CN103595700A - Object property security on-line verifying method and device - Google Patents

Object property security on-line verifying method and device Download PDF

Info

Publication number
CN103595700A
CN103595700A CN201210293880.7A CN201210293880A CN103595700A CN 103595700 A CN103595700 A CN 103595700A CN 201210293880 A CN201210293880 A CN 201210293880A CN 103595700 A CN103595700 A CN 103595700A
Authority
CN
China
Prior art keywords
object properties
checking
fail safe
application
priori
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Granted
Application number
CN201210293880.7A
Other languages
Chinese (zh)
Other versions
CN103595700B (en
Inventor
黄河
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
China Unionpay Co Ltd
Original Assignee
China Unionpay Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by China Unionpay Co Ltd filed Critical China Unionpay Co Ltd
Priority to CN201210293880.7A priority Critical patent/CN103595700B/en
Publication of CN103595700A publication Critical patent/CN103595700A/en
Application granted granted Critical
Publication of CN103595700B publication Critical patent/CN103595700B/en
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Images

Abstract

The invention brings forward an object property security on-line verifying method. The method comprising: sending disclosed properties of an object to an object property security verifying device through a network; sending a verifying application to the object property security verifying device; using the object through a prior safe approach and obtaining confirmation information through the safe approach after successful use; and sending the confirmation information to the object property security verifying device to finish verifying. By using the method and device provided by the invention, on-line verifying can be realized reliably at a quite low cost.

