Business transaction method and device, storage medium and program product
Through the transaction service gateway, the service provider end is determined and address information is provided, the application island problem caused by the centralized architecture is solved, business transactions across application systems are realized, and user experience is improved.
Patent Information
- Application Number
- CN202510124130.4
- Authority / Receiving Office
- CN · China
- Patent Type
- Applications(China)
- Current Assignee / Owner
- Filing Date
- 2025-01-26
- Publication Date
- 2025-05-09
AI Technical Summary
The application island phenomenon caused by the centralized architecture of existing Internet applications limits data circulation and resource integration between applications, making it difficult to achieve cross-application system transactions.
The transaction service gateway receives the service request message from the service demand side, determines the service provider side based on the required transaction services, and sends the address information of the service provider side to the service demand side, so as to realize business transactions across the application system.
It realizes business transactions across application systems, meets the transaction business needs of the business demand side, and improves user satisfaction and trading experience.
Smart Images

Figure CN119967052A_ABST
Abstract
Description
Technical Field
[0001] The present application relates to the field of blockchain technology, and in particular to a business transaction method, device, storage medium and program product. Background Art
[0002] The client-server "star" architecture is a common network topology that is widely used in various Internet applications. In this architecture, each client connects and exchanges data through a central server, which forwards and processes all data and information.
[0003] Although this structure simplifies network management and maintenance to a certain extent, it also creates the dilemma of "walled garden dominated by centralized platforms". Since the flow and control of data are concentrated on the central server, this leads to barriers and isolation between Internet applications, making it difficult for different applications to share data and collaborate on business, thus forming application islands.
[0004] In the modern Internet economy, transactions across application systems have become a common business requirement. However, the existence of application islands not only limits the data flow and resource integration between applications, but also makes it difficult to achieve transactions across application systems. Therefore, how to achieve transactions across application systems has become a technical problem that needs to be solved urgently. Summary of the invention
[0005] The present application provides a business transaction method, device, storage medium and program product, which can realize business transactions across application systems.
[0006] In order to achieve the above objectives, this application adopts the following technical solutions:
[0007] In a first aspect, the present application provides a business transaction method, which is applied to a transaction service gateway, and the method includes: receiving a business request message sent by a business demand end, the business request message includes a transaction business required by the business demand end. Then, based on the transaction business required by the business demand end, at least one business provider is determined, and the business scope of the business provider includes the transaction business required by the business demand end. Finally, a business response message is sent to the business demand end.
[0008] The service response message includes address information of at least one service provider, so that the service demander can conduct service transactions with the service provider based on the address information.
[0009] Based on the above technical solution, after receiving the service request message sent by the service demand end, based on the transaction service required by the service demand end, at least one service provider whose service scope covers the transaction service required by the service demand end can be determined, and the address information of the service provider can be sent to the service demand end, so that the service demand end can conduct business transactions with the service provider based on the address information of the service provider. In this way, the transaction service requirements of the service demand end can be met, cross-application system business transactions can be realized, and user satisfaction and transaction experience can be improved.
[0010] Optionally, the service response message also includes a service scope of at least one service provider.
[0011] Optionally, the transaction service gateway stores business information of multiple business providers, and the business information at least includes business scope and address information of the business provider. On this basis, the above-mentioned determination of at least one business provider based on the transaction business required by the business demander may specifically include: selecting at least one business provider whose business scope includes the transaction business required by the business demander from the multiple business providers.
[0012] Optionally, before determining at least one service provider based on the transaction service required by the service demand side, it may also include: for each of the multiple service providers, receiving a service registration request message sent by the service provider, and then performing authorization verification on the business scope authorization credential, and storing the business information of the service provider if the business scope authorization credential verification passes.
[0013] The service registration request message includes a service scope authorization certificate and service information of the service provider. The service scope authorization certificate is used to indicate whether the service provided by the service provider is authorized.
[0014] Optionally, the above method may also include: when the business scope authorization credential is verified, publishing the business information of the business provider to the blockchain system.
[0015] Among them, the blockchain system is used to provide business information of the business provider to multiple transaction service gateways.
[0016] Optionally, based on the transaction services required by the business demand side, at least one business provider is determined, which may specifically include: obtaining business information of multiple business providers from the blockchain system, and then selecting at least one business provider whose business scope includes the transaction services required by the business demand side from the multiple business providers.
[0017] The business information at least includes the business scope and address information of the business provider. The blockchain system is used to provide the business information of the business provider to multiple transaction service gateways.
[0018] Optionally, the service request message may also include a transaction service authorization certificate, which is used to indicate whether the transaction service required by the service demand side is authorized. On this basis, based on the transaction service required by the service demand side, at least one service provider is determined, which may specifically include: performing authorization verification on the transaction service authorization certificate, and if the transaction service authorization certificate verification passes, determining at least one service provider based on the transaction service required by the service demand side.
[0019] Optionally, before receiving the service request message sent by the service demand side, the method may further include: receiving a first identity authentication request sent by the service demand side, the first identity authentication request including the identity credentials of the service demand side. Then, the identity credentials of the service demand side are authenticated, and when the identity credentials of the service demand side are authenticated, a second identity authentication request is sent to the service demand side.
[0020] The second identity authentication request includes the identity credentials of the transaction service gateway, so that the business demand end performs identity authentication based on the identity credentials of the transaction service gateway.
[0021] In a second aspect, the present application provides a business transaction method, which is applied to a business demand side, and the method includes: sending a business request message to a transaction service gateway, the business request message includes the transaction business required by the business demand side. Then receiving a business response message sent by the transaction service gateway, the business response message includes the address information of at least one business provider. Finally, based on the address information of at least one business provider, a business transaction is performed with at least one business provider.
[0022] Based on the above technical solution, when the business demand side has a business transaction demand, it can send a business request message to the transaction service gateway, receive the address information of the business provider side sent by the business request, and then conduct business transactions with the business provider side based on the address information of the business provider side. In this way, cross-application system business transactions can be realized, the transaction needs of the business demand side can be met, and user satisfaction and transaction experience can be improved.
[0023] Optionally, the service response message may also include the service scope of at least one service provider. On this basis, the above-mentioned service transaction with at least one service provider based on the address information of at least one service provider may specifically include: determining the target service provider based on the service scope of at least one service provider, and then conducting a service transaction with the target service provider based on the address information of the target service provider.
[0024] Optionally, the sending of the service request message to the transaction service gateway may specifically include: sending a first identity authentication request to the transaction service gateway, the first identity authentication request including the identity credentials of the service demander. Then, receiving a second identity authentication request sent by the transaction service gateway, the second identity authentication request including the identity credentials of the transaction service gateway. Finally, authenticating the identity credentials of the transaction service gateway, and sending the service request message to the transaction service gateway if the identity credentials of the transaction service gateway are authenticated.
