit limit of the resource, it can obtain the service The value range of the credit line of the resource that the requester can apply for, and the corresponding processing result can be generated based on the obtained value range of the credit line of the resource that the service requester can apply for. The business authorized party can return the processing result obtained above to the blockchain node.
在步骤S110中,接收业务授权方返回的上述处理结果,将该处理结果返回业务请 求方,并基于该处理结果对业务请求方发起的与上述业务数据对应的业务相关的第二业务请求进行处理。In step S110, the above processing result returned by the service authorizer is received, the processing result is returned to the service requester, and the second service request initiated by the service requester and related to the service corresponding to the above service data is processed based on the processing result .
第二业务请求可是与上述业务数据对应的业务相关的业务请求,第二业务请求可与上述第一业务请求不同,例如,第一业务请求可为向业务授权方申请资源的信用额度(如贷款的信用额度等)的请求,而第二业务请求可是向区块链节点或业务授权方请求资源支用的请求等,具体可根据实际情况设定,本说明书实施例对此不做限定。The second business request may be a business request related to the business corresponding to the above-mentioned business data, and the second business request may be different from the above-mentioned first business request. For example, the first business request may be an application for a credit line (such as a loan The second service request may be a request for resource expenditure from a blockchain node or a service authorizer, etc., which can be specifically set according to the actual situation, which is not limited in the embodiment of this specification.
在实施中,区块链节点可接收业务授权方返回的上述处理结果,并可将该处理结果返回业务请求方。然后,区块链节点可基于该处理结果对业务请求方后续发起的与上述业务数据对应的业务相关的第二业务请求进行处理,具体如,基于上述步骤S108的示例,并以第二业务请求可是向区块链节点或业务授权方请求资源支用的请求为例,如果区块链节点接收到的处理结果为业务请求方无法申请资源的信用额度,则在后续接收到业务请求方发起的与上述业务数据对应的业务相关的第二业务请求时,可拒绝对第二业务请求进行处理,如果区块链节点接收到的处理结果为业务请求方能够申请资源的信用额度,则在后续接收到业务请求方发起的与上述业务数据对应的业务相关的第二业务请求时,可基于业务请求方能够申请到的资源的信用额度的数值范围以对第二业务请求进行处理,如第二业务请求中需要支用的资源的数值处于上述数值范围内,则可向业务请求方提供需要支用的资源,如果第二业务请求中需要支用的资源的数值未处于上述数值范围内,则可拒绝对第二业务请求进行处理等。In implementation, the blockchain node can receive the above-mentioned processing result returned by the service authorizer, and can return the processing result to the service requester. Then, the blockchain node can process the second service request related to the service corresponding to the above-mentioned service data that is subsequently initiated by the service requester based on the processing result. However, take a request for resource expenditure from a blockchain node or a business authorizer as an example. If the processing result received by the blockchain node is that the business requester cannot apply for the credit line of the resource, it will subsequently receive the request initiated by the business requester When the second service request is related to the service corresponding to the above service data, the second service request can be refused to be processed. If the processing result received by the blockchain node is that the service requester can apply for the credit line of the resource, it will be received in the subsequent When the service requester initiates a second service request related to the service corresponding to the above service data, the second service request can be processed based on the value range of the credit line of the resource that the service requester can apply for, such as the second service If the value of the resource that needs to be spent in the request is within the above numerical range, the service requester can be provided with the resource that needs to be spent. If the value of the resource that needs to be spent in the second service request is not within the above numerical range, it can be Refuse to process the second service request, etc.
本说明书实施例提供一种业务处理方法,通过业务授权方对业务请求方生成的存证信息部署第一智能合约,当接收到业务请求方的第一业务请求时,调用第一智能合约对第一业务请求中的加签数据进行验证,若验证通过,则将业务数据和加签数据发送至业务授权方进行二次验证,这样,业务请求方通过将数据加签上传至区块链平台,区块链平台对该数据进行多方数据处理(如数据比对等),使得处理后的数据具有更高的可信度,从而提高了从业务授权方获得更高的权限的可能性,通过区块链平台对业务请求方进行金融级的核身与验签,使得业务授权方与业务请求方之间传输的数据更加安全,而且还可基于业务授权方的处理结果对业务请求方发起的与业务数据对应的业务相关的第二业务请求进行处理,降低了业务处理(如融资等)的风险,使得业务处理安全性和可靠性提高。The embodiment of this specification provides a service processing method. The first smart contract is deployed by the service authorizer to the deposit information generated by the service requester. When the first service request of the service requester is received, the first smart contract is called to the second The signature data in a business request is verified. If the verification is passed, the business data and the signature data are sent to the business authorizing party for secondary verification. In this way, the business requester uploads the data signature to the blockchain platform, The blockchain platform performs multi-party data processing (such as data comparison, etc.) on the data, so that the processed data has higher credibility, thereby increasing the possibility of obtaining higher authority from the business authorized party. The blockchain platform performs financial-level verification and signature verification on the business requester, making the data transmitted between the business authorizing party and the business requesting party more secure, and it can also perform transactions initiated by the business requesting party based on the processing results of the business authorizing party. The business-related second business request corresponding to the business data is processed, which reduces the risk of business processing (such as financing, etc.), and improves the security and reliability of business processing.
实施例二Example two
如图3所示,本说明书实施例提供一种业务处理方法,该方法的执行主体可为区块链节点,该区块链节点可是终端设备或服务器,终端设备可如手机、平板电脑等移动终端设备,还可如个人计算机等设备。该服务器可是一个独立的服务器,还可是由多个服务器构成的服务器集群等。该方法具体可包括以下步骤:在步骤S302中,获取业务授权方对业务请求方生成的存证信息,基于该存证信息部署第一智能合约,第一智能合约用于根据该存证信息对业务请求方的加签数据进行验证。As shown in Figure 3, the embodiment of this specification provides a business processing method, the execution subject of the method can be a blockchain node, the blockchain node can be a terminal device or a server, and the terminal device can be mobile such as mobile phones, tablets, etc. Terminal equipment can also be equipment such as personal computers. The server can be an independent server, or a server cluster composed of multiple servers. The method may specifically include the following steps: in step S302, obtaining the deposit information generated by the service authorizing party to the service requesting party, and deploying a first smart contract based on the deposit information, and the first smart contract is used for pairing with the deposit information according to the deposit information The endorsement data of the business requester is verified.
步骤S302的具体处理过程可参见上述实施例一中的相关内容,在此不再赘述。For the specific processing process of step S302, please refer to the related content in the above-mentioned first embodiment, which will not be repeated here.
此外,基于上述实施例一中的相关内容,业务授权方可针对业务请求方生成数字证书,针对上述情况,还可通过下述步骤A2~步骤A6的方式处理。In addition, based on the relevant content in the first embodiment, the service authorizer can generate a digital certificate for the service requester. For the above situation, it can also be processed by the following steps A2 to A6.
在步骤A2中,获取业务授权方针对业务请求方生成的数字证书,该数字证书用于生成加签数据。In step A2, a digital certificate generated by the service authorizer for the service requester is obtained, and the digital certificate is used to generate the signature data.
数字证书是指在互联网交易中标志交易各方身份信息的一个数字认证,数字证书可对用户在互联网交流中的信息和数据等进行加密或解密,从而保证了信息和数据的完整性和安全性。数字证书的基本架构是一对密钥,可通过该密钥实施加密和解密,其中的密钥可包括私钥和公钥,私钥可用于签名和解密,公钥可用于签名验证和加密等。A digital certificate refers to a digital authentication that marks the identity information of all parties in an Internet transaction. The digital certificate can encrypt or decrypt information and data exchanged by users on the Internet, thereby ensuring the integrity and security of the information and data. . The basic structure of a digital certificate is a pair of keys through which encryption and decryption can be implemented. The keys can include a private key and a public key. The private key can be used for signature and decryption, and the public key can be used for signature verification and encryption, etc. .
在实施中,业务请求方可向业务授权方申请某项业务的访问或执行权限,业务授 权方可获取业务请求方的相关数据,并可基于上述数据,对业务请求方是否具备访问或执行该项业务的资质进行验证,如果确定业务请求方具备访问或执行该项业务的资质,则可为业务请求方生成数字证书,并可将生成的数字证书发送给业务请求方。此外,业务授权方也可将生成的数字证书发送给区块链节点,以便对该数字证书进行存证,或者,区块链节点可定时或不定时的向业务授权方查询新建的数字证书,并可将新建的数字证书从业务授权方的终端设备拉取,从而区块链节点可获取到业务授权方针对业务请求方生成的数字证书。In the implementation, the business requester can apply to the business authorizer for the access or execution authority of a certain business, and the business authorizer can obtain the relevant data of the business requester, and based on the above data, whether the business requester has access or executes the service The qualification of the business is verified. If it is determined that the business requester has the qualifications to access or perform the business, a digital certificate can be generated for the business requester, and the generated digital certificate can be sent to the business requester. In addition, the business authorizer can also send the generated digital certificate to the blockchain node to store the digital certificate, or the blockchain node can query the business authorizer for the newly created digital certificate regularly or irregularly. The newly created digital certificate can be pulled from the terminal device of the service authorizer, so that the blockchain node can obtain the digital certificate generated by the service authorizer for the service requester.
在步骤A4中,获取业务请求方的数字身份信息。In step A4, the digital identity information of the service requester is obtained.
数字身份信息可是指通过数字化信息将业务请求方或业务授权方可识别地进行刻画的信息,也即为将真实的身份信息浓缩为数字代码的形式表现,以便对业务请求方或业务授权方个人的实时行为信息进行绑定、查询和验证。数字身份信息中不仅可包含种业务请求方或业务授权方的出生信息、个体描述、生物特征等身份编码信息,也涉及多种属性的个人行为信息(如交易信息或娱乐信息等)等。数字身份信息可通过多种方式展现,如DID(Decentralized Identity,去中心化身份)等。Digital identity information refers to information that identifiably portrays the business requester or business authorizer through digital information, that is, the real identity information is condensed into the form of a digital code, so as to provide personal information to the business requester or business authorizer. Binding, querying and verifying the real-time behavioral information. Digital identity information can include not only the birth information, individual descriptions, biometrics, and other identity coding information of the business requester or business authorizer, but also personal behavior information with multiple attributes (such as transaction information or entertainment information). Digital identity information can be displayed in a variety of ways, such as DID (Decentralized Identity) and so on.
在步骤A6中,将上述数字证书与业务请求方的数字身份信息关联存储。In step A6, the above-mentioned digital certificate is stored in association with the digital identity information of the service requester.
在实施中,可将上述数字证书与业务请求方的数字身份信息相关联,并可将上述数字证书与业务请求方的数字身份信息对应存储。在实际应用中,业务授权方可为每个业务请求方颁发一个或多个数字证书,不同的业务授权方也可为每个业务请求方颁发一个或多个数字证书,业务授权方颁发的每一个数字证书均可与业务请求方的数字身份信息相关联,并可对应存储在区块链中。In implementation, the above-mentioned digital certificate can be associated with the digital identity information of the service requester, and the above-mentioned digital certificate can be stored correspondingly with the digital identity information of the service requester. In practical applications, the business authorizer can issue one or more digital certificates for each business requester, and different business authorizers can also issue one or more digital certificates for each business requester. A digital certificate can be associated with the digital identity information of the business requester, and can be stored in the blockchain accordingly.
基于上述相关内容,上述存证信息可包括以下中的一项或多项:数字证书的密钥(如数字证书的公钥等)、数字证书的颁发方信息(即业务授权方的相关信息)、所述数字证书的使用方信息(即业务请求方的相关信息)、数字证书与颁发方的关系信息(即数字证书与业务授权方的关系信息)、数字证书与使用方的关系信息(即数字证书与业务请求方的关系信息)等,在实际应用中,存证信息中除了可包含上述信息外,还可包括其它多种不同的信息,具体可根据实际情况设定,本说明书实施例对此不做限定。Based on the above-mentioned related content, the above-mentioned certificate information may include one or more of the following: the key of the digital certificate (such as the public key of the digital certificate, etc.), the information of the issuer of the digital certificate (that is, the relevant information of the business authorizing party) , The user information of the digital certificate (i.e. the relevant information of the service requester), the relationship information between the digital certificate and the issuer (i.e. the relationship information between the digital certificate and the business authorizing party), the relationship information between the digital certificate and the user (i.e. The relationship information between the digital certificate and the service requester), etc., in actual applications, in addition to the above information, the deposit information can also include a variety of other information, which can be set according to the actual situation. The embodiment of this specification There is no restriction on this.
在步骤S304中,接收业务请求方的第一业务请求,第一业务请求中包括业务数据和加签数据。In step S304, a first service request from the service requester is received, and the first service request includes service data and endorsement data.
第一业务请求可为资源申请请求,资源申请请求可是向业务授权方申请一定资源的信用额度的请求,具体如融资请求等。加签数据可是通过数字证书将业务请求方提供的相关信息(如与业务请求方相关的信息等)进行签名处理得到的数据。The first service request may be a resource application request, and the resource application request may be a request to apply for a certain resource credit line from a service authorizing party, such as a financing request. The signed data may be data obtained by signing relevant information provided by the service requester (such as information related to the service requester, etc.) through a digital certificate.
在步骤S306中,调用第一智能合约对上述加签数据进行验证,得到验证结果。In step S306, the first smart contract is called to verify the above-mentioned signed data, and the verification result is obtained.
在步骤S308中,若验证结果为通过,则将业务数据和加签数据发送至业务授权方。In step S308, if the verification result is passed, the service data and the signature data are sent to the service authorizer.
在实际应用中,除了可对上述加签数据进行验证外,还可对第一业务请求中的其它数据进行验证,以下提供一种可选的处理方式,具体可包括以下步骤S310和步骤S312的处理。In practical applications, in addition to verifying the above-mentioned endorsed data, other data in the first service request can also be verified. An optional processing method is provided below, which specifically includes the following steps S310 and S312 deal with.
在步骤S310中,调用第一智能合约对上述业务数据进行真实性验证,得到该业务数据的验证结果。In step S310, the first smart contract is called to verify the authenticity of the business data, and the verification result of the business data is obtained.
在实施中,第一智能合约中还可设置有对第一业务请求中的业务数据进行真实性验证的规则,当区块链节点调用第一智能合约对上述加签数据进行验证,且验证通过后,可再次调用第一智能合约,通过第一智能合约中设置的对第一业务请求中的业务数据进行真实性验证的规则,对业务数据进行真实性验证,具体可如区块链节点可从业务请求方和其它可信信息源中,获取与业务请求方的上述业务数据相关的数据,并可通过第一智能合约中设置的对第一业务请求中的业务数据进行真实性验证的规则,将获取到的数据与上述业务数据进行比对或匹配,以对该业务数据进行真实性验证,最终可得到该业 务数据的验证结果。例如,业务请求方为网络货运机构,在相应的业务数据可是运单和物流等数据,则区块链节点可从业务请求方和其它可信信息源中,获取与业务请求方的运单和物流等相关的数据,并可将获取的数据与上述业务数据进行匹配或比对,从而确定业务请求方提供的业务数据的真实性,同时也可确定业务请求方的经营状态等相关信息,并可将确定信息作为后续处理的依据。In implementation, the first smart contract can also be set up with rules to verify the authenticity of the business data in the first business request. When the blockchain node calls the first smart contract to verify the above signed data, and the verification passes After that, the first smart contract can be called again, and the authenticity of the business data can be verified through the rules set in the first smart contract to verify the authenticity of the business data in the first business request, which can be as specific as the blockchain node. Obtain data related to the above-mentioned business data of the business requester from the business requester and other trusted information sources, and verify the authenticity of the business data in the first business request through the rules set in the first smart contract , Compare or match the acquired data with the above-mentioned business data to verify the authenticity of the business data, and finally obtain the verification result of the business data. For example, if the business requester is an online freight agency, and the corresponding business data can be data such as waybills and logistics, the blockchain node can obtain the waybill and logistics with the business requester from the business requester and other trusted information sources. Related data, and the obtained data can be matched or compared with the above-mentioned business data, so as to determine the authenticity of the business data provided by the business requester. At the same time, it can also determine the business status of the business requester and other related information. Determine the information as the basis for subsequent processing.
在步骤S312中,将上述业务数据的验证结果发送至业务授权方,以使业务授权方对上述加签数据进行二次验证通过后,基于该业务数据的验证结果和该业务数据进行业务处理,得到处理结果。In step S312, the verification result of the business data is sent to the business authorizing party, so that the business authorizing party performs business processing based on the verification result of the business data and the business data after the second verification of the aforesaid data is passed, Get the processing result.
在实施中,由于区块链节点已对业务请求方提供的业务数据的真实性进行核验,其核验结果的可信度较高,因此,业务授权方在对上述加签数据进行二次验证通过后,可基于该业务数据的验证结果和该业务数据,对第一业务请求对应的业务进行业务处理,得到相应的处理结果,具体处理过程可参见上述实施例一中步骤S108的相关内容,在此不再赘述。In the implementation, since the blockchain node has verified the authenticity of the business data provided by the business requester, the verification results have a high degree of credibility, so the business authorizing party will pass the second verification of the above-mentioned endorsed data. Then, based on the verification result of the business data and the business data, the business corresponding to the first business request can be processed to obtain the corresponding processing result. For the specific processing process, please refer to the relevant content of step S108 in the first embodiment. This will not be repeated here.
在步骤S314中,接收业务授权方返回的处理结果,将该处理结果返回业务请求方。In step S314, the processing result returned by the service authorizer is received, and the processing result is returned to the service requester.
在实际应用中,针对上述处理结果之后,还可基于该处理结果对业务请求方发起的与上述业务数据对应的业务相关的业务请求进行处理,具体可包括以下步骤S316和步骤S318的处理。In actual applications, after the above processing result, the service related business request initiated by the service requester corresponding to the above service data can also be processed based on the processing result, which may specifically include the following processing of step S316 and step S318.
在步骤S316中,根据上述处理结果和与上述业务数据对应的业务的处理规则,生成第二智能合约,将第二智能合约部署于区块链中。In step S316, a second smart contract is generated according to the above processing result and the processing rules of the business corresponding to the above business data, and the second smart contract is deployed in the blockchain.
与上述业务数据对应的业务的处理规则可包括多种,例如第一业务请求为资源申请请求,则上述处理规则可包括如资源支用规则(如每次支用的最大数量、支用的时间等)、申请的资源的使用规则(如资源的使用范围或领域等)。第二智能合约可是与上述第一智能合约不同的智能合约,在实际应用中,还可将第二智能合约和第一智能合约组合为一个智能合约使用,本说明书实施例对此不做限定。The business processing rules corresponding to the above business data can include multiple types. For example, if the first business request is a resource application request, the above processing rules can include, for example, resource use rules (e.g., the maximum amount spent each time, the spent time Etc.), the usage rules of the requested resource (such as the scope or field of use of the resource, etc.). The second smart contract may be a smart contract different from the above-mentioned first smart contract. In practical applications, the second smart contract and the first smart contract can also be combined into one smart contract for use, which is not limited in the embodiment of this specification.
在实施中,区块链节点可针对上述业务数据对应的业务,确定与上述业务数据对应的业务的处理规则,并可基于上述处理结果和与上述业务数据对应的业务的处理规则生成相应的智能合约(即第二智能合约),并可向该区块链节点所在的区块链网络中部署该第二智能合约,区块链节点通过第二智能合约对业务请求方发起的与上述业务数据对应的业务相关的第二业务请求进行处理。In implementation, the blockchain node can determine the business processing rules corresponding to the business data for the business corresponding to the business data, and can generate corresponding intelligence based on the processing results and the business processing rules corresponding to the business data. Contract (that is, the second smart contract), and the second smart contract can be deployed to the blockchain network where the blockchain node is located. The blockchain node initiates the above-mentioned business data to the business requester through the second smart contract The second service request related to the corresponding service is processed.
在步骤S318中,当接收到业务请求方发起的与上述业务数据对应的业务相关的第二业务请求时,调用第二智能合约对第二业务请求进行处理,并将得到的第二业务请求的处理结果发送给业务授权方和业务请求方。In step S318, when a second service request related to the service corresponding to the above-mentioned service data initiated by the service requester is received, the second smart contract is called to process the second service request, and the obtained second service request is The processing result is sent to the service authorizer and service requester.
第二业务请求可为资源支用请求,资源支用请求可为从已经申请到的资源的信用额度中支取一定资源额度的请求,例如已经申请到的资源的信用额度为10万元,则资源支用请求可为从中支取5万元的请求等。The second service request can be a resource expenditure request, which can be a request to withdraw a certain amount of resources from the credit limit of the resource that has been applied for. For example, if the credit limit of the resource that has been applied for is 100,000 yuan, the resource The request for disbursement may be a request for disbursing 50,000 yuan from it, etc.
在实施中,业务请求方得到上述处理结果后,可向区块链节点或业务授权方进行业务请求,具体地,可预先设定业务请求的相关页面,该页面中可设置有某一项或多项业务的请求入口,业务请求方可通过终端设备打开上述页面,并可通过上述请求入口进入相应业务(如资源支用业务等)的相关页面,可通过业务请求方在该页面中信息的输入框中输入的信息生成第二业务请求,可将该第二业务请求发送给区块链节点,从而区块链节点可接收到业务请求方的第二业务请求。In implementation, after the business requester obtains the above processing result, it can make a business request to the blockchain node or the business authorizer. Specifically, the relevant page of the business request can be set in advance, and the page can be set with a certain item or For multiple service requests, the service requester can open the above-mentioned page through the terminal device, and enter the relevant page of the corresponding service (such as resource utilization service, etc.) through the above-mentioned request entrance. The information entered in the input box generates a second service request, which can be sent to the blockchain node, so that the blockchain node can receive the second service request from the service requester.