Description

Online verification method and the equipment thereof of object properties fail safe
Technical field
Present invention relates in general to information security technology, relate in particular to online verification method and the equipment thereof of the object properties fail safe in Information Exchange System.
Background technology
The development of network technology has brought facility to people's information interchange.But in the virtual world of network, the checking of user's identity is a problem.How to guarantee that under the deterministic prerequisite of identity, carrying out information interchange is a huge technological challenge.
Online transaction and payment are exactly an instantiation of the problems referred to above.In order to allow the application extension of bank to network, need to carry out real name verification to bank card, the bank card of for example registered members in web application being bound carries out real name verification.User by checking Hou, bank can enjoy the various exclusive services such as score accumulation, internet payment, thereby promotes card safety and specificity for bank card.
The real name verification of internet, applications has two kinds of patterns at present, but all has deficiency to a certain extent: pattern one is by card number, identification card number, name are sent to credit card issuer and verify.This checking can only prove this card number and the corresponding people's coupling of this identity card, and cannot prove the corresponding people of this identity card and web application registered user's matching relationship.As card and the identity card of taking other people can be by checkings.
Pattern two is by certain amount of money is squeezed into card number to be verified, and user's inquiry Submit Amounts quantity, prove that user is holder.This pattern needs certain financial support (squeezing into the amount of money of account to be verified, remittance service charge etc.), if any user's checking repeatedly, and unbind, then verify, will cause promoting service cost to increase, difficulty strengthens.
Therefore, need to there is a kind of new technology to realize better online verification.
Summary of the invention
For the aspect at least addressing the above problem, the present invention proposes a kind of online verification method of object properties fail safe, comprise: by network, the open attribute of object is sent to object properties security verification device, to described object properties security verification device, send checking application, by the secure way of priori, use described object and from described secure way, obtain confirmation after successfully using, and send described confirmation extremely described object properties security verification device complete checking.
As optimal way, described in the online verification method of above-mentioned object properties fail safe to as if bank card.
As optimal way, in the secure way of priori described in the online verification method of above-mentioned object properties fail safe, be to conclude the business by the pos machine of trade company.
As optimal way, at the open attribute of bank card described in the online verification method of above-mentioned object properties fail safe, comprise card number and the BIN code of bank card.
The invention allows for a kind of online verification application equipment of object properties fail safe, comprise: open attribute dispensing device, it is sent to object properties security verification device by network by the open attribute of object, checking application device, it sends checking application to described object properties security verification device, and confirmation dispensing device, it is sent to described object properties security verification device by the confirmation of using described object to obtain by priori secure way and completes checking.
As optimal way, described in the online verification application equipment of above-mentioned object properties fail safe to as if bank card.
As optimal way, in the secure way of priori described in the online verification application equipment of above-mentioned object properties fail safe, be to conclude the business by the pos machine of trade company.
The invention allows for a kind of object properties security verification equipment, comprise: open attribute receiving system, it receives the open attribute of the object that the online verification application equipment of object properties fail safe sends by network, checking application receiving system, the checking application that its online verification application equipment that receives described object properties fail safe sends, and confirmation receiving system, receive the confirmation that priori secure way is used described object to obtain of passing through that the online verification application equipment of described object properties fail safe sends.
As optimal way, described in above-mentioned object properties security verification equipment to as if bank card.
As optimal way, in the secure way of priori described in above-mentioned object properties security verification equipment, be to conclude the business by the pos machine of trade company.
The application of the invention, can realize online verification reliably with lower cost.
Accompanying drawing explanation
For ease of understanding, by indefiniteness example, embodiments of the invention are described with reference to the accompanying drawings.In figure:
Fig. 1 shows the flow process of the online verification method of object properties fail safe,
Fig. 2 shows the online verification application equipment of object properties fail safe,
Fig. 3 shows object properties security verification equipment.
Embodiment
Unless separately added and illustrated, as also cognoscible from following discussion, this specification in the whole text in, utilize such as " filtrations ", " screening ", " determining " the discussion of term to represent action or the process of the particular device of use such as computer or similar computing electronics.In the context of the present specification, computer or similar computing electronics can be handled or figure signal.These signals are typically expressed as physical electronic or the quantity of magnetism in memory, register or out of Memory storage device, transmitting device or the display unit of computer or similar computing electronics.For example, computing electronics can comprise the one or more processor of carrying out one or more specific functions.
As shown in Figure 1, the first step of the online verification method of object properties fail safe is, by network, the open attribute of object is sent to object properties security verification device (step S101).The final purpose of online verification is to allow object properties security verification device judge the true and false of an attribute of the object on network, for example its user's identity.First open attribute is sent to object properties security verification device and can realize a kind of preliminary checking.Because nonowners also may can be known open attribute, therefore, this preliminary checking is not fully for the assurance of fail safe, need to improve fail safe by subsequent step.Even as open attribute, this attribute should not become the information that can arbitrarily obtain yet.Therefore,, in sending the process of open attribute, still should take necessary safety measure by third party, to be obtained or distort in transmission to prevent this information.The safety measure is here that those skilled in the art understands, as utilizes the conventional security means such as fire compartment wall of encrypt/decrypt, transmitting terminal and the receiving terminal of symmetry/asymmetric means.Equally, in follow-up step, in the step of sending and receiving that relates to information, these conventional network security means are applicable too.
The second step of the online verification method of object properties fail safe is to send checking application (step S102).The proof procedure of object properties fail safe is considered to just can guarantee by one-time authentication accuracy and the reliability of the result.For the object that never carried out before checking, object properties security verification device can change the state information of this object into " checking " from " not checking " after receiving this checking application.The state information of the final object by checking will further be changed into " verifying ".And if this to as if " verifying ", the attempting of repeated authentication will be prevented from this step, the object that object properties security verification device has refusal " verifying " state continues proving program.
Then enter into the step (S103) that obtains confirmation.As mentioned above, the checking in step S101 is preliminary.In step S103, require to use described object by the secure way of priori.The secure way of so-called priori is the step that can use object safely and can prove the successful of use object of determining.The secure way of priori will be made sufficient checking and this fail safe intactly be shifted and is extended to other approach that comprises network to the attribute of this object.After having used safely this object, can obtain confirmation.
