Business processing method, device, storage medium and program product

By pre-entering electronic ID information and performing identity verification, the convenience problem of users not carrying physical IDs is solved, and counter transactions without physical IDs are enabled, which improves business efficiency and user experience, while also enhancing the security of electronic IDs.

CN115049399BActive Publication Date: 2025-09-23CHINA CONSTRUCTION BANK +1
View PDF 1 Cites 0 Cited by

Patent Information

Application Number
CN202210675955.1
Authority / Receiving Office
CN · China
Patent Type
Patents(China)
Current Assignee / Owner
Filing Date
2022-06-15
Publication Date
2025-09-23
Estimated Expiration
2042-06-15

AI Technical Summary

Technical Problem

In the banking and insurance sectors, users cannot handle counter transactions without physical documents, resulting in reduced convenience. At the same time, with the popularization of smart devices, users' demand for digital services has increased.

Method used

By pre-entering electronic certificate information and using electronic certificates for identity authentication, counter services can be handled without the need for physical certificates, including receiving business requests, determining certificate requirements, sending rights confirmation requests, and collecting and verifying user authentication information to complete the business.

Benefits of technology

It improves the convenience of business processing, meets users' needs for digitalization, improves the security of electronic certificates, and avoids information leakage.

✦ Generated by Eureka AI based on patent content.

Smart Images

  • Figure CN115049399B_ABST
    Figure CN115049399B_ABST
Patent Text Reader

Abstract

The present application provides a business processing method, device, storage medium and program product, which relate to the field of data processing technology, by receiving a target counter business processing request submitted by a user through a device of a target channel; if it is determined that the target counter business requires the use of the user's electronic certificate information, and the user has pre-entered the electronic certificate information, then a user confirmation request is sent to the device of the target channel; the user confirmation authentication information collected by the device of the target channel is received and verified, and after the verification is passed, a verification pass information is sent to the device of the target channel, so that the device of the target channel can perform the target counter business. By pre-entering the electronic certificate information and handling the counter business based on the electronic certificate information, the user does not need to carry and use the physical certificate, which improves the efficiency and convenience of business processing and enhances the user experience. In addition, through the confirmation process, the user can control his or her own electronic certificate information, improve the security of the electronic certificate information, and avoid information leakage.
Need to check novelty before this filing date? Find Prior Art

Description

Technical Field

[0001] The present application relates to the field of data processing technology, and in particular to a business processing method, device, storage medium and program product. Background Art

[0002] In the fields of banking, insurance, etc., counter services refer to various types of services provided to users by counter staff in business outlets, such as financial services.

[0003] When users conduct over-the-counter transactions at a business outlet, they typically need to prove their identity to the counter staff using physical media, such as ID cards or bank cards. Without these documents, users are unable to conduct over-the-counter transactions, which is inconvenient. Furthermore, with the widespread adoption of smart devices and the rapid development of mobile internet, user behavior has undergone significant changes, with more and more users preferring digital service experiences. Summary of the Invention

[0004] The present application provides a business processing method, device, storage medium and program product to avoid the use of physical media to handle counter business.

[0005] In a first aspect, the present application provides a business processing method, comprising:

[0006] Receive the target counter business processing request submitted by the user through the device of the target channel;

[0007] Determine whether the target counter service requires the use of the user's electronic certificate information and whether the user has pre-entered the electronic certificate information;

[0008] If it is determined that the target counter service requires the use of the user's electronic certificate information and the user has pre-entered the electronic certificate information, a user authentication request is sent to the device of the target channel;

[0009] Receive the user authentication information collected by the device of the target channel, verify the user authentication information, and send a verification pass message to the device of the target channel after the verification is passed, so that the device of the target channel can perform the target counter business.

[0010] Optionally, sending a user authentication request to the device of the target channel includes:

[0011] Sending a request for selecting a confirmation method to the device of the target channel;

[0012] Obtain a determination instruction of the target right confirmation method input by the user through the device of the target channel, and send a user right confirmation authentication information collection instruction corresponding to the target right confirmation method to the device of the target channel, so that the device of the target channel collects the user right confirmation authentication information.

[0013] Optionally, after obtaining the target right confirmation instruction input by the user through the device of the target channel, the method further includes:

[0014] Generate a confirmation code corresponding to this user confirmation, and send the confirmation code to the device of the target channel, so that the device of the target channel uploads the collected user confirmation authentication information with the confirmation code for verification.

[0015] Optionally, the method further includes:

[0016] Generate a confirmation batch number for the user's confirmation request, and send the confirmation batch number to the device of the target channel;

[0017] After sending the verification pass information to the device of the target channel, relevant information of the target counter service sent by the device of the target channel is received and stored, where the relevant information of the target counter service includes one or more of the following:

[0018] The confirmation batch number, the confirmation code, the channel identifier of the target channel, the business list, and relevant time information.

[0019] Optionally, the method further includes:

[0020] Conducting a tracking query based on the stored information related to the target counter business to determine whether the user's electronic certificate information has been leaked;

[0021] If it is determined that the electronic certificate information of the user has been leaked, the corresponding target channel will be added to the prohibited authorization channel list.

