Digital signature and verification method, system and apparatus

By introducing an independent signature platform into the business system for signature confirmation and verification, the problem of user transaction signature tampering was solved, ensuring the reliability of transactions.

CN115439121BActive Publication Date: 2026-05-19INDUSTRIAL AND COMMERCIAL BANK OF CHINA +1
View PDF 3 Cites 0 Cited by

Patent Information

Authority / Receiving Office
CN · China
Patent Type
Patents(China)
Current Assignee / Owner
INDUSTRIAL AND COMMERCIAL BANK OF CHINA
Filing Date
2022-09-14
Publication Date
2026-05-19

AI Technical Summary

Technical Problem

In business systems, users' transaction signatures may be tampered with, making transactions unreliable, especially in cases where there are defects or backdoors in the software or service, making it impossible to guarantee the validity of the signature.

Method used

A signature platform independent of the business system is introduced. After submitting a transaction request, the user is redirected to the signature platform for signature confirmation. The signature platform verifies the signature information and executes the transaction request based on the verification result.

Benefits of technology

By introducing an independent signature platform, we ensure that the final transaction is confirmed by the user, thus guaranteeing the reliability of the transaction.

✦ Generated by Eureka AI based on patent content.

Smart Images

  • Figure CN115439121B_ABST
    Figure CN115439121B_ABST
Patent Text Reader

Abstract

The application relates to the field of information security, in particular to a digital signature and signature verification method, system and device. The method comprises the following steps: after a transaction request is submitted to a business system, jumping to a signature confirmation page provided by a signature platform to perform signature confirmation; after the signature confirmation is completed, jumping to the business system to perform business processing, sending the transaction request and signature information of a current account to the signature platform by the business system, so that the signature platform verifies the signature information, obtains a corresponding verification result, and executes the transaction request according to the verification result. The method can guarantee the reliability of the transaction.
Need to check novelty before this filing date? Find Prior Art

Description

Technical Field

[0001] This application relates to the field of information security, and in particular to a digital signature and verification method, system and apparatus. Background Technology

[0002] In business systems, when sensitive operations such as fund transactions are involved, users are usually required to digitally sign the submitted requests using a USB key or a software certificate for authentication, tamper prevention, and non-repudiation purposes. The actual transaction is only initiated after the business system verifies the signature.

[0003] However, business systems typically rely on software development and maintenance services provided by software service providers. If the purchased software or services have defects or backdoors, even if the user completes digital signature when submitting a request, the final transaction may still not be a transaction confirmed by the user.

[0004] It is evident that when users conduct transactions in the business system, the original signature request may be tampered with, and the validity of the signature cannot be guaranteed, meaning that the transaction is unreliable. Summary of the Invention

[0005] Therefore, it is necessary to provide a digital signature and verification method, system, device, computer equipment, computer-readable storage medium, and computer program product to address the aforementioned technical problems and ensure the reliability of transactions.

[0006] Firstly, this application provides a digital signature and verification method, the method comprising:

[0007] After submitting a transaction request to the business system, you will be redirected to the signature confirmation page provided by the signature platform to confirm the signature.

[0008] After the signature confirmation is completed, the system redirects to the business system for business processing. The business system sends the transaction request and the signature information of the current account to the signature platform, so that the signature platform can verify the signature information, obtain the corresponding verification result, and execute the transaction request based on the verification result.

[0009] In one embodiment, the step of redirecting to a signature confirmation page provided by the signature platform for signature confirmation after submitting a transaction request to the business system includes:

[0010] A transaction request is sent to the business system, so that the business system constructs signature parameters in response to the transaction request, and feeds back the first redirect link information for redirecting the signature platform to the user terminal based on the signature parameters;

[0011] In response to a triggering operation for the first redirect link information, the signature parameters are sent to the signature platform, so that the signature platform constructs a signature confirmation page based on the signature parameters and sends the signature confirmation page back to the user terminal.

[0012] After receiving the signature confirmation page from the signature platform, the signature confirmation page is displayed on the display interface.

[0013] In one embodiment, after signature confirmation is completed, the process redirects to the business system for business processing. The business system sends the transaction information and the current account's signature information to the signature platform, allowing the signature platform to verify the signature information, obtain a corresponding verification result, and execute the transaction request based on the verification result, including:

[0014] In response to the signature confirmation operation on the signature confirmation page, signature information is sent to the signature platform so that the signature platform can provide the user with a second redirect link for redirecting the business system based on the signature information.

[0015] In response to the triggering operation for the second redirect link information, the signature information is sent to the business system, so that the business system performs business processing based on the signature information, and then sends the transaction request and the signature information to the signature platform, thereby enabling the signature platform to verify the signature, obtain the verification result, and execute the transaction request based on the verification result.

[0016] Secondly, this application provides a digital signature and signature verification method, the method comprising: after a user submits a transaction request to a business system, providing a signature confirmation page to the user, so that after the user is redirected to the signature confirmation page, the current account logged in by the user performs signature confirmation on the signature confirmation page;

[0017] After the current account completes the signature confirmation, the system receives the transaction request and the signature information of the current account sent by the business system.

[0018] The signature information is verified to obtain the corresponding verification result;

[0019] The transaction request is executed based on the verification result.

[0020] In one embodiment, providing a signature confirmation page to the user terminal after the user submits a transaction request to the business system includes:

[0021] The system receives signature parameters sent by the user terminal after triggering the first redirect link information. The signature parameters are constructed by the business system based on the transaction request submitted by the user terminal. The first redirect link information is the link information for redirecting the signature platform fed back by the business system to the user terminal based on the signature parameters.

[0022] The signature confirmation page is constructed based on the signature parameters;

[0023] The signature confirmation page is sent to the user's client.

[0024] In one embodiment, the step of receiving the transaction request and the signature information of the current account sent by the business system after the current account has completed the signature confirmation includes:

[0025] Receive the signature information sent by the user terminal after performing the signature confirmation operation on the signature confirmation page;

[0026] The signature information is used to send a second redirect link to the business system back to the user terminal, so that the user terminal responds to the trigger operation of the second redirect link information and sends the signature information to the business system, thereby enabling the business system to perform business processing based on the signature information.

[0027] After the business system performs business processing based on the signature information, it receives the transaction request sent by the business system and the signature information of the current account.

[0028] In one embodiment, executing the transaction request based on the verification result includes:

[0029] If the verification result indicates that the signature verification is successful, a transaction message is generated according to the transaction request, and the transaction message is sent to the transaction system; or...

[0030] If the verification result indicates that the signature verification failed, an error message is sent to the business system according to the transaction request.

[0031] Thirdly, this application provides a digital signature and signature verification method, the method comprising: receiving a transaction request sent by a user terminal;

[0032] In response to the transaction request, a redirect link is sent to the user terminal so that the user terminal can be redirected to the signature confirmation page provided by the signature platform to confirm the signature.

[0033] After the user completes the signature confirmation on the signature confirmation page on the client, the business processing corresponding to the transaction request is performed.

[0034] After completing the business processing, the transaction request and the signature information of the current account are sent to the signature platform so that the signature platform can verify the signature information, obtain the corresponding verification result, and execute the transaction request based on the verification result.

[0035] In one embodiment, the step of sending redirect link information to the user terminal in response to the transaction request includes:

[0036] Obtain transaction data and account information from the transaction request, and construct signature parameters based on the transaction data and account information;

[0037] The signature parameters are used to send a redirect link to the user terminal for redirecting the signature platform.

[0038] Fourthly, this application provides a digital signature and verification system, the system comprising: a user terminal, a business system, and a signature platform, wherein...

[0039] The user terminal is used to submit a transaction request to the business system, and after submitting the transaction request to the business system, it is redirected to the signature confirmation page provided by the signature platform to confirm the signature.