Finally, in step S104, this confirmation is sent to object properties security verification device and complete checking.
Said method can be applied in many network applications.For example, bank card is carried out to genuine cyber identification checking.According to said method.First user sends to web server by BIN code and the card number of bank card, and then real name verification is carried out in application.Here only having state is that the bank card of " checking " could be applied for real name verification.Initiate after application, this card proofing state will become " in checking ".Next, user will be in the time limit Nei Daoxianxia trade company of regulation by pos machine bankcard consumption and retain sales slip certificate.System detects state for after the bank card of " in checking " concludes the business, and by note or mail, informs that user can complete checking.User's answer short message or log in trade company's code and the dealing money that web application fills on sales slip and complete checking.
The system for settling account being connected for the application with concluding the business, its corresponding workflow is as follows:
(1) user chooses and need to verify, state is " checking " bank card application real name verification, and system is set to " in checking " by this card state.
(2) day whole system is filtered the whole Transaction Informations in clearance storehouse, filters out all states for the POS consumer sale on the same day of the bank card of " in checking ".
(3) user who successfully filters out transaction, by receiving note or the mail notification (reserving when mobile phone or mailbox are registered for user) of system, informs that it can feedback trading information complete checking.
(4) transaction filtering out in step (2) will be kept in, and for subsequent transaction, verifies.
(5) user notified after, by Transaction Information reponse system.After consumption, user need retain sales slip, according to the information on sales slip, feeds back.Need feedback information to comprise (1) trade company code (2) dealing money.Feedback conduit comprises (1) message reply (2) Website login hand filling.
(6) system is mated feedback information with temporary transaction, and the match is successful completes checking.This card state is set to " verifying ".
Fig. 2 shows the online verification application equipment 200 of object properties fail safe according to an embodiment of the invention, and it comprises open attribute dispensing device 201, checking application device 202 and confirmation dispensing device 203.
Open attribute dispensing device 201 is sent to object properties security verification device by network by the open attribute of object.In sending the process of open attribute, still should take necessary safety device by third party, to be obtained or distort in transmission to prevent this information.The safety device is here that those skilled in the art understands, and by software or hard-wired, as utilizes the conventional security means such as encrypt/decrypt, fire compartment wall of symmetry/asymmetric means.Equally, in other device in online verification application equipment 200, relate in the module of sending and receiving of information and also comprise the network security measure that these are conventional.
Checking application device 202 sends checking application to described object properties security verification device.For the object that never carried out before checking, object properties security verification device will change the state information of this object into " checking " from " not checking " after receiving this checking application.The state information of the final object by checking will be changed to " verifying ".And if this to as if " verifying ", the attempting of repeated authentication will be prevented from.
Confirmation dispensing device 203 is sent to object properties security verification device by the confirmation of using object to obtain by priori secure way and completes checking.The secure way of priori is the step that can use object safely and can prove the successful of use object of determining.The secure way of priori, by the attribute of this object being made to sufficient checking and this fail safe intactly being shifted and be extended to other approach, comprises network.After having used safely this object, can obtain confirmation.For example, bank card is being carried out in the application of genuine cyber identification checking, the secure way of priori is to descend online trade company by pos machine bankcard consumption.
Fig. 3 shows object properties security verification equipment 300 according to an embodiment of the invention, and it comprises open attribute receiving system 301, checking application receiving system 302 and confirmation receiving system 303.
Open attribute receiving system 301 receives the open attribute of object of the online verification application equipment transmission of object properties fail safe by network.In receiving the process of open attribute, still should take necessary safety device by third party, to be obtained or distort in transmission to prevent this information.The safety measure is here that those skilled in the art understands, and by software or hard-wired, as utilizes the conventional security means such as encrypt/decrypt, fire compartment wall of symmetry/asymmetric means.Equally, in other device in object properties security verification equipment 300, relate in the module of sending and receiving of information and also comprise the network security measure that these are conventional.
The checking application that the online verification application equipment that checking application receiving system 302 receives object properties fail safe sends.For the object that never carried out before checking, object properties security verification device will change the state information of this object into " checking " from " not checking " after receiving this checking application.And the state information of the final object by checking will further be changed to " verifying ".And if this to as if " verifying ", the attempting of repeated authentication will be verified application receiving system 302 to be stoped.
Confirmation receiving system 303 receives the confirmation that priori secure way is used described object to obtain of passing through that the online verification application equipment of described object properties fail safe sends.The secure way of priori is the step that can use object safely and can prove the successful of use object of determining.The secure way of priori, by the attribute of this object being made to sufficient checking and this fail safe intactly being shifted and be extended to other approach, comprises network.After having used safely this object, can obtain confirmation.For example, bank card is being carried out in the application of genuine cyber identification checking, the secure way of priori is under line, to pass through the bankcard consumption of the pos machine of trade company.
Method described here can realize by variety of way according to application at least partly according to special characteristic or example.For example, this method can realize by hardware, firmware, software or their any combination.In hardware is realized, for example, device can be at one or more application-specific integrated circuit (ASIC) (ASICs), digital signal processor (DSPs), digital signal processing device (DSPDs), programmable logic device (PLDs), field programmable gate array (FPGAs), processor, controller, microcontroller, microprocessor, electronic installation or is designed to carry out in other device units of all functions as described herein or their any combination and realizes.
Equally, in certain embodiments, method can adopt the module of carrying out function described here or their any combination to realize.For example, any machine readable media of visibly specializing instruction can be used in realizing these class methods.In one embodiment, for example, software or code can be stored in memory and by processing unit and move.Memory can be in processing unit and/or processing unit outside realize.Here the term that used " memory " represents long-term, short-term, volatibility, non-volatile or other memory of any type, and is not limited to any particular type or the quantity of memory or the type of storage medium of memory.
Storage medium can comprise any usable medium that can be visited by computer, computing platform, calculation element etc.As an example rather than restriction, computer-readable medium can comprise RAM, ROM, EEPROM, CD-ROM or other optical disc storage, disk storage or other magnetic memory apparatus, or can be used for carrying or storing the program code of the expectation of taking instruction or data structure form and other any medium that can be visited by computer, computing platform or calculation element.
Although shown the current content that is considered to exemplary characteristics above, one skilled in the art will appreciate that in the situation that do not deviate from claimed theme, can carry out various modifications to specific embodiment described in the present invention.Therefore, claimed theme is not limited to disclosed specific example, and on the contrary, it has comprised all the elements within the scope that falls into claims.

