A method and system for generating cloud authentication tools based on information mapping

The automatic issuance of tax ukeles is achieved through the tax bureau's self-service terminal equipment and USBIP technology, which solves the problem of users having to apply for tax ukeles in person and improves work efficiency and invoicing convenience.

CN114493624BActive Publication Date: 2025-09-26AISINO SOFTWARE TECH CO LTD
View PDF 2 Cites 0 Cited by

Patent Information

Application Number
CN202111585684.2
Authority / Receiving Office
CN · China
Patent Type
Patents(China)
Current Assignee / Owner
Filing Date
2021-12-22
Publication Date
2025-09-26
Estimated Expiration
2041-12-22

AI Technical Summary

Technical Problem

In the existing technology, users need to go to the tax bureau window in person to apply for a tax ukey and insert it into the computer to input information, which increases the workload of the tax bureau and prevents users from issuing invoices instantly or on the go.

Method used

Submit the application through the tax bureau's self-service terminal device, use USBIP technology to automatically issue the tax ukey in the background, and map it to the user's mobile device to achieve a fully automated information writing and issuance process.

Benefits of technology

It reduces the workload of tax bureau window staff and improves work efficiency. Users can issue invoices anytime and anywhere, which expands the invoicing scenarios and reduces management costs.

✦ Generated by Eureka AI based on patent content.

Smart Images

  • Figure CN114493624B_ABST
    Figure CN114493624B_ABST
Patent Text Reader

Abstract

The present invention provides a method and system for generating a cloud-based authentication tool based on information mapping, wherein the method comprises: receiving an authentication tool acquisition request input by a user via a user terminal, and authenticating the user based on a user identifier and identity information; when the authentication result is passed, sending a mapping start request to an authentication server, so that the authentication server generates an initialized authentication tool in a mapping state; writing business information to the initialized authentication tool in the mapping state, so as to obtain a processed authentication tool in the mapping state; sending a mapping end request to the authentication server, so that the authentication server releases the mapping state of the processed authentication tool in the mapping state, thereby obtaining the processed authentication tool; and sending the processed authentication tool to a cloud-based server, so that the cloud-based server uses the processed authentication tool as the cloud-based authentication tool associated with the user.
Need to check novelty before this filing date? Find Prior Art

Description

Technical Field

[0001] The present invention relates to the field of information processing technology, and more particularly, to a method and system for generating a cloud-based authentication tool based on information mapping. Background Art

[0002] Universal Serial Bus Internet Protocol (USBIP) is a device sharing technology. It allows a computer to seamlessly interact with USB devices on other computers within a local area network (LAN). Compared to traditional sharing methods, USBIP device sharing offers advantages such as full access to the shared device's functionality, simplified driver development, and support for sharing between devices running different operating systems.

[0003] Currently, if a user wants to issue an invoice, they must go to the tax bureau window to apply for a tax Ukey. The tax bureau staff inserts a blank tax Ukey device into a computer and loads the tax information into the device. After receiving the loaded tax control device, the user must return to their computer, plug it into the device, and open the invoicing software before they can issue an invoice. This entire process increases the workload of the tax bureau staff, and users cannot issue invoices immediately or even on the go after receiving the tax control device. Summary of the Invention

[0004] In order to solve the problems in the prior art, the present invention provides a method that allows users to submit applications through the tax bureau's self-service terminal, and the background will automatically issue tax ukeles. After the issuance is completed, the user does not need to take away the device and can directly use the mobile app to issue invoices anytime and anywhere.

[0005] The technical solution of the present invention includes a self-service terminal device, an issuance program, a USBIP system service, and a tax ukey management device. The USBIP system service runs on the tax ukey management device, the self-service terminal device is located in the tax bureau service hall, and the issuance program is deployed on an issuance PC at the tax bureau backend. Blank tax ukes to be issued are inserted into the tax ukey management device.

[0006] The self-service issuance plan is as follows:

[0007] Users fill in issuance information at the tax bureau's self-service terminal to apply for issuance.

[0008] The issuing program receives the issuing request from the user and uses USBIP technology to apply for mapping an empty tax ukey from the tax ukey management device to the PC terminal running the issuing program.