区块链节点接收到业务请求方发起的与上述业务数据对应的业务相关的第二业务请求后,可调用第二智能合约对第二业务请求进行处理,并将得到的第二业务请求的处理结果发送给业务授权方和业务请求方,具体地,第二业务请求可为资源支用请求,第二业务请求中可包括需要支用的资源的数量,此时,区块链节点可将第二业务请求中包 含的需要支用的资源的数量与已经申请到的资源的信用额度进行比较,如果需要支用的资源的数量小于或等于已经申请到的资源的信用额度,则可向业务授权方发送第二业务请求,以使业务授权方将需要支用的资源转移给业务请求方,如果需要支用的资源的数量大于已经申请到的资源的信用额度,则可拒绝向业务请求方执行资源支用处理,同时,可向业务请求方和业务授权方发送相应的通知消息。After the blockchain node receives the second business request related to the business corresponding to the above business data initiated by the business requester, it can call the second smart contract to process the second business request, and process the obtained second business request The result is sent to the service authorizer and service requester. Specifically, the second service request may be a resource utilization request, and the second service request may include the number of resources that need to be used. At this time, the blockchain node may assign the first 2. The number of resources that need to be spent in the service request is compared with the credit limit of the resource that has been applied for. If the number of resources that needs to be spent is less than or equal to the credit limit of the resource that has been applied for, you can authorize the business The party sends a second service request so that the service authorizer transfers the resources that need to be spent to the service requester. If the amount of resources that needs to be spent is greater than the credit limit of the resource that has been applied for, it can refuse to perform to the service requester Resource utilization processing, and at the same time, corresponding notification messages can be sent to the service requester and service authorizer.
本说明书实施例提供一种业务处理方法,通过业务授权方对业务请求方生成的存证信息部署第一智能合约,当接收到业务请求方的第一业务请求时,调用第一智能合约对第一业务请求中的加签数据进行验证,若验证通过,则将业务数据和加签数据发送至业务授权方进行二次验证,这样,业务请求方通过将数据加签上传至区块链平台,区块链平台对该数据进行多方数据处理(如数据比对等),使得处理后的数据具有更高的可信度,从而提高了从业务授权方获得更高的权限的可能性,通过区块链平台对业务请求方进行金融级的核身与验签,使得业务授权方与业务请求方之间传输的数据更加安全,而且还可基于业务授权方的处理结果和与上述业务数据对应的业务的处理规则,生成第二智能合约,通过第二智能合约对业务请求方发起的与业务数据对应的业务相关的第二业务请求进行处理,降低了业务处理(如融资等)的风险,使得业务处理安全性和可靠性提高。The embodiment of this specification provides a service processing method. The first smart contract is deployed by the service authorizer to the deposit information generated by the service requester. When the first service request of the service requester is received, the first smart contract is called to the second The signature data in a business request is verified. If the verification is passed, the business data and the signature data are sent to the business authorizing party for secondary verification. In this way, the business requester uploads the data signature to the blockchain platform, The blockchain platform performs multi-party data processing (such as data comparison, etc.) on the data, so that the processed data has higher credibility, thereby increasing the possibility of obtaining higher authority from the business authorized party. The blockchain platform performs financial-level verification and verification of the business requester, making the data transmitted between the business authorizing party and the business requesting party more secure, and it can also be based on the processing results of the business authorizing party and the corresponding business data. The business processing rules, generate a second smart contract, and process the second business request related to the business corresponding to the business data initiated by the business requester through the second smart contract, which reduces the risk of business processing (such as financing, etc.), so that The security and reliability of business processing are improved.
实施例三Example three
如图4所示,本说明书实施例提供一种业务处理方法,该方法的执行主体可为业务授权方的终端设备,业务授权方可是对业务请求方执行或访问某一项或多项不同业务进行授权的一方,具体如金融机构(如银行等)等,业务授权方的终端设备可如手机、平板电脑等移动终端设备,还可如个人计算机等设备,还可是一个独立的服务器或者由多个服务器构成的服务器集群等。该方法具体可包括以下步骤:在步骤S402中,生成针对业务请求方的数字证书和存证信息。As shown in Figure 4, the embodiment of this specification provides a service processing method. The execution subject of the method can be the terminal device of the service authorizer, and the service authorizer can execute or access one or more different services to the service requester. The authorizing party, such as financial institutions (such as banks, etc.), the terminal equipment of the business authorizing party can be mobile terminal equipment such as mobile phones, tablet computers, personal computers and other equipment, or an independent server or multiple devices. A server cluster composed of two servers, etc. The method may specifically include the following steps: in step S402, a digital certificate and certificate information for the service requester are generated.
在步骤S404中,将上述数字证书颁发给业务请求方,并向预定区块链节点发送上述存证信息,以使区块链节点基于该存证信息部署第一智能合约,第一智能合约用于根据该存证信息对业务请求方的加签数据进行验证,并在接收到业务请求方的第一业务请求时,调用第一智能合约对该加签数据进行验证,得到验证结果。In step S404, the above-mentioned digital certificate is issued to the service requester, and the above-mentioned deposit information is sent to a predetermined blockchain node, so that the blockchain node deploys the first smart contract based on the deposit information, and the first smart contract uses The signature data of the service requester is verified according to the deposit information, and when the first service request of the service requester is received, the first smart contract is invoked to verify the signature data, and the verification result is obtained.
在步骤S406中,接收区块链节点发送的业务数据和加签数据,该业务数据和加签数据是区块链节点在上述验证结果为通过时发送,该加签数据是基于上述数字证书生成的数据。In step S406, the business data and the signature data sent by the blockchain node are received, the business data and the signature data are sent by the blockchain node when the above verification result is passed, and the signature data is generated based on the above digital certificate The data.
在步骤S408中,对上述加签数据进行二次验证,若验证通过,则基于上述业务数据进行业务处理,得到处理结果,并将该处理结果返回给区块链节点,以使区块链节点基于该处理结果对业务请求方发起的与上述业务数据对应的业务相关的第二业务请求进行处理。In step S408, the second verification is performed on the above-mentioned signed data. If the verification is passed, the business processing is performed based on the above-mentioned business data to obtain the processing result, and the processing result is returned to the blockchain node, so that the blockchain node Based on the processing result, the second service request initiated by the service requester and related to the service corresponding to the above-mentioned service data is processed.
上述步骤S402~S408的具体处理过程可参见上述实施例一和实施例二中的相关内容,在此不再赘述。For the specific processing procedures of the foregoing steps S402 to S408, please refer to the related content in the foregoing Embodiment 1 and Embodiment 2, which will not be repeated here.
本说明书实施例提供一种业务处理方法,通过业务授权方对业务请求方生成的存证信息部署第一智能合约,当接收到业务请求方的第一业务请求时,调用第一智能合约对第一业务请求中的加签数据进行验证,若验证通过,则将业务数据和加签数据发送至业务授权方进行二次验证,这样,业务请求方通过将数据加签上传至区块链平台,区块链平台对该数据进行多方数据处理(如数据比对等),使得处理后的数据具有更高的可信度,从而提高了从业务授权方获得更高的权限的可能性,通过区块链平台对业务请求方进行金融级的核身与验签,使得业务授权方与业务请求方之间传输的数据更加安全,而且还可基于业务授权方的处理结果对业务请求方发起的与业务数据对应的业务相关的第二业务请求进行处理,降低了业务处理(如融资等)的风险,使得业务处理安全性 和可靠性提高。The embodiment of this specification provides a service processing method. The first smart contract is deployed by the service authorizer to the deposit information generated by the service requester. When the first service request of the service requester is received, the first smart contract is called to the second The signature data in a business request is verified. If the verification is passed, the business data and the signature data are sent to the business authorizing party for secondary verification. In this way, the business requester uploads the data signature to the blockchain platform, The blockchain platform performs multi-party data processing (such as data comparison, etc.) on the data, so that the processed data has higher credibility, thereby increasing the possibility of obtaining higher authority from the business authorized party. The blockchain platform performs financial-level verification and signature verification on the business requester, making the data transmitted between the business authorizing party and the business requesting party more secure, and it can also perform transactions initiated by the business requesting party based on the processing results of the business authorizing party. The business-related second business request corresponding to the business data is processed, which reduces the risk of business processing (such as financing, etc.), and improves the security and reliability of business processing.
实施例四Embodiment four
如图5所示,本说明书实施例提供一种业务处理方法,该方法的执行主体可为业务授权方的终端设备,业务授权方可是对业务请求方执行或访问某一项或多项不同业务进行授权的一方,具体如金融机构(如银行等)等,业务授权方的终端设备可如手机、平板电脑等移动终端设备,还可如个人计算机等设备,还可是一个独立的服务器或者由多个服务器构成的服务器集群等。该方法具体可包括以下步骤:在步骤S502中,生成针对业务请求方的数字证书和存证信息。As shown in Figure 5, the embodiment of this specification provides a service processing method. The execution subject of the method can be the terminal equipment of the service authorizer, and the service authorizer can execute or access one or more different services to the service requester. The authorizing party, such as financial institutions (such as banks, etc.), the terminal equipment of the business authorizing party can be mobile terminal equipment such as mobile phones, tablet computers, personal computers and other equipment, or an independent server or multiple devices. A server cluster composed of two servers, etc. The method may specifically include the following steps: In step S502, a digital certificate and certificate information for the service requester are generated.
存证信息可包括以下中的一项或多项:数字证书的密钥、数字证书的颁发方信息、数字证书的使用方信息、数字证书与颁发方的关系信息、数字证书与使用方的关系信息。The deposit information may include one or more of the following: digital certificate key, digital certificate issuer information, digital certificate user information, digital certificate and issuer relationship information, digital certificate and user relationship information.
在步骤S504中,基于上述数字证书生成可验证声明。In step S504, a verifiable statement is generated based on the above-mentioned digital certificate.
可验证声明可是用于描述个人、组织等实体所具有的某些属性的一种规范性的信息,可验证声明可实现基于证据的信任,可通过可验证声明,向其他实体证明当前实体的某些属性的信息是可信的。A verifiable statement can be a kind of normative information used to describe certain attributes of individuals, organizations, and other entities. A verifiable statement can realize evidence-based trust, and a verifiable statement can prove to other entities that certain attributes of the current entity The information of these attributes is credible.
在实施中,通过上述步骤S502的处理得到数字证书后,为了确保数字证书的准确性,可基于该数字证书生成一个可验证声明,可将该数字证书的内容写入可验证声明中,或者,可将该数字证书的数据存储于预定的存储区域或存储部件中,并可将该数字证书的存储地址写入到可验证声明中。此外,可验证声明中还可包括签发该可验证声明的业务授权方的相关信息,具体如可用于验证或证明业务授权方的身份的信息等,具体可根据实际情况设定,本说明书实施例对此不做限定。In implementation, after the digital certificate is obtained through the processing of the above step S502, in order to ensure the accuracy of the digital certificate, a verifiable statement can be generated based on the digital certificate, and the content of the digital certificate can be written into the verifiable statement, or, The data of the digital certificate can be stored in a predetermined storage area or storage component, and the storage address of the digital certificate can be written into the verifiable statement. In addition, the verifiable statement may also include relevant information about the business authorizer who issued the verifiable statement, such as information that can be used to verify or prove the identity of the business authorizer, etc., which can be set according to actual conditions. There is no restriction on this.
为了确保可验证声明中的信息的安全性,还可对可验证声明中的某些信息进行加密处理,得到该信息对应的密文,对于可验证声明中剩余的信息可保持明文。In order to ensure the security of the information in the verifiable statement, some information in the verifiable statement can also be encrypted to obtain the ciphertext corresponding to the information, and the remaining information in the verifiable statement can be kept in plaintext.
在步骤S506中,将可验证声明颁发给业务请求方,并向预定区块链节点发送上述存证信息,以使区块链节点基于该存证信息部署第一智能合约,第一智能合约用于根据该存证信息对业务请求方的加签数据进行验证,并在接收到业务请求方的第一业务请求时,调用第一智能合约对该加签数据进行验证,得到验证结果。In step S506, the verifiable statement is issued to the service requester, and the above-mentioned deposit information is sent to the predetermined blockchain node, so that the blockchain node deploys the first smart contract based on the deposit information, and the first smart contract uses The signature data of the service requester is verified according to the deposit information, and when the first service request of the service requester is received, the first smart contract is invoked to verify the signature data, and the verification result is obtained.
第一业务请求可为资源申请请求。The first service request may be a resource application request.
在实施中,通过上述步骤S504的处理得到可验证声明后,可将可验证声明分别颁发给相应的业务请求方。业务请求方得到可验证声明后,可对接收到的可验证声明进行验证,如果验证结果为通过,则可基于该可验证声明获取相应的数字证书,业务请求方可将获取的数字证书进行存储,通过上述方式,业务请求方可基于接收的可验证声明获取并存储数字证书。In implementation, after the verifiable statement is obtained through the processing of the above step S504, the verifiable statement can be issued to the corresponding service requester respectively. After the business requester obtains the verifiable statement, the received verifiable statement can be verified. If the verification result is passed, the corresponding digital certificate can be obtained based on the verifiable statement, and the business requester can store the obtained digital certificate In the above manner, the service requester can obtain and store a digital certificate based on the received verifiable statement.
在步骤S508中,接收区块链节点发送的上述业务数据和加签数据,该业务数据和加签数据是区块链节点在上述验证结果为通过时发送,该加签数据是基于数字证书生成的数据。In step S508, the above-mentioned business data and endorsement data sent by the blockchain node are received. The business data and endorsement data are sent by the blockchain node when the above-mentioned verification result is passed, and the endorsement data is generated based on the digital certificate. The data.
在步骤S510中,对上述加签数据进行二次验证,若验证通过,则基于上述业务数据进行业务处理,得到处理结果,并将该处理结果返回给区块链节点,以使区块链节点基于上述处理结果对业务请求方发起的与上述业务数据对应的业务相关的第二业务请求进行处理。In step S510, the second verification is performed on the above-mentioned signed data. If the verification is passed, business processing is performed based on the above-mentioned business data to obtain the processing result, and the processing result is returned to the blockchain node so that the blockchain node Based on the foregoing processing result, the second service request initiated by the service requester and related to the service corresponding to the foregoing service data is processed.
第二业务请求可为资源支用请求。The second service request may be a resource expenditure request.
本说明书实施例提供一种业务处理方法,通过业务授权方对业务请求方生成的存证信息部署第一智能合约,当接收到业务请求方的第一业务请求时,调用第一智能合约对第一业务请求中的加签数据进行验证,若验证通过,则将业务数据和加签数据发送至业务授权方进行二次验证,这样,业务请求方通过将数据加签上传至区块链平台,区块链平台对该数据进行多方数据处理(如数据比对等),使得处理后的数据具有更高的可 信度,从而提高了从业务授权方获得更高的权限的可能性,通过区块链平台对业务请求方进行金融级的核身与验签,使得业务授权方与业务请求方之间传输的数据更加安全,而且还可通过可验证声明的方式将数字证书颁发给业务请求方,降低了业务处理(如融资等)的风险,使得业务处理安全性和可靠性进一步提高。The embodiment of this specification provides a service processing method. The first smart contract is deployed by the service authorizer to the deposit information generated by the service requester. When the first service request of the service requester is received, the first smart contract is called to the second The signature data in a business request is verified. If the verification is passed, the business data and the signature data are sent to the business authorizing party for secondary verification. In this way, the business requester uploads the data signature to the blockchain platform, The blockchain platform performs multi-party data processing (such as data comparison, etc.) on the data, so that the processed data has higher credibility, thereby increasing the possibility of obtaining higher authority from the business authorized party. The blockchain platform performs financial-level verification and signature verification on the business requester, making the data transmitted between the business authorizing party and the business requesting party more secure, and it can also issue digital certificates to the business requesting party through a verifiable statement. , Which reduces the risk of business processing (such as financing, etc.), and further improves the security and reliability of business processing.
实施例五Embodiment five
如图6所示,本说明书实施例提供一种业务处理方法,该方法的执行主体可为区块链节点和业务授权方的终端设备,该区块链节点和业务授权方的终端设备可是终端设备或服务器,终端设备可如手机、平板电脑等移动终端设备,还可如个人计算机等设备。该服务器可是一个独立的服务器,还可是由多个服务器构成的服务器集群等。该方法具体可包括以下步骤:在步骤S602中,业务授权方生成针对业务请求方的数字证书和存证信息。As shown in Figure 6, the embodiment of this specification provides a service processing method. The execution subject of the method can be a blockchain node and a terminal device of a service authorizer, and the blockchain node and a terminal device of the service authorizer can be a terminal. Device or server, terminal device can be mobile terminal device such as mobile phone, tablet computer, or device such as personal computer. The server can be an independent server, or a server cluster composed of multiple servers. The method may specifically include the following steps: In step S602, the service authorizing party generates a digital certificate and deposit information for the service requesting party.
存证信息可包括以下中的一项或多项:数字证书的密钥、数字证书的颁发方信息、数字证书的使用方信息、数字证书与颁发方的关系信息、数字证书与使用方的关系信息。The deposit information may include one or more of the following: digital certificate key, digital certificate issuer information, digital certificate user information, digital certificate and issuer relationship information, digital certificate and user relationship information.
在步骤S604中,业务授权方基于上述数字证书生成可验证声明,将可验证声明颁发给业务请求方,并向预定区块链节点发送上述存证信息。In step S604, the service authorizer generates a verifiable statement based on the aforementioned digital certificate, issues the verifiable statement to the service requester, and sends the aforementioned certificate information to a predetermined blockchain node.
在步骤S606中,区块链节点基于上述存证信息部署第一智能合约,第一智能合约用于根据该存证信息对业务请求方的加签数据进行验证。In step S606, the blockchain node deploys a first smart contract based on the deposit information, and the first smart contract is used to verify the signature data of the service requester according to the deposit information.
此外,基于上述实施例一中的相关内容,业务授权方可针对业务请求方生成数字证书,针对上述情况,还可通过下述方式处理:区块链节点获取业务授权方针对业务请求方生成的数字证书,该数字证书用于生成加签数据;获取业务请求方的数字身份信息,将上述数字证书与业务请求方的数字身份信息关联存储。In addition, based on the relevant content in the first embodiment above, the service authorizer can generate a digital certificate for the service requester. In view of the above situation, it can also be handled in the following way: the blockchain node obtains the information generated by the service authorizer for the service requester. A digital certificate, which is used to generate signature data; obtain the digital identity information of the service requester, and store the above-mentioned digital certificate in association with the digital identity information of the service requester.
在步骤S608中,区块链节点接收业务请求方的第一业务请求,第一业务请求中包括业务数据和加签数据。In step S608, the blockchain node receives a first service request from the service requester, and the first service request includes service data and endorsement data.
在步骤S610中,区块链节点调用第一智能合约对上述加签数据进行验证,得到验证结果。In step S610, the blockchain node invokes the first smart contract to verify the above-mentioned signature data, and obtain the verification result.
在步骤S612中,若验证结果为通过,则区块链节点将上述业务数据和加签数据发送至业务授权方。In step S612, if the verification result is passed, the blockchain node sends the above-mentioned service data and signature data to the service authorizer.
在实际应用中,除了可对上述加签数据进行验证外,还可对第一业务请求中的其它数据进行验证,以下提供一种可选的处理方式,具体可包括以下步骤S614和步骤S616的处理。In actual applications, in addition to verifying the above-mentioned endorsed data, other data in the first service request can also be verified. An optional processing method is provided below, which specifically includes the following steps S614 and S616 deal with.
在步骤S614中,区块链节点调用第一智能合约对上述业务数据进行真实性验证,得到该业务数据的验证结果。In step S614, the blockchain node invokes the first smart contract to verify the authenticity of the business data, and obtain the verification result of the business data.
在步骤S616中,区块链节点将上述业务数据的验证结果发送至业务授权方。In step S616, the blockchain node sends the verification result of the business data to the business authorizer.
上述步骤S614和步骤S616仅是一种可选的处理流程,在实际应用中上述步骤S614和步骤S616的处理还可设置于步骤S610之前,或者设置于步骤S610与步骤S612之间,或者设置于与步骤S610和步骤S612同步执行,具体可根据实际情况设定。The above steps S614 and S616 are only an optional processing flow. In actual applications, the processing of the above steps S614 and S616 can also be set before step S610, or set between step S610 and step S612, or set in It is executed synchronously with step S610 and step S612, and can be specifically set according to actual conditions.
在步骤S618中,业务授权方对上述加签数据进行二次验证,若验证通过,则基于上述业务数据进行业务处理,得到处理结果,并将该处理结果返回给区块链节点。In step S618, the service authorizing party performs secondary verification on the above-mentioned signed data, and if the verification is passed, the service processing is performed based on the above-mentioned service data to obtain the processing result, and the processing result is returned to the blockchain node.
在步骤S620中,区块链节点将上述处理结果返回业务请求方,并基于该处理结果对业务请求方发起的与上述业务数据对应的业务相关的第二业务请求进行处理。In step S620, the blockchain node returns the foregoing processing result to the service requester, and based on the processing result, processes the second service request initiated by the service requester and related to the service corresponding to the foregoing service data.
在实际应用中,针对上述处理结果中,还可基于该处理结果对业务请求方发起的与上述业务数据对应的业务相关的业务请求进行处理,具体可包括以下内容:根据上述处理结果和与上述业务数据对应的业务的处理规则,生成第二智能合约,将第二智能合约部署于区块链中;当区块链节点接收到业务请求方发起的与上述业务数据对应的业务相关的第二业务请求时,调用第二智能合约对第二业务请求进行处理,并将得到的第二 业务请求的处理结果发送给业务授权方和业务请求方。In practical applications, for the above processing results, the business request initiated by the service requester corresponding to the above business data can also be processed based on the processing results, which may specifically include the following content: according to the above processing results and the above The business processing rules corresponding to the business data are generated, the second smart contract is generated, and the second smart contract is deployed in the blockchain; when the blockchain node receives the second business related to the business corresponding to the above business data initiated by the business requester When a service request is made, the second smart contract is called to process the second service request, and the obtained processing result of the second service request is sent to the service authorizer and the service requester.
