The invention relates to the field of electronic technology, more particularly to an electronic payment system and method.
Currently, the online payment generally is achieved in two ways in a bank system, including using an USBkey, or using a mobile message and an electronic password card distributed by a bank. After analyzing the methods in the prior art, it is recognized that the safety is improved in the conventional method by authenticating using a mobile message and electronic password card distributed by the bank, however, this method has the following disadvantages: the cost is increased for a user because he/she must pay for the electronic password card which is distributed by the bank, and obviously it is inconvenient for a user to carry the electronic password card. Furthermore, online transaction can not be achieved when the electronic password card is absent, this also leads to inconvenience for the user.
In order to solve the problems of the prior art, the invention discloses an electronic payment system and method, and the technical solutions of the invention are disclosed as follows:
In one aspect, the invention discloses an electronic payment system, comprising
In another aspect, the invention discloses an electronic payment method, comprising steps of: when payment is achieved via internet by a user,
As compared with the prior art, the invention has the following advantages: by transmitting a message code and a random confirmation code to an authorization payment subsystem under the control of a first micro-processing unit, and by authenticating a user via a biometric authentication device, dual confirmation is achieved in the invention and thus the safety of online payment is guaranteed for a user. Furthermore, the mobile terminal comprises a first micro-processing unit, a second micro-processing unit and a biometric authentication device, thus a transaction can be completed by means of one mobile terminal of an embodiment of the invention, and the transaction can be completed quickly and conveniently while the safety is guaranteed.
The accompanying drawings of the embodiments will now be described simply, so that the technical solutions of embodiments of the invention can be illustrated more clearly. Obviously, the drawings described hereinafter only refer to some preferred embodiments of the present invention, and other equivalent drawings can be obtained by a person skilled in the art without any creative works.
Preferred embodiments of the present invention will now be described in more detail hereinafter with reference to the drawings, so that the advantages and features of the invention can be easily understood by a person skilled in the art, thereby the protection scope of the invention can be defined more clearly.
When payment is achieved via internet by a user, a confirmation message is received by the mobile terminal 11 from the authorization payment subsystem 12, and a message code is inputted via the mobile terminal 11, and then under the control of the first micro-processing unit 151, the message code is transmitted to the authorization payment subsystem 12 via the communication interface 14, thereby achieving the preliminary confirmation. Furthermore, identity authentication is performed on the user by means of the biometric authentication device 13, after the user has been authenticated, the second micro-processing 152 generates an encrypted random confirmation code according to an authorization payment protocol permitted by the authorization payment subsystem 12, and then under the control of the first micro-processing unit 151, the random confirmation code is transmitted to the authorization payment subsystem 12 via the communication interface 14, thereby achieving the secondary confirmation.
In the electronic payment system of this embodiment of the invention, by transmitting the message code and random confirmation code to the authorization payment subsystem 12 under the control of the micro-processing unit 151, and by authenticating the user by means of the biometric authentication device, dual confirmation is achieved, thus, the safety of online payment can be guaranteed for the user. Furthermore, the mobile terminal of the embodiment comprises a first micro-processing unit 151, a second micro-processing unit 152 and a biometric authentication device 13, thus a transaction can be completed only by means of one mobile terminal 11 of this embodiment of the invention, and the transaction is completed quickly and conveniently while the safety is guaranteed.
When a user achieves payment via internet, a confirmation message is received by the mobile terminal 21 from the authorization payment subsystem 22, a message code is inputted via the mobile terminal 21, and under the control of the first micro-processing unit 251, the message code is transmitted to the authorization payment subsystem 22 via the communication interface 24, thereby achieving the first confirmation. Preferably, the confirmation message from the authorization payment subsystem 22 can be encrypted by the authorization payment subsystem 22, and the encrypted confirmation message is decrypted by the second micro-processing 252 after it is received by the mobile terminal 21, to obtain a decrypted confirmation message.
Identity authentication is performed on the user by the fingerprint authentication device 23, after the user has been authenticated, the second micro-processing 252 generates an encrypted random confirmation code according to an authorization payment protocol permitted by the authorization payment subsystem 22, and under the control of the first micro-processing unit 251, the random confirmation code is transmitted to the authorization payment subsystem 22 via the communication interface 24, thereby achieving the secondary confirmation. When the message code and the random confirmation code are received by the authorization payment subsystem 22, deduction is performed on the corresponding online account of the user.
Preferably, the fingerprint authentication device 23 further comprises a fingerprint sensor 231, a fingerprint storage 232 and a fingerprint authentication server 233. The fingerprint sensor 231 is used for extracting the fingerprint information of the user under the control of the first micro-processing unit 251, the finger storage 232 is used for registering and storing the fingerprint information extracted by the fingerprint sensor 231, and the fingerprint authentication server 233 is used for authenticating the fingerprint information extracted by the fingerprint sensor 231 under the control of the first micro-processing unit by comparing with the fingerprint information of an authorized user registered and stored in the fingerprint storage 232, to confirm that the fingerprint information extracted by the fingerprint sensor 231 is the fingerprint information of the authorized user. A person skilled in the art can appreciate that, the fingerprint sensor 231 can be a touch sensor, or a scanning sensor. Different fingerprint sensors can be used in different types of mobile terminals, and the specific structure of fingerprint sensor 231 is not limited in the embodiments of the invention.
