Detailed description of the invention
Below in conjunction with the accompanying drawing in the embodiment of the present invention, the technical scheme in the embodiment of the present invention is clearly and completely described, it is clear that retouchedThe embodiment stated is only a part of embodiment of the present invention rather than whole embodiments.Based on embodiments of the invention, ordinary skill peopleThe every other embodiment that member is obtained under not making creative work premise, broadly falls into protection scope of the present invention.
In describing the invention, it is to be understood that term " " center ", " longitudinally ", " laterally ", " on ", D score, "front", "rear", " left ",The orientation of the instruction such as " right ", " vertically ", " level ", " top ", " end ", " interior ", " outward " or position relationship are to close based on orientation shown in the drawings or positionSystem, be for only for ease of describe the present invention and simplifying describe rather than instruction or the hint device of indication or element must have specific orientation, withSpecific azimuth configuration and operation, be therefore not considered as limiting the invention.Additionally, term " first ", " second " are only used for describing purpose,And it is not intended that indicate or imply relative importance or quantity or position.
In describing the invention, it should be noted that unless otherwise clearly defined and limited, term " is installed ", " being connected ", " connection " should doBroadly understood, connect for example, it may be fixing, it is also possible to be to removably connect, or be integrally connected;Can be to be mechanically connected, it is also possible to be electricityConnect;Can be to be joined directly together, it is also possible to be indirectly connected to by intermediary, can be the connection of two element internals.Common for this areaFor technical staff, above-mentioned term concrete meaning in the present invention can be understood with concrete condition.
Below in conjunction with accompanying drawing, the embodiment of the present invention is described in further detail.
The invention provides the framework of a kind of data interaction, both facilitate user to carry to provide, and the trading solution that safety is higher.These dataInterworking architecture includes: simulation card, cutting ferrule and Truth cards manager.
Wherein:
Simulation card, can include one or more, and this simulation card can be that separately fabricated card can also be for being reserved with simulation card functionTruth cards.This simulation card is identical with existing bank card dimensions, in notebook data interworking architecture, substitutes Truth cards and completes transaction.SimulationCard has contact and/or non-contact interface, in order to coordinate existing transaction terminal (such as ATM, POS, mass transit card top-up machines etc.)Complete transaction.Simulation card also has wave point, and simulation card can carry out data interaction by this wave point and cutting ferrule.Wherein, contactInterface can be contact etc., and non-contact interface can be NFC interface etc., and this wave point can be blue tooth interface, infrared interface, 2.4GHzInterface, WIFI interface, RFID interface etc..
Cutting ferrule, can include one or more cutting ferrule, and this cutting ferrule can manage one or more simulation card, and every simulation card can only belong to oneIndividual cutting ferrule is also managed by it.This cutting ferrule can be the separately fabricated equipment for card envelope shape, it is also possible to for having the card provided in notebook data frameworkThe mobile device of set function, including: smart mobile phone, panel computer (PAD), PDA (such as palm PC, learning machine), notebook computer,E-book reading device, wearable device (such as intelligent wristwatch, intelligent glasses etc.) etc..Cutting ferrule can have contact and/or non-contact interface,To coordinate the contact of simulation card and/or non-contact interface to carry out data interaction, cutting ferrule can also have wave point, in order to wireless by thisInterface carries out data interaction with the simulation corresponding interface of card, and wherein, contact interface can be contact etc., and non-contact interface can be NFCInterface etc., this wave point can be blue tooth interface, infrared interface, 2.4GHz interface, WIFI interface, RFID interface etc.;Cutting ferrule also has netNetwork interface, in order to carrying out data interaction by this network interface network interface corresponding with Truth cards manager, wherein, this network interface can beWIFI interface, mobile interchange network interface (such as 3G, 4G network) etc..It addition, cutting ferrule can also be the group of mobile device and electronic signature equipmentClosing, wherein the network interface of cutting ferrule realizes by means of the network interface of mobile device, other interfaces (such as wave point, contact and/or noncontactFormula interface etc.) can be respectively positioned in electronic signature equipment, or these other interfaces can also be respectively positioned in mobile device, or in the middle part of these other interfacesTap mouth is positioned in electronic signature equipment, and part of interface is positioned in mobile device;The process operation that cutting ferrule performs all performs in electronic signature equipment;Cutting ferrule can moreover be only electronic signature equipment.Wherein, electronic signature equipment can be key equipment, such as industrial and commercial bank's U-shield, and agricultural bank K is precious.
Truth cards manager, can manage multiple cutting ferrule, and this Truth cards manager have multiple contact (such as draw-in groove etc.) interface and/Or contactless (such as NFC etc.) interface, to facilitate Truth cards manager can connect different types of Truth cards by different modes,Wherein, Truth cards manager is connected with at least one Truth cards, and storage has Truth cards manager end Truth cards information list, trulyCard management device end Truth cards information list includes the Truth cards information of the Truth cards being connected with Truth cards manager, this Truth cards informationMay include that the information such as card number, card authentication information, this card authentication information is whether certification Truth cards is regular channel (such as bank, public affairsHand over to the collective or the state department etc.) card image issued;This Truth cards can be function card (such as mass transit card, mess card, purchase card, member card, accumulating card etc.)Or the bank card that bank issues;Optionally, what Truth cards manager could be arranged to preserve in connected Truth cards is all or part of trueThe Truth cards information of real card, in order to user makes different setting according to the security requirement of Truth cards, such as, can manage at Truth cardsThe Truth cards information not allowing to obtain some Truth cards is set on device, thus ensures the safety of these Truth cards.Truth cards manager is alsoThere is network interface, in order to carrying out data interaction by this network interface network interface corresponding with cutting ferrule, wherein, this network interface can be WIFIInterface, mobile interchange network interface (such as 3G, 4G network) etc..
In notebook data interworking architecture, simulation card and Truth cards are smart chip card.
Hereinafter, the term in the present invention is illustrated:
First process includes: encryption, and the second process includes: decryption processing;Specifically, simple encryption ensures data transmission security, is treatingWhen transmission data security levels requires higher, can process to use this kind of mode.Or
First process includes: verification calculating processes, and the second process includes: verification verifies that calculating processes;Specifically, simple verification ensures data transmissionIntegrity, prevents from distorting, and when treating integrity of data transmission requirement and being higher, can process to use this kind of mode.Or
First process includes: encrypts and verifies calculating and process, and the second process includes: deciphers and verifies checking calculating and process.Specifically, encryption is usedEnsure data transmission security and complete with verification hybrid mode, when data security levels to be transmitted is required the highest, can carry out to use this kind of modeProcess.
Based on above-mentioned data interaction framework, the present invention provides a kind of data interactive method, by this data interactive method, it is possible to achieve cutting ferrule is with trueData interaction between card management device, to provide a kind of novel user that both facilitates to carry, and the trading solution that safety is higher.
Fig. 1 shows the flow chart of the data interactive method that the embodiment of the present invention provides, and sees Fig. 1, the data interactive method of the present invention, including:
Cutting ferrule performs bindings with Truth cards manager, and wherein, Truth cards manager is connected with at least one Truth cards, and storage hasTruth cards manager end Truth cards information list, Truth cards manager end Truth cards information list includes being connected with Truth cards managerThe Truth cards information of Truth cards;
Secure connection set up by cutting ferrule and Truth cards manager, it is thus achieved that carry out the cutting ferrule end the of Security Data Transmission between cutting ferrule and Truth cards managerTwo safe transmission keys and Truth cards manager end safe transmission key;
Cutting ferrule obtains cutting ferrule end Truth cards information list, and wherein, cutting ferrule end Truth cards information list is the true of acquisition from Truth cards managerReal card management device end Truth cards information list;
Cutting ferrule prompting cutting ferrule end Truth cards information list;
Cutting ferrule receives Truth cards and selects instruction, determines the Truth cards chosen;
Cutting ferrule utilizes cutting ferrule end the second safe transmission pending data of double secret key to send to true card management device after carrying out the first process;
Truth cards manager receives the data that cutting ferrule sends, and the data utilizing Truth cards manager end safe transmission double secret key to receive carry out theSend to the Truth cards chosen after two process;
The Truth cards chosen receives the data that Truth cards manager end sends, and the data that will obtain after processing after processing send to truly blockingSheet manager;
Truth cards manager receives the data that the Truth cards chosen sends, and utilizes Truth cards manager end safe transmission double secret key to receiveData send to cutting ferrule after carrying out the first process.
Hereinafter, for above-mentioned data interactive method, being described in detail, specifically, this data interactive method can comprise the following aspects:
One, binding:
Cutting ferrule and Truth cards manager execution bindings:
In the present invention, cutting ferrule can be bound in the following way with Truth cards manager:
Cutting ferrule and Truth cards manager mutual authentication the other side's certificate and the other side's identity, and after all certification is passed through both sides, each it is stored in verification processThe binding factor of middle generation.
Below, it is provided that a kind of cutting ferrule and the specific implementation of Truth cards manager execution bindings:
Fig. 2 shows that in the data interactive method that the embodiment of the present invention provides, cutting ferrule and Truth cards manager perform the flow chart of bindings, seeFig. 2, cutting ferrule and Truth cards manager execution bindings include:
Cutting ferrule reception carries out the trigger command bound for instruction and Truth cards manager;Specifically, before cutting ferrule uses, can be in advance to cardSet performs power-on operation, and now, optionally, cutting ferrule prompting user inputs startup password, and receives the startup password that user inputs, and checking user is defeatedThe correctness of the startup password entered, after the startup password of checking user's input is correct, performs power-on operation, and card covers into mode of operation.UsingBefore cutting ferrule and Truth cards manager carry out data interaction, optionally, cutting ferrule is bound with Truth cards manager, to improve follow-up dataMutual safety.Wherein, the trigger command being used for indicating cutting ferrule and Truth cards manager to carry out binding that cutting ferrule receives can be to be provided separately withinThe binding physical button that card puts generates, or can be that the binding virtual key on the touch screen of cutting ferrule generates, or can be that startup password is testedGenerate after card is correct, or can be the menu of display to select binding function to generate, it is, of course, also possible to be that other are any on cutting ferrule screenMode generates, and is not the most restricted.
Cutting ferrule to Truth cards manager send second binding instruction, wherein, second binding instruction includes: cutting ferrule generate the 3rd binding random factor,Cutting ferrule certificate and cutting ferrule uniquely identify;Specifically, cutting ferrule can wirelessly (such as mobile network, WIFI etc.) to Truth cards pipeReason device sends the second binding instruction.Second binding instruction is carried the 3rd binding random factor and is possible to prevent Replay Attack, the second binding instruction is carriedCutting ferrule certificate, so that cutting ferrule is authenticated by Truth cards manager, carries cutting ferrule in the second binding instruction and uniquely identifies so that Truth cards manager obtainsKnow which cutting ferrule is bound with it;Wherein, the 3rd binding random factor can be random number, random character or a combination thereof that cutting ferrule generates, certainly,Generate the 3rd binding random factor after, it is also possible to the 3rd binding random factor randomness verify, with improve the 3rd binding random factor withMachine, prevents from being cracked;It can be that cutting ferrule serial number, EIC equipment identification code, MAC Address etc. are arbitrary or a combination thereof is with unique mark that cutting ferrule uniquely identifiesKnow the mark of cutting ferrule.
Truth cards manager receives the second binding instruction, utilizes root certificate to verify cutting ferrule certificate;Specifically, Truth cards manager is in advanceStorage root certificate, utilizes this root certificate to complete the checking to cutting ferrule certificate, to ensure the safety of follow-up use cutting ferrule certificate.
After Truth cards manager checking cutting ferrule certificate is legal, generate the 4th binding random factor;Specifically, the 4th binding random factor can be trueRandom number, random character or a combination thereof that real card management device generates;Certainly, after generating the 4th binding random factor, it is also possible to the 4th bindingThe randomness of random factor is verified, to improve the randomness of the 4th binding random factor, prevents from being cracked.
