POS key processing methods, bank side, POS terminal and system

By generating and distributing POS keys directly through the bank, the problem of high maintenance difficulty and low efficiency caused by POS terminal recycling software connection is solved, and a more efficient and secure key distribution process is achieved.

CN119743301BActive Publication Date: 2025-10-31CCB FINTECH CO LTD
View PDF 2 Cites 0 Cited by

Patent Information

Application Number
CN202411869641.0
Authority / Receiving Office
CN · China
Patent Type
Patents(China)
Current Assignee / Owner
Filing Date
2024-12-18
Publication Date
2025-10-31
Estimated Expiration
2044-12-18

AI Technical Summary

Technical Problem

The existing POS key download method requires the POS machine to be returned to the bank for software connection, which leads to high maintenance difficulty, low efficiency, and insufficient security.

Method used

By maintaining merchant and POS terminal information through the bank, generating unique identifiers and binding keys, and distributing keys directly before allocation, the traditional software recycling connection process is bypassed.

Benefits of technology

It reduces the difficulty of operation and maintenance, improves the efficiency and security of POS key issuance, and reduces the operational complexity for business personnel and the operation and maintenance pressure for technical personnel.

✦ Generated by Eureka AI based on patent content.

Smart Images

  • Figure CN119743301B_ABST
    Figure CN119743301B_ABST
Patent Text Reader

Abstract

This invention discloses a POS key processing method, a bank-side component, a POS terminal, and a system, relating to the Internet of Things (IoT) field. The method includes: generating a merchant contract, a POS master key, and a unique terminal identifier based on merchant and POS terminal information; binding the terminal's unique identifier with the master key and the merchant contract; obtaining the current master key based on the current unique terminal identifier sent by the smart terminal and the binding relationship between the master key and the terminal's unique identifier; verifying the current unique terminal identifier based on the binding relationship between the merchant contract and the terminal's unique identifier; and sending the current master key to the terminal after successful verification. This invention eliminates the need to distribute POS terminals to merchants and then return them to the bank for master key download and installation via computer-connected software. Instead, the bank only needs to maintain the relevant relationships before distribution, allowing POS terminals to be distributed to merchants, reducing maintenance complexity and improving the efficiency and security of POS key distribution.
Need to check novelty before this filing date? Find Prior Art

Description

Technical Field

[0001] This invention relates to the field of Internet of Things (IoT) technology, and in particular to a POS key processing method, bank terminal, POS terminal and system. Background Technology

[0002] This section is intended to provide background or context for the embodiments of the invention set forth in the claims. The description herein is not an admission that it is prior art simply because it is included in this section.

[0003] In commercial bank acquiring systems, when commercial banks with operating licenses issued by regulatory agencies conduct acquiring business, their staff will provide merchants with smart POS terminals (POS machines). After installing the POS terminal application, the POS machine also needs to download the POS master key generated by the bank's acquiring system. Only with the master key can the POS machine perform operations such as check-in. Otherwise, without the master key, transactions sent by the POS machine will be rejected by the acquiring system, resulting in check-in failure and inability to proceed with subsequent transactions.

[0004] Generally, POS sales personnel first need to develop offline merchants, contact interested businesses to conduct marketing activities, and collect relevant merchant information. They then open merchant contracts and terminal contracts on the merchant management platform. A terminal contract indicates that the merchant can be issued a POS terminal. After the sales personnel maintain the relevant merchant information, discount rates, and other parameters, the merchant management platform will report the relevant merchant information to UnionPay to meet regulatory requirements. Simultaneously, the merchant management platform pushes the relevant merchant information to the POSp (acquiring management system). The POSp generates the POS terminal's master key based on the data pushed by the merchant management platform. After the POS key is generated, it is downloaded from the merchant management page and then installed onto the POS terminal using the download tool provided by the manufacturer, completing the POS terminal key installation.

[0005] The existing method for downloading POS keys mainly involves distributing POS terminals to merchants, then having bank staff return the terminals to the bank and download the master key via computer-connected software. The smart POS connects to the computer via a data cable, and after installing the corresponding manufacturer's drivers and download software, the merchant key file is downloaded from the merchant's system. However, bank employees' office computers have security clients installed, preventing direct file copying; an internal approval process is required to retrieve the merchant key file from the internal system. Once all these conditions are met, the download software can be used to download the POS master key to the POS machine. After check-in, the POS machine can be used normally to issue transactions.

[0006] Therefore, the current method of re-inserting keys through software after returning the POS machine to the bank presents problems such as high maintenance difficulty, low efficiency and low security. Summary of the Invention

[0007] This invention provides a method for processing POS keys. This method, applied at the bank level, eliminates the need to distribute POS terminals to merchants and then return them to the bank for master key download and installation via computer-connected software. Instead, it eliminates the need to maintain the relevant relationships at the bank before distribution, allowing the POS terminals to be issued to merchants. The method includes:

[0008] Receive merchant information and smart POS terminal information;

[0009] Based on the merchant information and smart POS terminal information, generate a merchant contract, a POS master key, and a unique identifier for the POS terminal;

[0010] Bind the POS master key to the unique identifier of the POS terminal to obtain the relationship between the POS master key and the unique identifier of the POS terminal; bind the merchant contract to the unique identifier of the POS terminal to obtain the relationship between the merchant contract and the unique identifier of the POS terminal.

[0011] The current POS master key is obtained based on the unique identifier of the current POS terminal and the relationship between the POS master key and the unique identifier of the POS terminal; the unique identifier of the current POS terminal is included in the key issuance request and sent by the smart POS terminal.

[0012] Verify the unique identifier of the current POS terminal based on the relationship between the merchant contract and the unique identifier of the POS terminal.

[0013] After successful verification, the current POS master key is sent to the smart POS terminal.

[0014] This invention also provides a method for processing POS keys. This method is applied to smart POS terminals, eliminating the need to distribute POS terminals to merchants and then return them to the bank for master key download and installation via computer-connected software. Instead, the method only requires maintaining the relevant relationships with the bank before distribution, allowing the POS terminals to be distributed to merchants. The method includes:

[0015] Merchant information and smart POS terminal information are sent to the bank; the bank generates a merchant contract, a POS master key, and a unique identifier for the POS terminal based on the merchant information and smart POS terminal information; the POS master key is bound to the unique identifier of the POS terminal to obtain the relationship between the POS master key and the unique identifier of the POS terminal; the merchant contract is bound to the unique identifier of the POS terminal to obtain the relationship between the merchant contract and the unique identifier of the POS terminal.

[0016] Obtain the unique identifier of the current POS terminal;

[0017] Generate a key distribution request based on the unique identifier of the current POS terminal;

[0018] The key distribution request is sent to the bank; the bank is also used to obtain the current POS master key based on the unique identifier of the current POS terminal and the relationship between the POS master key and the unique identifier of the POS terminal; to verify the unique identifier of the current POS terminal based on the relationship between the merchant contract and the unique identifier of the POS terminal; and after the verification is successful, to send the current POS master key to the smart POS terminal.

[0019] This invention also provides a bank-side processing mechanism for POS keys, eliminating the need to distribute POS terminals to merchants and then collect them back to the bank for downloading and installing the master key via computer software. Instead, the bank only needs to maintain the relevant relationships before distribution to merchants, allowing the POS terminals to be issued to them. This bank-side mechanism includes:

[0020] The receiving unit is used to receive merchant information and smart POS terminal information;

[0021] The first generation unit is used to generate a merchant contract, a POS master key, and a unique identifier for the POS terminal based on the merchant information and the smart POS terminal information.

