Movatterモバイル変換


[0]ホーム

URL:


CN102291376B - Method and system for realizing mobile terminal-supporting electronic transaction - Google Patents

Method and system for realizing mobile terminal-supporting electronic transaction
Download PDF

Info

Publication number
CN102291376B
CN102291376BCN2010102105175ACN201010210517ACN102291376BCN 102291376 BCN102291376 BCN 102291376BCN 2010102105175 ACN2010102105175 ACN 2010102105175ACN 201010210517 ACN201010210517 ACN 201010210517ACN 102291376 BCN102291376 BCN 102291376B
Authority
CN
China
Prior art keywords
service platform
mobile terminal
financial service
mobile
call
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Expired - Fee Related
Application number
CN2010102105175A
Other languages
Chinese (zh)
Other versions
CN102291376A (en
Inventor
茹昭
王四军
陈庆方
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
China Potevio Co ltd
Petevio Institute Of Technology Co ltd
Original Assignee
Potevio Institute of Technology Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Potevio Institute of Technology Co LtdfiledCriticalPotevio Institute of Technology Co Ltd
Priority to CN2010102105175ApriorityCriticalpatent/CN102291376B/en
Publication of CN102291376ApublicationCriticalpatent/CN102291376A/en
Application grantedgrantedCritical
Publication of CN102291376BpublicationCriticalpatent/CN102291376B/en
Expired - Fee Relatedlegal-statusCriticalCurrent
Anticipated expirationlegal-statusCritical

Links

Images

Landscapes

Abstract

Translated fromChinese

本发明提供了一种支持移动终端的电子交易实现方法和系统。移动终端通过代理服务平台登录到金融服务平台,当需要进行电子交易时,通过代理服务平台向金融服务平台发送交易请求;金融服务平台向代理服务平台发送安全认证请求;代理服务平台根据安全认证请求生成调用移动硬件证书设备的命令,发送给移动终端;交易请求、安全认证请求和调用移动硬件证书设备的命令中均携带有交易信息;移动终端调用移动硬件证书设备对交易信息进行签名,将签名后的信息发送给代理服务平台;代理服务平台将签名后的信息转换为指定格式,发送给金融服务平台;金融服务平台对签名后的信息进行认证,认证通过,完成交易。应用本发明所述方案,能够降低实现成本。

Figure 201010210517

The invention provides a method and system for realizing electronic transactions supporting mobile terminals. The mobile terminal logs in to the financial service platform through the proxy service platform. When electronic transactions are required, the transaction request is sent to the financial service platform through the proxy service platform; the financial service platform sends a security authentication request to the proxy service platform; Generate a command to call the mobile hardware certificate device and send it to the mobile terminal; the transaction request, security authentication request and the command to call the mobile hardware certificate device all carry transaction information; the mobile terminal calls the mobile hardware certificate device to sign the transaction information, and the signature The signed information is sent to the agency service platform; the agency service platform converts the signed information into a specified format and sends it to the financial service platform; the financial service platform authenticates the signed information, and if the authentication passes, the transaction is completed. Applying the solution of the present invention can reduce the implementation cost.