[0009] The issuing program writes the user's tax information into the mapped empty tax ukey. After writing is completed, the mapping status of the tax ukey is released and returned to the tax ukey hardware management device.

[0010] The tax ukey hardware management device will register the issued tax ukey to the cloud invoicing system.

[0011] After completing the registration, the issuance success information will be returned to the self-service terminal interface.

[0012] After the user sees the issuance success information, he can open the invoicing app to perform the invoicing operation.

[0013] According to one aspect of the present invention, a method for generating a cloud-based authentication tool based on information mapping is provided, the method comprising:

[0014] receiving an authentication tool acquisition request input by a user via a user terminal, the authentication tool acquisition request including: a user identifier, identity information, and service information, and authenticating the user based on the user identifier and identity information to obtain an authentication result of the user;

[0015] When the identity authentication result is passed, a mapping start request is sent to the authentication server using a pre-set device sharing mechanism, so that the authentication server generates an initialized authentication tool in a mapping state;

[0016] Writing the business information to the initialized authentication tool in the mapped state to obtain a processed authentication tool in the mapped state;

[0017] Sending a mapping end request to the authentication server so that the authentication server releases the mapping state of the processed authentication tool in the mapping state, thereby obtaining the processed authentication tool;

[0018] The processed authentication tool is sent to the cloud server, so that the cloud server uses the processed authentication tool as the cloud authentication tool associated with the user.

[0019] Preferably, the pre-set device sharing mechanism is a network-transparent device sharing mechanism built based on a universal serial bus (USB).

[0020] Preferably, the pre-set device sharing mechanism is a network-transparent device sharing mechanism built based on the Internet Protocol (IP).

[0021] Preferably, the method further includes obtaining, by using a terminal device, an authentication tool acquisition request input by a user via a user terminal.

[0022] Preferably, the cloud-based authentication tool is a tax UKey.

[0023] Preferably, after the cloud server uses the processed authentication tool as the cloud authentication tool associated with the user, the method further includes:

[0024] Send an authentication tool response message to the user terminal to indicate that the cloud-based authentication tool associated with the user is ready.

[0025] Preferably, the mapping start request includes: a user identifier and identity information.

[0026] Preferably, after sending the authentication tool response message to the user to indicate that the cloud authentication tool associated with the user is in a ready state, the method further includes:

[0027] The user sends an electronic certificate request to the certificate server via the user terminal;

[0028] The credential server parses the electronic credential request to obtain an identifier of the user and a plurality of data content items;

[0029] The credential server determines, based on the identifier of the user, whether there is a cloud-based authentication tool associated with the user;

[0030] When it is determined that there is a cloud-based authentication tool associated with the user, an electronic credential is generated for the user based on the plurality of data content items.

[0031] Preferably, the credential server determining whether there is a cloud-based authentication tool associated with the user based on the user identifier comprises:

[0032] The credential server generates a query request based on the user's identifier and sends the query request to the authentication server;

[0033] The authentication server parses the query request to obtain an identifier of the user, and searches the local storage based on the identifier of the user to determine whether there is a cloud-based authentication tool associated with the user;

[0034] When it is determined that there is a cloud-based authentication tool associated with the user, a query response indicating that there is a cloud-based authentication tool associated with the user is sent to the credential server.

[0035] Preferably, after generating an electronic certificate for the user based on the plurality of data content items, the method further comprises:

[0036] The certificate server sends the acquisition address associated with the electronic certificate to the user terminal.

[0037] According to another aspect of the present invention, a system for generating a cloud-based authentication tool based on information mapping is provided, the system comprising:

[0038] a receiving device for receiving an authentication tool acquisition request input by a user via a user terminal, the authentication tool acquisition request including: a user identifier, identity information, and service information, and authenticating the user based on the user identifier and identity information to obtain an authentication result of the user;

[0039] The sending device is used to send a mapping start request to the authentication server by using a preset device sharing mechanism when the identity authentication result is passed, so that the authentication server generates an initialized authentication tool in a mapping state;

[0040] Writing means for writing the service information into the initialized authentication tool in the mapping state to obtain a processed authentication tool in the mapping state;

[0041] an obtaining means for sending a mapping end request to the authentication server so that the authentication server releases the mapping state of the processed authentication tool in the mapping state, thereby obtaining the processed authentication tool;

[0042] The processing device is used to send the processed authentication tool to the cloud server, so that the cloud server uses the processed authentication tool as the cloud authentication tool associated with the user.