[0022] The relationship establishment unit is used to bind the POS master key with the unique identifier of the POS terminal to obtain the relationship between the POS master key and the unique identifier of the POS terminal; and to bind the merchant contract with the unique identifier of the POS terminal to obtain the relationship between the merchant contract and the unique identifier of the POS terminal.

[0023] The master key determination unit is used to obtain the current POS master key based on the unique identifier of the current POS terminal and the relationship between the POS master key and the unique identifier of the POS terminal; the unique identifier of the current POS terminal is included in the key issuance request and sent by the smart POS terminal;

[0024] The verification unit is used to verify the unique identifier of the current POS terminal based on the relationship between the merchant contract and the unique identifier of the POS terminal.

[0025] The sending unit is used to send the current POS master key to the smart POS terminal after the verification is successful.

[0026] This invention also provides a method for processing POS keys. This method is applied to smart POS terminals, eliminating the need to distribute POS terminals to merchants and then return them to the bank for master key download and installation via computer-connected software. Instead, the method only requires maintaining the relevant relationships with the bank before distribution, allowing the POS terminals to be distributed to merchants. The smart POS terminal includes:

[0027] The sending unit is used to send merchant information and smart POS terminal information to the bank; the bank is used to generate a merchant contract, a POS master key and a unique identifier of the POS terminal based on the merchant information and smart POS terminal information; bind the POS master key and the unique identifier of the POS terminal to obtain the relationship between the POS master key and the unique identifier of the POS terminal; bind the merchant contract and the unique identifier of the POS terminal to obtain the relationship between the merchant contract and the unique identifier of the POS terminal.

[0028] The acquisition unit is used to acquire the unique identifier of the current POS terminal;

[0029] The second generation unit is used to generate a key issuance request based on the unique identifier of the current POS terminal.

[0030] The initiating unit is used to send a key distribution request to the bank; the bank is also used to obtain the current POS master key based on the unique identifier of the current POS terminal and the relationship between the POS master key and the unique identifier of the POS terminal; to verify the unique identifier of the current POS terminal based on the relationship between the merchant contract and the unique identifier of the POS terminal; and after the verification is successful, to send the current POS master key to the smart POS terminal.

[0031] This invention also provides a method for processing POS keys. This method, applied to a system, eliminates the need to distribute POS terminals to merchants and then return them to the bank for master key download and installation via computer-connected software. Instead, it only requires maintaining the relevant relationships with the bank before distribution, allowing the POS terminals to be distributed to merchants. The system includes:

[0032] The POS key processing described above is performed on the bank side, and the POS key processing described above is performed on the smart POS terminal.

[0033] This invention also provides a computer device, including a memory, a processor, and a computer program stored in the memory and executable on the processor. When the processor executes the computer program, it implements the above-described POS key processing method.

[0034] This invention also provides a computer-readable storage medium storing a computer program that, when executed by a processor, implements the above-described POS key processing method.

[0035] This invention also provides a computer program product, which includes a computer program that, when executed by a processor, implements the above-described POS key processing method.

[0036] Compared with existing technologies that require distributing POS terminals to merchants and then returning them to the bank for downloading and installing the master key via computer-connected software, which is difficult to maintain and has low efficiency and security in POS key distribution, the POS key processing solution provided in this invention has the following advantages: it eliminates the need to distribute POS terminals to merchants and then return them to the bank for downloading and installing the master key via computer-connected software. Instead, it only requires maintaining the relevant relationships with the bank before distribution, which allows the POS terminals to be distributed to merchants, reducing maintenance difficulty and improving the efficiency and security of POS key distribution. Attached Figure Description

[0037] To more clearly illustrate the technical solutions in the embodiments of the present invention or the prior art, the drawings used in the description of the embodiments or the prior art will be briefly introduced below. Obviously, the drawings described below are only some embodiments of the present invention. For those skilled in the art, other drawings can be obtained based on these drawings without creative effort. In the drawings:

[0038] Figure 1 This is a flowchart illustrating the POS key processing method applied to the bank in an embodiment of the present invention.

[0039] Figure 2 This is a flowchart illustrating a POS key processing method according to another embodiment of the present invention;

[0040] Figure 3 This is a flowchart illustrating a POS key processing method in another embodiment of the present invention;

[0041] Figure 4 This is a schematic diagram of the POS key processing method applied to a smart POS terminal in an embodiment of the present invention;

[0042] Figure 5 This is a schematic diagram of the bank's structure for processing POS keys in an embodiment of the present invention;

[0043] Figure 6 This is a schematic diagram of the structure of the smart POS terminal for POS key processing in an embodiment of the present invention;

[0044] Figure 7 This is a schematic diagram of the POS key processing system in an embodiment of the present invention;

[0045] Figure 8 This is a schematic diagram of the POS key processing system in another embodiment of the present invention. Detailed Implementation

[0046] To make the objectives, technical solutions, and advantages of the embodiments of the present invention clearer, the embodiments of the present invention will be further described in detail below with reference to the accompanying drawings. Here, the illustrative embodiments of the present invention and their descriptions are used to explain the present invention, but are not intended to limit the present invention.

[0047] The acquisition, transmission, storage, use, and processing of data in this application all comply with relevant laws and regulations.

[0048] It should be noted that in the embodiments of this application, certain software, components, models and other existing solutions in the industry may be mentioned. These should be regarded as exemplary and are only intended to illustrate the feasibility of implementing the technical solution of this application. However, it does not mean that the applicant has used or necessarily used the solution.

[0049] Figure 1 This is a flowchart illustrating the POS key processing method applied to banks in an embodiment of the present invention, as shown below. Figure 1 As shown, the method includes the following steps:

[0050] Step 201: Receive merchant information and smart POS terminal information;

[0051] Step 202: Based on the merchant information and smart POS terminal information, generate the merchant contract, POS master key, and unique identifier of the POS terminal;

[0052] Step 203: Bind the POS master key to the unique identifier of the POS terminal to obtain the relationship between the POS master key and the unique identifier of the POS terminal; bind the merchant contract to the unique identifier of the POS terminal to obtain the relationship between the merchant contract and the unique identifier of the POS terminal.

[0053] Step 204: Obtain the current POS master key based on the unique identifier of the current POS terminal and the relationship between the POS master key and the unique identifier of the POS terminal; the unique identifier of the current POS terminal is included in the key issuance request and sent by the smart POS terminal;

[0054] Step 205: Verify the unique identifier of the current POS terminal based on the relationship between the merchant contract and the unique identifier of the POS terminal;

[0055] Step 206: After successful verification, the current POS master key is sent to the smart POS terminal.

[0056] Compared with existing technologies that require distributing POS terminals to merchants and then returning them to the bank for downloading and installing the master key via computer-connected software, which is difficult to maintain and has low efficiency and security in POS key distribution, the POS key processing solution provided in this invention has the following advantages: it eliminates the need to distribute POS terminals to merchants and then return them to the bank for downloading and installing the master key via computer-connected software. Instead, it only requires maintaining the relevant relationships with the bank before distribution, which allows the POS terminals to be distributed to merchants, reducing maintenance difficulty and improving the efficiency and security of POS key distribution.

