[go: up one dir, main page]

CN1989520A - Transaction processing method, device and system - Google Patents

Transaction processing method, device and system Download PDF

Info

Publication number
CN1989520A
CN1989520A CNA2005800251668A CN200580025166A CN1989520A CN 1989520 A CN1989520 A CN 1989520A CN A2005800251668 A CNA2005800251668 A CN A2005800251668A CN 200580025166 A CN200580025166 A CN 200580025166A CN 1989520 A CN1989520 A CN 1989520A
Authority
CN
China
Prior art keywords
payer
payment
electronic equipment
information
equipment
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Pending
Application number
CNA2005800251668A
Other languages
Chinese (zh)
Inventor
伊恩·查尔斯·奥格尔维
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Individual
Original Assignee
Individual
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Priority claimed from AU2004903470A external-priority patent/AU2004903470A0/en
Application filed by Individual filed Critical Individual
Publication of CN1989520A publication Critical patent/CN1989520A/en
Pending legal-status Critical Current

Links

Images

Landscapes

  • Financial Or Insurance-Related Operations Such As Payment And Settlement (AREA)

Abstract

The invention provides a transaction processing method, equipment and a system. The present invention relates to transaction processing for processing payments between payers (typically individual payers) and payees (typically merchants). Payment transactions typically involve providing account details of a user to a merchant device, for example, by swiping a card in the merchant's card swipe device. The merchant device then prepares a transaction message including information such as the user's account ID, merchant ID, and payment information, and forwards the message to a transaction processing system that may include an acquirer and an issuing bank. The transaction processing system approves the payment and returns a confirmation to the merchant. In the present invention, the device associated with the payee, which in the preferred embodiment is a suitably adapted mobile phone, is involved in the payment transaction processing. In one aspect, the transaction processing system requests confirmation from the payer electronic device that the transaction should be conducted, and the payer enters the correct PIN to authorize the transaction. On the other hand, all transaction processing information is provided from the payer electronic device to the transaction processing system, and then the transaction processing system or the payer electronic device confirms that the transaction is authorized to the merchant device. This relieves the merchant of the burden of transaction processing and also enhances the security of the transaction as the payer is in control. In another embodiment, the payer electronic device may also upload a list of products and select a product while paying for the product, the selected product being notified to the payee (merchant).

Description

交易处理方法、设备以及系统Transaction processing method, device and system

技术领域technical field

本发明总体上涉及交易处理方法和系统,更具体地但不排它地涉及用于方便支付人(其可以是普通公众的成员)与受付人(其通常是商家)之间在销售点或在线支付的交易处理系统。The present invention relates generally to transaction processing methods and systems, and more particularly but not exclusively to methods and systems for facilitating transactions between a payer (who may be a member of the general public) and a payee (who is typically a merchant) at the point of sale or online Payment transaction processing system.

背景技术Background technique

对产品或服务的支付通常以电子方式进行。例如,可利用信用卡或签帐卡进行支付,诸如银行的金融机构可以在支付人已授权转帐之后直接或者通过一个或多个中介机构启动向受付人的帐户的支付转帐。转帐授权例如可以包括向受付人提供信用卡或签帐卡并在发票上签字。然后,受付人对支付人在发票上的签名与卡上的签名进行比较,如果他感到满意,则接受支付的授权。Payments for products or services are usually made electronically. For example, payment may be made using a credit or debit card, and a financial institution such as a bank may initiate a payment transfer to the payee's account either directly or through one or more intermediaries after the payer has authorized the transfer. Authorization to transfer funds may include, for example, presenting the payee with a credit or charge card and signing an invoice. The payee then compares the payer's signature on the invoice with the signature on the card and, if he is satisfied, authorizes payment.

已提出许多其他方法来让支付人“签署”交易,以对支付进行核实,例如包括使用安全pin码。Many other methods have been proposed for the payer to "sign" the transaction for verification of the payment, including for example the use of a secure pin code.

然而,仍存在需要考虑的大量安全风险。例如,使用信用卡或签帐卡的支付通常要求把卡短期地交给受付人直到开出发票并签署发票为止。磁条卡容易在相对廉价的设备上进行复制,并且复制的卡可用来进行欺诈性交易。涉及互联网的电子支付系统存在安全问题。通常需要一种提供改进的安全性和便利性的支付系统。However, there are still a number of security risks that need to be considered. For example, payments using credit or charge cards typically require the card to be released to the payee for a short period until the invoice is issued and signed. Magnetic stripe cards are easily duplicated on relatively inexpensive equipment, and duplicated cards can be used to carry out fraudulent transactions. There are security issues in electronic payment systems involving the Internet. There is a general need for a payment system that provides improved security and convenience.

另外,常规上与处理支付交易相关联的一般范例是在受付人或商家设备与交易处理系统(通常是收单行和一个或更多个发卡银行)之间处理交易处理通信(包括支付信息的消息,例如支付人的帐户ID、商家ID、交易额等)。支付人除了提供其帐户详细信息(如上所述,然后这些详细信息被公开,从而被用于欺诈性用途)之外很少理会交易处理。还没有人提出可替代常规商家设备/交易处理系统构造的系统。Additionally, the general paradigm conventionally associated with processing payment transactions is the handling of transaction processing communications (messages including payment information) between a payee or merchant device and a transaction processing system (typically an acquirer and one or more issuing banks). , such as the payer's account ID, merchant ID, transaction amount, etc.). Payers pay little attention to transaction processing beyond providing their account details (which, as mentioned above, are then made public and thus used for fraudulent purposes). No one has proposed a system that can replace conventional merchant device/transaction processing system configurations.

发明内容Contents of the invention

根据第一方面,本发明提供了一种进行支付的方法,该方法包括以下步骤:According to a first aspect, the present invention provides a method of making a payment, the method comprising the following steps:

提供与支付人相关联的信息,以受付人可访问该信息的方式来提供该信息,provide information associated with the payer, presenting the information in a manner that the payee can access the information,

通过与支付人相关联的支付人电子设备来接收与支付有关的信息,以及receive payment-related information through a Payer electronic device associated with the Payer, and

利用与支付人相关联的所述电子设备来给出进行支付的指令。Instructions to make payment are given using the electronic device associated with the payer.

如今,公众成员通常持有一个或更多个电子设备。例如,移动电话是普遍存在的。在一个实施例中,所述方法包括利用与支付人相关联的这种普遍存在的电子设备来给出进行支付的指令。电子设备可以是专用的支付人电子设备或者可以是经改装的移动电话。Today, members of the public typically possess one or more electronic devices. For example, mobile phones are ubiquitous. In one embodiment, the method includes utilizing such ubiquitous electronic device associated with the payer to give instructions to make the payment. The electronic device may be a dedicated payer electronic device or may be a modified mobile phone.

因此,每个支付人都可以持有与他们相关联的电子设备,他们能够使用该电子设备来提供进行支付的指令。在一个实施例中,进行支付的指令可以仅仅是针对交易处理系统的应该继续进行支付的确认。然而,这增加了当前交易所缺乏的额外安全层(要求来自与支付人相关联的电子设备的信息)。Thus, each payer may have an electronic device associated with them that they can use to provide instructions to make a payment. In one embodiment, the instruction to make a payment may simply be an acknowledgment to the transaction processing system that the payment should proceed. However, this adds an extra layer of security (requiring information from an electronic device associated with the payer) that current exchanges lack.

支付可以是出示卡(card-present)的支付,例如所述支付人亲赴销售点(“POS”)。交易可以是非出示卡的支付,例如互联网支付。在支付是在线支付的情况下(例如互联网支付),电子设备不是支付人用来访问商家网站的计算机,而是单独的电子设备。The payment may be a card-present payment, eg, the payer goes to a point-of-sale ("POS"). The transaction may be a non-card present payment, such as an internet payment. Where the payment is online (such as Internet payments), the electronic device is not the computer that the payer uses to access the merchant's website, but a separate electronic device.

在一个实施例中,(例如,通过包括适当的软件应用)将支付人电子设备设置为可识别支付信息。在一个实施例中,可以使用以类似于本交易处理软件的方式来实现支付信息识别的软件,使得支付人电子设备可以表达包括支付信息在内的消息,并将这些消息发送到交易系统(例如,由收单行和发卡银行来使用)。In one embodiment, the payer electronic device is configured (eg, by including an appropriate software application) to recognize payment information. In one embodiment, software that implements payment information recognition in a manner similar to the present transaction processing software can be used so that the payer electronic device can express messages including payment information and send these messages to the transaction system (e.g. , used by acquirers and issuing banks).

在一个实施例中,支付人电子设备可以包括安全措施,以增加处理的安全性。这些安全措施可以包括发送数字签名作为所述确认,在一个实施例中,支付人电子设备可能需要用户在键盘上输入诸如PIN的消息。在一个实施例中,固件可能需要响应于出现在该设备的显示器上的支付信息而输入PIN,以防止黑客在支付人不知情的情况下利用支付应用。In one embodiment, the payer electronic device may include security measures to increase the security of the process. These security measures may include sending a digital signature as said confirmation, and in one embodiment, the payer electronic device may require the user to enter a message such as a PIN on a keypad. In one embodiment, firmware may require a PIN to be entered in response to payment information appearing on the device's display to prevent hackers from exploiting the payment application without the payer's knowledge.

在一个实施例中,与支付有关的信息可以包括产品信息,该产品信息为包括至少一个产品标识符的列表的形式。这种情况下,所述方法还包括支付人电子设备选择至少一个产品标识符的步骤,并且与支付人相关联的信息包括所选择的产品标识符。在一个实施例中,可以为支付人电子设备提供包括多个产品标识符的列表,然后支付人可以从该列表中进行选择。将该选择提供给受付人电子设备,因此,受付人可以将产品提供给支付人。In one embodiment, the payment related information may include product information in the form of a list comprising at least one product identifier. In this case, the method further comprises the step of selecting at least one product identifier by the payer electronic device, and the information associated with the payer includes the selected product identifier. In one embodiment, the payer electronic device may be provided with a list of multiple product identifiers, from which the payer may then select. This choice is provided to the payee electronic device so that the payee can provide the product to the payer.

受付人收到产品“定单”,同时该定单可能已经支付,这是非常有利的。这使得用户可以同时购买和支付。It is advantageous for the payee to receive an "order" for the product, which may have been paid for at the same time. This allows users to buy and pay at the same time.

在一个实施例中,支付人电子设备可以从受付人电子设备获得交易处理所需的所有支付信息,然后可以利用处理系统来直接处理所述交易处理。这减少了商家进行交易处理的负担,并且使得个体支付人能够对处理进行充分的控制,而不需要他们例如将他们的信用卡详细信息交付给商家。相反,支付人电子设备向交易处理系统提供帐户详细信息。In one embodiment, the payer's electronic device can obtain all payment information required for transaction processing from the payee's electronic device, and can then use the processing system to directly process the transaction. This reduces the burden on the merchant for transaction processing and enables individual payers to exercise sufficient control over the processing without requiring them to hand over their credit card details to the merchant, for example. Instead, the payer electronic device provides account details to the transaction processing system.

根据第二方面,本发明提供了一种处理支付交易的方法,该方法包括以下步骤:交易处理系统从与支付人相关联的支付人电子设备接收进行支付的指令;交易处理系统授权支付;以及交易处理系统提供已授权支付转帐的确认。According to a second aspect, the present invention provides a method of processing a payment transaction, the method comprising the steps of: a transaction processing system receiving an instruction to make a payment from a payer electronic device associated with a payer; the transaction processing system authorizing the payment; and The transaction processing system provides confirmation that the payment transfer has been authorized.

根据第三方面,本发明提供了一种便于从支付人到受付人进行支付交易的设备(apparatus),所述设备包括与支付人相关联的支付人电子设备,所述支付人电子设备包括:用于接收与支付有关的信息的支付信息接收装置;和用于给出进行支付的指令的支付指令发出装置。According to a third aspect, the present invention provides an apparatus for facilitating a payment transaction from a payer to a payee, said apparatus comprising a payer electronic device associated with a payer, said payer electronic device comprising: payment information receiving means for receiving information related to payment; and payment instruction issuing means for giving an instruction to make payment.

根据第四方面,本发明提供了一种用于处理支付交易的交易处理系统,所述系统包括:支付指令接收装置,被构造用于从与支付人相关联的支付人电子设备接收从支付人向受付人进行支付的指令;以及支付处理装置,用于授权从支付人帐户到受付人帐户的资金转帐。According to a fourth aspect, the present invention provides a transaction processing system for processing payment transactions, the system comprising: a payment instruction receiving device configured to receive a payment instruction from a payer electronic device associated with the payer an instruction to make a payment to the payee; and a payment processor for authorizing the transfer of funds from the payer's account to the payee's account.

根据第五方面,本发明提供了一种便于处理交易的设备,所述设备包括被构造用于与根据第四方面的交易处理系统进行通信的受付人电子设备。According to a fifth aspect, the present invention provides apparatus for facilitating processing a transaction, the apparatus comprising payee electronic equipment configured to communicate with a transaction processing system according to the fourth aspect.

根据第六方面,本发明提供了一种数据库,该数据库包括支付人电子设备可得到的多个产品列表,由此,支付人电子设备可以从这些产品列表中选择一个或更多个产品,以发送给受付人来满足其产品需求。According to a sixth aspect, the present invention provides a database comprising a plurality of product listings available to a payer electronic device, whereby the payer electronic device may select one or more products from these product listings to Send to payees to fulfill their product needs.

根据第七方面,本发明提供了一种无源设备,该无源设备被构造为可由支付人电子设备读取,以便于支付交易。According to a seventh aspect, the present invention provides a passive device configured to be read by a payer electronic device to facilitate a payment transaction.

根据第八方面,本发明提供了一种无源设备,该无源设备包括用于标识应用的信息,使得电子设备可以使用该信息来处理与所述无源设备相关联的信息。According to an eighth aspect, the present invention provides a passive device comprising information identifying an application such that an electronic device can use the information to process information associated with said passive device.

根据第九方面,本发明提供了一种启动软件应用的方法,所述方法包括以下步骤:利用包括以下信息的无源设备,该信息标识了所述软件应用的位置;将该信息上载到用户设备;以及利用该用户设备从远程位置获得所述应用。According to a ninth aspect, the present invention provides a method of launching a software application, the method comprising the steps of: utilizing a passive device comprising information identifying the location of said software application; uploading the information to a user device; and obtaining said application from a remote location using the user device.

根据第十方面,本发明提供一种了组织队列的方法,所述方法包括以下步骤:向用户移动电话提供信息,该信息表示了用户在所述队列中的位置;以及随着所述用户在所述队列中位置的移动而更新所述信息。According to a tenth aspect, the present invention provides a method of organizing a queue, said method comprising the steps of: providing information to a user's mobile phone indicating the user's position in said queue; The information is updated according to the movement of the position in the queue.

附图说明Description of drawings

参照附图,根据以下仅通过示例方式对本发明实施例的说明,本发明的特点和优点将变得明了,附图中:With reference to the accompanying drawings, the features and advantages of the present invention will become clear according to the following description of the embodiments of the present invention by way of example only, in the accompanying drawings:

图1是根据本发明实施例的一般支付方法和系统的示意性框图;Figure 1 is a schematic block diagram of a general payment method and system according to an embodiment of the present invention;

图2是更详细地示出根据本发明实施例的支付系统的示意性框图;Fig. 2 is a schematic block diagram illustrating a payment system according to an embodiment of the present invention in more detail;

图3是示出图2的支付系统的一个可能操作的流程图;Figure 3 is a flowchart illustrating one possible operation of the payment system of Figure 2;

图4是示出利用本发明实施例的支付系统的框图;Figure 4 is a block diagram illustrating a payment system utilizing an embodiment of the present invention;

图5是示出利用图4的系统的一个操作处理的流程图;FIG. 5 is a flowchart illustrating an operational process utilizing the system of FIG. 4;

图6是例示根据本发明另一个实施例的系统的操作的框图;Figure 6 is a block diagram illustrating the operation of a system according to another embodiment of the present invention;

图7是例示图6的系统的一个可能操作的流程图;FIG. 7 is a flowchart illustrating one possible operation of the system of FIG. 6;

图8是例示根据本发明另一个实施例的支付系统的操作的框图;8 is a block diagram illustrating the operation of a payment system according to another embodiment of the present invention;

图9是示出图8的系统的一个可能操作的流程图;FIG. 9 is a flowchart illustrating one possible operation of the system of FIG. 8;

图10是示出根据本发明另一个实施例的支付系统的操作的框图;10 is a block diagram illustrating the operation of a payment system according to another embodiment of the present invention;

图11是例示图10的系统的一个可能操作的流程图;Figure 11 is a flowchart illustrating one possible operation of the system of Figure 10;

图12是示出根据本发明另一个实施例的系统的操作的框图;Figure 12 is a block diagram illustrating the operation of a system according to another embodiment of the present invention;

图13是示出图12的系统的一个可能操作的流程图;Figure 13 is a flowchart illustrating one possible operation of the system of Figure 12;

图14是示出根据本发明另一个实施例的系统的操作的框图;Figure 14 is a block diagram illustrating the operation of a system according to another embodiment of the present invention;

图15是示出图14的系统的操作的一个可能处理的流程图;Figure 15 is a flowchart illustrating one possible process of operation of the system of Figure 14;

图16是出现在图14的系统中的支付人电子设备上的“菜单”的示例视图;Figure 16 is an example view of the "menu" that appears on the payer's electronic device in the system of Figure 14;

图17是示出根据本发明另一个实施例的处理的流程图;Figure 17 is a flowchart illustrating processing according to another embodiment of the present invention;

图18是示出根据本发明另一个实施例的系统的应用的框图;Figure 18 is a block diagram illustrating the application of a system according to another embodiment of the present invention;

图19是示出可能包括在根据本发明实施例的交易处理系统中的部件的更详细的框图;而Figure 19 is a more detailed block diagram illustrating components that may be included in a transaction processing system according to an embodiment of the invention; and

图20是根据本发明实施例的支付人电子设备的框图。Figure 20 is a block diagram of a payer electronic device according to an embodiment of the present invention.

具体实施方式Detailed ways

图1是可用于实现本发明不同实施例的设备的“概要”视图。常规支付交易通常仅需要与受付人相关联的电子设备(“商家设备”)和交易处理系统(其通常可以包括收单行/网关和金融机构)来处理支付,与之不同,本发明的实施例还需要在交易处理中包括另一整体(与支付人相关联的电子设备)。Figure 1 is a "schematic" view of an apparatus that may be used to implement various embodiments of the invention. Unlike conventional payment transactions, which typically require only an electronic device associated with the payee ("merchant device") and a transaction processing system (which may typically include an acquirer/gateway and a financial institution) to process the payment, embodiments of the present invention There is also another entity (the electronic device associated with the payer) that needs to be included in the transaction processing.

在常规系统中,商家设备通常通过刷磁卡(或从智能卡获得信息)来从支付人获得帐户标识数据。然后,商家设备准备包含所有支付信息(例如,商家ID、支付帐户、商家帐户、支付人的帐户ID等)的消息并将该消息发送给交易处理系统。然后,交易处理系统可以检查支付人的帐户,以确保可得到足够的资金进行交易(取决于是否存在与帐户相关联的免授权交易金额(floor limit)),并且将批准交易或拒绝交易的判定返回到商家设备。如果接收到交易授权(批准),则商家(受付人)可确信交易将继续进行。In conventional systems, a merchant device obtains account identification data from a payer, typically by swiping a magnetic card (or obtaining information from a smart card). The merchant device then prepares a message containing all payment information (eg, merchant ID, payment account, merchant account, payer's account ID, etc.) and sends the message to the transaction processing system. The transaction processing system can then check the payer's account to ensure that sufficient funds are available for the transaction (depending on whether there is an authorization-free transaction amount (floor limit) associated with the account), and will approve the transaction or deny the transaction Return to Merchant Devices. If transaction authorization (approval) is received, the merchant (payee) can be assured that the transaction will proceed.

该常规处理存在上述所有安全问题,还需要每个受付人都利用与支付处理系统相关联的基础设施。This conventional processing presents all of the security issues described above and also requires each payee to utilize the infrastructure associated with the payment processing system.

根据本发明的实施例,交易处理系统2进行从支付人到受付人的支付交易需要与支付人相关联的支付人电子设备1。在根据图1的实施例中,与支付人相关联的信息3将被提供给受付人电子设备4。如稍后在说明书中将看到的,信息3可以包括不同要素(element)。例如,它可以包括支付人的帐户详细信息或仅包括已授权支付人与受付人之间进行交易的确认。According to an embodiment of the present invention, the payment transaction from the payer to the payee requires the payer electronic device 1 associated with the payer by the transaction processing system 2 . In the embodiment according to FIG. 1 , the information 3 associated with the payer will be provided to the payee electronic device 4 . As will be seen later in the description, the information 3 may comprise different elements. For example, it could include the account details of the payer or just a confirmation that the transaction between the payer and payee is authorized.

然而,在不包括支付人电子设备1的情况下,将不授权交易。这增加了额外的安全层,在一些实施例(待描述)中,极大地方便了交易所涉及的支付人和受付人。在一些实施例中,可以消除对支付交易处理中要涉及的受付人的需求。相反,支付人变为启动和处理支付交易的主要渠道。这是对商家负责交易的常规范例的改变(shift)。实施例使支付人能够保留他们的所有帐户详细信息,使得他们无需经过商家并且不损害安全性。However, without the Payer Electronic Device 1 being involved, the transaction will not be authorized. This adds an extra layer of security and, in some embodiments (to be described), greatly facilitates the payer and payee involved in the transaction. In some embodiments, the need for a payee to be involved in payment transaction processing may be eliminated. Instead, the payer becomes the primary conduit for initiating and processing payment transactions. This is a shift from the usual practice where merchants are responsible for transactions. Embodiments enable payers to retain all their account details so that they do not need to go through the merchant and do not compromise security.