[0025] Optionally, the service request message also includes a transaction service authorization certificate, wherein the transaction service authorization certificate can be obtained in the following manner: sending a service registration request message to the service regulator, the service registration request message including the identity certificate of the service demand side and the required transaction service, so that the service regulator authenticates the identity certificate of the service demand side. Then, receiving the transaction service authorization certificate sent by the service regulator, the transaction service authorization certificate is used to indicate whether the transaction service required by the service demand side is authorized.
[0026] In a third aspect, the present application provides a business transaction device, applied to a transaction service gateway, the device comprising:
[0027] The transceiver unit is used to receive a service request message sent by the service demand side. The service request message includes the transaction service required by the service demand side.
[0028] The determination unit is used to determine at least one service provider based on the transaction service required by the service demander. The service scope of the service provider includes the transaction service required by the service demander.
[0029] The transceiver unit is further used to send a service response message to the service demand end. The service response message includes address information of at least one service provider end, so that the service demand end can perform service transactions with the service provider end based on the address information.
[0030] Optionally, the determination unit is further configured to select, from a plurality of service providers, at least one service provider whose service scope includes the transaction service required by the service demander.
[0031] Optionally, the transceiver unit is further configured to receive, for each service provider among the multiple service providers, a service registration request message sent by the service provider.
[0032] Optionally, the determination unit is further configured to perform authorization verification on the transaction service authorization credential, and determine at least one service provider based on the transaction service required by the service demander if the transaction service authorization credential is verified successfully.
[0033] Optionally, the transceiver unit is further used to receive a first identity authentication request sent by the business demand end.
[0034] Optionally, the transceiver unit is further used to send a second identity authentication request to the business demand end when the identity credentials of the business demand end are verified successfully.
[0035] In a fourth aspect, the present application provides a business transaction device, which is applied to a business demand end, and the device includes:
[0036] The transceiver unit is used to send a service request message to the transaction service gateway. The service request message includes the transaction service required by the service demand side.
[0037] The transceiver unit is also used to receive a service response message sent by the transaction service gateway. The service response message includes address information of at least one service provider.
[0038] The processing unit is used to perform a service transaction with at least one service provider based on the address information of at least one service provider.
[0039] Optionally, the processing unit is further configured to determine a target service provider based on a service scope of at least one service provider, and perform a service transaction with the target service provider based on address information of the target service provider.
[0040] Optionally, the transceiver unit is further used to send a first identity authentication request to the transaction service gateway.
[0041] Optionally, the transceiver unit is further used to receive a second identity authentication request sent by the transaction service gateway.
[0042] Optionally, the transceiver unit is further configured to send a service request message to the transaction service gateway when the identity credential of the transaction service gateway is verified successfully.
[0043] Optionally, the transceiver unit is further configured to send a service registration request message to a service regulatory agency.
[0044] Optionally, the transceiver unit is also used to receive a transaction service authorization certificate sent by a business regulatory agency.
[0045] In a fifth aspect, the present application provides a business transaction device, the device comprising: a processor and a communication interface. The communication interface is coupled to the processor, and the processor is used to run a computer program or instruction to implement the business transaction method described in the first aspect and any possible implementation of the first aspect, or the business transaction method described in the second aspect and any possible implementation of the second aspect.
[0046] In a sixth aspect, the present application provides a computer-readable storage medium, which stores instructions. When the instructions are executed on a terminal, the terminal executes a business transaction method as described in the first aspect and any possible implementation of the first aspect, or a business transaction method as described in the second aspect and any possible implementation of the second aspect.
[0047] In the seventh aspect, the present application provides a computer program product, which includes computer instructions. When the computer instructions are run on a computer, the computer executes the business transaction method as described in the first aspect and any possible implementation of the first aspect, or the business transaction method as described in the second aspect and any possible implementation of the second aspect.
[0048] It can be understood that the beneficial effects that can be achieved by the third to seventh aspects provided above can refer to the beneficial effects in any possible design method of the business transaction method described in the first aspect and any possible implementation method of the first aspect, or the beneficial effects in any possible design method of the business transaction method described in the second aspect and any possible implementation method of the second aspect, and will not be repeated here. BRIEF DESCRIPTION OF THE DRAWINGS
[0049] Figure 1 An architecture diagram of a client and server system provided in an embodiment of the present application;
[0050] Figure 2 An architecture diagram of a business transaction system provided in an embodiment of the present application;
[0051] Figure 3 An architecture diagram of another business transaction system provided in an embodiment of the present application;
[0052] Figure 4 A flowchart of a business transaction method provided in an embodiment of the present application;
[0053] Figure 5 A flowchart of another business transaction method provided in an embodiment of the present application;
[0054] Figure 6 An interactive flow chart of a business transaction method provided in an embodiment of the present application;
[0055] Figure 7 A schematic diagram of the structure of a trusted layer of a business transaction system provided in an embodiment of the present application;
[0056] Figure 8 An interactive flow chart of another business transaction method provided in an embodiment of the present application;
[0057] Fig. 9 An interactive flow chart of another business transaction method provided in an embodiment of the present application;
[0058] Fig.10 A schematic diagram of the structure of a business transaction device provided in an embodiment of the present application;
[0059] Fig.11 A schematic diagram of the structure of another business transaction device provided in an embodiment of the present application;
[0060] Fig.12 A schematic diagram of the structure of another business transaction device provided in an embodiment of the present application. DETAILED DESCRIPTION
[0061] The following is a detailed description of a business transaction method, device, storage medium and program product provided by an embodiment of the present application in conjunction with the accompanying drawings.
[0062] The term "and / or" in this article is merely a description of the association relationship of associated objects, indicating that three relationships may exist. For example, A and / or B can mean: A exists alone, A and B exist at the same time, and B exists alone.
[0063] The terms "first" and "second" and the like in the specification and drawings of this application are used to distinguish different objects, or to distinguish different processing of the same object, rather than to describe a specific order of objects.
[0064] In addition, the terms "including" and "having" and any variations thereof mentioned in the description of the present application are intended to cover non-exclusive inclusions. For example, a process, method, system, product or device comprising a series of steps or units is not limited to the listed steps or units, but may optionally include other steps or units that are not listed, or may optionally include other steps or units that are inherent to these processes, methods, products or devices.
[0065] It should be noted that, in the embodiments of the present application, words such as "exemplary" or "for example" are used to indicate examples, illustrations or descriptions. Any embodiment or design described as "exemplary" or "for example" in the embodiments of the present application should not be interpreted as being more preferred or more advantageous than other embodiments or designs. Specifically, the use of words such as "exemplary" or "for example" is intended to present related concepts in a specific way.