[0057] This invention provides a method for distributing POS master keys that differs from traditional POS installation methods. When business personnel install POS machines for merchants, they no longer need to retrieve the POS machine and reinstall the key via software. Instead, they only need to maintain the relevant contractual relationships in the bank's management backend to redistribute the POS machine to the merchant. The following describes... Figures 1 to 8 A detailed introduction will be provided.

[0058] Point-of-Sale (POS) terminal: This refers to a device placed at a merchant's cashier that can accept bank cards and QR code transactions.

[0059] To facilitate understanding of how the embodiments of the present invention are implemented, the overall architecture of the POS key processing system provided in the embodiments of the present invention will first be introduced, such as... Figure 8 As shown:

[0060] 1. The POS application (POS app) is installed on the smart POS terminal 01 (this smart POS terminal 01 is used to execute...). Figure 4 (See the relevant steps shown). This refers to the client application installed on the smart POS machine, used to initiate transactions such as check-in, card swiping, and scanning.

[0061] 2. The transaction is sent to the bank's system via the internet (bank terminal 02, which is used for execution). Figure 1 The relevant steps shown in the POSp are as follows.

[0062] 3. POSp is responsible for managing the generation, download, and update of POS terminal keys, as well as transaction validity detection and filtering, transaction monitoring, and traffic routing. It acts as a security protection and firewall for the back-end accounting system. POS transaction access and transaction message forwarding are also handled here. In other words, POSp: POSProxy, or POS front-end system, is mainly used to manage front-end POS terminals and transaction forwarding. This includes POS terminal key and download management, transaction access, transaction validity detection and filtering, and transaction message conversion.

[0063] 4. Merchant Management (Merchant Management Terminal): This terminal manages merchant-related data, including merchant information, business licenses, and merchant contracts. Merchants first register as legitimate merchants in the Merchant Management terminal, activate relevant services, and maintain relevant information, including commission rates, MCC types, and collection limits.

[0064] 5. The smart POS terminals are provided to merchants by the branch according to the agreement. The branch manages the entry and deployment of the terminals through the terminal management system. When the smart POS terminal checks in, the POS terminal provides its status and information to the terminal management system, which then updates the terminal's status information.

[0065] 6. Merchant Management and Equipment Management (Equipment Management Terminal) are respectively responsible for handling the reporting of merchant information and equipment information in the supervision and reporting process.

[0066] 7. The POSp sends transaction-related messages to the acquiring component, which then forwards them to the debit card component or payment settlement. The payment settlement then connects to UnionPay via a dedicated line.

[0067] 8. The debit card component is responsible for processing transactions within the bank. Transactions involving other banks are handled by the payment and settlement system via a dedicated line to UnionPay.

[0068] The following describes the detailed steps of POS key processing in this embodiment of the invention. To facilitate understanding of how the invention is implemented, this embodiment also introduces the method applied to the smart POS terminal in the entire system, namely, performing the following... Figure 8 The method shown is in the smart POS terminal.

[0069] In this embodiment of the invention, the master key is used to encrypt related messages when signing in to obtain the working key. The transaction message for signing in includes a 19-digit POS number generated by the merchant management system and an 8-digit terminal number (which needs to be reported to UnionPay). Both of these uniquely identify the terminal (uniquely assigned by the bank's POS acquiring merchant system). POSp can uniquely identify the POS terminal under the merchant based on the 19-digit POS number and the 8-digit terminal number, and call the relevant encryption function for decryption and verification.

[0070] In one embodiment, the unique identifier of the POS terminal includes: merchant terminal number (the aforementioned 19-digit POS number) or POS terminal number (the aforementioned 8-digit terminal number, and the TUSN terminal number mentioned below); the smart POS terminal is used to initiate a key issuance request to the bank by receiving the current merchant terminal number input by the user, or to initiate a key issuance request to the bank by receiving a trigger instruction to obtain the current POS terminal number.

[0071] In practice, the preferred approach of either receiving the current merchant terminal number input by the user or obtaining the current POS terminal number by receiving a trigger instruction to initiate a key issuance request to the bank can improve the flexibility and efficiency of POS key processing.

[0072] The two preferred options are described in detail below.

[0073] The first method involves receiving a trigger command to obtain the current POS terminal number and initiating a key issuance request to the bank. The relationship between the POS machine and the merchant contract is maintained in the background. After the correspondence is established, the POS machine includes its terminal number (TUSN) in the sent request message. The POS operator matches the contract relationship based on the TUSN, with each TUSN associated with a specific merchant contract, ensuring a one-to-one correspondence. Only after the contract is successfully associated will the POS machine be allowed to proceed with the next transaction. After verifying the TUSN and matching the terminal machine with the contract, the next step is to issue the relevant terminal master key. Regarding the TUSN: This is the terminal hardware serial number (unique to UnionPay), consisting of a 6-digit manufacturer code + a 2-digit terminal type + a custom product S / N, usually printed on the upper or lower part of the back of the POS machine. Each machine has a unique TUSN. A POS machine can be uniquely identified using its TUSN.

[0074] The second method involves initiating a key distribution request to the bank by receiving the current merchant terminal number entered by the user. Besides directly sending the TSN terminal number for master key distribution, POS POS applications also offer a method of manually entering the merchant terminal number. After establishing a merchant contract, the business personnel send the merchant terminal number to the merchant. Upon receiving the POS, the merchant opens the POS application, where an input box for the merchant terminal number appears. After entering the merchant terminal number, the POS application sends the merchant number to the POSP (POS Terminal Platform). The POSP then uses the sent merchant terminal number to find the corresponding terminal contract file and checks whether the sent information matches the backend configuration. This includes verifying the validity of the merchant contract, whether the TSN matches the backend registration, and whether the latitude and longitude information matches the settings made by the business personnel in the backend. In practice, the latitude and longitude verification process works as follows: The latitude and longitude information is obtained by the smart POS through the map SDK, specifically the current device's GPS information, such as latitude 23.124120 and longitude 113.372820. This information is sent to the POSp via transaction messages. Business personnel enter an initial latitude and longitude coordinate for the smart POS terminal, along with a radius range (e.g., 5 km or 10 km), into the merchant management system. The POSp calculates and compares the sent latitude and longitude coordinates with the system-set coordinates to determine the actual distance between the two locations and whether it falls within the set radius. If the distance exceeds the transaction range, an error message is returned. After all checks are completed, the POSp distributes the previously generated POS master key to the POS terminal. The POS POS payment application then uses this key to complete subsequent check-in, obtain the working key, and complete transaction processing.

[0075] Next, we will introduce Figure 2 and Figure 3 The document provides a detailed overview of the entire process of initiating a key distribution request to the bank by receiving the current merchant terminal number input by the user or by obtaining the current POS terminal number through a trigger command.