Truth cards manager utilizes the cutting ferrule PKI in cutting ferrule certificate that the 3rd binding random factor and the 4th binding random factor are encrypted and are obtainedObtain the second binding ciphertext, utilize Truth cards manager private key that the 3rd binding random factor and the 4th binding random factor are carried out signature acquisition the 3rdBinding signature;Specifically, Truth cards manager utilize cutting ferrule PKI to the 3rd binding random factor and the 4th binding random factor be encrypted withEnsureing the 3rd binding random factor and the safety of the 4th binding random factor transmission, Truth cards manager utilizes Truth cards manager private key pair3rd binding random factor and the 4th binding random factor are signed, to ensure that follow-up cutting ferrule can be to the legitimacy of Truth cards manager identityIt is authenticated.
Truth cards manager sends the second binding response to cutting ferrule, and wherein, the second binding response includes: second binding ciphertext, the 3rd binding signature,Truth cards manager certificate and Truth cards manager uniquely identify;Specifically, the second binding response that Truth cards manager sends is carriedTruth cards manager certificate, so that Truth cards manager is authenticated by cutting ferrule, carries Truth cards manager and uniquely identifies in the second binding responseSo that cutting ferrule knows which Truth cards manager is bound with it;Wherein, Truth cards manager uniquely identifies can be Truth cards manager sequenceNumber, EIC equipment identification code, MAC Address etc. are arbitrary or a combination thereof is with unique mark identifying Truth cards manager.
Cutting ferrule receives the second binding response, utilizes root certificate to verify Truth cards manager certificate;Specifically, cutting ferrule prestores root certificate,This root certificate is utilized to complete the checking to Truth cards manager certificate, to ensure the safety of follow-up use Truth cards manager certificate.
After cutting ferrule checking Truth cards manager certificate is legal, utilize cutting ferrule private key that the second binding ciphertext is decrypted, it is thus achieved that the 3rd binding RANDOM SOLUTIONThe close factor and the 4th binding decryption random factor;Specifically, cutting ferrule private key is utilized to be decrypted, the second binding ciphertext if sent out in the data transmissionGiven birth to data transmission fault, or there occurs in the data transmission and distort, then will cause cannot successful decryption, or the 3rd binding decrypted is randomDecryption factor and the 4th binding decryption random factor are different from the 3rd binding random factor and the 4th binding random factor.And entered by cutting ferrule PKIRow encryption, only cutting ferrule private key can be with successful decryption, thus it is also ensured that the safety of data deciphering.
Cutting ferrule utilizes the Truth cards manager PKI in Truth cards manager certificate, the 3rd binding decryption random factor and the 4th binding RANDOM SOLUTIONClose factor pair the 3rd binding signature is verified;Specifically, cutting ferrule utilizes the Truth cards manager PKI after being verified to Truth cards managerThe signature sent is verified, to guarantee the legitimate origin of data.
After cutting ferrule checking the 3rd binding signature is correct, checking the 3rd binding decryption random factor is the most identical with the 3rd binding random factor;Specifically,The 3rd binding random factor and the 3rd binding decryption random factor that cutting ferrule checking generates self are identical, it is ensured that data are also not tampered with, and encryptionData Source really for cutting ferrule send the 3rd binding random factor object.
After cutting ferrule checking the 3rd binding decryption random factor is identical with the 3rd binding random factor, prompting Truth cards manager uniquely identifies;Specifically,Cutting ferrule can show that Truth cards manager uniquely identifies, it is also possible to speech play (such as loudspeaker are play or by headset earpiece broadcasting etc.) is trueCard management device uniquely identifies, in order to the verity of Truth cards manager is confirmed by user, improves binding safety.
Cutting ferrule receives for confirming that Truth cards manager uniquely identifies correct trigger command, utilize cutting ferrule private key to the 3rd binding random factor andThe 4th binding decryption random factor is signed, it is thus achieved that the 4th binding signature, and storage Truth cards manager uniquely identifies, Truth cards managementDevice certificate and cutting ferrule end the second binding factor are to cutting ferrule end the second list of bindings, and wherein, cutting ferrule end the second binding factor is the 4th binding decryption randomThe factor;Specifically, what cutting ferrule received can be to be provided separately within what card put for confirming that Truth cards manager uniquely identifies correct trigger commandConfirm what physical button generated, or can be confirming in virtual key generation, or the menu shown on cutting ferrule screen on the touch screen of cutting ferruleSelect to confirm what function generated, or can be after the voice that the voice acquisition device (such as Mike) of cutting ferrule receives confirms to indicate and be verifiedShi Shengcheng's, or can be that the fingerprint acquisition device of cutting ferrule receives and generates after fingerprint identification indicates and is verified, or can be cutting ferruleIris collection device receives generation after iris confirms instruction and is verified, it is, of course, also possible to generate for other any modes, in the present inventionIn be not restricted;Cutting ferrule private key is utilized to sign so that follow-up Truth cards to the 3rd binding random factor and the 4th binding decryption random factorThe identity of cutting ferrule is authenticated by manager;Certainly, cutting ferrule can also store cutting ferrule end the second list of bindings, and this cutting ferrule end second list of bindings is used forThe relevant information of Truth cards manager of record and cutting ferrule binding, such as: Truth cards manager uniquely identifies, Truth cards manager certificate etc.,It addition, cutting ferrule end the second list of bindings is additionally operable to store cutting ferrule end the second binding factor, this cutting ferrule end second binding factor is that the 4th of ciphertext transmission is tied upDetermining random factor, be ciphertext transmission based on the 4th binding random factor, therefore, this cutting ferrule end second binding factor is safety and is not tampered with.
Cutting ferrule sends the 4th binding signature to Truth cards manager;Specifically, cutting ferrule sends the 4th binding signature to Truth cards manager, in order toCutting ferrule identity is authenticated by Truth cards manager.
Truth cards manager receive the 4th binding signature, utilize the cutting ferrule PKI in cutting ferrule certificate, the 3rd binding random factor and the 4th binding withMachine factor pair the 4th binding signature is verified;Specifically, Truth cards manager utilizes the signature that cutting ferrule is sent by the cutting ferrule PKI after being verifiedVerify, to guarantee the legitimate origin of data.
After Truth cards manager checking the 4th binding signature is correct, storage cutting ferrule uniquely identifies, cutting ferrule certificate and the binding of Truth cards manager endThe factor is to true card management device end list of bindings, and wherein, Truth cards manager end binding factor is the 4th binding random factor.Specifically, veryReal card management device can also store Truth cards manager end list of bindings, and this Truth cards manager end list of bindings is for record and Truth cardsThe relevant information of cutting ferrule of manager binding, such as: cutting ferrule uniquely identifies, cutting ferrule certificate etc., it addition, Truth cards manager end list of bindings is alsoFor storing Truth cards manager end binding factor, this Truth cards manager end binding factor be Truth cards manager generate the 4th binding withThe machine factor.
As can be seen here, bind based on above-mentioned cutting ferrule and Truth cards manager, it is ensured that data between follow-up cutting ferrule and Truth cards managerMutual safety.
Two, secure connection is set up:
Secure connection set up by cutting ferrule and Truth cards manager, it is thus achieved that carry out the cutting ferrule end the of Security Data Transmission between cutting ferrule and Truth cards managerTwo safe transmission keys and Truth cards manager end safe transmission key:
In the present invention, cutting ferrule and Truth cards manager can set up secure connection in the following way:
Mode one, cutting ferrule and Truth cards manager mutual authentication the other side identity again (such as mutual authentication the other side signed data), and the most mutualMutually during certification the other side identity, the binding factor comparing both sides' storage is the most identical, identical and the most mutual at the binding factor of relatively both sides storageAfter certification the other side identity is passed through mutually, generate safe transmission key (the cutting ferrule end second carrying out Security Data Transmission between cutting ferrule and Truth cards managerSafe transmission key and Truth cards manager end safe transmission key).
Hereinafter, the one of presentation mode one of the present invention implements:
Fig. 3 shows that in the data interactive method that the embodiment of the present invention provides, the flow process of safe connection mode one set up by cutting ferrule and Truth cards managerFigure, sees Fig. 3, and cutting ferrule is set up secure connection with Truth cards manager and included:
Cutting ferrule sends the 3rd secure connection instruction setting up secure connection for instruction, wherein, the 3rd secure connection instruction bag to Truth cards managerInclude: cutting ferrule utilize Truth cards manager PKI in Truth cards manager certificate to the 5th connection of cutting ferrule end the second binding factor and generation withThe machine factor is encrypted the 5th connection ciphertext of acquisition, and cutting ferrule utilizes cutting ferrule private key to enter cutting ferrule end the second binding factor and the 5th connection random factorThe 5th connection signature that row signature obtains;Specifically, before using cutting ferrule to carry out data interaction with Truth cards manager, optionally, at cutting ferruleAnd set up secure connection between Truth cards manager, the safety mutual to improve follow-up data.Wherein, what cutting ferrule received is used for indicating foundation peaceComplete the 3rd secure connection instruction connected can be to be provided separately within the connection physical button generation that card puts, or can be on the touch screen of cutting ferruleConnect what virtual key generated, or can be that start-up password verification generates the most afterwards, or can be that cutting ferrule is stepped on to the transmission of Truth cards managerGenerate during record request, or can be the menu of display to select linkage function to generate on cutting ferrule screen.It is, of course, also possible to be that other are anyMode generates, and is not the most restricted.Wherein, the 5th connect random factor can be cutting ferrule generation random number, random character or itsCombination, certainly, after generating the 5th connection random factor, it is also possible to verify the 5th randomness connecting random factor, to improve the 5th evenConnect the randomness of random factor, prevent from being cracked;Specifically, cutting ferrule utilizes Truth cards manager PKI to cutting ferrule end the second binding factor andFive connect random factor is encrypted to ensure the safety that cutting ferrule end the second binding factor and the 5th connects random factor transmission, and cutting ferrule utilizes cutting ferrulePrivate key connects random factor to cutting ferrule end the second binding factor and the 5th and signs, to ensure that follow-up Truth cards manager can be to cutting ferrule identityLegitimacy be authenticated.Cutting ferrule end the second binding factor is sent to true card management device, in order to follow-up Truth cards manager is to cutting ferrule end theBinding factor that whether two binding factors store with it is identical to be judged, thus judges whether this cutting ferrule is bound with this Truth cards manager.Optionally, before this step, after cutting ferrule detects Truth cards manager, cutting ferrule may determine that whether Truth cards manager is at cutting ferrule endIn two list of bindings, such as: can judge in the following way: be fastened in after Truth cards manager being detected, Truth cards manager is receivedThe Truth cards manager information (such as Truth cards manager uniquely identify and/or Truth cards manager certificate etc.) sent, according to receiveTruth cards manager information, it is judged that whether this Truth cards manager is in cutting ferrule end the second list of bindings;And/or can also be managed by Truth cardsDevice judge cutting ferrule whether in Truth cards manager end list of bindings, such as: can judge in the following way: be fastened in and true card detectedAfter sheet manager, cutting ferrule information (such as cutting ferrule uniquely identify and/or cutting ferrule certificate etc.) is sent to true card management device, Truth cards managerAccording to the cutting ferrule information received, it is judged that whether this cutting ferrule is in Truth cards manager end list of bindings;Only judging the other side's binding at selfAfter in list, just perform follow-up flow process, optimize flow process, improve efficiency.
Truth cards manager receives the 3rd secure connection instruction, utilizes Truth cards manager private key to connect ciphertext to the 5th and is decrypted, it is thus achieved that cardSet end second is bound decryption factor and the 5th and is connected the decryption random factor;Specifically, utilize Truth cards manager private key to connect ciphertext to the 5th to enterRow deciphering, if there occurs data transmission fault in the data transmission, or there occurs in the data transmission and distorts, then will cause cannot successful decryption,Or the cutting ferrule end second decrypted binds decryption factor and the 5th connection decryption random factor is connected with cutting ferrule end the second binding factor and the 5thRandom factor is different.And be encrypted by Truth cards manager PKI, only Truth cards manager private key with successful decryption, thus can also may be usedTo ensure the safety of data deciphering.