Figure 201010210517

Description

A kind of electronic transaction implementation method and system of supporting mobile terminal
Technical field
The present invention relates to the electronic transaction technology, particularly a kind of electronic transaction implementation method and system of supporting mobile terminal.
Background technology
Along with the lifting of 3G (Third Generation) Moblie (3G) network capabilities and the fusion gradually of movement and the Internet, mobile terminal will have internet function, thereby make the electronic transactions such as ecommerce, Web bank, Internet securities have to the trend that shifts on mobile terminal; Simultaneously, the user is also increasing to the demand of the electronic transaction of movement-based terminal.
The electronic transaction technology of traditional support fixed network terminal (as computer etc.) is comparative maturity, as shown in Figure 1, Fig. 1 realizes the composition structural representation of system for the electronic transaction of existing support fixed network terminal, comprising: fixed network terminal, financial service platform and fixed network hardware certificate equipment.
at first fixed network terminal signs in to the financial service platform, be that fixed network terminal sends connection request to the financial service platform, the financial service platform returns to the required web page code of login to fixed network terminal, then, fixed network terminal is resolved the web page code that receives, according to the result after resolving, show the webpage that login is required, afterwards, fixed network terminal receives the username and password of user's input, send to the financial service platform, the financial service platform is verified the username and password that receives, and return and be proved to be successful or failed web page code to fixed network terminal according to the result, the user is resolved and be shown to fixed network terminal.
After logining successfully, when needs carry out electronic transaction, fixed network terminal sends transaction request to the financial service platform, and the financial service platform returns to safety certification request to fixed network terminal, in transaction request and safety certification request, all carries the Transaction Information of this transaction; Correspondingly, safe control in fixed network terminal calls fixed network hardware certificate equipment, being assumed to be electric signing tools (USBKEY) signs to Transaction Information, and the information after signing returns to the financial service platform, the information of financial service platform after to the signature that receives authenticates, authentication is passed through, and completes transaction.
But above-mentioned electronic transaction realizes that system is not suitable for mobile terminal, because: the first, the serviceability of mobile terminal is limited, and the microbrowser on it can not be supported the financial service platform for the fixed network terminal exploitation effectively; The second, the operating system of mobile terminal and fixed network terminal there are differences, and original safe control for fixed network terminal can't be installed on mobile terminal; The 3rd, for the safe control of fixed network terminal, can't directly call mobile hardware certificate equipment.Exactly because there are the problems referred to above, existing electronic trading system can not be supported mobile terminal preferably, and if support mobile terminal, must special exploitation one cover system, namely develop special financial service platform etc., but this can cause realizing the increase of cost undoubtedly.
Summary of the invention
In view of this, main purpose of the present invention is to provide a kind of electronic trade method of supporting mobile terminal, can reduce and realize cost.
Another object of the present invention is to provide a kind of electronic trading system of supporting mobile terminal, can reduce and realize cost.
For achieving the above object, technical scheme of the present invention is achieved in that
A kind of electronic transaction implementation method of supporting mobile terminal comprises:
Mobile terminal signs in to the financial service platform by the agency service platform, when needs carry out electronic transaction, by described agency service platform, to described financial service platform, sends transaction request;
Described financial service platform sends safety certification request to described agency service platform;
Described agency service platform generates and calls the order of mobile hardware certificate equipment according to described safety certification request, and sends to described mobile terminal; Described transaction request, safety certification request and call the Transaction Information that all carries this transaction in the order of mobile hardware certificate equipment;
Described mobile terminal calls mobile hardware certificate equipment described Transaction Information is signed, and the information after signing sends to described agency service platform;
Described agency service platform is converted to specified format by the information after described signature, and sends to described financial service platform;
The information of described financial service platform after to the signature that receives authenticates, and authentication is passed through, and completes transaction.
A kind ofly support the electronic transaction of mobile terminal to realize system, comprising: mobile terminal, agency service platform, financial service platform and mobile hardware certificate equipment;
Described mobile terminal, for by described agency service platform, to described financial service platform, sending connection request, receive the result after the parsing that described agency service platform returns, according to the result after described parsing, show the webpage that login is required, and receive the username and password that the user inputs, by described agency service platform, send to described financial service platform;
Described financial service platform, after the connection request when receiving from described agency service platform, return to the required web page code of login to described agency service platform, and the username and password that receives verified, is verified, and completes login;
Described agency service platform, resolve for the web page code to being received from described financial service platform, and the result after resolving sends to described mobile terminal;
Described mobile terminal is further used for, when needs carry out electronic transaction, by described agency service platform, to described financial service platform, send transaction request, and reception is from the order of calling mobile hardware certificate equipment of described agency service platform, described transaction request and call the Transaction Information that all carries this transaction in the order of mobile hardware certificate equipment, call described mobile hardware certificate equipment described Transaction Information is signed, and the information after signing sends to described agency service platform;
Described financial service platform is further used for, after the transaction request that receives from described agency service platform, to described agency service platform, send safety certification request, wherein carry Transaction Information, and receive the information after the signature that described agency service platform returns, information after described signature is authenticated, and authentication is passed through, and completes transaction;
Described agency service platform is further used for, according to the safety certification request that is received from described financial service platform, generate the order of calling mobile hardware certificate equipment, send to described mobile terminal, and receive the information after the signature that described mobile terminal returns, be converted to specified format, send to described financial service platform.