[0040] The business system is used to process business after the user completes the signature confirmation, and send the transaction request and the signature information of the current account to the signature platform;

[0041] The signature platform is used to provide the signature confirmation page to the user terminal, receive the transaction request and signature information sent by the business system, verify the signature information, obtain the corresponding verification result, and execute the transaction request according to the verification result.

[0042] Fifthly, this application provides a digital signature and verification method apparatus, the apparatus comprising:

[0043] The signature confirmation module is used to redirect users to the signature confirmation page provided by the signature platform after submitting a transaction request to the business system for signature confirmation.

[0044] The redirection module is used to redirect to the business system for business processing after the signature confirmation is completed. The business system sends the transaction request and the signature information of the current account to the signature platform so that the signature platform can verify the signature information, obtain the corresponding verification result, and execute the transaction request based on the verification result.

[0045] In one embodiment, the signature confirmation module is further configured to send a transaction request to the business system, so that the business system constructs signature parameters in response to the transaction request and feeds back first redirect link information for redirecting the signature platform to the user terminal based on the signature parameters; in response to a trigger operation for the first redirect link information, the module sends the signature parameters to the signature platform, so that the signature platform constructs a signature confirmation page based on the signature parameters and feeds back the signature confirmation page to the user terminal; and after receiving the signature confirmation page fed back by the signature platform, the module displays the signature confirmation page in the display interface.

[0046] In one embodiment, the redirection module is further configured to, in response to a signature confirmation operation on the signature confirmation page, send signature information to the signature platform, so that the signature platform provides feedback to the user terminal with second redirection link information for redirecting the business system based on the signature information; and in response to a trigger operation on the second redirection link information, send the signature information to the business system, so that the business system performs business processing based on the signature information, sends the transaction request and the signature information to the signature platform, thereby enabling the signature platform to verify the signature, obtain the verification result, and execute the transaction request based on the verification result.

[0047] Sixthly, this application provides a digital signature and verification method apparatus, the apparatus comprising:

[0048] The signature module is used to provide a signature confirmation page to the user terminal after the user terminal submits a transaction request to the business system, so that the user terminal can be redirected to the signature confirmation page and the current account logged in by the user terminal can perform signature confirmation on the signature confirmation page.

[0049] The information receiving module is used to receive the transaction request sent by the business system and the signature information of the current account after the current account has completed the signature confirmation;

[0050] The signature verification module is used to verify the signature information and obtain the corresponding verification result;

[0051] The execution module is used to execute the transaction request based on the verification result.

[0052] In one embodiment, the signature module is further configured to receive signature parameters sent by the user terminal after triggering the first redirect link information, wherein the signature parameters are constructed by the business system based on the transaction request submitted by the user terminal, and the first redirect link information is link information for redirecting the signature platform fed back by the business system to the user terminal based on the signature parameters; construct the signature confirmation page based on the signature parameters; and send the signature confirmation page to the user terminal.

[0053] In one embodiment, the information receiving module is further configured to receive signature information sent by the user terminal after performing a signature confirmation operation on the signature confirmation page; to feed back second redirect link information for redirecting the business system to the user terminal based on the signature information, so that the user terminal, in response to a trigger operation for the second redirect link information, sends the signature information to the business system, thereby enabling the business system to perform business processing based on the signature information; and after the business system performs business processing based on the signature information, to receive the transaction request sent by the business system and the signature information of the current account.

[0054] In one embodiment, the execution module is further configured to, if the verification result indicates that the signature verification has passed, generate a transaction message according to the transaction request and send the transaction message to the transaction system; or, if the verification result indicates that the signature verification has failed, report an error message to the business system according to the transaction request.

[0055] Seventhly, this application provides a digital signature and verification method apparatus, the apparatus comprising:

[0056] The information receiving module is used to receive transaction requests sent by the user terminal;

[0057] The redirection module is used to respond to the transaction request by sending redirection link information to the user terminal, so that the user terminal can be redirected to the signature confirmation page provided by the signature platform through the redirection link information to confirm the signature.

[0058] The business processing module is used to perform business processing corresponding to the transaction request after the user completes the signature confirmation on the signature confirmation page on the client side.

[0059] The information sending module is used to send the transaction request and the signature information of the current account to the signature platform after completing the business processing, so that the signature platform can verify the signature information, obtain the corresponding verification result, and execute the transaction request according to the verification result.

[0060] In one embodiment, the redirection module is further configured to obtain transaction data and account information from the transaction request, and construct signature parameters based on the transaction data and account information; and to feed back redirection link information for redirecting the signature platform to the user terminal based on the signature parameters.

[0061] Eighthly, this application also provides a computer device, the computer device including a memory and a processor, the memory storing a computer program, and the processor executing the computer program to implement the steps in the above-described method embodiments.

[0062] Ninthly, this application also provides a computer-readable storage medium having a computer program stored thereon, which, when executed by a processor, implements the steps in the above-described method embodiments.

[0063] In a tenth aspect, this application also provides a computer program product, which includes a computer program that, when executed by a processor, implements the steps in the above-described method embodiments.

[0064] The aforementioned digital signature and verification methods, systems, devices, computer equipment, computer-readable storage media, and computer program products, after submitting a transaction request to the business system, redirect to a signature confirmation page provided by the signature platform for signature confirmation. After signature confirmation, the system redirects to the business system for business processing, sending the transaction request and the current account's signature information to the signature platform for verification. The signature platform then verifies the signature information, obtains the corresponding verification result, and executes the transaction request based on the verification result. Compared to traditional methods where the business system handles signing, verification, and transaction initiation, this application introduces a signature platform independently developed and deployed from the business system. This platform provides a signature confirmation page to the user, allowing for secondary confirmation of the transaction request. After confirmation, the signature platform verifies the signature and executes the transaction request. By ensuring the reliability of the signature platform, the transaction ultimately sent to the transaction system is guaranteed to be content submitted and confirmed by the user, thus ensuring transaction reliability. Attached Figure Description

[0065] Figure 1 This is a schematic diagram of the signature verification process in a traditional business system in one embodiment;

[0066] Figure 2 This is a flowchart illustrating a digital signature and verification method in one embodiment;

[0067] Figure 3 This is a schematic diagram of a signature confirmation page in one embodiment;

[0068] Figure 4 This is a flowchart illustrating step 202 in one embodiment;

[0069] Figure 5 This is a flowchart illustrating step 204 in one embodiment;

[0070] Figure 6 This is a flowchart illustrating a digital signature and verification method in one embodiment;

[0071] Figure 7 This is a flowchart illustrating step 602 in one embodiment;

[0072] Figure 8 This is a flowchart illustrating step 604 in one embodiment;

[0073] Figure 9 This is a flowchart illustrating a digital signature and verification method in one embodiment;

[0074] Figure 10 This is a flowchart illustrating step 904 in one embodiment;

[0075] Figure 11 This is a flowchart illustrating a digital signature and verification method in one embodiment;

[0076] Figure 12 This is a structural block diagram of a digital signature and verification device in one embodiment;

[0077] Figure 13 This is a structural block diagram of a digital signature and verification device in one embodiment;

[0078] Figure 14 This is a structural block diagram of a digital signature and verification device in one embodiment;

[0079] Figure 15 This is an internal structural diagram of a computer device in one embodiment. Detailed Implementation

[0080] To make the objectives, technical solutions, and advantages of this application clearer, the following detailed description is provided in conjunction with the accompanying drawings and embodiments. It should be understood that the specific embodiments described herein are merely illustrative and not intended to limit the scope of this application.

[0081] like Figure 1As shown, in a typical business system, users can usually submit business requests directly. However, when it comes to transaction requests involving funds, for authentication, tamper prevention, and non-repudiation, users are typically required to digitally sign their submitted requests using a USB key or software certificate. The business system verifies the signature before initiating the actual transaction. In this process, the display of the signature page, the invocation of the signature method, the signature verification, and the initiation of the transaction are all handled directly by the business system. Therefore, the correctness of the final transaction depends on the reliability of the business system itself. However, the business system is not necessarily developed in-house; it may be a development and maintenance service provided by a software service provider. If the purchased software or service has defects or backdoors, even if the user digitally signs the transaction request, the final transaction may not be the one confirmed by the user.