[0066] With the continuous development of Internet technology, client-server architecture has become the basis of Internet applications. Among them, the client-server "star" connection architecture, as a common network topology, is widely used in various Internet applications.
[0067] In this architecture, Figure 1 As shown in the figure, each client connects and exchanges data through the server. The core feature of this architecture is server centralization, that is, all data and information are forwarded and processed through the central server. Although this structure simplifies network management and maintenance to a certain extent, it also creates the dilemma of "walled garden dominated by centralized platforms". Since the flow and control of data are concentrated on the central server, this leads to barriers and isolation between Internet applications, making it difficult for different applications to achieve data sharing and business collaboration, thus forming application islands. For example, Figure 1 Since the data flow and control of application island X and application island Y are respectively concentrated on the corresponding central servers, it is difficult for the two applications to be interconnected.
[0068] In the modern Internet economy, transactions across application systems have become a common business requirement. However, the existence of application islands not only limits the data flow and resource integration between applications, but also makes it difficult to achieve transactions across application systems. Therefore, how to achieve transactions across application systems has become a technical problem that needs to be solved urgently.
[0069] In addition to structural limitations, the lack of unified semantic standards and specifications between existing Internet applications makes it difficult for data to be interconnected across different platforms. This semantic island phenomenon limits the flow and use of data and hinders the innovation and development of Internet applications.
[0070] In addition, the "star" connection architecture also relies on third-party intermediaries to establish trusted relationships. In order to ensure the credibility and security of data, current Internet applications usually establish trust relationships between data providers and users through reliable third-party intermediaries. Although this mechanism solves the problem of data access and operation permissions to a certain extent, it also brings new problems. Since the data operations of both data providers and data users rely on third-party intermediaries, this leads to the formation of trust domains with intermediaries as the core. The barriers between these trust domains limit the interoperability of trusted data across intermediaries, further exacerbating the problem of application islands.
[0071] In order to solve the above technical problems, the embodiment of the present application provides a business transaction method, which can determine at least one business provider whose business scope covers the transaction business required by the business demand end based on the transaction business required by the business demand end after receiving the business request message sent by the business demand end, and send the address information of the business provider end to the business demand end, so that the business demand end can conduct business transactions with the business provider end based on the address information of the business provider end. In this way, the transaction business needs of the business demand end can be met, cross-application system business transactions can be realized, and user satisfaction and transaction experience can be improved.
[0072] The implementation of the embodiments of the present application will be described in detail below in conjunction with the accompanying drawings.
[0073] Figure 2 An architecture diagram of a business transaction system provided in an embodiment of the present application, such as Figure 2 As shown, the system architecture includes: a business demand end 201, a transaction service gateway 202 and a business provider end 203.
[0074] The service demand end 201 may be a device that provides voice and / or data connectivity to users, a device with wireless connection function, or other devices connected to a wireless modem. The terminal device may be at least one of a desktop computer, a laptop, a wireless terminal, and a laptop portable computer. In one embodiment, the terminal device has a communication function and can access a wired network or a wireless network.
[0075] The embodiment of the present application does not limit the number of the business demand terminals 201 in the business transaction system, and may include: Figure 2 More or less business demand side 201.
[0076] The transaction service gateway 202 and the service provider 203 may be servers. They may be high-performance servers that provide various services online, independent physical servers, server clusters consisting of multiple physical servers, or at least one of cloud servers that provide basic cloud computing services such as cloud services, cloud databases, cloud computing, cloud functions, cloud storage, network services, cloud communications, middleware services, domain name services, security services, content distribution networks, and big data or artificial intelligence platforms, etc. The embodiments of the present application do not limit this. Of course, the server can also include other functions to provide more comprehensive and diversified services.
[0077] The embodiment of the present application does not limit the number of transaction service gateways 202 and service providers 203 in the business transaction system, and may include: Figure 2 More or fewer transaction service gateways 202 and business providers 203.
[0078] In the embodiment of the present application, the service demand end 201 can send a service request message to the transaction service gateway. The transaction service gateway 202 can provide the service demand end 201 with the address information of the service provider 203, so that the service demand end 201 can perform service transactions with the service provider 203 based on the address information of the service provider 203.
[0079] Optional, such as Figure 2 As shown, the business transaction system provided in the embodiment of the present application may also include a business regulatory agency 204.
[0080] The business supervision agency 204 may be a server of the same type as the transaction service gateway 202 or the business provider 203 described above, and will not be described in detail here.
[0081] In the embodiment of the present application, the business regulatory agency 204 can be used to authenticate the identity credentials of the business demand end 201, the transaction service gateway 202 and the business provider 203.
[0082] The business regulatory agency 204 can also be used to authorize the services provided by the transaction service gateway 202 and the service provider 203 , as well as authorize the transaction services required by the service demander 201 .
[0083] The embodiment of the present application does not limit the number of the business regulatory agencies 204 in the business transaction system, and may include: Figure 2 More business regulators in 204.
[0084] Optional, such as Figure 2 As shown, the business transaction system provided in the embodiment of the present application may also include a decentralized identity (DID) management system 205 and a blockchain system 206 (also referred to as a distributed ledger technology (DLT)).
[0085] The DID identity management system 205 can be used to provide DID identity credentials for the business demand side 201 , the transaction service gateway 202 , the business provider side 203 , and the business regulator 204 .
[0086] The blockchain system 206 can be used to store the business information of multiple business providers 203 to provide the business information of the business providers 203 to the transaction service gateway 202. The blockchain system 206 can also be used to store the identity credentials of the business demand side 201, the transaction service gateway 202, the business provider 203 and the business regulator 204, so that the business demand side 201, the transaction service gateway 202, the business provider 203 and the business regulator 204 can perform identity authentication.
[0087] The DID identity management system and the 205 blockchain system 206 can be deployed on the same server or on separate servers, without limitation.
[0088] In one example, Figure 3 As shown, the above-mentioned business transaction system may include a client layer, a network infrastructure layer, a trusted layer and a server layer.
[0089] Among them, the business demand end 201 can be deployed at the client layer, the transaction service gateway 202 can be deployed at the network infrastructure layer, the business regulatory agency 204, the DID identity management system 205 and the blockchain system 206 can be deployed at the trusted layer, and the business provider end 203 can be deployed at the server layer.
[0090] Optionally, the transaction service gateway 202 may also be deployed at the server layer, which is not limited in the embodiments of the present application.