Visible, adopt technical scheme of the present invention, between mobile terminal and financial service platform, the agency service platform is set, by mobile terminal virtual be fixed network terminal, by mobile hardware certificate equipment virtual be fixed network hardware certificate equipment, the agency service platform carries out information interaction according to mode and the financial service platform of fixed network terminal, and by conversion, waits operation to help mobile terminal and realize calling the functions such as mobile hardware certificate equipment and web displaying.Compared with prior art, scheme of the present invention can directly be utilized existing financial service platform, namely, without the financial service platform of special exploitation for mobile terminal, thereby reduced, realizes cost.
The accompanying drawing explanation
Fig. 1 realizes the composition structural representation of system for the electronic transaction of existing support fixed network terminal.
Fig. 2 is that the present invention supports the electronic transaction of mobile terminal to realize the composition structural representation of system embodiment.
Fig. 3 is the composition structural representation of agency service platform shown in Figure 2.
Fig. 4 is the composition structural representation of mobile terminal shown in Figure 2.
Fig. 5 is the flow chart that the present invention supports the electronic transaction implementation method embodiment of mobile terminal.
Fig. 6 is the specific implementation process schematic diagram of step 51 shown in Figure 5.
Embodiment
For problems of the prior art, a kind of electronic transaction implementation of supporting mobile terminal is proposed in the present invention, between mobile terminal and existing financial service platform, the agency service platform is set, by mobile terminal virtual be fixed network terminal, by mobile hardware certificate equipment virtual be fixed network hardware certificate equipment, the agency service platform carries out information interaction according to mode and the financial service platform of fixed network terminal, and by conversion, waits operation to help mobile terminal and realize calling the functions such as mobile hardware certificate equipment and web displaying.
For make technical scheme of the present invention clearer, understand, referring to the accompanying drawing embodiment that develops simultaneously, scheme of the present invention is described in further detail.
Fig. 2 is that the present invention supports the electronic transaction of mobile terminal to realize the composition structural representation of system embodiment.As shown in Figure 2, comprising: mobile terminal, agency service platform, financial service platform and mobile hardware certificate equipment.
Wherein, mobile terminal, for by the agency service platform, to the financial service platform, sending connection request, result after the parsing that the Receiving Agent service platform returns, according to the result after resolving, show the webpage that login is required, and receive the username and password that the user inputs, by the agency service platform, send to the financial service platform;
The financial service platform, after the connection request when receiving from the agency service platform, return to the required web page code of login to the agency service platform, and the username and password that receives verified, is verified, and completes login;
The agency service platform, resolve for the web page code to being received from the financial service platform, and the result after resolving sends to mobile terminal.
In addition, mobile terminal can be further used for, when needs carry out electronic transaction, by the agency service platform, to the financial service platform, send transaction request, and reception is from the order of calling mobile hardware certificate equipment of agency service platform, transaction request and call the Transaction Information that all carries this transaction in the order of mobile hardware certificate equipment, calls mobile hardware certificate equipment Transaction Information is signed, and the information after signing sends to the agency service platform;
The financial service platform is further used for, after the transaction request that receives from the agency service platform, to the agency service platform, send safety certification request, wherein carry Transaction Information, and the information after the signature that returns of Receiving Agent service platform, information after signature is authenticated, and authentication is passed through, and completes transaction;
The agency service platform is further used for, according to the safety certification request that is received from the financial service platform, generate the order call mobile hardware certificate equipment, send to mobile terminal, and the information after the signature that returns of mobile terminal receive, be converted to specified format, send to the financial service platform.
Financial service platform shown in Figure 2 can or be paid service platform etc. by mails for Net silver service platform, security service platform; Mobile terminal can be mobile phone, personal digital assistant (PDA) or palmtop PC etc.; Mobile hardware certificate equipment can be used for for user identity identification (SIM) card, flash memory (TF) card or intelligent memory card etc. the smart card of safety certification.
Mobile hardware certificate equipment can arrange separately, also can be arranged in mobile terminal.
Mobile hardware certificate equipment and tradition are the same for the USBKEY of the electronic transaction of fixed network terminal etc., call hardware and generate key pair, for encryption and decryption and signature operation, guarantee the fail safe of transaction, and with the identical signature scheme of employing such as USBKEY.
Fig. 3 is the composition structural representation of agency service platform shown in Figure 2.As shown in Figure 3, comprising: first communication module, transport module, webpage parsing module, authentication control module and safe control.
Wherein, first communication module, be used to setting up being connected between agency service platform and mobile terminal, to carry out the transmission of the two contact information, such as the connection request that will be received from mobile terminal sends to transport module, and then send it to financial service platform etc. by transport module; Transport module, be used to setting up being connected between agency service platform and financial service platform, to carry out the transmission of the two contact information; The webpage parsing module, resolve for the web page code to being received from the financial service platform, and the result after resolving is sent to mobile terminal.
Safe control, be used to sending the order of calling USBKEY, and the information that will be received from after the signature of USBKEY response format of authentication control module sends to the financial service platform; Safe control is that transport module is automatically downloaded and installed to the financial service platform; The authentication control module, for intercepting and capturing the order of calling USBKEY that safe control sends, be converted into the order of calling mobile hardware certificate equipment, send to mobile terminal, and the information that will be received from after the signature of mobile terminal is converted to the USBKEY response format, sends to safe control.Perhaps, safe control, be used to sending the order of calling software certificate, and the information that will be received from after the signature of software certificate response format of authentication control module sends to the financial service platform; The authentication control module, for intercepting and capturing the order of calling software certificate that safe control sends, be converted into the order of calling mobile hardware certificate equipment, send to mobile terminal, and the information that will be received from after the signature of mobile terminal is converted to the software certificate response format, sends to safe control.