本说明书实施例提供一种业务处理方法,通过业务授权方对业务请求方生成的存证信息部署第一智能合约,当接收到业务请求方的第一业务请求时,调用第一智能合约对第一业务请求中的加签数据进行验证,若验证通过,则将业务数据和加签数据发送至业务授权方进行二次验证,这样,业务请求方通过将数据加签上传至区块链平台,区块链平台对该数据进行多方数据处理(如数据比对等),使得处理后的数据具有更高的可信度,从而提高了从业务授权方获得更高的权限的可能性,通过区块链平台对业务请求方进行金融级的核身与验签,使得业务授权方与业务请求方之间传输的数据更加安全,而且还可基于业务授权方的处理结果和与上述业务数据对应的业务的处理规则,生成第二智能合约,通过第二智能合约对业务请求方发起的与业务数据对应的业务相关的第二业务请求进行处理,使得业务处理安全性和可靠性提高。并且,还可通过可验证声明的方式将数字证书颁发给业务请求方,降低了业务处理(如融资等)的风险,使得业务处理安全性和可靠性进一步提高。The embodiment of this specification provides a service processing method. The first smart contract is deployed by the service authorizer to the deposit information generated by the service requester. When the first service request of the service requester is received, the first smart contract is called to the second The signature data in a business request is verified. If the verification is passed, the business data and the signature data are sent to the business authorizing party for secondary verification. In this way, the business requester uploads the data signature to the blockchain platform, The blockchain platform performs multi-party data processing (such as data comparison, etc.) on the data, so that the processed data has higher credibility, thereby increasing the possibility of obtaining higher authority from the business authorized party. The blockchain platform performs financial-level verification and verification of the business requester, making the data transmitted between the business authorizing party and the business requesting party more secure, and it can also be based on the processing results of the business authorizing party and the corresponding business data. The business processing rules generate a second smart contract, and the second business request initiated by the business requester and related to the business data corresponding to the business data is processed through the second smart contract, so that the security and reliability of business processing are improved. In addition, a digital certificate can also be issued to the business requester through a verifiable statement, which reduces the risk of business processing (such as financing, etc.), and further improves the security and reliability of business processing.
实施例六Example Six
本实施例将结合具体的应用场景,对本发明实施例提供的一种业务处理方法进行详细的阐述,相应的应用场景为某业务请求方(如某企业或组织)向金融机构请求融资的应用场景,第一业务请求可为资源的信用额度的申请请求,第二业务请求可为资源支用请求,业务授权方可为金融机构。This embodiment will describe in detail a business processing method provided by the embodiment of the present invention in combination with specific application scenarios. The corresponding application scenario is an application scenario in which a business requester (such as a certain enterprise or organization) requests financing from a financial institution , The first business request can be an application request for a credit line of a resource, the second business request can be a resource expenditure request, and the business authorized party can be a financial institution.
如图7所示,本说明书实施例提供一种业务处理方法,该方法的执行主体可为区块链节点和金融机构的终端设备,该区块链节点和金融机构的终端设备可是终端设备或服务器,终端设备可如手机、平板电脑等移动终端设备,还可如个人计算机等设备。该服务器可是一个独立的服务器,还可是由多个服务器构成的服务器集群。该方法具体可包括以下步骤:在步骤S702中,金融机构生成针对业务请求方的数字证书和存证信息。As shown in Figure 7, the embodiment of this specification provides a business processing method. The execution subject of the method can be a blockchain node and a terminal device of a financial institution. The blockchain node and a terminal device of the financial institution can be a terminal device or Servers and terminal devices can be mobile terminal devices such as mobile phones and tablet computers, or devices such as personal computers. The server can be an independent server or a server cluster composed of multiple servers. The method may specifically include the following steps: In step S702, the financial institution generates a digital certificate and deposit information for the service requester.
存证信息可包括以下中的一项或多项:数字证书的密钥、数字证书的颁发方信息、数字证书的使用方信息、数字证书与颁发方的关系信息、数字证书与使用方的关系信息。The deposit information may include one or more of the following: digital certificate key, digital certificate issuer information, digital certificate user information, digital certificate and issuer relationship information, digital certificate and user relationship information.
在步骤S704中,金融机构基于上述数字证书生成可验证声明,将可验证声明颁发给业务请求方,并向预定区块链节点发送上述存证信息。In step S704, the financial institution generates a verifiable statement based on the above-mentioned digital certificate, issues the verifiable statement to the service requester, and sends the above-mentioned deposit information to a predetermined blockchain node.
在步骤S706中,区块链节点基于上述存证信息部署第一智能合约,第一智能合约用于根据该存证信息对业务请求方的加签数据进行验证。In step S706, the blockchain node deploys a first smart contract based on the deposit information, and the first smart contract is used to verify the signature data of the service requester according to the deposit information.
此外,基于上述实施例一中的相关内容,金融机构可针对业务请求方生成数字证书,针对上述情况,还可通过下述方式处理:区块链节点获取金融机构针对业务请求方生成的数字证书,该数字证书用于生成加签数据;获取业务请求方的数字身份信息,将上述数字证书与业务请求方的数字身份信息关联存储。In addition, based on the relevant content in the first embodiment above, the financial institution can generate a digital certificate for the business requester. In view of the above situation, it can also be handled in the following way: the blockchain node obtains the digital certificate generated by the financial institution for the business requester , The digital certificate is used to generate the signature data; to obtain the digital identity information of the service requester, and store the above-mentioned digital certificate in association with the digital identity information of the service requester.
在步骤S708中,区块链节点接收业务请求方的资源的信用额度的申请请求,该申请请求中包括业务数据和加签数据。In step S708, the blockchain node receives an application request for the credit line of the resource of the service requester, and the application request includes the service data and the endorsement data.
在步骤S710中,区块链节点调用第一智能合约对上述加签数据进行验证,得到验证结果。In step S710, the blockchain node invokes the first smart contract to verify the above-mentioned signature data, and obtain the verification result.
在步骤S712中,若验证结果为通过,则区块链节点将上述业务数据和加签数据发送至金融机构。In step S712, if the verification result is passed, the blockchain node sends the above-mentioned business data and signature data to the financial institution.
在实际应用中,除了可对上述加签数据进行验证外,还可对第一业务请求中的其它数据进行验证,以下提供一种可选的处理方式,具体可包括以下步骤S714和步骤S716的处理。In actual applications, in addition to verifying the above-mentioned endorsed data, other data in the first service request can also be verified. The following provides an optional processing method, which can specifically include the following steps S714 and S716 deal with.
在步骤S714中,区块链节点调用第一智能合约对上述业务数据进行真实性验证,得到该业务数据的验证结果。In step S714, the blockchain node invokes the first smart contract to verify the authenticity of the business data, and obtain the verification result of the business data.
在步骤S716中,区块链节点将上述业务数据的验证结果发送至金融机构。In step S716, the blockchain node sends the verification result of the above-mentioned business data to the financial institution.
在步骤S718中,金融机构对上述加签数据进行二次验证,若验证通过,则基于上述业务数据进行业务处理,得到资源的信用额度的申请结果,并将该申请结果返回给区块链节点。In step S718, the financial institution performs secondary verification on the above-mentioned endorsed data. If the verification is passed, it will perform business processing based on the above-mentioned business data to obtain the result of the application for the credit line of the resource, and return the result of the application to the blockchain node .
在步骤S720中,区块链节点将上述申请结果返回业务请求方,并基于该申请结果对业务请求方发起的资源支用请求进行处理。In step S720, the blockchain node returns the foregoing application result to the service requester, and processes the resource utilization request initiated by the service requester based on the application result.
在实际应用中,针对上述处理结果中,还可基于该申请结果对业务请求方发起的资源支用请求进行处理,具体可包括以下内容:根据上述申请结果和与上述业务数据对应的业务的处理规则,生成第二智能合约,将第二智能合约部署于区块链中;当区块链节点接收到业务请求方发起的资源支用请求时,调用第二智能合约对资源支用请求进行处理,并将得到的资源支用请求的处理结果发送给金融机构和业务请求方。In practical applications, in response to the above processing results, the resource expenditure request initiated by the service requester can also be processed based on the application result, which may specifically include the following: processing according to the above application result and the service corresponding to the above business data Rules, generate a second smart contract, and deploy the second smart contract in the blockchain; when the blockchain node receives a resource utilization request initiated by the business requester, the second smart contract is called to process the resource utilization request , And send the processing result of the obtained resource expenditure request to the financial institution and the business requester.
本说明书实施例提供一种基于业务处理方法,通过业务授权方对业务请求方生成的存证信息部署第一智能合约,当接收到业务请求方的第一业务请求时,调用第一智能合约对第一业务请求中的加签数据进行验证,若验证通过,则将业务数据和加签数据发送至业务授权方进行二次验证,这样,业务请求方通过将数据加签上传至区块链平台,区块链平台对该数据进行多方数据处理(如数据比对等),使得处理后的数据具有更高的可信度,从而提高了从业务授权方获得更高的权限的可能性,通过区块链平台对业务请求方进行金融级的核身与验签,使得业务授权方与业务请求方之间传输的数据更加安全,而且还可基于业务授权方的处理结果和与上述业务数据对应的业务的处理规则,生成第二智能合约,通过第二智能合约对业务请求方发起的与业务数据对应的业务相关的第二业务请求进行处理,使得业务处理安全性和可靠性提高。并且,还可通过可验证声明的方式将数字证书颁发给业务请求方,降低了融资授信的风险,使得业务处理安全性和可靠性进一步提高。The embodiment of this specification provides a business processing method based on the deployment of the first smart contract to the deposit information generated by the business requester by the business authorizer. When the first business request of the business requester is received, the first smart contract is called to The signature data in the first business request is verified. If the verification is passed, the business data and the signature data are sent to the business authorizing party for secondary verification. In this way, the business requester uploads the data to the blockchain platform by the signature , The blockchain platform performs multi-party data processing (such as data comparison, etc.) on the data, so that the processed data has higher credibility, thereby increasing the possibility of obtaining higher authority from the business authorized party. The blockchain platform performs financial-level verification and verification of the business requester, making the data transmitted between the business authorizing party and the business requesting party more secure, and it can also be based on the processing result of the business authorizing party and corresponding to the above-mentioned business data The second smart contract is generated by the business processing rules of, and the second business request related to the business corresponding to the business data initiated by the business requester is processed through the second smart contract, so that the security and reliability of business processing are improved. In addition, the digital certificate can also be issued to the business requester through a verifiable statement, which reduces the risk of financing and credit, and further improves the security and reliability of business processing.
实施例七Example Seven
如图8所示,本说明书实施例提供一种基于区块链的业务处理方法,该方法的执行主体可为第一区块链中的第一区块链节点,第一区块链节点可是终端设备或服务器,终端设备可如手机、平板电脑等移动终端设备,还可如个人计算机等设备。该服务器可是一个独立的服务器,还可是由多个服务器构成的服务器集群等。本说明书实施例涉及的系统架构可如图9示,即上述实施例中的业务授权方可构建区块链(即第二区块链),每个不同的业务授权方可作为该第二区块链中的一个节点。该方法具体可包括以下步骤:在步骤S802中,通过第一区块链和业务授权机构对应的第二区块链的跨链传输通道,从第二区块链中获取第二区块链节点对业务请求方生成的存证信息,基于该存证信息部署第一智能合约,第一智能合约用于根据该存证信息对业务请求方的加签数据进行验证。As shown in Figure 8, the embodiment of this specification provides a blockchain-based business processing method. The execution subject of the method may be the first blockchain node in the first blockchain, and the first blockchain node may be A terminal device or server. The terminal device can be a mobile terminal device such as a mobile phone, a tablet computer, or a device such as a personal computer. The server can be an independent server, or a server cluster composed of multiple servers. The system architecture involved in the embodiments of this specification can be shown in Figure 9, that is, the business authorized party in the above embodiment can construct a blockchain (ie, the second blockchain), and each different business authorized party can be used as the second area. A node in the block chain. The method may specifically include the following steps: in step S802, the second blockchain node is obtained from the second blockchain through the cross-chain transmission channel of the second blockchain corresponding to the first blockchain and the business authorization agency For the deposit information generated by the service requester, a first smart contract is deployed based on the deposit information, and the first smart contract is used to verify the signature data of the service requester according to the deposit information.
存证信息可包括以下中的一项或多项:数字证书的密钥、数字证书的颁发方信息、数字证书的使用方信息、数字证书与颁发方的关系信息、数字证书与使用方的关系信息。业务授权机构可是如上述实施例中的业务授权方所在的机构或组织,业务授权机构对应的第二区块链可如金融机构对应的区块链等。跨链传输通道可是第一区块链与第二区块链进行跨链信息传输所需使用的通道,该跨链传输通道可基于预设的规则或协议进行设置,具体可根据实际情况设定,本说明书实施例对此不做限定。The deposit information may include one or more of the following: digital certificate key, digital certificate issuer information, digital certificate user information, digital certificate and issuer relationship information, digital certificate and user relationship information. The business authorization institution may be an institution or organization where the business authorization party is located in the above embodiment, and the second blockchain corresponding to the business authorization institution may be, for example, the blockchain corresponding to a financial institution. The cross-chain transmission channel is the channel used by the first blockchain and the second blockchain for cross-chain information transmission. The cross-chain transmission channel can be set based on preset rules or protocols, which can be set according to actual conditions. The embodiments of this specification do not limit this.
此外,第二区块链中的第二区块链节点可针对业务请求方生成数字证书,针对上述情况,还可通过下述方式处理:通过上述跨链传输通道,从第二区块链中获取第二区块链节点针对业务请求方生成的数字证书,该数字证书用于生成上述加签数据;获取所述业务请求方的数字身份信息;将该数字证书与业务请求方的数字身份信息关联存储。In addition, the second blockchain node in the second blockchain can generate a digital certificate for the business requester. For the above situation, it can also be handled in the following way: through the above-mentioned cross-chain transmission channel, from the second blockchain Obtain the digital certificate generated by the second blockchain node for the service requester, the digital certificate is used to generate the above-mentioned endorsed data; obtain the digital identity information of the service requester; and the digital certificate and the digital identity information of the service requester Associated storage.
在步骤S804中,接收业务请求方的第一业务请求,第一业务请求中包括业务数据和加签数据。In step S804, a first service request from the service requester is received, where the first service request includes service data and endorsement data.
在步骤S806中,调用第一智能合约对上述加签数据进行验证,得到验证结果。In step S806, the first smart contract is invoked to verify the above-mentioned signed data, and the verification result is obtained.
在步骤S808中,若验证结果为通过,则通过上述跨链传输通道,将上述业务数据和加签数据发送至第二区块链中的第二区块链节点,以使第二区块链节点对该加签数据进行二次验证,验证通过后基于该业务数据进行业务处理,得到处理结果。In step S808, if the verification result is passed, the above-mentioned business data and signature data are sent to the second blockchain node in the second blockchain through the above-mentioned cross-chain transmission channel, so that the second blockchain The node performs secondary verification on the signed data, and after the verification is passed, performs business processing based on the business data to obtain the processing result.
此外,除了可对上述加签数据进行验证外,还可对第一业务请求中的其它数据进行验证,以下提供一种可选的处理方式,具体可包括以下内容:调用第一智能合约对上述业务数据进行真实性验证,得到该业务数据的验证结果;通过上述跨链传输通道,将该业务数据的验证结果发送至第二区块链中的第二区块链节点,以使第二区块链节点对上述加签数据进行二次验证通过后,基于该业务数据的验证结果和该业务数据进行业务处理,得到处理结果。In addition, in addition to verifying the above-mentioned signed data, other data in the first business request can also be verified. The following provides an optional processing method, which may specifically include the following: The authenticity of the business data is verified to obtain the verification result of the business data; the verification result of the business data is sent to the second block chain node in the second block chain through the above-mentioned cross-chain transmission channel, so that the second zone After the block chain node passes the second verification of the above-mentioned signed data, it performs business processing based on the verification result of the business data and the business data to obtain the processing result.
在步骤S810中,通过上述跨链传输通道,接收第二区块链节点返回的处理结果,将该处理结果返回业务请求方,并基于该处理结果对业务请求方发起的与上述业务数据对应的业务相关的第二业务请求进行处理。In step S810, through the above-mentioned cross-chain transmission channel, the processing result returned by the second blockchain node is received, and the processing result is returned to the service requester, and based on the processing result, the data corresponding to the above-mentioned service data initiated by the service requester The business-related second business request is processed.
对于基于上述处理结果对业务请求方发起的与上述业务数据对应的业务相关的第二业务请求进行处理的具体处理方式可多种多样,以下提供一种可选的处理方式,具体可包括以下内容:根据上述处理结果和与上述业务数据对应的业务的处理规则,生成第二智能合约,将第二智能合约部署于第一区块链中;当接收到业务请求方发起的与该业务数据对应的业务相关的第二业务请求时,调用第二智能合约对第二业务请求进行处理,并通过上述跨链传输通道,将得到的第二业务请求的处理结果发送给第二区块链中的第二区块链节点。The specific processing methods for processing the second service request related to the business corresponding to the above-mentioned business data initiated by the service requester based on the above-mentioned processing result can be various, and an optional processing method is provided below, which may specifically include the following content : According to the above processing results and the business processing rules corresponding to the above business data, a second smart contract is generated, and the second smart contract is deployed in the first blockchain; when the business requester initiates the request and corresponds to the business data When the second business request is related to the business, the second smart contract is called to process the second business request, and the processing result of the second business request is sent to the second blockchain through the above-mentioned cross-chain transmission channel The second blockchain node.
此外,在实际应用中,第一业务请求可为资源申请请求,第二业务请求可为资源支用请求。In addition, in actual applications, the first service request may be a resource application request, and the second service request may be a resource expenditure request.
上述步骤S802~步骤S810处理过程可参见上述实施例中相关内容,在此不再赘述。For the processing procedures of the foregoing steps S802 to S810, reference may be made to the relevant content in the foregoing embodiment, and details are not described herein again.
本说明书实施例提供一种基于区块链的业务处理方法,通过第二区块链中的第二区块链节点对业务请求方生成的存证信息部署第一智能合约,当接收到业务请求方的第一业务请求时,调用第一智能合约对第一业务请求中的加签数据进行验证,若验证通过,则通过跨链传输通道将业务数据和加签数据发送至业务授权方进行二次验证,这样,业务请求方通过将数据加签上传至第一区块链平台,第一区块链平台对该数据进行多方数据处理(如数据比对等),使得处理后的数据具有更高的可信度,从而提高了从第二区块链获得更高的权限的可能性,通过第一区块链平台对业务请求方进行金融级的核身与验签,降低了业务处理(如融资等)的风险,使得第二区块链与业务请求方之间传输的数据更加安全。The embodiment of this specification provides a blockchain-based business processing method. The first smart contract is deployed to the deposit information generated by the business requester through the second blockchain node in the second blockchain. When the business request is received When the party’s first business request is made, the first smart contract is called to verify the signature data in the first business request. If the verification is passed, the business data and signature data are sent to the business authorizing party through the cross-chain transmission channel. In this way, the business requester uploads the data to the first blockchain platform by adding signatures, and the first blockchain platform performs multi-party data processing (such as data comparison, etc.) on the data, so that the processed data has more High credibility, thereby increasing the possibility of obtaining higher authority from the second blockchain, and performing financial-level verification and verification of the business requester through the first blockchain platform, reducing business processing ( Such as financing, etc.) make the data transmitted between the second blockchain and the business requester more secure.
实施例八Example eight
如图10所示,本说明书实施例提供一种基于区块链的业务处理方法,该方法的执行主体可为第二区块链中的第二区块链节点,第二区块链节点可是终端设备或服务器,终端设备可如手机、平板电脑等移动终端设备,还可如个人计算机等设备。该服务器可是一个独立的服务器,还可是由多个服务器构成的服务器集群等。该方法具体可包括以下步骤:在步骤S1002中,针对业务请求方的数字证书和存证信息。As shown in FIG. 10, the embodiment of this specification provides a blockchain-based business processing method. The execution subject of the method may be a second blockchain node in the second blockchain, and the second blockchain node may be A terminal device or server. The terminal device can be a mobile terminal device such as a mobile phone, a tablet computer, or a device such as a personal computer. The server can be an independent server, or a server cluster composed of multiple servers. The method may specifically include the following steps: in step S1002, the digital certificate and certificate information of the service requester are directed.
存证信息可包括以下中的一项或多项:数字证书的密钥、数字证书的颁发方信息、数字证书的使用方信息、数字证书与颁发方的关系信息、数字证书与使用方的关系信息。The deposit information may include one or more of the following: digital certificate key, digital certificate issuer information, digital certificate user information, digital certificate and issuer relationship information, digital certificate and user relationship information.
在步骤S1004中,将上述数字证书颁发给业务请求方,并通过第一区块链和第二区块链的跨链传输通道,向第一区块链的第一区块链节点发送该存证信息,以使第一区块链节点基于该存证信息部署第一智能合约,第一智能合约用于根据上述存证信息对业务请求方的加签数据进行验证,并在接收到业务请求方的第一业务请求时,调用第一智能合约对该加签数据进行验证,得到验证结果。In step S1004, the above-mentioned digital certificate is issued to the service requester, and the deposit is sent to the first blockchain node of the first blockchain through the cross-chain transmission channel of the first blockchain and the second blockchain. Certificate information, so that the first blockchain node deploys the first smart contract based on the deposit information. The first smart contract is used to verify the signature data of the business requester according to the deposit information, and when the business request is received When the party’s first business request, the first smart contract is called to verify the signed data, and the verification result is obtained.
此外,将数字证书颁发给业务请求方的处理方式可多种多样,以下提供一种可选 的处理方式,具体可包括以下内容:基于上述数字证书生成可验证声明;将可验证声明颁发给业务请求方。In addition, there are various processing methods for issuing a digital certificate to a business requester. An optional processing method is provided below, which may specifically include the following: generate a verifiable statement based on the above digital certificate; issue a verifiable statement to the business Requester.
在步骤S1006中,通过上述跨链传输通道,接收第一区块链的第一区块链节点发送的上述业务数据和加签数据,该业务数据和加签数据是第一区块链节点在该验证结果为通过时发送,该加签数据是基于上述数字证书生成的数据。In step S1006, through the above-mentioned cross-chain transmission channel, the above-mentioned service data and endorsement data sent by the first blockchain node of the first blockchain are received. The verification result is sent when it is passed, and the signature data is data generated based on the above-mentioned digital certificate.
在步骤S1008中,对上述加签数据进行二次验证,若验证通过,则基于上述业务数据进行业务处理,得到处理结果,并将上述处理结果返回给第一区块链的第一区块链节点,以使第一区块链节点基于该处理结果对业务请求方发起的与该业务数据对应的业务相关的第二业务请求进行处理。In step S1008, perform secondary verification on the above-mentioned signed data. If the verification is passed, perform business processing based on the above-mentioned business data to obtain the processing result, and return the above-mentioned processing result to the first blockchain of the first blockchain Node, so that the first blockchain node processes the second service request related to the service corresponding to the service data initiated by the service requester based on the processing result.