[0076] I. Key Distribution Process: (e.g.) Figure 2 As shown, the specific implementation method for distribution by entering the merchant terminal number is as follows:

[0077] 1. The POS key distribution process involves the coordinated operation of multiple bank intranet systems. First, the collected merchant information needs to be entered into the merchant management system, i.e., step 201 above, receiving merchant information and smart POS terminal information, such as... Figure 2 The diagram shows: "Business personnel perform merchant onboarding in merchant management" and "Business personnel perform terminal information entry in equipment management." In step 202 above, a merchant contract, POS master key, and a unique identifier for the POS terminal can be generated based on the merchant information and smart POS terminal information, such as... Figure 2The "POSp obtains merchant information managed by the merchant and generates a POS master key" shown can also include generating a merchant contract and a unique identifier for the POS terminal. In step 203 above, the POS master key is bound to the unique identifier of the POS terminal, thus establishing the relationship between the POS master key and the unique identifier of the POS terminal; similarly, the merchant contract is bound to the unique identifier of the POS terminal, thus establishing the relationship between the merchant contract and the unique identifier of the POS terminal. Figure 2 The "binding of merchant contracts and terminal TSN numbers in equipment management" shown can also include binding the POS master key to the unique identifier of the POS terminal. After generating the merchant contract and binding various relationships, data needs to be pushed to POSp to generate the POS master key and the relationship between the POS master key and the unique identifier of the POS terminal, and store them for later use. That is, POSp stores the generated POS master key and the correspondence between it and the merchant number (the relationship between the POS master key and the unique identifier of the POS terminal), and the relationship between the merchant contract and the unique identifier of the POS terminal (this relationship can also exist in equipment management, which is not limited in this embodiment of the invention).

[0078] 2. For example Figure 2 As shown, after "sales personnel install the POS application on the POS machine", the sales personnel need to confirm whether the POS application is installed on the smart POS machine, such as... Figure 2 The prompt "Is this a brand new POS machine (without the POS application installed)?" indicates that if the application is not installed, the latest version of the POS application will be installed. Figure 2 The instruction "Install the bank's POS application on the POS using a tool" is shown. If the POS machine was recovered from another merchant and already has the POS application installed, along with a master key, check if the POS application is the latest version and if the master key has been installed. Figure 2 The prompts shown include "Check the POS terminal application version" and "Is it the latest version? Are there any previous certificate keys?" If they exist, then clear the master key. Figure 2 The message "Update version, delete previous certificate and key" appears. Once the device status is confirmed to be correct, the new POS master key can be downloaded.

[0079] As can be seen from the above, combining Figure 2 and Figure 3 As can be seen, in one embodiment, generating a key issuance request based on the unique identifier of the current POS terminal includes:

[0080] When it is detected that the smart POS terminal is a brand new POS terminal and no POS application is installed, after the POS application is installed, the unique identifier of the current POS terminal is obtained to generate a key distribution request.

[0081] As can be seen from the above, combining Figure 2 and Figure 3 As can be seen, in one embodiment, generating a key issuance request based on the unique identifier of the current POS terminal includes:

[0082] When it is detected that the smart POS terminal is a terminal recovered from the merchant and has a POS application installed, if a downloaded master key is detected, and the installed POS application is not the latest version, the POS application version is updated to the latest version, the downloaded master key is deleted, and then the unique identifier of the current POS terminal is obtained to generate a key issuance request.

[0083] In one embodiment, combined Figure 2 and Figure 3 It can be seen that generating a key distribution request based on the unique identifier of the current POS terminal also includes:

[0084] If the system detects that the master key has not been installed, and checks that the installed POS application is the latest version, it obtains the unique identifier of the current POS terminal and generates a key distribution request.

[0085] In practice, the specific implementation method of the above-mentioned detection POS application version can further improve the processing efficiency and accuracy of POS keys.

[0086] 3. Open the POS application on the smart POS machine. A page will appear asking you to enter the merchant terminal number. Enter the merchant terminal number generated in the merchant management section and initiate a key-granting transaction request. Figure 2 The "unique identifier of the POS terminal generated by the merchant management" shown above, which is the unique identifier of the current POS terminal mentioned in step 204 above, is included in the key issuance request and sent by the smart POS terminal. The POS application will send the entered merchant terminal number to the POS terminal, such as... Figure 2 The statement "The POS application sends the entered unique POS terminal identifier to the POSp" indicates that the POSp will find the master key based on the merchant terminal number and verify it (e.g., ...). Figure 2 Once the "POSp verification request" shown in the image is successful, the master key will be sent to the smart POS terminal. Figure 2 The phrase "send the corresponding POS master key to the terminal device" refers to step 204 above, where the current POS master key is obtained based on the unique identifier of the current POS terminal and the relationship between the POS master key and the unique identifier of the POS terminal. Step 205 verifies the unique identifier of the current POS terminal based on the relationship between the merchant contract and the unique identifier of the POS terminal. Step 206, after successful verification, sends the current POS master key to the smart POS terminal. Upon receiving the master key, the POS application writes it into the security chip for storage. Then, by entering the operator number and password, users can initiate authentication, check-in, and transaction processing. Figure 2 The text shows "Complete subsequent steps such as certificate issuance and check-in".

[0087] II. Key distribution process: as follows Figure 3 As shown, the second specific implementation method for automatic distribution by sending the tusn number is as follows:

[0088] 1. The preceding operational procedures are basically the same. The POS key distribution process involves the coordinated operation of multiple bank intranet systems. First, the collected merchant information needs to be entered into the merchant management system, such as... Figure 3 The diagram shows: "Business personnel are handling merchant onboarding in merchant management," and "Business personnel are entering terminal information in device management." After generating the merchant contract, data needs to be pushed to the POS terminal to generate and store the POS master key for later use. Figure 2 The "POSp obtains merchant information from merchant management and generates a POS master key" shown may also include generating a unique identifier for the merchant contract and the POS terminal. The POSp stores the generated POS master key and its correspondence with the merchant ID. Simultaneously, a binding relationship between the merchant and the POS terminal needs to be established in the device management section; that is, the merchant contract needs to correspond one-to-one with a specific terminal, such as... Figure 3 The "binding merchant contracts and terminal TSN numbers in equipment management" shown can also include binding the POS master key to the unique identifier of the POS terminal. By entering the TSN number in the equipment management system, the merchant contract is bound to the terminal equipment, that is, the merchant contract is bound to the unique identifier of the POS terminal. This establishes the relationship between the merchant contract and the unique identifier of the POS terminal. Subsequent requests from terminals with that TSN number will only be allowed to receive the master key.

[0089] 2. For example Figure 3 As shown, after "sales personnel install the POS application on the POS machine", the sales personnel need to confirm whether the POS application is installed on the smart POS machine, such as... Figure 3 The prompt "Is this a brand new POS machine (without the POS application installed)?" indicates that if the application is not installed, the latest version of the POS application will be installed. Figure 3 The instruction "Install the bank's POS application on the POS using a tool" is shown. If the POS machine was recovered from another merchant and already has the POS application installed, along with a master key, check if the POS application is the latest version and if the master key has been installed. Figure 3 The prompts shown include "Check the POS terminal application version" and "Is it the latest version? Are there any previous certificate keys?" If they exist, then clear the master key. Figure 3 The message "Update version, delete previous certificate and key" appears. Once the device status is confirmed to be correct, the new POS master key can be downloaded.

[0090] As can be seen from the above, in one embodiment, the POS key processing method may further include:

[0091] When a key issuance request is initiated to the bank by receiving a trigger instruction and obtaining the current POS terminal number, if the verification of the current POS terminal number passes, the merchant terminal information is retrieved from the merchant contract.

[0092] The smart POS terminal sends a verification code to the merchant terminal based on the retrieved merchant terminal information; the smart POS terminal is also used to receive the verification code entered by the user through the merchant terminal and send the verification code to the bank.

[0093] After the verification code is verified, the current POS master key is sent to the smart POS terminal.