[0082] For example, the business system displays "Transfer 100 yuan to account 0001" on the signature page for user confirmation. After user confirmation, the business system calls the signature method for the altered information "Transfer 200 yuan to account 0002". In this case, the transaction information confirmed by the user is not the information with the signature generated by the business system, nor is it the information ultimately submitted by the business system to the transaction system. Even if the signature is indeed calculated using the user's private key and can be verified later, the user's funds still suffer a loss. If the entire business system were developed in-house, the above problem could be solved through its own quality control. However, due to development costs and time constraints, it is impossible for the owner to develop the entire business system in-house. Therefore, currently, when users conduct transactions in the business system, the original signature request may be tampered with, and the validity of the signature cannot be guaranteed, meaning the transaction is unreliable.

[0083] Based on this, embodiments of this application provide a digital signature and verification method to solve the above problems and ensure the reliability of transactions.

[0084] In one embodiment, such as Figure 2 As shown, a digital signature and verification method is provided. This embodiment illustrates the application of this method to a terminal. It is understood that this method can also be applied to a server, and further to a system including both a terminal and a server, and implemented through interaction between the terminal and the server. In this embodiment, the method includes the following steps:

[0085] Step 202: After submitting a transaction request to the business system, you will be redirected to the signature confirmation page provided by the signature platform to confirm the signature.

[0086] In this embodiment, the business system is a system used by the enterprise for its own asset and process management, such as an ERP (Enterprise Resource Planning) system. The signature platform is developed and deployed independently from the business system. Transaction requests can be user requests for operations on funds, etc., and can include transaction information such as transaction amount (in cents) and payee account. After a transaction request is submitted to the business system, subsequent operations are handled jointly by the business system and the signature platform. The signature confirmation page provided by the signature platform can be viewed as follows: Figure 3 As shown, the signature confirmation page can display transaction information such as the receiving account and transaction amount. The page can also include two operation buttons: "Confirm and Sign" and "Cancel". A signature, also known as a digital signature, is a process of signing a transaction request digest using a private key. The mainstream signature algorithms include RSA (Rivest-Shamir-Adleman) and SM2 (Elliptic Curve Algorithm).

[0087] Step 204: After the signature confirmation is completed, the system will redirect to the business system for business processing. The business system will send the transaction request and the signature information of the current account to the signature platform so that the signature platform can verify the signature information, obtain the corresponding verification result, and execute the transaction request based on the verification result.

[0088] In this embodiment, signature confirmation can be completed by triggering the confirm and sign button on the signature confirmation page. After signature confirmation, the system redirects to the business system for processing. Simultaneously, the signature information of the current account can be submitted to the business system. Business processing may include internal processing and approval processes. The signature information may include the signature corresponding to the transaction request and a unique signature request number. After redirection to the business system, the business system can send the corresponding transaction request and signature information to the signature platform based on the unique signature request number in the signature information. The signature platform verifies the signature to obtain a verification result. The verification result can be used to indicate whether the signature verification passed. Signature verification is the process of verifying the signature using a public key.

[0089] The digital signature and verification method provided in this application, after submitting a transaction request to the business system, redirects the user to a signature confirmation page provided by the signature platform for signature confirmation. After signature confirmation, the user is redirected to the business system for business processing. The business system sends the transaction request and the current account's signature information to the signature platform, allowing the signature platform to verify the signature information, obtain the corresponding verification result, and execute the transaction request based on the verification result. Compared to the traditional method where the business system performs signature, verification, and transaction initiation, this application introduces a signature platform independently developed and deployed from the business system. The signature platform provides a signature confirmation page to the user, allowing the user to perform secondary confirmation of the transaction request. After confirmation, the signature platform verifies the signature and executes the transaction request. As long as the reliability of the signature platform is guaranteed, it can be ensured that the transaction ultimately sent to the transaction system is content submitted and confirmed by the user, thus ensuring transaction reliability.

[0090] In one embodiment, such as Figure 4 As shown, in step 202, after submitting a transaction request to the business system, the user is redirected to the signature confirmation page provided by the signature platform for signature confirmation, which may include:

[0091] Step 402: Send a transaction request to the business system so that the business system can respond to the transaction request by constructing signature parameters and, based on the signature parameters, send back the first redirect link information to the user terminal for redirecting the signature platform.

[0092] In this embodiment of the application, after a transaction request is sent to the business system, the business system can process the transaction request, construct signature parameters for the transaction request according to the interface protocol with the signature platform, and feed back the first redirect link information for redirecting the signature platform to the user terminal based on the signature parameters.

[0093] The transaction request may include transaction information such as the transaction amount (in cents) and the payee's account. The business system can generate signature parameters based on the transaction information. These signature parameters may include the transaction amount (in cents), the payee's account, and a unique signature request number. The unique signature request number allows for a one-to-one matching of the transaction request with the signature parameters. It should be noted that redirection can be implemented in various ways, and this embodiment does not specifically limit the method of redirection. For example, redirection can be based on the HTTP response code 302, and the business system can set the following in the HTTP response:

[0094] Header: HTTP / 1.1 302 Found

[0095] Locaiton:

[0096] https: / / sign_platform / sign_confirm? amount=10000&payee=0001&request_uuid=000463d9-7ce7-11ec-9462-525400508ba4

[0097] At this point, the first redirect link information is the link information contained in Location. The first redirect link information includes the signature parameters: amount: transaction amount; payee: payee's account; request_uuid: unique signature request number. sign_platform is the domain name of the signature platform, and sign_confirm is the URI (Uniform Resource Identifier) ​​of the signature confirmation page of the signature platform.

[0098] Step 404: In response to the triggering operation for the first redirect link information, send signature parameters to the signature platform so that the signature platform can construct a signature confirmation page based on the signature parameters and send the signature confirmation page back to the user.

[0099] In this embodiment, the triggering operation for the first redirect link information can be an access operation to the first redirect link information. Simultaneously with accessing the first redirect link information, the signature parameters contained in the first redirect link information can be sent to the signature platform, enabling the signature platform to construct a signature confirmation page based on the signature parameters, and then return the signature confirmation page to the user.

[0100] Step 406: After receiving the signature confirmation page from the signature platform, display the signature confirmation page on the display interface.

[0101] The display interface is the screen used by the user on their terminal to display the information. After constructing a signature confirmation page based on the signature parameters contained in the first redirect link information, the signature platform sends the signature confirmation page back to the user. The user receives the signature confirmation page from the signature platform and displays it in the display interface. Taking a redirect based on an HTTP response code 302 as an example, after accessing the first redirect link information, the user will be redirected to the signature platform's signature confirmation page at the address specified by Locaiton. The user can confirm and sign the signature confirmation page or cancel the operation in the display interface.

[0102] This disclosure embodiment can display a signature confirmation page built by the signature platform to the user, so that the user can confirm the transaction request a second time. The signature can only be performed after the user submits the confirmation, which prevents the business system from providing incorrect transaction information to the signature platform due to problems, and ensures the reliability of the transaction.

[0103] In one embodiment, such as Figure 5 As shown, in step 204, after the signature confirmation is completed, the system redirects to the business system for processing. The business system sends the transaction request and the signature information of the current account to the signature platform, so that the signature platform can verify the signature information, obtain the corresponding verification result, and execute the transaction request based on the verification result. This may include:

[0104] Step 502: In response to the signature confirmation operation on the signature confirmation page, send signature information to the signature platform so that the signature platform can provide the user with a second redirect link for redirecting the business system based on the signature information.