[0022] Optionally, sending a user authentication request to the device of the target channel includes:

[0023] Determining whether the target channel is included in the authorized channel list corresponding to the user, and / or whether the target channel is included in the prohibited authorized channel list;

[0024] If it is determined that the target channel is included in the authorized channel list corresponding to the user, and / or the target channel is not included in the prohibited authorized channel list, a user authorization request is sent to the device of the target channel.

[0025] Optionally, before determining whether the target channel is included in the authorized channel list corresponding to the user, the method further includes:

[0026] Receive a channel authorization request sent by the user through the device of the target channel;

[0027] Obtaining relevant information of the target channel and performing channel verification based on the relevant information of the target channel, wherein the channel verification includes at least one of the following: verifying the affiliated institution of the target channel, determining whether the business of the target channel requires the use of electronic certificate information, and verifying the service packaging capability of the target channel;

[0028] After verification, the target channel is added to the authorized channel list corresponding to the user.

[0029] Optionally, the method further includes:

[0030] If it is determined that the user has not pre-entered electronic certificate information, or if a request for the user to enter electronic certificate information is received, receiving the electronic certificate information entered by the user through the device of the target channel and preset authentication information, the preset authentication information including the user password and / or biometric information;

[0031] The user's electronic certificate information and preset right confirmation authentication information are associated and stored.

[0032] Optionally, verifying the user authentication information includes:

[0033] The user authentication information is compared with the preset authentication information, and if they are consistent, the verification is determined to be successful.

[0034] In a second aspect, the present application provides a service processing device, including:

[0035] A communication unit, configured to receive a target counter service request submitted by a user through a device of a target channel;

[0036] a judgment unit, configured to judge whether the target counter service requires the use of the user's electronic certificate information, and whether the user has pre-entered the electronic certificate information;

[0037] a requesting unit configured to send a user authentication request to a device of the target channel if it is determined that the target counter service requires the use of the user's electronic certificate information and the user has pre-entered the electronic certificate information;

[0038] The verification unit is used to receive the user authentication information collected by the device of the target channel, verify the user authentication information, and send a verification pass message to the device of the target channel after the verification is passed, so that the device of the target channel can perform the target counter business.

[0039] Optionally, when sending the user authentication request to the device of the target channel, the request unit is configured to:

[0040] Sending a request for selecting a confirmation method to the device of the target channel;

[0041] Obtain a determination instruction of the target right confirmation method input by the user through the device of the target channel, and send a user right confirmation authentication information collection instruction corresponding to the target right confirmation method to the device of the target channel, so that the device of the target channel collects the user right confirmation authentication information.

[0042] Optionally, after obtaining the target right confirmation method confirmation instruction input by the user through the device of the target channel, the request unit is further configured to:

[0043] Generate a confirmation code corresponding to this user confirmation, and send the confirmation code to the device of the target channel, so that the device of the target channel uploads the collected user confirmation authentication information with the confirmation code for verification.

[0044] Optionally, the requesting unit is further configured to:

[0045] Generate a confirmation batch number for the user's confirmation request, and send the confirmation batch number to the device of the target channel;

[0046] The communication unit is further configured to receive and store relevant information about the target counter service sent by the device of the target channel after sending the verification pass information to the device of the target channel, where the relevant information about the target counter service includes one or more of the following:

[0047] The confirmation batch number, the confirmation code, the channel identifier of the target channel, the business list, and relevant time information.

[0048] Optionally, the device further comprises a tracking unit, configured to:

[0049] Conducting a tracking query based on the stored information related to the target counter business to determine whether the user's electronic certificate information has been leaked;

[0050] If it is determined that the electronic certificate information of the user has been leaked, the corresponding target channel will be added to the prohibited authorization channel list.

[0051] Optionally, the judging unit is further configured to judge whether the target channel is included in a list of authorized channels corresponding to the user, and / or whether the target channel is included in a list of prohibited authorized channels;

[0052] The request unit is further configured to send a user authorization request to a device of the target channel if it is determined that the target channel is included in the authorized channel list corresponding to the user and / or the target channel is not included in the prohibited authorized channel list.

[0053] Optionally, the communication unit is further configured to, before determining whether the target channel is included in the authorized channel list corresponding to the user, receive a channel authorization request sent by the user through a device of the target channel;

[0054] The verification unit is also used to obtain relevant information of the target channel and perform channel verification based on the relevant information of the target channel. The channel verification includes at least one of the following: verifying the affiliated institution of the target channel, determining whether the business of the target channel requires the use of electronic certificate information, and verifying the service packaging capability of the target channel; after the verification is passed, the target channel is added to the authorized channel list corresponding to the user.

[0055] Optionally, the device further includes an input unit, configured to:

[0056] If it is determined that the user has not pre-entered electronic certificate information, or if a request for the user to enter electronic certificate information is received, receiving the electronic certificate information entered by the user through the device of the target channel and preset authentication information, the preset authentication information including the user password and / or biometric information;

[0057] The user's electronic certificate information and preset right confirmation authentication information are associated and stored.

[0058] Optionally, when verifying the user authentication information, the verification unit is configured to:

[0059] The user authentication information is compared with the preset authentication information, and if they are consistent, the verification is determined to be successful.

[0060] In a third aspect, the present application provides an electronic device, comprising: a processor, and a memory communicatively connected to the processor; the memory storing computer-executable instructions;

[0061] The processor executes the computer-executable instructions stored in the memory to implement the method according to the first aspect.