More preferably, the communication interface 24 specifically comprises:
More preferably, the first micro-processing unit 251 is communicated with the second micro-processing unit 252 via an asynchronous transmitting-receiving transmitter interface.
A person skilled in the art can appreciate that, in the embodiment of the invention, the biometric authentication device is specifically described as a fingerprint authentication device 23 by way of example, the biometric authentication device also can comprises a high-resolution image sensor, and a user can be authenticated by means of facial features, iris information or blood capillary of the user which are extracted by the image sensor.
In the electronic payment system of this embodiment of the invention, by transmitting the message code and random confirmation code to the authorization payment subsystem 22 under the control of the micro-processing unit 251, and by authenticating the user by means of the biometric authentication device, dual confirmation is achieved, thus, the safety of online payment can be guaranteed for the user. Furthermore, the mobile terminal of the embodiment comprises a first micro-processing unit 251, a second micro-processing unit 252 and a biometric authentication device 23, thus a transaction can be completed only by means of one mobile terminal 21 of this embodiment of the invention, and the transaction is completed quickly and conveniently while the safety is guaranteed.
Preferably, in the above embodiment 2, the micro-processing unit 251 also can control a hardware arranged on the mobile terminal 21, for example, the fingerprint sensor 231, an external device on the mobile terminal 21 and any hardware connected or mounted on the mobile terminal 21. The second micro-processing unit 252 also can control software's installed on the mobile terminal 21, specifically, including the communication and controlling or the like between the software's.
In the electronic payment method of this embodiment of the invention, by transmitting the message code and random confirmation code to the authorization payment subsystem under the control of the micro-processing unit, and by authenticating the user by means of the biometric authentication device, dual confirmation is achieved, thus, the safety of online payment can be guaranteed for the user. Furthermore, the mobile terminal of the embodiment comprises a first micro-processing unit, a second micro-processing unit and a biometric authentication device, thus a transaction can be completed only by means of one mobile terminal of this embodiment of the invention, and the transaction is completed quickly and conveniently while the safety is guaranteed.
Preferably, in the above embodiment 3, when the biometric authentication device specifically is a fingerprint authentication device, “performing identity authentication on the user by means of a biometric authentication device” in the step 302 specifically may comprises:
More preferably, in the above embodiment 3, the communication interface comprises a data transmission interface of a customer identification module and/or a network interface of Wi-Fi network,
Still other preferably, in the above embodiment 3, the electronic payment method also can comprises communicating between the first micro-processing unit and the second micro-processing unit via a serial interface.
More preferably, in the above embodiment 3, after the step 302 the electronic payment method also may comprise performing deduction on the corresponding online account of the user, when the message code and the random confirmation code are received by the authorization payment subsystem.
Wherein the fingerprint authentication device 43 specifically is a fingerprint sensor described in the embodiment 2, and a memory storage is contained in the fingerprint authentication device 43 for storing the fingerprint information of the user.
Specifically, the communication interface 44 may be a communication interface of SIM card, and/or Wi-Fi, or any other access network, and the mobile terminal 41 may be communicated with the bank authorization payment confirmation system by using the data transmission of SIM card/network connection of Wi-Fi, to achieve dual confirmation and effective payment.
Furthermore, the first micro-processing unit 451 is communicated with the second micro-processing unit 452 via a universal asynchronous transmitting-receiving transmitter interface. The mobile terminal 41 is configured as a host microcomputer control centre of an embedded system, and outputs of the mobile terminal 41 are controlled by the first micro-processing unit 451. The first micro-processing unit 451 and the second micro-processing unit 452 bans the operation of the debugging interface by means of an electronic fuse program or a binding program, and performs connecting by means of a universal asynchronous transmitting-receiving transmitter interface.
By adopting the embodiments of the invention, the bank authorization payment confirmation system 42 can perform deduction after the user is authenticated by dual confirmation, thus the safety of the user payment is guaranteed. Furthermore, the mobile terminal is connected with the bank authorization payment confirmation system 42 and complete the payment by means of an authorization payment protocol confirmed by the bank, and the mobile terminal 41 comprises the micro-processing chip 45 and the biometric authentication device 43, thus, the mobile terminal 41 is configured as a one-piece online payment electronic device, and by means of the invention the transaction is convenient and quick while the safety is guaranteed.
The numberings of the embodiments are given only for description, instead of representing the quality of the embodiments.
A person skilled in the art shall appreciate that, part or all of the steps achieving the above embodiments can be completed by means of a hardware, or by instructing a related hardware via a program, the program may be stored in a computer-readable storage medium which may be a read only memory (ROM), magnetic disk or optical disc or the like.
The preferred embodiments as above described are not intended for limiting of the invention, any variations, equivalent substitutions, improvements within the spirit and scope of the invention are contained in the extent of protection of the invention.
Number | Date | Country | Kind |
---|---|---|---|
201410036805.1 | Jan 2014 | CN | national |