[0094] In practice, Figure 3 In practice, the steps of entering the 19-digit POS number, 8-digit terminal number, and merchant name are omitted. The POS application automatically obtains the terminal device's TSN and sends it to POSp (the message here undergoes the asymmetric encryption / decryption method mentioned in this embodiment). No additional business parameters are required from business personnel or merchants; the backend system matches the TSN without verifying the 19-digit number, terminal number, or merchant name. For additional security considerations, the POS application can add an extra interaction step. After sending the TSN to POSp, POSp checks and confirms it's correct. Then, it sends an SMS verification code to the merchant's mobile phone number (the merchant contract contains relevant information, including the mobile phone number; POSp can link to the contract content via the TSN). Simultaneously, POSp returns a confirmation reply to the POS application, which redirects to a verification code input page. This page displays the merchant's mobile phone number (merchant terminal) entered in the backend system, with the middle portion of the phone number hidden, and includes an input box for the verification code. After receiving the mobile verification code, enter it into the input box and click confirm. The POS terminal then verifies the verification code and simultaneously sends the master key to the smart POS terminal, completing the master key distribution. Therefore, when the unique identifier of the POS terminal is the POS terminal number, using a verification code to enable interaction between the smart POS terminal and the bank can further enhance the security of POS key processing.

[0095] 3. Open the POS application on the smart POS machine, enter the operator number and password. The POS application will obtain the terminal device's TSN through the underlying service SDK, such as... Figure 3 As shown, "Enter the merchant terminal number or TSN generated by merchant management," and then send it to the POSp, as shown. Figure 3The statement "The POS application sends the entered merchant terminal number or TSN to the POSP" indicates that the POSP will use the TSN to find the master key and verify it (e.g., ...). Figure 3 Once the "POSp verification of the request's validity, verification of TSN, etc." shown in the image is successful, the master key will be sent to the smart POS terminal. Figure 3 The text shows "sending the corresponding POS master key to the terminal device." After receiving the master key, the POS application writes it into a security chip for storage. Then, it can initiate transactions such as authentication, check-in, and purchases. Figure 3 The text shows "Complete subsequent steps such as certificate issuance and check-in".

[0096] The following describes a further preferred embodiment of the present invention.

[0097] In one embodiment, the above-mentioned POS key processing method may further include:

[0098] The system receives an encrypted key distribution request from a smart POS terminal. The smart POS terminal is also used to encrypt the key distribution request using a pre-stored public key and send the package name, application name, and version number of the smart POS terminal along with the encrypted key distribution request to the bank.

[0099] The encrypted key distribution request is decrypted using the private key pre-stored at the bank, resulting in the decrypted key distribution request.

[0100] Compare whether the package name, application name, and version number are consistent with the preset parameter settings;

[0101] If they match, proceed with the subsequent steps of issuing the current POS master key based on the decrypted key issuance request.

[0102] In specific implementation, Figure 2 or Figure 3In the "POSp verifies the validity of the request" step: Communication messages between the POS terminal app installed on the smart POS and the POSp are transmitted over the internet using the HTTPS protocol. The entire message undergoes an asymmetric encryption / decryption process. This encryption / decryption differs from the POS transaction message encryption / decryption using the master key and working key; it's an additional encryption / decryption system before being sent to the public network. In other words, all POS messages, regardless of whether they are encrypted with the master key / working key, are encrypted again before being sent to the POSp. The public key for this encryption / decryption is stored on the POS terminal app, and the private key is stored on the POSp. The package name, application name, and version number of the POS terminal app also need to be provided. When the POSp receives the request, it decrypts the ciphertext using the private key and compares the package name, application name, and version number with the parameter settings. Only if they match does the subsequent process continue; otherwise, an error is returned to the front end. POSp then verifies the business parameters, such as the 19-digit POS number, 8-digit terminal number, and merchant name in the sent message, to ensure they match the merchant contract established by the business personnel. It then compares these parameters with the terminal TSN number entered in the equipment management component. Only after all parameters match completely will the corresponding POS master key be sent to the terminal, undergoing the additional encryption process described above. This POSp method for verifying the legitimacy of requests further enhances the security of POS key processing.

[0103] In summary, the beneficial technical effects of the POS key processing method provided by the embodiments of the present invention are as follows:

[0104] 1. The POS key processing method provided in this embodiment of the invention reduces the difficulty for business personnel to conduct POS acquiring business: After receiving a new POS machine, business personnel only need to maintain the relevant merchant contracts, terminal configuration information, etc. in the merchant management backend, and manage the terminal-related information and merchant contracts properly. They can then perform the master key download on the POS cashier, bypassing the hassle of using vendor-installed software for master key download (existing technologies generally use computers and software for download, which encounters many software and hardware problems, is prone to failure, and is difficult to troubleshoot). It also reduces the maintenance difficulty for technical personnel and shortens the operation process.

[0105] 2. The POS key processing method provided in this embodiment of the invention can improve the security of POS key processing: business personnel do not need to access the POS installation master key file, nor is there any situation where it is obtained from the internal network environment to the external network, and the internal approval process is omitted. The generation and distribution of keys are controlled and verified by the program.

[0106] This invention also provides a smart POS terminal for processing POS keys, as described in the following embodiments. Since the principle behind this smart POS terminal's problem-solving is similar to the POS key processing method applied to banks, the implementation of this smart POS terminal can refer to the implementation of the POS key processing method applied to banks; repeated details will not be elaborated further.

[0107] Figure 4 This is a flowchart illustrating the POS key processing method applied to a smart POS terminal in an embodiment of the present invention, as shown below. Figure 4 As shown, the method includes the following steps:

[0108] Step 101: Send the merchant information and smart POS terminal information to the bank; the bank generates a merchant contract, a POS master key, and a unique identifier for the POS terminal based on the merchant information and smart POS terminal information; binds the POS master key with the unique identifier of the POS terminal to obtain the relationship between the POS master key and the unique identifier of the POS terminal; binds the merchant contract with the unique identifier of the POS terminal to obtain the relationship between the merchant contract and the unique identifier of the POS terminal.

[0109] Step 102: Obtain the unique identifier of the current POS terminal;

[0110] Step 103: Generate a key issuance request based on the unique identifier of the current POS terminal;

[0111] Step 104: Send the key distribution request to the bank; the bank is also used to obtain the current POS master key based on the unique identifier of the current POS terminal and the relationship between the POS master key and the unique identifier of the POS terminal; verify the unique identifier of the current POS terminal based on the relationship between the merchant contract and the unique identifier of the POS terminal; after the verification is successful, send the current POS master key to the smart POS terminal.

[0112] In one embodiment, the unique identifier of the POS terminal includes: merchant terminal number or POS terminal number;

[0113] Generate a key distribution request based on the unique identifier of the current POS terminal, including: generating a key distribution request by receiving the current merchant terminal number input by the user, or generating a key distribution request by receiving a trigger instruction to obtain the current POS terminal number.

[0114] In one embodiment, the above-mentioned POS key processing method may further include:

[0115] The system receives a verification code input by the user, obtained through the merchant terminal. The verification code is sent by the bank. The bank is also used to retrieve the merchant terminal information from the merchant contract and send a verification code to the merchant terminal when it receives a trigger instruction to obtain the current POS terminal number and initiates a key issuance request to the bank. If the verification of the current POS terminal number is successful, the bank retrieves the merchant terminal information and sends a verification code to the merchant terminal based on the retrieved merchant terminal information.