Truth cards manager utilizes the cutting ferrule PKI in cutting ferrule certificate, cutting ferrule end second to bind decryption factor and the 5th connection decryption random factor pair5th connects signature verifies;Specifically, the signature that Truth cards manager utilizes cutting ferrule PKI to send cutting ferrule is verified, to guarantee dataLegitimate origin.
After Truth cards manager checking the 5th connection signature is correct, checking cutting ferrule end second bind decryption factor and the binding of Truth cards manager end because ofSon is the most identical;Specifically, Truth cards manager also verifies that the cutting ferrule end second decrypted binds decryption factor with Truth cards manager the most certainlyThe Truth cards manager end binding factor of body storage is the most identical, if identical, then illustrate that this is fastened in and connects with Truth cards manager foundation safetyBefore connecing, having been completed the operation of binding, based on this, Truth cards manager may determine that whether cutting ferrule is tied up with Truth cards managerFixed.
Truth cards manager checking cutting ferrule end second bind decryption factor identical with Truth cards manager end binding factor after, generate the 6th connect withThe machine factor;Specifically, the 6th connection random factor can be random number, random character or a combination thereof that Truth cards manager generates, certainly,Generate the 6th connection random factor after, it is also possible to the 6th connect random factor randomness verify, with improve the 6th connection random factor withMachine, prevents from being cracked.
Truth cards manager utilizes the cutting ferrule PKI in cutting ferrule certificate to connect the decryption random factor to the 5th and the 6th connection random factor addsClose acquisition the 6th connects ciphertext, utilizes Truth cards manager private key to connect the decryption random factor to the 5th and the 6th connection random factor is signedObtain the 6th connection signature;Specifically, Truth cards manager utilize cutting ferrule PKI to the 5th connect the decryption random factor and the 6th connect random because ofSon is encrypted to ensure the safety that the 5th connection decryption random factor and the 6th connects random factor transmission, and Truth cards manager utilizes trueCard management device private key connects the decryption random factor to the 5th and the 6th connection random factor is signed, to ensure that follow-up cutting ferrule can be to true cardThe legitimacy of sheet manager identity is authenticated.
Truth cards manager sends the 3rd secure connection response to cutting ferrule, and wherein, the 3rd secure connection response includes: the 6th connects ciphertext and theSix connect signature;Specifically, Truth cards manager connects the 6th ciphertext and the 6th and connects signature and send to cutting ferrule, in order to cutting ferrule is to receivingData are decrypted and verify.
Cutting ferrule receives the 3rd secure connection response, utilizes cutting ferrule private key to connect ciphertext to the 6th and is decrypted, it is thus achieved that the 5th connection RANDOM SOLUTION after decipheringThe close factor and the 6th connects the decryption random factor;Specifically, utilize cutting ferrule private key to connect ciphertext to the 6th to be decrypted, if sent out in the data transmissionGiven birth to data transmission fault, or there occurs in the data transmission and distort, then will cause cannot the 5th connection after successful decryption, or deciphering randomIt is different from the 5th connection random factor and the 6th connection random factor that decryption factor connects the decryption random factor with the 6th.And added by cutting ferrule PKIClose, only cutting ferrule private key can be with successful decryption, thus it is also ensured that the safety of data deciphering.
Cutting ferrule utilizes the 5th connection decryption random factor and the 6th connection after the Truth cards manager PKI in Truth cards manager certificate, decipheringDecryption random factor pair the 6th connects signature and verifies;Specifically, cutting ferrule utilizes Truth cards manager PKI to send Truth cards managerSignature is verified, to guarantee the legitimate origin of data.
After cutting ferrule checking the 6th connection signature is correct, it is the most identical that the 5th connection decryption random factor after checking deciphering is connected random factor with the 5th;Specifically, the 5th connection random factor that cutting ferrule checking self generates is identical with the 5th connection decryption random factor after deciphering, it is ensured that data are alsoIt is not tampered with, and the Data Source of encryption sends the object of the 5th connection random factor really for cutting ferrule.
Cutting ferrule checking deciphering after the 5th connection the decryption random factor with the 5th connect random factor identical after, at least with the 6th connection decryption random because ofSon generates cutting ferrule end the second safe transmission key between cutting ferrule and Truth cards manager;Truth cards manager connects random factor at least with the 6thGenerate the Truth cards manager end safe transmission key between cutting ferrule and Truth cards manager.Specifically, cutting ferrule can utilize the 6th connection RANDOM SOLUTIONThe close factor generates cutting ferrule end the second safe transmission key between cutting ferrule and Truth cards manager, it is also possible to utilize the 5th connection random factor, the 6th companyConnect the decryption random factor and generate cutting ferrule end the second safe transmission key between cutting ferrule and Truth cards manager, it is also possible to utilize the 5th connection random because ofSon, the 6th connection decryption random factor and cutting ferrule end the second binding factor generate cutting ferrule end the second safe transmission between cutting ferrule and Truth cards managerKey;Same, Truth cards manager can also utilize the 6th connection random factor to generate the Truth cards pipe between cutting ferrule and Truth cards managerReason device end safe transmission key, it is also possible to utilize the 5th connection decryption random factor, the 6th connection random factor to generate cutting ferrule and Truth cards managerBetween Truth cards manager end safe transmission key, it is also possible to utilize the 5th connection decryption random factor, the 6th connect random factor and truly blockingSheet manager end binding factor generates the Truth cards manager end safe transmission key between cutting ferrule and Truth cards manager;If cutting ferrule and true cardSheet manager uses the algorithm that identical parameter is identical to generate safe transmission key.As can be seen here, in the present invention, safe transmission cryptographic key factorCan be the 6th connection decryption random factor at cutting ferrule end, or the 6th connects the decryption random factor and the 5th connection random factor;Safe transmission is closeThe key factor Truth cards manager end can be the 6th connect random factor, or the 6th connect random factor and the 5th connect decryption random because ofSon.It addition, safe transmission key can include encryption and decryption key and/or check key, use encryption and decryption key can participate in data transmission and can ensure thatThe safety of data transmission, uses check key to participate in data transmission and can ensure that the integrity that data are transmitted, in the present invention it is possible to according to transmissionThe safety grades of data optionally uses safe transmission key.
Certainly, in the present invention, Truth cards manager connects, at least with the 6th, the true card that random factor generates between cutting ferrule and Truth cards managerThe step of sheet manager end safe transmission key is not limited to the step in the manner one, it is also possible to Truth cards manager generate the 6th connection withTruth cards manager end safe transmission key is generated, it is also possible to the 5th connection decryption random factor after cutting ferrule checking deciphering is with the after the machine factorAfter five connection random factors are identical, after receiving the successful information that cutting ferrule sends, generate Truth cards manager end safe transmission key.
As can be seen here, the secure connection set up with Truth cards manager based on above-mentioned cutting ferrule, can improve the safety of data transmission.Meanwhile, alsoCan verify whether both sides are bound, further increase safety.
Additionally, the invention is not limited in that the foundation of secure connection initiated by above-mentioned cutting ferrule, it is also possible to triggered Truth cards manager by cutting ferrule and initiate safetyEstablishment of connection, now, is sent the 3rd secure connection by Truth cards manager and instructs to cutting ferrule, and other flow processs are contrary with above-mentioned flow implementation main bodyCan realize, this is no longer going to repeat them.
Mode two, cutting ferrule and Truth cards manager mutual authentication the other side identity again, and during mutual authentication the other side identity again, generate safetyTransmission cryptographic key factor, after mutual authentication the other side's identity is passed through, binding factor and safe transmission cryptographic key factor at least with storage generate cutting ferrule with trueSafe transmission key (cutting ferrule end the second safe transmission key and the Truth cards manager end safety of Security Data Transmission is carried out between real card management deviceTransmission key), and verify that the safe transmission key that both sides generate is the most identical.
Hereinafter, the one of presentation mode two of the present invention implements:
Fig. 4 shows that in the data interactive method that the embodiment of the present invention provides, the flow process of safe connection mode two set up by cutting ferrule and Truth cards managerFigure, sees Fig. 4, and cutting ferrule is set up secure connection with Truth cards manager and included:
The 7th connection random factor and Truth cards manager that the Truth cards manager that cutting ferrule reception Truth cards manager sends generates are uniqueMark;Specifically, the 7th connects random number, random character or a combination thereof that random factor can be the generation of Truth cards manager, certainly, is giving birth toAfter becoming the 7th connection random factor, it is also possible to the 7th randomness connecting random factor is verified, to improve the random of the 7th connection random factorProperty, prevent from being cracked.Before this step, Truth cards manager generates the 7th connection random factor, detects that this Truth cards manages at cutting ferruleAfter device, Truth cards manager connects random factor by the 7th and Truth cards manager uniquely identifies transmission to cutting ferrule.
Cutting ferrule sends the 4th secure connection instruction setting up secure connection for instruction, wherein, the 4th secure connection instruction bag to Truth cards managerInclude: cutting ferrule uniquely identifies, cutting ferrule utilizes the Truth cards manager PKI in Truth cards manager certificate to connect random factor and generation to the 7thThe 8th connection random factor be encrypted the 7th connection ciphertext, cutting ferrule of acquisition and utilize cutting ferrule private key to connect random factor and the 8th connection to the 7thRandom factor carries out the 7th connection signature that signature obtains;Specifically, before using cutting ferrule to carry out data interaction with Truth cards manager, optional, between cutting ferrule and Truth cards manager, set up secure connection, the safety mutual to improve follow-up data.Wherein, what cutting ferrule received is used forIt can be to be provided separately within the connection physical button generation that card puts that the 4th secure connection instruction of secure connection is set up in instruction, or can be cutting ferruleTouch screen on connect what virtual key generated, or can be that start-up password verification generates the most afterwards, or can be that cutting ferrule is to Truth cards pipeReason device generates when sending logging request, or can be to select linkage function to generate on cutting ferrule screen in the menu of display.It is, of course, also possible toGenerate for other any modes, be not the most restricted.Specifically, cutting ferrule utilizes Truth cards manager PKI to connect at random the 7th8th connection random factor of the factor and generation is encrypted to ensure the 8th connection random factor transmission of the 7th connection random factor and generationSafety, the 8th connection random factor that cutting ferrule utilizes cutting ferrule private key to connect random factor and generation to the 7th signs, with ensure follow-up veryThe legitimacy of cutting ferrule identity can be authenticated by real card management device.It addition, the 8th connect random factor can be cutting ferrule generation random number, withMachine character or a combination thereof, certainly, after generating the 8th connection random factor, it is also possible to the 8th randomness connecting random factor is verified, withImprove the randomness of the 8th connection random factor, prevent from being cracked;Optionally, before this step, it is unique that cutting ferrule receives Truth cards managerAfter mark, cutting ferrule uniquely can identify according to Truth cards manager judge Truth cards manager whether in cutting ferrule end the second list of bindings, onlyHave after judging that Truth cards manager is in cutting ferrule end the second list of bindings, just perform follow-up flow process, optimize flow process, improve efficiency.
Truth cards manager receives the 4th secure connection instruction, it is judged that cutting ferrule uniquely identifies whether in Truth cards manager end list of bindings;ToolBody ground, Truth cards manager uniquely identifies according to the cutting ferrule received, it is judged that whether this cutting ferrule is in Truth cards manager end list of bindings;OnlyHave after judging to be fastened in Truth cards manager end list of bindings, just perform follow-up flow process, optimize flow process, improve efficiency.
If cutting ferrule uniquely identifies in Truth cards manager end list of bindings, Truth cards manager utilizes Truth cards manager private key to the 7thConnect ciphertext to be decrypted, it is thus achieved that the 7th connects the decryption random factor and the 8th connects the decryption random factor;Specifically, Truth cards is utilized to manageDevice private key connects ciphertext to the 7th and is decrypted, if there occurs data transmission fault in the data transmission, or there occurs in the data transmission and distorts,Then will cause cannot successful decryption, or obtain the 7th connection the decryption random factor and the 8th connect the decryption random factor be connected with the 7th random because ofIt is different that son and the 8th connects random factor.And be encrypted by Truth cards manager PKI, only Truth cards manager private key can be successfulDeciphering, thus it is also ensured that the safety of data deciphering.