[0043] Preferably, the pre-set device sharing mechanism is a network-transparent device sharing mechanism built based on a universal serial bus (USB).

[0044] Preferably, the pre-set device sharing mechanism is a network-transparent device sharing mechanism built based on the Internet Protocol (IP).

[0045] Preferably, the method further includes obtaining, by using a terminal device, an authentication tool acquisition request input by a user via a user terminal.

[0046] Preferably, the cloud-based authentication tool is a tax UKey.

[0047] Preferably, the sending means is further configured to send an authentication tool response message to the user terminal, indicating that the cloud authentication tool associated with the user is in a ready state.

[0048] Preferably, the mapping start request includes: a user identifier and identity information.

[0049] Preferably, the processing device is also used to prompt the user to send an electronic credential request to the credential server via the user terminal; prompt the credential server to parse the electronic credential request to obtain the user's identifier and multiple data content items; prompt the credential server to determine whether there is a cloud-based authentication tool associated with the user based on the user's identifier; and when it is determined that there is a cloud-based authentication tool associated with the user, generate an electronic credential for the user based on multiple data content items.

[0050] Preferably, the processing device is also used to prompt the credential server to generate a query request based on the user's identifier and send the query request to the authentication server; prompt the authentication server to parse the query request to obtain the user's identifier, and search the local memory based on the user's identifier to determine whether there is a cloud-based authentication tool associated with the user; when it is determined that there is a cloud-based authentication tool associated with the user, send a query response to the credential server to indicate that there is a cloud-based authentication tool associated with the user.

[0051] Preferably, the processing device is further configured to cause the credential server to send an acquisition address associated with the electronic credential to the user terminal.

[0052] By using USBIP mapping technology, the tax information can be written to the empty tax ukey device at the issuing terminal without plugging in or unplugging the device, and the tax ukey device issuance process can be fully automated.

[0053] The technical solution of the present invention implements a self-service tax uke issuance method using self-service terminal devices, reducing the workload of tax bureau window staff and improving work efficiency. The technical solution of the present invention enables users to issue mobile invoices anytime and anywhere after the tax uke is successfully issued, expanding the user's invoicing scenarios and improving invoicing efficiency. The technical solution of the present invention facilitates the tax bureau's management of tax ukes and reduces the user's management costs of tax ukes. BRIEF DESCRIPTION OF THE DRAWINGS

[0054] A more complete understanding of exemplary embodiments of the present invention may be obtained by referring to the following drawings:

[0055] Figure 1 A flowchart of a method for generating a cloud-based authentication tool based on information mapping according to an embodiment of the present invention;

[0056] Figure 2 A timing diagram of generating a cloud authentication tool based on information mapping according to an embodiment of the present invention;

[0057] Figure 3 Schematic diagram of the structure of a system for generating a cloud-based authentication tool based on information mapping according to an embodiment of the present invention. DETAILED DESCRIPTION

[0058] Figure 1 Flowchart of a method 100 for generating a cloud-based authentication tool based on information mapping according to an embodiment of the present invention. The method 100 includes:

[0059] Step 101 receives an authentication tool acquisition request input by a user via a user terminal. The authentication tool acquisition request includes a user identifier, identity information, and service information. The user is authenticated based on the user identifier and identity information to obtain an authentication result. In one embodiment, the method further includes utilizing a terminal device to acquire the authentication tool acquisition request input by the user via the user terminal.

[0060] Step 102: When the identity authentication result is verified, a mapping initiation request is sent to the authentication server using a pre-set device sharing mechanism, so that the authentication server generates an initialized authentication tool in a mapping state. In one embodiment, the pre-set device sharing mechanism is a network-transparent device sharing mechanism based on a Universal Serial Bus (USB). In one embodiment, the pre-set device sharing mechanism is a network-transparent device sharing mechanism based on an Internet Protocol (IP). In one embodiment, the mapping initiation request includes a user identifier and identity information.