本发明的实施例实现了包括支付人电子设备1的许多层面的混合。在一个层面上,支付人电子设备只提供应该继续进行支付的确认,否则,交易基本上通过受付人电子设备和交易处理系统按照常规的方式被处理。Embodiments of the present invention enable a mix of many levels involving the payer electronic device 1 . At one level, the payer electronic device only provides confirmation that the payment should proceed, otherwise, the transaction is processed substantially in a conventional manner through the payee electronic device and the transaction processing system.

在另一层面上,支付人电子设备启动支付处理,并且处理与交易处理系统发送消息的交易。在该实施例中,受付人电子设备可以只接收支付已发生的确认,所有处理都通过支付人电子设备进行。At another level, the payer electronic device initiates payment processing and processes the transaction by sending a message with the transaction processing system. In this embodiment, the payee's electronic device may only receive confirmation that the payment has occurred, and all processing is performed through the payer's electronic device.

在混合的另一层面上,可以提供一种装置,其中支付人电子设备可以通过交易处理系统来选择产品,并且支付该产品。At another level of hybridization, an arrangement can be provided wherein the payer electronic device can select a product through the transaction processing system and pay for the product.

在一个实施例中(第一层面),与支付人相关联的信息可以是由装置3提供的帐户信息,装置3用于提供诸如通行卡、信用卡、帐户卡或智能卡的信息。与受付人相关联的受付人电子设备4(例如读卡设备)从卡3读取信息并将与支付有关的信息发送给交易处理系统2。稍后将更详细地描述交易处理系统2,但其通常包括交易网关或收单行,还可以包括诸如发卡银行的发卡金融机构。这是标准的构造,其中交易网关接收处理信息并且与支付人能够支付的发卡银行进行核对。在该实施例中,交易处理系统2随后与支付人电子设备1进行通信,以从支付人电子设备1获得应该继续进行支付的确认。In one embodiment (first level), the information associated with the payer may be account information provided by the device 3 for providing information such as a pass card, credit card, account card or smart card. A payee electronic device 4 (eg a card reading device) associated with the payee reads information from the card 3 and sends payment related information to the transaction processing system 2 . The transaction processing system 2 will be described in more detail later, but typically includes a transaction gateway or acquiring bank, and may also include an issuing financial institution such as an issuing bank. This is a standard configuration where the transaction gateway receives the transaction information and checks with the issuing bank that the payer is able to pay. In this embodiment, the transaction processing system 2 then communicates with the payer electronic device 1 to obtain confirmation from the payer electronic device 1 that the payment should proceed.

该实施例中的支付人电子设备1是经改装的移动电话,稍后在说明书中将对其进行更详细的描述。支付人电子设备1向交易处理系统2发送确认,然后交易处理系统2向受付人电子设备4发送支付授权。The payer electronic device 1 in this embodiment is a modified mobile phone, which will be described in more detail later in the specification. The payer electronic device 1 sends an acknowledgment to the transaction processing system 2 , which then sends a payment authorization to the payee electronic device 4 .

图2示出了不同层面实施例的表示,其包括经改装的移动电话形式的支付人电子设备1、带有刷卡器10的常规读卡器形式的受付人电子设备4、显示器11和键盘12。交易处理系统仍由块2来表示。支付人持有卡3(可以是信用卡)。现在将参照图3的流程图来描述根据图2的实施例的交易处理。Figure 2 shows a representation of an embodiment at different levels comprising a payer electronic device 1 in the form of a modified mobile phone, a payee electronic device 4 in the form of a conventional card reader with a card swipe 10, a display 11 and a keypad 12 . The transaction processing system is still represented by block 2. The payer holds a card 3 (which may be a credit card). Transaction processing according to the embodiment of FIG. 2 will now be described with reference to the flowchart of FIG. 3 .

在步骤13,在受付人设备刷卡器10中刷支付人卡3。在以下说明中,应该注意,“受付人设备”将被称为“商家设备”或“MD”。In step 13, the payer's card 3 is swiped in the card reader 10 of the payee's device. In the following description, it should be noted that "Payee Device" will be referred to as "Merchant Device" or "MD".

在步骤14,从MD 4向交易处理系统“TPS”2发送交易消息。交易消息可以包括进行交易处理常规上所包括的所有信息,例如信用卡详细信息、支付帐户。At step 14, a transaction message is sent from the MD 4 to the transaction processing system "TPS" 2. The transaction message may include all information conventionally involved in conducting transaction processing, eg credit card details, payment account.

在步骤15,TPS 2向支付人设备(“PD”)1发送用于确认应该继续进行支付的请求(“确认请求”)。At step 15, the TPS 2 sends a request to the Payer Device ("PD") 1 for confirmation that the payment should proceed ("Confirmation Request").

在步骤16,支付人利用PD 1的键盘20按下确认键。然后,PD 1向TPS 2发送确认。In step 16, the payer utilizes the keyboard 20 of PD 1 to press the confirmation key. Then, PD 1 sends an acknowledgment to TPS 2.

在步骤17,TPS 2向MD 4发送交易授权。In step 17, TPS 2 sends transaction authorization to MD 4.

在处理中包括支付人电子设备1的优点是为交易提供了另外的安全性。支付人不仅需要他的信用卡,而且需要访问他的经改装的移动电话,才能使交易继续进行。支付人可能需要键入诸如PIN的安全码,交易处理系统可将其与存储在数据库中的PIN进行比较。An advantage of including the payer electronic device 1 in the process is that it provides additional security to the transaction. The payer needs not only his credit card, but also access to his modified mobile phone in order for the transaction to proceed. The payer may be required to key in a security code such as a PIN, which the transaction processing system can compare to the PIN stored in the database.

欺诈者要访问用户的信用卡、其移动电话,还要知道PIN,以使欺诈交易向前进行,这是不大可能的。It is highly unlikely that a fraudster would have access to a user's credit card, their mobile phone, and also know the PIN in order for the fraudulent transaction to proceed.

可以实施其他安全措施。在一个实施例中,可以在交易处理系统与PD 1之间使用数字签名安全构造。Additional security measures may be implemented. In one embodiment, a digital signature security construct may be used between the transaction processing system and PD 1.

在另一实施例中,为了确保支付交易向前进行,可以在PD 1中使用固件来确保支付人必须激活输入装置(键盘20)。这样就避免了黑客能够远程操作电话从而在PD 1的拥有者不知情的情况下批准支付交易。对于该固件而言,黑客不能改变该固件,并且要求支付人1通过键盘20键入确认。固件1还可被构造为要求支付信息出现在PD 1的显示器21上,因而,例如支付人可以在键入确认之前浏览诸如支付金额的支付信息。In another embodiment, in order to ensure that the payment transaction proceeds, firmware may be used in the PD 1 to ensure that the payer must activate the input device (keypad 20). This prevents a hacker from being able to remotely operate the phone to approve payment transactions without the owner of the PD 1 knowing. For this firmware, the hacker cannot change the firmware, and requires the payer 1 to enter confirmation through the keyboard 20 . The firmware 1 can also be configured to require payment information to appear on the display 21 of the PD 1, so for example the payer can review the payment information such as the payment amount before typing in a confirmation.

在图3所示处理的变型例中,取而代之或除TPS 2向MD 4发送交易授权(步骤17)之外,在步骤17A,TPS 2向PD 1发送交易授权。然后,例如,支付人向受付人出示授权(授权出现在PD 1的屏幕上)。在一个实施例中,授权详细信息可以按编码形式(该编码形式可由可设置有MD 4的适当读取器识别)提供在PD 1的屏幕21上。图2中未示出读取器,但读取器可设置在MD 4上。例如,编码可以是出现在屏幕21上的要由MD 4上的适当条形码读取器来读取的条形码。In a variant of the process shown in Figure 3, instead or in addition to the TPS 2 sending the transaction authorization to the MD 4 (step 17), in step 17A the TPS 2 sends the transaction authorization to the PD 1. Then, for example, the payer presents the authorization to the payee (the authorization appears on the screen of PD 1). In one embodiment, the authorization details may be provided on the screen 21 of the PD 1 in coded form (recognizable by a suitable reader which may be provided with the MD 4). The reader is not shown in Fig. 2, but the reader can be provided on the MD 4. For example, the code may be a barcode appearing on the screen 21 to be read by an appropriate barcode reader on the MD 4.

还可以向PD 1发送支付用的收据,PD 1可以具有用于存储交易收据并由此进行记帐的应用。Receipts for payments can also be sent to PD 1, which can have an application for storing transaction receipts and billing them accordingly.

使用与支付人相关联的电子装置来确认应该继续进行支付交易的能力也可应用于在线交易(以及上述销售点(POS)类型的交易)。The ability to use an electronic device associated with a payer to confirm that a payment transaction should proceed also applies to online transactions (as well as point-of-sale (POS) type transactions described above).

参照图4,典型的在线交易包括支付人经由互联网25并利用诸如PC26的计算机访问由商家服务器28提供的商家网站27。选择产品后,支付人输入其信用卡详细信息。然后,商家服务器28继续处理该支付交易。众所周知,该处理易受欺骗。Referring to FIG. 4 , a typical online transaction includes a payer accessing a merchant website 27 provided by a merchant server 28 via the Internet 25 and utilizing a computer such as a PC 26 . After selecting a product, the payer enters their credit card details. The merchant server 28 then proceeds to process the payment transaction. This process is notoriously vulnerable to spoofing.

根据本发明的实施例,与支付人相关联的PD 1可用于增强安全性。现在将参照图5来描述根据该实施例而执行的交易处理。According to an embodiment of the invention, the PD 1 associated with the payer can be used to enhance security. Transaction processing performed according to this embodiment will now be described with reference to FIG. 5 .

在步骤29,支付人从商家网站27选择商品并在商家网站27上输入其帐户详细信息(通常是信用卡卡号)。At step 29, the payer selects merchandise from the merchant website 27 and enters his account details (usually a credit card number) on the merchant website 27 .

在步骤30,从商家服务器28向TPS 2发送常用交易消息。At step 30, a usual transaction message is sent from the merchant server 28 to the TPS 2.

根据该实施例,TPS 2随后向PD 1发送确认应该继续进行支付的请求。支付人在其PD 1上键入确认(步骤32),PD 1将该确认发送给TPS2。According to this embodiment, TPS 2 then sends a request to PD 1 confirming that payment should proceed. The payer types an acknowledgment on his PD 1 (step 32), which sends the acknowledgment to TPS2.

然后,TPS 2向商家服务器28发送交易授权(步骤33)。Then, TPS 2 sends transaction authorization to merchant server 28 (step 33).

TPS可以具有数据库,该数据库存储有使得能够与支付人电子设备进行通信的信息(例如,移动电话号码)。The TPS may have a database storing information (eg, mobile phone number) that enables communication with the payer electronic device.

上述实施例一般涉及支付人电子设备,其用于通过要求来自支付人电子设备的对应该继续进行支付交易的确认,来提供另外的安全层。支付人电子设备还可用于接收交易授权和收据,但实际上,交易处理是常规的,并且大多数消息的发送出现在受付人电子设备与交易处理系统之间。在以下实施例中,支付人电子设备可以承担更多的交易处理,这通常会带来交易处理的操作便利的提高。The embodiments described above generally relate to a payer electronic device for providing an additional layer of security by requiring confirmation from the payer electronic device that a payment transaction should proceed. The payer electronic device can also be used to receive transaction authorizations and receipts, but in practice transaction processing is routine and most messaging occurs between the payee electronic device and the transaction processing system. In the following embodiments, the payer's electronic device can undertake more transaction processing, which generally leads to an improvement in the operational convenience of transaction processing.

参照图2,PD 1设置有一些可实现本地通信的装置35。用于实现本地通信的装置35包括“访问设备”,并且可以包括设置在移动电话内(或许附接于移动电话)的非接触智能卡。受付人电子设备4设置有适当的读取器36。访问设备35在接触到读取器36时或与读取器36非常接近时,被设置为向MD 4提供使MD 4能够随后与PD 1进行通信的信息。例如,标识信息可以是电话号码,从而MD 4可使用移动电话网络与PD 1接触。作为另一种选择,可以使用本地无线网络(例如BluetoothTM)在PD 1与MD 4之间进行通信。因此,MD 4可向PD 1发送与支付有关的信息。这可使PD 1能够在交易过程中扮演更积极的角色。Referring to Fig. 2, PD 1 is provided with some devices 35 capable of realizing local communication. The means 35 for enabling local communication comprise an "access device" and may comprise a contactless smart card provided within (perhaps attached to) the mobile phone. The payee electronic device 4 is provided with a suitable reader 36 . The access device 35, when contacted or in close proximity to the reader 36, is arranged to provide the MD 4 with information enabling the MD 4 to subsequently communicate with the PD 1 . For example, the identification information may be a telephone number so that the MD 4 can contact the PD 1 using the mobile telephone network. Alternatively, a local wireless network (eg, Bluetooth ) can be used to communicate between PD 1 and MD 4 . Therefore, MD 4 can send payment-related information to PD 1 . This would allow PD 1 to take a more active role in the transaction process.

在一个实施例中,MD 4可以向PD 1发送支付金额。然后,支付人1可改变(出现在屏幕21上的)支付金额并将改变后的支付金额传送回MD 4用于后续的交易处理。例如,这种实施例在“小费”情况下会非常有用。例如,在饭店内,支付人可利用PD 1输入他们的小费,这将防止在现金支付传票上手工输入小费时可能发生的任何欺诈操作。剩余的交易处理可以按照上述实施例中所描述的通过PD 1所要求的确认来进行。In one embodiment, MD 4 may send payment amount to PD 1. Payer 1 can then change the payment amount (appearing on screen 21) and send the changed payment amount back to MD 4 for subsequent transaction processing. Such an embodiment would be very useful in "tipping" situations, for example. For example, in a restaurant, payers can utilize PD 1 to enter their tips, which will prevent any fraudulent practices that may occur when manually entering tips on cash payment vouchers. The remaining transaction processing can be carried out according to the confirmation required by PD 1 as described in the above embodiments.

图7是示出可利用图6的实施例来实现的支付处理的流程图。FIG. 7 is a flowchart illustrating payment processing that may be implemented using the embodiment of FIG. 6 .

在步骤38,在MD 4的读卡器10中刷支付人卡3。In step 38, swipe payer's card 3 in the card reader 10 of MD 4.

在步骤39,从MD 4向TPS 2发送交易消息和交易信息。然后,PD1经由访问设备35和读取器36向MD 4发送无线通信信息,以实现MD4与PD 1之间的无线通信(步骤40)。In step 39, send transaction message and transaction information from MD 4 to TPS 2. Then, PD1 sends wireless communication information to MD 4 via access device 35 and reader 36, so as to realize wireless communication between MD4 and PD 1 (step 40).

在步骤41,MD 4无线地向PD 1发送“支付请求”。支付请求可以包括支付信息,例如支付金额。应该注意的是,如果给予支付人改变支付信息(会改变支付金额)的选择权,则MD 4可以在向TPS发送交易消息之前等待来自PD 1的答复(即,步骤39将沿流程图进一步向下进行)。In step 41, MD 4 wirelessly sends a "Payment Request" to PD 1. A payment request may include payment information, such as a payment amount. It should be noted that if the payer is given the option to change the payment information (which will change the payment amount), then MD 4 can wait for a reply from PD 1 before sending the transaction message to TPS (i.e., step 39 will go further along the flow chart to proceed below).

在步骤42,响应于来自MD 4的支付请求(并且在输入了任何进一步信息,如支付金额的改变,之后),PD 1向TPS 2发送应该继续进行交易的确认。In step 42, in response to the payment request from MD 4 (and after any further information has been entered, such as a change in payment amount), PD 1 sends an acknowledgment to TPS 2 that the transaction should proceed.

在步骤43,TPS 2随后向MD 4发送交易授权,使受付人知道交易可继续进行。作为另一种选择,TPS 2在步骤43A向PD 1发送交易授权,(并且在43B),PD 1向MD 4无线地发送授权。In step 43, TPS 2 then sends transaction authorization to MD 4, letting the payee know that the transaction can proceed. Alternatively, TPS 2 sends transaction authorization to PD 1 at step 43A, (and at 43B), PD 1 wirelessly sends authorization to MD 4.

应该注意的是,可以不需要单独的访问设备(例如智能卡35),相反访问设备例如可并入到适当构造的PD 1和MD 4中,以允许直接的无线通信。It should be noted that a separate access device (e.g. smart card 35) may not be required, but instead the access device, for example, may be incorporated into suitably configured PD 1 and MD 4 to allow direct wireless communication.

在图6和图7的实施例中,支付人仍在受付人设备中刷卡,并且商家设备仍处理交易处理的绝大部分。图8例示了其中要进行交易,支付人除了支付人设备1之外无需任何卡或设备的实施例。In the embodiment of Figures 6 and 7, the payer still swipes the card in the payee device, and the merchant device still handles the vast majority of the transaction processing. Figure 8 illustrates an embodiment in which the payer does not need any card or device other than the payer device 1 to carry out the transaction.

可以仍然设置访问设备35和读取器36(或者,如上所述,设备1和4可被适当地构造为以某种其他方式对近程通信进行初始化)。在该实施例中,PD 1还包括使其能够表达交易处理中所用的交易消息的应用(可以实现为软件)。Access device 35 and reader 36 may still be provided (or, as noted above, devices 1 and 4 may be suitably configured to initiate short range communication in some other way). In this embodiment, the PD 1 also includes an application (which may be implemented as software) enabling it to express transaction messages used in transaction processing.

参照图9,为了承担支付交易,PD 1和MD 4彼此建立通信。然后,在步骤45,MD 4无线地向PD 1发送支付信息,该支付信息包括处理支付所需的信息,例如商家ID和支付金额。Referring to Figure 9, in order to undertake payment transactions, PD 1 and MD 4 establish communication with each other. Then, at step 45, MD 4 wirelessly sends payment information to PD 1, the payment information including the information required to process the payment, such as merchant ID and payment amount.

在步骤46,从PD 1向TPS 2发送交易消息,从而可以识别支付人帐户,该交易消息包括交易处理所需的常用信息,例如商家ID、支付金额和支付人的身份。同时,交易消息可以包括应该继续进行交易的确认。In step 46, a transaction message is sent from PD 1 to TPS 2 so that the payer account can be identified, the transaction message includes common information required for transaction processing, such as merchant ID, payment amount, and identity of the payer. At the same time, the transaction message may include confirmation that the transaction should proceed.

在步骤47,TPS 1可以向MD 4发送交易授权。作为另一种选择,在步骤47A,PD 1可以接收从TPS 2传送来的交易授权,在步骤47B,PD 1无线地向MD 4发送授权。In step 47, TPS 1 may send transaction authorization to MD 4. Alternatively, at step 47A, PD 1 may receive the transaction authorization transmitted from TPS 2, and at step 47B, PD 1 wirelessly sends the authorization to MD 4.

应该理解的是,如果选择了路径47A和47B,则不需要具有与TPS 2进行通信能力的商家设备。因此,可以提供只具有用于和受付人电子设备(例如无线地)进行通信的本地通信设备的受付人电子设备,支付人电子设备随后进行大量的交易处理通信。这种构造的主要优点是,支付人的帐户详细信息(例如信用卡详细信息)可以不需要经过商家设备。此外,从方便和安全的角度来讲,支付人对交易拥有完全的控制。如结合上述实施例所述,支付信息可以出现在屏幕21上,从而支付人可以浏览该信息,通过键盘输入20来改变信息(例如改变小费)等。支付人拥有完全的控制。It should be understood that if paths 47A and 47B are selected, merchant equipment that is capable of communicating with TPS 2 is not required. Thus, it is possible to provide a payee electronic device with only a local communication device for communicating (eg, wirelessly) with the payee electronic device, which then conducts bulk transaction processing communications. The main advantage of this configuration is that the payer's account details (eg credit card details) may not need to go through the merchant equipment. In addition, the payer has complete control over the transaction from a convenience and security standpoint. As described in connection with the above embodiments, the payment information can appear on the screen 21 so that the payer can view the information, enter 20 through the keyboard to change the information (eg change the tip), etc. The payer has full control.

应该注意的是,在该实施例的变型例中,所有通信都可经过MD 4。即,可由PD 1准备支付消息,然后将其本地无线地发送至MD 4,以便随后传递到交易处理系统。这是欠安全的选择,因为所有支付人信息都将经过商家设备。然而,这在某些情况下可能是方便的(例如,在PD与交易处理系统2之间存在通信困难时)。It should be noted that in a variant of this embodiment, all communications may go through MD 4. That is, payment messages may be prepared by PD 1 and then wirelessly sent locally to MD 4 for subsequent delivery to the transaction processing system. This is a less secure option as all payer information will pass through the merchant device. However, this may be convenient in certain circumstances (for example, when there are communication difficulties between the PD and the transaction processing system 2).

支付人的帐户ID可以按加密形式与数字签名一起发送。可应用任何保密措施。在一个实施例中,交易处理系统2保存有“分裂”帐号的数据库。即,帐号的一部分由TPS 2数据库保存,该帐号的其他部分由支付人设备1保存。因此,黑客不能通过侵入PD 1而获得所有帐户ID。The payer's account ID can be sent in encrypted form along with the digital signature. Any security measures may apply. In one embodiment, transaction processing system 2 maintains a database of "split" account numbers. That is, a part of the account number is saved by the TPS 2 database, and the other part of the account number is saved by the payer device 1. Therefore, hackers cannot obtain all account IDs by hacking into PD1.

在另外的选择中,商家设备4可包括4A和4B两部分(图8)。4A部分可以是移动设备,例如可由操作员(如饭店的侍者)携带。4B部分可以是受付人电子设备。侍者可使设备4A靠近PD 1以获得通信详细信息(例如,初始化通信),从而PD 1能够随后与4B部分进行通信,例如使PD 1能够上载交易详细信息,然后继续交易处理。In an alternative, merchant device 4 may comprise two parts 4A and 4B (FIG. 8). Part 4A may be a mobile device, for example carried by an operator such as a waiter in a restaurant. Part 4B can be Payee Electronic Devices. The waiter may bring device 4A close to PD 1 to obtain communication details (e.g. initiate communication) so that PD 1 can then communicate with part 4B, e.g. enabling PD 1 to upload transaction details and then continue transaction processing.