Truth cards manager utilizes the cutting ferrule PKI in cutting ferrule certificate, the 7th connects the decryption random factor and the 8th and connect decryption random factor pair theSeven connect signature verifies;Specifically, the signature that Truth cards manager utilizes cutting ferrule PKI to send cutting ferrule is verified, to guarantee dataLegitimate origin.
After Truth cards manager checking the 7th connection signature is correct, checking the 7th connection decryption random factor is connected random factor whether phase with the 7thWith;Specifically, it is identical that the 7th connection random factor and the 7th that Truth cards manager checking self generates connects the decryption random factor, it is ensured thatData are also not tampered with, and the Data Source of encryption sends the object of the 7th connection random factor really for Truth cards manager.
If the 7th to connect the decryption random factor identical with the 7th connection random factor, Truth cards manager utilizes Truth cards manager private key to theThe seven connection decryption random factors and the 8th connection decryption random factor carry out signature acquisition the 8th connection and sign;Specifically, Truth cards manager profitWith Truth cards manager private key, the 7th connection decryption random factor and the 8th are connected the decryption random factor to sign, to ensure that follow-up cutting ferrule canIt is authenticated with the legitimacy to Truth cards manager identity.
Truth cards manager sends the 4th secure connection response to cutting ferrule, and wherein, the 4th secure connection response includes: the 8th connects signature;SpecificallyGround, Truth cards manager connects signature by the 8th and sends to cutting ferrule, in order to the data received are verified by cutting ferrule.
Cutting ferrule receives the 4th secure connection response, utilizes the Truth cards manager PKI in Truth cards manager certificate, the 7th connection random factorConnect random factor with the 8th the 8th connection signature is verified;Specifically, cutting ferrule utilizes Truth cards manager PKI to Truth cards managerThe signature sent is verified, to guarantee the legitimate origin of data.
After cutting ferrule checking the 8th connection signature is correct, connects random factor at least with the 8th and cutting ferrule end the second binding factor generates cutting ferrule with trueCutting ferrule end the second safe transmission key between card management device;Truth cards manager connects the decryption random factor and Truth cards at least with the 8thManager end binding factor generates the Truth cards manager end safe transmission key between cutting ferrule and Truth cards manager;Specifically, cutting ferrule can be in order toConnect random factor with the 8th and cutting ferrule end the second binding factor generate cutting ferrule end the second safe transmission key between cutting ferrule and Truth cards manager,The 7th connection random factor, the 8th connection random factor and cutting ferrule end the second binding factor can also be utilized to generate between cutting ferrule and Truth cards managerCutting ferrule end the second safe transmission key;Same, Truth cards manager can also utilize the 8th connection decryption random factor and Truth cards pipeReason device end binding factor generates the Truth cards manager end safe transmission key between cutting ferrule and Truth cards manager, it is also possible to utilize the 7th connection withThe machine factor, the 8th connection decryption random factor and Truth cards manager end binding factor generate the Truth cards between cutting ferrule and Truth cards managerManager end safe transmission key;As long as the algorithm that the parameter that cutting ferrule is identical with Truth cards manager employing is identical generates safe transmission key.As can be seen here, in the present invention, safe transmission cryptographic key factor cutting ferrule end can be the 8th connect random factor, or the 7th connect random factor withAnd the 8th connect random factor;Safe transmission cryptographic key factor can be the 8th connection decryption random factor at Truth cards manager end, or the 7th connectsConnect random factor and the 8th and connect the decryption random factor.It addition, safe transmission key can include encryption and decryption key and/or check key, use addsDecruption key can participate in data transmission and can ensure that the safety that data are transmitted, and uses check key to participate in data transmission and can ensure that what data were transmittedIntegrity, in the present invention it is possible to optionally use safe transmission key according to the safety grades of transmission data.
Cutting ferrule utilizes cutting ferrule end the second safe transmission double secret key the 7th to connect random factor and the 8th connection random factor carries out transmission after the first processTo true card management device;Truth cards manager utilizes Truth cards manager end safe transmission double secret key the 7th to connect the decryption random factor and theThe eight connection decryption random factors send to cutting ferrule after carrying out the first process;Specifically, both sides utilize the safe transmission data key of each self-generating to carry outSend to the other side after first process, in order to the other side verifies that the safe transmission key that both sides generate is the most identical.
Cutting ferrule receives the data that Truth cards manager sends, and the data utilizing cutting ferrule end the second safe transmission double secret key to receive are carried out at secondReason, compare the data after the second process be connected with the 7th random factor and the 8th connection random factor the most identical;Truth cards manager receiving cardOverlap the data sent, and the data utilizing Truth cards manager end safe transmission double secret key to receive carry out the second process, after comparing the second processData are connected the decryption random factor with the 7th and the 8th connection decryption random factor is the most identical.Specifically, both sides utilize the safety of each self-generating to passAfter the data that defeated double secret key receives carry out the second process, each compare the data after the second process the most identical with the data each sent, if phaseWith, then the safe transmission key that explanation both sides generate is identical, in order to ensure that the follow-up safe transmission key that can utilize each self-generating of both sides carries out dataSafe transmission.It addition, while the safe transmission key of checking both sides' generation is identical, it is also possible to the binding factor of checking each storage is identical, entersIt is real bound object that one step demonstrate,proves the other side, improves the safety of subsequent data transmission further.
Certainly, in the present invention, Truth cards manager generates the step of Truth cards manager end safe transmission key and is not limited in the manner twoStep, it is also possible to deciphering obtain the 8th connection the decryption random factor after generate Truth cards manager end safe transmission key, it is also possible at cutting ferruleChecking Truth cards manager send the 8th connection signature errorless after, receive cutting ferrule send successful information after generate Truth cards manager end safetyTransmission key;Cutting ferrule generates the step of cutting ferrule end the second safe transmission key and is also not limited to the step in the manner two, it is also possible to generate the at cutting ferruleEight connect generation cutting ferrule end the second safe transmission key after random factor.
As can be seen here, the secure connection set up with Truth cards manager based on above-mentioned cutting ferrule, can improve the safety of data transmission.Meanwhile, alsoCan verify whether both sides are bound, further increase safety.
Additionally, the invention is not limited in that the foundation of secure connection initiated by above-mentioned cutting ferrule, it is also possible to triggered Truth cards manager by cutting ferrule and initiate safetyEstablishment of connection, now, is sent the 4th secure connection by Truth cards manager and instructs to cutting ferrule, and other flow processs are contrary with above-mentioned flow implementation main bodyCan realize, this is no longer going to repeat them.
Three, Truth cards information list generates and updates:
1, Truth cards manager end Truth cards information list generates and updates:
Truth cards manager carries out the generation of Truth cards manager end Truth cards information list, certainly, the present invention not office in the following wayIt is limited to this:
The Truth cards that Truth cards manager pair is connected with Truth cards manager detects;Specifically, Truth cards manager is arranged on whichContact interface and/or non-contact interface detect, to determine whether that Truth cards is attached with Truth cards manager, can be successivelyDetected whether connected Truth cards, it is also possible to detected whether connected Truth cards simultaneously.Optionally, Truth cards managerCould be arranged to preserve the Truth cards information of all or part of Truth cards in connected Truth cards, in order to user is according to Truth cardsSecurity requirement make different setting, the Truth cards letter not allowing to obtain some Truth cards such as can be set on Truth cards managerBreath, thus ensure the safety of these Truth cards.
Truth cards manager after the Truth cards being connected with Truth cards manager being detected, obtain Truth cards Truth cards information, wherein,Truth cards information at least includes: card number;Specifically, Truth cards manager, when having detected that Truth cards is attached with it, reads and itThe Truth cards information of storage in the Truth cards connected, and finally obtain the Truth cards letter of the Truth cards being all connected with Truth cards managerBreath.Additionally, Truth cards information is except comprising card extra, it is also possible to the information such as issuer mark comprising card authentication information, Truth cards.
After Truth cards manager obtains the Truth cards information of Truth cards, generate Truth cards manager end Truth cards information list.Specifically,After Truth cards manager obtains the Truth cards information of connected Truth cards, generate Truth cards manager end Truth cards information rowTable, in order to follow-up cutting ferrule can obtain this Truth cards manager end Truth cards information list, facilitates follow-up use.Optionally, Truth cards pipeWhat reason device can get is, and user setup is the Truth cards information of Truth cards allowing to be acquired.
Additionally, Truth cards manager is in addition to generating Truth cards manager end Truth cards information list, also generate Truth cards manager end markKnow list, the mark in this Truth cards manager end identification list and the Truth cards information in Truth cards manager end Truth cards information listOne_to_one corresponding.Specifically, the mark in this Truth cards manager identification list can uniquely identify corresponding Truth cards, and this mark can be:(such as 1 represents and has Truth cards, and 0 represents without truly for the mark that shows whether to have Truth cards to connect at contact interface and/or non-contact interfaceCard), or this mark can be the issuer coding (when such as Truth cards is bank card, this is encoded to bank's coding) of Truth cards, trueThe tail number of the card number of card, Truth cards the information such as the check value (such as CRC check value etc.) of card number in one or its combination in any.VeryReal card management device generates this Truth cards manager end identification list, and follow-up cutting ferrule can be facilitated to carry out the renewal of Truth cards information list.
Certainly, Truth cards manager can detect and generate Truth cards manager end true after each Truth cards manager is started shooting the most againCard image list;Or can also be triggered true card by the function button (physical button or virtual key) that Truth cards manager providesAfter sheet detection, regenerate Truth cards manager end Truth cards information list;Or can also detect very at Truth cards manager every timeWhen real card carries out plugging or carrying out admission appearance, Truth cards information list performs to increase and/or delete the operation of Truth cards information.
Optionally, Truth cards manager could be arranged to preserve the Truth cards letter of all or part of Truth cards in connected Truth cardsBreath, in order to user according to the security requirement of Truth cards is made different setting, such as, can arrange on Truth cards manager and not allow to obtainThe Truth cards information of some Truth cards, thus ensure the safety of these Truth cards.
Specifically, contact interface and/or non-contact interface can be carried out subregion by Truth cards manager, according to the difference using safety coefficientIt is divided into conventional cards region and important card panel region.Such as: Truth cards less for the amounts of money involved such as the card with small amount of money of user, vice card, mass transit card is putPut in conventional cards region, and Truth cards bigger for the amounts of money involved such as the wholesale card of user, credit card main card is placed on important card panel region.
After Truth cards manager carries out subregion to contact interface and/or non-contact interface, can be to allowing to obtain the Truth cards of Truth cardsThe conventional cards region of information is read out, to obtain the Truth cards information of the Truth cards being attached in conventional cards region;And cannot be to notThe important card panel region obtaining the Truth cards information of Truth cards is allowed to be read out, it is impossible to obtain the true card being attached in important card panel regionThe Truth cards information of sheet.Thus, the Truth cards manager end Truth cards information list that Truth cards manager generates can only be included in commonThe Truth cards information of the Truth cards that card panel region connects, cutting ferrule can obtain the Truth cards letter of the Truth cards connected in conventional cards regionBreath, it is impossible to obtain the Truth cards information of Truth cards connected in important card panel region, such as: the Truth cards in conventional cards region forCutting ferrule is visible, and cutting ferrule can directly be attached using;Truth cards in important card panel region is invisible for cutting ferrule, and cutting ferrule cannotDirectly it is attached using, as the Truth cards in important card region need to be attached use, then needs a pair to be in the following way somebody's turn to doCard in important card panel region is configured, in order to cutting ferrule can be attached making with all or part of Truth cards in this important card panel regionWith:
Mode one, user are after input login password, and cutting ferrule only has the authority that the whole Truth cards in conventional cards region are attached use,Not there is the authority that the Truth cards in important card region is attached use, as being attached making to the Truth cards in important card regionWith, then physical button can be set on Truth cards manager or virtual key is set on Truth cards manager or at Truth cardsFunction menu is set on manager, in order to user can arrange cutting ferrule on Truth cards manager and carry out the Truth cards in important card region evenConnect the authority of use.Such as: user can press the option in physical button, virtual key or function menu manually, starts cardSet is attached the authority used to all or part of Truth cards in this important card panel region, so that cutting ferrule can be with this important card sectionIn territory, the Truth cards of open authority is attached using.