[0061] Step 103: Write the service information into the initialized authentication tool in the mapping state to obtain a processed authentication tool in the mapping state.

[0062] Step 104: Send a mapping end request to the authentication server, so that the authentication server releases the mapping state of the processed authentication tool in the mapping state, thereby obtaining the processed authentication tool.

[0063] Step 105: Send the processed authentication tool to the cloud server, so that the cloud server uses the processed authentication tool as the cloud authentication tool associated with the user. In one embodiment, the cloud authentication tool is a tax UKey.

[0064] In one embodiment, after the cloud server uses the processed authentication tool as the cloud authentication tool associated with the user, the method further includes: sending an authentication tool response message to the user terminal to indicate that the cloud authentication tool associated with the user is in a ready state.

[0065] In one embodiment, after sending an authentication tool response message to the user to indicate that the cloud-based authentication tool associated with the user is in a ready state, the method further includes: the user sends an electronic credential request to the credential server via the user terminal; the credential server parses the electronic credential request to obtain the user's identifier and multiple data content items; the credential server determines whether there is a cloud-based authentication tool associated with the user based on the user's identifier; and when it is determined that there is a cloud-based authentication tool associated with the user, generates an electronic credential for the user based on the multiple data content items.

[0066] In one embodiment, the credential server determines whether a cloud-based authentication tool is associated with the user based on the user's identifier, including: the credential server generates a query request based on the user's identifier and sends the query request to the authentication server; the authentication server parses the query request to obtain the user's identifier, searches a local memory based on the user's identifier to determine whether a cloud-based authentication tool is associated with the user; and, if it is determined that a cloud-based authentication tool is associated with the user, sends a query response to the credential server indicating that a cloud-based authentication tool is associated with the user. In one embodiment, after generating an electronic credential for the user based on multiple data content items, the process also includes: the credential server sends an access address associated with the electronic credential to the user terminal.

[0067] Figure 2 This is a sequence diagram for generating a cloud-based authentication tool based on information mapping according to an embodiment of the present invention. The technical solution of the present invention includes a self-service terminal device, an issuance program, a USBIP system service, and a tax ukey management device. The USBIP system service runs on the tax ukey management device, the self-service terminal device is located in the tax bureau service hall, and the issuance program is deployed on an issuance PC at the tax bureau's backend. Blank tax ukes to be issued are inserted into the tax ukey management device.

[0068] The technical solution for self-issuance is as follows:

[0069] 1. The user fills in the issuance information on the self-service terminal of the tax bureau to apply for issuance.

[0070] 2. The issuing program receives the issuing request from the user and uses USBIP technology to apply for mapping an empty tax ukey from the tax ukey management device to the PC terminal running the issuing program.

[0071] 3. The issuing program writes the user's tax information into the mapped empty tax ukey. After writing is completed, the mapping status of the tax ukey is released and returned to the tax ukey hardware management device.

[0072] 4. The tax ukey hardware management device will register the issued tax ukey in the cloud invoicing system.

[0073] 5. After completing the registration, the issuance success information will be returned to the self-service terminal interface.

[0074] 6. After the user sees the issuance success information, he can open the invoicing app to perform the invoicing operation.

[0075] The technical solution of the present invention utilizes USBIP mapping technology to enable an empty tax ukey device to write tax information at the issuing terminal without the need to plug in or unplug the device, and to achieve full automation of the tax ukey device issuance process. The technical solution of the present invention implements a method of self-service issuance of tax ukes using self-service terminal devices, which reduces the work pressure of tax bureau window staff and improves work efficiency. The technical solution of the present invention enables users to issue mobile invoices anytime and anywhere after the tax ukey is successfully issued, expands the user's invoicing scenarios, and improves invoicing efficiency. The technical solution of the present invention facilitates the tax bureau's management of tax ukes and reduces the user's management costs of tax ukes.

[0076] Figure 3 Schematic diagram of a system 300 for generating a cloud-based authentication tool based on information mapping according to an embodiment of the present invention. The system 300 includes a receiving device 301 , a sending device 302 , a writing device 303 , an obtaining device 304 , and a processing device 305 .