此外,在实际应用中,第一业务请求可为资源申请请求,第二业务请求可为资源支用请求。In addition, in actual applications, the first service request may be a resource application request, and the second service request may be a resource expenditure request.
本说明书实施例提供一种基于区块链的业务处理方法,通过第二区块链中的第二区块链节点对业务请求方生成的存证信息部署第一智能合约,当接收到业务请求方的第一业务请求时,调用第一智能合约对第一业务请求中的加签数据进行验证,若验证通过,则通过跨链传输通道将业务数据和加签数据发送至业务授权方进行二次验证,这样,业务请求方通过将数据加签上传至第一区块链平台,第一区块链平台对该数据进行多方数据处理(如数据比对等),使得处理后的数据具有更高的可信度,从而提高了从第二区块链获得更高的权限的可能性,通过第一区块链平台对业务请求方进行金融级的核身与验签,降低了业务处理(如融资等)的风险,使得第二区块链与业务请求方之间传输的数据更加安全。The embodiment of this specification provides a blockchain-based business processing method. The first smart contract is deployed to the deposit information generated by the business requester through the second blockchain node in the second blockchain. When the business request is received When the party’s first business request is made, the first smart contract is called to verify the signature data in the first business request. If the verification is passed, the business data and signature data are sent to the business authorizing party through the cross-chain transmission channel. In this way, the business requester uploads the data to the first blockchain platform by adding signatures, and the first blockchain platform performs multi-party data processing (such as data comparison, etc.) on the data, so that the processed data has more High credibility, thereby increasing the possibility of obtaining higher authority from the second blockchain, and performing financial-level verification and verification of the business requester through the first blockchain platform, reducing business processing ( Such as financing, etc.) make the data transmitted between the second blockchain and the business requester more secure.
实施例九Example 9
本说明书实施例还提供一种业务处理装置,如图11所示。该业务处理装置包括:合约部署模块1101、请求接收模块1102、第一验证模块1103、数据发送模块1104和处理模块1105,其中:合约部署模块1101,获取业务授权方对业务请求方生成的存证信息,基于所述存证信息部署第一智能合约,所述第一智能合约用于根据所述存证信息对所述业务请求方的加签数据进行验证;请求接收模块1102,接收所述业务请求方的第一业务请求,所述第一业务请求中包括业务数据和加签数据;第一验证模块1103,调用所述第一智能合约对所述加签数据进行验证,得到验证结果;数据发送模块1104,若验证结果为通过,则将所述业务数据和加签数据发送至所述业务授权方,以使所述业务授权方对所述加签数据进行二次验证,验证通过后基于所述业务数据进行业务处理,得到处理结果;处理模块1105,接收所述业务授权方返回的所述处理结果,将所述处理结果返回所述业务请求方,并基于所述处理结果对所述业务请求方发起的与所述业务数据对应的业务相关的第二业务请求进行处理。The embodiment of this specification also provides a service processing device, as shown in FIG. 11. The service processing device includes: a contract deployment module 1101, a request receiving module 1102, a first verification module 1103, a data sending module 1104, and a processing module 1105. Among them: the contract deployment module 1101, which obtains the deposit certificate generated by the service authorizer to the service requester Information, a first smart contract is deployed based on the deposit information, and the first smart contract is used to verify the signature data of the service requester according to the deposit information; request receiving module 1102, receiving the service The first service request of the requesting party, the first service request includes service data and endorsement data; the first verification module 1103, which calls the first smart contract to verify the endorsement data, and obtains the verification result; data The sending module 1104, if the verification result is passed, sends the service data and the endorsed data to the service authorizer, so that the service authorizer can perform a second verification on the endorsed data, and after the verification is passed, it is based on The business data is processed to obtain a processing result; the processing module 1105 receives the processing result returned by the service authorizer, returns the processing result to the service requester, and performs processing on the processing result based on the processing result. The second service request related to the service corresponding to the service data initiated by the service requester is processed.
本说明书实施例中,所述装置还包括:数字证书获取模块,获取所述业务授权方针对所述业务请求方生成的数字证书,所述数字证书用于生成所述加签数据;身份信息获取模块,获取所述业务请求方的数字身份信息;关联模块,将所述数字证书与所述业务请求方的数字身份信息关联存储。In the embodiment of this specification, the device further includes: a digital certificate obtaining module, which obtains a digital certificate generated by the service authorizer for the service requester, the digital certificate is used to generate the signature data; the identity information obtains A module to obtain the digital identity information of the service requester; an association module to store the digital certificate in association with the digital identity information of the service requester.
本说明书实施例中,所述存证信息包括以下中的一项或多项:所述数字证书的密钥、所述数字证书的颁发方信息、所述数字证书的使用方信息、所述数字证书与所述颁发方的关系信息、所述数字证书与所述使用方的关系信息。In the embodiment of this specification, the deposit information includes one or more of the following: the key of the digital certificate, the information of the issuer of the digital certificate, the information of the user of the digital certificate, the digital certificate The relationship information between the certificate and the issuer, and the relationship information between the digital certificate and the user.
本说明书实施例中,所述处理模块1105,包括:合约生成单元,根据所述处理结果和与所述业务数据对应的业务的处理规则,生成第二智能合约,将所述第二智能合约部署于区块链中;处理单元,当接收到所述业务请求方发起的与所述业务数据对应的业务相关的第二业务请求时,调用所述第二智能合约对所述第二业务请求进行处理,并将得到的所述第二业务请求的处理结果发送给所述业务授权方和所述业务请求方。In the embodiment of this specification, the processing module 1105 includes: a contract generation unit, which generates a second smart contract according to the processing result and the processing rules of the business corresponding to the business data, and deploys the second smart contract In the blockchain; the processing unit, when receiving a second service request related to the service corresponding to the service data initiated by the service requester, invokes the second smart contract to perform the second service request Processing, and sending the obtained processing result of the second service request to the service authorizing party and the service requesting party.
本说明书实施例中,所述第一业务请求为资源申请请求,所述第二业务请求为资源支用请求。In the embodiment of this specification, the first service request is a resource application request, and the second service request is a resource expenditure request.
本说明书实施例中,所述装置还包括:第二验证模块,调用所述第一智能合约对所述业务数据进行真实性验证,得到所述业务数据的验证结果;结果发送模块,将所述业务数据的验证结果发送至所述业务授权方,以使所述业务授权方对所述加签数据进行二次验证通过后,基于所述业务数据的验证结果和所述业务数据进行业务处理,得到处理结果。In the embodiment of this specification, the device further includes: a second verification module, which invokes the first smart contract to verify the authenticity of the business data, and obtains the verification result of the business data; the result sending module sends the verification result of the business data; The verification result of the business data is sent to the business authorizing party, so that the business authorizing party performs business processing based on the verification result of the business data and the business data after the second verification of the signed data is passed, Get the processing result.
本说明书实施例提供一种业务处理装置,通过业务授权方对业务请求方生成的存证信息部署第一智能合约,当接收到业务请求方的第一业务请求时,调用第一智能合约对第一业务请求中的加签数据进行验证,若验证通过,则将业务数据和加签数据发送至业务授权方进行二次验证,这样,业务请求方通过将数据加签上传至区块链平台,区块链平台对该数据进行多方数据处理(如数据比对等),使得处理后的数据具有更高的可信度,从而提高了从业务授权方获得更高的权限的可能性,通过区块链平台对业务请求方进行金融级的核身与验签,使得业务授权方与业务请求方之间传输的数据更加安全,而且还可基于业务授权方的处理结果对业务请求方发起的与业务数据对应的业务相关的第二业务请求进行处理,降低了业务处理(如融资等)的风险,使得业务处理安全性和可靠性提高。The embodiment of this specification provides a service processing device. The first smart contract is deployed by the service authorizer to the deposit information generated by the service requester. When the first service request of the service requester is received, the first smart contract is called to the second The signature data in a business request is verified. If the verification is passed, the business data and the signature data are sent to the business authorizing party for secondary verification. In this way, the business requester uploads the data signature to the blockchain platform, The blockchain platform performs multi-party data processing (such as data comparison, etc.) on the data, so that the processed data has higher credibility, thereby increasing the possibility of obtaining higher authority from the business authorized party. The blockchain platform performs financial-level verification and signature verification on the business requester, making the data transmitted between the business authorizing party and the business requesting party more secure, and it can also perform transactions initiated by the business requesting party based on the processing results of the business authorizing party. The business-related second business request corresponding to the business data is processed, which reduces the risk of business processing (such as financing, etc.), and improves the security and reliability of business processing.
实施例十Example ten
本说明书实施例还提供一种业务处理装置,如图12所示。该业务处理装置包括:生成模块1201、发送模块1202、数据接收模块1203和二次验证模块1204,其中:生成模块1201,生成针对业务请求方的数字证书和存证信息;发送模块1202,将所述数字证书颁发给所述业务请求方,并向预定区块链节点发送所述存证信息,以使所述区块链节点基于所述存证信息部署第一智能合约,所述第一智能合约用于根据所述存证信息对所述业务请求方的加签数据进行验证,并在接收到所述业务请求方的第一业务请求时,调用所述第一智能合约对所述加签数据进行验证,得到验证结果;数据接收模块1203,接收所述区块链节点发送的所述业务数据和加签数据,所述业务数据和加签数据是所述区块链节点在所述验证结果为通过时发送,所述加签数据是基于所述数字证书生成的数据;二次验证模块1204,对所述加签数据进行二次验证,若验证通过,则基于所述业务数据进行业务处理,得到处理结果,并将所述处理结果返回给所述区块链节点,以使所述区块链节点基于所述处理结果对所述业务请求方发起的与所述业务数据对应的业务相关的第二业务请求进行处理。The embodiment of this specification also provides a service processing device, as shown in FIG. 12. The service processing device includes: a generating module 1201, a sending module 1202, a data receiving module 1203, and a secondary verification module 1204. The generating module 1201 generates a digital certificate and deposit information for the service requester; The digital certificate is issued to the service requester, and the deposit information is sent to a predetermined blockchain node, so that the blockchain node deploys a first smart contract based on the deposit information, and the first smart The contract is used to verify the endorsement data of the service requester according to the deposit information, and when the first service request of the service requester is received, call the first smart contract to endorse the endorsement The data is verified, and the verification result is obtained; the data receiving module 1203 receives the business data and endorsement data sent by the blockchain node, where the business data and endorsement data are the verification results of the blockchain node The result is sent when the result is passed, the endorsed data is data generated based on the digital certificate; the secondary verification module 1204 performs a second verification on the endorsed data, and if the verification is passed, the business is performed based on the business data Processing to obtain the processing result, and return the processing result to the blockchain node, so that the blockchain node initiates the business corresponding to the business data to the business requester based on the processing result The related second service request is processed.
本说明书实施例中,所述发送模块1202,包括:处理单元,基于所述数字证书生成可验证声明;发送单元,将所述可验证声明颁发给所述业务请求方。In the embodiment of this specification, the sending module 1202 includes: a processing unit that generates a verifiable statement based on the digital certificate; and a sending unit that issues the verifiable statement to the service requester.
本说明书实施例中,所述第一业务请求为资源申请请求,所述第二业务请求为资源支用请求。In the embodiment of this specification, the first service request is a resource application request, and the second service request is a resource expenditure request.
本说明书实施例中,所述存证信息包括以下中的一项或多项:所述数字证书的密钥、所述数字证书的颁发方信息、所述数字证书的使用方信息、所述数字证书与所述颁发方的关系信息、所述数字证书与所述使用方的关系信息。In the embodiment of this specification, the deposit information includes one or more of the following: the key of the digital certificate, the information of the issuer of the digital certificate, the information of the user of the digital certificate, the digital certificate The relationship information between the certificate and the issuer, and the relationship information between the digital certificate and the user.
本说明书实施例提供一种业务处理装置,通过业务授权方对业务请求方生成的存证信息部署第一智能合约,当接收到业务请求方的第一业务请求时,调用第一智能合约对第一业务请求中的加签数据进行验证,若验证通过,则将业务数据和加签数据发送至业务授权方进行二次验证,这样,业务请求方通过将数据加签上传至区块链平台,区块链平台对该数据进行多方数据处理(如数据比对等),使得处理后的数据具有更高的可信度,从而提高了从业务授权方获得更高的权限的可能性,通过区块链平台对业务请求方进行金融级的核身与验签,使得业务授权方与业务请求方之间传输的数据更加安全, 而且还可基于业务授权方的处理结果对业务请求方发起的与业务数据对应的业务相关的第二业务请求进行处理,降低了业务处理(如融资等)的风险,使得业务处理安全性和可靠性提高。The embodiment of this specification provides a service processing device. The first smart contract is deployed by the service authorizer to the deposit information generated by the service requester. When the first service request of the service requester is received, the first smart contract is called to the second The signature data in a business request is verified. If the verification is passed, the business data and the signature data are sent to the business authorizing party for secondary verification. In this way, the business requester uploads the data signature to the blockchain platform, The blockchain platform performs multi-party data processing (such as data comparison, etc.) on the data, so that the processed data has higher credibility, thereby increasing the possibility of obtaining higher authority from the business authorized party. The blockchain platform performs financial-level verification and signature verification on the business requester, making the data transmitted between the business authorizing party and the business requesting party more secure, and it can also perform transactions initiated by the business requesting party based on the processing results of the business authorizing party. The business-related second business request corresponding to the business data is processed, which reduces the risk of business processing (such as financing, etc.), and improves the security and reliability of business processing.
实施例十一Example 11
本说明书实施例还提供一种基于区块链的业务处理装置,如图13所示。该基于区块链的业务处理装置包括:信息获取与合约部署模块1301、请求模块1302、调用模块1303、跨链传输模块1304和处理模块1305,其中:信息获取与合约部署模块1301,通过所述第一区块链和业务授权机构对应的第二区块链的跨链传输通道,从所述第二区块链中获取第二区块链节点对业务请求方生成的存证信息,基于所述存证信息部署第一智能合约,所述第一智能合约用于根据所述存证信息对所述业务请求方的加签数据进行验证;请求模块1302,接收所述业务请求方的第一业务请求,所述第一业务请求中包括业务数据和加签数据;调用模块1303,调用所述第一智能合约对所述加签数据进行验证,得到验证结果;跨链传输模块1304,若验证结果为通过,则通过所述跨链传输通道,将所述业务数据和加签数据发送至所述第二区块链中的所述第二区块链节点,以使所述第二区块链节点对所述加签数据进行二次验证,验证通过后基于所述业务数据进行业务处理,得到处理结果;处理模块1305,通过所述跨链传输通道,接收所述第二区块链节点返回的所述处理结果,将所述处理结果返回所述业务请求方,并基于所述处理结果对所述业务请求方发起的与所述业务数据对应的业务相关的第二业务请求进行处理。The embodiment of this specification also provides a business processing device based on blockchain, as shown in FIG. 13. The blockchain-based business processing device includes: an information acquisition and contract deployment module 1301, a request module 1302, a calling module 1303, a cross-chain transmission module 1304, and a processing module 1305. Among them: an information acquisition and contract deployment module 1301. The first block chain and the cross-chain transmission channel of the second block chain corresponding to the business authorization agency obtain the deposit information generated by the second block chain node to the business requester from the second block chain. The deposit certificate information deploys a first smart contract, and the first smart contract is used to verify the signature data of the service requester according to the deposit information; the request module 1302 receives the first smart contract of the service requester. Service request, the first service request includes service data and endorsement data; call module 1303, call the first smart contract to verify the endorsement data, and obtain the verification result; cross-chain transmission module 1304, if verified If the result is passed, the business data and endorsement data are sent to the second blockchain node in the second blockchain through the cross-chain transmission channel, so that the second block The chain node performs secondary verification on the signed data, and after the verification is passed, performs business processing based on the business data to obtain the processing result; the processing module 1305 receives the second blockchain node through the cross-chain transmission channel For the returned processing result, the processing result is returned to the service requester, and a second service request related to the service corresponding to the service data initiated by the service requester is processed based on the processing result.
本说明书实施例中,所述装置还包括:证书获取模块,通过所述跨链传输通道,从所述第二区块链中获取所述第二区块链节点针对所述业务请求方生成的数字证书,所述数字证书用于生成所述加签数据;身份信息获取模块,获取所述业务请求方的数字身份信息;关联模块,将所述数字证书与所述业务请求方的数字身份信息关联存储。In the embodiment of this specification, the device further includes: a certificate obtaining module, which obtains from the second block chain the information generated by the second block chain node for the service requester through the cross-chain transmission channel A digital certificate, the digital certificate is used to generate the signature data; an identity information acquisition module, which acquires the digital identity information of the service requester; an association module, which combines the digital certificate with the digital identity information of the service requester Associated storage.
本说明书实施例中,所述处理模块1305,包括:合约生成单元,根据所述处理结果和与所述业务数据对应的业务的处理规则,生成第二智能合约,将所述第二智能合约部署于所述第一区块链中;处理单元,当接收到所述业务请求方发起的与所述业务数据对应的业务相关的第二业务请求时,调用所述第二智能合约对所述第二业务请求进行处理,并通过所述跨链传输通道,将得到的所述第二业务请求的处理结果发送给所述第二区块链中的所述第二区块链节点。In the embodiment of this specification, the processing module 1305 includes: a contract generation unit, which generates a second smart contract according to the processing result and the processing rules of the business corresponding to the business data, and deploys the second smart contract In the first blockchain; the processing unit, when receiving a second service request related to the service corresponding to the service data initiated by the service requester, call the second smart contract to the first 2. The service request is processed, and the obtained processing result of the second service request is sent to the second blockchain node in the second blockchain through the cross-chain transmission channel.
本说明书实施例中,所述装置还包括:验证模块,调用所述第一智能合约对所述业务数据进行真实性验证,得到所述业务数据的验证结果;结果发送模块,通过所述跨链传输通道,将所述业务数据的验证结果发送至所述第二区块链中的所述第二区块链节点,以使所述第二区块链节点对所述加签数据进行二次验证通过后,基于所述业务数据的验证结果和所述业务数据进行业务处理,得到处理结果。In the embodiment of this specification, the device further includes: a verification module, which invokes the first smart contract to verify the authenticity of the business data, and obtains the verification result of the business data; and the result sending module passes the cross-chain The transmission channel, which sends the verification result of the business data to the second blockchain node in the second blockchain, so that the second blockchain node performs a secondary operation on the signed data After the verification is passed, business processing is performed based on the verification result of the business data and the business data to obtain the processing result.
本说明书实施例中,所述存证信息包括以下中的一项或多项:所述数字证书的密钥、所述数字证书的颁发方信息、所述数字证书的使用方信息、所述数字证书与所述颁发方的关系信息、所述数字证书与所述使用方的关系信息。In the embodiment of this specification, the deposit information includes one or more of the following: the key of the digital certificate, the information of the issuer of the digital certificate, the information of the user of the digital certificate, the digital certificate The relationship information between the certificate and the issuer, and the relationship information between the digital certificate and the user.
本说明书实施例中,所述第一业务请求为资源申请请求,所述第二业务请求为资源支用请求。In the embodiment of this specification, the first service request is a resource application request, and the second service request is a resource expenditure request.
本说明书实施例提供一种基于区块链的业务处理装置,通过第二区块链中的第二区块链节点对业务请求方生成的存证信息部署第一智能合约,当接收到业务请求方的第一业务请求时,调用第一智能合约对第一业务请求中的加签数据进行验证,若验证通过,则通过跨链传输通道将业务数据和加签数据发送至业务授权方进行二次验证,这样,业务请求方通过将数据加签上传至第一区块链平台,第一区块链平台对该数据进行多方数据处理(如数据比对等),使得处理后的数据具有更高的可信度,从而提高了从第二区块链获得更高的权限的可能性,通过第一区块链平台对业务请求方进行金融级的核身与 验签,降低了业务处理(如融资等)的风险,使得第二区块链与业务请求方之间传输的数据更加安全。The embodiment of this specification provides a blockchain-based business processing device, which deploys the first smart contract to the deposit information generated by the business requester through the second blockchain node in the second blockchain, and when the business request is received When the party’s first business request is made, the first smart contract is called to verify the signature data in the first business request. If the verification is passed, the business data and signature data are sent to the business authorizing party through the cross-chain transmission channel. In this way, the business requester uploads the data to the first blockchain platform by adding signatures, and the first blockchain platform performs multi-party data processing (such as data comparison, etc.) on the data, so that the processed data has more High credibility, thereby increasing the possibility of obtaining higher authority from the second blockchain, and performing financial-level verification and verification of the business requester through the first blockchain platform, reducing business processing ( Such as financing, etc.) make the data transmitted between the second blockchain and the business requester more secure.
实施例十二Embodiment 12
本说明书实施例还提供一种基于区块链的业务处理装置,如图14所示。该基于区块链的业务处理装置包括:证书和信息生成模块1401、证书和信息发送模块1402、数据接收模块1403和验证模块1404,其中:证书和信息生成模块1401,生成针对业务请求方的数字证书和存证信息;证书和信息发送模块1402,将所述数字证书颁发给所述业务请求方,并通过第一区块链和所述第二区块链的跨链传输通道,向所述第一区块链的第一区块链节点发送所述存证信息,以使所述第一区块链节点基于所述存证信息部署第一智能合约,所述第一智能合约用于根据所述存证信息对所述业务请求方的加签数据进行验证,并在接收到所述业务请求方的第一业务请求时,调用所述第一智能合约对所述加签数据进行验证,得到验证结果;数据接收模块1403,通过所述跨链传输通道,接收所述第一区块链的第一区块链节点发送的所述业务数据和加签数据,所述业务数据和加签数据是所述第一区块链节点在所述验证结果为通过时发送,所述加签数据是基于所述数字证书生成的数据;验证模块1404,对所述加签数据进行二次验证,若验证通过,则基于所述业务数据进行业务处理,得到处理结果,并将所述处理结果返回给所述第一区块链的所述第一区块链节点,以使所述第一区块链节点基于所述处理结果对所述业务请求方发起的与所述业务数据对应的业务相关的第二业务请求进行处理。The embodiment of this specification also provides a business processing device based on the blockchain, as shown in FIG. 14. The blockchain-based business processing device includes: a certificate and information generating module 1401, a certificate and information sending module 1402, a data receiving module 1403, and a verification module 1404. Among them: a certificate and information generating module 1401, which generates a number for the business requester Certificate and deposit information; the certificate and information sending module 1402, which issues the digital certificate to the service requester, and sends the digital certificate to the The first blockchain node of the first blockchain sends the deposit information, so that the first blockchain node deploys a first smart contract based on the deposit information, and the first smart contract is used according to The deposit information verifies the endorsed data of the service requester, and upon receiving the first service request of the service requester, calls the first smart contract to verify the endorsed data, Obtain the verification result; the data receiving module 1403, through the cross-chain transmission channel, receives the business data and endorsement data sent by the first blockchain node of the first blockchain, the business data and endorsement The data is sent by the first blockchain node when the verification result is passed, and the endorsement data is data generated based on the digital certificate; the verification module 1404 performs secondary verification on the endorsement data, If the verification is passed, business processing is performed based on the business data to obtain the processing result, and the processing result is returned to the first blockchain node of the first blockchain, so that the first zone The block chain node processes the second service request related to the service corresponding to the service data initiated by the service requester based on the processing result.