Claims (10)

1. an online verification method for object properties fail safe, comprising:
By network, the open attribute of object is sent to object properties security verification device,
To described object properties security verification device, send checking application,
By the secure way of priori, use described object and from described secure way, obtain confirmation after successfully using, and
Send described confirmation to described object properties security verification device and complete checking.
2. the online verification method of object properties fail safe as claimed in claim 1, wherein said to liking bank card.
3. the online verification method of object properties fail safe as claimed in claim 2, the secure way of wherein said priori is to conclude the business by the pos machine of trade company.
4. the online verification method of object properties fail safe as claimed in claim 3, the open attribute of wherein said bank card comprises card number and the BIN code of bank card.
5. an online verification application equipment for object properties fail safe, comprising:
Open attribute dispensing device, it is sent to object properties security verification device by network by the open attribute of object,
Checking application device, it sends checking application to described object properties security verification device, and
Confirmation dispensing device, it is sent to described object properties security verification device by the confirmation of using described object to obtain by priori secure way and completes checking.
6. the online verification application equipment of object properties fail safe as claimed in claim 5, wherein said to liking bank card.
7. the online verification application equipment of object properties fail safe as claimed in claim 6, the secure way of wherein said priori is to conclude the business by the pos machine of trade company.
8. an object properties security verification equipment, comprising:
Open attribute receiving system, it receives the open attribute of object of the online verification application equipment transmission of object properties fail safe by network,
Checking application receiving system, the checking application that its online verification application equipment that receives described object properties fail safe sends, and
Confirmation receiving system, receives the confirmation that priori secure way is used described object to obtain of passing through that the online verification application equipment of described object properties fail safe sends.
9. object properties security verification equipment as claimed in claim 8, wherein said to liking bank card.
10. object properties security verification equipment as claimed in claim 9, the secure way of wherein said priori is to conclude the business by the pos machine of trade company.
CN201210293880.7A 2012-08-17 2012-08-17 The online verification method and its equipment of object properties security Active CN103595700B (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201210293880.7A CN103595700B (en) 2012-08-17 2012-08-17 The online verification method and its equipment of object properties security