设备4A可以向设备4B的其他部分提供接触详细信息。设备4A实际上可以是无源设备,其可由来自PD 1的电力来供电。在饭店情况下,例如,4A部分能够提供诸如饭店中的餐桌号的信息,使得在随后与4B部分(其可以是电子现金抽屉)的通信中,支付人可被识别为坐在饭店中特定桌位上的人,因此,可由4B部分计算并生成支付人的帐单,然后发送到与该支付人相关联的PD 1。Device 4A may provide contact details to other parts of device 4B. Device 4A may actually be a passive device, which may be powered by power from PD 1. In the case of a restaurant, for example, part 4A can provide information such as the table number in the restaurant so that in a subsequent communication with part 4B (which may be an electronic cash drawer), the payer can be identified as sitting at a particular table in the restaurant Person in position, therefore, can be calculated by Part 4B and generate a payer's bill, which is then sent to the PD 1 associated with that payer.

两部分商家设备4可采取任意方便的构造。为了获得支付信息,4A部分仅需要提供使支付人设备1能够接触(通常更复杂的)4B部分的信息。The two-part merchant device 4 may take any convenient configuration. In order to obtain payment information, part 4A only needs to provide information enabling the payer device 1 to access the (usually more complex) part 4B.

图10例示了其中PD 1能够应对在线支付的交易处理的系统。图10中使用与图4中所用相同的标号来表示类似的部件。FIG. 10 illustrates a system in which PD 1 is capable of handling transaction processing for online payments. The same reference numerals as used in FIG. 4 are used in FIG. 10 to denote similar components.

在该实施例中,PD 1包括用于为交易处理准备交易消息的应用。In this embodiment, PD 1 includes an application for preparing transaction messages for transaction processing.

参照图11,在步骤50,支付人经由PC 26和互联网25从商家网站27上选择产品。With reference to Fig. 11, in step 50, the payer selects product from merchant's website 27 via PC 26 and Internet 25.

在步骤51,PD 1上载支付信息,该支付信息包括商家ID和支付金额(以及使交易处理向前继续可能需要的任何其他信息)。上载可以通过与PC 26的有线或无线通信来进行。作为另一种选择,当选择了产品27时,支付人可向商家服务器28提供PD 1的接触详细信息,然后,商家服务器28可(例如,通过移动电话通信网络)将支付信息发送到PD 1。在此外的另一种选择中,可省去PC 26,而PD 1(其可以是经改装的可上网移动电话)直接访问网站27,并上载支付信息。In step 51, PD 1 uploads payment information, including merchant ID and payment amount (and any other information that may be needed to proceed with transaction processing). Uploading can be done by wired or wireless communication with PC 26. Alternatively, when the product 27 is selected, the payer may provide the contact details of PD 1 to the merchant server 28, and the merchant server 28 may then send the payment information to PD 1 (e.g. via a mobile phone communication network) . In yet another option, the PC 26 may be omitted, and the PD 1 (which may be a modified Internet-capable mobile phone) directly accesses the website 27 and uploads the payment information.

在步骤52,由PD 1准备交易消息并与交易确认和帐户ID一起发送到TPS。At step 52, a transaction message is prepared by PD 1 and sent to the TPS together with the transaction confirmation and account ID.

在步骤53,TPS 2向商家服务器发送交易授权。随后,可为PD 1产生收据(并且其可从商家服务器发送到PD 1)。In step 53, TPS 2 sends transaction authorization to the merchant server. Subsequently, a receipt can be generated for PD 1 (and it can be sent from the merchant server to PD 1).

上述的加密和其他安全措施可应用在该实施例中。该实施例的主要优点是无需将帐户详细信息(例如信用卡详细信息)放置在网络(例如互联网)上。The encryption and other security measures described above can be applied in this embodiment. The main advantage of this embodiment is that there is no need to place account details (such as credit card details) on a network (such as the Internet).

图12例示了本发明的另一个实施例。在该实施例中,支付人电子设备1包括被构造用于从无源设备56读取支付信息的读取装置55。在所例示的实施例中,读取装置55是相机55(目前移动电话一般都设置有相机)。然而,读取装置可以是任何其他方便的读取装置,如条形码扫描仪。在该实施例中,相机55与应用软件一起使用,使移动电话能够检测到来自相机的无源设备图像和处理由无源设备提供的信息。Figure 12 illustrates another embodiment of the present invention. In this exemplary embodiment, the payer electronic device 1 comprises a reading device 55 designed to read payment information from a passive device 56 . In the illustrated embodiment, the reading device 55 is a camera 55 (cameras are commonly provided with mobile phones these days). However, the reading device may be any other convenient reading device, such as a barcode scanner. In this embodiment, the camera 55 is used with application software that enables the mobile phone to detect the passive device image from the camera and process the information provided by the passive device.

此外,无源设备56不必是条形码,而可以是能够读取以提供支付信息(例如RF)的任何无源设备。Furthermore, the passive device 56 need not be a barcode, but can be any passive device that can be read to provide payment information (eg, RF).

在一个实施例中,由无源设备提供的支付信息可以是商家ID,使PD1能够随后与如图8的实施例中的商家设备4进行通信。然后,除了经由无源设备和PD 1中的读取装置55获得来自MD 4的支付信息之外,处理随后可以沿图9的处理线路继续进行。例如,无源设备可以是饭店中的桌上的条形码。In one embodiment, the payment information provided by the passive device may be a merchant ID, enabling the PD1 to subsequently communicate with the merchant device 4 as in the embodiment of FIG. 8 . Processing may then continue along the processing line of Figure 9, except that payment information from MD 4 is obtained via the passive device and reader 55 in PD 1. For example, a passive device could be a barcode on a table in a restaurant.

在更复杂的层面上,无源设备可以提供使PD 1能够继续进行并且启动支付交易的支付信息。例如,无源设备56可包括使带有适当的软件应用的PD 1为交易处理系统2准备交易信息所需的足够信息。At a more complex level, passive devices may provide payment information that enables PD 1 to proceed and initiate payment transactions. For example, passive device 56 may include sufficient information to enable PD 1 with appropriate software applications to prepare transaction information for transaction processing system 2.

现在将与图13相关地描述图12的系统的操作。Operation of the system of FIG. 12 will now be described in relation to FIG. 13 .

在步骤58,PD 1从无源设备56获得支付信息。在图12的实施例中,支付人利用他的相机55给条形码56拍照,PD 1上的应用识别条形码并获得支付信息。In step 58, PD 1 obtains payment information from passive device 56. In the embodiment of Fig. 12, the payer uses his camera 55 to take a picture of the barcode 56, and the application on the PD 1 recognizes the barcode and obtains the payment information.

另外,在图12的实施例中,条形码56设置有帐单57,帐单57例如可以是饭店帐单。条形码56上的信息包括处理支付商家(例如,饭店的所有者)的交易所需的所有信息。即,这些信息将包括商家ID、支付金额和准备交易消息所需的任何其他信息。In addition, in the embodiment of FIG. 12, the barcode 56 is provided with a bill 57, which may be a restaurant bill, for example. The information on the barcode 56 includes all the information needed to process the transaction to pay the merchant (eg, the owner of the restaurant). That is, the information will include the merchant ID, payment amount, and any other information needed to prepare the transaction message.

在步骤59,由PD 1准备交易消息并与交易确认和支付人的帐户ID一起发送到TPS 2。At step 59, the transaction message is prepared by PD 1 and sent to TPS 2 together with the transaction confirmation and the account ID of the payer.

在步骤60,TPS 2与MD 70进行通信并向MD 70提供交易授权。作为另一种选择,与上述实施例相同,TPS 60A可通知PD 1交易授权,然后60B处的PD向MD 70发送交易授权。MD 70可产生收据71并且/或者向PD 1发送电子收据。作为另一种选择,交易处理系统2可从MD 17接收电子收据并将其发送到PD 1。In step 60, TPS 2 communicates with MD 70 and provides transaction authorization to MD 70. Alternatively, as in the above embodiment, the TPS 60A may notify the PD 1 of the transaction authorization, and then the PD at 60B sends the transaction authorization to the MD 70. The MD 70 can generate a receipt 71 and/or send an electronic receipt to the PD 1. Alternatively, transaction processing system 2 may receive electronic receipts from MD 17 and send them to PD 1.

应该理解的是,这种构造具有很大的优点。例如,通过邮政接收的帐单(例如,水电费帐单)可包括无源设备,该无源设备包括可由支付人电子设备的读取器读取以使支付人电子设备能够处理帐单支付的支付信息。It should be appreciated that this configuration has great advantages. For example, a bill received through the post (e.g., a utility bill) may include a passive device that includes a code readable by a reader of the payer's electronic device to enable the payer's electronic device to process the payment of the bill. Payment Information.

在另外的实施例中,无源设备可提供交易ID号,并且要求PD 1与(例如,商家系统所运营的)包含该交易信息的远程数据库进行通信。例如,该数据库可与电子收银机相关联。然后,PD 1从数据库中收集所要求的支付信息,并且通过与TPS 2进行通信而执行交易。在该实施例中,支付人甚至可以手工键入交易ID号。In a further embodiment, the passive device may provide a transaction ID number and require the PD 1 to communicate with a remote database (e.g., operated by a merchant system) containing the transaction information. For example, the database may be associated with an electronic cash register. PD 1 then collects the required payment information from the database and executes the transaction by communicating with TPS 2. In this embodiment, the payer can even manually key in the transaction ID number.

还需注意的是,在其中支付人设备处理交易的上述实施例中,商家设备必须被构造为响应于由PD 1启动的交易处理来识别通过电话或者通过TPS 2发送的交易批准码(或类似的标识符)。Note also that in the above embodiments where the Payer Device processes the transaction, the Merchant Device must be configured to recognize a Transaction Approval Code (or similar) sent over the phone or via TPS 2 in response to transaction processing initiated by PD 1. identifier).

一些其中本实施例将非常有用的示例情形如下:Some example situations where this embodiment would be useful are as follows:

●由商家收银机产生带有包括支付信息的条形码的帐单。PD 1扫描条形码(拍照),支付人经由TPS 2授权交易。TPS批准交易并且经由PD 1通知支付人。PD 1在其屏幕21上显示在商家商店处由条形码读取器(图12中未示出)读取的授权码。• A bill is generated by the merchant cash register with a barcode including payment information. PD 1 scans the barcode (photographs), and the payer authorizes the transaction via TPS 2. TPS approves the transaction and notifies the payer via PD 1. PD 1 displays on its screen 21 the authorization code read by a barcode reader (not shown in FIG. 12 ) at the merchant's store.

●上述示例的变型例针对的是来自交易处理系统2的要经由互联网或其他电子系统直接传送到商家设备70的响应。- A variation of the above example is for responses from the transaction processing system 2 to be transmitted directly to the merchant device 70 via the Internet or other electronic system.

●在商家收银机处产生并入有条形码的明细表(docket)。条形码由小餐馆餐桌处的支付人通过PD 1来读取。处理支付并向收银机发送响应,或者甚至发送到为该餐桌提供服务的侍者的电话上。然后,消费者可以离去。• Generate a docket incorporating a barcode at the merchant cash register. The barcode is read by the payer at the bistro table via PD 1. The payment is processed and a response is sent to the cash register, or even to the phone of the waiter serving that table. Then, the consumer can go away.

在另外的实施例中,除了向支付人设备提供支付信息外,还可提供产品信息。产品信息可以按照包括至少一个产品标识符的列表形式来提供,并且支付人设备包括使得能够选择产品的装置(其通常会是软件应用)。可以(经由受付人电子设备)将与产品选择有关的信息发送给受付人,使得支付人电子设备除了能够支付受付人以外还能订购产品。这使得支付人电子设备能够变为“个人收银机”。支付人可以使用他们自己的设备同时订购和支付产品。In further embodiments, product information may be provided in addition to payment information to the payer device. The product information may be provided in the form of a list comprising at least one product identifier, and the payer device comprises means (which will typically be a software application) enabling selection of the product. Information pertaining to product selections can be sent to the payee (via the payee electronic device), enabling the payer electronic device to order the product in addition to paying the payee. This enables the payer electronic device to become a "personal cash register". Payers can simultaneously order and pay for products using their own devices.

产品信息可由许多装置来提供,包括通过来自受付人电子设备的无源设备(例如条形码)发送、从互联网上载等。Product information can be provided by a number of means, including transmission via passive devices (eg, barcodes) from payee electronic devices, uploading from the Internet, and the like.

图14例示了根据该实施例的用于获得和利用产品信息的多种选择。应该理解的是,本发明并不限于图14中例示的选择。Figure 14 illustrates various options for obtaining and utilizing product information according to this embodiment. It should be understood that the invention is not limited to the options illustrated in FIG. 14 .

一种选择是经由无源设备(诸如可与产品相关联的条形码71)来提供产品信息。在图14中,以饭店菜单72的形式示出了一个示例,该饭店菜单包括常规物品列表73,以及可由支付人的PD 1拍照以将菜单上载到PD 1的条形码71。One option is to provide product information via a passive device such as a barcode 71 that can be associated with the product. In Figure 14, an example is shown in the form of a restaurant menu 72, which includes a general list of items 73, and a barcode 71 that can be photographed by the payer's PD 1 to upload the menu to the PD 1.

参照图15,示例处理如下。Referring to Figure 15, an example process is as follows.

在步骤80,PD 1上载包括该产品列表的菜单。PD 1上的软件应用使产品列表能够出现在显示器21上,并且支付人可利用输入20从列表中进行选择(步骤81)。In step 80, PD 1 uploads a menu including the product list. A software application on PD 1 enables a list of products to appear on display 21, and the payer can select from the list using input 20 (step 81).

在步骤82,PD 1准备包括商家ID、产品ID、帐户ID或处理交易所需的任何其他信息的交易消息并且还订购产品。交易消息被发送到TPS2。In step 82, PD 1 prepares a transaction message including Merchant ID, Product ID, Account ID or any other information needed to process the transaction and also orders the product. Transaction messages are sent to TPS2.

TPS 2将产品选择发送至MD 70并且还在TPS 2已授权支付之后发送支付授权。TPS 2 sends product selection to MD 70 and also sends payment authorization after TPS 2 has authorized payment.

如果产品信息涉及饭店中的菜单,则由MD 70来接收支付人选择,并且支付人选择将包括支付人的ID(例如,餐桌号)和支付人已选择的产品列表(例如,食物)。因此,商家可填写定单并且将食物和饮料提供给支付人,同时确信知道它们已经被支付。If the product information relates to a menu in a restaurant, the payer selections are received by the MD 70 and will include the payer's ID (e.g., table number) and a list of products (e.g., food) that the payer has selected. Thus, the merchant can fill the order and deliver the food and beverages to the payer with the confidence of knowing that they have been paid for.

在该实施例中,受付人电子设备可提供用于显示定单的装置,该装置在图14所例示的实施例中是打印机,该打印机打印出定单74,然后商家操作员可以容易地对订单进行处理,以使他们能够填写定单。In this embodiment, the payee electronic device may provide a means for displaying the order, which in the embodiment illustrated in FIG. processing to enable them to fill orders.

交易处理系统2并入有定购系统,该定购系统被构造用于处理定单(产品选择)并将其转发给受付人。The transaction processing system 2 incorporates an order system which is designed to process orders (product selection) and forward them to the payee.

产品信息可以按许多方式来提供,并且可用于许多方面的购物。饭店中的菜单的其他示例包括:Product information can be provided in many ways and used in many ways of shopping. Other examples of menus in restaurants include:

●商店/超市中的产品可设置有标识产品并提供支付信息的条形码71,使得PD 1能够处理针对产品85的支付交易。在这种情况下,PD 1可选择一种以上的产品,合计支付并采取一次交易。然后,TPS 2通知商家设备(在这种情况下,可以是电子收银机)这些产品已被购买。因此,自动促成了收银机的登录,可以不需要任何与商店收银机相关联的操作。可采用适当的系统从产品85上移除任何安全措施,这样支付人才能带着产品离开商店。可以为PD 1生成(上文所述的)收据。• Products in a store/supermarket may be provided with a barcode 71 identifying the product and providing payment information, enabling the PD 1 to process payment transactions for the product 85. In this case, PD 1 may select more than one product, pay in aggregate and take one transaction. The TPS 2 then notifies the merchant device (in this case, an electronic cash register) that these products have been purchased. Thus, login to the cash register is facilitated automatically and may not require any operations associated with the store cash register. An appropriate system can be used to remove any security measures from the product 85 so that the payer can leave the store with the product. A receipt (described above) can be generated for PD 1.

●可以从数据库86(其实际上是“购物”数据库)中下载产品列表。该数据库可包括多个商家以及与这些商家相关联的多个产品列表。支付人可经由PD 1(也许通过传送商家ID)来请求特定商家的菜单或者可浏览列表并上载一个或更多个菜单。他们随后可以购物并且远程地获得和支付商品,或订购和支付产品并亲赴商家店面(outlet)来接收商品。可以为PD 1提供适当的收据(例如,出现在屏幕上的条形码),在商家店面内可参照该收据来确保将商品提供给正确的人。• Product listings can be downloaded from database 86 (which is actually a "shopping" database). The database may include multiple merchants and multiple product listings associated with those merchants. The Payer may request a particular merchant's menu or browsable listing via PD 1 (perhaps by transmitting the merchant ID) and upload one or more menus. They can then shop and obtain and pay for the merchandise remotely, or order and pay for the product and visit a merchant outlet to receive the merchandise in person. PD 1 can be provided with an appropriate receipt (eg, a barcode that appears on the screen), which can be referenced within the merchant's storefront to ensure that the item is given to the correct person.

●例如,该数据库可为饭店和小餐馆提供外卖菜单。上载到PD 1的这种菜单的示例在图16中示出。例如,支付人可以在上班途中将小餐馆的菜单上载到他们的PD 1。他们可以输入对于咖啡、汉堡和蛋糕的定单并经由TPS 2将定单发送到小餐馆,同时支付该定单。当他们到达小餐馆时,他们的定单可能已经准备好了。应该注意的是,菜单可以从“通用购物数据库”中提供、从与商家相关联的系统(例如,商家网站)来提供,并且可以经由网络(例如互联网)上载到电话,或者从无源设备(例如条形码)来提供。• For example, the database could provide takeout menus for restaurants and diners. An example of such a menu uploaded to PD 1 is shown in Figure 16. For example, a payer can upload a diner's menu to their PD 1 on the way to work. They can enter an order for coffee, burgers and cakes and send the order to the diner via TPS 2 while paying for the order. By the time they arrive at the diner, their order may already be ready. It should be noted that menus may be provided from a "common shopping database", from a system associated with the merchant (e.g., a merchant's website), and uploaded to the phone via a network (e.g., the Internet), or from a passive device ( such as barcodes).

如上所述,受付人电子设备70可以只包括打印机,该打印机被构造用于从TPS 2接收交易授权并打印出定单(以及打印出收据74)。支付处理的主要负担由TPS 2和PD 1来承担。As noted above, the payee electronic device 70 may simply include a printer configured to receive transaction authorization from the TPS 2 and print out the order (and print out the receipt 74). The main burden of payment processing is borne by TPS 2 and PD 1.

可以执行在之前的实施例中所述的安全措施,例如来自PD 1的对支付的数字签名确认。Security measures described in previous embodiments may be implemented, such as digitally signed confirmation of payment from PD 1.

应该注意的是,在一个实施例中,交易处理系统2可以管理数据库86。在这种实施例中,PD 1可以向TPS 2发送商家ID、可选产品代码或产品族代码,TPS 2可访问数据库86并将可得到的物品的菜单(包括价格和描述)发送回PD 1。支付人经由PD 1来选择物品,然后向TPS 2发送物品列表、商店ID(可选的是商店内的位置)。然后,TPS获得支付授权并且将已支付的定单连同顾客标识一起发送给商店。如上所述,顾客标识可以包括需要与PD 1以某种形式(例如,条形码)提供的代码相匹配的代码。It should be noted that in one embodiment, transaction processing system 2 may manage database 86 . In such an embodiment, PD 1 may send a merchant ID, optional product code, or product family code to TPS 2, which may access database 86 and send back to PD 1 a menu of available items, including prices and descriptions . The payer selects the item via PD 1, and then sends the item list, store ID (optionally the location within the store) to TPS 2. The TPS then obtains payment authorization and sends the paid order to the store along with the customer identification. As mentioned above, the customer identification may include a code that needs to be matched with a code provided by the PD 1 in some form (eg, a barcode).

然后,商家将商品(例如,小餐馆的食物、送货到家的食物、送货到家的商品、可在商店的提货点(pick-up)得到的商品)提供给顾客。再如上所述,安全ID标签的停用(deactivation)可使得购物者方便地带着商品离开商店。The merchant then provides the item (eg, food at a diner, food delivered to home, item delivered to home, item available at a store's pick-up point) to the customer. As also described above, deactivation of the secure ID tag allows the shopper to conveniently leave the store with the merchandise.

如上所述,为了开帐单和订购,支付人的电子设备获得信息有多种方式。例如,可以利用光读取(例如,相机软件)、智能卡读取器/RFID标签读取器等来获得商店的详细信息,在某些情形下是商店内的位置,例如桌号或支付点。可以通过利用RFID读取器/光读取器扫描物品、滚动选择并点击下载到电话上的软件内的产品/服务菜单,或者手工输入产品代码来选择物品。As noted above, there are a number of ways for the payer's electronic device to obtain information for billing and ordering purposes. For example, optical reading (e.g., camera software), smart card readers/RFID tag readers, etc. can be utilized to obtain store details and in some cases locations within the store, such as table numbers or points of payment. Items may be selected by scanning the item with an RFID reader/optical reader, scrolling and clicking a product/service menu within software downloaded to the phone, or manually entering a product code.