本说明书实施例中,所述证书和信息发送模块1402,包括:处理单元,基于所述数字证书生成可验证声明;发送单元,将所述可验证声明颁发给所述业务请求方。In the embodiment of this specification, the certificate and information sending module 1402 includes: a processing unit that generates a verifiable statement based on the digital certificate; and a sending unit that issues the verifiable statement to the service requester.
本说明书实施例中,所述第一业务请求为资源申请请求,所述第二业务请求为资源支用请求。In the embodiment of this specification, the first service request is a resource application request, and the second service request is a resource expenditure request.
本说明书实施例中,所述存证信息包括以下中的一项或多项:所述数字证书的密钥、所述数字证书的颁发方信息、所述数字证书的使用方信息、所述数字证书与所述颁发方的关系信息、所述数字证书与所述使用方的关系信息。In the embodiment of this specification, the deposit information includes one or more of the following: the key of the digital certificate, the information of the issuer of the digital certificate, the information of the user of the digital certificate, the digital certificate The relationship information between the certificate and the issuer, and the relationship information between the digital certificate and the user.
本说明书实施例提供一种基于区块链的业务处理装置,通过第二区块链中的第二区块链节点对业务请求方生成的存证信息部署第一智能合约,当接收到业务请求方的第一业务请求时,调用第一智能合约对第一业务请求中的加签数据进行验证,若验证通过,则通过跨链传输通道将业务数据和加签数据发送至业务授权方进行二次验证,这样,业务请求方通过将数据加签上传至第一区块链平台,第一区块链平台对该数据进行多方数据处理(如数据比对等),使得处理后的数据具有更高的可信度,从而提高了从第二区块链获得更高的权限的可能性,通过第一区块链平台对业务请求方进行金融级的核身与验签,降低了业务处理(如融资等)的风险,使得第二区块链与业务请求方之间传输的数据更加安全。The embodiment of this specification provides a blockchain-based business processing device, which deploys the first smart contract to the deposit information generated by the business requester through the second blockchain node in the second blockchain, and when the business request is received When the party’s first business request is made, the first smart contract is called to verify the signature data in the first business request. If the verification is passed, the business data and signature data are sent to the business authorizing party through the cross-chain transmission channel. In this way, the business requester uploads the data to the first blockchain platform by adding signatures, and the first blockchain platform performs multi-party data processing (such as data comparison, etc.) on the data, so that the processed data has more High credibility, thereby increasing the possibility of obtaining higher authority from the second blockchain, and performing financial-level verification and verification of the business requester through the first blockchain platform, reducing business processing ( Such as financing, etc.) make the data transmitted between the second blockchain and the business requester more secure.
实施例十三Embodiment 13
本说明书实施例还提供一种业务处理设备,如图15所示。所述业务处理设备可为上述实施例提供的业务授权方的终端设备或接入第二区块链的第二区块链节点。The embodiment of this specification also provides a service processing device, as shown in FIG. 15. The service processing device may be the terminal device of the service authorizer provided in the foregoing embodiment or the second blockchain node that accesses the second blockchain.
业务处理设备可因配置或性能不同而产生比较大的差异,可包括一个或一个以上的处理器1501和存储器1502,存储器1502中可存储有一个或一个以上存储应用程序或数据。存储器1502可是短暂存储或持久存储。存储在存储器1502的应用程序可包括一个或一个以上模块(图示未示出),每个模块可包括对业务处理设备中的一系列计算机可执行指令。更进一步地,处理器1501可设置为与存储器1502通信,在业务处理设备上执行存储器1502中的一系列计算机可执行指令。业务处理设备还可包括一个或一个以上电源1503,一个或一个以上有线或无线网络接口1504,一个或一个以上输入输出接口1505,一个或一个以上键盘1506。Business processing equipment may have relatively large differences due to different configurations or performances, and may include one or more processors 1501 and a memory 1502, and the memory 1502 may store one or more storage applications or data. The memory 1502 may be short-term storage or persistent storage. The application program stored in the memory 1502 may include one or more modules (not shown in the figure), and each module may include a series of computer-executable instructions for the business processing device. Furthermore, the processor 1501 may be configured to communicate with the memory 1502, and execute a series of computer-executable instructions in the memory 1502 on the service processing device. The business processing equipment may also include one or more power supplies 1503, one or more wired or wireless network interfaces 1504, one or more input and output interfaces 1505, and one or more keyboards 1506.
具体在本实施例中,业务处理设备包括有存储器,以及一个或一个以上的程序,其中一个或者一个以上程序存储于存储器中,且一个或者一个以上程序可包括一个或一个以上模块,且每个模块可包括对业务处理设备中的一系列计算机可执行指令,且经配置以由一个或者一个以上处理器执行该一个或者一个以上程序包含用于进行以下计算机可执行指令:获取业务授权方对业务请求方生成的存证信息,基于所述存证信息部署第一智能合约,所述第一智能合约用于根据所述存证信息对所述业务请求方的加签数据进行验证;接收所述业务请求方的第一业务请求,所述第一业务请求中包括业务数据和加签数据;调用所述第一智能合约对所述加签数据进行验证,得到验证结果;若验证结果为通过,则将所述业务数据和加签数据发送至所述业务授权方,以使所述业务授权方对所述加签数据进行二次验证,验证通过后基于所述业务数据进行业务处理,得到处理结果;接收所述业务授权方返回的所述处理结果,将所述处理结果返回所述业务请求方,并基于所述处理结果对所述业务请求方发起的与所述业务数据对应的业务相关的第二业务请求进行处理。Specifically, in this embodiment, the business processing device includes a memory and one or more programs, wherein one or more programs are stored in the memory, and one or more programs may include one or more modules, and each The module may include a series of computer-executable instructions for the business processing equipment, and the one or more programs configured to be executed by one or more processors include computer-executable instructions for performing the following: The deposit information generated by the requesting party deploys a first smart contract based on the deposit information, and the first smart contract is used to verify the signature data of the service requester according to the deposit information; receiving the The first business request of the business requester, the first business request includes business data and endorsement data; the first smart contract is called to verify the endorsement data, and the verification result is obtained; if the verification result is passed, Then the service data and the signature data are sent to the service authorizer, so that the service authorizer performs a secondary verification on the signature data, and after the verification is passed, the service processing is performed based on the service data, and the processing is obtained Result; receiving the processing result returned by the service authorizing party, returning the processing result to the service requesting party, and based on the processing result on the service requesting party initiated by the service requesting party related to the business corresponding to the service data The second business request is processed.
本说明书实施例中,还包括:获取所述业务授权方针对所述业务请求方生成的数字证书,所述数字证书用于生成所述加签数据;获取所述业务请求方的数字身份信息;将所述数字证书与所述业务请求方的数字身份信息关联存储。In the embodiment of this specification, it further includes: obtaining a digital certificate generated by the service authorizer for the service requester, where the digital certificate is used to generate the endorsement data; and obtaining the digital identity information of the service requester; The digital certificate is stored in association with the digital identity information of the service requester.
本说明书实施例中,所述存证信息包括以下中的一项或多项:所述数字证书的密钥、所述数字证书的颁发方信息、所述数字证书的使用方信息、所述数字证书与所述颁发方的关系信息、所述数字证书与所述使用方的关系信息。In the embodiment of this specification, the deposit information includes one or more of the following: the key of the digital certificate, the information of the issuer of the digital certificate, the information of the user of the digital certificate, the digital certificate The relationship information between the certificate and the issuer, and the relationship information between the digital certificate and the user.
本说明书实施例中,所述基于所述处理结果对所述业务请求方发起的与所述业务数据对应的业务相关的第二业务请求进行处理,包括:根据所述处理结果和与所述业务数据对应的业务的处理规则,生成第二智能合约,将所述第二智能合约部署于区块链中;当接收到所述业务请求方发起的与所述业务数据对应的业务相关的第二业务请求时,调用所述第二智能合约对所述第二业务请求进行处理,并将得到的所述第二业务请求的处理结果发送给所述业务授权方和所述业务请求方。In the embodiment of the present specification, the processing of a second service request related to the service corresponding to the service data initiated by the service requester based on the processing result includes: according to the processing result and the service The processing rules of the business corresponding to the data are generated, a second smart contract is generated, and the second smart contract is deployed in the blockchain; when the second smart contract initiated by the service requester is received and the second related to the business corresponding to the business data is received When a service request is made, the second smart contract is called to process the second service request, and the obtained processing result of the second service request is sent to the service authorizer and the service requester.
本说明书实施例中,所述第一业务请求为资源申请请求,所述第二业务请求为资源支用请求。In the embodiment of this specification, the first service request is a resource application request, and the second service request is a resource expenditure request.
本说明书实施例中,还包括:调用所述第一智能合约对所述业务数据进行真实性验证,得到所述业务数据的验证结果;将所述业务数据的验证结果发送至所述业务授权方,以使所述业务授权方对所述加签数据进行二次验证通过后,基于所述业务数据的验证结果和所述业务数据进行业务处理,得到处理结果。In the embodiment of this specification, it further includes: invoking the first smart contract to verify the authenticity of the business data to obtain the verification result of the business data; and sending the verification result of the business data to the business authorizing party , So that the service authorizing party performs a service process based on the verification result of the service data and the service data after the second verification of the signed data is passed, and the processing result is obtained.
此外,具体在本实施例中,业务处理设备包括有存储器,以及一个或一个以上的程序,其中一个或者一个以上程序存储于存储器中,且一个或者一个以上程序可包括一个或一个以上模块,且每个模块可包括对业务处理设备中的一系列计算机可执行指令,且经配置以由一个或者一个以上处理器执行该一个或者一个以上程序包含用于进行以下计算机可执行指令:通过所述第一区块链和业务授权机构对应的第二区块链的跨链传输通道,从所述第二区块链中获取第二区块链节点对业务请求方生成的存证信息,基于所述存证信息部署第一智能合约,所述第一智能合约用于根据所述存证信息对所述业务请求方的加签数据进行验证;接收所述业务请求方的第一业务请求,所述第一业务请求中包括业务数据和加签数据;调用所述第一智能合约对所述加签数据进行验证,得到验证结果;若验证结果为通过,则通过所述跨链传输通道,将所述业务数据和加签数据发送至所述第二区块链中的所述第二区块链节点,以使所述第二区块链节点对所述加签数据进行二次验证,验证通过后基于所述业务数据进行业务处理,得到处理结果;通过所述跨链传输通道,接收所述第二区块链节点返回的所述处理结果,将所述处理结果返回所述业务请求方,并基于所述处理结果对所述业务请求方发起的与所述业务数据对应的 业务相关的第二业务请求进行处理。In addition, specifically in this embodiment, the business processing device includes a memory and one or more programs, wherein one or more programs are stored in the memory, and the one or more programs may include one or more modules, and Each module may include a series of computer-executable instructions for the business processing equipment, and the one or more programs configured to be executed by one or more processors include computer-executable instructions for performing the following: A block chain and a cross-chain transmission channel of a second block chain corresponding to a business authorization agency, from the second block chain to obtain the deposit information generated by the second block chain node to the business requester, based on the The deposit information deploys a first smart contract, and the first smart contract is used to verify the signature data of the service requester according to the deposit information; receiving the first service request of the service requester, the The first service request includes service data and endorsement data; the first smart contract is called to verify the endorsement data, and the verification result is obtained; if the verification result is passed, the cross-chain transmission channel is used to transfer all The business data and the signature data are sent to the second blockchain node in the second blockchain, so that the second blockchain node performs a secondary verification on the signature data, and the verification passes Then perform business processing based on the business data to obtain processing results; receive the processing results returned by the second blockchain node through the cross-chain transmission channel, and return the processing results to the business requester, And based on the processing result, the second service request initiated by the service requester and related to the service corresponding to the service data is processed.
本说明书实施例中,还包括:通过所述跨链传输通道,从所述第二区块链中获取所述第二区块链节点针对所述业务请求方生成的数字证书,所述数字证书用于生成所述加签数据;获取所述业务请求方的数字身份信息;将所述数字证书与所述业务请求方的数字身份信息关联存储。In the embodiment of this specification, it further includes: obtaining a digital certificate generated by the second blockchain node for the service requester from the second blockchain through the cross-chain transmission channel, the digital certificate It is used to generate the signature data; obtain the digital identity information of the service requester; and store the digital certificate in association with the digital identity information of the service requester.
本说明书实施例中,所述基于所述处理结果对所述业务请求方发起的与所述业务数据对应的业务相关的第二业务请求进行处理,包括:根据所述处理结果和与所述业务数据对应的业务的处理规则,生成第二智能合约,将所述第二智能合约部署于所述第一区块链中;当接收到所述业务请求方发起的与所述业务数据对应的业务相关的第二业务请求时,调用所述第二智能合约对所述第二业务请求进行处理,并通过所述跨链传输通道,将得到的所述第二业务请求的处理结果发送给所述第二区块链中的所述第二区块链节点。In the embodiment of the present specification, the processing of a second service request related to the service corresponding to the service data initiated by the service requester based on the processing result includes: according to the processing result and the service The processing rules of the business corresponding to the data, generate a second smart contract, and deploy the second smart contract in the first blockchain; when receiving the business initiated by the business requester and corresponding to the business data When a related second business request is made, the second smart contract is called to process the second business request, and the obtained processing result of the second business request is sent to the said cross-chain transmission channel. The second blockchain node in the second blockchain.
本说明书实施例中,还包括:调用所述第一智能合约对所述业务数据进行真实性验证,得到所述业务数据的验证结果;通过所述跨链传输通道,将所述业务数据的验证结果发送至所述第二区块链中的所述第二区块链节点,以使所述第二区块链节点对所述加签数据进行二次验证通过后,基于所述业务数据的验证结果和所述业务数据进行业务处理,得到处理结果。In the embodiment of this specification, it further includes: invoking the first smart contract to verify the authenticity of the business data to obtain the verification result of the business data; and verifying the business data through the cross-chain transmission channel The result is sent to the second blockchain node in the second blockchain, so that after the second blockchain node passes the second verification of the signed data, the data based on the business data Perform business processing on the verification result and the business data to obtain a processing result.
本说明书实施例提供一种业务处理设备,通过业务授权方对业务请求方生成的存证信息部署第一智能合约,当接收到业务请求方的第一业务请求时,调用第一智能合约对第一业务请求中的加签数据进行验证,若验证通过,则将业务数据和加签数据发送至业务授权方进行二次验证,这样,业务请求方通过将数据加签上传至区块链平台,区块链平台对该数据进行多方数据处理(如数据比对等),使得处理后的数据具有更高的可信度,从而提高了从业务授权方获得更高的权限的可能性,通过区块链平台对业务请求方进行金融级的核身与验签,使得业务授权方与业务请求方之间传输的数据更加安全,而且还可基于业务授权方的处理结果对业务请求方发起的与业务数据对应的业务相关的第二业务请求进行处理,降低了业务处理(如融资等)的风险,使得业务处理安全性和可靠性提高。The embodiment of this specification provides a service processing device. The first smart contract is deployed by the service authorizer to the deposit information generated by the service requester. When the first service request of the service requester is received, the first smart contract is called to the second The signature data in a business request is verified. If the verification is passed, the business data and the signature data are sent to the business authorizing party for secondary verification. In this way, the business requester uploads the data signature to the blockchain platform, The blockchain platform performs multi-party data processing (such as data comparison, etc.) on the data, so that the processed data has higher credibility, thereby increasing the possibility of obtaining higher authority from the business authorized party. The blockchain platform performs financial-level verification and signature verification on the business requester, making the data transmitted between the business authorizing party and the business requesting party more secure, and it can also perform transactions initiated by the business requesting party based on the processing results of the business authorizing party. The business-related second business request corresponding to the business data is processed, which reduces the risk of business processing (such as financing, etc.), and improves the security and reliability of business processing.
实施例十四Embodiment Fourteen
本说明书实施例还提供一种业务处理设备,如图16所示。所述业务处理设备可为上述实施例提供的区块链节点或接入第一区块链的第一区块链节点。The embodiment of this specification also provides a service processing device, as shown in FIG. 16. The service processing device may be the blockchain node provided in the above embodiment or the first blockchain node connected to the first blockchain.
业务处理设备可因配置或性能不同而产生比较大的差异,可包括一个或一个以上的处理器1601和存储器1602,存储器1602中可存储有一个或一个以上存储应用程序或数据。存储器1602可是短暂存储或持久存储。存储在存储器1602的应用程序可包括一个或一个以上模块(图示未示出),每个模块可包括对业务处理设备中的一系列计算机可执行指令。更进一步地,处理器1601可设置为与存储器1602通信,在业务处理设备上执行存储器1602中的一系列计算机可执行指令。业务处理设备还可包括一个或一个以上电源1603,一个或一个以上有线或无线网络接口1604,一个或一个以上输入输出接口1605,一个或一个以上键盘1606。Business processing equipment may have relatively large differences due to different configurations or performances, and may include one or more processors 1601 and a memory 1602, and the memory 1602 may store one or more storage applications or data. The memory 1602 may be short-term storage or persistent storage. The application program stored in the memory 1602 may include one or more modules (not shown in the figure), and each module may include a series of computer-executable instructions for the business processing device. Furthermore, the processor 1601 may be configured to communicate with the memory 1602, and execute a series of computer-executable instructions in the memory 1602 on the service processing device. The business processing equipment may also include one or more power supplies 1603, one or more wired or wireless network interfaces 1604, one or more input and output interfaces 1605, and one or more keyboards 1606.
具体在本实施例中,业务处理设备包括有存储器,以及一个或一个以上的程序,其中一个或者一个以上程序存储于存储器中,且一个或者一个以上程序可包括一个或一个以上模块,且每个模块可包括对业务处理设备中的一系列计算机可执行指令,且经配置以由一个或者一个以上处理器执行该一个或者一个以上程序包含用于进行以下计算机可执行指令:生成针对业务请求方的数字证书和存证信息;将所述数字证书颁发给所述业务请求方,并向预定区块链节点发送所述存证信息,以使所述区块链节点基于所述存证信息部署第一智能合约,所述第一智能合约用于根据所述存证信息对所述业务请求 方的加签数据进行验证,并在接收到所述业务请求方的第一业务请求时,调用所述第一智能合约对所述加签数据进行验证,得到验证结果;接收所述区块链节点发送的所述业务数据和加签数据,所述业务数据和加签数据是所述区块链节点在所述验证结果为通过时发送,所述加签数据是基于所述数字证书生成的数据;对所述加签数据进行二次验证,若验证通过,则基于所述业务数据进行业务处理,得到处理结果,并将所述处理结果返回给所述区块链节点,以使所述区块链节点基于所述处理结果对所述业务请求方发起的与所述业务数据对应的业务相关的第二业务请求进行处理。Specifically, in this embodiment, the business processing device includes a memory and one or more programs, wherein one or more programs are stored in the memory, and one or more programs may include one or more modules, and each The module may include a series of computer-executable instructions for the business processing equipment, and the one or more programs configured to be executed by one or more processors include computer-executable instructions for performing the following: Digital certificate and deposit information; the digital certificate is issued to the service requester, and the deposit information is sent to a predetermined blockchain node, so that the blockchain node deploys the first based on the deposit information A smart contract, the first smart contract is used to verify the signature data of the service requester according to the deposit information, and when the first service request of the service requester is received, call the The first smart contract verifies the signature data to obtain a verification result; receives the business data and signature data sent by the blockchain node, where the business data and signature data are the blockchain node Send when the verification result is passed, the endorsement data is data generated based on the digital certificate; perform secondary verification on the endorsement data, and if the verification is passed, perform business processing based on the business data, Obtain the processing result, and return the processing result to the blockchain node, so that the blockchain node initiates the service-related business corresponding to the service data to the service requester based on the processing result The second service request is processed.
本说明书实施例中,所述将所述数字证书颁发给所述业务请求方,包括:基于所述数字证书生成可验证声明;将所述可验证声明颁发给所述业务请求方。In the embodiment of this specification, the issuance of the digital certificate to the service requester includes: generating a verifiable statement based on the digital certificate; and issuing the verifiable statement to the service requester.
本说明书实施例中,所述第一业务请求为资源申请请求,所述第二业务请求为资源支用请求。In the embodiment of this specification, the first service request is a resource application request, and the second service request is a resource expenditure request.
本说明书实施例中,所述存证信息包括以下中的一项或多项:所述数字证书的密钥、所述数字证书的颁发方信息、所述数字证书的使用方信息、所述数字证书与所述颁发方的关系信息、所述数字证书与所述使用方的关系信息。In the embodiment of this specification, the deposit information includes one or more of the following: the key of the digital certificate, the information of the issuer of the digital certificate, the information of the user of the digital certificate, the digital certificate The relationship information between the certificate and the issuer, and the relationship information between the digital certificate and the user.