[0105] In this embodiment, the signature confirmation operation on the signature confirmation page can be a user's button operation to select "Confirm and Sign" on the display interface. This embodiment does not specifically limit the signature method, as long as it satisfies the requirement of using a private key to perform a signature operation on the transaction request digest to obtain a signature. The private key can come from a USB key or software certificate used by the user. After confirming the signature, the signature confirmation page will use the user's private key to generate a signature on the transaction request digest and submit the signature information. The signature information can be in form format or JSON (JavaScript Object Notation) format, and includes the signature corresponding to the transaction request and a unique signature request number. After receiving the signature information, the signature platform can send back a second redirect link information for redirecting the business system to the user terminal based on the signature information.

[0106] For example, taking the redirection method based on the HTTP response code 302 as an example, the signature platform sets the following in the HTTP response:

[0107] HTTP / 1.1 302 Found

[0108] Locaiton:https: / / erp / commit_sign? sign=a1b2c3d4&request_uuid=000463d9-7ce7-11ec-9462-525400508ba4

[0109] At this point, the second redirect link information is the link information contained in the Location section mentioned above. This second redirect link information includes signature information: sign: signature; request_uuid: unique signature request number. erp is the domain name of the signature platform, and commit_sign is the URI of the interface where the business system submits the signature.

[0110] Step 504: In response to the trigger operation for the second redirect link information, send signature information to the business system so that the business system can perform business processing based on the signature information, and then send a transaction request and signature information to the signature platform so that the signature platform can verify the signature, obtain the verification result, and execute the transaction request based on the verification result.

[0111] In this embodiment, the triggering operation for the second redirect link information can be an access operation to the second redirect link information. Simultaneously with accessing the second redirect link information, the signature information contained within it can be sent to the business system. This allows the business system to perform business processing based on the signature information and then send a transaction request and signature information to the signature platform. Taking a redirection method based on an HTTP response code 302 as an example, after accessing the second redirect link information, the client will be redirected to the business system at the address specified by Locaiton. The business system processes the signature information, finds the corresponding transaction request based on the unique signature request number in the signature information, saves the signature, and completes subsequent business processing. After completing all business processing, the business system submits the transaction request and the signature from the signature information to the signature platform. The submission format can be a form or JSON, which must include the following parameters: amount; transfer amount; payee: recipient account; sign: signature. The signature platform can calculate the transaction digest using the same signature calculation algorithm as when signing the signature and transaction request submitted by the business system, and verify the signature using a public key to obtain a verification result indicating whether the verification passed. Based on different verification results, the transaction request is executed.

[0112] This embodiment of the disclosure sends the signature information and transaction request to the signature platform for verification after the business system is processed. This ensures that as long as the reliability of the signature platform is guaranteed, the transaction finally sent to the transaction system is guaranteed to be content submitted and confirmed by the user, thus ensuring the reliability of the transaction.

[0113] In one embodiment, such as Figure 6 As shown, a digital signature and verification method is provided, which includes the following steps:

[0114] Step 602: After the user submits a transaction request to the business system, a signature confirmation page is provided to the user so that the user can be redirected to the signature confirmation page and the currently logged-in account on the user's computer can confirm the signature on the signature confirmation page.

[0115] In this embodiment, after the user terminal submits a transaction request to the business system in response to the user's operation, a signature confirmation page can be generated based on the signature parameters sent by the business system and provided to the user terminal. The currently logged-in account on the user terminal can confirm and sign or cancel the operation on the signature confirmation page.

[0116] Step 604: After the current account completes the signature confirmation, receive the transaction request and the signature information of the current account sent by the business system.

[0117] In this embodiment, after the current account selects the "Confirm and Sign" button on the user terminal and completes the signature confirmation, it can receive the signature information generated by the signature confirmation page, enabling the business system to receive the signature information sent from the user terminal for business processing. After the business system completes the business processing, it can receive the transaction request sent by the business system and the signature information of the current account.

[0118] Step 606: Verify the signature information and obtain the corresponding verification result.

[0119] In this embodiment of the application, the same signature operation algorithm as when signing can be used to calculate the transaction digest, and the public key can be used for signature verification to obtain a verification result indicating whether the signature verification is successful.

[0120] Step 608: Execute the transaction request based on the verification result.

[0121] In this embodiment of the application, different execution operations can be performed based on different verification results.

[0122] The digital signature and verification method provided in this application provides a signature confirmation page to the user after the user submits a transaction request to the business system. The user is then redirected to this page, where their currently logged-in account confirms the signature. After confirmation, the system receives the transaction request and the current account's signature information from the business system. The signature information is verified to obtain the corresponding verification result. The transaction request is then executed based on the verification result. Compared to traditional methods where the business system handles signing, verification, and transaction initiation, this application introduces a signature platform independently developed and deployed from the business system. This platform provides a signature confirmation page to the user, allowing for secondary confirmation of the transaction request. After confirmation, the platform verifies the signature and executes the transaction request. By ensuring the reliability of the signature platform, the system guarantees that the transaction ultimately sent to the transaction system is content submitted and confirmed by the user, thus ensuring transaction reliability.

[0123] In one embodiment, such as Figure 7 As shown, in step 602, after the user submits a transaction request to the business system, a signature confirmation page is provided to the user, which may include:

[0124] Step 702: Receive the signature parameters sent by the user after triggering the first redirect link information. The signature parameters are constructed by the business system based on the transaction request submitted by the user. The first redirect link information is the link information used to redirect the signature platform fed back by the business system to the user based on the signature parameters.

[0125] In this embodiment, after the user sends a transaction request to the business system, the business system can process the transaction request, construct signature parameters for the transaction request according to the interface protocol with the signature platform, and send back first redirect link information to the user for redirecting the signature platform based on the signature parameters. When the user accesses the first redirect link information, it can receive the signature parameters sent by the user, which can be included in the first redirect link information.

[0126] Step 704: Construct a signature confirmation page based on the signature parameters.

[0127] In this embodiment, the signature parameters may include the transaction amount (in cents), the payee's account number, and a unique signature request number. A signature confirmation page can be constructed based on the transaction amount (in cents) and the payee's account number in the signature parameters. The signature confirmation page can be as follows: Figure 3 As shown, the transaction information, such as the receiving account and transaction amount, is displayed. The signature confirmation page may also include two operation buttons: confirm and sign, and cancel.

[0128] Step 706: Send a signature confirmation page to the user's client.

[0129] In this embodiment, after constructing a signature confirmation page based on the signature parameters contained in the first redirect link information, the signature confirmation page is sent back to the user terminal so that the user terminal receives the signature confirmation page from the signature platform and displays it on the display interface. Taking a redirection method based on HTTP response code 302 as an example, after the user terminal accesses the first redirect link information, the user terminal will be redirected to the signature confirmation page of the signature platform according to the address specified by Locaiton. The user can confirm and sign or cancel the signature confirmation page on the display interface.

[0130] This embodiment of the disclosure can display a signature confirmation page built by the signature platform to the user on the user terminal display interface, so that the user can confirm the transaction request a second time. The signature can only be performed after the user submits the confirmation, which prevents the business system from providing incorrect transaction information to the signature platform due to problems, and ensures the reliability of the transaction.

[0131] In one embodiment, such as Figure 8 As shown, in step 604, after the current account completes the signature confirmation, receiving the transaction request and the current account's signature information sent by the business system may include:

[0132] Step 802: Receive the signature information sent by the user after performing the signature confirmation operation on the signature confirmation page.

[0133] In this embodiment, a confirmation and signature button can be triggered on the signature confirmation page to perform a confirmation signature operation. After the signature is confirmed, the signature confirmation page uses the user's private key to generate a signature on the transaction request digest and submits the signature information. The signature information can be in form format or JSON (JavaScript Object Notation) format, and includes the signature corresponding to the transaction request and a unique signature request number. The system then receives the signature information sent by the user client at this time.