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201210293880.7A CN103595700B (en) 2012-08-17 2012-08-17 The online verification method and its equipment of object properties security

Publications (2)

Publication Number Publication Date
CN103595700A true CN103595700A (en) 2014-02-19
CN103595700B CN103595700B (en) 2017-05-31

Family

ID=50085683

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201210293880.7A Active CN103595700B (en) 2012-08-17 2012-08-17 The online verification method and its equipment of object properties security

Country Status (1)

Country Link
CN (1) CN103595700B (en)

Citations (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US7083087B1 (en) * 2000-09-18 2006-08-01 E-Micro Corporation Method and apparatus for associating identification and personal data for multiple magnetic stripe cards or other sources
CN101017583A (en) * 2006-02-10 2007-08-15 刘明晶 Method for safely binding bank account and personal terminal
CN102262762A (en) * 2011-07-11 2011-11-30 赵志旺 Assisted identity authentication method for credit card remote payment

Patent Citations (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US7083087B1 (en) * 2000-09-18 2006-08-01 E-Micro Corporation Method and apparatus for associating identification and personal data for multiple magnetic stripe cards or other sources
CN101017583A (en) * 2006-02-10 2007-08-15 刘明晶 Method for safely binding bank account and personal terminal
CN102262762A (en) * 2011-07-11 2011-11-30 赵志旺 Assisted identity authentication method for credit card remote payment

Also Published As

Publication number Publication date
CN103595700B (en) 2017-05-31

Similar Documents

Publication Publication Date Title
US20230334463A1 (en) Cloud-based systems and methods for providing consumer financial data
CN105960776B (en) Token authentication using limited-use credentials
CN104603809B (en) Promote the system and method for transaction using virtual card on the mobile apparatus
RU2427917C2 (en) Device, system and method to reduce time of interaction in contactless transaction
US20150199679A1 (en) Multiple token provisioning
CN109636593B (en) System and method for authenticating a user in a network transaction
US20140289130A1 (en) Secure remotely configurable point of sale terminal
CN103975352A (en) Securely reloadable electronic wallet
AU2015347054B2 (en) Providing online cardholder authentication services on-behalf-of issuers
CN108140181B (en) Managing customer uniqueness in a tokenized system
RU2724351C2 (en) Universal access to electronic wallet
CN104182870A (en) Security payment method and payment system based on mobile phone wallet
US11935058B2 (en) Systems and methods for authenticating a user using private network credentials
AU2011210725B2 (en) Authentication framework extension to verify identification information
GB2511505A (en) Dual/multiple pin payment account
RU2752688C1 (en) Systems and methods for use in authentication of users with accounts for network transactions
US20160063481A1 (en) System and Method of Electronic Authentication at a Computer Initiated Via Mobile
CN108140191B (en) Managing customer uniqueness in a tokenized system
TW201421390A (en) Method and system for secure mobile payment
CN108352017B (en) Method for identifying fund source of electronic transaction and payment terminal
CN105931035A (en) Payment mark generation method and device
BR102017003904A2 (en) PAYMENT AUTHORIZATION METHOD ON OFFLINE MOBILE DEVICES WITH IRRETRATABILITY GUARANTEE
US20190188715A1 (en) System and computer-implemented method for requiring and validating operator identifications in card-not-present transactions
CN103595700A (en) Object property security on-line verifying method and device
US20240086918A1 (en) Decentralized identity verification for payment transactions

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
SE01 Entry into force of request for substantive examination
SE01 Entry into force of request for substantive examination
GR01 Patent grant
GR01 Patent grant