Multiple-factor authentication method for online payment and authentication system

A technology of online payment and authentication method, which is applied in the field of multi-factor authentication method and system for secure online payment, can solve the problem that there is no way to ensure the security of transaction data source, and achieve the effect of improving the anti-attack ability

Inactive Publication Date: 2010-07-07
CHINA UNIONPAY
View PDF4 Cites 40 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0005] However, although the online banking authentication method based on the USB key can ensure the communication security between the client and the online banking server, it has no way to ensure the security of the transaction data source

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Multiple-factor authentication method for online payment and authentication system
  • Multiple-factor authentication method for online payment and authentication system
  • Multiple-factor authentication method for online payment and authentication system

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0039] Before introducing the present invention in detail in conjunction with specific embodiments, we first briefly describe several terms related to the technical solution of the present invention.

[0040] 1. Secure sockets

[0041]SSL is an encryption algorithm, a network data security transmission protocol first published by Netscape, and its purpose is to provide a secret and reliable connection between two communication subjects. Data transmitted between client and server is encrypted using a symmetric algorithm. A public key algorithm (usually RSA) is used to obtain encrypted key exchange and digital signatures. This algorithm uses the public key in the server's SSL digital certificate. With the server's SSL digital certificate, the client can also verify the identity of the server. Versions 1 and 2 of the SSL protocol provide only server authentication. Version 3 adds client authentication, which requires both client and server digital certificates.

[0042] 2. Di...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention discloses a multiple-factor authentication method; wherein an authentication USB key digital certificate comprises a client side and a server two-way verification digital certificate; the USB key is inserted and hardware PIN code is input, transaction data information is transferred to the USB key to carry out encryption processing; the transaction ciphertext of an authentication bank IC card comprises the following steps: part source data is input; ARQC is generated by the bank IC card and is transferred to the server for verification; the ARQC is decrypted by the server; the contents of first cleartest transaction data and second cleartest transaction data are compared and authorized transaction can be carried out under the condition that the first cleartest transaction data and second cleartest transaction data are completely consistent. The invention further discloses a multiple-factor authentication system, comprising a device for authenticating the USB key digital certificate, a device for authenticating the transaction ciphertext of the authentication bank IC card, a comparison unit for comparing the first cleartest transaction data and second cleartest transaction data, and an authorization unit; in the authentication method and the system, communication safety between the client side and the server can be not only ensured, and the transaction data source safety can be ensured.

Description

technical field [0001] The invention relates to e-commerce application technology on the Internet, in particular to a multi-factor authentication method and system for safe online payment. Background technique [0002] In recent years, e-commerce has gradually become the main trend of the development of the Internet economy, and online shopping and payment have gradually become a convenient way of consumption. One of the key links of e-commerce is the payment and settlement system, and online payment is the most ideal payment scheme for e-commerce. At present, major domestic banks have launched online banking business to provide users with online payment functions. Online banking is an extension of the existing bank-specific network and a supplement to the traditional business methods of banks. Banks only need to add some software and hardware equipment to allow users to connect to the banking system through their home computers and perform various common banking services. ...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
Patent Type & Authority Applications(China)
IPC IPC(8): G06Q20/00G06Q30/00H04L29/06
Inventor 刘风军徐晋耀鲍强李春欢嵇文俊韩登峰
Owner CHINA UNIONPAY
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products