[0134] Step 804: Feedback the second redirection link information for redirecting the business system to the user terminal based on the signature information, so that the user terminal responds to the trigger operation of the second redirection link information and sends the signature information to the business system, thereby enabling the business system to perform business processing based on the signature information.

[0135] In this embodiment, after receiving the signature information, a second redirect link for redirecting the business system can be fed back to the user terminal based on the signature information. The second redirect link information may include signature information: sign: signature; request_uuid: unique signature request number. The triggering operation for the second redirect link information can be an access operation to the second redirect link information. While the user terminal accesses the second redirect link information, it can send the signature information contained in the second redirect link information to the business system, so that the business system can perform business processing based on the signature information.

[0136] Step 806: After the business system performs business processing based on the signature information, receive the transaction request sent by the business system and the signature information of the current account.

[0137] In this embodiment, the business system processes signature information, finds the corresponding transaction request based on the unique signature request number in the signature information, saves the signature, and after completing subsequent business processing, can receive the transaction request and the signature in the signature information sent by the business system. The information format sent by the business system can be a form or JSON, which needs to include the following parameters: amount; transfer amount; payee: payee account; sign: signature.

[0138] This embodiment of the disclosure, after receiving the signature information, constructs a second redirect link to redirect the user to the business system for business processing. Then, it receives the signature information and transaction request sent by the business system so that the signature platform can verify the signature. This ensures that as long as the reliability of the signature platform is guaranteed, the transaction finally sent to the transaction system can be guaranteed to be content submitted and confirmed by the user, thus ensuring the reliability of the transaction.

[0139] In one embodiment, executing the transaction request based on the verification result in step 608 may include:

[0140] If the verification result indicates that the signature verification is successful, a transaction message is generated according to the transaction request and sent to the transaction system; or, if the verification result indicates that the signature verification is unsuccessful, an error message is sent to the business system according to the transaction request.

[0141] In this embodiment, if signature verification using the public key is successful, a verification result indicating successful signature verification is obtained. The final transaction message can then be generated according to the interface protocol of the transaction system and submitted to the transaction system. The transaction system is the system that actually processes transactions, typically a bank or third-party payment system. The transaction system can process transaction requests involving accounts and funds, ultimately completing the fund transfer. If signature verification using the public key fails, a verification result indicating that the signature verification failed is obtained. The error information can be fed back to the business system so that the business system can handle internal errors.

[0142] The embodiments disclosed herein can determine whether to submit a transaction message to the transaction system for transaction processing based on different verification results, thereby avoiding the occurrence of transactions still being processed despite signature or transaction errors and ensuring the reliability of transactions.

[0143] In one embodiment, such as Figure 9 As shown, a digital signature and verification method is provided, which includes the following steps:

[0144] Step 902: Receive the transaction request sent by the user.

[0145] In this embodiment, the user terminal can be a browser or similar device. The user terminal responds to user actions related to funds by submitting a transaction request. The system receives transaction requests from the user terminal, which may include transaction information such as the transaction amount (in cents) and the recipient's account number.

[0146] Step 904: In response to the transaction request, a redirect link is sent to the user terminal so that the user terminal can be redirected to the signature confirmation page provided by the signature platform to confirm the signature.

[0147] In this embodiment of the application, in response to a transaction request, signature parameters can be constructed for the transaction request according to the interface protocol with the signature platform, and the user terminal can be fed back with the signature parameters to redirect the signature platform via a jump link, so that the user terminal can be redirected to the signature confirmation page provided by the signature platform for signature confirmation.

[0148] Step 906: After the user completes the signature confirmation on the signature confirmation page on the client side, the business processing corresponding to the transaction request is carried out.

[0149] In this embodiment, upon triggering the confirm and sign button on the signature confirmation page on the user's end, and completing the signature confirmation, the system can receive the signature information of the current account sent by the user's end. Based on the unique signature request number in the signature information, the system finds the corresponding transaction request, saves the signature, and completes subsequent business processing. This business processing may include internal processing and approval processes. Step 908: After completing the business processing, the transaction request and the signature information of the current account are sent to the signature platform so that the signature platform can verify the signature information, obtain the corresponding verification result, and execute the transaction request based on the verification result.

[0150] In this embodiment, after completing the business processing, the transaction request and the signature in the signature information are submitted to the signature platform. The submission format can be a form or JSON, which needs to include the following parameters: amount; transfer amount; payee: recipient account; sign: signature. The signature platform can calculate the transaction digest for the signature and transaction request submitted by the business system using the same signature calculation algorithm as when signing, and verify the signature using the public key to obtain a verification result indicating whether the verification passed, and execute the transaction request according to different verification results.

[0151] The digital signature and verification method provided in this application receives a transaction request sent by a user client; in response to the transaction request, it sends a redirect link to the user client, allowing the user client to redirect to a signature confirmation page provided by the signature platform for signature confirmation; after the user client completes signature confirmation on the signature confirmation page, it performs business processing corresponding to the transaction request; after completing business processing, it sends the transaction request and the signature information of the current account to the signature platform, so that the signature platform can verify the signature information, obtain the corresponding verification result, and execute the transaction request according to the verification result. Compared with the traditional method where the business system performs signature, verification, and transaction initiation, this application introduces a signature platform independently developed and deployed from the business system. The signature platform provides a signature confirmation page to the user client so that the user can perform secondary confirmation of the transaction request. After confirmation, the signature platform performs signature verification and executes the transaction request. As long as the reliability of the signature platform is guaranteed, it can be ensured that the transaction finally sent to the transaction system is the content submitted and confirmed by the user, thus ensuring the reliability of the transaction.

[0152] In one embodiment, such as Figure 10 As shown, in step 904, in response to the transaction request, sending redirection link information to the user terminal may include:

[0153] Step 1002: Obtain transaction data and account information from the transaction request, and construct signature parameters based on the transaction data and account information.

[0154] In this embodiment, after receiving a transaction request from the user, the transaction request can be processed, and signature parameters can be constructed for the transaction request according to the interface protocol with the signature platform. The transaction request may include transaction data and account information. The transaction data may be the transaction amount (in cents), and the account information may be the payee's account. Signature parameters can be generated based on the transaction data and account information. The signature parameters may include the transaction amount (in cents), the payee's account, and a unique signature request number. The transaction request can be matched one-to-one with the signature parameters based on the unique signature request number.

[0155] Step 1004: Feedback the redirection link information for redirecting the signing platform to the user terminal based on the signature parameters.

[0156] In this embodiment, the redirect link information may include signature parameters, so that when a user accesses the redirect link information, the signature parameters can be sent to a signature platform, and the signature platform can construct a signature confirmation page based on the signature parameters. That is, the signature confirmation page can be displayed when a user accesses the redirect link.

[0157] This embodiment of the disclosure can, after constructing signature parameters based on the transaction request, send a redirect link to the signature platform to the user terminal. This enables the signature platform to provide a signature confirmation page to the user terminal, allowing the user to confirm the transaction request a second time. As long as the reliability of the signature platform is guaranteed, it can be ensured that the transaction finally sent to the transaction system is content that has been submitted and confirmed by the user, thus ensuring the reliability of the transaction.

[0158] It should be understood that although the steps in the flowcharts of the embodiments described above are shown sequentially according to the arrows, these steps are not necessarily executed in the order indicated by the arrows. Unless explicitly stated herein, there is no strict order restriction on the execution of these steps, and they can be executed in other orders. Moreover, at least some steps in the flowcharts of the embodiments described above may include multiple steps or multiple stages. These steps or stages are not necessarily completed at the same time, but can be executed at different times. The execution order of these steps or stages is not necessarily sequential, but can be performed alternately or in turn with other steps or at least some of the steps or stages of other steps.

[0159] This application also provides a digital signature and verification system for implementing the digital signature and verification system method described above. The digital signature and verification system includes: a user terminal, a business system, and a signature platform.