下面是示范根据本发明实施例的用于在饭店、小餐馆等内进行订购和支付的系统应用的五个示例。Below are five examples demonstrating the application of the system for ordering and payment in restaurants, diners, etc. according to embodiments of the present invention.

示例1-标准的提供充分服务(full service)的饭店Example 1 - Standard full service restaurant

1.产生帐单并且与光/电可读的小餐馆/桌/金额一起传送;1. Generate a bill and send it along with an optical/electrical readable diner/table/amount;

2.顾客选择/拍照帐单/钱夹;2. The customer chooses/photographs the bill/wallet;

2(a).当金额不在帐单/钱夹上时,向厨房发送对于金额的请求,然后将金额发送至电话;2(a). When the amount is not on the bill/wallet, send a request for the amount to the kitchen, then send the amount to the phone;

3.顾客添加任何小费并且按下“OK”键,所有完成。3. The customer adds any tips and presses the "OK" button, all done.

示例2-提供充分服务的小餐馆Example 2 - Diner with full service

1.顾客选择/拍照桌号(其是小餐馆/桌号);1. The customer selects/photographs the table number (it is a small restaurant/table number);

2.(经由系统)向厨房发送对于金额的请求,然后将金额发送回电话;2. Send a request for the amount (via the system) to the kitchen, then send the amount back to the phone;

3.顾客添加任何小费并且按下“OK”键,所有完成。3. The customer adds any tips and presses the "OK" button, all done.

示例3-在柜台小餐馆处(counter cafe)进行订购和支付Example 3 - Ordering and payment at a counter cafe

1.顾客从收银处挑选餐桌号或坐在目前还未准备好的餐桌处;1. The customer selects the table number from the cashier or sits at a table that is not yet ready;

2.顾客选择/拍照小餐馆/餐桌号(该号还表明了进入定购模式的电话);2. The customer selects/photographs the restaurant/table number (this number also indicates the phone number to enter the order mode);

3.将菜单发送给电话;3. Send the menu to the phone;

4.顾客通过菜单/黑板输入物品号(大多数最大为两位数),然后按下“OK”键。作为另一种选择,顾客滚读物品并在要定购的物品上单击“OK”键;4. The customer enters the item number (2 digits maximum for most) via the menu/blackboard and presses the "OK" key. Alternatively, the customer scrolls through the items and clicks "OK" on the item to order;

5.电话以带有金额的文本的形式显示完成的定单。电话发送定单以虚记金额(salt),然后作为文本发送回电话-订购和支付一步完成!!;5. The phone displays the completed order in text with the amount. Phone order sent with a salt, then text back to the phone - order and pay in one step! ! ;

4.在厨房中打印定单条;4. Print the order slip in the kitchen;

5.工作人员送交准备好的定单。5. The staff sends the prepared order.

示例4-果汁/三明治酒吧/麦当劳等Example 4 - Juice/Sandwich Bar/McDonald's etc

1.顾客拍照/选择“小餐馆”号;1. The customer takes a photo/selects the "small restaurant" number;

2.将菜单发送到顾客电话;2. Send the menu to the customer phone;

3.顾客通过菜单/黑板输入物品号(大多数最大为两位数),然后按下“OK”键。作为另一种选择,顾客滚读物品并在要定购的物品上单击“OK”键;3. The customer enters the item number (2 digits maximum for most) via the menu/blackboard and presses the "OK" key. Alternatively, the customer scrolls through the items and clicks "OK" on the item to order;

4.发送顾客名并发送定单,以打印在厨房条上;4. Send the customer name and send the order to be printed on the kitchen bar;

5.如果订单准备好时呼叫顾客名而没有回答,则电话能够嗡嗡作响来提示。5. If the customer's name is called when the order is ready and there is no answer, the phone can buzz to remind.

示例5-现代化的提供充分服务的饭店餐馆Example 5 - Modern Full Service Restaurant

1.顾客能够在餐桌处选择定购,还有发信号通知需要以菜单做辅助的选择权。工作人员可例行告知详情等,当电子地“递送”菜单后,可显示“等待工作人员告知详情”。1. Customers can choose to order at the table, and there is a choice to signal the need for menu assistance. The staff can routinely inform the details, etc. After the menu is electronically "delivered", it can display "waiting for the staff to inform the details".

2.即使发送了定单,电话也返回“更多定购模式”,允许进一步定购甜点、咖啡、酒水等。结束进餐选项提示小费-发送支付并且通知餐馆,因而工作人员可以说“再见”等。2. Even though the order has been sent, the phone returns to "more order mode", allowing further orders for dessert, coffee, wine, etc. End meal option Prompt tip - send payment and notify restaurant so staff can say "goodbye" etc.

3.通过从外卖菜单或所存储的列表利用上述系统、发送名称而非餐桌号来提前定购的能力-取走定单,打进电话,支付,并且在准备好后能够通知购买者。3. Ability to order ahead by using the above system from the takeaway menu or stored list, sending the name instead of the table number - pick up the order, call in, pay, and be able to notify the buyer when it's ready.

如上所述,可以使用非接触式智能卡来提供或获得与支付有关的信息。同样可以使用良好接触型设备,其中触点被另一触点接触以获得支付信息。这些设备是公知的。As mentioned above, contactless smart cards can be used to provide or obtain payment-related information. Good touch type devices can also be used where a contact is touched by another contact to obtain payment information. These devices are well known.

其中支付人配备有能同时启动交易和进行支付的电子设备的交易流程的另一个示例如下:Another example of a transaction flow where the payer is equipped with an electronic device capable of both initiating the transaction and making the payment is as follows:

受付人设置有相对于TPS标识受付人的标识码。为受付人所提供的每个服务点提供唯一的标识码,该标识码包括受付人提供餐桌服务的餐桌号、外卖食物或其他食物服务柜台。还为受付人处的每个支付台(payment station)也分配唯一的标识码。The payee is provided with an identification code that identifies the payee with respect to the TPS. Provide a unique identification code for each point of service provided by the payee, which includes the table number, take-out food or other food service counter where the payee provides table service. Each payment station at the payee is also assigned a unique identification code.

受付人的标识码设置在:The payee's identification code is set at:

1.打印或电子形式的受付人名片的表格1. Form for payee business card in print or electronic form

2.受付人的打印菜单或小册子上2. On the payee's printed menu or brochure

3.受付人经营场所内的餐桌号标识符处3. The table number identifier in the business premises of the payee

4.位于任何其他方便的位置处4. At any other convenient location

支付人通过下列方式之一来指定受付人唯一标识码而启动交易:The payer initiates the transaction by specifying the unique identification code of the payee in one of the following ways:

1.通过电话中的或者存储在该受付人所用的远程服务器上的软件从所存储的“常见受付人”列表中选择受付人标识码;1. Select the payee identification code from the stored list of "common payees" by the software on the phone or stored on the remote server used by the payee;

2.手工输入受付人标识码;2. Manually input the payee identification code;

3.自动输入受付人标识码;3. Automatically input the payee identification code;

3(a).经由相机对标识码进行光学扫描并且对链接在或并入在设备中的软件进行解码;3(a). Optical scanning of the identification code via a camera and decoding of software linked or incorporated in the device;

3(b).经由链接在或并入在设备中的“条形码”扫描仪或类似光读取器;3(b). Via a "barcode" scanner or similar optical reader linked to or incorporated in the device;

3(c).经由链接在或并入在设备中的RFID读取器或非接触式智能卡读取器;3(c). Via an RFID reader or contactless smart card reader linked to or incorporated in the device;

3(d).经由用于启动受付人的设备以通过蓝牙(Bluetooth)或其他无线手段将标识码提供给设备的RFID或非接触式智能卡。3(d). Via an RFID or contactless smart card for activating the payee's device to provide the identification code to the device via Bluetooth or other wireless means.

如果检测到的或输入到支付人设备中的受付人标识号标识了支付台,则如针对支付所述地继续进行所要求的交易。If the payee identification number detected or entered into the payer device identifies the payment station, then proceed with the required transaction as described for payment.

如果标识号标识了受付人的任何其他服务点,则假定支付人希望现在标识支付人希望从受付人获得和支付的商品和服务。If the identification number identifies any other point of service of the payee, it is assumed that the payer wishes to now identify the goods and services that the payer wishes to obtain and pay for from the payee.

然后,受付人的设备可呈现可以从受付人处得到的选项的菜单。The payee's device may then present a menu of options available from the payee.

支付人选择物品标识码所要求的各个物品。这些代码可以:The payer selects the individual items required by the item identification code. These codes can:

1.利用设备键盘手工输入,例如5<ok>,其中“5”是期望物品的代码;1. Use the device keyboard to manually input, such as 5<ok>, where "5" is the code of the desired item;

2.利用小型设备(例如移动电话)上所公知的“滚选”法从该受付人为设备提供的菜单中进行选择;2. Select from a menu provided to the device by the payee using the known "scroll" method on a small device such as a mobile phone;

3(a).经由相机对标识码进行光学扫描并且对链接在或并入在设备中的软件进行解码;3(a). Optical scanning of the identification code via a camera and decoding of software linked or incorporated in the device;

3(b).经由链接在或并入在设备中的“条形码”扫描仪或类似光读取器;3(b). Via a "barcode" scanner or similar optical reader linked to or incorporated in the device;

3(c).经由链接在或并入在设备中的RFID读取器或非接触式智能卡读取器;3(c). Via an RFID reader or contactless smart card reader linked to or incorporated in the device;

3(d).经由用于启动受付人的设备以通过蓝牙或其他无线手段将标识码提供给设备的RFID或非接触式智能卡。3(d). Via an RFID or contactless smart card for activating the payee's device to provide the identification code to the device via Bluetooth or other wireless means.

在列表完成时,受付人例如,通过按下<ok>键指示列表完成,而不输入任何代码。然后,受付人的设备可显示被选择让受付人浏览的物品的列表和这些物品的价格。Upon completion of the list, the payee indicates completion of the list without entering any code, for example, by pressing the <ok> key. The payee's device may then display a list of items selected for viewing by the payee and the prices for those items.

受付人在此处拥有将帐户从默认帐户改变为用于支付的帐户的选择权,以简单地指示继续进行(例如,通过按下<ok>键)或取消。Here the payee has the option to change the account from the default account to the account used for payment, to simply indicate to proceed (eg by pressing the <ok> key) or to cancel.

受付人的设备可请求PIN或其他生物特征以确认交易。The payee's device may request a PIN or other biometric to confirm the transaction.

然后,将物品列表直接发送到提供给受付人用于接收该列表的设备,并且在优选实施例中打印该列表,或者经由TPS间接地发送。根据受付人的商业安排,支付可在列表发送给受付人之前已经完成,或者留待稍后(例如当顾客接收到商品或服务时,或者当顾客选择完成与受付人的交易时)发送。在所有情况下,系统都通过从一开始就标识支付人来为支付提供安全措施。The list of items is then sent directly to the facility provided to the payee for receiving the list, and in a preferred embodiment printed, or indirectly via the TPS. Depending on the payee's commercial arrangements, payment may be completed before the list is sent to the payee, or it may be sent at a later time (such as when the customer receives the goods or services, or when the customer chooses to complete the transaction with the payee). In all cases, the system provides security for payments by identifying the payer from the outset.

支付人的支付人设备可被构造为允许继续定购另外的物品直到支付人指定为止。在这种情况下,支付可在此时开始,并且可以为支付人提供改变要支付的金额或“分裂帐单”的选择权。The payer's payer device may be configured to allow continued ordering of additional items until specified by the payer. In this case, payment can be initiated at this time and the payer can be given the option to change the amount to be paid or to "split the bill".

分裂帐单使得另外的支付人可以在受付人标识码处加入该交易,每个支付人都指示总金额的份额数(例如,1人、2人)。Splitting the bill allows additional payers to join the transaction at the payee identification code, each payer indicating a share of the total amount (eg, 1 person, 2 people).

图17例示了根据本发明实施例的使用预批准处理的交易处理。在该实施例中,通过利用支付人电子设备,支付人可以预批准为他们还未承担的交易进行支付。这对于许多交易类型或状况特别有用,例如在不出示卡的交易中,如通过互联网的支付。根据该实施例,支付人向TPS 2发送包括预批准指令的预批准消息。预批准指令可以包括用于标识随后要发生的交易的详细信息。例如,详细信息可以包括要进行的支付量。然后,支付人例如执行互联网交易,但在进行交易支付之前,TPS 2对预批准详细信息与交易详细信息进行核对。然后,TPS 2可依据详细信息的匹配来确认或拒绝支付。Figure 17 illustrates transaction processing using pre-approval processing according to an embodiment of the present invention. In this embodiment, by utilizing the payer electronic device, the payer can pre-approve payment for transactions that they have not committed. This is particularly useful for many transaction types or situations, for example in transactions where the card is not presented, such as payments over the Internet. According to this embodiment, the payer sends a pre-approval message including a pre-approval instruction to TPS 2. The pre-approval instructions may include details identifying transactions to occur subsequently. For example, the details may include the amount of the payment to be made. The payer then, for example, executes an Internet transaction, but before making payment for the transaction, the TPS 2 checks the pre-approval details with the transaction details. TPS 2 can then confirm or deny the payment depending on the match of the details.

更详细地说,参照图17,在步骤100,支付人确定他们希望执行的交易。例如,交易可以是互联网交易。支付人可能要求从商家互联网站点购买物品(item)。因此,支付人能够确定交易的详细信息,例如商家提供出售的商品/服务所要求的支付金额。In more detail, referring to Figure 17, at step 100 the payer determines the transaction they wish to perform. For example, a transaction may be an Internet transaction. A payer may request to purchase an item from a merchant Internet site. Thus, the payer is able to determine details of the transaction, such as the payment amount required by the merchant to provide the good/service sold.

在步骤101,支付人向TPS发送预批准指令。预批准指令包括TPS为确认或拒绝后续交易所使用的交易详细信息。详细信息可包括实现交易的标识和授权的任何详细信息。例如,它们可以包括交易的支付金额。In step 101, the payer sends a pre-approval instruction to the TPS. Pre-approval instructions include transaction details that TPS uses to confirm or reject subsequent transactions. The details may include any details that enable identification and authorization of the transaction. For example, they can include payment amounts for transactions.

在步骤102,TPS将预批准存储在数据库中。该数据库可包括标识支付人的“支付”信息、包括针对预授权的支付金额的详细信息的“金额”信息、“交易号”和“时间”(其可包括交易将发生的时间)。一旦“时间”届满,TPS随后就可能不批准交易。At step 102, the TPS stores the pre-approval in a database. The database may include "Payment" information identifying the payer, "Amount" information including details for the pre-authorized payment amount, a "Transaction Number" and a "Time" (which may include the time the transaction will take place). Once the "time" has expired, the TPS may then not approve the transaction.

在步骤103,支付人以通常方式承担交易。例如,当交易是互联网交易时,支付人可在提供用于接收这种详细信息的商家网站的网页上输入信用卡详细信息。详细信息还包括可由支付人输入或由商家自动输入的支付。然后,将这些交易详细信息提供给TPS。它们可以按多种方式来提供。例如,可经由商家系统通过通常传输(usual transmission)将他们提供给TPS。At step 103, the payer undertakes the transaction in the usual manner. For example, when the transaction is an Internet transaction, the payer may enter credit card details on a web page of a merchant website provided for receiving such details. Details also include payments that can be entered by the payer or automatically by the merchant. These transaction details are then provided to the TPS. They can be provided in a variety of ways. For example, they may be provided to the TPS via the usual transmission via the merchant system.

在步骤104,TPS对接收的交易详细信息与数据库中的预批准详细信息进行核对,然后,根据详细信息是否匹配来授权(或不授权)交易。然后,可向支付人和受付人发送确认(步骤105)。例如,对支付人的确认可以通过SMS消息来进行。In step 104, the TPS checks the received transaction details against the pre-approved details in the database, and then authorizes (or not authorizes) the transaction depending on whether the details match. A confirmation may then be sent to the payer and payee (step 105). For example, confirmation of the payer can be done by SMS message.

如果在批准处理中,TPS要求进一步的确认,则它们可使用如以上结合前几个附图所述的方法。作为另一种选择或另外的是,它们可进行SMS消息交换,或甚至可利用支付人电子设备进行电话呼叫。If, in the approval process, the TPS requires further confirmation, they may use the method as described above in connection with the previous figures. Alternatively or in addition, they could exchange SMS messages, or even make phone calls using the payer electronic device.

如上所述,该实施例对于为不出示卡的交易提供额外的授权步骤特别有用。As noted above, this embodiment is particularly useful for providing an additional authorization step for card-not-present transactions.

该实施例还可用作出示卡的交易的额外安全层。此外,上述本发明的前面几个实施例依赖于在支付人的电子设备与用于发生交易的TPS之间存在开放的通信信道。如果这些通信信道在出示卡的交易时不是开放的(例如,支付人电子设备是处于适当发送器范围之外的移动电话),则交易不会被授权。本发明的该实施例使得可以选择在失败交易后进行预批准。如果失败发生,则支付人找到在它们的支付人设备与TPS之间存在开放的通信信道的位置,并且提供预批准详细信息。然后,他们返回在不存在通信信道的位置处进行交易。随后,交易如上所述继续进行,即使支付人的电子设备落在通信范围以外,为了实现交易,TPS也对预批准详细信息与交易的详细信息进行比较。This embodiment can also be used as an extra layer of security for card presented transactions. Furthermore, the previous several embodiments of the present invention described above rely on the existence of an open communication channel between the payer's electronic device and the TPS for the transaction to occur. If these communication channels are not open when the card is presented for the transaction (eg, the payer electronic device is a mobile phone that is out of range of the appropriate transmitter), the transaction will not be authorized. This embodiment of the invention makes it possible to choose to pre-approve after a failed transaction. If a failure occurs, the Payer finds where there is an open communication channel between their Payer Device and the TPS, and provides pre-approval details. They then return to transact at a location where no communication channel exists. The transaction then proceeds as described above, even if the payer's electronic device falls out of communication range, the TPS compares the pre-approval details with those of the transaction in order to effectuate the transaction.

在这样的失败交易的情况下,系统可能已经从商家获得了与交易有关的信息。即,由于试图进行交易但由于无法联系打电话叫的人(personsphone)而失败,所以某些交易信息已提供给TPS。在该实施例中,TPS可继续尝试并且联系支付人的设备,直到支付人在范围内为止。当支付人在范围内,并且建立了联系时,授权者实体可将交易信息提供给支付人设备,支付人只需确认该交易信息是正确的。然后,支付人接着返回到商家,再次进行交易,此时交易由于支付人通过向授权者实体确认交易的详细信息而输入的所存储的预授权而通过(go through)。In the case of such a failed transaction, the system may have obtained transaction-related information from the merchant. That is, certain transaction information has been provided to the TPS due to an attempt to conduct a transaction but failed due to the inability to contact the persons phone. In this embodiment, the TPS may continue to try and contact the Payer's device until the Payer is within range. When the payer is within range and a connection is established, the authorizer entity can provide transaction information to the payer device, and the payer only needs to confirm that the transaction information is correct. Then, the payer then returns to the merchant and conducts the transaction again, at which point the transaction goes through due to the stored pre-authorization entered by the payer by confirming the details of the transaction with the authorizer entity.

对于不出示卡的交易,通常情况是这样的,商家向金融机构提供交易的详细信息并且要求它们确认支付人有足够资金进行支付,并且在发出向支付人提供商品的定单 之前冻结这些资金。只有在此之后交易才会通过。在一个实施例中,TPS可使用该商家预批准信息来联系与支付人相关联的电子设备,并且要求支付人确认交易被授权。交易可由一些交易的详细信息(例如支付金额)来标识。一旦支付人授权了支付,就可以接着处理该交易。可以将交易的详细信息保存在数据库中直到交易实际发生为止。For card-not-present transactions, as is often the case, the merchant provides the financial institution with details of the transaction and asks them to confirm that the payer has sufficient funds to pay and to hold those funds before placing an order to supply the payer with goods. Only after that the transaction will go through. In one embodiment, the TPS may use the merchant pre-approval information to contact the electronic device associated with the payer and ask the payer to confirm that the transaction is authorized. A transaction may be identified by some transaction details such as payment amount. Once the payer authorizes the payment, the transaction can then be processed. The details of the transaction can be kept in the database until the transaction actually occurs.

类似的预批准系统可用于人们彼此之间的在线支付。A similar pre-approval system could be used for online payments that people make with each other.

该实施例有用的另一种情形是周期支付,即,对于支付人来说每月进行的支付。预批准可连同交易时间(例如,支付应该发生的月的时间)一起存储在数据库中,TPS在每次从受付人接收到支付请求时都会检查预批准详细信息。这为周期性支付提供了额外的安全级。还可防止支付比约定的更加频繁地进行。Another situation where this embodiment is useful is periodic payments, ie, payments made monthly to the payer. The pre-approval can be stored in the database along with the transaction time (eg, the time of month the payment should have occurred), the TPS checking the pre-approval details each time a payment request is received from the payee. This provides an extra level of security for recurring payments. It can also prevent payments from being made more frequently than agreed.

在另一实施例中,用于向PD 1提供信息的无源设备可包括与该无源设备所使用的应用有关的信息。例如,当无源设备是条形码时,其可包括与以下应用有关的信息,该应用需要在PD设备1上运行以使得可以处理条形码信息。In another embodiment, a passive device for providing information to PD 1 may include information related to an application used by the passive device. For example, when the passive device is a barcode, it may include information related to an application that needs to run on the PD device 1 so that the barcode information can be processed.