[0091] It is understandable that the application scenarios of the embodiments of the present disclosure are not limited. The system architecture and business scenarios described in the embodiments of the present disclosure are intended to more clearly illustrate the technical solutions of the embodiments of the present disclosure, and do not constitute a limitation on the technical solutions provided by the embodiments of the present disclosure. It is known to those skilled in the art that with the evolution of network architecture and the emergence of new business scenarios, the technical solutions provided by the embodiments of the present disclosure are also applicable to similar technical problems.
[0092] Figure 4 A flowchart of a business transaction method provided in an embodiment of the present application is shown as follows: Figure 4 As shown, this method is Figure 2 The transaction service gateway shown is executed, and the method includes:
[0093] S401: Receive a service request message sent by a service demand end.
[0094] The service request message may include the transaction service required by the service demand side.
[0095] Optionally, the transaction services required by the business demand side may include online commodity transactions, travel product transactions, etc., which are not limited in this embodiment of the present application.
[0096] Specifically, when a user has a transaction demand, the user can send a service request message to the transaction service gateway through the service demand end.
[0097] S402: Determine at least one service provider based on the transaction service required by the service demander.
[0098] Among them, the business scope of the business provider includes the transaction business required by the business demander.
[0099] Specifically, the service request message may also include a transaction service authorization certificate, which may be used to indicate whether the transaction service required by the service demand side is authorized. On this basis, the transaction service gateway may perform authorization verification on the transaction service authorization certificate of the service demand side, and determine at least one service provider based on the transaction service required by the service demand side if the transaction service authorization certificate is verified.
[0100] Optionally, the transaction business authorization certificate of the above business demand side can be obtained by referring to the following Figure 8 S801-S804 in the description will not be described in detail here.
[0101] S403: Send a service response message to the service demand end.
[0102] The service response message includes address information of at least one service provider, so that the service demander can conduct service transactions with the service provider based on the address information.
[0103] Optionally, the service response message may also include the service scope, name, type, code, etc. of at least one service provider, which is not limited in this embodiment of the present application.
[0104] Specifically, after determining at least one service provider, the transaction service gateway may send a service response message to the service demander, so that the service demander may conduct a service transaction with the at least one service provider based on the address information of the at least one service provider.
[0105] Based on the above technical solution, the present application can determine at least one service provider whose service scope covers the service provider's service required by the service demand side, based on the service required by the service demand side, and send the service provider's address information to the service demand side, so that the service demand side can conduct service transactions with the service provider based on the service provider's address information. In this way, the service demand side's service transaction needs can be met, cross-application system service transactions can be realized, and user satisfaction and transaction experience can be improved.
[0106] In some embodiments, in the above S402, based on the transaction service required by the service demander, at least one service provider is determined, which may specifically include the following implementation methods:
[0107] In one possible implementation, the transaction service gateway stores service information of multiple service providers, and the service information at least includes the service scope and address information of the service provider. On this basis, the transaction service gateway can select at least one service provider whose service scope includes the transaction service required by the service demander from the multiple service providers based on the service scopes of the multiple service providers.
[0108] For example, the transaction business required by the business demand side is to purchase grain and oil, the business scope of business provider A and business provider B is to sell grain and oil, and the business scope of business provider C is to sell clothing. On this basis, business provider A and business provider B can meet the transaction business required by the business demand side.
[0109] In another possible implementation, the blockchain system stores business information of multiple business providers, and the business information at least includes the business scope and address information of the business provider. The blockchain system can be connected to multiple transaction service gateways, and the blockchain system can provide business information of the business provider to multiple transaction service gateways.
[0110] On this basis, the transaction service gateway can obtain business information of multiple business providers from the blockchain system, and then select at least one business provider whose business scope includes the transaction business required by the business demand side from the multiple business providers.
[0111] In another possible implementation, the transaction service gateway may be connected to multiple service providers. On this basis, the transaction service gateway may send a service information acquisition request to the multiple service providers to receive service information sent by each of the multiple service providers. Afterwards, the transaction service gateway may select at least one service provider from the multiple service providers whose service scope includes the transaction service required by the service demander.
[0112] Based on the above technical solution, the transaction service gateway can read the business information of the service provider stored internally, so that the business information can be quickly obtained to meet the timeliness requirements of the transaction business. Alternatively, the transaction service gateway can obtain the business information of the service provider through the blockchain system, so that the authenticity and reliability of the business information of the service provider can be ensured by using the characteristics of the blockchain such as immutability, traceability, and distributed storage. Alternatively, the transaction service gateway can directly obtain the corresponding business information through the service provider connected to the transaction service gateway, so as to ensure the real-time and pertinence of the business information.
[0113] In some embodiments, Figure 5 As shown, before executing the above S402, the following steps may also be included:
[0114] S501: Receive a service registration request message sent by each of a plurality of service providers.
[0115] The service registration request message may include a service scope authorization certificate and service information of the service provider. The service scope authorization certificate may be used to indicate whether the service provided by the service provider is authorized.
[0116] Optionally, the service registration request message may also include the service scope, address information, name, type, code, etc. of the service provider, which is not limited in this embodiment of the present application.
[0117] Specifically, each service provider may send a service registration request message to the transaction service gateway. Correspondingly, the transaction service gateway may receive the service registration request message sent by each service provider.
[0118] Optionally, the business scope authorization certificate of the above-mentioned business provider can be obtained by referring to the following Figure 8 S801-S804 in the description will not be described in detail here.
[0119] S502: Verify the authorization of the business scope authorization certificate.
[0120] Specifically, the service registration request message may also include the identity certificate of the service provider. The transaction service gateway may verify the service scope authorization certificate through the identity certificate of the service provider to obtain a verification result.
[0121] S503: When the business scope authorization credential is verified, the business information of the business provider is stored.
[0122] In one possible implementation, when the verification result indicates that the business scope authorization credential verification is passed, the transaction service gateway may store the business information of the business provider and establish a communication connection with the business provider.
[0123] In another possible implementation method, when the verification result indicates that the business scope authorization credential verification is passed, the transaction service gateway can publish the business information of the business provider to the blockchain system, so that other transaction service gateways can obtain the business information of the business provider through the blockchain system.
[0124] Based on the above technical solution, the transaction service gateway can verify the business scope authorization credentials of the business provider to ensure that the services provided by the business provider accessing the business transaction system are legally authorized, enhance the security of the entire business transaction system, and ensure the legality and compliance of subsequent business transactions.
[0125] In some embodiments, before receiving the service request message sent by the business demand side (i.e., S401), the transaction service gateway may also receive a first identity authentication request sent by the business demand side, and the first identity authentication request includes the identity credentials of the business demand side. Afterwards, the transaction service gateway may authenticate the identity credentials of the business demand side, and if the identity credentials of the business demand side are successfully verified, send a second identity authentication request to the business demand side, and the second identity authentication request includes the identity credentials of the transaction service gateway. Correspondingly, the business demand side may authenticate the identity credentials of the transaction server gateway, and if the identity credentials of the transaction server gateway are successfully verified, send a service request message to the transaction service gateway.