此外,具体在本实施例中,业务处理设备包括有存储器,以及一个或一个以上的程序,其中一个或者一个以上程序存储于存储器中,且一个或者一个以上程序可包括一个或一个以上模块,且每个模块可包括对业务处理设备中的一系列计算机可执行指令,且经配置以由一个或者一个以上处理器执行该一个或者一个以上程序包含用于进行以下计算机可执行指令:生成针对业务请求方的数字证书和存证信息;将所述数字证书颁发给所述业务请求方,并通过第一区块链和所述第二区块链的跨链传输通道,向所述第一区块链的第一区块链节点发送所述存证信息,以使所述第一区块链节点基于所述存证信息部署第一智能合约,所述第一智能合约用于根据所述存证信息对所述业务请求方的加签数据进行验证,并在接收到所述业务请求方的第一业务请求时,调用所述第一智能合约对所述加签数据进行验证,得到验证结果;通过所述跨链传输通道,接收所述第一区块链的第一区块链节点发送的所述业务数据和加签数据,所述业务数据和加签数据是所述第一区块链节点在所述验证结果为通过时发送,所述加签数据是基于所述数字证书生成的数据;对所述加签数据进行二次验证,若验证通过,则基于所述业务数据进行业务处理,得到处理结果,并将所述处理结果返回给所述第一区块链的所述第一区块链节点,以使所述第一区块链节点基于所述处理结果对所述业务请求方发起的与所述业务数据对应的业务相关的第二业务请求进行处理。In addition, specifically in this embodiment, the business processing device includes a memory and one or more programs, wherein one or more programs are stored in the memory, and the one or more programs may include one or more modules, and Each module may include a series of computer-executable instructions for the business processing equipment, and the one or more programs configured to be executed by one or more processors include computer-executable instructions for performing the following: generate a business request Party’s digital certificate and deposit information; issue the digital certificate to the service requester, and send it to the first block through the cross-chain transmission channel of the first block chain and the second block chain The first blockchain node of the chain sends the deposit certificate information so that the first blockchain node deploys a first smart contract based on the deposit information, and the first smart contract is used to The information verifies the endorsed data of the service requester, and when the first service request of the service requester is received, the first smart contract is invoked to verify the endorsed data, and the verification result is obtained; Through the cross-chain transmission channel, receive the service data and endorsement data sent by the first blockchain node of the first blockchain, where the service data and endorsement data are the first blockchain The node sends when the verification result is passed, and the endorsed data is data generated based on the digital certificate; performs secondary verification on the endorsed data, and if the verification passes, then performs business processing based on the business data , Obtain the processing result, and return the processing result to the first blockchain node of the first blockchain, so that the first blockchain node makes a request for the business based on the processing result The second service request related to the service corresponding to the service data initiated by the party is processed.
本说明书实施例中,所述将所述数字证书颁发给所述业务请求方,包括:基于所述数字证书生成可验证声明;将所述可验证声明颁发给所述业务请求方。In the embodiment of this specification, the issuance of the digital certificate to the service requester includes: generating a verifiable statement based on the digital certificate; and issuing the verifiable statement to the service requester.
本说明书实施例提供一种业务处理设备,通过业务授权方对业务请求方生成的存证信息部署第一智能合约,当接收到业务请求方的第一业务请求时,调用第一智能合约对第一业务请求中的加签数据进行验证,若验证通过,则将业务数据和加签数据发送至业务授权方进行二次验证,这样,业务请求方通过将数据加签上传至区块链平台,区块链平台对该数据进行多方数据处理(如数据比对等),使得处理后的数据具有更高的可信度,从而提高了从业务授权方获得更高的权限的可能性,通过区块链平台对业务请求方进行金融级的核身与验签,使得业务授权方与业务请求方之间传输的数据更加安全,而且还可基于业务授权方的处理结果对业务请求方发起的与业务数据对应的业务相关的第二业务请求进行处理,降低了业务处理(如融资等)的风险,使得业务处理安全性和可靠性提高。The embodiment of this specification provides a service processing device. The first smart contract is deployed by the service authorizer to the deposit information generated by the service requester. When the first service request of the service requester is received, the first smart contract is called to the second The signature data in a business request is verified. If the verification is passed, the business data and the signature data are sent to the business authorizing party for secondary verification. In this way, the business requester uploads the data signature to the blockchain platform, The blockchain platform performs multi-party data processing (such as data comparison, etc.) on the data, so that the processed data has higher credibility, thereby increasing the possibility of obtaining higher authority from the business authorized party. The blockchain platform performs financial-level verification and signature verification on the business requester, making the data transmitted between the business authorizing party and the business requesting party more secure, and it can also perform transactions initiated by the business requesting party based on the processing results of the business authorizing party. The business-related second business request corresponding to the business data is processed, which reduces the risk of business processing (such as financing, etc.), and improves the security and reliability of business processing.
实施例十五Example 15
本说明书实施例还提供一种业务处理系统,如图2或9所示。所述业务处理系统可包括区块链节点、业务授权方和业务请求方,区块链节点、业务授权方和业务请求方 所需执行的具体处理过程可参见上述实施例一~实施例六中的相关内容,在此不再赘述。The embodiment of this specification also provides a service processing system, as shown in FIG. 2 or 9. The business processing system may include a blockchain node, a business authorizer, and a business requester. For the specific processing procedures that the blockchain node, business authorizer and business requester need to perform, please refer to the first embodiment to the sixth embodiment above. The related content of, I won’t repeat it here.
除了上述构成方式外,所述业务处理系统还可通过以下方式构建,即所述业务处理系统可包括第一区块链(其中可包括第一区块链节点)、第二区块链(其中可包括第二区块链节点(即业务授权方))和业务请求方,第一区块链中第一区块链节点、第二区块链中第二区块链节点和业务请求方所需执行的具体处理过程可参见上述实施例七~实施例八中的相关内容,在此不再赘述。In addition to the above configuration, the business processing system can also be constructed in the following manner, that is, the business processing system can include a first blockchain (which may include a first blockchain node), a second blockchain (wherein It can include the second blockchain node (that is, the business authorizer) and the business requester, the first blockchain node in the first blockchain, the second blockchain node in the second blockchain, and the business requester. For the specific processing to be performed, please refer to the related content in the seventh embodiment to the eighth embodiment above, which will not be repeated here.
本说明书实施例提供一种业务处理系统,通过业务授权方对业务请求方生成的存证信息部署第一智能合约,当接收到业务请求方的第一业务请求时,调用第一智能合约对第一业务请求中的加签数据进行验证,若验证通过,则将业务数据和加签数据发送至业务授权方进行二次验证,这样,业务请求方通过将数据加签上传至区块链平台,区块链平台对该数据进行多方数据处理(如数据比对等),使得处理后的数据具有更高的可信度,从而提高了从业务授权方获得更高的权限的可能性,通过区块链平台对业务请求方进行金融级的核身与验签,使得业务授权方与业务请求方之间传输的数据更加安全,而且还可基于业务授权方的处理结果对业务请求方发起的与业务数据对应的业务相关的第二业务请求进行处理,降低了业务处理(如融资等)的风险,使得业务处理安全性和可靠性提高。The embodiment of this specification provides a business processing system. The first smart contract is deployed by the business authorizer to the deposit information generated by the business requester. When the first business request of the business requester is received, the first smart contract is called to the second The signature data in a business request is verified. If the verification is passed, the business data and the signature data are sent to the business authorizing party for secondary verification. In this way, the business requester uploads the data signature to the blockchain platform, The blockchain platform performs multi-party data processing (such as data comparison, etc.) on the data, so that the processed data has higher credibility, thereby increasing the possibility of obtaining higher authority from the business authorized party. The blockchain platform performs financial-level verification and signature verification on the business requester, making the data transmitted between the business authorizing party and the business requesting party more secure, and it can also perform transactions initiated by the business requesting party based on the processing results of the business authorizing party. The business-related second business request corresponding to the business data is processed, which reduces the risk of business processing (such as financing, etc.), and improves the security and reliability of business processing.
上述对本说明书特定实施例进行了描述。其它实施例在所附权利要求书的范围内。在一些情况下,在权利要求书中记载的动作或步骤可按照不同于实施例中的顺序来执行并且仍然可实现期望的结果。另外,在附图中描绘的过程不一定要求示出的特定顺序或者连续顺序才能实现期望的结果。在某些实施方式中,多任务处理和并行处理也是可的或者可能是有利的。The foregoing describes specific embodiments of this specification. Other embodiments are within the scope of the appended claims. In some cases, the actions or steps described in the claims can be performed in a different order than in the embodiments and still achieve desired results. In addition, the processes depicted in the drawings do not necessarily require the specific order or sequential order shown in order to achieve the desired results. In some embodiments, multitasking and parallel processing are also possible or may be advantageous.
在20世纪90年代,对于一个技术的改进可很明显地区分是硬件上的改进(例如,对二极管、晶体管、开关等电路结构的改进)还是软件上的改进(对于方法流程的改进)。然而,随着技术的发展,当今的很多方法流程的改进已经可视为硬件电路结构的直接改进。设计人员几乎都通过将改进的方法流程编程到硬件电路中来得到相应的硬件电路结构。因此,不能说一个方法流程的改进就不能用硬件实体模块来实现。例如,可编程逻辑器件(Programmable Logic Device,PLD)(例如现场可编程门阵列(Field Programmable Gate Array,FPGA))就是这样一种集成电路,其逻辑功能由用户对器件编程来确定。由设计人员自行编程来把一个数字系统“集成”在一片PLD上,而不需要请芯片制造厂商来设计和制作专用的集成电路芯片。而且,如今,取代手工地制作集成电路芯片,这种编程也多半改用“逻辑编译器(logic compiler)”软件来实现,它与程序开发撰写时所用的软件编译器相类似,而要编译之前的原始代码也得用特定的编程语言来撰写,此称之为硬件描述语言(Hardware Description Language,HDL),而HDL也并非仅有一种,而是有许多种,如ABEL(Advanced Boolean Expression Language)、AHDL(Altera Hardware Description Language)、Confluence、CUPL(Cornell University Programming Language)、HDCal、JHDL(Java Hardware Description Language)、Lava、Lola、MyHDL、PALASM、RHDL(Ruby Hardware Description Language)等,目前最普遍使用的是VHDL(Very-High-Speed Integrated Circuit Hardware Description Language)与Verilog。本领域技术人员也应该清楚,只需要将方法流程用上述几种硬件描述语言稍作逻辑编程并编程到集成电路中,就可很容易得到实现该逻辑方法流程的硬件电路。In the 1990s, the improvement of a technology can be clearly distinguished between hardware improvements (for example, improvements in circuit structures such as diodes, transistors, switches, etc.) and software improvements (improvements in method flow). However, with the development of technology, the improvement of many methods and procedures of today can be regarded as the direct improvement of the hardware circuit structure. Designers almost always get the corresponding hardware circuit structure by programming the improved method flow into the hardware circuit. Therefore, it cannot be said that the improvement of a method flow cannot be realized by the hardware entity module. For example, a Programmable Logic Device (PLD) (such as a Field Programmable Gate Array (FPGA)) is such an integrated circuit whose logic function is determined by the user's programming of the device. It is programmed by the designer to "integrate" a digital system on a piece of PLD, without having to ask the chip manufacturer to design and produce a dedicated integrated circuit chip. Moreover, nowadays, instead of manually making integrated circuit chips, this kind of programming is mostly realized by using "logic compiler" software, which is similar to the software compiler used in program development and writing, but before compilation The original code must also be written in a specific programming language, which is called Hardware Description Language (HDL), and there is not only one type of HDL, but many types, such as ABEL (Advanced Boolean Expression Language) , AHDL (Altera Hardware Description Language), Confluence, CUPL (Cornell University Programming Language), HDCal, JHDL (Java Hardware Description Language), Lava, Lola, MyHDL, PALASM, RHDL (Ruby Hardware Description), etc., currently most commonly used It is VHDL (Very-High-Speed Integrated Circuit Hardware Description Language) and Verilog. It should also be clear to those skilled in the art that just a little bit of logic programming of the method flow in the above-mentioned hardware description languages and programming into an integrated circuit can easily obtain the hardware circuit that implements the logic method flow.
控制器可按任何适当的方式实现,例如,控制器可采取例如微处理器或处理器以及存储可由该(微)处理器执行的计算机可读程序代码(例如软件或固件)的计算机可读介质、逻辑门、开关、专用集成电路(Application Specific Integrated Circuit,ASIC)、可编程逻辑控制器和嵌入微控制器的形式,控制器的例子包括但不限于以下微控制器:ARC 625D、Atmel AT91SAM、Microchip PIC18F26K20以及Silicone Labs C8051F320, 存储器控制器还可被实现为存储器的控制逻辑的一部分。本领域技术人员也知道,除了以纯计算机可读程序代码方式实现控制器以外,完全可通过将方法步骤进行逻辑编程来使得控制器以逻辑门、开关、专用集成电路、可编程逻辑控制器和嵌入微控制器等的形式来实现相同功能。因此这种控制器可被认为是一种硬件部件,而对其内包括的用于实现各种功能的装置也可视为硬件部件内的结构。或者甚至,可将用于实现各种功能的装置视为既可是实现方法的软件模块又可是硬件部件内的结构。The controller can be implemented in any suitable manner. For example, the controller can take the form of, for example, a microprocessor or a processor and a computer-readable medium storing computer-readable program codes (such as software or firmware) executable by the (micro)processor. , Logic gates, switches, application specific integrated circuits (ASICs), programmable logic controllers and embedded microcontrollers. Examples of controllers include but are not limited to the following microcontrollers: ARC 625D, Atmel AT91SAM, Microchip PIC18F26K20 and Silicon Labs C8051F320, the memory controller can also be implemented as a part of the control logic of the memory. Those skilled in the art also know that, in addition to implementing the controller in a purely computer-readable program code manner, it is completely possible to program the method steps to make the controller use logic gates, switches, application specific integrated circuits, programmable logic controllers, and embedded logic. The same function can be realized in the form of a microcontroller or the like. Therefore, such a controller can be regarded as a hardware component, and the devices included in it for realizing various functions can also be regarded as a structure within the hardware component. Or even, the device for realizing various functions can be regarded as both a software module for realizing the method and a structure within a hardware component.
上述实施例阐明的系统、装置、模块或单元,具体可由计算机芯片或实体实现,或者由具有某种功能的产品来实现。一种典型的实现设备为计算机。具体的,计算机例如可为个人计算机、膝上型计算机、蜂窝电话、相机电话、智能电话、个人数字助理、媒体播放器、导航设备、电子邮件设备、游戏控制台、平板计算机、可穿戴设备或者这些设备中的任何设备的组合。The systems, devices, modules, or units explained in the foregoing embodiments may be specifically implemented by computer chips or entities, or by products with certain functions. A typical implementation device is a computer. Specifically, the computer may be, for example, a personal computer, a laptop computer, a cell phone, a camera phone, a smart phone, a personal digital assistant, a media player, a navigation device, an email device, a game console, a tablet computer, a wearable device, or Any combination of these devices.
为了描述的方便,描述以上装置时以功能分为各种单元分别描述。当然,在实施本说明书一个或多个实施例时可把各单元的功能在同一个或多个软件和/或硬件中实现。For the convenience of description, when describing the above device, the functions are divided into various units and described separately. Of course, when implementing one or more embodiments of this specification, the functions of each unit may be implemented in the same one or more software and/or hardware.
本领域内的技术人员应明白,本说明书的实施例可提供为方法、系统、或计算机程序产品。因此,本说明书一个或多个实施例可采用完全硬件实施例、完全软件实施例、或结合软件和硬件方面的实施例的形式。而且,本说明书一个或多个实施例可采用在一个或多个其中包含有计算机可用程序代码的计算机可用存储介质(包括但不限于磁盘存储器、CD-ROM、光学存储器等)上实施的计算机程序产品的形式。Those skilled in the art should understand that the embodiments of this specification can be provided as a method, a system, or a computer program product. Therefore, one or more embodiments of this specification may adopt the form of a complete hardware embodiment, a complete software embodiment, or an embodiment combining software and hardware. Moreover, one or more embodiments of this specification may adopt a computer program implemented on one or more computer-usable storage media (including but not limited to disk storage, CD-ROM, optical storage, etc.) containing computer-usable program codes. The form of the product.
本说明书的实施例是参照根据本说明书实施例的方法、设备(系统)、和计算机程序产品的流程图和/或方框图来描述的。应理解可由计算机程序指令实现流程图和/或方框图中的每一流程和/或方框、以及流程图和/或方框图中的流程和/或方框的结合。可提供这些计算机程序指令到通用计算机、专用计算机、嵌入式处理机或其他可编程业务处理设备的处理器以产生一个机器,使得通过计算机或其他可编程业务处理设备的处理器执行的指令产生用于实现在流程图一个流程或多个流程和/或方框图一个方框或多个方框中指定的功能的装置。The embodiments of this specification are described with reference to flowcharts and/or block diagrams of methods, devices (systems), and computer program products according to the embodiments of this specification. It should be understood that each process and/or block in the flowchart and/or block diagram, and the combination of processes and/or blocks in the flowchart and/or block diagram can be implemented by computer program instructions. These computer program instructions can be provided to the processors of general-purpose computers, special-purpose computers, embedded processors, or other programmable service processing equipment to generate a machine, so that the instructions executed by the processor of the computer or other programmable service processing equipment are generated It is a device that implements the functions specified in one process or multiple processes in the flowchart and/or one block or multiple blocks in the block diagram.
这些计算机程序指令也可存储在能引导计算机或其他可编程业务处理设备以特定方式工作的计算机可读存储器中,使得存储在该计算机可读存储器中的指令产生包括指令装置的制造品,该指令装置实现在流程图一个流程或多个流程和/或方框图一个方框或多个方框中指定的功能。These computer program instructions can also be stored in a computer-readable memory that can guide a computer or other programmable business processing equipment to work in a specific manner, so that the instructions stored in the computer-readable memory produce an article of manufacture including the instruction device. The device implements the functions specified in one process or multiple processes in the flowchart and/or one block or multiple blocks in the block diagram.
这些计算机程序指令也可装载到计算机或其他可编程业务处理设备上,使得在计算机或其他可编程设备上执行一系列操作步骤以产生计算机实现的处理,从而在计算机或其他可编程设备上执行的指令提供用于实现在流程图一个流程或多个流程和/或方框图一个方框或多个方框中指定的功能的步骤。These computer program instructions can also be loaded on a computer or other programmable service processing equipment, so that a series of operation steps are executed on the computer or other programmable equipment to produce computer-implemented processing, so as to execute on the computer or other programmable equipment. The instructions provide steps for implementing functions specified in a flow or multiple flows in the flowchart and/or a block or multiple blocks in the block diagram.
在一个典型的配置中,计算设备包括一个或多个处理器(CPU)、输入/输出接口、网络接口和内存。内存可能包括计算机可读介质中的非永久性存储器,随机存取存储器(RAM)和/或非易失性内存等形式,如只读存储器(ROM)或闪存(flash RAM)。内存是计算机可读介质的示例。计算机可读介质包括永久性和非永久性、可移动和非可移动媒体可由任何方法或技术来实现信息存储。信息可是计算机可读指令、数据结构、程序的模块或其他数据。计算机的存储介质的例子包括,但不限于相变内存(PRAM)、静态随机存取存储器(SRAM)、动态随机存取存储器(DRAM)、其他类型的随机存取存储器(RAM)、只读存储器(ROM)、电可擦除可编程只读存储器(EEPROM)、快闪记忆体或其他内存技术、只读光盘只读存储器(CD-ROM)、数字多功能光盘(DVD)或其他光学存储、磁盒式磁带,磁带磁磁盘存储或其他磁性存储设备或任何其他非传输介质,可用于存储可被计算设备访问的信息。按照本文中的界定,计算机可读介质不包括暂存电脑可读媒体(transitory media),如调制的数据信号和载波。In a typical configuration, the computing device includes one or more processors (CPU), input/output interfaces, network interfaces, and memory. The memory may include non-permanent memory in a computer-readable medium, random access memory (RAM) and/or non-volatile memory, such as read-only memory (ROM) or flash memory (flash RAM). Memory is an example of computer readable media. Computer-readable media includes permanent and non-permanent, removable and non-removable media, and information storage can be realized by any method or technology. Information can be computer-readable instructions, data structures, program modules, or other data. Examples of computer storage media include, but are not limited to, phase change memory (PRAM), static random access memory (SRAM), dynamic random access memory (DRAM), other types of random access memory (RAM), read-only memory (ROM), electrically erasable programmable read-only memory (EEPROM), flash memory or other memory technology, CD-ROM, digital versatile disc (DVD) or other optical storage, Magnetic cassettes, magnetic tape magnetic disk storage or other magnetic storage devices or any other non-transmission media can be used to store information that can be accessed by computing devices. According to the definition in this article, computer-readable media does not include transitory media, such as modulated data signals and carrier waves.
术语“包括”、“包含”或者其任何其他变体意在涵盖非排他性的包含,从而使得包括一系列要素的过程、方法、商品或者设备不仅包括那些要素,而且还包括没有明确列出的其他要素,或者是还包括为这种过程、方法、商品或者设备所固有的要素。在没有更多限制的情况下,由语句“包括一个……”限定的要素,并不排除在包括所述要素的过程、方法、商品或者设备中还存在另外的相同要素。The terms "include", "include", or any other variants thereof are intended to cover non-exclusive inclusion, so that a process, method, product, or device that includes a series of elements includes not only those elements, but also other elements that are not explicitly listed. Elements, or also include elements inherent to such processes, methods, commodities, or equipment. If there are no more restrictions, the element defined by the sentence "including a..." does not exclude the existence of other identical elements in the process, method, commodity or equipment that includes the element.
本领域技术人员应明白,本说明书的实施例可提供为方法、系统或计算机程序产品。因此,本说明书一个或多个实施例可采用完全硬件实施例、完全软件实施例或结合软件和硬件方面的实施例的形式。而且,本说明书一个或多个实施例可采用在一个或多个其中包含有计算机可用程序代码的计算机可用存储介质(包括但不限于磁盘存储器、CD-ROM、光学存储器等)上实施的计算机程序产品的形式。Those skilled in the art should understand that the embodiments of this specification can be provided as a method, a system or a computer program product. Therefore, one or more embodiments of this specification may adopt the form of a complete hardware embodiment, a complete software embodiment, or an embodiment combining software and hardware. Moreover, one or more embodiments of this specification may adopt a computer program implemented on one or more computer-usable storage media (including but not limited to disk storage, CD-ROM, optical storage, etc.) containing computer-usable program codes. The form of the product.
本说明书一个或多个实施例可在由计算机执行的计算机可执行指令的一般上下文中描述,例如程序模块。一般地,程序模块包括执行特定任务或实现特定抽象数据类型的例程、程序、对象、组件、数据结构等等。也可在分布式计算环境中实践本说明书一个或多个实施例,在这些分布式计算环境中,由通过通信网络而被连接的远程处理设备来执行任务。在分布式计算环境中,程序模块可位于包括存储设备在内的本地和远程计算机存储介质中。One or more embodiments of this specification may be described in the general context of computer-executable instructions executed by a computer, such as program modules. Generally, program modules include routines, programs, objects, components, data structures, etc. that perform specific tasks or implement specific abstract data types. One or more embodiments of this specification can also be practiced in distributed computing environments. In these distributed computing environments, tasks are performed by remote processing devices connected through a communication network. In a distributed computing environment, program modules can be located in local and remote computer storage media including storage devices.
本说明书中的各个实施例均采用递进的方式描述,各个实施例之间相同相似的部分互相参见即可,每个实施例重点说明的都是与其他实施例的不同之处。尤其,对于系统实施例而言,由于其基本相似于方法实施例,所以描述的比较简单,相关之处参见方法实施例的部分说明即可。The various embodiments in this specification are described in a progressive manner, and the same or similar parts between the various embodiments can be referred to each other, and each embodiment focuses on the differences from other embodiments. In particular, as for the system embodiment, since it is basically similar to the method embodiment, the description is relatively simple, and for related parts, please refer to the part of the description of the method embodiment.
以上所述仅为本说明书的实施例而已,并不用于限制本说明书。对于本领域技术人员来说,本说明书可有各种更改和变化。凡在本说明书的精神和原理之内所作的任何修改、等同替换、改进等,均应包含在本说明书的权利要求范围之内。The above descriptions are only examples of this specification, and are not intended to limit this specification. For those skilled in the art, this specification can have various modifications and changes. Any modification, equivalent replacement, improvement, etc. made within the spirit and principle of this specification shall be included in the scope of the claims of this specification.