参照图18,可提供被配置为在PD 1上运行的许多不同支付处理应用。例如,支付处理应用150可被配置为特定用于停车计时器(parkingmetre)的支付处理。另一种支付处理应用151可被配置为处理帐单的支付,另一种支付处理应用152可被配置为处理饭店的支付。在另一个实施例中,应用可根本不涉及支付处理,而是具有其他功能。例如,一个应用可以是使PD 1能够上载并且处理名片信息的名片应用。Referring to Figure 18, a number of different payment processing applications configured to run on PD 1 may be provided. For example, payment processing application 150 may be configured specifically for payment processing for parking meters. Another payment processing application 151 may be configured to process payment of bills, and another payment processing application 152 may be configured to process payment to restaurants. In another embodiment, the application may not involve payment processing at all, but have other functions. For example, one application may be a business card application that enables PD 1 to upload and process business card information.

该系统的优点是,掌握条形码中与条形码本身有关的信息使得PD 1能够在应用已经在电话上的情况下获得正确的应用或识别应用。当PD 1有必要获得应用时,条形码可提供可从中获得应用的位置信息,例如互联网节点的位置。The advantage of this system is that having information in the barcode related to the barcode itself enables the PD 1 to get the correct application or identify the application if the application is already on the phone. When it is necessary for PD 1 to obtain an application, the barcode can provide location information from which the application can be obtained, such as the location of an Internet node.

无源设备不限于条形码153,虽然利用常规电话技术相机55容易获得,但它也可以是任何其他类型的无源设备。应用可存储在可通过诸如互联网的网络进行访问的数据库中。The passive device is not limited to the barcode 153, although a camera 55 is readily available using conventional telephone technology, it could be any other type of passive device. Applications may be stored in a database accessible over a network such as the Internet.

图19例示了交易处理系统2的可能部件。在一个实施例中,交易处理系统可包括网关160,网关160可包括用于与支付人设备和受付人设备进行通信的系统,还有用于与“后端”处理器进行通信的系统。常规的交易通常会要求商家设备与由收单行161管理的支付网关进行通信,收单行161随后与金融机构162(其可以是发卡银行)进行通信,以确定是否授权支付。然后,收单行161通常会向受付人设备提供授权或拒绝。本发明实施例的TPS可以的确只是具有适当系统的收单行161,或可以是运行网关160并从商家设备或支付人设备向收单行提供信息的单独实体。网关还可运行如结合以上实施例所述的使支付人设备能够上载菜单的“通用购物数据库”163,和使支付人能够经由网关下载预批准的交易预批准数据库164。FIG. 19 illustrates possible components of a transaction processing system 2 . In one embodiment, the transaction processing system may include a gateway 160, which may include systems for communicating with payer devices and payee devices, as well as systems for communicating with "back-end" processors. A routine transaction would typically require the merchant device to communicate with a payment gateway managed by the acquirer 161, which in turn communicates with the financial institution 162 (which may be the issuing bank) to determine whether to authorize the payment. The acquirer 161 will then typically provide authorization or denial to the payee device. The TPS of an embodiment of the present invention may indeed simply be the acquirer 161 with appropriate systems, or may be a separate entity that operates the gateway 160 and provides information to the acquirer from either the merchant device or the payer device. The Gateway may also run a "Universal Shopping Database" 163 that enables Payer devices to upload menus, and a Transaction Pre-Approval Database 164 that enables Payers to download pre-approved via the Gateway, as described in connection with the above embodiments.

TPS可包括单独地执行所有这些功能或一起执行所有这些功能或执行这些功能的不同部分的组合的组织(organisation)。A TPS may include an organization that performs all of these functions individually, or all of these functions together, or a combination of different parts that perform these functions.

交易处理系统可由适当的软件和硬件(通常是服务器计算机)来实施。A transaction processing system may be implemented by suitable software and hardware, typically a server computer.

图20是根据本发明实施例的可用于实现支付人设备的经改装移动电话的组件的框图。本文之前的部分中所讨论的大多数功能都可通过以应用121的形式载入到移动电话中的软件来实现。这些应用包括使得能够准备适当的消息的支付应用。通过这些应用,移动电话可被构造用于识别支付信息。这通常是不能由标准计算设备来实现的。20 is a block diagram of components of a retrofitted mobile phone that may be used to implement a payer device according to an embodiment of the invention. Most of the functions discussed in the previous sections of this text can be implemented by software loaded into the mobile phone in the form of applications 121 . These applications include payment applications that enable the preparation of appropriate messages. With these applications, mobile phones can be configured to recognize payment information. This is generally not possible with standard computing equipment.

考虑万维网进行对比。万维网构成了通用浏览数据库。该网络包括一种系统,其中可以使用组合了“站点”的描述和站点内的另外位置信息(被称作URL)的“请求”来检索通用格式的信息,该信息使得被构造为可处理这种格式的计算机能够显示文本、图形和链接并且可以处理这些文本、图形和链接。Consider the World Wide Web for comparison. The World Wide Web constitutes a universal browsing database. The network includes a system in which information can be retrieved using a "request" that combines a description of the "site" and additional location information within the site (known as a URL), which allows information in a common format that is structured to handle the A computer capable of displaying and processing text, graphics, and links in this format.

目前人们可以通过网络购物,但还没有允许计算机通过网络进行购物的系统。网络语言(html)指定了标记符,使得计算机能够识别和显示标题(heading)、识别和显示链接等,但不能够识别物品代码或价格。计算机的用户必须读取屏幕上的信息并确定物品描述或价格是否存在。Currently people can shop online, but there is no system that allows computers to shop online. The web language (html) specifies tags so that a computer can recognize and display headings, recognize and display links, etc., but cannot recognize item codes or prices. A user of the computer must read the information on the screen and determine whether an item description or price exists.

应用121可包括使得支付人设备能够识别并处理支付信息的应用。如以下实施例中所述的,所提出的一个实施例包括“通用购物数据库”。对于这种数据库,请求可特别地含有用于识别提供待售产品的商店的代码,并且需要以下两种类型的请求,而非得到显示页:Applications 121 may include applications that enable a payer device to recognize and process payment information. One proposed embodiment includes a "universal shopping database" as described in the following examples. For such a database, the request may specifically contain a code identifying the store offering the product for sale, and instead of getting a display page, the following two types of requests are required:

1.以便于自动处理的格式和以通用格式获得待售物品的描述和价格,使得计算机能够根据各个响应而自动创建价格和描述的表格的请求。该请求被称作“菜单”请求;以及1. A request to obtain descriptions and prices of items for sale in a format convenient for automatic processing and in a common format enabling a computer to automatically create a table of prices and descriptions from individual responses. This request is referred to as a "menu" request; and

2.购买物品或从前面的“菜单请求”中收集所获得的物品的通用请求。2. General request to purchase items or to collect items obtained from the previous "menu request".

利用常规网络语言(html)进行网上购物的示例如下:An example of online shopping using conventional web language (html) is as follows:

  Request=www.sampleshop.com/buypage.htmlRequest=www.sampleshop.com/buypage.html

  Response=Response=

  <!DOCTYPE HTML PUBLIC″-//W3C//DTD HTML 4.01 Transitional//EN″<! DOCTYPE HTML PUBLIC″-//W3C//DTD HTML 4.01 Transitional//EN″

  ″http://www.w3.org/TR/htm14/loose.dtd″>"http://www.w3.org/TR/htm14/loose.dtd">

  <html><html>

  <head><head>

  <meta http-equiv=″Content-Type″content=″text/html;charset=iso-8859-1″><meta http-equiv="Content-Type" content="text/html; charset=iso-8859-1">

  <title>Untitled Document</title><title>Untitled Document</title>

  </head></head>

  <body><body>

  <h2>Welcome to the shop!</h2><h2>Welcome to the shop! </h2>

  <p>Click<a href=″buywidget.html″>here</a>to buy a widget for$50!</p><p>Click<a href=″buywidget.html″>here</a> to buy a widget for $50! </p>

  <p>&nbsp;</p><p>&nbsp;</p>

  </body></body>

  </html></html>

网站浏览程序使用标记符来处理与网站浏览有关的信息,例如,标记符<h2>和</h2>之间的文本是标题。Website browsing programs use tags to process information related to website browsing, for example, the text between the tags <h2> and </h2> is a heading.

  “widget”的价格是$50的事实与网站浏览器无关。The fact that the price of a "widget" is $50 has nothing to do with the web browser.

作为对照,使用所提出的“世界商店格式”,请求看起来像:For comparison, using the proposed "world store format", the request would look like:

  “store=1234,menu=a”"store=1234, menu=a"

而响应如下:And the response is as follows:

  <itemID>1567<itemDesc>Widget<price>5000<itemID>1567<itemDesc>Widget<price>5000

该响应需要由“购物程序”而非“网站浏览程序”来读取。在这种情况下,如何显示信息取决于“购物程序”。然而,该程序知道物品以一定价格出售。如果用户选择购买该物品,则该程序知道该物品正被购买。The response needs to be read by a "shopping program", not a "web browsing program". In this case, how the information is displayed depends on the "shopping program". However, the program knows that items are sold for a certain price. If the user chooses to buy the item, the program knows that the item is being purchased.

这具有以下优点,进行购买所需的安全措施可由程序自动应用,并且可自动保存购买的历史记录。This has the advantage that the security measures required to make a purchase can be automatically applied by the program, and a history of purchases can be automatically saved.

还可加载使电话能够读取条形码(或其他无源设备)的其他应用121。Other applications 121 that enable the phone to read barcodes (or other passive devices) may also be loaded.

此外,为了进一步增加如上所述的(说明书中稍后进一步例示的)安全措施,可以采用固件122。Furthermore, to further add security measures as described above (further exemplified later in the specification), firmware 122 may be employed.

经改变的(adapted)电话包括发送器/接收器119、处理器118、SIM卡116、时钟123、RAM 117a、闪速ROM 117b、LCD显示器1 33以及驱动器130、键盘112、导航键110、相机124、扬声器115、麦克风116和A-D转换器114。它还包括天线120、无线模块125(例如蓝牙或通用分组无线业务(GEPRS))。The adapted phone includes transmitter/receiver 119, processor 118, SIM card 116, clock 123, RAM 117a, flash ROM 117b, LCD display 133 and driver 130, keyboard 112, navigation keys 110, camera 124 , speaker 115 , microphone 116 and A-D converter 114 . It also includes an antenna 120, a wireless module 125 (such as Bluetooth or General Packet Radio Service (GEPRS)).

硬件还可包括能够利用键加密方法识别用户的安全模块。安全模块被设置为众所周知的cyrtosis,这是由Rivest、Shamir和Adleman(RSA)定义的系统或电曲线加密方法。当设备是移动电话时,其包括SIM,在该实施例的任何变型例中,SIM都被设置为充当安全模块。The hardware may also include a security module capable of identifying the user using key encryption. The security module was set to the well-known cyrtosis, a systematic or electrical curve encryption method defined by Rivest, Shamir, and Adleman (RSA). When the device is a mobile phone, it includes a SIM, which in any variant of this embodiment is arranged to act as a security module.

支付人设备可不包括用于实现本发明实施例的上述所有部件。例如,对于一些实施例,诸如预批准,不需要具有访问装置或固件。在其他实施例中,为了提供额外的安全层,可只设置固件,而不设置访问装置。访问装置和固件提供了四个安全层。The payer device may not include all the above-mentioned components for implementing the embodiments of the present invention. For example, for some embodiments, such as pre-approval, it is not necessary to have an access device or firmware. In other embodiments, to provide an additional layer of security, only the firmware may be provided without the access device. The access device and firmware provide four layers of security.

综上,该系统可由与支付人相关联的电子设备(例如移动电话)来实施,基本上为三层面实施:To sum up, the system can be implemented by an electronic device (such as a mobile phone) associated with the payer, basically implemented in three levels:

1.标准的移动电话,具有或不具有使其对用户更友好的JAVA或另一种应用。该系统在该层面上的基础是,在没有安全的移动电话的情况下,必须为现有的安全措施添加安全措施。在该层处,例如可通过简单的SMS消息来实施针对交易的预批准的批准。1. A standard mobile phone, with or without JAVA or another application to make it more user friendly. The basis of the system at that level is that in the absence of a secure mobile phone, security measures must be added to existing security measures. At this layer, pre-approved approvals for transactions can be implemented, for example, by simple SMS messages.

2.系统“保护”的移动电话。利用防病毒攻击的固件来提供签名系统,利用软件来处理来自系统的输入消息。签名和PIN键盘可由利用移动电话批准所有交易来代替。2. The system "protects" the mobile phone. Virus-resistant firmware is used to provide the signature system, and software is used to process incoming messages from the system. Signature and PIN pads can be replaced by approving all transactions using the mobile phone.

3.启动支付的接触和非接触式ID(访问设备)和移动电话的使用是交易的主要通信设备。3. The use of contact and contactless IDs (access devices) and mobile phones to initiate payments are the primary communication devices for transactions.

应该注意的是,支付人电子设备可不包括经改装的移动电话。它可包括任何其他计算设备(优选地是便携式的),例如PDA。它甚至可包括特别构造作为支付人电子设备的专用设备。It should be noted that payer electronic devices may not include modified mobile phones. It may include any other computing device (preferably portable), such as a PDA. It may even include specialized devices specially constructed as payer electronic devices.

术语“电子设备”不应该认为限于只由或完全由电子装置操作的设备。本发明可使用任何类型的处理设备(例如,可利用光传输而执行的设备)作为支付人设备和/或受付人设备。The term "electronic equipment" should not be considered limited to equipment operated solely or entirely by electronic means. The present invention may use any type of processing device (eg, a device that may execute using optical transmission) as the payer device and/or the payee device.

可利用本发明的另一个实施例来避免必须对支付人进行提示。支付人设备在被提示时经由系统注册一个人(支付人),该系统直接或者通过服务器向电话发送信号。作为另一种选择,当电话置于提示时,电话可周期性地推动(pole)提示状态,以将当前的状态通知给用户。这可用在任何提示中,以在定单准备好时通知支付人。或者给以提示码的提示,或者经由联系列表或其他电子装置电子地读取或利用相机(条形码)光学地读取。然后,系统提供什么号码位于提示的最前面的连续状态更新,使得电话能显示在你之前被服务的最后几个号码。该系统包括提示数据库,和用于通知电话它们处于提示中的位置的装置。因此,支付人设备可提前定购并且在准备收集(pick up)定单时通知支付人。Another embodiment of the present invention can be utilized to avoid having to prompt the payer. The payer device, when prompted, registers a person (payer) via the system, which sends a signal to the phone either directly or through a server. Alternatively, when the phone is in alert, the phone may periodically pole the alert state to inform the user of the current state. This can be used in any alert to notify the payer when the order is ready. Either give a reminder of the prompt code, or read it electronically through a contact list or other electronic device or use a camera (barcode) to read it optically. The system then provides continuous status updates of what number is at the top of the prompt, enabling the phone to display the last few numbers served before you. The system includes an alert database, and means for notifying phones of their position in the alert. Thus, the payer device can be ordered in advance and the payer is notified when the order is ready to be picked up.

下面将描述本发明实施例的另外几个示例。Several other examples of embodiments of the present invention will be described below.

本发明的经改进的支付系统利用了以下事实:许多市场中的大多数消费者都把他们自己的计算设备(通常是移动电话)带到销售点。对该设备的低成本改装可以使新的支付系统不仅能够处理当前系统的安全问题,而且能够带来许多新的另外的新特征。The improved payment system of the present invention takes advantage of the fact that most consumers in many markets bring their own computing device (usually a mobile phone) to the point of sale. A low-cost retrofit to this device could enable a new payment system not only to handle the security issues of current systems, but also to bring in many new additional novel features.

利用这一新系统,商家将有利地拥有接受交易的经改进的新方式。银行能够减少或消除昂贵的费用备份(charge back)并且增加消费者的信心。移动电话公司有了新的“杀手:”用于移动电话的应用。With this new system, merchants will advantageously have new and improved ways of accepting transactions. Banks can reduce or eliminate costly charge backs and increase consumer confidence. Cell phone companies have a new "killer:" apps for cell phones.

本发明实施例的系统利用了已“升级”到能够在无线覆盖区的任何位置进行操作的移动电话或袖珍计算机形式的经改造的消费者电子计算机。该系统提出,所有交易都包括利用该升级的设备从消费者(支付人)处获得核实。这样,所有交易都由消费者来核实。诸如在销售点、通过电话购买或互联网购买的实时交易可在当时进行核实。The system of an embodiment of the present invention utilizes a modified consumer electronic computer in the form of a mobile phone or pocket computer that has been "upgraded" to operate anywhere in the wireless coverage area. The system proposes that all transactions include verification from the consumer (payer) using the upgraded device. In this way, all transactions are verified by consumers. Real-time transactions such as purchases at the point of sale, over the phone, or over the Internet can be verified at the time.

诸如帐单支付的任何后台周期性支付将在设定支付时进行整体批准,在该示例中,如果要求覆盖消费者睡眠或在交易时无法联系的状况,则使得以24小时周期地进行任何后续的另外批准。Any background recurring payments such as bill payments will be approved in its entirety at the time the payment is set up, in this example making any follow up on a 24 hour cycle if required to cover the consumer sleeping or being unavailable at the time of the transaction additional approval.

支付系统考虑到要求对移动电话或袖珍计算机进行的改变,使得可以进行安全且简单地使用支付交易的核实。The payment system allows for the changes required to be made to the mobile phone or pocket computer so that verification of payment transactions can be performed securely and simply.

另外要考虑为实现最佳操作所需的对其余支付系统的改变,以及当这种设备是系统的一部分时利用所出现的机会。Also consider the changes to the rest of the payment system required for optimal operation, and take advantage of opportunities that arise when such devices are part of the system.

在该示例中,在大多数情况下,在消费者进行购买时能够无线地接通移动电话或袖珍计算机。In this example, in most cases, a mobile phone or pocket computer can be wirelessly accessed while the consumer is making a purchase.

针对可选操作来升级设备要求设备配备有:Upgrading the unit for optional operation requires the unit to be equipped with:

●无线数据通信系统,例如GPRS或蓝牙●Wireless data communication systems such as GPRS or Bluetooth

●方便支付核实的软件和/或固件● Software and/or firmware to facilitate payment verification

●能够利用公共密钥加密法“签署”交易的安全模块● A security module capable of “signing” transactions using public key cryptography

●非接触式智能卡。该设备还能够在提供给消费者之前或在现场为支付功能进行编程。●Contactless smart card. The device is also capable of being programmed for payment functions before being provided to the consumer or in the field.

注意:虽然设备被称作PINpad,但是不是必须使用PIN。Note: Although the device is called a PINpad, it is not necessary to use a PIN.

根据支付系统的原理将非接触式智能卡提供给消费者。非接触式智能卡是众所周知的设备,通常用在运输系统中。非接触式智能卡的典型特征是,其由距离0到10厘米的被称为非接触式智能卡读取器的设备供电和“读取”(实际上与之通信)。Contactless smart cards are provided to consumers on the principle of payment systems. Contactless smart cards are well known devices that are commonly used in transportation systems. A typical feature of a contactless smart card is that it is powered and "read" (actually communicates with) a device called a contactless smart card reader at a distance of 0 to 10 cm.

在该系统的优选实施例中,消费者将他的非接触式智能卡放在他的移动电话的背面,使其不干扰任何相机、电池盖或电话(或袖珍计算机)的其他功能。卡与消费者设备之间的任何电连接都是不必要的。物理上连接卡是为了方便以及将卡与设备结合在一起。In the preferred embodiment of the system, the consumer places his contactless smart card on the back of his mobile phone so that it does not interfere with any camera, battery cover or other functions of the phone (or pocket computer). Any electrical connection between the card and the consumer device is unnecessary. Physically connecting the card is for convenience and to combine the card with the device.

在根据实施例的系统中启动支付Initiating a payment in a system according to an embodiment

升级的支付点Upgraded payment points

为了在为新系统装备的支付点处启动支付,消费者使袖珍PINpad接触该支付点处的特殊标记的读取器,以表示他/她期望利用该系统进行支付。To initiate a payment at a payment point equipped for the new system, the consumer touches a pocket PINpad to a specially marked reader at the payment point to indicate that he/she wishes to make a payment with the system.

非接触式智能卡(附接在电话或袖珍计算机上)将详细信息传递给支付点,以实现距离较远的两个设备之间的进一步通信。既然支付点已获得如何接触袖珍式PINpad的详细信息,消费者现在就仅需要保持在内置其袖珍PINpad中的无线通信的范围内。A contactless smart card (attached to a phone or pocket computer) relays the details to the point of payment for further communication between the two devices at a distance. Now that the point of payment has the details of how to access the pocket PINpad, the consumer now only needs to stay within range of the wireless communication built into his pocket PINpad.

传统支付点traditional payment point

系统的可选特点是,即使在还未升级到接受新系统的支付点也能够提供新的支付系统。An optional feature of the system is the ability to offer the new payment system even at payment points that have not yet been upgraded to accept the new system.

为了在这些现有的支付点提供该系统-消费者的银行在后台激活该系统。To provide the system at these existing payment points - the customer's bank activates the system in the background.

在这种情况下,可在销售点提供消费者的普通信用卡,并且交易像传统的交易一样继续进行。当支付请求到达消费者银行时,银行会将支付批准请求直接发送到消费者的移动电话。一旦消费者批准交易,就向银行返回批准消息,并且交易自始至终是在回到商家终端时被授权。In this case, the consumer's regular credit card can be presented at the point of sale, and the transaction proceeds like a traditional transaction. When the payment request reaches the consumer's bank, the bank sends the payment approval request directly to the consumer's mobile phone. Once the consumer approves the transaction, an approval message is returned to the bank, and the transaction is authorized all the way back to the merchant terminal.