[0126] Optionally, the identity credentials of the transaction service gateway and the business demand end may be obtained in the following manner: Figure 6 S601-S604 in are not described in detail here.
[0127] Based on the above technical solution, the present application can realize two-way identity authentication between the business demand side and the transaction service gateway, thereby ensuring the security of subsequent transaction business.
[0128] In some embodiments, before the above-mentioned transaction service gateway receives the service registration request message (i.e., S501) sent by the service provider, two-way identity authentication may also be performed between the transaction service gateway and the service provider, and if the two-way identity authentication is passed, the service provider may send a service registration request message to the transaction service gateway. The specific method may refer to the two-way identity authentication process between the above-mentioned transaction service gateway and the service demander, which will not be elaborated here.
[0129] The above introduces the business transaction method provided by the embodiment of the present application from the perspective of the transaction service gateway. The following will take the interaction between the business demand end, the transaction service gateway, the business provider end, the business regulatory agency, the blockchain system and the DID identity management system as an example to introduce the business transaction method provided by the embodiment of the present application.
[0130] In some embodiments, the business demand side, transaction service gateway, business provider side, and business regulatory agency can send an identity registration request to the DID identity management system to obtain the corresponding identity credentials.
[0131] In some embodiments, Figure 6 As shown, the business demand side can obtain identity credentials through the following S601-S604.
[0132] S601. The business demand side sends an identity registration request to the DID identity management system.
[0133] Specifically, the identity registration request may carry a DID document, which may include but is not limited to the following information:
[0134] 1. The name of the business demand side, that is, the name registered by the business demand side with the relevant organization, such as the organization name on the business license or the name on the ID card.
[0135] 2. The type of business demand side, such as legal entities, individuals, etc.
[0136] 3. The code of the business demand side. If it is a legal entity, the code is the business license code; if it is an individual, the code is the resident ID number.
[0137] 4. The name of the issuing agency of the business demand side code, that is, the name of the issuing agency of the business demand side code registered with the relevant agency.
[0138] 5. The code of the issuing organization of the business demand side code.
[0139] 6. Public key of the business demand side. The business demand side can generate a public key through relevant software.
[0140] 7. The business scope of the business demand side, that is, the transaction business scope required by the business demand side.
[0141] Optional, such as Figure 7 As shown, the above-mentioned DID document can be determined by the industry supervisory unit (also known as the super administrator), and the DID document can be stored in the DID identity management system.
[0142] S602. The DID identity management system verifies the DID document information of the business demand side.
[0143] S603: When the DID document information is verified, the DID identity management system sends the identity credentials to the business demand side.
[0144] Among them, identity credentials may include but are not limited to DID identifier (DID_TA), identity attributes (such as individual or organization), etc.
[0145] S604: When the DID document information is verified, the DID identity management system sends the identity authentication credential to the blockchain system.
[0146] The identity authentication credentials can be used to verify the identity credentials of the business demand side. The identity authentication credentials (ID_C_TA) can include but are not limited to the DID identifier, the public key of the business demand side, etc.
[0147] In some embodiments, the method for the transaction service gateway to obtain identity credentials can refer to the method for the business demand end to obtain identity credentials in the above S601-S604. Exemplarily, the transaction service gateway can send an identity registration request to the DID identity management system. Correspondingly, after the DID identity management system receives the identity registration request from the transaction service gateway, it can verify the DID document information of the transaction service gateway. If the verification is successful, the DID identity management system sends the identity credentials to the transaction service gateway and sends the identity authentication credentials (ID_C_TG) of the transaction service gateway to the blockchain system.
[0148] Among them, the information contained in the DID document carried by the identity registration request of the transaction service gateway can refer to the DID document information of the above-mentioned business demand side, and is not limited here.
[0149] The identity credentials of the transaction service gateway may include but are not limited to the DID identifier (DID_TG), identity attributes (such as individual or structure). The identity authentication credentials of the transaction service gateway may include but are not limited to the DID identifier (DID_TG), the public key of the transaction service gateway, etc.
[0150] In some embodiments, the method for the service provider to obtain identity credentials may refer to the method for the service demander to obtain identity credentials in the above S601-S604.
[0151] Exemplarily, the service provider can send an identity registration request to the DID identity management system. Accordingly, after receiving the identity registration request from the service provider, the DID identity management system can verify the DID document information of the service provider. If the verification is successful, the DID identity management system sends the identity credential to the service provider and sends the identity authentication credential (ID_C_TE) of the service provider to the blockchain system.
[0152] Among them, the information contained in the DID document carried by the identity registration request of the service provider can refer to the DID document information of the above-mentioned service demander, and is not limited here.
[0153] The identity credentials of the service provider may include but are not limited to the DID identifier DID_TE, identity attributes (such as individual or structure). The identity credentials of the service provider may include but are not limited to the DID identifier DID_TE, the public key of the transaction service gateway, etc.
[0154] In some embodiments, the method for the business regulatory agency to obtain identity credentials may refer to the method for the business demand side to obtain identity credentials in the above S601-S604.
[0155] Exemplarily, the business regulator can send an identity registration request to the DID identity management system. Accordingly, after receiving the identity registration request from the business regulator, the DID identity management system can verify the DID document information of the business regulator. If the verification is successful, the DID identity management system sends the identity credential to the business regulator and sends the business regulator's identity authentication credential (ID_C_A) to the blockchain system.
[0156] Among them, the information contained in the DID document carried by the identity registration request of the business regulatory agency can refer to the DID document information of the above-mentioned business demand side, and is not limited here.
[0157] The identity credentials of the business regulator may include, but are not limited to, a DID identifier DID_TE, and identity attributes (such as an individual or a structure).
[0158] The identity credentials of the business regulator may include but are not limited to the DID identifier DID_TE, the public key of the transaction service gateway, etc.
[0159] In some embodiments, the service demand side can send a service registration request to the service regulator to obtain a transaction service authorization certificate. Similarly, the transaction service gateway and the service provider side can send a service registration request to the service regulator to obtain a corresponding service scope authorization certificate.
[0160] In some embodiments, Figure 8 As shown, the transaction service gateway can obtain the business scope authorization certificate through the following S801-S804.
[0161] S801. The transaction service gateway sends a business registration request to the business regulatory agency.