[0062] In a fourth aspect, the present application provides a computer-readable storage medium, wherein the computer-readable storage medium stores computer-executable instructions, and when the computer-executable instructions are executed by a processor, they are used to implement the method described in the first aspect.

[0063] In a fifth aspect, the present application provides a computer program product, comprising a computer program, which implements the method described in the first aspect when executed by a processor.

[0064] The business processing method, device, storage medium and program product provided by the present application receive a target counter business processing request submitted by a user through a device of a target channel; determine whether the target counter business requires the use of the user's electronic certificate information and whether the user has pre-entered the electronic certificate information; if it is determined that the target counter business requires the use of the user's electronic certificate information and the user has pre-entered the electronic certificate information, then send a user confirmation request to the device of the target channel; receive the user confirmation authentication information collected by the device of the target channel, verify the user confirmation authentication information, and send a verification pass message to the device of the target channel after the verification passes, so that the device of the target channel can perform the target counter business processing. By pre-entering the electronic certificate information and processing the counter business based on the pre-entered electronic certificate information, the user does not need to carry and use physical certificates when processing the counter business, thereby improving the efficiency and convenience of business processing and enhancing the user experience. In addition, the confirmation process allows users to control their own electronic certificate information, improves the security of the electronic certificate information, and avoids information leakage. BRIEF DESCRIPTION OF THE DRAWINGS

[0065] The accompanying drawings, which are incorporated in and constitute a part of this specification, illustrate embodiments consistent with the present application and, together with the description, serve to explain the principles of the present application.

[0066] Figure 1 A schematic diagram of an application scenario of a business processing method provided in one embodiment of the present application;

[0067] Figure 2 A flowchart of a business processing method provided in one embodiment of the present application;

[0068] Figure 3 A flowchart of a business processing method provided in another embodiment of the present application;

[0069] Figure 4 A flowchart of a business processing method provided in another embodiment of the present application;

[0070] Figure 5 A flowchart of a business processing method provided in another embodiment of the present application;

[0071] Figure 6 A flowchart of a business processing method provided in another embodiment of the present application;

[0072] Figure 7 A diagram showing the structure of a service processing device according to an embodiment of the present application;

[0073] Figure 8A structural diagram of an electronic device provided in one embodiment of the present application.

[0074] The above drawings illustrate specific embodiments of the present application, which will be described in more detail below. These drawings and the textual description are not intended to limit the scope of the present application in any way, but rather to illustrate the concepts of the present application to those skilled in the art by reference to specific embodiments. DETAILED DESCRIPTION

[0075] Exemplary embodiments will be described in detail herein, with examples illustrated in the accompanying drawings. In the following description, when referring to the drawings, identical numerals in different figures represent identical or similar elements, unless otherwise indicated. The embodiments described in the following exemplary embodiments are not intended to represent all embodiments consistent with the present application. Rather, they are merely examples of apparatus and methods consistent with certain aspects of the present application, as detailed in the appended claims.

[0076] In the fields of banking, insurance, etc., counter services refer to various types of services provided to users by counter staff in business outlets, such as financial services.

[0077] When users conduct over-the-counter transactions at a business outlet, they typically need to prove their identity to the counter staff using physical media, such as ID cards or bank cards. Without these documents, users are unable to conduct over-the-counter transactions, which is inconvenient. Furthermore, with the widespread adoption of smart devices and the rapid development of mobile internet, user behavior has undergone significant changes, with more and more users preferring digital service experiences.

[0078] In order to solve the above technical problems, a business processing method is provided in an embodiment of the present application. Instead of using physical certificates, electronic certificates are used. By pre-entering electronic certificate information and handling counter business based on the pre-entered electronic certificate information, users do not need to carry and use physical certificates when handling counter business, thereby improving business handling efficiency and convenience, meeting users' needs for digital services, and improving user experience. In addition, through the right confirmation process, users can control their own electronic certificate information, improve the security of electronic certificate information, and avoid information leakage.

[0079] Specifically, it can be done by receiving a target counter business processing request submitted by the user through the device of the target channel; judging whether the target counter business requires the use of the user's electronic certificate information, and whether the user has pre-entered the electronic certificate information; if it is determined that the target counter business requires the use of the user's electronic certificate information, and the user has pre-entered the electronic certificate information, then sending a user confirmation request to the device of the target channel; receiving the user confirmation authentication information collected by the device of the target channel, verifying the user confirmation authentication information, and sending a verification pass information to the device of the target channel after the verification is passed, so that the device of the target channel can perform the target counter business.

[0080] The business processing method of this application is applicable to Figure 1 The application scenario shown includes the device 101 of the target channel of the branch counter and the management system server 102. The user can submit a target counter business processing request to the management system server 102 through the device 101 of the target channel; the management system server 102 can determine whether the target counter business requires the use of the user's electronic certificate information and whether the user has pre-entered the electronic certificate information; if the management system server 102 determines that the target counter business requires the use of the user's electronic certificate information and the user has pre-entered the electronic certificate information, it sends a user confirmation request to the device 101 of the target channel; the user can input the user confirmation authentication information through the device 101 of the target channel, and the device 101 of the target channel sends the user confirmation authentication information to the management system server 102. The management system server 102 verifies the user confirmation authentication information and sends a verification pass information to the device 101 of the target channel after the verification is passed, so that the device 101 of the target channel can perform the target counter business.