[0116] The verification code is sent to the bank; the bank is also used to send the current POS master key to the smart POS terminal after the verification code is verified.

[0117] In one embodiment, generating a key issuance request based on the unique identifier of the current POS terminal includes:

[0118] When the smart POS terminal is detected to be a brand new POS terminal and has not installed a POS application, after the POS application is installed, the unique identifier of the current POS terminal is obtained to generate a key distribution request.

[0119] In one embodiment, generating a key issuance request based on the unique identifier of the current POS terminal includes:

[0120] When it is detected that the smart POS terminal is a terminal recovered from the merchant and has a POS application installed, if a downloaded master key is detected, and the installed POS application is not the latest version, the POS application version is updated to the latest version, the downloaded master key is deleted, and then the unique identifier of the current POS terminal is obtained to generate a key issuance request.

[0121] In one embodiment, generating a key issuance request based on the unique identifier of the current POS terminal further includes:

[0122] If the system detects that the master key has not been installed, and checks that the installed POS application is the latest version, it obtains the unique identifier of the current POS terminal and generates a key distribution request.

[0123] In one embodiment, the above-mentioned POS key processing method may further include:

[0124] The key distribution request is encrypted using a pre-stored public key;

[0125] The package name, application name, and version number of the smart POS terminal are sent to the bank along with the encrypted key distribution request. The bank also uses a private key pre-stored on the bank to decrypt the key distribution request and compares whether the package name, application name, and version number are consistent with the preset parameter settings. If they are consistent, the bank executes the subsequent steps of distributing the current POS master key.

[0126] This invention also provides a bank-side POS key processing method, as described in the following embodiments. Since the principle behind this bank-side POS key processing method is similar to the POS key processing method applied to banks, the implementation of this bank-side POS key processing method can refer to the implementation of the POS key processing method applied to banks; repeated details will not be elaborated further.

[0127] Figure 5 This is a schematic diagram of the bank's structure for processing POS keys in an embodiment of the present invention, as shown below. Figure 5 As shown, the bank terminal includes:

[0128] Receiving unit 021 is used to receive merchant information and smart POS terminal information;

[0129] The first generation unit 022 is used to generate a merchant contract, a POS master key, and a unique identifier for the POS terminal based on the merchant information and the smart POS terminal information.

[0130] The relationship establishment unit 023 is used to bind the POS master key with the unique identifier of the POS terminal to obtain the relationship between the POS master key and the unique identifier of the POS terminal; and to bind the merchant contract with the unique identifier of the POS terminal to obtain the relationship between the merchant contract and the unique identifier of the POS terminal.

[0131] The master key determination unit 024 is used to obtain the current POS master key based on the unique identifier of the current POS terminal and the relationship between the POS master key and the unique identifier of the POS terminal; the unique identifier of the current POS terminal is included in the key issuance request and sent by the smart POS terminal;

[0132] Verification unit 025 is used to verify the unique identifier of the current POS terminal based on the relationship between the merchant contract and the unique identifier of the POS terminal;

[0133] The sending unit 026 is used to send the current POS master key to the smart POS terminal after the verification is successful.

[0134] In one embodiment, the unique identifier of the POS terminal includes: merchant terminal number or POS terminal number; the smart POS terminal is used to initiate a key issuance request to the bank by receiving the current merchant terminal number input by the user, or to obtain the current POS terminal number by receiving a trigger instruction and initiate a key issuance request to the bank.

[0135] In one embodiment, the bank processing the aforementioned POS key further includes:

[0136] The extraction unit is used to retrieve merchant terminal information from the merchant contract when the current POS terminal number is obtained by receiving a trigger instruction and a key issuance request is initiated to the bank. If the verification of the current POS terminal number is successful, the extraction unit is used to retrieve the merchant terminal information from the merchant contract.

[0137] The verification code sending unit is used to send a verification code to the merchant terminal based on the retrieved merchant terminal information; the smart POS terminal is also used to receive the verification code entered by the user through the merchant terminal and send the verification code to the bank.

[0138] The sending unit is specifically used to send the current POS master key to the smart POS terminal after the verification code is passed.

[0139] In one embodiment, the receiving unit is further configured to receive an encrypted key distribution request sent by the smart POS terminal; the smart POS terminal is further configured to encrypt the key distribution request using a pre-stored public key, and send the package name, application name and version number of the smart POS terminal along with the encrypted key distribution request to the bank.

[0140] The bank's processing of the aforementioned POS key also includes:

[0141] The decryption unit is used to decrypt the encrypted key distribution request using the private key pre-stored at the bank, and obtain the decrypted key distribution request.

[0142] The comparison unit is used to compare whether the package name, application name, and version number are consistent with the preset parameter settings;

[0143] The issuing unit is specifically used to: if they match, execute the subsequent steps of issuing the current POS master key according to the decrypted key issuance request.

[0144] This invention also provides a smart POS terminal for processing POS keys, as described in the following embodiments. Since the principle behind this smart POS terminal for processing POS keys is similar to the POS key processing method applied to banks, the implementation of this smart POS terminal for processing POS keys can refer to the implementation of the POS key processing method applied to banks; repeated details will not be elaborated further.

[0145] Figure 6 This is a schematic diagram of the structure of the smart POS terminal for POS key processing in an embodiment of the present invention, as shown below. Figure 6 As shown, the smart POS terminal includes:

[0146] The sending unit 011 is used to send merchant information and smart POS terminal information to the bank; the bank is used to generate a merchant contract, a POS master key, and a unique identifier for the POS terminal based on the merchant information and smart POS terminal information; bind the POS master key with the unique identifier for the POS terminal to obtain the relationship between the POS master key and the unique identifier for the POS terminal; bind the merchant contract with the unique identifier for the POS terminal to obtain the relationship between the merchant contract and the unique identifier for the POS terminal.

[0147] Acquisition unit 012 is used to acquire the unique identifier of the current POS terminal;

[0148] The second generation unit 013 is used to generate a key issuance request based on the unique identifier of the current POS terminal.

[0149] Initiating unit 014 is used to send a key distribution request to the bank; the bank is also used to obtain the current POS master key based on the unique identifier of the current POS terminal and the relationship between the POS master key and the unique identifier of the POS terminal; to verify the unique identifier of the current POS terminal based on the relationship between the merchant contract and the unique identifier of the POS terminal; and after the verification is successful, to send the current POS master key to the smart POS terminal.

[0150] In one embodiment, the unique identifier of the POS terminal includes: merchant terminal number or POS terminal number;

[0151] The second generation unit is specifically used to: generate a key issuance request by receiving the current merchant terminal number input by the user, or generate a key issuance request by receiving a trigger instruction to obtain the current POS terminal number.

[0152] In one embodiment, the smart POS terminal for processing the aforementioned POS key further includes:

[0153] The verification code receiving unit is used to receive the verification code input by the user and obtained through the merchant terminal. The verification code is sent by the bank. The bank is also used to retrieve the merchant terminal information from the merchant contract and send the verification code to the merchant terminal when it obtains the current POS terminal number by receiving the trigger instruction and initiates a key issuance request to the bank. If the verification of the current POS terminal number is successful, the bank will send the verification code to the merchant terminal according to the retrieved merchant terminal information.

[0154] The verification code feedback unit is used to send the verification code to the bank; the bank is also used to send the current POS master key to the smart POS terminal after the verification code is verified.