[0162] Among them, the business registration request may include but is not limited to the identity credentials of the transaction service gateway (such as the DID identifier DID_TG), the private key of the transaction service gateway, the DID document information of the transaction service gateway (such as the name, type, code, etc. of the transaction service gateway), the business scope and the address information of the transaction service gateway.
[0163] The private key of the above-mentioned transaction service gateway can be generated through relevant software and form a key pair with the public key of the transaction service gateway.
[0164] S802. The business regulatory agency obtains the public key of the transaction service gateway from the blockchain system through the identity certificate of the transaction service gateway.
[0165] Exemplarily, the business regulator may obtain the public key of the transaction service gateway from the blockchain system via the DID identifier of the transaction service gateway.
[0166] S803. The business regulatory agency verifies the private key of the transaction service gateway through the public key of the transaction service gateway.
[0167] S804: When the private key of the transaction service gateway is verified, the business regulatory agency sends a business scope authorization certificate to the transaction service gateway.
[0168] Among them, the business scope authorization certificate may include but is not limited to the business regulator's authorization signature (A_Sign_TG), the business regulator's DID identifier (DID_A), and the business regulator's identity authentication certificate (ID_C_A).
[0169] In some embodiments, the method for the service provider to obtain the service scope authorization certificate can refer to the method for the transaction service gateway to obtain the service scope authorization certificate in S801-S804 above.
[0170] Exemplarily, the service provider may send a service registration request to the service regulatory agency, where the service registration request may include the service provider's DID identifier DID_TE, the service provider's DID document information, the service provider's private key, service scope and address information, etc.
[0171] Accordingly, after receiving the service registration request from the service provider, the service regulator can obtain the public key of the service provider from the blockchain system through the DID identifier DID_TE of the service provider, and verify the private key of the service provider through the public key of the service provider, and accept the service scope of the service provider if the verification is successful, and send the service scope authorization certificate and the address information of the transaction service gateway to the service provider. Among them, the service scope authorization certificate may include but is not limited to the authorization signature of the service regulator (A_Sign_TE), the DID identifier of the service regulator (DID_A), and the identity verification certificate of the service regulator (ID_C_A).
[0172] In some embodiments, the method for the business demand side to obtain the transaction service authorization certificate can refer to the method for the transaction service gateway to obtain the business scope authorization certificate in the above S801-S804.
[0173] Exemplarily, the business demand side may send a business registration request to the business regulatory agency, where the business registration request may include the DID identifier DID_TA of the business demand side, the DID document information of the business demand side, the private key of the business demand side, the transaction business scope (such as purchasing grain and oil) and address information, etc.
[0174] Accordingly, after receiving the business registration request from the business demand side, the business regulator can obtain the public key of the business demand side from the blockchain system through the DID identifier DID_TA of the business demand side, and verify the private key of the business demand side through the public key of the business demand side, and accept the transaction business scope of the business demand side if the verification is passed, and send the transaction business authorization certificate and the address information of the transaction service gateway to the business demand side. Among them, the transaction business authorization certificate may include but is not limited to the authorization signature of the business regulator (A_Sign_TA), the DID identifier of the business regulator (DID_A) and the identity verification certificate of the business regulator (ID_C_A).
[0175] The following will combine the above Figure 6 and Figure 8 The method of the present application is described in detail by taking the interaction between the business demand side, the transaction service gateway, the business provider side, the blockchain system and the DID identity management system as an example. Fig. 9 As shown, the method includes:
[0176] S901. The business demand end sends a first identity authentication request to the transaction service gateway.
[0177] S902. The transaction service gateway authenticates the identity credentials of the business demand side.
[0178] S903: When the identity credential of the business demand side is verified successfully, the transaction service gateway sends a second identity authentication request to the business demand side.
[0179] S904: The business demand side authenticates the identity credentials of the transaction service gateway.
[0180] S905: When the identity credential verification of the transaction service gateway is successful, the business demand end sends a business request message to the transaction service gateway.
[0181] S906. The transaction service gateway obtains the public key of the business demand side from the blockchain system through the identity certificate of the business demand side.
[0182] S907. The transaction service gateway verifies the transaction service authorization certificate of the business demand side through the public key of the business demand side.
[0183] For example, the transaction service gateway can use the public key of the business demand side to verify the business regulator's authorization signature and the business regulator's identity verification certificate in the transaction business authorization certificate.
[0184] S908: When the transaction service authorization credential is verified, the transaction service gateway determines at least one service provider based on the transaction service required by the service demander.
[0185] S909. The transaction service gateway sends a business response message to the business demand end.
[0186] The service response message may include but is not limited to address information, name, type, code, identity certificate and service scope authorization certificate of at least one service provider.
[0187] S910. The service demand end determines a target service provider end based on the service scope of at least one service provider end.
[0188] S911. The service demander sends a third identity authentication request to the target service provider based on the address information of the target service provider.
[0189] S912. The target service provider authenticates the identity credentials of the service demander.
[0190] S913: When the identity credential of the service demander is verified successfully, the target service provider sends a fourth identity authentication request to the service demander.
[0191] S914. The business demander authenticates the identity credentials of the target business provider.
[0192] S915: When the identity credential of the target service provider is verified, the service demander conducts a service transaction with the target service provider based on the address information of the target service provider.
[0193] Optionally, the above-mentioned two-way identity authentication process between the transaction service gateway and the business demand side, and between the business provider side and the business demand side can also be a one-way identity authentication process. For example, when the transaction service gateway verifies that the identity credentials of the business demand side are passed, it can directly send a business response message to the business demand side. For another example, when the target business provider verifies that the identity credentials of the business demand side are passed, it can directly conduct business transactions with the business demand side. There is no limitation on this.
[0194] The above mainly introduces the scheme of the embodiment of the present disclosure from the perspective of the method. It can be understood that in order to realize the above functions, the business transaction device includes at least one of the hardware structure and software modules corresponding to the execution of each function. Those skilled in the art should easily realize that, in combination with the units and algorithm steps of each example described in the embodiment disclosed in this article, the embodiment of the present disclosure can be implemented in the form of hardware or a combination of hardware and computer software. Whether a function is executed in the form of hardware or computer software driving hardware depends on the specific application and design constraints of the technical solution. Professional and technical personnel can use different methods to implement the described functions for each specific application, but such implementation should not be considered to exceed the scope of the embodiment of the present disclosure.
[0195] The disclosed embodiment can divide the business transaction device into functional modules according to the above method embodiment. For example, each functional module can be divided corresponding to each function, or two or more functions can be integrated into one functional module. The above integrated module can be implemented in the form of hardware or software. It should be noted that the division of modules in the disclosed embodiment is schematic and is only a logical function division. There may be other division methods in actual implementation. The following is an example of dividing each functional module corresponding to each function.