[0081] The following specific embodiments describe in detail the technical solution of the present application and how the technical solution of the present application solves the above-mentioned technical problems. The following specific embodiments can be combined with each other, and the same or similar concepts or processes may not be repeated in some embodiments. The embodiments of the present application will be described below in conjunction with the accompanying drawings.

[0082] Figure 2 This is a flowchart of a business processing method provided by an embodiment of the present application. This embodiment provides a business processing method, the execution subject of which is an electronic device such as a management system server. The specific steps of the business processing method are as follows:

[0083] S201: Receive a target counter service processing request submitted by a user through a device of a target channel.

[0084] In this embodiment, the target channel for a branch counter service may include, but is not limited to, a counter, an ATM, mobile banking, online banking, or other channels for handling counter services. A user may submit a request for a target counter service through the relevant device of the target channel. For example, the relevant device corresponding to the counter may be a teller's computer. The user may communicate with the teller at the counter, who may then use the computer to submit the request for the target counter service. Alternatively, the user may submit the request for the target counter service by using a terminal device such as an ATM or mobile phone. This embodiment does not limit the specific target counter service.

[0085] S202: Determine whether the target counter service requires the use of the user's electronic certificate information and whether the user has pre-entered the electronic certificate information.

[0086] In this embodiment, in order to realize media-free counter business processing, users are required to enter their electronic certificate information in advance, including but not limited to three-factor information, user unique number, front and back photos of the physical certificate, and main information extracted from the physical certificate.

[0087] After receiving the target counter business processing request submitted by the user through the device of the target channel, it can be determined whether the target counter business requires the use of the user's electronic certificate information and whether the user has pre-entered the electronic certificate information. The determination of whether the target counter business requires the use of the user's electronic certificate information is based on the consideration that some counter businesses do not support electronic certificate information. For example, some counter businesses do not require the user's certificate information (whether electronic or physical certificate) at all, or some counter businesses only support physical certificate processing, so there is no need for subsequent processes; for target counter businesses that require the use of the user's electronic certificate information, it is necessary to determine whether the user has pre-entered the electronic certificate information. If the user has not pre-entered the electronic certificate information, the user can be prompted to enter the electronic certificate information, or use a physical certificate to handle the counter business.

[0088] Optionally, if it is determined that the user has not entered the electronic certificate information in advance, or if a request for the user to enter the electronic certificate information is received at any time, the user can enter the electronic certificate information and preset right confirmation authentication information through the device of the target channel, wherein the preset right confirmation authentication information includes but is not limited to the user password and / or biometric information, and the biometric information includes but is not limited to fingerprints, facial images, etc. The preset right confirmation authentication information is used to verify the user's right confirmation process. Furthermore, the user's electronic certificate information and the preset right confirmation authentication information are associated and stored in the management system server. The entry of electronic certificate information and the preset right confirmation authentication information is a prerequisite for handling counter services without media. Only when the user has entered the electronic certificate information and the preset right confirmation authentication information can the counter business without media be handled, that is, the counter business is handled using electronic certificates.

[0089] S203: If it is determined that the target counter service requires the use of the user's electronic certificate information and the user has pre-entered the electronic certificate information, a user authentication request is sent to the device of the target channel.

[0090] In this embodiment, after determining that the target counter business requires the use of the user's electronic certificate information and the user has pre-entered the electronic certificate information, the management system server can send a user confirmation request to the device of the target channel so that the user can confirm whether to allow the device of the target channel to use the electronic certificate information to handle the target counter business. The user can choose to confirm the rights or not. If not, the user confirmation authentication information will not be entered, or the user can choose to cancel the confirmation.

[0091] Optional, such as Figure 3 As shown, when sending a user authentication request to the device of the target channel, it may specifically include:

[0092] S2031. Sending a request for selecting a rights confirmation method to the device of the target channel;

[0093] S2032: Obtaining a target ownership confirmation instruction input by the user through a device of the target channel;

[0094] S2033. Send a user rights confirmation and authentication information collection instruction corresponding to the target rights confirmation method to the device of the target channel, so that the device of the target channel collects the user rights confirmation and authentication information.

[0095] In this embodiment, there can be many ways for users to confirm their rights, including but not limited to verification codes, passwords, fingerprint recognition, face recognition, etc. The user can select a target confirmation method on the device of the target channel, or specify a default confirmation method as the target confirmation method, or select the corresponding target confirmation method based on the preset confirmation authentication information pre-entered by the user. For example, if the user only enters a password in advance, password verification can be used as the target confirmation method.

[0096] After determining the target authentication method selected by the user, the management system server can send a user authentication information collection instruction corresponding to the target authentication method to the device of the target channel, and control the device of the target channel to collect the user authentication information corresponding to the target authentication method. For example, if the target authentication method is verification code verification, a verification code is sent to the user's terminal, and the device of the target channel is controlled to provide a verification code input interface, where the verification code received by the user terminal can be entered; if the target authentication method is password authentication, the device of the target channel is controlled to provide a password input interface, where the user password can be entered; if the target authentication method is fingerprint authentication, the device of the target channel is controlled to collect the user's fingerprint through a fingerprint scanning device; if the target authentication method is face authentication, the device of the target channel is controlled to collect the face image through a camera.