Mode two, user are after input login password, and cutting ferrule only has the authority that the whole Truth cards in conventional cards region are attached use,Not there is the authority that the Truth cards in important card region is attached use, as being attached making to the Truth cards in important card regionWith, then client can be set on Truth cards manager, or arrange be connected with Truth cards manager control terminal (such as: PC,Smart mobile phone, panel computer etc.), and client is set in control terminal, user carries out priority assignation by logging in client, with open or passClose the authority that all or part of Truth cards in important card region is attached using by cutting ferrule, in order to make the cutting ferrule can be with this important cardIn region, the Truth cards of open authority is attached using.
Mode three, user are after input login password, and cutting ferrule only has the authority that the whole Truth cards in conventional cards region are attached use,Not there is the authority that the Truth cards in important card region is attached use, as being attached making to the Truth cards in important card regionWith, then web-privilege password Web can be set on Truth cards manager, Truth cards manager can be initiated priority assignation by cutting ferrule by user asks,Truth cards manager is only receiving priority assignation request and is receiving the web-privilege password Web of user's input, and close in the authority of checking user's inputAfter code is correct, just with open or close cutting ferrule, all or part of Truth cards in important card region can be attached the authority of use, in order toMake cutting ferrule can be attached using by the Truth cards of open authority with in this important card panel region.Wherein, web-privilege password Web and login password and reportAlert password is different.Certainly, if the web-privilege password Web of Truth cards manager checking user's input is incorrect, the most do not perform in important card regionAll or part of Truth cards is attached the setting of the authority used.
2, cutting ferrule end Truth cards information list updates:
In the present invention, the cutting ferrule end Truth cards information list that cutting ferrule obtains is that the Truth cards manager end obtained from Truth cards manager is trueCard image list.
Cutting ferrule end Truth cards information list updates and can include following manner:
After mode one, cutting ferrule log in Truth cards manager, Truth cards manager judges whether to need to carry out cutting ferrule end Truth cards information listUpdate and operate:
A kind of implementation of mode one presented below:
Cutting ferrule end identification list searched by cutting ferrule;Specifically, cutting ferrule end identification list is the Truth cards management that cutting ferrule obtains from Truth cards managerDevice end identification list.
If cutting ferrule finds cutting ferrule end identification list, then after utilizing cutting ferrule end the second safe transmission double secret key cutting ferrule end identification list to carry out the first processSending to true card management device, Truth cards manager receives the data that cutting ferrule sends, utilizes Truth cards manager end safe transmission key to dockAfter the data received carry out the second process, it is judged that the Truth cards manager end identification list that the data after the second process store with Truth cards managerIt is the most identical, if it is not the same, then Truth cards manager utilizes Truth cards manager end safe transmission double secret key to update instruction and more new data entersRow first sends to cutting ferrule after processing, and cutting ferrule receives the data that Truth cards manager sends, and utilizes cutting ferrule end the second safe transmission double secret key to receiveTo data carry out the second process after, update cutting ferrule end Truth cards information list;Specifically, update cutting ferrule end Truth cards information list can lead toCross following manner to carry out: the renewal instruction that Truth cards manager sends includes increasing and/or deleting instruction, and more new data packets includes needs to be increased or deleteThe Truth cards information removed, is fastened in after receiving renewal instruction and more new data, believes cutting ferrule end Truth cards according to updating instruction and more new dataBreath list performs to increase and/or deletion action;Or the renewal instruction that Truth cards manager sends includes increasing and/or deleting instruction, more new dataIncluding the mark that the Truth cards information needing increase Truth cards information or needs to delete is corresponding, it is fastened in and receives renewal instruction and more new dataAfter, perform to increase and/or deletion action to cutting ferrule end Truth cards information list according to updating instruction and more new data;Or, Truth cards managerThe renewal instruction sent includes replacement instruction, and more new data packets includes up-to-date Truth cards manager end Truth cards information list, is fastened in and receivesAfter updating instruction and more new data, according to updating instruction and more new data, cutting ferrule end Truth cards information list is performed replacement operation.
If cutting ferrule does not finds cutting ferrule end identification list, then utilize cutting ferrule end the second safe transmission double secret key to preset after mark carries out the first process and sendTo true card management device, Truth cards manager receives the data that cutting ferrule sends, utilizes Truth cards manager end safe transmission double secret key to receiveData carry out the second process after, Truth cards manager determine the second process after data for indicating cutting ferrule end not store cutting ferrule end identification listTime, utilizing Truth cards manager end safe transmission double secret key to update after instruction carries out the first process with more new data and send to cutting ferrule, cutting ferrule receivesThe data that Truth cards manager sends, after the data utilizing cutting ferrule end the second safe transmission double secret key to receive carry out the second process, update cutting ferrule endTruth cards information list.Specifically, update cutting ferrule end Truth cards information list can carry out in the following way: Truth cards manager sendsRenewal instruction include storage instruction, more new data packets includes up-to-date Truth cards manager end Truth cards information list, is fastened in and receives renewalAfter instruction and more new data, according to updating instruction and more new data, cutting ferrule end Truth cards information list is performed storage operation.
Above-mentioned implementation based on mode one, cutting ferrule carries out judging whether unanimously to true card management device by being sent by cutting ferrule end identification list,Owing to cutting ferrule end identification list data volume is much smaller than cutting ferrule end Truth cards information list, it therefore reduces the data volume of data transmission, improve numberAccording to transfer rate, also improve the judgement speed of Truth cards manager.If cutting ferrule is to use for the first time, then cutting ferrule itself does not store cutting ferrule endIdentification list, now, sends and presets mark to true card management device, in order to Truth cards manager issues Truth cards manager end identification listAnd Truth cards manager end Truth cards information list is to cutting ferrule, this default mark can be empty mark, predefined numerical value or predefined wordSymbol etc..
Certainly, the invention is not limited in the above-mentioned implementation of mode one, it is also possible to do not store identification list at cutting ferrule and Truth cards managerTime, realize one of in the following way the renewal of cutting ferrule end Truth cards information list:
Cutting ferrule end Truth cards information list is directly transmitted to Truth cards manager, in order to after Truth cards manager is compared, judgement is by cutting ferruleNo renewal;Or
The numbering of table of cutting ferrule end Truth cards information list is sent to Truth cards manager, in order to Truth cards manager comparison list is compiled by cutting ferruleNumber the most identical judging whether updates;Or
Received the renewal instruction of user's input by Truth cards manager after, Truth cards manager is by Truth cards manager end Truth cards informationList sends to cutting ferrule.
Certainly, after Truth cards manager judges that needs are updated, it is also possible to sending renewal inquiry and ask to cutting ferrule, this renewal pointed out by cutting ferruleInquiry request is to user, in order to user is confirmed whether to be updated.
After mode two, cutting ferrule log in Truth cards manager, cutting ferrule judges whether that needing to carry out the renewal of cutting ferrule end Truth cards information list operates:
After Truth cards manager utilizes true cutting ferrule manager end safe transmission double secret key Truth cards manager end identification list to carry out the first processSend to cutting ferrule;
Cutting ferrule receives the data that Truth cards manager sends, and the data utilizing cutting ferrule end the second safe transmission double secret key to receive carry out the second processAfter, it is judged that the data after the second process are the most identical with the cutting ferrule end identification list that cutting ferrule stores;Specifically, if cutting ferrule uses for the first time or neverTruth cards manager end identification list is downloaded in success, and storage cutting ferrule end identification list, is not the most directly judged to difference.
If it is not the same, then cutting ferrule sends more newly requested to Truth cards manager;
Truth cards manager receives more newly requested, utilizes Truth cards manager end safe transmission double secret key to update instruction and more new data carries out firstSend to cutting ferrule after process;
Cutting ferrule receives the data that Truth cards manager sends, and the data utilizing cutting ferrule end the second safe transmission double secret key to receive carry out the second processAfter, update cutting ferrule end Truth cards information list.Specifically, update cutting ferrule end Truth cards information list can carry out in the following way: trueThe renewal instruction that card management device sends includes increasing and/or deleting instruction, and more new data packets includes the Truth cards information needing to increase or delete, cardIt is enclosed within after receiving renewal instruction and more new data, performs to increase and/or delete to cutting ferrule end Truth cards information list according to updating instruction and more new dataDivision operation;Or the renewal instruction that Truth cards manager sends includes increasing and/or deleting instruction, more new data packets includes to be needed to increase Truth cards letterBreath or need mark corresponding to Truth cards information deleted, is fastened in after receiving renewal instruction and more new data, according to updating instruction and updatingCutting ferrule end Truth cards information list is performed to increase and/or deletion action by data;Or, the renewal instruction that Truth cards manager sends includes replacingInstruction, more new data packets includes up-to-date Truth cards manager end Truth cards information list, is fastened in after receiving renewal instruction and more new data,According to updating instruction and more new data, cutting ferrule end Truth cards information list is performed replacement operation.
Above-mentioned implementation based on mode two, Truth cards manager is by judging the transmission of Truth cards manager end identification list to cutting ferruleThe most consistent, owing to Truth cards manager end identification list data volume is much smaller than Truth cards manager end Truth cards information list, therefore, subtractThe data volume of little data transmission, improves message transmission rate, also improves the judgement speed of cutting ferrule.If cutting ferrule is to use for the first time, then blockSet itself does not store cutting ferrule end identification list, now, receives after Truth cards manager issues Truth cards manager end identification list, directlySend more newly requested so that Truth cards manager sends Truth cards manager end Truth cards information list to cutting ferrule.
Certainly, the invention is not limited in the above-mentioned implementation of mode two, it is also possible to do not store identification list at cutting ferrule and Truth cards managerTime, realize one of in the following way the renewal of cutting ferrule end Truth cards information list:
Directly Truth cards manager end Truth cards information list is sent to cutting ferrule, in order to cutting ferrule directly stores by Truth cards manager;Or
The numbering of table of Truth cards manager end Truth cards information list is sent to cutting ferrule, in order to cutting ferrule comparison list is compiled by Truth cards managerNumber the most identical judging whether updates;Or
Received the renewal instruction of user's input by cutting ferrule after, cutting ferrule sends and updates request to Truth cards manager, in order to Truth cards manager is straightConnect and issue the transmission of Truth cards manager end Truth cards information list to cutting ferrule.
Certainly, after cutting ferrule judges that needs are updated, it is also possible to prompting user is confirmed whether to be updated, and after user confirms to be updated,Perform follow-up renewal to operate.
The cutting ferrule of the present invention, in addition to possessing normal mode of operation, also has heart beating park mode, and wherein, heart beating park mode is the non-of low-power consumptionMode of operation, i.e. closes some unnecessary power consumption programs etc..Specifically, cutting ferrule can enter heart beating dormancy mould after not operating in Preset TimeFormula, it is also possible to controlled to enter heart beating park mode by the operation of user.
It is fastened under heart beating park mode, it is also possible to judge whether the secure connection keeping setting up between cutting ferrule and Truth cards manager, in order at cardSet is by when recovering to mode of operation under phychology park mode, it is not necessary to again set up secure connection with Truth cards manager, improves convenience.
A kind of being fastened under heart beating park mode presented below judges whether to keep the tool of the secure connection of foundation between cutting ferrule and Truth cards managerBody implementation:
It is fastened under heart beating park mode, sends detection information every the first Preset Time to Truth cards manager;
Truth cards manager receives detection information, sends response message to cutting ferrule;
If not receiving response message in being fastened in the second Preset Time, then disconnect the secure connection between cutting ferrule and Truth cards manager;
If receiving response message in being fastened in the second Preset Time, then keep the secure connection that cutting ferrule is set up with Truth cards manager.
Do not receive response message in being fastened in the second Preset Time, may be the unstable networks between cutting ferrule and Truth cards manager, or trulyCard management device operation irregularity, the secure connection now disconnected between cutting ferrule and Truth cards manager ensure that safety;It is fastened in second when presettingIn receive response message, then cutting ferrule keep and Truth cards manager between secure connection, when cutting ferrule recovery mode of operation, it is not necessary to again buildVertical secure connection, convenient use.