[0155] In one embodiment, the second generating unit is specifically used for:

[0156] When it is detected that the smart POS terminal is a brand new POS terminal and no POS application is installed, after the POS application is installed, the unique identifier of the current POS terminal is obtained to generate a key distribution request.

[0157] In one embodiment, the second generating unit is specifically used for:

[0158] When it is detected that the smart POS terminal is a terminal recovered from the merchant and has a POS application installed, if a downloaded master key is detected, and the installed POS application is not the latest version, the POS application version is updated to the latest version, the downloaded master key is deleted, and then the unique identifier of the current POS terminal is obtained to generate a key issuance request.

[0159] In one embodiment, the second generating unit is further configured to:

[0160] If the system detects that the master key has not been installed, and checks that the installed POS application is the latest version, it obtains the unique identifier of the current POS terminal and generates a key distribution request.

[0161] In one embodiment, the smart POS terminal for processing the aforementioned POS key further includes:

[0162] An encryption unit is used to encrypt the key delivery request using a pre-stored public key;

[0163] The sending unit is specifically used to send the package name, application name, and version number of the smart POS terminal along with the encrypted key distribution request to the bank. The bank is also used to decrypt the key distribution request using the private key pre-stored on the bank, and compare whether the package name, application name, and version number are consistent with the preset parameter settings. If they are consistent, the bank will proceed with the subsequent steps of distributing the current POS master key.

[0164] This invention also provides a POS key processing system, as described in the following embodiments. Since the principle behind this POS key processing system is similar to that of the POS key processing method applied to banks, the implementation of this POS key processing system can refer to the implementation of the POS key processing method applied to banks; repeated details will not be elaborated further.

[0165] Figure 7 This is a schematic diagram of the POS key processing system in an embodiment of the present invention, as shown below. Figure 7 As shown, the system includes: a bank terminal 02 for processing POS keys, and a smart POS terminal 01 for processing POS keys. Figure 8 This is a schematic diagram of the POS key processing system in another embodiment of the present invention, as shown below. Figure 8As shown, the system includes: a bank terminal 02 for processing POS keys, and a smart POS terminal 01 for processing POS keys. Figure 8 For detailed implementation methods, please refer to the description of the above embodiments.

[0166] This invention also provides a computer device, including a memory, a processor, and a computer program stored in the memory and executable on the processor. When the processor executes the computer program, it implements the above-described POS key processing method.

[0167] This invention also provides a computer-readable storage medium storing a computer program that, when executed by a processor, implements the above-described POS key processing method.

[0168] This invention also provides a computer program product, which includes a computer program that, when executed by a processor, implements the above-described POS key processing method.

[0169] Compared with existing technologies that require distributing POS terminals to merchants and then returning them to the bank for downloading and installing the master key via computer-connected software, which is difficult to maintain and has low efficiency and security in POS key distribution, the POS key processing solution provided in this invention has the following advantages: it eliminates the need to distribute POS terminals to merchants and then return them to the bank for downloading and installing the master key via computer-connected software. Instead, it only requires maintaining the relevant relationships with the bank before distribution, which allows the POS terminals to be distributed to merchants, reducing maintenance difficulty and improving the efficiency and security of POS key distribution.

[0170] Those skilled in the art will understand that embodiments of the present invention can be provided as methods, systems, or computer program products. Therefore, the present invention can take the form of a completely hardware embodiment, a completely software embodiment, or an embodiment combining software and hardware aspects. Furthermore, the present invention can take the form of a computer program product embodied on one or more computer-usable storage media (including, but not limited to, disk storage, CD-ROM, optical storage, etc.) containing computer-usable program code.

[0171] This invention is described with reference to flowchart illustrations and / or block diagrams of methods, apparatus (systems), and computer program products according to embodiments of the invention. It will be understood that each block of the flowchart illustrations and / or block diagrams, and combinations of blocks in the flowchart illustrations and / or block diagrams, can be implemented by computer program instructions. These computer program instructions can be provided to a processor of a general-purpose computer, special-purpose computer, embedded processor, or other programmable data processing apparatus to produce a machine, such that the instructions, which execute via the processor of the computer or other programmable data processing apparatus, generate instructions for implementing the flowchart illustrations and / or block diagrams. Figure 1 One or more processes and / or boxes Figure 1 A device that provides the functions specified in one or more boxes.

[0172] These computer program instructions may also be stored in a computer-readable storage medium that can direct a computer or other programmable data processing device to function in a particular manner, such that the instructions stored in the computer-readable storage medium produce an article of manufacture including instruction means, which are implemented in a process Figure 1 One or more processes and / or boxes Figure 1 The function specified in one or more boxes.

[0173] These computer program instructions may also be loaded onto a computer or other programmable data processing equipment to cause a series of operational steps to be performed on the computer or other programmable equipment to produce a computer-implemented process, thereby providing instructions that execute on the computer or other programmable equipment for implementing the process. Figure 1 One or more processes and / or boxes Figure 1 The steps of the function specified in one or more boxes.

[0174] The specific embodiments described above further illustrate the purpose, technical solution, and beneficial effects of the present invention. It should be understood that the above descriptions are merely specific embodiments of the present invention and are not intended to limit the scope of protection of the present invention. Any modifications, equivalent substitutions, improvements, etc., made within the spirit and principles of the present invention should be included within the scope of protection of the present invention.

Claims

1. A method for processing a POS key, characterized in that, This method is applied to the banking sector and includes: Receive merchant information and smart POS terminal information; Based on the merchant information and smart POS terminal information, generate a merchant contract, a POS master key, and a unique identifier for the POS terminal; Bind the POS master key to the unique identifier of the POS terminal to obtain the relationship between the POS master key and the unique identifier of the POS terminal; bind the merchant contract to the unique identifier of the POS terminal to obtain the relationship between the merchant contract and the unique identifier of the POS terminal. The current POS master key is obtained based on the unique identifier of the current POS terminal and the relationship between the POS master key and the unique identifier of the POS terminal; the unique identifier of the current POS terminal is included in the key issuance request and sent by the smart POS terminal. Verify the unique identifier of the current POS terminal based on the relationship between the merchant contract and the unique identifier of the POS terminal. After successful verification, the current POS master key is sent to the smart POS terminal; The system receives an encrypted key distribution request from a smart POS terminal. The smart POS terminal is further configured to encrypt the key distribution request using a pre-stored public key, and send the smart POS terminal's package name, application name, and version number along with the encrypted key distribution request to the bank. The system then decrypts the encrypted key distribution request using a pre-stored private key at the bank, obtaining a decrypted key distribution request. The system compares the package name, application name, and version number with preset parameter settings. If they match, the system executes the subsequent steps of distributing the current POS master key based on the decrypted key distribution request.

2. The method as described in claim 1, characterized in that, The unique identifier of the POS terminal includes: merchant terminal number or POS terminal number; the smart POS terminal is used to initiate a key issuance request to the bank by receiving the current merchant terminal number input by the user, or to obtain the current POS terminal number by receiving a trigger instruction and initiate a key issuance request to the bank.

3. The method as described in claim 2, characterized in that, Also includes: When a key issuance request is initiated to the bank by receiving a trigger instruction and obtaining the current POS terminal number, if the verification of the current POS terminal number passes, the merchant terminal information is retrieved from the merchant contract. The smart POS terminal sends a verification code to the merchant terminal based on the retrieved merchant terminal information; the smart POS terminal is also used to receive the verification code entered by the user through the merchant terminal and send the verification code to the bank. After the verification code is verified, the current POS master key is sent to the smart POS terminal.