[0160] The user client submits transaction requests to the business system and, after submitting the request, is redirected to a signature confirmation page provided by the signature platform for signature confirmation. The business system processes the transaction after the user client completes the signature confirmation and sends the transaction request and the current account's signature information to the signature platform. The signature platform provides a signature confirmation page to the user client, receives the transaction request and signature information from the business system, verifies the signature information, obtains the corresponding verification result, and executes the transaction request based on the verification result.

[0161] It should be noted that the signing and verification process of the digital signature and verification system in this application embodiment can be referred to the relevant description in the foregoing embodiments, and will not be repeated here in this application embodiment.

[0162] The digital signature and verification system provided in this application, compared to the traditional method where the business system performs signing, verification, and transaction initiation, introduces a signature platform that is independently developed and deployed from the business system. The signature platform provides a signature confirmation page to the user, allowing the user to confirm the transaction request a second time. After confirmation, the signature platform verifies the signature and executes the transaction request. As long as the reliability of the signature platform is guaranteed, it can be ensured that the transaction finally sent to the transaction system is the content submitted and confirmed by the user, thus ensuring the reliability of the transaction.

[0163] For a better understanding of the embodiments of this application, see [link to relevant documentation]. Figure 11This application provides a flowchart illustrating a digital signature and verification method combining a digital signature and verification system. Steps 1.1-1.4 in the flowchart represent routine business requests and processing, still handled independently by the business system. The user initiates a transaction request, which requires subsequent processing by both the business system and the signature platform. The business system processes the transaction request, constructing signature parameters according to the interface protocol with the signature platform, and redirects the user to the signature platform. The user can process the HTTP response returned by the business system, redirecting to the signature confirmation page of the signature platform at the address specified by Location. The redirect link includes the signature parameters. Simultaneously, the signature platform receives the signature parameters, constructs the signature confirmation page based on them, and displays the signature confirmation page on the user's end. The user confirms the transaction information displayed on the signature platform page. After confirmation, the signature confirmation page uses the user's private key to generate a signature on the transaction digest. The user submits the signature to the signature platform, which receives the signature and redirects the user back to the business system. The user can process the returned HTTP response, redirecting to the business system at the address specified by Location. The business system receives and processes the signature sent by the user, locates the previous transaction record using the unique signature request number, saves the signature, and completes subsequent business processing. After completing all business processing, the business system submits the transaction request and signature together to the signature platform. The signature platform calculates the transaction digest using the same algorithm as during signing, based on the parameters submitted by the business system, and verifies the signature using the public key. If the verification fails, an error is returned to the business system for handling; if the verification succeeds, the signature platform generates the final message according to the transaction system's interface protocol and submits it to the transaction system. The transaction system then completes the processing, and the funds are finally credited to the account.

[0164] Based on the same inventive concept, this application also provides a digital signature and verification device for implementing the digital signature and verification method described above. The solution provided by this device is similar to the implementation described in the above method; therefore, the specific limitations in one or more embodiments of the digital signature and verification device provided below can be found in the limitations of the digital signature and verification method described above, and will not be repeated here.

[0165] In one embodiment, see Figure 12 A digital signature and verification device 1200 is provided. The digital signature and verification device 1200 includes:

[0166] The signature confirmation module 1202 is used to redirect to the signature confirmation page provided by the signature platform for signature confirmation after a transaction request is submitted to the business system.

[0167] The jump module 1204 is used to jump to the business system for business processing after the signature confirmation is completed. The business system sends the transaction request and the signature information of the current account to the signature platform so that the signature platform can verify the signature information, obtain the corresponding verification result, and execute the transaction request based on the verification result.

[0168] The digital signature and verification device provided in this application, after submitting a transaction request to the business system, redirects to a signature confirmation page provided by the signature platform for signature confirmation. After the signature confirmation is completed, it redirects to the business system for business processing. The business system sends the transaction request and the signature information of the current account to the signature platform, so that the signature platform can verify the signature information, obtain the corresponding verification result, and execute the transaction request based on the verification result. Compared with the traditional method in which the business system performs signature, verification, and transaction initiation, this application introduces a signature platform that is independently developed and deployed from the business system. The signature platform provides a signature confirmation page to the user, so that the user can confirm the transaction request a second time. After confirmation, the signature platform verifies the signature and executes the transaction request. As long as the reliability of the signature platform is guaranteed, it can be ensured that the transaction finally sent to the transaction system is the content submitted and confirmed by the user, thus ensuring the reliability of the transaction.

[0169] In one embodiment, the signature confirmation module 1202 is further configured to send a transaction request to the business system, so that the business system constructs signature parameters in response to the transaction request and feeds back first redirect link information for redirecting the signature platform to the user terminal based on the signature parameters; in response to the trigger operation for the first redirect link information, it sends signature parameters to the signature platform, so that the signature platform constructs a signature confirmation page based on the signature parameters and feeds back the signature confirmation page to the user terminal; after receiving the signature confirmation page fed back by the signature platform, it displays the signature confirmation page in the display interface.

[0170] In one embodiment, the redirection module 1204 is further configured to send signature information to the signature platform in response to a signature confirmation operation on the signature confirmation page, so that the signature platform can provide feedback to the user terminal with second redirection link information for redirecting the business system based on the signature information; and to send signature information to the business system in response to a trigger operation on the second redirection link information, so that the business system can perform business processing based on the signature information, and then send a transaction request and signature information to the signature platform, thereby enabling the signature platform to verify the signature, obtain the verification result, and execute the transaction request based on the verification result.

[0171] In one embodiment, see Figure 13 A digital signature and verification device 1300 is provided. The digital signature and verification device 1300 includes:

[0172] The signature module 1302 is used to provide a signature confirmation page to the user after the user submits a transaction request to the business system, so that after the user is redirected to the signature confirmation page, the current account logged in by the user performs signature confirmation on the signature confirmation page.

[0173] The information receiving module 1304 is used to receive the transaction request sent by the business system and the signature information of the current account after the current account has completed the signature confirmation.

[0174] The signature verification module 1306 is used to verify the signature information and obtain the corresponding verification result;

[0175] Execution module 1308 is used to execute transaction requests based on the verification results.

[0176] The digital signature and verification device provided in this application provides a signature confirmation page to the user terminal after the user submits a transaction request to the business system. The user is then redirected to the signature confirmation page, where their currently logged-in account confirms the signature. After the current account completes the signature confirmation, the device receives the transaction request and the current account's signature information from the business system. The signature information is verified to obtain the corresponding verification result. The transaction request is then executed based on the verification result. Compared to traditional methods where the business system handles signing, verification, and transaction initiation, this application introduces a signature platform independently developed and deployed from the business system. This platform provides a signature confirmation page to the user terminal, allowing for secondary confirmation of the transaction request. After confirmation, the signature platform verifies the signature and executes the transaction request. By ensuring the reliability of the signature platform, the transaction ultimately sent to the transaction system is guaranteed to be content submitted and confirmed by the user, thus ensuring transaction reliability.

[0177] In one embodiment, the signature module 1302 is further configured to receive signature parameters sent by the user terminal after triggering the first redirect link information, wherein the signature parameters are constructed by the business system based on the transaction request submitted by the user terminal, and the first redirect link information is the link information for redirecting the signature platform fed back by the business system to the user terminal based on the signature parameters; construct a signature confirmation page based on the signature parameters; and send the signature confirmation page to the user terminal.

[0178] In one embodiment, the information receiving module 1304 is further configured to receive signature information sent by the user terminal after performing a signature confirmation operation on the signature confirmation page; to feed back second redirection link information for redirecting the business system to the user terminal based on the signature information, so that the user terminal responds to the trigger operation of the second redirection link information and sends signature information to the business system, thereby enabling the business system to perform business processing based on the signature information; and after the business system performs business processing based on the signature information, to receive the transaction request sent by the business system and the signature information of the current account.