[0077] The receiving device 301 is used to receive an authentication tool acquisition request input by a user via a user terminal, wherein the authentication tool acquisition request includes: a user identifier, identity information and service information, and authenticate the user based on the user identifier and identity information to obtain the user's authentication result.

[0078] The sending means 302 is configured to send a mapping start request to the authentication server using a preset device sharing mechanism when the identity authentication result is passed, so that the authentication server generates an initialized authentication tool in a mapping state.

[0079] The writing device 303 is used to write the business information into the initialized authentication tool in the mapping state to obtain a processed authentication tool in the mapping state.

[0080] The obtaining means 304 is configured to send a mapping end request to the authentication server, so that the authentication server releases the mapping state of the processed authentication tool in the mapping state, thereby obtaining the processed authentication tool.

[0081] The processing device 305 is used to send the processed authentication tool to the cloud server, so that the cloud server uses the processed authentication tool as the cloud authentication tool associated with the user.

[0082] In one embodiment, the pre-set device sharing mechanism is a network-transparent device sharing mechanism built on a universal serial bus USB. In one embodiment, the pre-set device sharing mechanism is a network-transparent device sharing mechanism built on an Internet protocol IP. In one embodiment, it also includes using a terminal device to obtain an authentication tool acquisition request input by a user via a user terminal. In one embodiment, the cloud-based authentication tool is a tax UKey. In one embodiment, the sending device 302 is also used to send an authentication tool response message to the user terminal, indicating that the cloud-based authentication tool associated with the user is in a ready state. In one embodiment, the mapping start request includes: a user identifier and identity information.

[0083] In one embodiment, the processing device 305 is also used to prompt the user to send an electronic credential request to the credential server via the user terminal; prompt the credential server to parse the electronic credential request to obtain the user's identifier and multiple data content items; prompt the credential server to determine whether there is a cloud-based authentication tool associated with the user based on the user's identifier; and when it is determined that there is a cloud-based authentication tool associated with the user, generate an electronic credential for the user based on multiple data content items.

[0084] In one embodiment, the processing device 305 is further configured to cause the credential server to generate a query request based on the user's identifier and send the query request to the authentication server; cause the authentication server to parse the query request to obtain the user's identifier, and search the local storage based on the user's identifier to determine whether a cloud-based authentication tool associated with the user exists; and if it is determined that a cloud-based authentication tool associated with the user exists, send a query response to the credential server indicating that a cloud-based authentication tool associated with the user exists. In one embodiment, the processing device 305 is further configured to cause the credential server to send an retrieval address associated with the electronic credential to the user terminal.

Claims

1. A method for generating a cloud-based authentication tool based on information mapping, the method comprising: Receiving an authentication tool acquisition request input by a user via a user terminal, the authentication tool acquisition request including: User identifier, identity information, and business information, and authenticating the user based on the user identifier and identity information to obtain an authentication result of the user; When the identity authentication result is passed, a mapping start request is sent to the authentication server using a pre-set device sharing mechanism, so that the authentication server generates an initialized authentication tool in a mapping state; Writing the business information to the initialized authentication tool in the mapped state to obtain a processed authentication tool in the mapped state; Sending a mapping end request to the authentication server so that the authentication server releases the mapping state of the processed authentication tool in the mapping state, thereby obtaining the processed authentication tool; sending the processed authentication tool to the cloud server, so that the cloud server uses the processed authentication tool as the cloud authentication tool associated with the user; After the cloud server uses the processed authentication tool as the cloud authentication tool associated with the user, the method further includes: sending an authentication tool response message to the user terminal to indicate that the cloud authentication tool associated with the user is in a ready state; Wherein, the mapping start request includes: user identifier and identity information; After sending an authentication tool response message to the user indicating that the cloud-based authentication tool associated with the user is in a ready state, the method further includes: the user sending an electronic credential request to a credential server via a user terminal; the credential server parsing the electronic credential request to obtain a user identifier and a plurality of data content items; the credential server determining, based on the user identifier, whether there is a cloud-based authentication tool associated with the user; and, if it is determined that there is a cloud-based authentication tool associated with the user, generating an electronic credential for the user based on the plurality of data content items; The credential server determines whether there is a cloud-based authentication tool associated with the user based on the user identifier, comprising: the credential server generates a query request based on the user identifier and sends the query request to the authentication server; the authentication server parses the query request to obtain the user identifier, searches a local memory based on the user identifier to determine whether there is a cloud-based authentication tool associated with the user; and when it is determined that there is a cloud-based authentication tool associated with the user, sends a query response to the credential server indicating that there is a cloud-based authentication tool associated with the user; After the electronic certificate is generated for the user based on the multiple data content items, the method further includes: the certificate server sending an acquisition address associated with the electronic certificate to the user terminal. 2 . The method according to claim 1 , wherein the pre-set device sharing mechanism is a network-transparent device sharing mechanism built based on a Universal Serial Bus (USB).