改进的支付交易Improved payment transactions

已经从卡中获得了可使用何种无线系统(例如,蓝牙或GPRS)来联系袖珍PINpad有关的详细信息和发送信息到正确的袖珍PINpad所需的任何信息(例如,蓝牙连接的蓝牙ID或GPRS情形下的电话号码)。支付设备将交易金额发送到袖珍PINpad并且存储该详细信息以便进行支付。Details about what wireless system (e.g. Bluetooth or GPRS) can be used to contact the pocket PINpad and any information needed to send the information to the correct pocket PINpad has been obtained from the card (e.g. Bluetooth ID or GPRS case phone number). The payment device sends the transaction amount to the Pocket PINpad and stores the details for payment.

一些交易将允许消费者改变金额。在发生金额改变之后,消费者可选地输入他的PIN或简单地表示“ok”,袖珍PINpad电子地“签署”交易,以表示消费者同意交易。Some transactions will allow consumers to change the amount. After the amount change has occurred, the consumer optionally enters his PIN or simply says "ok" and the pocket PINpad electronically "signs" the transaction to signify the consumer's consent to the transaction.

然后,交易被发送到银行。银行对交易进行处理并将交易的记录发送回消费者和商家设备。Then, the transaction is sent to the bank. The bank processes the transaction and sends a record of the transaction back to the consumer and merchant devices.

在商家设备收到完成交易的记录时,设备向商店销售人员或自动售卖机发出支付已完成的信号。When the merchant device receives a record of the completed transaction, the device signals the store salesperson or vending machine that the payment is complete.

零售、销售点、基于卡的系统Retail, point of sale, card-based systems

我们中的大多数人都很熟悉信用卡和借记卡。使用广泛的两种卡是:Most of us are familiar with credit and debit cards. Two types of cards that are widely used are:

●基于磁条的卡;和● magnetic stripe based cards; and

●带有计算机芯片的“智能卡”。● A "smart card" with a computer chip.

从操作角度来讲,利用这两种卡的支付是类似的。支付的步骤通常如下:From an operational point of view, payments with both cards are similar. The payment steps are usually as follows:

1.支付步骤-将卡交给商家1. Payment steps - hand over the card to the merchant

●消费者将卡提供给商家。• The consumer presents the card to the merchant.

●商家在支付终端中使用卡。• The merchant uses the card in the payment terminal.

●商家输入支付详细信息。● Merchant enters payment details.

●如果要求PIN,则在PIN输入设备上输入。• If a PIN is required, enter it on the PIN entry device.

●通过商家的支付设备向银行发送交易。● Send the transaction to the bank through the merchant's payment device.

●在商家的支付设备上显示银行答复。• Display the bank reply on the merchant's payment device.

●对于无PIN交易,商家获得消费者签名并保留。● For no PIN transactions, the merchant obtains the consumer's signature and retains it.

在代替消费者将卡交给商家的支付处理的变型例中,消费者将他自己的卡输入到被设计为由消费者操作的读取器中。该变型例试图通过减小商家看管卡由此能够复制消费者的卡的风险,来减少处理中的某些安全问题。In a variation of payment processing where instead of the consumer handing over the card to the merchant, the consumer enters his own card into a reader designed to be operated by the consumer. This variation attempts to reduce some of the security concerns in the process by reducing the risk of the merchant guarding the card and thus being able to duplicate the consumer's card.

一般而言,处理存在几个问题。In general, there are several problems with processing.

问题1-设备变化Issue 1 - Equipment Change

利用安装在支付点的支付设备,商家拥有充分的机会来学习如何操作该设备,并且假设发生了对该设备的任何篡改,则商家拥有充分的机会来检测这种篡改。但是,消费者在各销售点处面对的可能是完全不同的设备。这造成了以下问题:With a payment device installed at a point of payment, the merchant has ample opportunity to learn how to operate the device and, should any tampering with the device occur, the merchant has ample opportunity to detect such tampering. However, consumers may be confronted with entirely different devices at each point of sale. This caused the following problems:

●由于消费者要使自己熟悉设备,所以自助支付点是缓慢的且操作起来容易产生困惑。• Self-service payment points are slow and confusing to operate as consumers familiarize themselves with the equipment.

●出于安全原因应该由消费者执行的任何交易步骤都将面临消费者要操作不熟悉的设备这一障碍。这导致商家执行诸如刷卡和帐户选择的步骤,而不是向消费者解释操作。• Any transaction step that should be performed by the consumer for security reasons will face the barrier of the consumer operating unfamiliar equipment. This results in merchants performing steps such as card swiping and account selection, rather than explaining the operation to consumers.

●替换设备易于被不择手段的商家使用来收集PIN和卡的详细信息。● Alternative devices are readily used by unscrupulous merchants to collect PIN and card details.

问题2-交易签署Question 2 - Transaction Signing

已提出各种方法来使消费者“签署”交易,以表示自愿参与。Various methods have been proposed to enable consumers to "sign" a transaction to signify voluntary participation.

●书写的签名●written signature

在交易时可靠地检测书写的签名中的问题,这对商家一方要求了不合理的技能。对这些书写的签名进行归档和存储也对商家造成了不合理的负担。为进行签名核对而出示卡也强制消费者交出了对其卡的控制。Reliably detecting problems in written signatures at the time of transaction requires an unreasonable amount of skill on the part of the merchant. Filing and storing these written signatures also places an unreasonable burden on merchants. Presenting the card for signature verification also forces the consumer to surrender control of their card.

●经银行(或金融机构)核实的电子PIN●Electronic PIN verified by the bank (or financial institution)

输入到商家设备的PIN可容易地被商家的替换设备获得。这可造成对个人资金的严重攻击。The PIN entered into the merchant's device can be easily obtained by the merchant's replacement device. This can cause serious attacks on personal funds.

●经智能卡核实的电子PIN●Electronic PIN verified by smart card

通过利用消费者的卡来核实PIN,可以极大地降低PIN被窃取的风险。不幸的是,该系统没有适当地得到足够广泛的应用。By utilizing the consumer's card to verify the PIN, the risk of PIN theft is greatly reduced. Unfortunately, this system has not been properly adopted widely enough.

问题3-卡的复制Question 3 - Duplication of Cards

卡能够被复制是当前的卡支付系统中的主要缺点。磁条卡易于在相对廉价的设备上被复制。The ability of cards to be duplicated is a major drawback in current card payment systems. Magnetic stripe cards are easily duplicated on relatively inexpensive equipment.

尽管智能卡理论上确实几乎消除了卡复制的问题,但智能卡还包含磁性详细信息并且世界范围内的许多商家都可以单独接受磁性详细信息。在出示卡的任何时候,磁性详细信息仍可被复制并用于世界范围内的欺诈性交易。While smart cards do in theory virtually eliminate the problem of card duplication, smart cards also contain magnetic details and many merchants worldwide accept magnetic details alone. At any time the card is presented, the magnetic details can still be copied and used for fraudulent transactions worldwide.

问题4-重复交易和金额欺骗Issue 4 - Duplicate Transactions and Amount Spoofing

商家成倍地从卡中收费或收取消费者认同之外的金额的方式有许多种。小数目的金额可能不会引起消费者的注意,但是却令消费者蒙受损失。然而可以检测到大数目的金额。当报告书(statement)到达时,商家可能已经消失了。尽管在目前的系统种这些不是最严重的问题,但是封堵其他漏洞而保留这些问题将会看到这些问题的显著严重化。There are many ways in which merchants charge cards multiple times or charge an amount beyond the consumer's approval. Small sums may go unnoticed by the consumer, but the consumer suffers losses. However, large sums of money can be detected. By the time the statement arrives, the merchant may have disappeared. Although these are not the most serious problems in the current system, plugging other vulnerabilities to keep these problems will see a significant increase in the severity of these problems.

问题5-付小费Question 5 - Tipping

许多交易允许可选的小费部分。利用商家的终端中所使用的卡来支付小费的唯一实际解决方案是,在银行已批准交易之后增加小费。Many transactions allow for an optional gratuity component. The only practical solution to tipping with the card used in the merchant's terminal is to add the tip after the bank has approved the transaction.

让消费者把他的小费输入到商家的机器中是不切实际的。It is impractical for a consumer to enter his tip into a merchant's machine.

让商家对完成的交易增加小费造成了系统的缺点。如果商家要不正确地增加较多的小费,那么消费者拥有怎样的追索权(recourse)?首先,消费者必须检测到该问题。然后查找该交易并强制商家产生原始签署的收据,这是问题所在。对于双方都花费很高且很痛苦。尽管最终会发现商家系统性瞒报费用(skimming),但在发现问题之后仍有许多消费者被收取额外的费用(问题员工可能长期存在!)。Letting merchants add tips to completed transactions creates shortcomings in the system. What recourse does the consumer have if the merchant is to incorrectly add a larger tip? First, the consumer must detect the problem. Then looking up that transaction and forcing the merchant to produce an original signed receipt is the problem. Costly and painful for both parties. Although merchants will eventually be found to be systematically underreporting fees (skimming), many consumers will still be charged additional fees after the problem is discovered (problem employees may be long-term!).

互联网支付系统internet payment system

目前有两种基于互联网的支付是实用的。There are currently two types of Internet-based payments that are practical.

1.真正安全的互联网支付1. Really secure internet payment

真正安全的互联网支付经常被提到,但是很少实施。首先,安全的互联网支付需要智能卡,而消费者并没有智能卡。MasterCard、Visa等的SET是首先很好推广的利用智能卡的系统之一。其次,要想真正安全,对PC的配件的要求是不仅能读取智能卡,而且能显示要花费的金额以及接受PIN以签署交易。例如,这样的系统是众所周知的(参见FINREAD)。Truly secure Internet payments are often mentioned, but rarely implemented. First, secure Internet payments require smart cards, and consumers don't have smart cards. The SET of MasterCard, Visa, etc. is one of the systems using smart cards that were first widely spread. Second, to be truly secure, an accessory to the PC is required that not only reads a smart card, but also displays the amount to be spent and accepts a PIN to sign transactions. For example, such systems are well known (see FINREAD).

智能卡用于为交易提供安全的不可再用的数字签名。由于蠕虫和病毒使得主计算机显示器上的信息对于远端方的更改和获取是开放的,因此需要单独的安全控制台来进行支付。使用控制台上的PIN键盘来指示智能卡为安全地显示在控制台上的金额创建数字签名。Smart cards are used to provide secure non-reusable digital signatures for transactions. Since worms and viruses leave information on the main computer display open to alteration and access by remote parties, a separate security console is required to pay for it. Use the PIN pad on the console to instruct the smart card to create a digital signature for the amount securely displayed on the console.

如今这样的交易是尽可能地安全。为了创建交易,人们同时需要原始智能卡和PIN。获得复制的卡实际上是不可能的。Nowadays such transactions are as safe as possible. In order to create a transaction, one needs both the original smart card and the PIN. Obtaining a duplicate card is practically impossible.

问题在于,多数人的PC不具有FINREAD型附件,也不具有使用智能卡的数字证书。仅仅为了保证人们的互联网交易,系统目前难以在成本上被证明是合理的。The problem is that most people's PCs don't have FINREAD-type accessories, nor digital certificates that use smart cards. Systems are currently difficult to justify in terms of cost just to secure people's Internet transactions.

为了避免这个问题,诸如美国快递(American Express)和Visa的卡协会提供了不同的另选方案。To avoid this problem, card associations such as American Express and Visa offer different alternatives.

美国快递的个人支付方案要求美国快递持卡人首先登录美国快递站点,“预分配”支付金额并接收用于该分配的ID。持卡人随后可以使用该ID来购买链接到美国快递个人支付的互联网商家站点上的商品。该方法具有不用使用卡号就可进行购买交易的优点,但持卡人使用起来相当麻烦,到目前为止在商家中还未普及实施。The American Express personal payment program requires American Express cardholders to first log in to an American Express site, "pre-allocate" a payment amount and receive an ID for that allocation. The cardholder can then use the ID to purchase merchandise on Internet merchant sites linked to American Express Personal Pay. This method has the advantage that the purchase transaction can be carried out without using the card number, but it is quite cumbersome for the cardholder to use, and it has not been widely implemented in merchants so far.

在Visa国际的3D-安全方案中,持卡人仍输入他们的卡号,但是仅在发卡者而非商家要求卡号时才输入。该方案依赖于完善建立的SSL/TLS技术,来保护交易中涉及的所有方之间的链路。由于涉及的复杂性,该方案仅对较大的商家有吸引力。In Visa International's 3D-Secure solution, cardholders still enter their card number, but only when the issuer, not the merchant, asks for it. The scheme relies on well-established SSL/TLS technology to secure the link between all parties involved in the transaction. Due to the complexities involved, this scheme is only attractive to larger merchants.

2.主流“安全”互联网支付2. Mainstream “safe” internet payments

主流“安全”互联网支付仅意味着支付详细信息通过互联网安全地传输。当中介机构不能截获所使用的卡号时,互联网商家自身必须被信任对他们接收的卡号进行保密、收取正确的金额并且只在指定的情况下开帐单。接收到这些支付详细信息的商家不能肯定地确定是谁发送了该支付详细信息。Mainstream "secure" internet payments simply mean that payment details are transmitted securely over the internet. While intermediaries cannot intercept card numbers being used, Internet merchants themselves must be trusted to keep the card numbers they receive confidential, charge the correct amount, and only bill under specified circumstances. Merchants who receive these payment details cannot determine with certainty who sent them.

基本上,消费者必须无条件地(take it on faith)相信商家,并且当商家添加诸如核对商品递送的地方和收到递送时进行签名的保护时,这对于商家是昂贵的。当商品被电子递送时,商家添加任何保护甚至变得更加困难,结果,在这种交易中进行欺诈的成本很高。Basically, the consumer has to take it on faith in the merchant, and this is expensive for the merchant when they add protections like checking where the item was delivered and signing when delivery was received. When goods are delivered electronically, it becomes even more difficult for merchants to add any protections, and as a result, fraud in such transactions is costly.

上述实施例的系统的优点Advantages of the system of the above embodiments

如果今后会采用针对该实施例的系统的新基础设施,则可以降低安全成本和交易成本。新的支付系统为消费者、商家和银行带来了好处,证明了新系统的首次展示是合理的。If a new infrastructure for the system of this embodiment is adopted in the future, security costs and transaction costs can be reduced. The benefits of the new payment system for consumers, merchants and banks justify the rollout of the new system.

安全Safety

根据本发明该示例的解决方案提供了当今可用的最高级别的欺诈保护。购买得到了与FINREAD型互联网交易相同的保护。这就好像是消费者将互联网终端和智能卡读取器带到了销售点。The solution according to this example of the invention provides the highest level of fraud protection available today. Purchases receive the same protections as FINREAD-type Internet transactions. It's as if consumers brought Internet terminals and smart card readers to the point of sale.

尽管通过智能卡的普遍引入确实可以大大减少许多目前的安全问题,但是该示例的作用不止如此,有利地是,其甚至可根除由于转用(moveto)智能卡而仍然遗留的问题。While it is true that many of today's security problems could be greatly reduced by the ubiquitous introduction of smart cards, this example goes beyond that and advantageously even eradicates problems still lingering due to the move to smart cards.

进一步的保护通过以下方式来提供:Further protection is provided by:

●能够核实购买金额的安全性;●Ability to verify the safety of the purchase amount;

●防止小费和金额的变化;●Prevent changes in tips and amounts;

●防止加倍收费;●Prevent doubling charges;

●消除甚至是磁卡级复制的风险;● Eliminates the risk of copying even at the magnetic card level;

●通过允许消费者在没有配备新系统的销售点核实交易来保护甚至是“传统”的交易的能力;● the ability to protect even "traditional" transactions by allowing consumers to verify transactions at points of sale not equipped with the new system;

●在除传统之外的所有交易中,为商家提供支付的证据但不提供消费者卡的详细信息。• In all transactions except traditional, provide the merchant with proof of payment but not the consumer's card details.

成本cost

通过利用消费者已准备进行支付的设备(例如,移动电话),改进的系统的基础设施的成本很低。The infrastructure cost of the improved system is low by utilizing devices (eg mobile phones) that consumers are already prepared to pay for.

支付终端可视为“一分为二”-终端的一部分是消费者携带的移动电话,其余的商家组件大大得到简化并且成本得到降低。The payment terminal can be thought of as "split in two" - one part of the terminal is the mobile phone carried by the consumer, and the remaining merchant components are greatly simplified and reduced in cost.

这实现了更多的支付点,例如停车计时器、自动售卖机和商场的自助销售点。This enables more payment points such as parking meters, vending machines and self-service points of sale in malls.

速度speed

通过使消费者能够在熟悉的设备上分摊交易负荷,可在所有情况下提高交易速度。系统实现的自助销售点支付还将允许消费者立即支付,而不是在多数情况下的排队等候服务。Increase transaction speed in all cases by enabling consumers to offload transaction loads across familiar devices. Self-service point-of-sale payments enabled by the system will also allow consumers to pay instantly, rather than waiting in line for service in most cases.

不但结帐可以变得更快,而且饭店内的消费者可以省去取走他们的卡的以进行处理的整个额外步骤。Not only can checkout be made faster, but customers in restaurants can be spared the entire extra step of removing their cards for processing.

灵活性flexibility

新系统为电子支付带来了全新级别的可能性。The new system brings a whole new level of possibility to electronic payments.

新的便利性包括:New conveniences include:

委托支付entrusted payment

在支付时,消费者可以指定父母或朋友代表他们进行支付,只要被指定的人是不在场的“唯一电话呼叫”即可。这允使得孩子的其他亲人能够访问应急资金(emergency fund)-但确保其他的应急基金提供者的父母要监视对这种资金的使用。When paying, consumers can designate a parent or friend to pay on their behalf, as long as the designated person is an absent "only phone call." This allows other loved ones of the child to have access to emergency funds - but ensures that other emergency fund providers' parents monitor the use of such funds.

在支付时,消费者可以指定父母或朋友代表他们进行支付,只要被指定的人是不在场的“唯一电话呼叫”即可。这允使得孩子的其他亲人能够访问应急资金(emergency fund)-但确保其他的应急基金提供者的父母要监视对这种资金的使用。When paying, consumers can designate a parent or friend to pay on their behalf, as long as the designated person is an absent "only phone call." This allows other loved ones of the child to have access to emergency funds - but ensures that other emergency fund providers' parents monitor the use of such funds.

分开支付(split payment)split payment

去过饭店吗?遇到过帐目应该分为两个、三个或甚至更多个的情况吗?采用现金目前似乎是唯一的解决方案。虽然大多数饭店都会将帐目分为两种方式以便用卡进行支付,但是即使这样这还是杂乱的解决方案。每个额外的卡或其他复杂化都会使传递不同持卡人的意愿更加困难。Been to the restaurant? Ever had a situation where an account should be split into two, three, or even more? Adopting cash seems to be the only solution for now. While most restaurants will split the account in two ways for payment by card, even this is a messy solution. Every additional card or other complication makes it harder to pass on the wishes of different cardholders.

配备有其自己的个人PIN键盘的每位用餐者能够自己缴款,根本无须与饭店沟通进行解释。Equipped with their own personal PIN pad, each diner is able to make their own payments without having to communicate with the restaurant at all for explanation.

金额变更Amount change

呈递给消费者的金额不仅可以由消费者安全地核实-而且它还可以用指定的参数来改变。这对给小费尤其有效。目前用于给小费的系统通常仅对信用卡交易有效。无小费的交易由银行批准。在读取了消费者写在收据上的小费金额后,商家随后处理对原始交易的变更。Not only can the amount presented to the consumer be securely verified by the consumer - but it can also be changed with specified parameters. This works especially well for tipping. Current systems for tipping are generally only valid for credit card transactions. Transactions without tip are approved by the bank. After reading the tip amount written by the customer on the receipt, the merchant then processes the changes to the original transaction.

这对消费者和商家都是存在问题的。对于商家而言,必须检索原始交易(在忙碌的饭店中,任意一个时刻可能有几个收据出现在餐桌上)并且输入新的金额。This is problematic for both consumers and businesses. For the merchant, it is necessary to retrieve the original transaction (in a busy restaurant, there may be several receipts on the table at any one time) and enter the new amount.

对于消费者而言,根本无法对商家输入的实际最后金额进行核实,并且很难检测到由于商家看错而出现的错误、索费过多或任何其他因素。For consumers, there is no way to verify the actual final amount entered by the merchant, and it is difficult to detect errors due to merchant misreading, overcharging, or any other factor.

利用本实施例,消费者可将要支付的金额直接添加到他自己的设备上-首先处理正确的金额。不要求商家重新进入。错误和怀疑之源被完全消除。With this embodiment, the consumer can add the amount to be paid directly onto his own device - the correct amount being processed first. Merchants are not required to re-enter. Sources of error and doubt are completely eliminated.

帐户选择account selection

可以将多个银行帐户链接到支付人设备,并且作为另一种选择,可以选作默认帐户。这些帐户不需要来自于同一银行。Multiple bank accounts can be linked to the payer device and alternatively can be selected as the default account. These accounts do not need to be from the same bank.

该实施例的系统还有利地提供更多的便利性。The system of this embodiment also advantageously provides additional convenience.

自助服务支付Self Service Payment

自助服务支付点可以避免排队,并且可以在其他情况不可能的位置提供商品和服务。历史上,在这些自助服务支付点进行支付可能要通过硬币(有时通过纸币)。在接受信用卡/借记卡的情况下,消费者或服务提供者必须支付昂贵设备的开销和电话开销。Self-service payment points can avoid lines and make it possible to deliver goods and services in locations where this would not be possible otherwise. Historically, payment at these self-service payment points may have been by coin (and sometimes paper money). Where credit/debit cards are accepted, the customer or service provider must pay for expensive equipment and phone calls.

通过该系统进行支付有利地减少了这些问题。接受设备成本低并且不需要电话呼叫。最好地是,消费者利用(他自己的电话中的)相同支付设备,而不必学习如何使用每个支付点的新支付设备。阅读指令和困难的卡读取器已经成为往事。Paying through the system advantageously reduces these problems. Acceptance equipment is low cost and does not require a phone call. Preferably, the consumer utilizes the same payment device (in his own phone) without having to learn how to use a new payment device for each payment point. Reading instructions and difficult card readers are a thing of the past.