[0179] In one embodiment, the execution module 1308 is further configured to generate a transaction message according to the transaction request and send the transaction message to the transaction system if the verification result indicates that the signature verification has passed; or, if the verification result indicates that the signature verification has failed, report an error message to the business system according to the transaction request.

[0180] In one embodiment, see Figure 14 A digital signature and verification device 1400 is provided. The digital signature and verification device 1400 includes:

[0181] The information receiving module 1402 is used to receive transaction requests sent by the user terminal;

[0182] The redirect module 1404 is used to respond to a transaction request by sending a redirect link to the user terminal, so that the user terminal can be redirected to the signature confirmation page provided by the signature platform to confirm the signature.

[0183] The business processing module 1406 is used to perform business processing corresponding to the transaction request after the user completes the signature confirmation on the signature confirmation page on the client side.

[0184] The information sending module 1408 is used to send the transaction request and the signature information of the current account to the signature platform after completing the business processing, so that the signature platform can verify the signature information, obtain the corresponding verification result, and execute the transaction request according to the verification result.

[0185] The digital signature and verification device provided in this application embodiment receives a transaction request sent by a user terminal; in response to the transaction request, it sends a redirect link to the user terminal, allowing the user terminal to redirect to a signature confirmation page provided by the signature platform for signature confirmation; after the user terminal completes signature confirmation on the signature confirmation page, it performs business processing corresponding to the transaction request; after completing business processing, it sends the transaction request and the signature information of the current account to the signature platform, so that the signature platform can verify the signature information, obtain the corresponding verification result, and execute the transaction request according to the verification result. Compared with the traditional method where the business system performs signature, verification, and transaction initiation, this application embodiment introduces a signature platform independently developed and deployed from the business system. The signature platform provides a signature confirmation page to the user terminal so that the user can perform secondary confirmation of the transaction request. After confirmation, the signature platform performs signature verification and executes the transaction request. As long as the reliability of the signature platform is guaranteed, it can be ensured that the transaction finally sent to the transaction system is the content submitted and confirmed by the user, thus ensuring the reliability of the transaction.

[0186] In one embodiment, the redirection module 1404 is further configured to obtain transaction data and account information from the transaction request, and construct signature parameters based on the transaction data and account information; and to provide the user with redirection link information for redirecting the signature platform based on the signature parameters.

[0187] The modules in the aforementioned digital signature and verification device can be implemented entirely or partially through software, hardware, or a combination thereof. These modules can be embedded in the processor of a computer device in hardware form or independent of it, or stored in the memory of the computer device in software form, so that the processor can call and execute the operations corresponding to each module.

[0188] In one embodiment, a computer device is provided, which may be a server, and its internal structure diagram may be as follows: Figure 15 As shown, the computer device includes a processor, memory, and a network interface connected via a system bus. The processor provides computing and control capabilities. The memory includes non-volatile storage media and internal memory. The non-volatile storage media stores the operating system, computer programs, and a database. The internal memory provides the environment for the operation of the operating system and computer programs in the non-volatile storage media. The database stores data such as transaction requests or signatures. The network interface communicates with external terminals via a network connection. When executed by the processor, the computer program implements a digital signature and verification method.

[0189] Those skilled in the art will understand that Figure 15 The structure shown is merely a block diagram of a portion of the structure related to the present application and does not constitute a limitation on the computer device to which the present application is applied. Specific computer devices may include more or fewer components than those shown in the figure, or combine certain components, or have different component arrangements.

[0190] In one embodiment, a computer device is provided, including a memory and a processor, wherein the memory stores a computer program, and the processor executes the computer program to implement the steps in the above-described method embodiments.

[0191] In one embodiment, a computer-readable storage medium is provided having a computer program stored thereon, which, when executed by a processor, implements the steps in the above method embodiments.

[0192] In one embodiment, a computer program product is provided, including a computer program that, when executed by a processor, implements the steps in the above method embodiments.

[0193] It should be noted that the user information (including but not limited to user device information, user personal information, etc.) and data (including but not limited to data used for analysis, data stored, data displayed, etc.) involved in this application are all information and data authorized by the user or fully authorized by all parties.

[0194] Those skilled in the art will understand that all or part of the processes in the above embodiments can be implemented by a computer program instructing related hardware. The computer program can be stored in a non-volatile computer-readable storage medium, and when executed, it can include the processes of the embodiments described above. Any references to memory, databases, or other media used in the embodiments provided in this application can include at least one of non-volatile and volatile memory. Non-volatile memory can include read-only memory (ROM), magnetic tape, floppy disk, flash memory, optical memory, high-density embedded non-volatile memory, resistive random access memory (ReRAM), magnetic random access memory (MRAM), ferroelectric random access memory (FRAM), phase change memory (PCM), graphene memory, etc. Volatile memory can include random access memory (RAM) or external cache memory, etc. By way of illustration and not limitation, RAM can take many forms, such as Static Random Access Memory (SRAM) or Dynamic Random Access Memory (DRAM). The databases involved in the embodiments provided in this application may include at least one type of relational database and non-relational database. Non-relational databases may include, but are not limited to, blockchain-based distributed databases. The processors involved in the embodiments provided in this application may be general-purpose processors, central processing units, graphics processing units, digital signal processors, programmable logic devices, quantum computing-based data processing logic devices, etc., and are not limited to these.

[0195] The technical features of the above embodiments can be combined in any way. For the sake of brevity, not all possible combinations of the technical features in the above embodiments are described. However, as long as there is no contradiction in the combination of these technical features, they should be considered to be within the scope of this specification.

[0196] The embodiments described above are merely illustrative of several implementation methods of this application, and while the descriptions are specific and detailed, they should not be construed as limiting the scope of this patent application. It should be noted that those skilled in the art can make various modifications and improvements without departing from the concept of this application, and these all fall within the protection scope of this application. Therefore, the protection scope of this application should be determined by the appended claims.

Claims

1. A digital signature and verification method, characterized in that, The method includes: After submitting a transaction request to the business system, the user is redirected to a signature confirmation page provided by the signature platform for signature confirmation. This process includes: sending a transaction request to the business system, causing the business system to construct signature parameters in response to the transaction request, and sending a first redirect link to the user based on the signature parameters; in response to a trigger operation on the first redirect link information, sending the signature parameters to the signature platform, causing the signature platform to construct a signature confirmation page based on the signature parameters, and sending the signature confirmation page to the user; and displaying the signature confirmation page on the display interface after receiving the signature confirmation page from the signature platform. After the signature confirmation is completed, the system redirects to the business system for business processing. The business system sends the transaction request and the signature information of the current account to the signature platform, so that the signature platform can verify the signature information, obtain the corresponding verification result, and execute the transaction request based on the verification result.

2. The method according to claim 1, characterized in that, After signature confirmation is completed, the system redirects to the business system for processing. The business system sends the transaction information and the current account's signature information to the signature platform, allowing the signature platform to verify the signature information, obtain the corresponding verification result, and execute the transaction request based on the verification result, including: In response to the signature confirmation operation on the signature confirmation page, signature information is sent to the signature platform so that the signature platform can provide the user with a second redirect link for redirecting the business system based on the signature information. In response to the triggering operation for the second redirect link information, the signature information is sent to the business system, so that the business system performs business processing based on the signature information, and then sends the transaction request and the signature information to the signature platform, thereby enabling the signature platform to verify the signature, obtain the verification result, and execute the transaction request based on the verification result.