Certainly, under heart beating park mode, user can also select manually to disconnect the secure connection between cutting ferrule and Truth cards manager, such as, makeCutting ferrule such as is logged off from Truth cards manager at the operation, or user performs power-off operation to cutting ferrule.
Above-mentioned first Preset Time can be identical from the second Preset Time or different.
Under heart beating park mode provided below, the mode that cutting ferrule end Truth cards information list updates:
After mode three, cutting ferrule log in Truth cards manager, cutting ferrule is under heart beating park mode, and it is true that cutting ferrule judges whether to need to carry out cutting ferrule endCard image list update operates:
Under heart beating park mode, also comprise renewal information if received in being fastened in the second Preset Time in response message, and response message,Then cutting ferrule storage updates information;Wherein, updating information is that Truth cards manager informs that cutting ferrule Truth cards manager has Truth cards pipeThe information that reason device end Truth cards information list updates.
After cutting ferrule is entered mode of operation by heart beating park mode, cutting ferrule sends to Truth cards manager and updates the request of triggering;Specifically, cutting ferrule canWith in the following way by heart beating park mode enter mode of operation: cutting ferrule receive renewal information after automatically into mode of operation, or card socketAfter receiving the operational order (such as user carries out the operational order etc. of key-press input) of user's input, enter mode of operation.
Truth cards manager receives and updates the request of triggering, utilizes Truth cards manager end safe transmission double secret key Truth cards manager end identity columnTable sends to cutting ferrule after carrying out the first process;
Cutting ferrule receives the data that Truth cards manager sends, and the data utilizing cutting ferrule end the second safe transmission double secret key to receive carry out the second processAfter, it is judged that the data after the second process are the most identical with the cutting ferrule end identification list that cutting ferrule stores;Specifically, if cutting ferrule uses for the first time or neverTruth cards manager end identification list is downloaded in success, and storage cutting ferrule end identification list, is not the most directly judged to difference.
If it is not the same, then cutting ferrule sends more newly requested to Truth cards manager;
Truth cards manager receives more newly requested, utilizes Truth cards manager end safe transmission double secret key to update instruction and more new data carries out firstSend to cutting ferrule after process;
Cutting ferrule receives the data that Truth cards manager sends, and the data utilizing cutting ferrule end the second safe transmission double secret key to receive carry out the second processAfter, update cutting ferrule end Truth cards information list.Specifically, update cutting ferrule end Truth cards information list can carry out in the following way: trueThe renewal instruction that card management device sends includes increasing and/or deleting instruction, and more new data packets includes the Truth cards information needing to increase or delete, cardIt is enclosed within after receiving renewal instruction and more new data, performs to increase and/or delete to cutting ferrule end Truth cards information list according to updating instruction and more new dataDivision operation;Or the renewal instruction that Truth cards manager sends includes increasing and/or deleting instruction, more new data packets includes to be needed to increase Truth cards letterBreath or need mark corresponding to Truth cards information deleted, is fastened in after receiving renewal instruction and more new data, according to updating instruction and updatingCutting ferrule end Truth cards information list is performed to increase and/or deletion action by data;Or, the renewal instruction that Truth cards manager sends includes replacingInstruction, more new data packets includes up-to-date Truth cards manager end Truth cards information list, is fastened in after receiving renewal instruction and more new data,According to updating instruction and more new data, cutting ferrule end Truth cards information list is performed replacement operation.
Above-mentioned implementation based on mode three, Truth cards manager is by judging the transmission of Truth cards manager end identification list to cutting ferruleThe most consistent, owing to Truth cards manager end identification list data volume is much smaller than Truth cards manager end Truth cards information list, therefore, subtractThe data volume of little data transmission, improves message transmission rate, also improves the judgement speed of cutting ferrule.If cutting ferrule is to use for the first time, then blockSet itself does not store cutting ferrule end identification list, now, receives after Truth cards manager issues Truth cards manager end identification list, directlySend more newly requested so that Truth cards manager sends Truth cards manager end Truth cards information list to cutting ferrule.
Certainly, the invention is not limited in the above-mentioned implementation of mode three, it is also possible to do not store identification list at cutting ferrule and Truth cards managerTime, realize one of in the following way the renewal of cutting ferrule end Truth cards information list:
Directly Truth cards manager end Truth cards information list is sent to cutting ferrule, in order to cutting ferrule directly stores by Truth cards manager;Or
The numbering of table of Truth cards manager end Truth cards information list is sent to cutting ferrule, in order to cutting ferrule comparison list is compiled by Truth cards managerNumber the most identical judging whether updates;Or
Received the renewal instruction of user's input by cutting ferrule after, cutting ferrule sends and updates request to Truth cards manager, in order to Truth cards manager is straightConnect and issue the transmission of Truth cards manager end Truth cards information list to cutting ferrule.
After mode four, cutting ferrule log in Truth cards manager, cutting ferrule is under heart beating park mode, and Truth cards manager judges whether that needs are carried outCutting ferrule end Truth cards information list updates and operates:
Being fastened under heart beating park mode, if received in being fastened in the second Preset Time, response message, and response message also comprising renewal prompting letterBreath, then cutting ferrule storage updates information;Wherein, updating information is that Truth cards manager informs that cutting ferrule Truth cards manager has true cardThe information that sheet manager end Truth cards information list updates.
Entering after mode of operation by heart beating park mode at cutting ferrule, cutting ferrule utilizes cutting ferrule end the second safe transmission double secret key cutting ferrule end identification list to carry out theSend to true card management device after one process;Specifically, cutting ferrule can be entered mode of operation by heart beating park mode in the following way: cutting ferrule is receivedTo updating after information automatically into mode of operation, or cutting ferrule receives the operational order of user's input, and (such as user carries out the operation of key-press inputInstruction etc.) after, enter mode of operation.If cutting ferrule is for using for the first time or from being not successfully downloaded Truth cards manager end identification list, then blockingNot storing cutting ferrule end identification list in set, now, cutting ferrule utilizes cutting ferrule end the second safe transmission double secret key to preset after mark carries out the first process and sendsTo true card management device.
Truth cards manager receives the data that cutting ferrule sends, and the data utilizing Truth cards manager end safe transmission double secret key to receive carry out secondAfter process, it is judged that the data after the second process are the most identical with the Truth cards manager end identification list that Truth cards manager stores;Specifically,Truth cards manager receives presets mark, is also judged as differing.
If it is not the same, then Truth cards manager utilizes Truth cards manager end safe transmission double secret key to update instruction and more new data carries out firstSend to cutting ferrule after process;
Cutting ferrule receives the data that Truth cards manager sends, and the data utilizing cutting ferrule end the second safe transmission double secret key to receive carry out the second processAfter, update cutting ferrule end Truth cards information list.Specifically, update cutting ferrule end Truth cards information list can carry out in the following way: trueThe renewal instruction that card management device sends includes increasing and/or deleting instruction, and more new data packets includes the Truth cards information needing to increase or delete, cardIt is enclosed within after receiving renewal instruction and more new data, performs to increase and/or delete to cutting ferrule end Truth cards information list according to updating instruction and more new dataDivision operation;Or the renewal instruction that Truth cards manager sends includes increasing and/or deleting instruction, more new data packets includes to be needed to increase Truth cards letterBreath or need mark corresponding to Truth cards information deleted, is fastened in after receiving renewal instruction and more new data, according to updating instruction and updatingCutting ferrule end Truth cards information list is performed to increase and/or deletion action by data;Or, the renewal instruction that Truth cards manager sends includes replacingInstruction, more new data packets includes up-to-date Truth cards manager end Truth cards information list, is fastened in after receiving renewal instruction and more new data,According to updating instruction and more new data, cutting ferrule end Truth cards information list is performed replacement operation.
Above-mentioned implementation based on mode four, cutting ferrule carries out judging whether unanimously to true card management device by being sent by cutting ferrule end identification list,Owing to cutting ferrule end identification list data volume is much smaller than cutting ferrule end Truth cards information list, it therefore reduces the data volume of data transmission, improve numberAccording to transfer rate, also improve the judgement speed of Truth cards manager.If cutting ferrule is to use for the first time, then cutting ferrule itself does not store cutting ferrule endIdentification list, now, sends and presets mark to true card management device, in order to Truth cards manager issues Truth cards manager end identification listAnd Truth cards manager end Truth cards information list is to cutting ferrule, this default mark can be empty mark, predefined numerical value or predefined wordSymbol etc..
Certainly, the invention is not limited in the above-mentioned implementation of mode four, it is also possible to do not store identification list at cutting ferrule and Truth cards managerTime, realize one of in the following way the renewal of cutting ferrule end Truth cards information list:
Cutting ferrule end Truth cards information list is directly transmitted to Truth cards manager, in order to after Truth cards manager is compared, judgement is by cutting ferruleNo renewal;Or
The numbering of table of cutting ferrule end Truth cards information list is sent to Truth cards manager, in order to Truth cards manager comparison list is compiled by cutting ferruleNumber the most identical judging whether updates;Or
Received the renewal instruction of user's input by Truth cards manager after, Truth cards manager is by Truth cards manager end Truth cards informationList sends to cutting ferrule.
Optionally, it is attached using to all or part of Truth cards in important card region at the open or close cutting ferrule of Truth cards managerAuthority after, owing to Truth cards manager end Truth cards information list is updated, therefore, Truth cards manager can will open cutting ferruleThe Truth cards information of the authority that all or part of Truth cards in important card region is attached use sends to cutting ferrule, in order to cutting ferrule is moreNew cutting ferrule end Truth cards information list;Or at all or part of true in important card region of the open or close cutting ferrule of Truth cards managerAfter real card is attached the authority used, triggering the flow process that cutting ferrule end Truth cards information list updates, update mode is referred to aforesaid way oneWith the update mode of mode two, it is not described in detail in this.
In the more new data that above Truth cards manager sends in addition to comprising Truth cards manager end Truth cards information list, also comprise trueReal card management device end identification list, in order to cutting ferrule obtains up-to-date identification list.
Four, the Truth cards chosen is determined:
Cutting ferrule obtains cutting ferrule end Truth cards information list, and wherein, cutting ferrule end Truth cards information list is the true of acquisition from Truth cards managerReal card management device end Truth cards information list;Specifically, optionally, before this step, it is also possible to perform cutting ferrule start, cutting ferrule logs in trueThe operation of real card management device, does not repeats them here, and specifically may refer to the start of above-mentioned relevant cutting ferrule and cutting ferrule logs in the relevant of Truth cards managerDescribe.In this step, cutting ferrule obtains cutting ferrule end Truth cards information list, it is also possible to include that cutting ferrule updates cutting ferrule end Truth cards information listStep, also repeats no more at this, specifically may refer to above-mentioned cutting ferrule and updates the associated description of cutting ferrule end Truth cards information list.Cutting ferrule is from true cardAfter the Truth cards manager end Truth cards information list obtained in sheet manager, store it in the memory area of cutting ferrule, true as cutting ferrule endReal card image list, when cutting ferrule needs prompting (such as display or speech play etc.) cutting ferrule end Truth cards information list, can be from this localityDirectly obtain this cutting ferrule end Truth cards information list, improve the processing speed of cutting ferrule.
Cutting ferrule prompting cutting ferrule end Truth cards information list;Specifically, cutting ferrule utilizes the display device of self or by exterior display device display cardOverlap end Truth cards information list, or cutting ferrule utilizes the voice playing device of self or by external voice playing device speech play (such as loudspeakerPlay or by headset earpiece broadcasting etc.) cutting ferrule end Truth cards information list, select according to cutting ferrule end Truth cards information list for userSelect the Truth cards needing to use when being traded, facilitate user to select, strengthen Consumer's Experience.