[0196] Fig.10 A schematic diagram of the structure of a business transaction device provided in an embodiment of the present application is applied to a transaction service gateway, such as Fig.10 As shown, the device comprises:
[0197] The transceiver unit 1001 is used to receive a service request message sent by a service demand side. The service request message includes the transaction service required by the service demand side.
[0198] The determining unit 1002 is configured to determine at least one service provider based on the transaction service required by the service demander. The service scope of the service provider includes the transaction service required by the service demander.
[0199] The transceiver unit 1001 is further configured to send a service response message to the service demand end. The service response message includes address information of at least one service provider end, so that the service demand end can perform service transactions with the service provider end based on the address information.
[0200] Optionally, the determination unit 1002 is further configured to select, from a plurality of service providers, at least one service provider whose service scope includes the transaction service required by the service demander.
[0201] Optionally, the transceiver unit 1001 is further configured to receive, for each service provider among the multiple service providers, a service registration request message sent by the service provider.
[0202] Optionally, the determination unit 1002 is further configured to perform authorization verification on the transaction service authorization credential, and determine at least one service provider based on the transaction service required by the service demander if the transaction service authorization credential is verified successfully.
[0203] Optionally, the transceiver unit 1001 is further used to receive a first identity authentication request sent by the business demand end.
[0204] Optionally, the transceiver unit 1001 is further used to send a second identity authentication request to the business demand end when the identity credential of the business demand end is verified successfully.
[0205] Fig.11 A schematic diagram of a business transaction device provided in an embodiment of the present application is applied to a business demand side, such as Fig.11 As shown, the device comprises:
[0206] The transceiver unit 1101 is used to send a service request message to the transaction service gateway. The service request message includes the transaction service required by the service demand side.
[0207] The transceiver unit 1101 is further configured to receive a service response message sent by the transaction service gateway. The service response message includes address information of at least one service provider.
[0208] The processing unit 1102 is configured to perform a service transaction with at least one service provider based on the address information of the at least one service provider.
[0209] Optionally, the processing unit 1102 is further configured to determine a target service provider based on a service scope of at least one service provider, and perform a service transaction with the target service provider based on address information of the target service provider.
[0210] Optionally, the transceiver unit 1101 is further configured to send a first identity authentication request to the transaction service gateway.
[0211] Optionally, the transceiver unit 1101 is further configured to receive a second identity authentication request sent by the transaction service gateway.
[0212] Optionally, the transceiver unit 1101 is further configured to send a service request message to the transaction service gateway when the identity credential of the transaction service gateway is verified successfully.
[0213] Optionally, the transceiver unit 1101 is further configured to send a service registration request message to a service regulatory agency.
[0214] Optionally, the transceiver unit 1101 is also used to receive a transaction service authorization certificate sent by a business regulatory agency.
[0215] Fig.12 Another possible structural diagram of the business transaction device involved in the above embodiment is shown. The business transaction device includes: a processor 1201 and a communication interface 1202. The processor 1201 is used to control and manage the actions of the business transaction device, and the communication interface 1202 is used to support the communication between the business transaction device and other network entities. The business transaction device may also include a memory 1203 and a bus 1204, and the memory 1203 is used to store program codes and data of the business transaction device.
[0216] Among them, the memory 1203 can be a memory in a business transaction device, etc. The memory may include a volatile memory, such as a random access memory; the memory may also include a non-volatile memory, such as a read-only memory, a flash memory, a hard disk or a solid-state drive; the memory may also include a combination of the above types of memory.
[0217] The processor 1201 may be a processor that implements or executes various exemplary logic blocks, modules, and circuits described in conjunction with the disclosure of the present application. The processor may be a central processing unit, a general-purpose processor, a digital signal processor, an application-specific integrated circuit, a field programmable gate array, or other programmable logic devices, transistor logic devices, hardware components, or any combination thereof. It may implement or execute various exemplary logic blocks, modules, and circuits described in conjunction with the disclosure of the present application. The processor may also be a combination that implements computing functions, such as a combination of one or more microprocessors, a combination of a DSP and a microprocessor, and the like.
[0218] The bus 1204 may be an extended industry standard architecture (EISA) bus, etc. The bus 1204 may be divided into an address bus, a data bus, a control bus, etc. For ease of representation, Fig.12 Only one thick line is used in the diagram, but this does not mean that there is only one bus or only one type of bus.
[0219] Through the description of the above implementation methods, technicians in the relevant field can clearly understand that for the convenience and simplicity of description, only the division of the above functional modules is used as an example. In actual applications, the above functions can be assigned to different functional modules as needed, that is, the internal structure of the device is divided into different functional modules to complete all or part of the functions described above. The specific working process of the system, device and unit described above can refer to the corresponding process in the aforementioned method embodiment, and will not be repeated here.
[0220] An embodiment of the present application provides a computer program product comprising instructions, and when the computer program product is run on a computer, the computer is enabled to execute the business transaction method in the above method embodiment.
[0221] An embodiment of the present application also provides a computer-readable storage medium, in which instructions are stored. When the instructions are executed on a computer, the computer executes the business transaction method in the method flow shown in the above method embodiment.
[0222] Among them, the computer-readable storage medium can be, for example, but not limited to, an electrical, magnetic, optical, electromagnetic, infrared, or semiconductor system, device or device, or any combination of the above. More specific examples of computer-readable storage media (a non-exhaustive list) include: an electrical connection with one or more wires, a portable computer disk, a hard disk, a random access memory (RAM), a read-only memory (ROM), an erasable programmable read only memory (EPROM), a register, a hard disk, an optical fiber, a portable compact disk read-only memory (CD-ROM), an optical storage device, a magnetic storage device, or any suitable combination of the above, or any other form of computer-readable storage medium known in the art. An exemplary storage medium is coupled to a processor so that the processor can read information from the storage medium and write information to the storage medium. Of course, the storage medium can also be a component of the processor. The processor and the storage medium can be located in an application specific integrated circuit (ASIC). In the embodiments of the present application, a computer-readable storage medium may be any tangible medium that contains or stores a program, which may be used by or in conjunction with an instruction execution system, apparatus, or device.
[0223] An embodiment of the present invention provides a computer program product including instructions, which, when executed on a computer, enables the computer to execute the business transaction method described in the embodiment of the present application.
[0224] Since the business transaction device, computer-readable storage medium, and computer program product in the embodiments of the present invention can be applied to the above method, the technical effects that can be obtained can also refer to the above method embodiments, and the embodiments of the present invention will not be repeated here.