Claims (23)

  1. 一种业务处理方法,应用于区块链节点,包括:A business processing method applied to blockchain nodes, including:
    获取业务授权方对业务请求方生成的存证信息,基于所述存证信息部署第一智能合约,所述第一智能合约用于根据所述存证信息对所述业务请求方的加签数据进行验证;Obtain the deposit information generated by the service authorizer to the service requester, and deploy a first smart contract based on the deposit information, and the first smart contract is used to sign data of the service requester according to the deposit information authenticating;
    接收所述业务请求方的第一业务请求,所述第一业务请求中包括业务数据和加签数据;Receiving a first service request from the service requester, where the first service request includes service data and endorsement data;
    调用所述第一智能合约对所述加签数据进行验证,得到验证结果;Invoke the first smart contract to verify the signed data, and obtain a verification result;
    若验证结果为通过,则将所述业务数据和加签数据发送至所述业务授权方,以使所述业务授权方对所述加签数据进行二次验证,验证通过后基于所述业务数据进行业务处理,得到处理结果;If the verification result is passed, the service data and the endorsement data are sent to the service authorizer so that the service authorizer can perform a second verification on the endorsement data, and the verification is based on the service data after passing the verification. Perform business processing and get the processing result;
    接收所述业务授权方返回的所述处理结果,将所述处理结果返回所述业务请求方,并基于所述处理结果对所述业务请求方发起的与所述业务数据对应的业务相关的第二业务请求进行处理。Receiving the processing result returned by the service authorizer, returning the processing result to the service requesting party, and sending the service requesting party initiated by the service requesting party based on the processing result and related to the business data corresponding to the service data 2. The business request is processed.
  2. 根据权利要求1所述的方法,还包括:The method according to claim 1, further comprising:
    获取所述业务授权方针对所述业务请求方生成的数字证书,所述数字证书用于生成所述加签数据;Acquiring a digital certificate generated by the service authorizer for the service requester, where the digital certificate is used to generate the endorsement data;
    获取所述业务请求方的数字身份信息;Acquiring the digital identity information of the service requester;
    将所述数字证书与所述业务请求方的数字身份信息关联存储。The digital certificate is stored in association with the digital identity information of the service requester.
  3. 根据权利要求2所述的方法,所述存证信息包括以下中的一项或多项:所述数字证书的密钥、所述数字证书的颁发方信息、所述数字证书的使用方信息、所述数字证书与所述颁发方的关系信息、所述数字证书与所述使用方的关系信息。The method according to claim 2, wherein the deposit information includes one or more of the following: a key of the digital certificate, information of an issuer of the digital certificate, information of a user of the digital certificate, The relationship information between the digital certificate and the issuer, and the relationship information between the digital certificate and the user.
  4. 根据权利要求1-3中任一项所述的方法,所述基于所述处理结果对所述业务请求方发起的与所述业务数据对应的业务相关的第二业务请求进行处理,包括:The method according to any one of claims 1 to 3, wherein the processing of a second service request related to the service corresponding to the service data initiated by the service requester based on the processing result comprises:
    根据所述处理结果和与所述业务数据对应的业务的处理规则,生成第二智能合约,将所述第二智能合约部署于区块链中;Generating a second smart contract according to the processing result and the processing rules of the business corresponding to the business data, and deploying the second smart contract in the blockchain;
    当接收到所述业务请求方发起的与所述业务数据对应的业务相关的第二业务请求时,调用所述第二智能合约对所述第二业务请求进行处理,并将得到的所述第二业务请求的处理结果发送给所述业务授权方和所述业务请求方。When a second service request related to the service corresponding to the service data initiated by the service requester is received, the second smart contract is called to process the second service request, and the obtained first service request is processed. 2. The processing result of the service request is sent to the service authorizing party and the service requesting party.
  5. 根据权利要求4所述的方法,所述第一业务请求为资源申请请求,所述第二业务请求为资源支用请求。The method according to claim 4, wherein the first service request is a resource application request, and the second service request is a resource expenditure request.
  6. 根据权利要求5所述的方法,还包括:The method according to claim 5, further comprising:
    调用所述第一智能合约对所述业务数据进行真实性验证,得到所述业务数据的验证结果;Calling the first smart contract to verify the authenticity of the business data, and obtain a verification result of the business data;
    将所述业务数据的验证结果发送至所述业务授权方,以使所述业务授权方对所述加签数据进行二次验证通过后,基于所述业务数据的验证结果和所述业务数据进行业务处理,得到处理结果。The verification result of the business data is sent to the business authorizing party, so that after the business authorizing party has passed the second verification of the signed data, the verification result of the business data and the business data are performed Business processing, get processing results.
  7. 一种业务处理方法,应用于业务授权方,包括:A business processing method applied to a business authorizing party, including:
    生成针对业务请求方的数字证书和存证信息;Generate digital certificates and deposit information for the business requester;
    将所述数字证书颁发给所述业务请求方,并向预定区块链节点发送所述存证信息,以使所述区块链节点基于所述存证信息部署第一智能合约,所述第一智能合约用于根据所述存证信息对所述业务请求方的加签数据进行验证,并在接收到所述业务请求方的第一业务请求时,调用所述第一智能合约对所述加签数据进行验证,得到验证结果;The digital certificate is issued to the service requester, and the deposit certificate information is sent to a predetermined blockchain node, so that the blockchain node deploys a first smart contract based on the deposit information. A smart contract is used to verify the signature data of the service requester according to the deposit information, and when the first service request of the service requester is received, call the first smart contract to Sign the data for verification, and get the verification result;
    接收所述区块链节点发送的所述业务数据和加签数据,所述业务数据和加签数据是所述区块链节点在所述验证结果为通过时发送,所述加签数据是基于所述数字证书生成的数据;Receive the business data and endorsement data sent by the blockchain node, where the business data and endorsement data are sent by the blockchain node when the verification result is passed, and the endorsement data is based on Data generated by the digital certificate;
    对所述加签数据进行二次验证,若验证通过,则基于所述业务数据进行业务处理,得到处理结果,并将所述处理结果返回给所述区块链节点,以使所述区块链节点基于所述处理结果对所述业务请求方发起的与所述业务数据对应的业务相关的第二业务请求进行处理。Perform secondary verification on the signed data. If the verification is passed, perform business processing based on the business data to obtain the processing result, and return the processing result to the blockchain node so that the block The chain node processes the second service request related to the service corresponding to the service data initiated by the service requester based on the processing result.
  8. 根据权利要求7所述的方法,所述将所述数字证书颁发给所述业务请求方,包括:The method according to claim 7, wherein said issuing said digital certificate to said service requester comprises:
    基于所述数字证书生成可验证声明;Generate a verifiable statement based on the digital certificate;
    将所述可验证声明颁发给所述业务请求方。The verifiable statement is issued to the service requester.
  9. 根据权利要求7所述的方法,所述第一业务请求为资源申请请求,所述第二业务请求为资源支用请求。The method according to claim 7, wherein the first service request is a resource application request, and the second service request is a resource expenditure request.
  10. 根据权利要求7所述的方法,所述存证信息包括以下中的一项或多项:所述数字证书的密钥、所述数字证书的颁发方信息、所述数字证书的使用方信息、所述数字证书与所述颁发方的关系信息、所述数字证书与所述使用方的关系信息。The method according to claim 7, wherein the deposit information includes one or more of the following: the key of the digital certificate, the information of the issuer of the digital certificate, the information of the user of the digital certificate, The relationship information between the digital certificate and the issuer, and the relationship information between the digital certificate and the user.
  11. 一种基于区块链的业务处理方法,应用于接入第一区块链的第一区块链节点,包括:A blockchain-based business processing method, applied to the first blockchain node connected to the first blockchain, includes:
    通过所述第一区块链和业务授权机构对应的第二区块链的跨链传输通道,从所述第二区块链中获取第二区块链节点对业务请求方生成的存证信息,基于所述存证信息部署第一智能合约,所述第一智能合约用于根据所述存证信息对所述业务请求方的加签数据进行验证;Through the cross-chain transmission channel of the second block chain corresponding to the first block chain and the business authorization agency, the deposit information generated by the second block chain node to the business requester is obtained from the second block chain Deploying a first smart contract based on the deposit information, the first smart contract being used to verify the signature data of the service requester according to the deposit information;
    接收所述业务请求方的第一业务请求,所述第一业务请求中包括业务数据和加签数据;Receiving a first service request from the service requester, where the first service request includes service data and endorsement data;
    调用所述第一智能合约对所述加签数据进行验证,得到验证结果;Invoke the first smart contract to verify the signed data, and obtain a verification result;
    若验证结果为通过,则通过所述跨链传输通道,将所述业务数据和加签数据发送至所述第二区块链中的所述第二区块链节点,以使所述第二区块链节点对所述加签数据进行二次验证,验证通过后基于所述业务数据进行业务处理,得到处理结果;If the verification result is passed, the business data and endorsement data are sent to the second blockchain node in the second blockchain through the cross-chain transmission channel, so that the second The blockchain node performs secondary verification on the signed data, and after the verification is passed, performs business processing based on the business data to obtain a processing result;
    通过所述跨链传输通道,接收所述第二区块链节点返回的所述处理结果,将所述处理结果返回所述业务请求方,并基于所述处理结果对所述业务请求方发起的与所述业务数据对应的业务相关的第二业务请求进行处理。Through the cross-chain transmission channel, the processing result returned by the second blockchain node is received, the processing result is returned to the service requester, and the processing result is initiated to the service requester based on the processing result. The second service request related to the service corresponding to the service data is processed.
  12. 根据权利要求11所述的方法,所述方法还包括:The method according to claim 11, the method further comprising:
    通过所述跨链传输通道,从所述第二区块链中获取所述第二区块链节点针对所述业务请求方生成的数字证书,所述数字证书用于生成所述加签数据;Obtaining, from the second blockchain, a digital certificate generated by the second blockchain node for the service requester through the cross-chain transmission channel, where the digital certificate is used to generate the endorsement data;
    获取所述业务请求方的数字身份信息;Acquiring the digital identity information of the service requester;
    将所述数字证书与所述业务请求方的数字身份信息关联存储。The digital certificate is stored in association with the digital identity information of the service requester.
  13. 根据权利要求11或12所述的方法,所述基于所述处理结果对所述业务请求方发起的与所述业务数据对应的业务相关的第二业务请求进行处理,包括:The method according to claim 11 or 12, wherein the processing of a second service request related to the service corresponding to the service data initiated by the service requester based on the processing result includes:
    根据所述处理结果和与所述业务数据对应的业务的处理规则,生成第二智能合约,将所述第二智能合约部署于所述第一区块链中;Generating a second smart contract according to the processing result and the processing rules of the business corresponding to the business data, and deploying the second smart contract in the first blockchain;
    当接收到所述业务请求方发起的与所述业务数据对应的业务相关的第二业务请求时,调用所述第二智能合约对所述第二业务请求进行处理,并通过所述跨链传输通道将得到的所述第二业务请求的处理结果发送给所述第二区块链中的所述第二区块链节点。When a second service request related to the service corresponding to the service data initiated by the service requester is received, the second smart contract is invoked to process the second service request, and is transmitted through the cross-chain The channel sends the obtained processing result of the second service request to the second blockchain node in the second blockchain.
  14. 根据权利要求13所述的方法,所述方法还包括:The method according to claim 13, further comprising:
    调用所述第一智能合约对所述业务数据进行真实性验证,得到所述业务数据的验证结果;Calling the first smart contract to verify the authenticity of the business data, and obtain a verification result of the business data;
    通过所述跨链传输通道,将所述业务数据的验证结果发送至所述第二区块链中的所述第二区块链节点,以使所述第二区块链节点对所述加签数据进行二次验证通过后,基 于所述业务数据的验证结果和所述业务数据进行业务处理,得到处理结果。The verification result of the business data is sent to the second blockchain node in the second blockchain through the cross-chain transmission channel, so that the second blockchain node can add After the second verification of the signed data is passed, business processing is performed based on the verification result of the business data and the business data, and the processing result is obtained.
  15. 一种基于区块链的业务处理方法,应用于接入第二区块链的第二区块链节点,包括:A blockchain-based business processing method, applied to a second blockchain node connected to a second blockchain, includes:
    生成针对业务请求方的数字证书和存证信息;Generate digital certificates and deposit information for the business requester;
    将所述数字证书颁发给所述业务请求方,并通过第一区块链和所述第二区块链的跨链传输通道,向所述第一区块链的第一区块链节点发送所述存证信息,以使所述第一区块链节点基于所述存证信息部署第一智能合约,所述第一智能合约用于根据所述存证信息对所述业务请求方的加签数据进行验证,并在接收到所述业务请求方的第一业务请求时,调用所述第一智能合约对所述加签数据进行验证,得到验证结果;Issue the digital certificate to the service requester, and send it to the first blockchain node of the first blockchain through the cross-chain transmission channel of the first blockchain and the second blockchain The deposit information, so that the first blockchain node deploys a first smart contract based on the deposit information, and the first smart contract is used to add to the service requester according to the deposit information To verify the signed data, and upon receiving the first service request of the service requester, call the first smart contract to verify the signed data, and obtain a verification result;
    通过所述跨链传输通道,接收所述第一区块链的第一区块链节点发送的所述业务数据和加签数据,所述业务数据和加签数据是所述第一区块链节点在所述验证结果为通过时发送,所述加签数据是基于所述数字证书生成的数据;Through the cross-chain transmission channel, receive the service data and endorsement data sent by the first blockchain node of the first blockchain, where the service data and endorsement data are the first blockchain The node sends when the verification result is passed, and the endorsement data is data generated based on the digital certificate;
    对所述加签数据进行二次验证,若验证通过,则基于所述业务数据进行业务处理,得到处理结果,并将所述处理结果返回给所述第一区块链的所述第一区块链节点,以使所述第一区块链节点基于所述处理结果对所述业务请求方发起的与所述业务数据对应的业务相关的第二业务请求进行处理。Perform secondary verification on the signed data. If the verification is passed, perform business processing based on the business data to obtain the processing result, and return the processing result to the first zone of the first blockchain A block chain node, so that the first block chain node processes, based on the processing result, a second service request related to the service corresponding to the service data initiated by the service requester.
  16. 一种业务处理装置,包括:A business processing device, including:
    合约部署模块,获取业务授权方对业务请求方生成的存证信息,基于所述存证信息部署第一智能合约,所述第一智能合约用于根据所述存证信息对所述业务请求方的加签数据进行验证;The contract deployment module obtains the deposit information generated by the business authorizing party to the service requester, and deploys a first smart contract based on the deposit information, and the first smart contract is used to make a request to the service requester according to the deposit information To verify the endorsement data;
    请求接收模块,接收所述业务请求方的第一业务请求,所述第一业务请求中包括业务数据和加签数据;A request receiving module to receive a first service request from the service requester, where the first service request includes service data and endorsement data;
    第一验证模块,调用所述第一智能合约对所述加签数据进行验证,得到验证结果;The first verification module calls the first smart contract to verify the signed data, and obtain a verification result;
    数据发送模块,若验证结果为通过,则将所述业务数据和加签数据发送至所述业务授权方,以使所述业务授权方对所述加签数据进行二次验证,验证通过后基于所述业务数据进行业务处理,得到处理结果;The data sending module, if the verification result is passed, sends the service data and the endorsed data to the service authorizing party, so that the service authorizing party performs secondary verification on the endorsed data, and the verification is based on The business data is processed to obtain a processing result;
    处理模块,接收所述业务授权方返回的所述处理结果,将所述处理结果返回所述业务请求方,并基于所述处理结果对所述业务请求方发起的与所述业务数据对应的业务相关的第二业务请求进行处理。The processing module receives the processing result returned by the service authorizer, returns the processing result to the service requester, and initiates the service corresponding to the service data to the service requester based on the processing result The related second service request is processed.
  17. 一种业务处理装置,包括:A business processing device, including:
    生成模块,生成针对业务请求方的数字证书和存证信息;The generation module generates the digital certificate and certificate information for the business requester;
    发送模块,将所述数字证书颁发给所述业务请求方,并向预定区块链节点发送所述存证信息,以使所述区块链节点基于所述存证信息部署第一智能合约,所述第一智能合约用于根据所述存证信息对所述业务请求方的加签数据进行验证,并在接收到所述业务请求方的第一业务请求时,调用所述第一智能合约对所述加签数据进行验证,得到验证结果;A sending module, which issues the digital certificate to the service requester, and sends the deposit information to a predetermined blockchain node, so that the blockchain node deploys the first smart contract based on the deposit information, The first smart contract is used to verify the signature data of the service requester according to the deposit information, and when the first service request of the service requester is received, call the first smart contract Verifying the endorsed data to obtain a verification result;
    数据接收模块,接收所述区块链节点发送的所述业务数据和加签数据,所述业务数据和加签数据是所述区块链节点在所述验证结果为通过时发送,所述加签数据是基于所述数字证书生成的数据;The data receiving module receives the business data and endorsement data sent by the blockchain node. The business data and endorsement data are sent by the blockchain node when the verification result is passed. The signature data is data generated based on the digital certificate;
    二次验证模块,对所述加签数据进行二次验证,若验证通过,则基于所述业务数据进行业务处理,得到处理结果,并将所述处理结果返回给所述区块链节点,以使所述区块链节点基于所述处理结果对所述业务请求方发起的与所述业务数据对应的业务相关的第二业务请求进行处理。The secondary verification module performs secondary verification on the signed data. If the verification is passed, business processing is performed based on the business data to obtain the processing result, and the processing result is returned to the blockchain node to The blockchain node is enabled to process a second service request related to the service corresponding to the service data initiated by the service requester based on the processing result.
  18. 一种基于区块链的业务处理装置,包括:A business processing device based on blockchain, including:
    信息获取与合约部署模块,通过所述第一区块链和业务授权机构对应的第二区块链 的跨链传输通道,从所述第二区块链中获取第二区块链节点对业务请求方生成的存证信息,基于所述存证信息部署第一智能合约,所述第一智能合约用于根据所述存证信息对所述业务请求方的加签数据进行验证;The information acquisition and contract deployment module obtains the second blockchain node pair business from the second blockchain through the cross-chain transmission channel of the second blockchain corresponding to the first blockchain and the business authorization agency The deposit certificate information generated by the requester deploys a first smart contract based on the deposit information, and the first smart contract is used to verify the signature data of the service requester according to the deposit information;
    请求模块,接收所述业务请求方的第一业务请求,所述第一业务请求中包括业务数据和加签数据;The request module receives a first service request from the service requester, where the first service request includes service data and endorsement data;
    调用模块,调用所述第一智能合约对所述加签数据进行验证,得到验证结果;A calling module, calling the first smart contract to verify the signed data, and obtain a verification result;
    跨链传输模块,若验证结果为通过,则通过所述跨链传输通道将所述业务数据和加签数据发送至所述第二区块链中的所述第二区块链节点,以使所述第二区块链节点对所述加签数据进行二次验证,验证通过后基于所述业务数据进行业务处理,得到处理结果;The cross-chain transmission module, if the verification result is passed, sends the business data and endorsement data to the second blockchain node in the second blockchain through the cross-chain transmission channel, so that The second blockchain node performs secondary verification on the signed data, and after the verification is passed, performs business processing based on the business data to obtain a processing result;
    处理模块,通过所述跨链传输通道,接收所述第二区块链节点返回的所述处理结果,将所述处理结果返回所述业务请求方,并基于所述处理结果对所述业务请求方发起的与所述业务数据对应的业务相关的第二业务请求进行处理。The processing module receives the processing result returned by the second blockchain node through the cross-chain transmission channel, returns the processing result to the service requester, and requests the service based on the processing result The second service request related to the service corresponding to the service data initiated by the party is processed.
  19. 一种基于区块链的业务处理装置,包括:A business processing device based on blockchain, including:
    证书和信息生成模块,生成针对业务请求方的数字证书和存证信息;The certificate and information generation module, which generates the digital certificate and certificate information for the business requester;
    证书和信息发送模块,将所述数字证书颁发给所述业务请求方,并通过第一区块链和所述第二区块链的跨链传输通道,向所述第一区块链的第一区块链节点发送所述存证信息,以使所述第一区块链节点基于所述存证信息部署第一智能合约,所述第一智能合约用于根据所述存证信息对所述业务请求方的加签数据进行验证,并在接收到所述业务请求方的第一业务请求时,调用所述第一智能合约对所述加签数据进行验证,得到验证结果;The certificate and information sending module issues the digital certificate to the service requester, and sends the digital certificate to the first block chain through the cross-chain transmission channel of the first block chain and the second block chain. A blockchain node sends the deposit information so that the first blockchain node deploys a first smart contract based on the deposit information, and the first smart contract is used to check the deposit information according to the deposit information. Verifying the endorsement data of the service requester, and when receiving the first service request of the service requester, call the first smart contract to verify the endorsement data, and obtain a verification result;
    数据接收模块,通过所述跨链传输通道,接收所述第一区块链的第一区块链节点发送的所述业务数据和加签数据,所述业务数据和加签数据是所述第一区块链节点在所述验证结果为通过时发送,所述加签数据是基于所述数字证书生成的数据;The data receiving module receives the service data and endorsement data sent by the first blockchain node of the first blockchain through the cross-chain transmission channel, where the service data and endorsement data are the first A blockchain node sends when the verification result is passed, and the endorsement data is data generated based on the digital certificate;
    验证模块,对所述加签数据进行二次验证,若验证通过,则基于所述业务数据进行业务处理,得到处理结果,并将所述处理结果返回给所述第一区块链的所述第一区块链节点,以使所述第一区块链节点基于所述处理结果对所述业务请求方发起的与所述业务数据对应的业务相关的第二业务请求进行处理。The verification module performs secondary verification on the signed data. If the verification is passed, perform business processing based on the business data to obtain the processing result, and return the processing result to the first blockchain A first blockchain node, so that the first blockchain node processes, based on the processing result, a second service request related to the service corresponding to the service data initiated by the service requester.
  20. 一种业务处理设备,包括处理器及被安排成存储计算机可执行指令的存储器,所述可执行指令在被执行时使所述处理器:A business processing device includes a processor and a memory arranged to store computer-executable instructions, which when executed, cause the processor to:
    获取业务授权方对业务请求方生成的存证信息,基于所述存证信息部署第一智能合约,所述第一智能合约用于根据所述存证信息对所述业务请求方的加签数据进行验证;Obtain the deposit information generated by the service authorizer to the service requester, and deploy a first smart contract based on the deposit information, and the first smart contract is used to sign data of the service requester according to the deposit information authenticating;
    接收所述业务请求方的第一业务请求,所述第一业务请求中包括业务数据和加签数据;Receiving a first service request from the service requester, where the first service request includes service data and endorsement data;
    调用所述第一智能合约对所述加签数据进行验证,得到验证结果;Invoke the first smart contract to verify the signed data, and obtain a verification result;
    若验证结果为通过,则将所述业务数据和加签数据发送至所述业务授权方,以使所述业务授权方对所述加签数据进行二次验证,验证通过后基于所述业务数据进行业务处理,得到处理结果;If the verification result is passed, the service data and the endorsement data are sent to the service authorizer so that the service authorizer can perform a second verification on the endorsement data, and the verification is based on the service data after passing the verification. Perform business processing and get the processing result;
    接收所述业务授权方返回的所述处理结果,将所述处理结果返回所述业务请求方,并基于所述处理结果对所述业务请求方发起的与所述业务数据对应的业务相关的第二业务请求进行处理。Receiving the processing result returned by the service authorizer, returning the processing result to the service requesting party, and sending the service requesting party initiated by the service requesting party based on the processing result and related to the business data corresponding to the service data 2. The business request is processed.
  21. 一种业务处理设备,包括处理器及被安排成存储计算机可执行指令的存储器,所述可执行指令在被执行时使所述处理器:A business processing device includes a processor and a memory arranged to store computer-executable instructions, which when executed, cause the processor to:
    生成针对业务请求方的数字证书和存证信息;Generate digital certificates and deposit information for the business requester;
    将所述数字证书颁发给所述业务请求方,并向预定区块链节点发送所述存证信息,以使所述区块链节点基于所述存证信息部署第一智能合约,所述第一智能合约用于根据 所述存证信息对所述业务请求方的加签数据进行验证,并在接收到所述业务请求方的第一业务请求时,调用所述第一智能合约对所述加签数据进行验证,得到验证结果;The digital certificate is issued to the service requester, and the deposit certificate information is sent to a predetermined blockchain node, so that the blockchain node deploys a first smart contract based on the deposit information. A smart contract is used to verify the signature data of the service requester according to the deposit information, and when the first service request of the service requester is received, call the first smart contract to Sign the data for verification, and get the verification result;
    接收所述区块链节点发送的所述业务数据和加签数据,所述业务数据和加签数据是所述区块链节点在所述验证结果为通过时发送,所述加签数据是基于所述数字证书生成的数据;Receive the business data and endorsement data sent by the blockchain node, where the business data and endorsement data are sent by the blockchain node when the verification result is passed, and the endorsement data is based on Data generated by the digital certificate;
    对所述加签数据进行二次验证,若验证通过,则基于所述业务数据进行业务处理,得到处理结果,并将所述处理结果返回给所述区块链节点,以使所述区块链节点基于所述处理结果对所述业务请求方发起的与所述业务数据对应的业务相关的第二业务请求进行处理。Perform secondary verification on the signed data. If the verification is passed, perform business processing based on the business data to obtain the processing result, and return the processing result to the blockchain node so that the block The chain node processes the second service request related to the service corresponding to the service data initiated by the service requester based on the processing result.
  22. 一种基于区块链的业务处理设备,包括处理器及被安排成存储计算机可执行指令的存储器,所述可执行指令在被执行时使所述处理器:A block chain-based business processing equipment, including a processor and a memory arranged to store computer executable instructions, the executable instructions, when executed, cause the processor to:
    通过所述第一区块链和业务授权机构对应的第二区块链的跨链传输通道,从所述第二区块链中获取第二区块链节点对业务请求方生成的存证信息,基于所述存证信息部署第一智能合约,所述第一智能合约用于根据所述存证信息对所述业务请求方的加签数据进行验证;Through the cross-chain transmission channel of the second block chain corresponding to the first block chain and the business authorization agency, the deposit information generated by the second block chain node to the business requester is obtained from the second block chain Deploying a first smart contract based on the deposit information, the first smart contract being used to verify the signature data of the service requester according to the deposit information;
    接收所述业务请求方的第一业务请求,所述第一业务请求中包括业务数据和加签数据;Receiving a first service request from the service requester, where the first service request includes service data and endorsement data;
    调用所述第一智能合约对所述加签数据进行验证,得到验证结果;Invoke the first smart contract to verify the signed data, and obtain a verification result;
    若验证结果为通过,则通过所述跨链传输通道,将所述业务数据和加签数据发送至所述第二区块链中的所述第二区块链节点,以使所述第二区块链节点对所述加签数据进行二次验证,验证通过后基于所述业务数据进行业务处理,得到处理结果;If the verification result is passed, the business data and endorsement data are sent to the second blockchain node in the second blockchain through the cross-chain transmission channel, so that the second The blockchain node performs secondary verification on the signed data, and after the verification is passed, performs business processing based on the business data to obtain a processing result;
    通过所述跨链传输通道,接收所述第二区块链节点返回的所述处理结果,将所述处理结果返回所述业务请求方,并基于所述处理结果对所述业务请求方发起的与所述业务数据对应的业务相关的第二业务请求进行处理。Through the cross-chain transmission channel, the processing result returned by the second blockchain node is received, the processing result is returned to the service requester, and the processing result is initiated to the service requester based on the processing result. The second service request related to the service corresponding to the service data is processed.
  23. 一种基于区块链的业务处理设备,包括处理器及被安排成存储计算机可执行指令的存储器,所述可执行指令在被执行时使所述处理器:A block chain-based business processing equipment, including a processor and a memory arranged to store computer executable instructions, the executable instructions, when executed, cause the processor to:
    生成针对业务请求方的数字证书和存证信息;Generate digital certificates and deposit information for the business requester;
    将所述数字证书颁发给所述业务请求方,并通过第一区块链和所述第二区块链的跨链传输通道,向所述第一区块链的第一区块链节点发送所述存证信息,以使所述第一区块链节点基于所述存证信息部署第一智能合约,所述第一智能合约用于根据所述存证信息对所述业务请求方的加签数据进行验证,并在接收到所述业务请求方的第一业务请求时,调用所述第一智能合约对所述加签数据进行验证,得到验证结果;Issue the digital certificate to the service requester, and send it to the first blockchain node of the first blockchain through the cross-chain transmission channel of the first blockchain and the second blockchain The deposit information, so that the first blockchain node deploys a first smart contract based on the deposit information, and the first smart contract is used to add to the service requester according to the deposit information To verify the signed data, and upon receiving the first service request of the service requester, call the first smart contract to verify the signed data, and obtain a verification result;
    通过所述跨链传输通道,接收所述第一区块链的第一区块链节点发送的所述业务数据和加签数据,所述业务数据和加签数据是所述第一区块链节点在所述验证结果为通过时发送,所述加签数据是基于所述数字证书生成的数据;Through the cross-chain transmission channel, receive the service data and endorsement data sent by the first blockchain node of the first blockchain, where the service data and endorsement data are the first blockchain The node sends when the verification result is passed, and the endorsement data is data generated based on the digital certificate;
    对所述加签数据进行二次验证,若验证通过,则基于所述业务数据进行业务处理,得到处理结果,并将所述处理结果返回给所述第一区块链的所述第一区块链节点,以使所述第一区块链节点基于所述处理结果对所述业务请求方发起的与所述业务数据对应的业务相关的第二业务请求进行处理。Perform secondary verification on the signed data. If the verification is passed, perform business processing based on the business data to obtain the processing result, and return the processing result to the first zone of the first blockchain A block chain node, so that the first block chain node processes, based on the processing result, a second service request related to the service corresponding to the service data initiated by the service requester.
PCT/CN2021/096706 2020-05-29 2021-05-28 Blockchain-based service processing WO2021239104A1 (en)