[0097] S204, receiving the user authentication information collected by the device of the target channel, verifying the user authentication information, and sending a verification pass message to the device of the target channel after the verification passes, so that the device of the target channel can perform the target counter business processing.

[0098] In this embodiment, after collecting user authentication information, the management system server can verify the user authentication information. Only if the verification passes can it be confirmed that the user has authorized the use of the electronic certificate information. Specifically, the collected user authentication information is compared with the preset authentication information. If they are consistent, the verification is determined to be successful. For example, the collected fingerprint is compared with the pre-stored fingerprint, or the collected facial image is compared with the pre-stored facial image. In addition, if there is a discrepancy, the user can be prompted to re-enter the user authentication information and collect and verify it.

[0099] Optionally, after obtaining the target ownership confirmation instruction input by the user through the device of the target channel in S2032, the following steps may also be included:

[0100] Generate a confirmation code corresponding to this user confirmation and send the confirmation code to the device of the target channel. After the device of the target channel collects the user confirmation authentication information, it can upload the collected user confirmation authentication information with the confirmation code for verification to prove that the user confirmation authentication information has been confirmed by the user.

[0101] After the user's authentication information is verified, a verification pass message can be sent to the target channel's device, notifying the target channel's device that it can handle the target counter service. Optionally, the user's pre-entered electronic ID information can be extracted and sent to the target channel's device, allowing the target channel's device to handle the target counter service based on the electronic ID information.

[0102] It should be noted that in the technical solutions of the various embodiments of this application, the collection, storage, use, processing, transmission, provision and disclosure of information such as financial data or user data (including electronic certificate information, user passwords and / or biometric information, etc.) involved are in compliance with the provisions of relevant laws and regulations and do not violate public order and good morals.

[0103] The business processing method provided in this embodiment receives a target counter business processing request submitted by a user through a device of a target channel; determines whether the target counter business requires the use of the user's electronic certificate information and whether the user has pre-entered the electronic certificate information; if it is determined that the target counter business requires the use of the user's electronic certificate information and the user has pre-entered the electronic certificate information, then sends a user confirmation request to the device of the target channel; receives the user confirmation authentication information collected by the device of the target channel, verifies the user confirmation authentication information, and sends a verification pass message to the device of the target channel after the verification passes, so that the device of the target channel can process the target counter business. By pre-entering the electronic certificate information and processing the counter business based on the pre-entered electronic certificate information, the user does not need to carry and use physical certificates when processing the counter business, thereby improving the efficiency and convenience of business processing, meeting the user's demand for digital services, and improving the user experience. In addition, through the confirmation process, the user can control his or her own electronic certificate information, improve the security of the electronic certificate information, and avoid information leakage.

[0104] Based on any of the above embodiments, Figure 4 As shown, the sending of the user authentication request to the device of the target channel in S203 may further include:

[0105] S301: Determine whether the target channel is included in the authorized channel list corresponding to the user, and / or whether the target channel is included in the prohibited authorized channel list;

[0106] S302: If it is determined that the target channel is included in the authorized channel list corresponding to the user and / or the target channel is not included in the prohibited authorized channel list, a user authorization confirmation request is sent to a device of the target channel.

[0107] In this embodiment, since the target channel may include but is not limited to a counter, ATM, mobile banking, online banking, or other channels for handling over-the-counter services, in order to further protect user information and prevent information leakage, a channel access review may be conducted, and the accessed channels must comply with specified specifications and unified authentication and real-time requirements. Specifically, the user may pre-apply for or specify which channels are authorized to use electronic certificate information, add the authorized channels to the user's corresponding authorized channel list, or add a channel that is not allowed to use electronic certificate information or does not meet the specifications to a prohibited authorization channel list. The prohibited authorization channel list may correspond to a specific user or be shared by all users. Furthermore, before sending a user authentication request to the device of the target channel, a determination is first made as to whether the target channel is included in the user's corresponding authorized channel list and / or whether the target channel is included in the prohibited authorization list. If it is determined that the target channel is included in the user's corresponding authorized channel list and / or that the target channel is not included in the prohibited authorization channel list, a user authentication request may be sent to the device of the target channel.

[0108] In the above embodiment, if Figure 5 As shown, before determining whether the target channel is included in the authorized channel list corresponding to the user, the specific process of reviewing channel access includes:

[0109] S401: Receive a channel authorization request sent by a user through a device of a target channel;

[0110] S402: Obtain relevant information of the target channel and perform channel verification based on the relevant information of the target channel, wherein the channel verification includes at least one of the following: verifying the affiliated institution of the target channel, determining whether the business of the target channel requires the use of electronic certificate information, and verifying the service packaging capability of the target channel;

[0111] S403: After verification, the target channel is added to the authorized channel list corresponding to the user.

[0112] In this embodiment, the user can first initiate a channel authorization request through the device of the target channel (or the device of another channel), including the target channel to be authorized, and obtain relevant information of the target channel, and verify the target channel in three dimensions: channel affiliation, channel handling business, and channel technical capabilities:

[0113] 1) The channel affiliation agency is used to verify whether the channel’s business operations are legal and compliant.

[0114] 2) Channel processing services are used to verify whether the user's business processing requires identity verification. If the channel business itself does not require media verification, there is no requirement to go through the authentication process.