Fig. 4 is the composition structural representation of mobile terminal shown in Figure 2.As shown in Figure 4, comprising: second communication module, web displaying module and signature blocks;
Second communication module, for setting up the connection between mobile terminal and agency service platform, to carry out the transmission of the two contact information, such as receiving from the result after the parsing of agency service platform, send to the web displaying module, reception, from the order of calling mobile hardware certificate equipment of agency service platform, sends to signature blocks; The web displaying module, for the result according to after the parsing that receives for the user shows the corresponding page so that the user seamlessly carries out various operations, and obtain by human-computer interaction interface the username and password that the user inputs, send to the agency service platform; Signature blocks, for after receiving the order of calling mobile hardware certificate equipment, calls mobile hardware certificate equipment described Transaction Information is signed, and the information after signing sends to the agency service platform.
Financial service platform in system shown in Figure 2 is not distinguished for the information from agency service platform and fixed network terminal, makes identical response.
Based on above-mentioned introduction, Fig. 5 is the flow chart that the present invention supports the electronic transaction implementation method embodiment of mobile terminal.As shown in Figure 5, comprise the following steps:
Step 51: mobile terminal signs in to the financial service platform by the agency service platform.
Fig. 6 is the specific implementation process schematic diagram of step 51 shown in Figure 5.As shown in Figure 6, comprising:
61, mobile terminal sends connection request to the agency service platform.
62, the agency service platform connection request that will receive is transmitted to the financial service platform.
63, the financial service platform returns to the required web page code of login to the agency service platform.
64, the agency service platform is resolved the web page code that receives, and the result after resolving sends to mobile terminal, and mobile terminal shows according to the result after resolving the webpage that login is required.
65, mobile terminal receives the username and password of user's input, sends to the agency service platform.
66, the agency service platform username and password transparent forwarding that will receive is to the financial service platform.
67, the financial service platform is verified the username and password that receives, and returns and login successfully or failed web page code to the agency service platform.
68, the agency service platform is resolved the web page code that receives, and the result after resolving sends to mobile terminal; Mobile terminal logins successfully or failed webpage for the user shows, with the prompting user, logins successfully or login failure.
Step 52: when needs carried out electronic transaction, mobile terminal sent transaction request by the agency service platform to the financial service platform.
In described transaction request, carry the Transaction Information of this transaction, comprise that specifically which information and scheme of the present invention, without direct relation, are not described.
Step 53: the financial service platform sends safety certification request to the agency service platform.
The financial service platform is initiated safety certification, to the agency service platform, sends safety certification request, wherein carries equally Transaction Information.
Step 54: the agency service platform generates and calls the order of mobile hardware certificate equipment according to the safety certification request that receives, and sends to mobile terminal.
In this step, after the agency service platform receives safety certification request, safe control by self sends the order of calling USBKEY, authentication control program in the agency service platform is intercepted and captured the order that this calls USBKEY, be converted into the order of calling mobile hardware certificate equipment, send to mobile terminal.
Perhaps, after the agency service platform receives safety certification request, safe control by self sends the order of calling software certificate, authentication control program in the agency service platform is intercepted and captured the order that this calls software certificate, be converted into the order of calling mobile hardware certificate equipment, send to mobile terminal.
How to be converted to prior art, to repeat no more.In addition, call in the order of mobile hardware certificate equipment and carry equally Transaction Information.
Step 55: mobile terminal calls the Transaction Information that carries in the order of calling mobile hardware certificate equipment that mobile hardware certificate equipment interconnection receives and signs, and the information after signing sends to the agency service platform.
In this step, the Transaction Information that carries in the order of calling mobile hardware certificate equipment that mobile terminal will receive sends to mobile hardware certificate equipment; Mobile hardware certificate equipment is signed to Transaction Information, and the information after being signed, send to mobile terminal; Information after mobile terminal further will be signed sends to the agency service platform.
Step 56: the information after the signature that the agency service platform will receive is converted to specified format, and sends to the financial service platform.
if the order for calling USBKEY that in step 54, safe control sends, information after the signature that in this step, the authentication control program in the agency service platform will receive is converted to the USBKEY response format, if the order for calling software certificate that in step 54, safe control sends, in this step, the information of the authentication control program in the agency service platform after signing is converted to the software certificate response format, these are the form corresponding to fixed network terminal, afterwards, information after conversion is sent to safe control, by safe control, further send to the financial service platform.
Step 57: the information of financial service platform after to the signature that receives authenticates, and authentication is passed through, and completes transaction.
How to authenticate and how to complete transaction and be prior art, repeat no more.
So far, namely completed the introduction about the inventive method embodiment.
In a word, adopt technical scheme of the present invention, between mobile terminal and financial service platform, the agency service platform is set, by mobile terminal virtual be fixed network terminal, by mobile hardware certificate equipment virtual be fixed network hardware certificate equipment, the agency service platform carries out information interaction according to mode and the financial service platform of fixed network terminal, and by conversion, waits operation to help mobile terminal and realize calling the functions such as mobile hardware certificate equipment and web displaying.Compared with prior art, scheme of the present invention directly utilizes existing financial service platform to get final product, and namely, without the financial service platform of special exploitation for mobile terminal, thereby reduced, realizes cost.
The foregoing is only preferred embodiment of the present invention, in order to limit the present invention, within the spirit and principles in the present invention not all, any modification of making, be equal to replacement, improvement etc., within all should being included in the scope of protection of the invention.