Applications Claiming Priority (2)

Application Number Priority Date Filing Date Title
CN202010478313.3 2020-05-29
CN202010478313.3A CN111401902B (en) 2020-05-29 2020-05-29 Service processing method, device and equipment based on block chain

Publications (1)

Publication Number Publication Date
WO2021239104A1 true WO2021239104A1 (en) 2021-12-02

Family

ID=71437615

Family Applications (1)

Application Number Title Priority Date Filing Date
PCT/CN2021/096706 WO2021239104A1 (en) 2020-05-29 2021-05-28 Blockchain-based service processing

Country Status (2)

Country Link
CN (3) CN112184222B (en)
WO (1) WO2021239104A1 (en)

Cited By (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN114430428A (en) * 2022-04-02 2022-05-03 中国光大银行股份有限公司 Client interface unifying method, service system, storage medium and electronic equipment
CN115082069A (en) * 2022-08-16 2022-09-20 人民法院信息技术服务中心 Cross-chain data acquisition method and device based on intelligent contract scheduling

Families Citing this family (13)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN112184222B (en) * 2020-05-29 2022-09-30 支付宝(杭州)信息技术有限公司 Service processing method, device and equipment based on block chain
CN111770199B (en) 2020-08-31 2020-12-08 支付宝(杭州)信息技术有限公司 Information sharing method, device and equipment
US11848937B2 (en) * 2020-09-18 2023-12-19 Booz Allen Hamilton Inc. Secure communication using blockchain technology
CN112184190B (en) * 2020-09-21 2022-04-22 支付宝(杭州)信息技术有限公司 Service processing method and device based on block chain
CN112231755A (en) * 2020-10-27 2021-01-15 腾讯科技(深圳)有限公司 Data authorization method, device and system based on block chain
CN112000976B (en) * 2020-10-29 2021-01-29 腾讯科技(深圳)有限公司 Authentication management method, device, medium and electronic equipment for block chain system
CN112477668B (en) * 2020-11-23 2022-09-02 国网北京市电力公司 Automobile charging method and system
CN113014392B (en) * 2021-02-19 2022-04-08 湖南大学 Block chain-based digital certificate management method, system, equipment and storage medium
CN113095828B (en) * 2021-04-27 2023-09-01 支付宝(杭州)信息技术有限公司 Data storage method and device based on blockchain
CN113221167B (en) * 2021-05-11 2022-10-11 支付宝(杭州)信息技术有限公司 Data processing method, device, equipment and storage medium based on block chain storage certificate
CN113643027A (en) * 2021-07-07 2021-11-12 重庆邮电大学 Method and device for realizing industry network point management based on block chain
CN113610528B (en) * 2021-08-24 2024-04-02 上海点融信息科技有限责任公司 Management system, method, equipment and storage medium based on block chain
CN114826667A (en) * 2022-03-22 2022-07-29 浪潮卓数大数据产业发展有限公司 Data sharing method, device, equipment and medium based on block chain

Citations (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN110555296A (en) * 2019-08-01 2019-12-10 阿里巴巴集团控股有限公司 identity verification method, device and equipment based on block chain
CN111145850A (en) * 2019-12-23 2020-05-12 支付宝(杭州)信息技术有限公司 Medical data query method and device based on block chain
CN111401902A (en) * 2020-05-29 2020-07-10 支付宝(杭州)信息技术有限公司 Service processing method, device and equipment based on block chain

Family Cites Families (14)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CA3033385A1 (en) * 2016-08-23 2018-03-01 BBM Health LLC Blockchain-based mechanisms for secure health information resource exchange
CA3036725A1 (en) * 2016-09-14 2018-03-22 Royal Bank Of Canada Credit score platform
CN107729137B (en) * 2017-09-04 2021-06-22 深圳壹账通智能科技有限公司 Server, block chain signature verification decryption method and storage medium
US11139979B2 (en) * 2017-12-18 2021-10-05 Koninklijke Kpn N.V. Primary and secondary blockchain device
CN108881290B (en) * 2018-07-17 2021-04-23 深圳前海微众银行股份有限公司 Block chain based digital certificate use method, system and storage medium
CN109064334B (en) * 2018-08-27 2021-12-24 深圳前海益链网络科技有限公司 Intelligent contract accounting method, computer device and readable storage medium
CN109522735B (en) * 2018-11-29 2021-06-22 上海信联信息发展股份有限公司 Data permission verification method and device based on intelligent contract
CN110069908A (en) * 2019-04-11 2019-07-30 深圳前海微众银行股份有限公司 A kind of authority control method and device of block chain
CN110619526A (en) * 2019-09-19 2019-12-27 阿里巴巴集团控股有限公司 Business service providing method, device, equipment and system based on block chain
CN110597837A (en) * 2019-09-19 2019-12-20 腾讯科技(深圳)有限公司 Service data processing method, device, storage medium and computer equipment
CN113542288B (en) * 2019-10-11 2023-06-30 支付宝(杭州)信息技术有限公司 Service authorization method, device, equipment and system
CN110874747A (en) * 2019-10-16 2020-03-10 支付宝(杭州)信息技术有限公司 Product service data uploading method, product service data storing device, product service data storing equipment and product service data storing medium
CN110930150A (en) * 2019-11-28 2020-03-27 吉林亿联银行股份有限公司 Voucher generation method, voucher signature device, voucher verification method, voucher generation device, voucher verification device, and storage medium
CN111126950A (en) * 2019-12-10 2020-05-08 支付宝(杭州)信息技术有限公司 Service processing method, device and equipment based on block chain

Patent Citations (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN110555296A (en) * 2019-08-01 2019-12-10 阿里巴巴集团控股有限公司 identity verification method, device and equipment based on block chain
CN111145850A (en) * 2019-12-23 2020-05-12 支付宝(杭州)信息技术有限公司 Medical data query method and device based on block chain
CN111401902A (en) * 2020-05-29 2020-07-10 支付宝(杭州)信息技术有限公司 Service processing method, device and equipment based on block chain

Cited By (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN114430428A (en) * 2022-04-02 2022-05-03 中国光大银行股份有限公司 Client interface unifying method, service system, storage medium and electronic equipment
CN115082069A (en) * 2022-08-16 2022-09-20 人民法院信息技术服务中心 Cross-chain data acquisition method and device based on intelligent contract scheduling

Also Published As

Publication number Publication date
CN112215601B (en) 2022-09-30
CN111401902A (en) 2020-07-10
CN112184222B (en) 2022-09-30
CN112215601A (en) 2021-01-12
CN111401902B (en) 2020-08-25
CN112184222A (en) 2021-01-05

Similar Documents

Publication Publication Date Title
WO2021239104A1 (en) Blockchain-based service processing
US11171782B2 (en) Identity and electronic signature verification in blockchain
EP3673608B1 (en) Data storage method, data query method and apparatuses
TWI736705B (en) Business processing method and device
KR102281558B1 (en) Consensus verification method and device
TWI706654B (en) Authentication method, authentication data processing method and device based on blockchain
TWI734041B (en) Method and device for data audit
WO2021114937A1 (en) Blockchain-based service processing method, apparatus and device
EP3962020B1 (en) Information sharing methods and systems
TW202116040A (en) Block chain-based creation method, apparatus, device and system for verifiable claim
CN111418184B (en) Credible insurance letter based on block chain
JP2023062065A (en) Using contactless card to securely share personal data stored in blockchain
TW201917666A (en) Data auditing method and device
CN111373431B (en) Credible insurance letter based on block chain
CN111770199B (en) Information sharing method, device and equipment
CN111357026B (en) Credible insurance letter based on block chain
CN112100594B (en) Service processing method, device and equipment based on block chain
CN111417945B (en) Credible insurance letter based on block chain
US11436597B1 (en) Biometrics-based e-signatures for pre-authorization and acceptance transfer
EP3945695B1 (en) Method, apparatus, and device for processing blockchain data
CN111433799B (en) Credible insurance letter based on block chain
CN113704775B (en) Service processing method and related device based on distributed digital identity
WO2023207086A1 (en) Blockchain-based user data transfer method, apparatus and device
WO2023207078A1 (en) Data processing method and apparatus, electronic device, and storage medium
CN113826134A (en) Credible insurance letter based on block chain

Legal Events

Date Code Title Description
121 Ep: the epo has been informed by wipo that ep was designated in this application

Ref document number: 21814150

Country of ref document: EP

Kind code of ref document: A1

NENP Non-entry into the national phase

Ref country code: DE

122 Ep: pct application non-entry in european phase

Ref document number: 21814150

Country of ref document: EP

Kind code of ref document: A1