[0115] 3) Channel technical capabilities require the channel to have certain service packaging capabilities. In order to avoid the risk of customer information leakage, when the channel accesses the unified authentication system for information verification, the customer information transmitted over the network must be encrypted and secure.

[0116] After the review is complete and verification is passed, the target channel will be added to the user's corresponding authorized channel list. In addition, target channels that fail verification can be added to the prohibited authorized channel list. Optionally, a unique authorization code can be generated for the target channel that passes verification. This serves as the only credential for the target channel to interact with the management system server. In other words, any interactive information or instructions can carry this authorization code, improving security and facilitating tracking and querying. If the target channel is non-compliant or needs to be offline, an application can be made to invalidate the authorization code.

[0117] Based on any of the above embodiments, the method may further include:

[0118] Generate a confirmation batch number for the user confirmation request, and send the confirmation batch number to the device of the target channel; wherein the confirmation batch number is used to identify this user confirmation request and related information.

[0119] After sending the verification pass information to the device of the target channel, the relevant information of the target counter business sent by the device of the target channel is received and stored. The relevant information of the target counter business includes but is not limited to one or more of the following: the confirmation batch number, the confirmation code, the channel identification of the target channel, the business list, and the relevant time information.

[0120] In this embodiment, in order to facilitate tracking and help users check when and through which channel to handle which business, electronic certificate information is used, and the equipment of the target channel can upload and store relevant information of the target counter business.

[0121] Based on the above embodiments, Figure 6 As shown, the tracking process may specifically include:

[0122] S501: Conduct a tracking query based on the stored information related to the target counter business to determine whether the user's electronic certificate information has been leaked;

[0123] S502: If it is determined that the electronic certificate information of the user is leaked, the corresponding target channel is added to the prohibited authorization channel list.

[0124] In this embodiment, when the customer confirms the target channel and uses the electronic certificate information and related information to verify the identity and handle the target counter business, since the relevant information of the above-mentioned target counter business is stored, it is possible to track in real time or at any time which channel is used each time and the related business handled in the channel this time, ensuring that the user can grasp the usage of his or her own electronic certificate information anytime and anywhere, satisfying the customer's control over his or her own information.

[0125] If a customer discovers a leak of their electronic ID information, the tracking function provides valuable clues to assist with investigation. During the investigation, the user can verify the relevant information of each channel corresponding to the target counter business until the possible channel of information leakage is discovered. If a channel is verified to have leaked customer information, it will be added to the list of prohibited authorized channels.

[0126] Figure 7 The business processing device provided in this embodiment can execute the processing flow provided in the business processing method embodiment, such as Figure 7 As shown, the service processing device 700 includes a communication unit 701 , a judgment unit 702 , a request unit 703 , and a verification unit 704 .

[0127] The communication unit 701 is configured to receive a target counter service processing request submitted by a user via a device of a target channel;

[0128] The judging unit 702 is configured to judge whether the target counter service requires the use of the user's electronic certificate information and whether the user has pre-entered the electronic certificate information;

[0129] The request unit 703 is configured to send a user authentication request to the device of the target channel if it is determined that the target counter service requires the use of the user's electronic certificate information and the user has pre-entered the electronic certificate information;

[0130] The verification unit 704 is used to receive the user authentication information collected by the device of the target channel, verify the user authentication information, and send a verification pass message to the device of the target channel after the verification is passed, so that the device of the target channel can perform the target counter business.

[0131] In one or more embodiments of the present application, when sending the user authentication request to the device of the target channel, the request unit 703 is configured to:

[0132] Sending a request for selecting a confirmation method to the device of the target channel;

[0133] Obtain a determination instruction of the target right confirmation method input by the user through the device of the target channel, and send a user right confirmation authentication information collection instruction corresponding to the target right confirmation method to the device of the target channel, so that the device of the target channel collects the user right confirmation authentication information.

[0134] In one or more embodiments of the present application, after obtaining the target right confirmation method determination instruction input by the user through the device of the target channel, the request unit 703 is further configured to:

[0135] Generate a confirmation code corresponding to this user confirmation, and send the confirmation code to the device of the target channel, so that the device of the target channel uploads the collected user confirmation authentication information with the confirmation code for verification.

[0136] In one or more embodiments of the present application, the requesting unit 703 is further configured to:

[0137] Generate a confirmation batch number for the user's confirmation request, and send the confirmation batch number to the device of the target channel;

[0138] The communication unit 701 is further configured to receive and store relevant information about the target counter service sent by the device of the target channel after sending the verification pass information to the device of the target channel. The relevant information about the target counter service includes one or more of the following:

[0139] The confirmation batch number, the confirmation code, the channel identifier of the target channel, the business list, and relevant time information.

[0140] In one or more embodiments of the present application, the device further includes a tracking unit configured to:

[0141] Conducting a tracking query based on the stored information related to the target counter business to determine whether the user's electronic certificate information has been leaked;

[0142] If it is determined that the electronic certificate information of the user has been leaked, the corresponding target channel will be added to the prohibited authorization channel list.

[0143] In one or more embodiments of the present application, the determining unit 702 is further configured to determine whether the target channel is included in the authorized channel list corresponding to the user, and / or whether the target channel is included in the prohibited authorized channel list;

[0144] The request unit 703 is further configured to send a user authorization request to a device of the target channel if it is determined that the target channel is included in the authorized channel list corresponding to the user and / or the target channel is not included in the prohibited authorized channel list.