Claims (8)

Translated fromChinese
1.一种支持移动终端的电子交易实现方法,其特征在于,该方法包括:1. A method for implementing electronic transactions supporting mobile terminals, characterized in that the method comprises:移动终端通过代理服务平台登录到金融服务平台,当需要进行电子交易时,通过所述代理服务平台向所述金融服务平台发送交易请求;The mobile terminal logs in to the financial service platform through the proxy service platform, and sends a transaction request to the financial service platform through the proxy service platform when electronic transactions are required;所述金融服务平台向所述代理服务平台发送安全认证请求;The financial service platform sends a security authentication request to the proxy service platform;所述代理服务平台根据所述安全认证请求生成调用移动硬件证书设备的命令,并发送给所述移动终端;所述交易请求、安全认证请求以及调用移动硬件证书设备的命令中均携带有本次交易的交易信息;The proxy service platform generates an order to call the mobile hardware certificate device according to the security authentication request, and sends it to the mobile terminal; the transaction request, the security authentication request, and the command to call the mobile hardware certificate device all carry the current transaction information for transactions;所述移动终端调用移动硬件证书设备对所述交易信息进行签名,并将签名后的信息发送给所述代理服务平台;The mobile terminal invokes a mobile hardware certificate device to sign the transaction information, and sends the signed information to the proxy service platform;所述代理服务平台将所述签名后的信息转换为指定格式,并发送给所述金融服务平台;The agency service platform converts the signed information into a specified format and sends it to the financial service platform;所述金融服务平台对接收到的签名后的信息进行认证,认证通过,完成交易;The financial service platform authenticates the received signed information, passes the authentication, and completes the transaction;其中,所述移动终端通过代理服务平台登录到金融服务平台包括:Wherein, the mobile terminal logs in to the financial service platform through the agency service platform includes:所述移动终端通过所述代理服务平台向所述金融服务平台发送连接请求;所述金融服务平台向所述代理服务平台返回登录所需的网页代码;The mobile terminal sends a connection request to the financial service platform through the proxy service platform; the financial service platform returns the web page code required for login to the proxy service platform;所述代理服务平台对所述网页代码进行解析,并将解析后的结果发送给所述移动终端;所述移动终端根据所述解析后的结果显示登录所需的网页;The proxy service platform parses the webpage code, and sends the parsed result to the mobile terminal; the mobile terminal displays the webpage required for login according to the parsed result;所述移动终端接收用户输入的用户名和密码,并通过所述代理服务平台发送给所述金融服务平台;所述金融服务平台对所述用户名和密码进行验证,验证通过,完成登录。The mobile terminal receives the user name and password input by the user, and sends them to the financial service platform through the proxy service platform; the financial service platform verifies the user name and password, and completes the login if the verification passes.2.根据权利要求1所述的方法,其特征在于,所述代理服务平台根据所述安全认证请求生成调用移动硬件证书设备的命令包括:2. The method according to claim 1, wherein the proxy service platform generating a command to call the mobile hardware certificate device according to the security authentication request comprises:所述代理服务平台接收到所述安全认证请求后,通过安全控件发出调用电子签名工具USBKEY的命令,所述代理服务平台中的认证控制程序截获所述调用USBKEY的命令,转换为调用移动硬件证书设备的命令;After the proxy service platform receives the security authentication request, it issues a command to call the electronic signature tool USBKEY through the security control, and the authentication control program in the proxy service platform intercepts the command to call the USBKEY, and converts the command to call the mobile hardware certificate device commands;所述代理服务平台将所述签名后的信息转换为指定格式,并发送给所述金融服务平台包括:The agency service platform converts the signed information into a specified format, and sending it to the financial service platform includes:所述代理服务平台中的认证控制程序将签名后的信息转换为USBKEY响应格式,发送给所述安全控件,通过所述安全控件进一步发送到所述金融服务平台。The authentication control program in the proxy service platform converts the signed information into a USBKEY response format, sends it to the security control, and further sends it to the financial service platform through the security control.3.根据权利要求1所述的方法,其特征在于,所述代理服务平台根据所述安全认证请求生成调用移动硬件证书设备的命令包括:3. The method according to claim 1, wherein the proxy service platform generating a command to call the mobile hardware certificate device according to the security authentication request comprises:所述代理服务平台接收到所述安全认证请求后,通过安全控件发出调用软件证书的命令;所述代理服务平台中的认证控制程序截获所述调用软件证书的命令,转换为调用移动硬件证书设备的命令;After the proxy service platform receives the security authentication request, it issues a command to call the software certificate through the security control; the authentication control program in the proxy service platform intercepts the command to call the software certificate, and converts it into a call to the mobile hardware certificate device The command;所述代理服务平台将所述签名后的信息转换为指定格式,并发送给所述金融服务平台包括:The agency service platform converts the signed information into a specified format, and sending it to the financial service platform includes:所述代理服务平台中的认证控制程序将签名后的信息转换为软件证书响应格式,发送给所述安全控件,通过所述安全控件进一步发送到所述金融服务平台。