4. A method for processing a POS key, characterized in that, This method is applied to smart POS terminals, and includes: Merchant information and smart POS terminal information are sent to the bank; the bank generates a merchant contract, a POS master key, and a unique identifier for the POS terminal based on the merchant information and smart POS terminal information; the POS master key is bound to the unique identifier of the POS terminal to obtain the relationship between the POS master key and the unique identifier of the POS terminal; the merchant contract is bound to the unique identifier of the POS terminal to obtain the relationship between the merchant contract and the unique identifier of the POS terminal. Obtain the unique identifier of the current POS terminal; Generate a key distribution request based on the unique identifier of the current POS terminal; The key distribution request is sent to the bank; the bank is also used to obtain the current POS master key based on the unique identifier of the current POS terminal and the relationship between the POS master key and the unique identifier of the POS terminal; to verify the unique identifier of the current POS terminal based on the relationship between the merchant contract and the unique identifier of the POS terminal; and after the verification is successful, to send the current POS master key to the smart POS terminal. The key distribution request is encrypted using a pre-stored public key; the package name, application name, and version number of the smart POS terminal are sent to the bank along with the encrypted key distribution request; the bank also uses a pre-stored private key to decrypt the key distribution request, and compares whether the package name, application name, and version number are consistent with the preset parameter settings. If they are consistent, the subsequent steps of distributing the current POS master key are executed.

5. The method as described in claim 4, characterized in that, The unique identifier of the POS terminal includes: merchant terminal number or POS terminal number; Generate a key distribution request based on the unique identifier of the current POS terminal, including: generating a key distribution request by receiving the current merchant terminal number input by the user, or generating a key distribution request by receiving a trigger instruction to obtain the current POS terminal number.

6. The method as described in claim 5, characterized in that, Also includes: The system receives a verification code input by the user, obtained through the merchant terminal. The verification code is sent by the bank. The bank is also used to retrieve the merchant terminal information from the merchant contract and send a verification code to the merchant terminal when it receives a trigger instruction to obtain the current POS terminal number and initiates a key issuance request to the bank. If the verification of the current POS terminal number is successful, the bank retrieves the merchant terminal information and sends a verification code to the merchant terminal based on the retrieved merchant terminal information. The verification code is sent to the bank; the bank is also used to send the current POS master key to the smart POS terminal after the verification code is verified.

7. The method as described in claim 4, characterized in that, Generate a key distribution request based on the unique identifier of the current POS terminal, including: When the smart POS terminal is detected to be a brand new POS terminal and has not installed a POS application, after the POS application is installed, the unique identifier of the current POS terminal is obtained to generate a key distribution request.

8. The method as described in claim 4, characterized in that, Generate a key distribution request based on the unique identifier of the current POS terminal, including: When it is detected that the smart POS terminal is a terminal recovered from the merchant and has a POS application installed, if a downloaded master key is detected, and the installed POS application is not the latest version, the POS application version is updated to the latest version, the downloaded master key is deleted, and then the unique identifier of the current POS terminal is obtained to generate a key issuance request.

9. The method as described in claim 8, characterized in that, The key issuance request is generated based on the unique identifier of the current POS terminal and also includes: If the system detects that the master key has not been installed, and checks that the installed POS application is the latest version, it obtains the unique identifier of the current POS terminal and generates a key distribution request.

10. A bank terminal for processing POS keys, characterized in that, include: The receiving unit is used to receive merchant information and smart POS terminal information; Receive encrypted key distribution requests from smart POS terminals; The smart POS terminal is also used to encrypt the key distribution request using a pre-stored public key, and send the package name, application name and version number of the smart POS terminal along with the encrypted key distribution request to the bank. The first generation unit is used to generate a merchant contract, a POS master key, and a unique identifier for the POS terminal based on the merchant information and the smart POS terminal information. The relationship establishment unit is used to bind the POS master key with the unique identifier of the POS terminal to obtain the relationship between the POS master key and the unique identifier of the POS terminal; By binding the merchant contract with the unique identifier of the POS terminal, the relationship between the merchant contract and the unique identifier of the POS terminal can be obtained; The master key determination unit is used to obtain the current POS master key based on the unique identifier of the current POS terminal and the relationship between the POS master key and the unique identifier of the POS terminal; The unique identifier of the current POS terminal is included in the key issuance request sent by the smart POS terminal; The verification unit is used to verify the unique identifier of the current POS terminal based on the relationship between the merchant contract and the unique identifier of the POS terminal. The sending unit is used to send the current POS master key to the smart POS terminal after the verification is successful; The decryption unit is used to decrypt the encrypted key distribution request using the private key pre-stored at the bank, and obtain the decrypted key distribution request. The comparison unit is used to compare whether the package name, application name, and version number are consistent with the preset parameter settings; The issuing unit is specifically used to: if they match, execute the subsequent steps of issuing the current POS master key according to the decrypted key issuance request.

11. A smart POS terminal for processing POS keys, characterized in that, include: The sending unit is used to send merchant information and smart POS terminal information to the bank. The bank terminal is used to generate a merchant contract, a POS master key, and a unique identifier for the POS terminal based on the merchant information and the smart POS terminal information. Bind the POS master key to the unique identifier of the POS terminal to obtain the relationship between the POS master key and the unique identifier of the POS terminal; By binding the merchant contract with the unique identifier of the POS terminal, the relationship between the merchant contract and the unique identifier of the POS terminal can be obtained; The acquisition unit is used to acquire the unique identifier of the current POS terminal; The second generation unit is used to generate a key issuance request based on the unique identifier of the current POS terminal. The initiating unit is used to send the key distribution request to the bank. The bank terminal is also used to obtain the current POS master key based on the unique identifier of the current POS terminal and the relationship between the POS master key and the unique identifier of the POS terminal; and to verify the unique identifier of the current POS terminal based on the relationship between the merchant contract and the unique identifier of the POS terminal. After successful verification, the current POS master key is sent to the smart POS terminal; An encryption unit is used to encrypt the key delivery request using a pre-stored public key; The sending unit is specifically used to send the package name, application name, and version number of the smart POS terminal along with the encrypted key distribution request to the bank. The bank terminal is also used to decrypt the key issuance request using the private key pre-stored on the bank terminal, and compare whether the package name, application name and version number are consistent with the preset parameter settings. If they are consistent, the bank will execute the subsequent steps of issuing the current POS master key.

12. A POS key processing system, characterized in that, include: The POS key processing bank terminal as described in claim 10, and the POS key processing smart POS terminal as described in claim 11.

13. A computer device comprising a memory, a processor, and a computer program stored in the memory and executable on the processor, characterized in that, When the processor executes the computer program, it implements the method of any one of claims 1 to 9.

14. A computer-readable storage medium, characterized in that, The computer-readable storage medium stores a computer program that, when executed by a processor, implements the method of any one of claims 1 to 9.

15. A computer program product, characterized in that, The computer program product includes a computer program that, when executed by a processor, implements the method of any one of claims 1 to 9.

Citation Information

Patent Citations

  • Method for remotely issuing POS key

    CN106027247A

  • POS terminal master key distribution method and POS terminal master key distribution device

    CN110048831A