Cutting ferrule receives Truth cards and selects instruction, determines the Truth cards chosen;Specifically, the Truth cards that cutting ferrule receives selects instruction can be singleSolely be arranged on what the selection physical button that card puts generated, or can be to select virtual key generation on the touch screen of cutting ferrule, or can beOn cutting ferrule screen, the menu of display is chosen and represent what the menu item of selection function generated.Cutting ferrule receives Truth cards and selects instruction, determines choose trueReal card, cutting ferrule realizes data transmission via Truth cards manager and the Truth cards chosen.Furthermore it is possible to realize in the following way determining choosingIn Truth cards: cutting ferrule receives Truth cards and selects instruction, obtains and chooses mark, wherein, chooses and identifies for the Truth cards chosen of instruction;Cutting ferrule will choose mark to send to true card management device;Truth cards manager is according to choosing the true card identified from being connected with Truth cards managerIn sheet, determine the Truth cards chosen corresponding with choosing mark;Wherein, choosing mark can be the part or all of information in Truth cards information,Such as: card number and/or Truth cards manager reading-writing port mark;Truth cards manager receives after choosing mark, can manage at Truth cardsDevice end Truth cards information list finds the Truth cards manager reading-writing port mark corresponding with choosing mark, in order to Truth cards manager is trueIts reading-writing port fixed, thus carry out data interaction by this reading-writing port with the Truth cards chosen.
Five, data interaction:
Cutting ferrule utilizes cutting ferrule end the second safe transmission pending data of double secret key to send to true card management device after carrying out the first process;Specifically, cardSet can also show pending data, it is also possible to speech play (such as loudspeaker are play or by headset earpiece broadcasting etc.) pending data, forUser confirms that these pending data are the most correct, only after correct, after what reception user inputted indicates the confirmation instruction that pending data are correct,These pending data are sent to true card management device;If user confirms that these pending data are incorrect, then can directly cancel this secondary data and hand overMutually, with this, the safety of data interaction is improved.What cutting ferrule received can be to be provided separately within card for indicating the confirmation that pending data are correct to instructThe confirmation physical button put generates, or can be that the confirmation virtual key on the touch screen of cutting ferrule generates, or display on cutting ferrule screenMenu selects confirm what function generated, or can be that the voice that the voice acquisition device (such as Mike) of cutting ferrule receives confirms to indicate and verifyBy generate time rear, or can be that the fingerprint acquisition device of cutting ferrule receives and generates after fingerprint identification indicates and is verified, or can beThe iris collection device of cutting ferrule receives generation after iris confirms instruction and is verified, it is, of course, also possible to generate for other any modes,The present invention is not restricted.
Truth cards manager receives the data that cutting ferrule sends, and the data utilizing Truth cards manager end safe transmission double secret key to receive carry out theSend to the Truth cards chosen after two process;Specifically, pending data are sent to the Truth cards chosen by Truth cards manager, in order toPending data are processed by the Truth cards chosen.
The Truth cards chosen receives the data that Truth cards manager end sends, and the data that will obtain after processing after processing send to truly blockingSheet manager;Specifically, pending data are processed by the Truth cards chosen, and this is processed as the scheme of process of existing smart card, at thisRepeat no more.
Truth cards manager receives the data that the Truth cards chosen sends, and utilizes Truth cards manager end safe transmission double secret key to receiveData send to cutting ferrule after carrying out the first process.
Based on above-mentioned data interaction flow process, carry out between cutting ferrule and Truth cards manager data interaction all by safe transmission key carry out encryption and decryption and/ or verification operation, thus ensure safety and the integrity that data transmit.
Cutting ferrule can be pointed out needing the information confirmed in data exchange process, and thus, needing in data exchange process can be confirmed by userInformation confirm after perform mutual again, thus ensure the verity of data interaction, improve safety.
Additionally, due to can select to use the Truth cards mated with transaction terminal, user in prior art can be solved and do not carry and transaction terminalThe Truth cards joined and the unnecessary expense expenditure (such as bank's inter-bank withdraw the money the fee etc.) that produces.
Certainly, above-mentioned implementing only discloses from cutting ferrule to Truth cards, the single data interaction of Truth cards to cutting ferrule, in actual applications,There may be repeatedly data interaction, interaction flow is similar to above-mentioned single data interaction, in repeatedly data interaction, can be according to mutual dataNo needs confirms to be arranged at cutting ferrule whether point out mutual data to ensure the verity of interaction data.
Six, application program update:
1, cutting ferrule application program update:
In the present invention, the application program that self can also have been installed by cutting ferrule is updated or installs new opplication program, in order to expand cutting ferruleTypes of applications or existing application to cutting ferrule upgrade:
The present invention provides the specific implementation of a kind of cutting ferrule application program update, but the invention is not limited in this:
Fig. 5 shows the flow chart of cutting ferrule application program update, sees Fig. 5, and cutting ferrule application program update includes:
Cutting ferrule sends to updating platform to major general's cutting ferrule certificate;Specifically, safe renewal platform it is separately provided to complete cutting ferrule application program moreNewly.Cutting ferrule certificate is sent to updating platform by cutting ferrule, in order to updates platform and knows which cutting ferrule needs to update, can also verify the body of cutting ferrule simultaneouslyPart;Cutting ferrule can also by need the application program identification updated or other inform that updating platform needs the information of application program updating or downloading to send outDeliver to update platform, in order to renewal platform is known to be needed to send which application program installation kit to cutting ferrule.
Update platform and generate the first renewal encryption key;Specifically, platform self generation is updated close for the renewal encryption encrypting application program installation kitKey, carries out the renewal encryption key of generation during application program update every time and can be the same or different, and difference is then possible to prevent to be cracked, and improves peaceQuan Xing.
Updating platform utilizes the first renewal encryption key that cutting ferrule application program installation kit is encrypted acquisition the first installation kit ciphertext;Specifically, updatePlatform utilizes the renewal encryption keys cutting ferrule application program installation kit generated, thus ensures the safety that cutting ferrule application program installation kit transmits.
Updating platform utilizes renewal platform private key that the first installation kit ciphertext carries out signature acquisition the first installation kit signature;Specifically, platform is updated to theOne installation kit ciphertext is signed, in order to the identity updating platform is verified by follow-up cutting ferrule.
Updating platform utilizes the cutting ferrule public key encryption first in cutting ferrule certificate to update encryption key, it is thus achieved that first updates encryption key ciphertext;Specifically,Updating platform utilizes cutting ferrule public key encryption to update encryption key, it is ensured that update the safety of encryption key transmission, simultaneously, it is ensured that only cutting ferrule isRenewal encryption key can be decrypted, improve the safety of application program installation kit transmission.
Update platform by cutting ferrule more fresh information send to cutting ferrule, wherein, cutting ferrule more fresh information includes: update platform credential, the first installation kit ciphertext,First installation kit signature and first updates encryption key ciphertext;Specifically, update platform send more fresh information in carry renewal platform credential so thatCutting ferrule is authenticated updating platform, carries the first installation kit ciphertext and ensure the safety of application program installation kit transmission, more fresh information in more fresh informationIn carry first installation kit signature with ensure follow-up cutting ferrule can to update platform identity legitimacy be authenticated, more fresh information carries renewal encryptionKey ciphertext ensures to update the safety of encryption key transmission.
Cutting ferrule receives cutting ferrule and updates information, utilizes root certification authentication to update platform credential;Specifically, cutting ferrule prestores root certificate, utilizes this root to demonstrate,proveBook completes the checking updating platform credential, to ensure the follow-up safety using renewal platform credential.
After cutting ferrule checking renewal platform credential is passed through, utilize the renewal platform PKI updated in platform credential that the first installation kit signature is carried out sign test;ToolBody ground, cutting ferrule utilizes the platform PKI that updates in the renewal platform credential after being verified to verify the signature updating platform transmission, to guarantee numberAccording to legitimate origin.
After cutting ferrule verifies that the first installation kit signature is correct, utilize cutting ferrule private key deciphering the first renewal encryption key ciphertext, it is thus achieved that the first decruption key;ToolBody ground, cutting ferrule utilizes cutting ferrule private key to decrypt decruption key, in order to subsequent decryption installation kit ciphertext obtains cutting ferrule application program installation kit.
Cutting ferrule utilizes first decryption key decryption the first installation kit ciphertext, it is thus achieved that cutting ferrule application program installation kit;
The data form of cutting ferrule checking cutting ferrule application program installation kit is the most correct;Specifically, the data of cutting ferrule application program installation kit also verified by cutting ferruleForm is the most correct, if the data form of cutting ferrule application program installation kit is incorrect, does not the most perform to install operation, if cutting ferrule application program is installedThe data form of bag is correct, then perform installation.
If the data form of cutting ferrule checking cutting ferrule application program installation kit is correct, cutting ferrule is installed according to cutting ferrule application program installation kit.Specifically,If cutting ferrule is to be updated the application program installed, then can cover mounted application program, or mounted application program is enteredThe installation of new application program is carried out again, if cutting ferrule is newly installed application program, then after row upgrading, or the mounted application program of leading unloadingThis application program can be mounted directly.
The cutting ferrule based on the present invention renewal to application program, both can update mounted application program, it is also possible to download new application program and pacifyDress, has expanded the function of cutting ferrule, has been user-friendly to.
2, Truth cards manager application updates:
In the present invention, the application program that self can also have been installed by Truth cards manager is updated or installs new opplication program, withJust expand the types of applications of Truth cards manager or the existing application to Truth cards manager upgraded:
The present invention provides the specific implementation that a kind of Truth cards manager application updates, but the invention is not limited in this:
Fig. 6 shows the flow chart that Truth cards manager application updates, and sees Fig. 6, and Truth cards manager application updates and includes:
Truth cards manager sends to updating platform to major general's Truth cards manager certificate;Specifically, be separately provided safe renewal platform so thatComplete the renewal of Truth cards manager application.Truth cards manager certificate is sent to updating platform by Truth cards manager, in order to updatePlatform knows which Truth cards manager needs to update, and can also verify the identity of Truth cards manager simultaneously;Truth cards manager also may be usedWith by need the application program identification updated or other inform and update platform to need the information of the application program updating or downloading to send to updating flatPlatform, in order to renewal platform is known to be needed to send which application program installation kit to true card management device.
Update platform and generate the 3rd renewal encryption key;Specifically, platform self generation is updated close for the renewal encryption encrypting application program installation kitKey, carries out the renewal encryption key of generation during application program update every time and can be the same or different, and difference is then possible to prevent to be cracked, and improves peaceQuan Xing.
Updating platform utilizes the 3rd renewal encryption key that Truth cards manager application installation kit is encrypted acquisition the 3rd installation kit ciphertext;ToolBody ground, updates platform and utilizes the renewal encryption keys Truth cards manager application installation kit generated, thus ensure Truth cards managerThe safety of application program installation kit transmission.
Updating platform utilizes renewal platform private key that the 3rd installation kit ciphertext carries out signature acquisition the 3rd installation kit signature;Specifically, platform is updated to theThree installation kit ciphertexts are signed, in order to the identity updating platform is verified by follow-up Truth cards manager.
Updating platform utilizes the Truth cards manager public key encryption the 3rd in Truth cards manager certificate to update encryption key, it is thus achieved that the 3rd renewal addsDecryption key ciphertext;Specifically, updating platform utilizes Truth cards manager public key encryption to update encryption key, it is ensured that update encryption key transmissionSafety, simultaneously, it is ensured that only Truth cards manager just can decrypt renewal encryption key, improves the safety of application program installation kit transmissionProperty.
Updating platform to send Truth cards manager more fresh information to true card management device, wherein, Truth cards manager more fresh information includes:Update platform credential, the 3rd installation kit ciphertext, the 3rd installation kit signature and the 3rd renewal encryption key ciphertext;Specifically, update what platform sentMore fresh information carries renewal platform credential so that Truth cards manager is authenticated updating platform, more fresh information carries the 3rd installation kit ciphertextEnsure the safety of application program installation kit transmission, more fresh information carries the 3rd installation kit signature to ensure that follow-up Truth cards manager can be to moreThe legitimacy of new platform identity is authenticated, and carries and update the safety that encryption key ciphertext ensures that renewal encryption key transmits in more fresh information.
Truth cards manager receives Truth cards manager more fresh information, utilizes root certification authentication to update platform credential;Specifically, Truth cards pipeReason device prestores root certificate, utilizes this root certificate to complete the checking updating platform credential, to ensure the follow-up safety using renewal platform credential.