The authentication control program in the proxy service platform converts the signed information into a software certificate response format, sends it to the security control, and further sends it to the financial service platform through the security control.4.一种支持移动终端的电子交易实现系统,其特征在于,包括:移动终端、代理服务平台、金融服务平台和移动硬件证书设备;4. An electronic transaction realization system supporting a mobile terminal, characterized in that it comprises: a mobile terminal, an agent service platform, a financial service platform and a mobile hardware certificate device;所述移动终端,用于通过所述代理服务平台向所述金融服务平台发送连接请求,接收所述代理服务平台返回的解析后的结果,根据所述解析后的结果显示登录所需的网页,并接收用户输入的用户名和密码,通过所述代理服务平台发送给所述金融服务平台;The mobile terminal is configured to send a connection request to the financial service platform through the proxy service platform, receive the parsed result returned by the proxy service platform, and display the webpage required for login according to the parsed result, And receive the username and password input by the user, and send them to the financial service platform through the agency service platform;所述金融服务平台,用于当接收到来自所述代理服务平台的连接请求后,向所述代理服务平台返回登录所需的网页代码,并对接收到的用户名和密码进行验证,验证通过,完成登录;The financial service platform is used to return the webpage code required for login to the proxy service platform after receiving the connection request from the proxy service platform, and verify the received user name and password, and the verification is passed, complete login;所述代理服务平台,用于对接收自所述金融服务平台的网页代码进行解析,并将解析后的结果发送给所述移动终端;The agency service platform is used to analyze the web page code received from the financial service platform, and send the analyzed result to the mobile terminal;所述移动终端进一步用于,当需要进行电子交易时,通过所述代理服务平台向所述金融服务平台发送交易请求,并接收来自所述代理服务平台的调用移动硬件证书设备的命令,所述交易请求和调用移动硬件证书设备的命令中均携带有本次交易的交易信息,调用所述移动硬件证书设备对所述交易信息进行签名,并将签名后的信息发送给所述代理服务平台;The mobile terminal is further configured to, when electronic transactions are required, send a transaction request to the financial service platform through the proxy service platform, and receive an order from the proxy service platform to call a mobile hardware certificate device, the Both the transaction request and the command to call the mobile hardware certificate device carry the transaction information of this transaction, call the mobile hardware certificate device to sign the transaction information, and send the signed information to the agency service platform;所述金融服务平台进一步用于,当接收到来自所述代理服务平台的交易请求后,向所述代理服务平台发送安全认证请求,其中携带有交易信息,并接收所述代理服务平台返回的签名后的信息,对所述签名后的信息进行认证,认证通过,完成交易;The financial service platform is further configured to, after receiving the transaction request from the proxy service platform, send a security authentication request to the proxy service platform, which carries transaction information, and receive the signature returned by the proxy service platform After the signed information is authenticated, the authentication is passed and the transaction is completed;所述代理服务平台进一步用于,根据接收自所述金融服务平台的安全认证请求生成调用移动硬件证书设备的命令,发送给所述移动终端,并接收所述移动终端返回的签名后的信息,转换为指定格式,发送给所述金融服务平台。The proxy service platform is further configured to generate a command for invoking a mobile hardware certificate device according to the security authentication request received from the financial service platform, send it to the mobile terminal, and receive signed information returned by the mobile terminal, Convert it into a specified format and send it to the financial service platform.5.根据权利要求4所述的系统,其特征在于,所述代理服务平台包括:第一通信模块、传输模块、网页解析模块、认证控制模块和安全控件;5. The system according to claim 4, wherein the agency service platform comprises: a first communication module, a transmission module, a webpage analysis module, an authentication control module and a security control;所述第一通信模块,用于建立所述代理服务平台与所述移动终端之间的连接,以进行二者间往来信息的传输;The first communication module is configured to establish a connection between the agency service platform and the mobile terminal, so as to transmit information between the two;所述传输模块,用于建立所述代理服务平台与所述金融服务平台之间的连接,以进行二者间往来信息的传输;The transmission module is used to establish a connection between the agency service platform and the financial service platform, so as to transmit information between the two;所述网页解析模块,用于对接收自所述金融服务平台的网页代码进行解析,将解析后的结果发送给所述移动终端;The webpage parsing module is configured to parse the webpage code received from the financial service platform, and send the parsed result to the mobile terminal;所述安全控件,用于发出调用电子签名工具USBKEY的命令,并将接收自所述认证控制模块的USBKEY响应格式的签名后的信息发送给所述金融服务平台;The security control is used to issue a command to call the electronic signature tool USBKEY, and send the signed information in the USBKEY response format received from the authentication control module to the financial service platform;所述认证控制模块,用于截获所述安全控件发出的调用USBKEY的命令,将其转换为调用移动硬件证书设备的命令,发送给所述移动终端,并将接收自所述移动终端的签名后的信息转换为USBKEY响应格式,发送给所述安全控件。