[0145] In one or more embodiments of the present application, the communication unit 701 is further configured to, before determining whether the target channel is included in the authorized channel list corresponding to the user, receive a channel authorization request sent by the user through a device of the target channel;

[0146] The verification unit 704 is also used to obtain relevant information of the target channel and perform channel verification based on the relevant information of the target channel. The channel verification includes at least one of the following: verifying the affiliated institution of the target channel, determining whether the business of the target channel requires the use of electronic certificate information, and verifying the service packaging capability of the target channel; after the verification is passed, the target channel is added to the authorized channel list corresponding to the user.

[0147] In one or more embodiments of the present application, the device further includes an input unit configured to:

[0148] If it is determined that the user has not pre-entered electronic certificate information, or if a request for the user to enter electronic certificate information is received, receiving the electronic certificate information entered by the user through the device of the target channel and preset authentication information, the preset authentication information including the user password and / or biometric information;

[0149] The user's electronic certificate information and preset right confirmation authentication information are associated and stored.

[0150] In one or more embodiments of the present application, when verifying the user authentication information, the verification unit 704 is configured to:

[0151] The user authentication information is compared with the preset authentication information, and if they are consistent, the verification is determined to be successful.

[0152] The service processing device provided in this embodiment can execute the processing flow provided in the above method embodiment, and its principles and technical effects are not described in detail here.

[0153] Figure 8 The electronic device provided in the embodiment of the present application can execute the processing flow provided in the embodiment of the service processing method, such as Figure 8 As shown, electronic device 80 includes a memory 81, a processor 82, and a computer program. The computer program is stored in memory 81 and configured so that processor 82 executes the service processing method described in the above embodiment. In addition, electronic device 80 may also have a communication interface 83 for transmitting control instructions and / or data.

[0154] Figure 8The electronic device of the illustrated embodiment can be used to execute the technical solution of the above-mentioned business processing method embodiment. Its implementation principle and technical effects are similar and will not be repeated here.

[0155] The processor 82 may be implemented by one or more application-specific integrated circuits (ASICs), digital signal processors (DSPs), digital signal processing devices (DSPDs), programmable logic devices (PLDs), field programmable gate arrays (FPGAs), controllers, microcontrollers, microprocessors, or other electronic components to execute the above method. The memory 81 may be a non-transitory computer-readable storage medium.

[0156] In addition, this embodiment further provides a computer-readable storage medium on which a computer program is stored. The computer program is executed by a processor to implement the method described in the above embodiment.

[0157] In addition, this embodiment further provides a computer program product, including a computer program, where the computer program is executed by a processor to implement the method described in the above embodiment.

[0158] In the several embodiments provided in the embodiments of the present application, it should be understood that the disclosed devices and methods can be implemented in other ways. For example, the device embodiments described above are merely schematic. For example, the division of the units is only a logical function division. There may be other division methods in actual implementation, such as multiple units or components can be combined or integrated into another system, or some features can be ignored or not executed. Another point is that the mutual coupling or direct coupling or communication connection shown or discussed can be an indirect coupling or communication connection of some interfaces, devices or units, which can be electrical, mechanical or other forms.

[0159] The units described as separate components may or may not be physically separate, and the components shown as units may or may not be physical units, that is, they may be located in one place or distributed across multiple network units. Some or all of these units may be selected to achieve the purpose of this embodiment according to actual needs.

[0160] In addition, the functional units in the various embodiments of the present application may be integrated into a single processing unit, or each unit may exist physically separately, or two or more units may be integrated into a single unit. The aforementioned integrated units may be implemented in the form of hardware or in the form of hardware plus software functional units.

[0161] The above-mentioned integrated unit implemented in the form of a software functional unit can be stored in a computer-readable storage medium. The above-mentioned software functional unit is stored in a storage medium, including a number of instructions for causing a computer device (which can be a personal computer, server, or network device, etc.) or a processor to execute some steps of the method described in each embodiment of the present application. The aforementioned storage medium includes: a USB flash drive, a mobile hard disk, a read-only memory (ROM), a random access memory (RAM), a magnetic disk or an optical disk, and other media that can store program codes.

[0162] Those skilled in the art will clearly understand that for the sake of convenience and brevity, the division of the above-mentioned functional modules is only used as an example for illustration. In actual applications, the above-mentioned functions can be assigned to different functional modules as needed, that is, the internal structure of the device can be divided into different functional modules to complete all or part of the functions described above. The specific working process of the device described above can refer to the corresponding process in the aforementioned method embodiment and will not be repeated here.

[0163] The above embodiments are only used to illustrate the technical solutions of the embodiments of the present application, rather than to limit them. Although the embodiments of the present application are described in detail with reference to the above embodiments, ordinary technicians in this field should understand that they can still modify the technical solutions recorded in the above embodiments, or replace some or all of the technical features therein with equivalents. These modifications or replacements do not cause the essence of the corresponding technical solutions to deviate from the scope of the technical solutions of the embodiments of the present application.

[0164] Those skilled in the art will readily appreciate other embodiments of the present application after considering the specification and practicing the invention disclosed herein. This application is intended to cover any variations, uses, or adaptations of the present application that follow the general principles of the present application and include common knowledge or customary techniques in the art not disclosed herein. The description and examples are to be considered as exemplary only, and the true scope and spirit of the present application are indicated by the following claims.