3. A digital signature and verification method, characterized in that, The method includes: After a user submits a transaction request to the business system, a signature confirmation page is provided to the user so that the user is redirected to the signature confirmation page, where the user's currently logged-in account performs signature confirmation. The process of the user client submitting a transaction request to the business system and then being redirected to the signature confirmation page for signature confirmation includes: the user client sending a transaction request to the business system, causing the business system to construct signature parameters in response to the transaction request and, based on the signature parameters, return a first redirect link to the signature platform to the user client; the user client, in response to a trigger operation on the first redirect link information, sending the signature parameters to the signature platform, causing the signature platform to construct a signature confirmation page based on the signature parameters and return the signature confirmation page to the user client; and the user client displaying the signature confirmation page in the display interface after receiving it from the signature platform. After the current account completes the signature confirmation, the system receives the transaction request and the signature information of the current account sent by the business system. The signature information is verified to obtain the corresponding verification result; The transaction request is executed based on the verification result.

4. The method according to claim 3, characterized in that, The step of providing a signature confirmation page to the user after the user submits a transaction request to the business system includes: The system receives signature parameters sent by the user terminal after triggering the first redirect link information. The signature parameters are constructed by the business system based on the transaction request submitted by the user terminal. The first redirect link information is the link information for redirecting the signature platform fed back by the business system to the user terminal based on the signature parameters. The signature confirmation page is constructed based on the signature parameters; The signature confirmation page is sent to the user's client.

5. The method according to claim 3, characterized in that, The step of receiving the transaction request and the signature information of the current account sent by the business system after the current account has completed the signature confirmation includes: Receive the signature information sent by the user terminal after performing the signature confirmation operation on the signature confirmation page; The signature information is used to send a second redirect link to the business system back to the user terminal, so that the user terminal responds to the trigger operation of the second redirect link information and sends the signature information to the business system, thereby enabling the business system to perform business processing based on the signature information. After the business system performs business processing based on the signature information, it receives the transaction request sent by the business system and the signature information of the current account.

6. The method according to claim 3, characterized in that, The step of executing the transaction request based on the verification result includes: If the verification result indicates that the signature verification is successful, a transaction message is generated according to the transaction request, and the transaction message is sent to the transaction system; or... If the verification result indicates that the signature verification failed, an error message is sent to the business system according to the transaction request.

7. A digital signature and verification method, characterized in that, The method includes: Receive transaction requests sent by the user client; In response to the transaction request, a redirection link is sent to the user terminal, causing the user terminal to be redirected to a signature confirmation page provided by the signature platform for signature confirmation. This includes: constructing signature parameters in response to the transaction request, and sending first redirection link information to the user terminal based on the signature parameters; the user terminal, in response to a trigger operation on the first redirection link information, sending the signature parameters to the signature platform, causing the signature platform to construct the signature confirmation page based on the signature parameters and send the signature confirmation page to the user terminal; and the user terminal, upon receiving the signature confirmation page from the signature platform, displaying the signature confirmation page in a display interface. After the user completes the signature confirmation on the signature confirmation page on the client, the business processing corresponding to the transaction request is performed. After completing the business processing, the transaction request and the signature information of the current account are sent to the signature platform so that the signature platform can verify the signature information, obtain the corresponding verification result, and execute the transaction request based on the verification result.

8. The method according to claim 7, characterized in that, The step of sending a redirect link to the user terminal in response to the transaction request includes: Obtain transaction data and account information from the transaction request, and construct signature parameters based on the transaction data and account information; The signature parameters are used to send a redirect link to the user terminal for redirecting the signature platform.

9. A digital signature and verification system, characterized in that, The system includes: a user terminal, a business system, and a signature platform, wherein, The user terminal is used to submit a transaction request to the business system, and after submitting the transaction request to the business system, it is redirected to the signature confirmation page provided by the signature platform to confirm the signature. The process involves the user client submitting a transaction request to the business system and then being redirected to a signature confirmation page provided by the signature platform for signature confirmation. This includes: sending a transaction request to the business system, causing the business system to construct signature parameters in response to the transaction request and, based on the signature parameters, provide the user client with a first redirect link for redirecting to the signature platform; in response to a trigger operation on the first redirect link information, sending the signature parameters to the signature platform, causing the signature platform to construct a signature confirmation page based on the signature parameters and provide the user client with the signature confirmation page; and, upon receiving the signature confirmation page from the signature platform, displaying the signature confirmation page on the display interface. The business system is used to process business after the user completes the signature confirmation, and send the transaction request and the signature information of the current account to the signature platform; The signature platform is used to provide the signature confirmation page to the user terminal, receive the transaction request and signature information sent by the business system, verify the signature information, obtain the corresponding verification result, and execute the transaction request according to the verification result.

10. A digital signature and verification method apparatus, characterized in that, The device includes: The signature confirmation module is used to redirect users to the signature confirmation page provided by the signature platform after submitting a transaction request to the business system for signature confirmation. The signature confirmation module is further configured to: send a transaction request to the business system, so that the business system constructs signature parameters in response to the transaction request, and feeds back first redirect link information for redirecting the signature platform to the user terminal based on the signature parameters; in response to a trigger operation for the first redirect link information, send the signature parameters to the signature platform, so that the signature platform constructs a signature confirmation page based on the signature parameters, and feeds back the signature confirmation page to the user terminal; and after receiving the signature confirmation page fed back by the signature platform, display the signature confirmation page in the display interface. The redirection module is used to redirect to the business system for business processing after the signature confirmation is completed. The business system sends the transaction request and the signature information of the current account to the signature platform so that the signature platform can verify the signature information, obtain the corresponding verification result, and execute the transaction request based on the verification result.

11. A digital signature and verification method apparatus, characterized in that, The device includes: The signature module is used to provide a signature confirmation page to the user terminal after the user terminal submits a transaction request to the business system, so that the user terminal can be redirected to the signature confirmation page and the current account logged in by the user terminal can perform signature confirmation on the signature confirmation page. The process of the user client submitting a transaction request to the business system and then being redirected to the signature confirmation page for signature confirmation includes: the user client sending a transaction request to the business system, causing the business system to construct signature parameters in response to the transaction request and, based on the signature parameters, return a first redirect link to the signature platform to the user client; the user client, in response to a trigger operation on the first redirect link information, sending the signature parameters to the signature platform, causing the signature platform to construct a signature confirmation page based on the signature parameters and return the signature confirmation page to the user client; and the user client displaying the signature confirmation page in the display interface after receiving it from the signature platform. The information receiving module is used to receive the transaction request sent by the business system and the signature information of the current account after the current account has completed the signature confirmation; The signature verification module is used to verify the signature information and obtain the corresponding verification result; The execution module is used to execute the transaction request based on the verification result.

12. A digital signature and verification method apparatus, characterized in that, The device includes: The information receiving module is used to receive transaction requests sent by the user terminal; A redirection module, used in response to the transaction request, sends redirection link information to the user terminal, so that the user terminal is redirected to a signature confirmation page provided by the signature platform for signature confirmation. This includes: constructing signature parameters in response to the transaction request, and sending first redirection link information to the user terminal based on the signature parameters for redirecting to the signature platform; the user terminal, in response to a trigger operation on the first redirection link information, sends the signature parameters to the signature platform, so that the signature platform constructs the signature confirmation page based on the signature parameters and sends the signature confirmation page to the user terminal; after receiving the signature confirmation page from the signature platform, the user terminal displays the signature confirmation page in a display interface. The business processing module is used to perform business processing corresponding to the transaction request after the user completes the signature confirmation on the signature confirmation page on the client side. The information sending module is used to send the transaction request and the signature information of the current account to the signature platform after completing the business processing, so that the signature platform can verify the signature information, obtain the corresponding verification result, and execute the transaction request according to the verification result.

13. A computer device comprising a memory and a processor, wherein the memory stores a computer program, characterized in that, When the processor executes the computer program, it implements the steps of the method according to any one of claims 1 to 8.

14. A computer-readable storage medium having a computer program stored thereon, characterized in that, When the computer program is executed by a processor, it implements the steps of the method according to any one of claims 1 to 8.

15. A computer program product, comprising a computer program, characterized in that, When the computer program is executed by a processor, it implements the steps of the method according to any one of claims 1 to 8.