The authentication control module is used to intercept the command to call the USBKEY issued by the security control, convert it into a command to call the mobile hardware certificate device, send it to the mobile terminal, and receive the signature from the mobile terminal The information is converted into a USBKEY response format and sent to the security control.6.根据权利要求4所述的系统,其特征在于,所述代理服务平台包括:第一通信模块、传输模块、网页解析模块、认证控制模块和安全控件;6. The system according to claim 4, wherein the agency service platform comprises: a first communication module, a transmission module, a webpage analysis module, an authentication control module and a security control;所述第一通信模块,用于建立所述代理服务平台与所述移动终端之间的连接,以进行二者间往来信息的传输;The first communication module is configured to establish a connection between the agency service platform and the mobile terminal, so as to transmit information between the two;所述传输模块,用于建立所述代理服务平台与所述金融服务平台之间的连接,以进行二者间往来信息的传输;The transmission module is used to establish a connection between the agency service platform and the financial service platform, so as to transmit information between the two;所述网页解析模块,用于对接收自所述金融服务平台的网页代码进行解析,并将解析后的结果发送给所述移动终端;The webpage parsing module is configured to parse the webpage code received from the financial service platform, and send the parsed result to the mobile terminal;所述安全控件,用于发出调用软件证书的命令,并将接收自所述认证控制模块的软件证书响应格式的签名后的信息发送给所述金融服务平台;The security control is configured to issue a command to call the software certificate, and send the signed information received from the authentication control module in the response format of the software certificate to the financial service platform;所述认证控制模块,用于截获所述安全控件发出的调用软件证书的命令,将其转换为调用移动硬件证书设备的命令,发送给所述移动终端,并将接收自所述移动终端的签名后的信息转换为软件证书响应格式,发送给所述安全控件。The authentication control module is configured to intercept the command for calling the software certificate issued by the security control, convert it into a command for calling the mobile hardware certificate device, send it to the mobile terminal, and receive the signature received from the mobile terminal The resulting information is converted into a software certificate response format and sent to the security control.7.根据权利要求4所述的系统,其特征在于,所述移动终端包括:第二通信模块、网页显示模块以及签名模块;7. The system according to claim 4, wherein the mobile terminal comprises: a second communication module, a web page display module and a signature module;所述第二通信模块,用于建立所述移动终端和所述代理服务平台之间的连接,以进行二者间往来信息的传输;The second communication module is configured to establish a connection between the mobile terminal and the agency service platform, so as to transmit information between the two;所述网页显示模块,用于根据接收自所述代理服务平台的解析后的结果为用户显示相应的网页,并通过人机交互界面获取用户输入的用户名和密码,发送给所述代理服务平台;The webpage display module is used to display the corresponding webpage for the user according to the analyzed result received from the agency service platform, and obtain the user name and password input by the user through the human-computer interaction interface, and send them to the agency service platform;所述签名模块,用于在接收到来自所述代理服务平台的调用移动硬件证书设备的命令后,调用所述移动硬件证书设备对所述交易信息进行签名,并将签名后的信息发送给所述代理服务平台。The signature module is configured to call the mobile hardware certificate device to sign the transaction information after receiving the command to call the mobile hardware certificate device from the proxy service platform, and send the signed information to the agent service platform.8.根据权利要求4、5、6或7所述的系统,其特征在于,8. A system according to claim 4, 5, 6 or 7, characterized in that,所述金融服务平台包括但不限于:网银服务平台、证券服务平台、电子支付服务平台;The financial service platforms include, but are not limited to: online banking service platforms, securities service platforms, and electronic payment service platforms;所述移动硬件证书设备包括但不限于:用户身份识别SIM卡、闪存TF卡、智能存储卡;The mobile hardware certificate device includes but is not limited to: user identification SIM card, flash memory TF card, smart memory card;所述移动终端包括但不限于:手机、个人数字助理PDA、掌上电脑。The mobile terminal includes but not limited to: mobile phone, personal digital assistant PDA, palmtop computer.
CN2010102105175A2010-06-182010-06-18Method and system for realizing mobile terminal-supporting electronic transactionExpired - Fee RelatedCN102291376B (en)