[0165] It should be understood that the present application is not limited to the exact structure described above and shown in the drawings, and that various modifications and changes may be made without departing from the scope thereof. The scope of the present application is limited only by the appended claims.

Claims

1. A business processing method, characterized in that: include: Receive the target counter business processing request submitted by the user through the device of the target channel; Determine whether the target counter service requires the use of the user's electronic certificate information and whether the user has pre-entered the electronic certificate information; If it is determined that the target counter service requires the use of the user's electronic certificate information and the user has pre-entered the electronic certificate information, a user authentication request is sent to the device of the target channel; Receiving user authentication information collected by the device of the target channel, verifying the user authentication information, and sending a verification pass message to the device of the target channel after the verification passes, so that the device of the target channel can perform the target counter business processing; After sending verification pass information to the device of the target channel, receiving and storing relevant information of the target counter business sent by the device of the target channel; Conducting a tracking query based on the stored information related to the target counter business to determine whether the user's electronic certificate information has been leaked; If it is determined that the electronic certificate information of the user has been leaked, the corresponding target channel will be added to the prohibited authorization channel list.

2. The method according to claim 1, characterized in that The sending of the user authentication request to the device of the target channel includes: Sending a request for selecting a confirmation method to the device of the target channel; Obtain a determination instruction of the target right confirmation method input by the user through the device of the target channel, and send a user right confirmation authentication information collection instruction corresponding to the target right confirmation method to the device of the target channel, so that the device of the target channel collects the user right confirmation authentication information.

3. The method according to claim 2, characterized in that After obtaining the target right confirmation method determination instruction input by the user through the device of the target channel, the method further includes: Generate a confirmation code corresponding to this user confirmation, and send the confirmation code to the device of the target channel, so that the device of the target channel uploads the collected user confirmation authentication information with the confirmation code for verification.

4. The method according to claim 3, characterized in that The method further comprises: Generate a confirmation batch number for the user's confirmation request, and send the confirmation batch number to the device of the target channel; The relevant information of the target counter business includes one or more of the following: The confirmation batch number, the confirmation code, the channel identifier of the target channel, the business list, and relevant time information.

5. The method according to any one of claims 1 to 4, characterized in that The sending of the user authentication request to the device of the target channel includes: Determining whether the target channel is included in the authorized channel list corresponding to the user, and / or whether the target channel is included in the prohibited authorized channel list; If it is determined that the target channel is included in the authorized channel list corresponding to the user, and / or the target channel is not included in the prohibited authorized channel list, a user authorization request is sent to the device of the target channel.

6. The method according to claim 5, characterized in that Before determining whether the target channel is included in the authorized channel list corresponding to the user, the method further includes: Receive a channel authorization request sent by the user through the device of the target channel; Obtaining relevant information of the target channel and performing channel verification based on the relevant information of the target channel, wherein the channel verification includes at least one of the following: verifying the affiliated institution of the target channel, determining whether the business of the target channel requires the use of electronic certificate information, and verifying the service packaging capability of the target channel; After verification, the target channel is added to the authorized channel list corresponding to the user.

7. The method according to any one of claims 1 to 4, characterized in that The method further comprises: If it is determined that the user has not pre-entered electronic certificate information, or if a request for the user to enter electronic certificate information is received, receiving the electronic certificate information entered by the user through the device of the target channel and preset authentication information, the preset authentication information including the user password and / or biometric information; The user's electronic certificate information and preset right confirmation authentication information are associated and stored.

8. The method according to claim 6, characterized in that The verifying of the user authentication information includes: The user authentication information is compared with the preset authentication information, and if they are consistent, the verification is determined to be successful.

9. A business processing device, characterized in that: include: A communication unit, configured to receive a target counter service request submitted by a user through a device of a target channel; a judgment unit, configured to judge whether the target counter service requires the use of the user's electronic certificate information, and whether the user has pre-entered the electronic certificate information; a requesting unit configured to send a user authentication request to a device of the target channel if it is determined that the target counter service requires the use of the user's electronic certificate information and the user has pre-entered the electronic certificate information; a verification unit, configured to receive user authentication information collected by the device of the target channel, verify the user authentication information, and send a verification pass message to the device of the target channel after the verification passes, so that the device of the target channel can perform the target counter business processing; The communication unit is further configured to receive and store relevant information of the target counter service sent by the device of the target channel after sending the verification pass information to the device of the target channel; The device further includes a tracking unit for performing a tracking query based on the stored relevant information of the target counter business to determine whether the electronic certificate information of the user has been leaked; If it is determined that the electronic certificate information of the user has been leaked, the corresponding target channel will be added to the prohibited authorization channel list.

10. An electronic device, characterized in that: include: a processor, and a memory communicatively connected to the processor; The memory stores computer-executable instructions; The processor executes the computer-executable instructions stored in the memory to implement the method according to any one of claims 1 to 8.

11. A computer-readable storage medium, characterized in that The computer-readable storage medium stores computer-executable instructions, which are used to implement the method according to any one of claims 1 to 8 when executed by a processor.

12. A computer program product, characterized in that The invention comprises a computer program, which implements the method according to any one of claims 1 to 8 when the computer program is executed by a processor.

Citation Information

Patent Citations

  • Unlicensed business handling method based on electronic certificate

    CN110046732A