The checking of Truth cards manager updates after platform credential passes through, utilize the renewal platform PKI updated in platform credential the 3rd installation kit is signed intoRow sign test;Specifically, the renewal platform PKI during Truth cards manager utilizes the renewal platform credential after being verified is to updating the label that platform sendsName is verified, to guarantee the legitimate origin of data.
After Truth cards manager checking the 3rd installation kit signature is correct, utilize Truth cards manager private key deciphering the 3rd renewal encryption key ciphertext,Obtain the 3rd decruption key;Specifically, Truth cards manager utilizes Truth cards manager private key to decrypt decruption key, in order to subsequent decryption is pacifiedDress bag ciphertext obtains Truth cards manager application installation kit.
Truth cards manager utilizes the 3rd decryption key decryption the 3rd installation kit ciphertext, it is thus achieved that Truth cards manager application installation kit;
The data form of Truth cards manager checking Truth cards manager application installation kit is the most correct;Specifically, Truth cards managerThe also data form of checking Truth cards manager application installation kit is the most correct, if the data of Truth cards manager application installation kitForm is incorrect, does not the most perform to install operation, if the data form of Truth cards manager application installation kit is correct, then performs installation.
If the data form of Truth cards manager checking Truth cards manager application installation kit is correct, Truth cards manager is according to trueCard management device application program installation kit is installed.Specifically, if Truth cards manager is to be updated the application program installed,Then can cover mounted application program, or mounted application program is upgraded, or after the mounted application program of leading unloading againCarry out the installation of new application program, if Truth cards manager is newly installed application program, then can be mounted directly this application program.
The Truth cards manager based on the present invention renewal to application program, both can update mounted application program, it is also possible to download new answeringBy program and install, expand the function of Truth cards manager, be user-friendly to.
Seven, the application scenarios that data interaction framework is suitable for:
To account charging:
In a kind of application scenarios that the present embodiment provides, user is based on above-mentioned data interaction framework, it is possible to achieve supplement third party's account with money, exampleAs to Alipay account charging.
Realization to this application scene is specifically described below, but the invention is not limited in this:
Cutting ferrule passes through network entry account platform;Specifically, cutting ferrule passes through wireless network logon account platform, in order to by the data interaction of the present inventionCutting ferrule and Truth cards manager in framework complete to supplement account with money.Wherein, account platform can be virtual third party's account platform, such as:E-commerce website account platform (such as Alipay etc.), paying electric charge platform, network finance platform (such as fund etc.).
Charging request is sent to account platform by cutting ferrule, and wherein, charging request includes: charging information;Specifically, charging request is sent extremely by cutting ferruleAccount platform, in order to account platform supplements bag with money according to charging request feedback.Wherein, charging information includes: recharge amount etc., optionally, it is also possible toIncluding account to be supplemented with money, in order to account platform is known and for which account supplemented with money.
Cutting ferrule receives and supplements bag with money, wherein, supplements bag with money and is generated after receiving charging request by payment platform;Specifically, it is fastened in charging request transmissionWhile account platform or again after it, also this charging request is sent to payment platform, or, after account platform receives charging request,Charging request is sent to payment platform, just pays with payment platform.After this payment platform receives charging request, also generate and supplement bag with money, itsIn, to supplement bag with money and include: the information such as recharge amount, account to be supplemented with money, payment platform will be supplemented bag with money and be sent to cutting ferrule, or payment platform will supplement bag with moneySend to account platform, then by account platform will supplement with money bag send to cutting ferrule, in order to user carry out on cutting ferrule confirmation supplement with money wrap the most errorless.Wherein,Payment platform is the transaction platform corresponding with Truth cards, such as Net silver etc..
Bag is supplemented in cutting ferrule prompting with money, receives and supplements, for confirmation, the confirmation instruction that bag is errorless with money;Specifically, it is fastened in after receiving and supplementing bag with money, also will supplement with moneyBag carries out showing or speech play, in order to the information supplemented with money in bag is confirmed by user, if user confirms errorless, confirms on cutting ferruleOperation (such as pressing confirmation button, select the modes such as the confirmation option in menu) generates supplements the confirmation instruction that bag is errorless, card socket with money for confirmationReceive this confirmation instruction, in order to cutting ferrule continues executing with subsequent operation;Certainly, if user confirms to supplement the problem of being surrounded by with money, then can take on cutting ferruleDisappear operation, in order to cancels this pen and supplements with money.What cutting ferrule received is used for confirming that the confirmation instruction supplementing bag with money errorless can be to be provided separately within the confirmation that card putsPhysical button generates, or can be that confirming on the touch screen of cutting ferrule selects in virtual key generation, or the menu shown on cutting ferrule screenConfirm what function generated, or can be the voice that the voice acquisition device (such as Mike) of cutting ferrule receives life when confirming instruction and be verified rearBecome, or can be that the fingerprint acquisition device of cutting ferrule receives generation after fingerprint identification indicates and is verified, or can be the iris of cutting ferruleHarvester receives generation after iris confirms instruction and is verified, it is, of course, also possible to generate for other any modes, the most alsoIt is not restricted.Certainly, while this step or before this step, cutting ferrule also needs to log in Truth cards manager, and is chosen as account and entersThe Truth cards that row is supplemented with money, cutting ferrule logs in the operation of Truth cards manager and selects the operation of Truth cards to be referred to above-mentioned associated description,This no longer describes in detail.
Cutting ferrule utilizes cutting ferrule end the second safe transmission double secret key to supplement with money after bag carries out the first process and sends to true card management device, wherein, and cutting ferrule endTwo safe transmission keys are cutting ferrule to be generated when setting up secure connection with Truth cards manager, Truth cards manager and at least one Truth cards phaseConnect, and storage has Truth cards manager end Truth cards information list, Truth cards manager end Truth cards information list include and truly blockThe Truth cards information of the Truth cards that sheet manager connects;Specifically, cutting ferrule receives supplements bag with money, and supplement with money bag confirm errorless after, will supplement with moneyBag sends after carrying out the first process to true card management device, improves and supplements bag transmission security with money, in order to Truth cards manager will supplement bag with money reallyTransmission to Truth cards processes.It addition, Truth cards manager end Truth cards information list includes true with what Truth cards manager was connectedThe Truth cards information of card, this Truth cards information may include that the information such as card number, card authentication information, and this card authentication information is that certification is trueWhether real card is the card image that regular channel (such as bank, public transport company etc.) is issued;This Truth cards can be the bank card that bank issuesOr function card (such as mass transit card, mess card, purchase card, member card, accumulating card etc.).Additionally, the life that cutting ferrule end the second safe transmission key isOne-tenth mode is referred to the associated description of the generation of above-mentioned cutting ferrule end the second safe transmission key, is not described in detail in this.Optionally, Truth cards managementDevice could be arranged to preserve the Truth cards information of all or part of Truth cards in connected Truth cards, in order to user is according to true cardDifferent setting is made in the security requirement of sheet, such as, can arrange the Truth cards letter not allowing to obtain some Truth cards on Truth cards managerBreath, thus ensure the safety of these Truth cards.
Truth cards manager receives the data that cutting ferrule sends, and the data utilizing Truth cards manager end safe transmission double secret key to receive carry out theSending to the Truth cards chosen after two process, wherein, Truth cards manager end safe transmission key is that cutting ferrule sets up peace with Truth cards managerGenerating during full connection, the Truth cards chosen is: cutting ferrule prompting cutting ferrule end Truth cards information list, and receives after Truth cards selects instruction trueFixed Truth cards, cutting ferrule end Truth cards information list is the Truth cards manager end Truth cards information row obtained from Truth cards managerTable;Specifically, after Truth cards manager receives the data that cutting ferrule sends, the data received are carried out the second process, by true and complete numberAccording to sending to Truth cards, it is ensured that the authenticity and integrity of the data that Truth cards processes, thus ensure the safety supplemented with money.Wherein, truly blockThe generating mode of sheet manager end safe transmission key is referred to the description of the generating mode of above-mentioned Truth cards manager end safe transmission key,This no longer describes in detail.The selection of the Truth cards chosen can refer to the associated description of the selection of above-mentioned Truth cards, is not described in detail in this.
The Truth cards chosen receives the data that Truth cards manager sends, and is traded the data received processing, it is thus achieved that supplement process bag with money;Specifically, after the Truth cards chosen receives the true and complete data that Truth cards manager sends, the data received are traded placeReason, in order to confirming to complete transaction, the process that the Truth cards chosen is traded processing is referred to existing smart card and is traded processFlow process, is not described in detail in this.
The Truth cards chosen will be supplemented process bag with money and be sent to true card management device;
Truth cards manager utilizes Truth cards manager end safe transmission double secret key to supplement with money after process bag carries out the first process and sends to cutting ferrule;
Cutting ferrule receives the data that Truth cards manager sends, after the data utilizing cutting ferrule end the second safe transmission double secret key to receive carry out the second processSend to payment platform;Specifically, cutting ferrule receives the data after the Truth cards through choosing processes and sends it to payment platform, in order toPay platform to pay.
Account platform receives the payment successful information that payment platform sends, and performs to supplement operation with money, and wherein, paying successful information is payment platform receiving cardGenerate after overlapping the data after the second process sent and performing trading processing operation.Specifically, payment platform, after completing to pay, generates and pays intoMerit information, and this payment successful information is sent to account platform, in order to account platform is known payment and is completed, thus completes to supplement operation with money.Certainly,This payment successful information can also comprise checking information, in order to account platform is verified, only after being verified, just paying successful informationComplete to supplement with money, improve safety.
Based on aforesaid way, the data interaction framework of the present invention can complete to supplement account platform with money, extends answering of data interaction framework of the present inventionWith, it is user-friendly to.
In flow chart or at this, any process described otherwise above or method description are construed as, and represent and include that one or more is for realityThe module of code, fragment or the part of the executable instruction of the step of existing specific logical function or process, and the model of the preferred embodiment of the present inventionEnclose and include other realization, wherein can not by order that is shown or that discuss, including according to involved function by basic mode simultaneously or by phaseAnti-order, performs function, and this should be understood by embodiments of the invention person of ordinary skill in the field.
Should be appreciated that each several part of the present invention can realize by hardware, software, firmware or combinations thereof.In the above-described embodiment, multipleStep or method can realize with software or the firmware that storage in memory and is performed by suitable instruction execution system.Such as, if using hardwareRealize, with the most the same, can realize by any one in following technology well known in the art or their combination: there is useIn the discrete logic of the logic gates that data signal is realized logic function, there is the special IC of suitable combination logic gate circuit,Programmable gate array (PGA), field programmable gate array (FPGA) etc..
Those skilled in the art are appreciated that realizing all or part of step that above-described embodiment method carries can be by programThe hardware that instruction is relevant completes, and described program can be stored in a kind of computer-readable recording medium, and this program is upon execution, real including methodOne or a combination set of step executing example.
Additionally, each functional unit in each embodiment of the present invention can be integrated in a processing module, it is also possible to be the independent physics of unitExist, it is also possible to two or more unit are integrated in a module.Above-mentioned integrated module both can realize to use the form of hardware, it is possible toTo use the form of software function module to realize.If described integrated module realizes and as independent production marketing using the form of software function moduleOr when using, it is also possible to it is stored in a computer read/write memory medium.
Storage medium mentioned above can be read only memory, disk or CD etc..
In the description of this specification, reference term " embodiment ", " some embodiments ", " example ", " concrete example " or " some examples "Deng description means to combine this embodiment or example describes specific features, structure, material or feature be contained at least one embodiment of the present inventionOr in example.In this manual, the schematic representation to above-mentioned term is not necessarily referring to identical embodiment or example.And, the tool of descriptionBody characteristics, structure, material or feature can combine in any one or more embodiments or example in an appropriate manner.
Although above it has been shown and described that embodiments of the invention, it is to be understood that above-described embodiment is exemplary, it is impossible to it is right to be interpreted asThe restriction of the present invention, those of ordinary skill in the art in the case of without departing from the principle of the present invention and objective within the scope of the invention can onState embodiment to be changed, revise, replace and modification.The scope of the present invention is limited by claims and equivalent thereof.