[0225] In the several embodiments provided in the present application, it should be understood that the disclosed systems, devices and methods can be implemented in other ways. For example, the device embodiments described above are only schematic. For example, the division of the units is only a logical function division. There may be other division methods in actual implementation, such as multiple units or components can be combined or integrated into another system, or some features can be ignored or not executed. Another point is that the mutual coupling or direct coupling or communication connection shown or discussed can be through some interfaces, indirect coupling or communication connection of devices or units, which can be electrical, mechanical or other forms.
[0226] The units described as separate components may or may not be physically separated, and the components shown as units may or may not be physical units, that is, they may be located in one place or distributed on multiple network units. Some or all of the units may be selected according to actual needs to achieve the purpose of the solution of this embodiment.
[0227] In addition, each functional unit in each embodiment of the present application may be integrated into one processing unit, or each unit may exist physically separately, or two or more units may be integrated into one unit.
[0228] The above are only specific implementations of the present application, but the protection scope of the present application is not limited thereto. Any changes or substitutions within the technical scope disclosed in the present application should be included in the protection scope of the present application. Therefore, the protection scope of the present application should be based on the protection scope of the claims.
Claims
1. A business transaction method, characterized in that: Applied to a transaction service gateway, the method comprises: Receiving a service request message sent by a service demand side; the service request message includes the transaction service required by the service demand side; Based on the transaction service required by the service demand side, determining at least one service provider; the service scope of the service provider includes the transaction service required by the service demand side; Sending a service response message to the service demand end; the service response message includes the address information of the at least one service provider end, so that the service demand end conducts a service transaction with the service provider end based on the address information.
2. The method according to claim 1, characterized in that: The service response message also includes the service scope of the at least one service provider.
3. The method according to claim 1, characterized in that The transaction service gateway stores business information of multiple business providers; the business information at least includes the business scope and address information of the business provider; The determining at least one service provider based on the transaction service required by the service demander includes: At least one service provider whose service scope includes the transaction service required by the service demander is selected from the multiple service providers.
4. The method according to claim 3, characterized in that Before determining at least one service provider based on the transaction service required by the service demander, the method further includes: For each of the multiple service providers, receiving a service registration request message sent by the service provider; the service registration request message includes a service scope authorization certificate of the service provider and the service information; the service scope authorization certificate is used to indicate whether the service provided by the service provider is authorized; Performing authorization verification on the authorization certificate of the business scope; When the service scope authorization credential is verified, the service information of the service provider is stored.
5. The method according to claim 4, characterized in that The method further comprises: When the business scope authorization credential is verified, the business information of the business provider is published to the blockchain system; the blockchain system is used to provide the business information of the business provider to multiple transaction service gateways.
6. The method according to claim 1, characterized in that The determining at least one service provider based on the transaction service required by the service demander includes: Acquire business information of multiple business providers from the blockchain system; the business information includes at least the business scope and address information of the business provider; the blockchain system is used to provide the business information of the business provider to multiple transaction service gateways; At least one service provider whose service scope includes the transaction service required by the service demander is selected from the multiple service providers.
7. The method according to claim 1, characterized in that The service request message also includes a transaction service authorization certificate; the transaction service authorization certificate is used to indicate whether the transaction service required by the service demand end is authorized; The determining at least one service provider based on the transaction service required by the service demander includes: Performing authorization verification on the transaction business authorization certificate; When the transaction service authorization credential is verified, at least one service provider is determined based on the transaction service required by the service demander.
8. The method according to claim 1, characterized in that Before receiving the service request message sent by the service demand end, the method further includes: Receive a first identity authentication request sent by the business demand end; the first identity authentication request includes the identity credential of the business demand end; Authenticate the identity credentials of the business demand side; When the identity credentials of the business demand end are verified successfully, a second identity authentication request is sent to the business demand end; the second identity authentication request includes the identity credentials of the transaction service gateway, so that the business demand end performs identity authentication based on the identity credentials of the transaction server gateway.
9. A business transaction method, characterized in that: Applied to the business demand side, the method includes: Sending a service request message to the transaction service gateway; the service request message includes the transaction service required by the service demand end; Receiving a service response message sent by the transaction service gateway; the service response message includes address information of at least one service provider; Performing a service transaction with the at least one service provider based on the address information of the at least one service provider.
10. The method according to claim 9, characterized in that The service response message also includes the service scope of the at least one service provider; The performing a service transaction with the at least one service provider based on the address information of the at least one service provider includes: Determining a target service provider based on the service scope of the at least one service provider; Performing a service transaction with the target service provider based on the address information of the target service provider.
11. The method according to claim 9, characterized in that The sending of a service request message to the transaction service gateway includes: Sending a first identity authentication request to the transaction service gateway; the first identity authentication request includes the identity credential of the business demander; Receiving a second identity authentication request sent by the transaction service gateway; the second identity authentication request includes the identity credential of the transaction service gateway; Authenticating the identity credentials of the transaction service gateway; When the identity credential of the transaction service gateway is verified successfully, the service request message is sent to the transaction service gateway.
12. The method according to claim 9, characterized in that The service request message also includes a transaction service authorization certificate; The transaction authorization certificate is obtained in the following ways: Sending a service registration request message to the service regulator; the service registration request message includes the identity credential of the service demand end and the required transaction service, so that the service regulator authenticates the identity credential of the service demand end; Receive the transaction business authorization certificate sent by the business regulatory agency; the transaction business authorization certificate is used to indicate whether the transaction business required by the business demand end is authorized.
13. A business transaction device, characterized in that: Applied to a transaction service gateway, the device comprises: The transceiver unit is used to receive a service request message sent by a service demand end; the service request message includes the transaction service required by the service demand end; A determination unit, configured to determine at least one service provider based on the transaction service required by the service demander; the service scope of the service provider includes the transaction service required by the service demander; The transceiver unit is also used to send a service response message to the service demand end; the service response message includes the address information of at least one service provider end, so that the service demand end can conduct a service transaction with the service provider end based on the address information.
14. A business transaction device, characterized in that: Applied to the business demand side, the device includes: A transceiver unit, configured to send a service request message to a transaction service gateway; the service request message includes the transaction service required by the service demand end; The transceiver unit is further used to receive a service response message sent by the transaction service gateway; the service response message includes address information of at least one service provider; A processing unit is used to perform a service transaction with the at least one service provider based on the address information of the at least one service provider.
15. A computer-readable storage medium, characterized in that: The computer-readable storage medium stores instructions. When a computer executes the instructions, the computer executes the business transaction method according to any one of claims 1 to 8, or the business transaction method according to any one of claims 9 to 12.
16. A computer program product, characterized in that The computer program product comprises computer instructions, and when the computer instructions are executed on a computer, the computer is caused to execute the business transaction method according to any one of claims 1 to 8, or the business transaction method according to any one of claims 9 to 12.