在所有支付点选择帐户Select account at all payment points

由于后勤方面的原因,目前的系统通常会限制帐户类型。例如,输入PIN在饭店里可能存在问题。利用支付人设备系统消除了该问题,因为输入PIN请求被传送至餐桌处的消费者。不需要向收银员发出指令,对PIN输入也没有任何限制。The current system often limits account types for logistical reasons. For example, entering a PIN may be problematic in a restaurant. Utilizing the payer device system eliminates this problem because the request to enter the PIN is transmitted to the customer at the table. No instructions to the cashier are required, and there are no restrictions on PIN entry.

商家询问帐户然后对比参照以免除消费者在不熟悉的设备上选择帐户的情景已经成为往事。The scenario where a merchant asks for an account and then compares it to save consumers from choosing an account on an unfamiliar device is a thing of the past.

帐单核实bill verification

当银行报告书到达时,移动电话能够立即协调经该系统核实的所有电子交易的账户余额(account balance)。这消除了“我是否被索费过高”的担忧或为消费者进行协调的烦琐之事。When the bank statement arrives, the mobile phone can immediately reconcile the account balance of all electronic transactions verified by the system. This removes the worry of "am I being overcharged" or the hassle of coordinating for the consumer.

收据归档receipt filing

对于电子签署的所有交易,都不需要纸件收据。这简化了昂贵的索赔、税金记录和针对消费者的其他核算(accounting)。For all transactions signed electronically, paper receipts are not required. This simplifies costly claims, tax records and other accounting for consumers.

消除了保留纸质签名作为交易证据的必要,这对于商家而言是巨大的益处。Eliminating the need to keep paper signatures as proof of transactions is a huge benefit for merchants.

通用应用general application

可以为所有支付(电话定购、互联网、现有传统的销售点处的支付系统以及新的经改进的低成本支付点)使用相同的核实系统。The same verification system can be used for all payments (telephone order, internet, existing traditional payment systems at point of sale as well as new improved low cost payment points).

发卡机构和移动运营商需要升级的系统。一旦其就绪,参与的每个持卡人就都能看到直接的利益。在系统有价值之前,没有必要等待升级的设备到达商家。Card issuers and mobile operators need upgraded systems. Once it's in place, every participating cardholder sees immediate benefits. There is no need to wait for an upgraded device to reach a merchant before the system has value.

设备equipment

消费者设备consumer device

对于系统来说,要转换为支付人设备的消费者设备需要无线通信的形式(在某些实施例中不需要如此)。目前,三种无线通信系统被广泛使用-802.11、蓝牙和GSM+GPRS/CDMA。A form of wireless communication is required (in some embodiments not required) for the system to convert a consumer device to a payer device. Currently, three wireless communication systems are widely used - 802.11, Bluetooth and GSM+GPRS/CDMA.

在本示例中,每个设备都被视为适于配备无线通信的形式,能够在位于大多数购买点的消费者与网络之间进行通信。当今的示例是GSM和GPRS或CDMA移动电话数据通信。当所使用的普遍的无线协议随时间而变化时,要使用的无线系统也要改变。In this example, each device is considered to be suitably equipped with a form of wireless communication capable of communicating between the consumer and the network at most points of purchase. Examples today are GSM and GPRS or CDMA mobile phone data communications. As the prevailing wireless protocols used change over time, the wireless systems to be used also change.

本文讨论了基于GSM+GPRS移动电话(其另外可选地配备有蓝牙通信)的系统。This paper discusses a system based on GSM+GPRS mobile phones which are additionally optionally equipped with Bluetooth communication.

新的软件和固件New software and firmware

本实施例中的设备上的软件应该包含目前电话中未发现的特定特征。The software on the device in this example should include specific features not currently found in phones.

特别是:in particular:

●通过使得能够在设备中进行支付的任何无线系统接收支付请求命令并将该请求传递给SIM模块的能力。• Ability to receive a payment request command through any wireless system enabling payment in the device and pass the request to the SIM module.

●显示来自SIM模块的支付请求消息并把数据输入(entry)传递回SIM模块的能力。• Ability to display payment request messages from the SIM module and pass data entries back to the SIM module.

●以不能被载入到电话中的任何应用复制的方式显示PIN输入消息的能力。• The ability to display the PIN entry message in a manner that cannot be replicated by any application loaded into the phone.

●将对于支付批准消息的回答直接呈现给SIM。• Present the answer to the payment approval message directly to the SIM.

●对于支付批准消息的回答不能通过任何应用软件发送到SIM。• Answers to payment approval messages cannot be sent to the SIM by any application software.

应该注意的是,可使用另一个处理模块来代替SIM,但SIM对于移动电话实施例是优选的。It should be noted that another processing module could be used instead of the SIM, but the SIM is preferred for mobile phone embodiments.

根据这些要求,断定支付批准消息显示和响应应该由固件来实现。防止应用生成对于支付批准消息的回答确保了没有软件蠕虫或病毒可用于使电话(或其他消费者设备)批准消费者还不知道的支付。Based on these requirements, it was concluded that payment approval message display and response should be implemented by firmware. Preventing applications from generating responses to payment approval messages ensures that no software worms or viruses can be used to cause the phone (or other consumer device) to approve payments that the consumer does not yet know about.

假如在完成辅助功能的任何功能时,保证了支付批准屏幕能够显示将在消息中发送到SIM的金额作为消费者批准支付的金额,则可使用可重新载入的软件将该功能实现在支付批准屏幕上。Reloadable software may be used to implement this functionality in the Payment Approval screen, provided that, when completing any function of the secondary function, it is ensured that the payment approval screen displays the amount that will be sent to the SIM in the message as the amount that the consumer approves to pay. on the screen.

非接触式智能卡contactless smart card

非接触式智能卡是公知的。该系统的优选实施例为每个设备配备了非接触式智能卡,以便在新类型的支付点容易地进行支付。非接触式智能卡还便于实现消费者设备在金融机构的注册。Contactless smart cards are well known. A preferred embodiment of the system equips each device with a contactless smart card for easy payment at new types of payment points. Contactless smart cards also facilitate enrollment of consumer devices with financial institutions.

期望的是,使用尽可能小尺寸的同时仍允许卡内存在任何必要的天线的非接触式智能卡。还期望使用柔性而非刚性材料来制造卡,使得卡能够粘附于消费者设备的壳体轮廓上。It is desirable to use a contactless smart card that is as small as possible while still allowing any necessary antennas to be present within the card. It is also desirable to manufacture the card using flexible rather than rigid materials so that the card can adhere to the contours of the housing of the consumer device.

期望的是,卡能够安全且唯一地记录卡在销售点的出现。这要求卡包含用于签署来自非接触式支付读取器的消息的加密密钥。It is desirable that the card be able to securely and uniquely record the card's presence at the point of sale. This requires the card to contain the encryption key used to sign messages from the contactless payment reader.

非接触式智能卡应该还能够传输与和卡相关联的支付人设备进行通信所需的信息。这种信息包括并入在消费者设备中的任何蓝牙模块的蓝牙ID以及电话号码,使得能够与设备的无线模块进行通信。The contactless smart card should also be able to transmit the information needed to communicate with the payer device associated with the card. Such information includes the Bluetooth ID and phone number of any Bluetooth modules incorporated in the consumer device to enable communication with the device's wireless module.

非接触式卡还能够将匹配消费者设备的能力(例如,蓝牙-非蓝牙、GSM-GPRS或CDMA等)传输给读取器。The contactless card is also capable of transmitting the capabilities of the matching consumer device (eg, Bluetooth-non-Bluetooth, GSM-GPRS or CDMA, etc.) to the reader.

非接触式卡还能够将匹配安全模块的公共密钥(参见下文)发送给如金融机构所使用的读取器,在这种情况下为公共“初始化”密钥。The contactless card is also capable of sending the matching security module's public key (see below) to the reader as used by the financial institution, in this case the public "initialization" key.

SIM或安全模块SIM or security module

为确定交易已到达正确的设备,期望能够利用金融机构能核实属于持卡人的密钥来加密数据。这种系统是公知的,并且已在几乎所有基于智能卡的支付系统中提出。在GSM移动电话的情况下,同样已经存在安全模块。所有要求的是电话中的SIM能够满足这里指定的要求或由能够满足这些要求的SIM来替代。To ensure that the transaction has reached the correct device, it is desirable to be able to encrypt data with a key that the financial institution can verify belongs to the cardholder. Such systems are well known and have been proposed in almost all payment systems based on smart cards. In the case of GSM mobile phones, a security module is also already present. All that is required is that the SIM in the phone can meet the requirements specified here or be replaced by a SIM that can meet these requirements.

在优选实施例中,GSM电话中的SIM配备有针对用于金融交易的密钥的和用于匹配的加密算法的安全存储器。诸如RSA或椭圆曲线的公知加密标准是适合的。这种系统利用一对密钥,一个“私人”密钥(秘密且安全地保存在消费者卡中)和一个公共密钥。利用一个密钥进行了加密的数据可用另一个密钥来解密。简单放置-并且可以通过以私人密钥加密数据来将数据发送到卡,并且相信只有具有匹配私人密钥的卡才可用于解密数据。相反,以公共密钥正确解密出的任何数据都源自具有私人密钥的卡。In a preferred embodiment, the SIM in the GSM phone is equipped with secure memory for the keys used for financial transactions and the encryption algorithms for matching. Well-known encryption standards such as RSA or elliptic curves are suitable. This system utilizes a pair of keys, a "private" key (secretly and securely stored on the consumer's card) and a public key. Data encrypted with one key can be decrypted with the other key. Simple drop-in and data can be sent to the card by encrypting it with a private key, and trusting that only the card with the matching private key can be used to decrypt the data. Instead, any data correctly decrypted with the public key originates from the card with the private key.

为使金融机构能够为它们的持卡人将密钥安装到已发行的SIM卡上,可使用公共/私人“初始化”密钥对,SIM卡中保存的私人密钥和匹配非接触式智能卡中的公共密钥。To enable financial institutions to install keys on issued SIM cards for their cardholders, a public/private "initialization" key pair is used, the private key held in the SIM card and the matching contactless smart card public key.

银行授权系统Bank Authorization System

发行借记卡或信用卡的每个银行都必须确保系统保持每个持卡人的余额和批准的最小余额的记录。升级该系统,以在该系统被使能时向持卡人的支付人设备发送支付批准消息。Every bank that issues debit or credit cards is required to ensure that the system maintains records of each cardholder's balance and the approved minimum balance. The system is upgraded to send a payment approval message to the cardholder's payer device when the system is enabled.

余额核实系统格式化该消息并且在识别出支付人设备时通过系统发送该消息以及详细信息。The balance verification system formats the message and sends it, along with the details, through the system when the payer device is recognized.

持卡人可能需要一种使能和禁能该系统的方法以允许移动到他的支付人设备可通信的区域之外。The cardholder may need a way to enable and disable the system to allow movement outside of the area in which his payer device can communicate.

移动电话通信网关Mobile Phone Communication Gateway

新的通信系统从发卡机构接收支付请求并且将请求发送到支付人设备。该系统可由一个用于所有交易类型的集成网关系统或用于一个或两个交易的单独网关系统构成,或者可作为新功能添加到现有的网关。网关应该能够用于三种交易类型:The new communication system receives the payment request from the card issuer and sends the request to the payer device. The system can consist of one integrated gateway system for all transaction types or separate gateway systems for one or two transactions, or can be added as a new function to an existing gateway. The gateway should be able to be used for three transaction types:

●启动支付授权请求,发送到支付人设备;●Start the payment authorization request and send it to the payer’s device;

●对从支付人设备接收的支付进行响应;● Responding to payment received from the payer device;

●将已由支付人设备在销售点签署的交易传递给适当的金融机构。• Pass the transaction signed by the payer device at the point of sale to the appropriate financial institution.

在这些情况的前两种情况下,网关将充当金融系统与支付人设备之间的接口。发卡银行仍需批准交易。在第三种情况下,接收到经批准的交易的金融机构通常是收单行。In the first two of these cases, the gateway will act as an interface between the financial system and the payer's device. The issuing bank still needs to approve the transaction. In the third case, the financial institution that receives the approved transaction is usually the acquiring bank.

应当注意的是,在实施优选解决方案时,可评估发卡机构、收单行和卡协会(例如,Visa)的传统角色。It should be noted that the traditional roles of card issuers, acquirers, and card associations (eg, Visa) can be evaluated when implementing a preferred solution.

Card

很长时间以来,传统支付点需要现有类型的磁卡来启动交易。针对新类型交易点的较低交易成本将鼓励他们随时间而加入到销售点中,但系统仍给予基于当前卡的销售点充分的保护,而不需要任何升级。For a long time, traditional payment points have required existing types of magnetic cards to initiate transactions. Lower transaction costs for new types of point of sale will encourage their addition to point of sale over time, but the system still gives current card based point of sale adequate protection without requiring any upgrades.

可以发行不链接到特定银行帐户的新卡。New cards can be issued that are not linked to a specific bank account.

支付设备payment device

现有电子支付接受设备可与未改变的系统一起工作-但没有利用所提供的新设备。Existing electronic payment acceptance equipment worked with the unchanged system - but did not take advantage of the new equipment being provided.

一些设备已经从银行逐张卡地得到关于是否请求PIN或签名的指令。建议将系统链接到现有的签名卡-或为此发行的新支付卡-而不是基于PIN的卡。Some devices already get instructions from the bank on a card-by-card basis whether to request a PIN or signature. It is proposed that the system be linked to existing signature cards - or new payment cards issued for this purpose - rather than PIN-based cards.

甚至对配置或编程进行的很小变换都将改善利用支付人设备进行交易的效率。利用具有重复编程设备的系统可获得另外的好处,并且利用具有新一代支付设备的系统可获得更进一步的好处。Even small changes to configuration or programming will improve the efficiency of transactions with payer devices. Additional benefits are obtained with systems having reprogramming devices, and still further benefits are obtained with systems having new generation payment devices.

一个实施例中的支付人设备可具有三种类型的无线通信以便进行灵活操作:Payer devices in one embodiment may have three types of wireless communications for flexible operation:

●用于启动交易的极近程(大约最大10cm)无线通信。• Very short range (approximately max 10cm) wireless communication for initiating transactions.

●局域无线通信,用于和贯穿交易的支付点(或支付终端)进行通信。• Local area wireless communication for communicating with payment points (or payment terminals) throughout the transaction.

●全球范围的无线通信,使得能够在支付人设备与消费者在其中保存帐户的银行之间进行通信,而不管消费者在全球的什么地方,或至少在尽可能多的位置。• Worldwide wireless communication, enabling communication between the payer device and the bank where the customer holds the account, no matter where the customer is globally, or at least in as many locations as possible.

支付系统能够在不需要实现所有上述系统的版本中运行。该建议将允许目前的移动电话或具有无线电话调制解调器的袖珍计算机容易且低成本地转换为可工作的支付人设备。The payment system is able to function in a version that does not need to implement all of the above systems. This proposal would allow the easy and low-cost conversion of current mobile phones or pocket computers with radiotelephone modems into working payer devices.

仅单一类型的无线通信Only a single type of wireless communication

一种示例性支付人设备包括仅一种类型的无线通信。使得能够与支付点进行通信的局域通信或使得能够与帐户被保存在的金融机构直接通信的远程通信在技术上是足以实现的。An exemplary payer device includes only one type of wireless communication. Local communication enabling communication with the point of payment or remote communication enabling direct communication with the financial institution with which the account is held is technically sufficient.

这种设备可以通过支付点与金融机构有效地进行通信,或通过金融机构与支付点有效地进行通信。Such a device may be operative to communicate with a financial institution through a payment point, or operatively to communicate with a payment point through a financial institution.

由于没有并入启动交易的便利装置,所以这些设备将有效地适于保护传统交易。Since no facility is incorporated to initiate transactions, these devices would effectively be suitable for securing traditional transactions.

近程+局域无线PIN键盘Short range + local area wireless PIN keyboard

具有近程和局域无线通信能力的设备可以在配备有全部三种类型无线通信的支付点既启动交易又执行交易。Devices with short-range and local area wireless communication capabilities can both initiate and execute transactions at payment points equipped with all three types of wireless communication.

近程+远程无线支付人设备Short-range + long-range wireless payer equipment

利用专用数据网络或移动电话网络的远程无线设备广泛地使用,并且可容易地添加短程无线通信。Long-range wireless devices utilizing private data networks or mobile phone networks are widely used and short-range wireless communications can easily be added.

完整系统支付人设备Full System Payer Device

取来任何一部还配备有蓝牙(或具有配备蓝牙的能力)的移动电话,增加必要的固件和包含适当SIM和非接触式智能卡的包(packet),你就可以拥有一台多用途的支付人设备。由于移动电话系统运营商拥有请求电话制造商增加固件并访问SIM和非接触式智能卡的能力,所以这些设备的采用仅需雄心勃勃的移动电话系统运营商。Take any mobile phone that is also equipped with Bluetooth (or has the ability to be equipped with Bluetooth), add the necessary firmware and a packet containing the appropriate SIM and contactless smart card, and you have a multi-purpose payment man equipment. Adoption of these devices requires only ambitious mobile phone system operators, as they have the ability to request phone manufacturers to add firmware and access SIM and contactless smart cards.

集成完整系统支付人设备Integrated full system payer device

与对“完整系统”支付人设备的升级相同,可以在制造时将近程无线集成到支付人设备中。这将使得支付人设备不仅能近程地发送数据而且能接收数据。这种能力将使得直接的人对人的支付更加灵活。As with upgrades to "full system" payer devices, near-range wireless can be integrated into payer devices at the time of manufacture. This would allow the payer device to not only send data but also receive data short-range. This capability will make direct person-to-person payments more flexible.

支付交易类型payment transaction type

利用支付人设备的传统交易Traditional transactions utilizing payer devices

利用支付人设备的传统交易如同正常信用卡交易那样进行下去,直到传统发卡组织的交易批准中心接收到交易为止。这时,将支付批准请求发送至支付人设备。Traditional transactions using the Payer's device proceed like normal credit card transactions until the transaction is received by the traditional card issuer's transaction approval center. At this point, a payment approval request is sent to the payer device.

一旦支付人设备接收到交易,消费者就可以选择在哪里支付他的帐户以及批准或拒绝交易。Once the payer device receives the transaction, the consumer can choose where to pay his account and approve or decline the transaction.

通过网关将消费者的响应发送回批准中心-其随后处理交易并且通过传统系统发送回结果。还通过网关将交易的结果发送至支付人设备,以便消费者进行归档并且作为电子消费者收据。The consumer's response is sent through the gateway back to the approval center - which then processes the transaction and sends the result back through the traditional system. The result of the transaction is also sent through the gateway to the payer device for filing by the consumer and as an electronic consumer receipt.

近+远程无线支付人设备交易Near + Long Distance Wireless Payer Device Transactions

在支付点特别配备有支付人设备交易的情况下,消费者通过将他的智能卡接触支付点来表示他愿意进行支付,而不是使用传统的信用卡或借记卡。商家应该已将要支付的金额(或者对于可变金额交易,支付的范围)输入到支付点设备中。In the case of payment points specially equipped with payer device transactions, the consumer indicates his willingness to make a payment by touching his smart card to the payment point, rather than using a conventional credit or debit card. The merchant should have entered the amount to pay (or, for variable amount transactions, the range to pay) into the point of payment device.

由支付点设备收集的交易的批准请求应该直接发送到支付人设备网关。消费者再次使用支付人设备来修改和/或批准交易,然后将结果从支付人设备发送回网关,该网关将来自支付点的信息连同来自支付人设备的应答一起发送到金融交易批准网络。将交易结果发送回支付点和支付人设备二者,以便为两个设备提供电子收据。Approval requests for transactions collected by the point of payment device should be sent directly to the payer device gateway. The consumer again uses the payer device to modify and/or approve the transaction, and then sends the result from the payer device back to the gateway, which sends the information from the payment point along with the reply from the payer device to the financial transaction approval network. The transaction result is sent back to both the point of payment and the payer device to provide an electronic receipt for both devices.

用于完整支付人设备的局域无线交易Local Area Wireless Transactions for Complete Payer Devices

在可预知的一段时间内,目前接受传统卡支付的支付点将继续如此。当针对支付人设备交易而另外配备时,这些支付点可以在无需销售人员付出很多努力的情况下,较之传统交易为支付人设备交易更快地传送交易。处理传统交易的能力要求支付点配备有到金融交易批准中心的通信链接。Payment points that currently accept traditional cards will continue to do so for the foreseeable future. When additionally equipped for payer device transactions, these payment points can deliver transactions faster for payer device transactions than traditional transactions without much effort from the salesperson. The ability to process traditional transactions requires payment points to be equipped with communication links to financial transaction approval centers.

当针对支付人设备配备的支付点检测到具有局域无线能力的设备时,该支付点可通过局域网直接向支付人设备发送支付批准请求。When the payment point configured for the payer's device detects a device with local area wireless capability, the payment point can directly send a payment approval request to the payer's device through the local area network.

当支付人设备通过局域网接收到支付批准请求时,其首先允许消费者改变和/或批准该支付批准请求。然后,支付人设备检查请求以确定是将该交易直接发送到支付人设备网关,还是通过到支付点的局域无线连接发送回支付点。在这种情形下,交易被发送回支付点。When the payer device receives a payment approval request over the local area network, it first allows the consumer to change and/or approve the payment approval request. The payer device then examines the request to determine whether to send the transaction directly to the payer device gateway, or back to the payer device via a local wireless connection to the payer's point. In this case, the transaction is sent back to the payment point.

然后,支付点通过批准传统交易所使用的同一网络来发送交易。在接收到对交易的响应后,支付点将交易结果传递至支付人设备,以便为消费者提供电子收据。The payment point then sends the transaction by approving the same network that traditional exchanges use. After receiving a response to the transaction, the payment point communicates the transaction result to the payer device to provide the consumer with an electronic receipt.