Priority Applications (1)

Application NumberPriority DateFiling DateTitle
CN2010102105175ACN102291376B (en)2010-06-182010-06-18Method and system for realizing mobile terminal-supporting electronic transaction

Applications Claiming Priority (1)

Application NumberPriority DateFiling DateTitle
CN2010102105175ACN102291376B (en)2010-06-182010-06-18Method and system for realizing mobile terminal-supporting electronic transaction

Publications (2)

Publication NumberPublication Date
CN102291376A CN102291376A (en)2011-12-21
CN102291376Btrue CN102291376B (en)2013-11-20

Family

ID=45337489

Family Applications (1)

Application NumberTitlePriority DateFiling Date
CN2010102105175AExpired - Fee RelatedCN102291376B (en)2010-06-182010-06-18Method and system for realizing mobile terminal-supporting electronic transaction

Country Status (1)

CountryLink
CN (1)CN102291376B (en)

Families Citing this family (11)

* Cited by examiner, † Cited by third party
Publication numberPriority datePublication dateAssigneeTitle
CN102867269A (en)*2012-08-292013-01-09福建联迪商用设备有限公司Synchronous transmission system and method for financial service data
CN103208151B (en)2013-04-032016-08-03天地融科技股份有限公司Process the method and system of operation requests
CN104102869B (en)*2013-04-122018-04-27北京旋极信息技术股份有限公司Electron underwriting authentication expansion equipment and information processing method
CN104917738B (en)*2014-03-142018-03-16陈衡Financial platform data processing method and system
CA3022618C (en)*2015-04-302022-02-2210353744 Canada Ltd.Method for searching for electronic transaction certificate, and electronic transaction terminal
CN107872320A (en)*2016-09-262018-04-03中国电信股份有限公司Terminal digital signature method and system and the terminal for digital signature
CN106656507B (en)*2016-11-242019-10-11工业和信息化部电信研究院 A mobile terminal-based electronic authentication method and device
CN108092779A (en)*2018-01-052018-05-29北京汇通金财信息科技有限公司A kind of method and device for realizing electronic signature
CN112669033A (en)*2019-10-152021-04-16深圳市文鼎创数据科技有限公司Transaction authentication method based on FIDO equipment and FIDO equipment
CN111669426B (en)*2020-04-202021-12-07河南芯盾网安科技发展有限公司Method and system for sharing security carrier by cross-platform terminals
CN114037446B (en)*2021-09-302025-04-29中国人民银行数字货币研究所 A digital currency transaction method, transaction management method, device and system

Citations (1)

* Cited by examiner, † Cited by third party
Publication numberPriority datePublication dateAssigneeTitle
CN101159557A (en)*2007-11-212008-04-09华为技术有限公司Single point logging method, device and system

Family Cites Families (2)

* Cited by examiner, † Cited by third party
Publication numberPriority datePublication dateAssigneeTitle
US20030078987A1 (en)*2001-10-242003-04-24Oleg SerebrennikovNavigating network communications resources based on telephone-number metadata
CN101042764A (en)*2006-03-222007-09-26王世勇Electric business confirmations system and implementing method thereof

Patent Citations (1)

* Cited by examiner, † Cited by third party
Publication numberPriority datePublication dateAssigneeTitle
CN101159557A (en)*2007-11-212008-04-09华为技术有限公司Single point logging method, device and system

Also Published As

Publication numberPublication date
CN102291376A (en)2011-12-21

Similar Documents

PublicationPublication DateTitle
CN102291376B (en)Method and system for realizing mobile terminal-supporting electronic transaction
CN112953970B (en)Identity authentication method and identity authentication system
CN108846657B (en)Electronic transfer method and related device
CN105515783B (en)Identity identifying method, server and certification terminal
CN101562525B (en)Method, device and system for signature
US20130041830A1 (en)Methods and apparatus to provision payment services
CN103617531A (en)Safety payment method and device based on credible two-dimension code
CN110930147B (en)Offline payment method and device, electronic equipment and computer-readable storage medium
CN204731832U (en)Electronic fare payment system
WO2012113189A1 (en)Mobile payment system, mobile terminal and method for realizing mobile payment service
WO2009094949A1 (en)Creditable remote service method and system
US20130104220A1 (en)System and method for implementing a secure USB application device
CN101620705A (en)Safety certificate method and system for Internet banking
CN103491533B (en)WAP gateway, user WAP terminals, WAP payment systems and method
CN102694781A (en)Internet-based system and method for security information interaction
CN102611702B (en)A kind of system and method ensureing safety of network trade
CN101221641A (en)On-line trading method and its safety affirmation equipment
CN112883435A (en)Method and equipment for realizing safe communication with intelligent contract
CN105809433A (en)Online banking transaction method
CN115022047A (en)Account login method and device based on multi-cloud gateway, computer equipment and medium
CN101321066B (en)Information safety device for internetwork communication
TWM642599U (en)identity verification system
WO2023142436A1 (en)Authentication method and apparatus, payment method and apparatus, and device
CN102968722A (en)Method and system for transaction confirmation
CN106302344B (en)Security sweep method and system

Legal Events

DateCodeTitleDescription
C06Publication
PB01Publication
C10Entry into substantive examination
SE01Entry into force of request for substantive examination
ASSSuccession or assignment of patent right

Owner name:PUTIAN IT TECH INST CO., LTD.

Free format text:FORMER OWNER: CHINA POTEVIO CO., LTD.

Effective date:20130306

Owner name:CHINA POTEVIO CO., LTD.

Free format text:FORMER OWNER: PUTIAN IT TECH INST CO., LTD.

Effective date:20130304

C41Transfer of patent application or patent right or utility model
TA01Transfer of patent application right

Effective date of registration:20130306

Address after:100080 Beijing, Haidian, North Street, No. two, No. 6, No.

Applicant after:PETEVIO INSTITUTE OF TECHNOLOGY Co.,Ltd.

Address before:100080, No. two, 2 street, Zhongguancun science and Technology Park, Beijing, Haidian District

Applicant before:CHINA POTEVIO CO.,LTD.

Effective date of registration:20130304

Address after:100080, No. two, 2 street, Zhongguancun science and Technology Park, Beijing, Haidian District

Applicant after:CHINA POTEVIO CO.,LTD.

Address before:100080 Beijing, Haidian, North Street, No. two, No. 6, No.

Applicant before:PETEVIO INSTITUTE OF TECHNOLOGY Co.,Ltd.

C14Grant of patent or utility model
GR01Patent grant
CF01Termination of patent right due to non-payment of annual fee

Granted publication date:20131120

CF01Termination of patent right due to non-payment of annual fee

[8]ページ先頭

©2009-2025 Movatter.jp