3. The method according to claim 1, wherein the pre-set device sharing mechanism is a network-transparent device sharing mechanism built based on the Internet Protocol (IP). 4 . The method according to claim 1 , further comprising: using a terminal device to obtain an authentication tool acquisition request input by a user via a user terminal.

5. The method according to claim 1, wherein the cloud-based authentication tool is a tax UKey.

6. A system for generating a cloud-based authentication tool based on information mapping, the system comprising: a receiving device for receiving an authentication tool acquisition request input by a user via a user terminal, the authentication tool acquisition request including: a user identifier, identity information, and service information, and authenticating the user based on the user identifier and identity information to obtain an authentication result of the user; The sending device is used to send a mapping start request to the authentication server by using a preset device sharing mechanism when the identity authentication result is passed, so that the authentication server generates an initialized authentication tool in a mapping state; Writing means for writing the service information into the initialized authentication tool in the mapping state to obtain a processed authentication tool in the mapping state; an obtaining means for sending a mapping end request to the authentication server so that the authentication server releases the mapping state of the processed authentication tool in the mapping state, thereby obtaining the processed authentication tool; processing means for sending the processed authentication tool to the cloud server, so that the cloud server uses the processed authentication tool as the cloud authentication tool associated with the user; After the cloud server uses the processed authentication tool as the cloud authentication tool associated with the user, the method further includes: sending an authentication tool response message to the user terminal to indicate that the cloud authentication tool associated with the user is in a ready state; Wherein, the mapping start request includes: user identifier and identity information; After sending an authentication tool response message to the user indicating that the cloud-based authentication tool associated with the user is in a ready state, the method further includes: the user sending an electronic credential request to a credential server via a user terminal; the credential server parsing the electronic credential request to obtain a user identifier and a plurality of data content items; the credential server determining, based on the user identifier, whether there is a cloud-based authentication tool associated with the user; and, if it is determined that there is a cloud-based authentication tool associated with the user, generating an electronic credential for the user based on the plurality of data content items; The credential server determines whether there is a cloud-based authentication tool associated with the user based on the user identifier, comprising: the credential server generates a query request based on the user identifier and sends the query request to the authentication server; the authentication server parses the query request to obtain the user identifier, searches a local memory based on the user identifier to determine whether there is a cloud-based authentication tool associated with the user; and when it is determined that there is a cloud-based authentication tool associated with the user, sends a query response to the credential server indicating that there is a cloud-based authentication tool associated with the user; After the electronic certificate is generated for the user based on the multiple data content items, the method further includes: the certificate server sending an acquisition address associated with the electronic certificate to the user terminal. 7 . The system according to claim 6 , wherein the pre-set device sharing mechanism is a network-transparent device sharing mechanism built based on a Universal Serial Bus (USB).

8. The system according to claim 6, wherein the pre-set device sharing mechanism is a network-transparent device sharing mechanism built based on the Internet Protocol (IP).

9. The system according to claim 6, further comprising: utilizing a terminal device to obtain an authentication tool acquisition request input by a user via a user terminal.

10. The system according to claim 6, wherein the cloud-based authentication tool is a tax UKey.

Citation Information

Patent Citations

  • Tax control equipment redirection system and method

    CN112633997A

  • Method and system for obtaining electronic certificate through intelligent terminal

    CN112734542A