用于完整支付人设备的远程无线交易Remote wireless transactions for complete payer devices

在先前未提供电子交易的场所,或者在即使接受传统交易的某些情况下,可能期望提供其本身不具备远程通信能力(例如,没有调制解调器或电话)的低成本支付接受点。In locations that have not previously offered electronic transactions, or in some cases even where traditional transactions are accepted, it may be desirable to provide low-cost payment acceptance points that do not themselves have remote communication capabilities (eg, no modems or telephones).

在这种情形下,可使用支付人设备来发送用于处理的交易并接收结果。In this case, the payer device may be used to send the transaction for processing and receive the result.

用于完整支付人设备的局域无线交易(除支付人设备负责通过支付人设备网关发送用于批准的交易之外)和支付人设备将电子记录或交易发送给支付点,二者都提供了交易的记录,并使得商家可以识别消费者的支付。Local area wireless transactions for the complete payer device (except that the payer device is responsible for sending the transaction for approval through the payer device gateway) and the payer device sending the electronic record or transaction to the payment point, both of which provide A record of the transaction and allows the merchant to identify the consumer's payment.

系统安全system security

系统的安全性来自何处?SIM模块(或其他指定的系统处理器)安全地存储着用于加密数据并且利用公知的技术(例如RSA)来创建数字签名的密钥。因此,保证了从电话发送来的每个支付批准都是利用该SIM模块生成的。Where does the security of the system come from? The SIM module (or other designated system processor) securely stores the keys used to encrypt data and create digital signatures using well-known techniques (eg, RSA). Thus, it is guaranteed that every payment approval sent from the phone is generated using this SIM module.

这样,仅剩下了两种欺诈地生成消费者不批准的交易的可能:1)消费者以外的某人使用该电话或SIM,或2)支付人设备被篡改,从而在消费者并不知情的情况下产生了对交易的授权。This leaves only two possibilities for fraudulently generating a transaction that the consumer does not approve: 1) someone other than the consumer uses the phone or SIM, or 2) the payer device has been The authorization for the transaction is generated in the case.

PIN和其他生物特征-支付设备防盗PIN and Other Biometrics - Payment Device Theft Prevention

PIN仅是生物特征的一种形式。它存在于用户的存储器中,并且通过检索该存储器,用户识别出自己为拥有该存储器的人。系统可使用任何形式的生物特征,例如PIN、指纹、眼睛扫描、面部识别。A PIN is only one form of biometric. It exists in the user's memory, and by retrieving that memory, the user identifies himself as the person who owns it. The system can use any form of biometric such as PIN, fingerprint, eye scan, facial recognition.

在优选实施例中,每次达到预设金额时或者对于任何超过该预设金额的交易,无论在使用哪一种生物特征(PIN、指纹、眼睛扫描等)都将被要求。例如,考虑$100的预设金额。少于$100的交易可以发生,直到全体这些连续交易总计超过$100为止。达到连续非生物特征交易的合计的第一笔交易将要求生物特征认证。In a preferred embodiment, whichever biometric (PIN, fingerprint, eye scan, etc.) is being used will be required each time a preset amount is reached or for any transaction exceeding that preset amount. For example, consider a preset amount of $100. Transactions of less than $100 can occur until all of these consecutive transactions total more than $100. The first transaction to reach the aggregate of consecutive non-biometric transactions will require biometric authentication.

  交易金额 Amount of the transaction 要求生物特征? Biometrics required?       原因 reason     $300 $300     是 yes 交易大于预设限制 The transaction is greater than the preset limit     $10 $10     否 no 自上次生物特征之后仅花费了$10 Only $10 spent since last biometric     $50 $50     否 no 自上次生物特征之后仅花费了$60 Only $60 spent since last biometric     $60 $60     是 yes 加上这笔交易,自上次生物特征之后花费了$120 With this transaction, $120 has been spent since the last biometric     $30 $30     否 no 自上次生物特征之后仅花费了$30 Only $30 spent since last biometric     $150 $150     是 yes 交易大于预设限制 The transaction is greater than the preset limit     $80 $80     否 no 自上次生物特征之后(包括该交易)仅花费了$80 Only $80 spent since last biometric (including this transaction)

重要的一点是,生物特征应该只由SIM来使用。SIM在接下来将交易签署为消费者批准的交易之前对生物特征进行内部认证。无论使用何种生物特征都不应该发送到支付人设备之外。倘若使用PIN,则该PIN不应该与目前在ATM等中使用的任何PIN相匹配。无论使用何种生物特征,对于不访问支付人设备的任何人都是没有价值的。It is important to note that biometrics should only be used by the SIM. The SIM internally authenticates the biometrics before subsequently signing the transaction as consumer-approved. Whatever biometric is used should not be sent outside of the payer's device. If a PIN is used, it should not match any PIN currently used in ATMs etc. Whatever biometric is used is of no value to anyone who does not have access to the payer's device.

生物特征(PIN或其他)的使用是为了限制在未经授权的情况下得以访问支付人设备的的任何人可花费的金额(尽管可以通过其他方式来应用生物特征的使用)。The use of biometrics (PIN or otherwise) is to limit the amount that can be spent by anyone who gains unauthorized access to the payer's device (although the use of biometrics can be applied in other ways).

固件保护firmware protection

根据本示例的系统的原理是,支付人设备的用户必须确定显示在签名屏幕上的并且被用户接受的数据是可利用支付人设备签署的唯一数据。The principle of the system according to this example is that the user of the payer device must be sure that the data displayed on the signing screen and accepted by the user is the only data that can be signed with the payer device.

这可以通过设备中的固件来实现。固件被设置为使得单个固件具有以下功能:This can be achieved through firmware in the device. The firmware is arranged such that a single firmware has the following functions:

1.将信息显示给用户,1. Display information to the user,

2.接受“OK”和PIN或其他生物特征,以及2. Accept "OK" and a PIN or other biometric, and

3.将显示给用户的数据发送至安全模块(通常是SIM)。3. Send the data displayed to the user to the security module (usually SIM).

防止应用软件执行上述步骤3,而没有为用户显示与为加密或数字签署而发送的完全相同的信息。Prevent the application from performing step 3 above without presenting the user with exactly the same information that was sent for encryption or digital signing.

固件使支付人设备自身免受软件攻击。通过各种无线接口,设备可能对病毒和蠕虫攻击是开放的。设计就是确保为应用软件提供的用来向SIM发送数据的任何接口专门防止“支付批准”消息被发送到SIM。只有支付批准显示例程才能够发送该响应。这确保了消费者看到,并且物理上按下某一最小形式的“OK”按钮,来批准每笔交易。Firmware protects the payer device itself from software attacks. Through various wireless interfaces, devices may be open to virus and worm attacks. The design is to ensure that any interface provided for the application software to send data to the SIM specifically prevents "payment approval" messages from being sent to the SIM. Only the Payment Approval Display routine can send this response. This ensures that the consumer sees and physically presses some minimal form of "OK" button to approve each transaction.

过滤器阻止应用软件向安全模块或SIM直接发出“生成签名”命令。The filter prevents the application software from issuing a "generate signature" command directly to the security module or SIM.

设置标准set the standard

该系统有许多可能的结构。对于任何部署,都需要确定在要部署该系统的市场中哪种无线和加密标准是最适用的。由全球多个标准引起的问题是,当消费者移动到例如他们自己的支付人设备由于不同标准而无法通信的区域中时,他们将面对以下选择:1)获得针对他们所移动到的区域的支付人设备,或者2)他们可能需要临时禁能该系统。There are many possible configurations for this system. As with any deployment, it is necessary to determine which wireless and encryption standards are most applicable in the market where the system is to be deployed. The problem caused by multiple standards around the world is that when a consumer moves into an area where for example their own payer device cannot communicate due to different standards, they will be faced with the following options: 1) Get the 2) they may need to temporarily disable the system.

目前,GSM是首选的全球系统,但是,例如在日本iMode系统将是合理的选择。Currently, GSM is the preferred global system, however, for example in Japan an iMode system would be a logical choice.

系统部署system deployment

为了最初部署系统,需要至少一个银行(或其他发卡者)和一个移动电话系统运营商协同来部署该系统。In order to initially deploy the system, at least one bank (or other card issuer) and one mobile phone system operator need to cooperate to deploy the system.

移动电话私系统运营商的角色The role of mobile phone private system operators

●移动电话运营商设置标准并要求至少一个移动电话供应商并入所述固件。• Mobile phone operators set standards and require at least one mobile phone provider to incorporate the firmware.

●然后移动电话运营商通过销售电话和移动电话运营商的定制服务的零售商来推广经改装的电话、SIM和匹配非接触式智能卡的包。• The mobile phone operator then promotes the retrofitted phone, SIM and package matching the contactless smart card through retailers who sell the phone and the mobile phone operator's custom service.

●移动电话的SIM的制造商将通过本文提供的说明而具备制造适当的SIM和非接触式卡的所有知识。网络运营商将这些指令传送给• A manufacturer of a SIM for a mobile phone will have all the knowledge to manufacture a suitable SIM and contactless card through the instructions provided herein. The network operator sends these instructions to the

SIM供应商并且定购SIM。SIM provider and order SIM.

●移动电话运营商必须(直接或通过网关运营商)提供计算机系统,以接收支付批准请求并将它们发送给它们的定购者。• Mobile phone operators must provide (directly or through gateway operators) computer systems to receive payment approval requests and send them to their subscribers.

发卡机构的角色The role of card issuers

●发卡机构向持卡人推广服务。●The card issuer promotes services to cardholders.

●发卡机构的零售部门提供服务以利用消费者所持有的卡的详细信息来初始化支付人设备。• The retail arm of the card issuer provides a service to initialize the payer device with the details of the card held by the customer.

电话运营商变为发卡机构的另选模型Alternative Model for Telephone Carriers to Card Issuers

移动电话运营商或移动电话运营商所使用的独立网关可变为发卡机构,而不需要提供借记或信用设备。所发行的卡将简单地链接到消费者现有的借记或信用帐户,但将具有链接到来自多个发卡机构的帐户的能力。A mobile phone operator or a separate gateway used by a mobile phone operator can become a card issuer without the need to provide a debit or credit facility. The cards issued will simply be linked to a consumer's existing debit or credit account, but will have the ability to link to accounts from multiple card issuers.

所发行的卡将使授权请求路由回到网关,从而为发卡机构节省了新的基础设施。The issued card will have the authorization request routed back to the gateway, saving the card issuer new infrastructure.

在许多国家,移动电话运营商还为卡处理中心提供服务和基础设施。In many countries, mobile phone operators also provide services and infrastructure for card processing centres.

支付人设备软件Payer Device Software

以下功能应该添加到标准移动电话或其他袖珍计算机设备中,以得到本发明的一个实施例。为了例示,与实施有关的详细信息限于GSM移动电话的优选实施例。The following functions should be added to a standard mobile phone or other pocket computer device to obtain an embodiment of the present invention. For the sake of illustration, implementation-related details are limited to the preferred embodiment of a GSM mobile phone.

支付屏幕payment screen

支付屏幕应该具有不能由载入到设备中的任何新应用软件模仿的唯一识别特征。例如,“支付线”具有红框(solid red)背景,电话的固件防止任何应用来绘制类似的红框横幅标题(banner)。该措施是为了阻止病毒程序获知卡PIN。The payment screen should have a unique identifying feature that cannot be imitated by any new application software loaded onto the device. For example, "Payline" has a solid red background, and the phone's firmware prevents any application from drawing a similar red-framed banner. This measure is to prevent virus programs from learning the card PIN.

软件组件software components

支付人设备实施例中需要以下软件组件。The following software components are required in the Payer Device embodiment.

●来自网络的支付请求消息。• Payment request messages from the network.

●发往SIM的支付请求消息。• Payment request message to SIM.

●支付请求数据输入屏幕。● Payment request data entry screen.

●发往SIM的支付请求屏幕数据消息。• Payment Request Screen Data message to SIM.

●来自SIM的支付请求响应。• Payment Request Response from SIM.

●从SIM传递到网络的支付请求响应。• Payment request response passed from SIM to network.

●来自网络的支付收到响应。● Payment received response from network.

●支付屏幕选项菜单。● Payment screen options menu.

●支付选项菜单。● Payment options menu.

支付请求消息payment request message

GSM移动电话所用的简单方法是接收支付请求,作为加特别标记的SMS消息。A simple method used by GSM mobile phones is to receive payment requests as specially tagged SMS messages.

可简单地将支付请求消息直接传送至SIM模块。The payment request message can simply be sent directly to the SIM module.

电话启动支付Phone Initiated Payment

支付人设备可用于启动对特定人或商行(business)的支付。选择进行支付的人的简单方式是通过电话号码。A payer device can be used to initiate a payment to a specific person or business. An easy way to choose who will make the payment is by phone number.

这种支付方法易于出错-有可能支付给错误的人。因此,建议(但不必须)所支付的号码是存储在电话的电话簿中的已有条目。This method of payment is prone to error - it is possible to pay the wrong person. Therefore, it is recommended (but not required) that the paid number is an existing entry stored in the phone's phonebook.

输入金额作为支付画面之一Enter the amount as one of the payment screens

来自支付屏幕的选项Options from payment screen

●选择帐户。● Select an account.

●传递。● pass on.

来自空闲设备的支付菜单Payment menu from idle device

●默认帐户。● Default account.

●查看交易。● View transactions.

●启动支付。● Initiate payment.

支付设备类型和技术Payment Device Types and Technologies

使用“成对”通信的自适应系统Adaptive systems using "pair-wise" communication

为局域无线通信提出了改进的局域无线通信。诸如蓝牙的局域无线通信可发生在彼此已知的设备之间或发生在未被预设为彼此对话的设备之间。优选的是,可将通信限定为在处理中先前已彼此识别为“成对”的设备。每个设备都具有能够成对的唯一网络ID。An improved local area wireless communication is proposed for local area wireless communication. Local area wireless communication, such as Bluetooth, can occur between devices that are known to each other or between devices that are not programmed to talk to each other. Preferably, communication may be limited to devices that have previously identified each other as a "pair" in the process. Each device has a unique network ID that enables pairing.

由于支付人设备在许多场合的支付点处使用并且经常以自组织(adhoc)为基础,所以最初似乎无法进行成对通信。Since payer devices are used at the point of payment on many occasions and are often on an ad hoc basis, pairwise communication initially appeared to be impossible.

利用用于启动交易的近程通信可以克服这个问题。对于每个支付人设备,可以发行具有唯一标识的支付蓝牙设备的“幻象”点。支付人设备可与该支付点成对。然而,网络标识符被简单地保留并记录在非接触式智能卡上,而不是提供实际支付点作为实际成对的设备。当实际的支付点检测到用于支付人设备的智能卡时,支付点的局域无线通信从非接触式卡读取所需的网络标识符并采用该标识。这样,支付点就变为支付人设备的成对设备。This problem can be overcome using short range communication for initiating transactions. For each payer device, a "phantom" point may be issued with a unique identification of the paying bluetooth device. A payer device may be paired with the payment point. However, the network identifier is simply retained and recorded on the contactless smart card, rather than providing the actual point of payment as an actual paired device. When the actual point of payment detects the smart card for the payer device, the local area wireless communication of the point of payment reads the required network identifier from the contactless card and adopts this identity. In this way, the payment point becomes a paired device of the payer's device.

新支付点new payment point

饭店钱夹hotel wallet

电子支付点可构造为用于为消费者呈现可支付金额的饭店钱夹的形式,或饭店中通常使用的支付箱(receptacle)的形式。目前,消费者插入他们的信用卡或支付所需现金进行支付。在提供卡支付的情况下,饭店工作人员必须履行另外的步骤,并且消费者必须等待。工作人员和消费者都感到不便。通过使用支付人设备并且将电子支付点内置在支付箱中,消费者可自己支付而不用等待,并可以在他们之间分开支付,而无需要求饭店工作人员辅助这样的复杂操作,消费者和饭店工作人员都从中受益。The electronic payment point may be configured in the form of a restaurant wallet for presenting the consumer with an amount payable, or in the form of a payment receptacle commonly used in restaurants. Currently, consumers make payments by inserting their credit card or paying the required cash. Where card payment is offered, additional steps must be performed by restaurant staff and the customer must wait. Both staff and consumers are inconvenienced. By using a payer device and having an electronic payment point built into the payment box, consumers can pay by themselves without waiting, and can split the payment between them without requiring restaurant staff to assist such complicated operations, consumers and restaurants The staff all benefit from it.

根据示例性实施例的系统的其他细节:Further details of the system according to the exemplary embodiment:

样本画面sample screen

  ------------------------------

  Pay:MeterPay: Meter

       $2.20$2.20

  for 20minsfor 20mins

  ------------------------

  Pay:FoodPay: Food

   $50:70$50:70

   15%tip15% tip

  ********

  ------------------------

  pay:pay:

  DJs booksDJs books

  $29.95$29.95

  ****     ←------PIN ENTRY**** ←------PIN ENTRY

  ----------------------

样本消息sample message

支付请求payment request

该消息将从网络发送至电话。The message will be sent from the network to the phone.

字段field

    字段 field     用途 Use     Amount Amount     要支付的金额-或者,对于单位支付-单价 The amount to be paid - or, for unit payments - the unit price Payto textPayto text 要被支付的商行或人的文本表示A textual representation of the business or person to be paid     Payto# Payto#     要被支付的商行或人的电话号码   Phone number of the business or person to be paid     Unit Text   Unit Text     可达4个字符,指定了用于单位支付的单位 Up to 4 characters specifying the unit used for unit payments     Minimum unit Minimum unit     支付必须匹配多个这样的单位 The payment must match more than one such unit     Flag:allow increase Flag: allow increase     Flag:allow decrease Flag: allow decrease

Amount:请求要支付的金额(或其相关的-单价)。Amount: The amount (or its relative - unit price) to be paid by the request.

Payto:要被支付的人或组织的文本表示。Payto: A textual representation of the person or organization to be paid.

Payto#:要被支付的人或组织的电话号码。Payto#: The phone number of the person or organization to be paid.

Unit Text:可达3个字符,显示了要购买的物品的单位(如果无关,则为空)。Unit Text: Up to 3 characters, showing the unit of the item to be purchased (empty if not relevant).

Minimum unit:如果无关,则为0。Minimum unit: 0 if don't care.

Flag-vary up amount?:是否有相应的小费以及是否可以增加金额。Flag-vary up amount? : Whether there is a corresponding tip and whether the amount can be increased.

Flag-vary down amount?:是否可以减少金额。Flag-vary down amount? : Whether the amount can be reduced.

支付交易流程Payment Transaction Process

现有的磁卡交易Existing Magnetic Card Transactions

    步骤 steps     设备 equipment     注释 Notes     刷卡 Swipe card     输入金额 Enter the amount     向银行发送Txn   Send Txn to the bank     银行开始确认 The bank starts to confirm   参见下文的“支付确认步骤” See "Payment Confirmation Steps" below

支付确认步骤Payment Confirmation Steps

    步骤 steps     设备 equipment     注释 Notes

根据示例性实施例的系统的特征:Features of the system according to an exemplary embodiment:

1.利用消费者携带的无线设备进行支付确认。1. Use the wireless device carried by the consumer to confirm the payment.

2.利用消费者携带的安全无线设备进行支付确认。2. Utilize a secure wireless device carried by the consumer for payment confirmation.

3.利用消费者携带的安全无线设备对本人的支付进行支付确认。3. Use the secure wireless device carried by the consumer to confirm the payment of the person himself.

4.利用可从设备得到的支付选项通过消费者携带的安全无线设备进行支付确认。4. Confirmation of payment through the secure wireless device carried by the consumer using the payment options available from the device.

非接触式卡启动Contactless card activation

●利用消费者携带的无线设备进行支付确认。● Confirmation of payment using a wireless device carried by the consumer.

●利用消费者携带的安全无线设备进行支付确认。●Utilizes a secure wireless device carried by the consumer for payment confirmation.

●利用消费者携带的安全无线设备对本人的支付进行支付确认。●Use the secure wireless device carried by the consumer to confirm the payment of the person himself.

●利用可从设备得到的支付选项通过消费者携带的安全无线设备进行支付确认。• Confirmation of payment through the secure wireless device carried by the consumer using the payment options available from the device.

消费者携带的用于交易的安全确认的无线设备由以下卡启动:Wireless devices carried by consumers for secure confirmation of transactions are activated by the following cards:

●非接触式智能卡。●Contactless smart card.

●磁式信用借记卡。●Magnetic credit and debit cards.

●智能卡信用借记卡。●Smart card credit debit card.

●混合的磁/智能卡借记/信用卡。● Hybrid magnetic/smart card debit/credit card.

支付特征payment feature

●电话屏幕上的PIN输入模式。● PIN entry mode on phone screen.

●发往SIM的受保护支付命令。• Protected payment commands to SIM.

●带有%和单位选项的支付画面。● Payment screen with % and unit options.

网关gateway

●执行移动电话通信网关中所述的三个任务中任何一个的通信网关通信。• A communications gateway that performs any of the three tasks described in Mobile Telephony Communications Gateway.

●用于蓝牙或其他“成对”通信系统的自适应系统。• Adaptive system for Bluetooth or other "pair-to-pair" communication systems.

●带有用于支付人设备的接口的支付点。• A payment point with an interface for the payer's device.

●输入特定电话号码后发出拨号音(touch tone)的移动电话。●Mobile phones that emit a touch tone when a specific phone number is entered.

●通过移动电话利用语音通信来识别要被支付的支付点而进行支付。• Payment is made by mobile phone using voice communication to identify the point of payment to be paid.

对本领域技术人员显而易见的是,修改和变型将视为落入本发明的范围内。Modifications and variations apparent to those skilled in the art are deemed to fall within the scope of the present invention.

Claims (150)

1, a kind of method of paying, this method may further comprise the steps:
The information that is associated with the payer is provided, and described information so that be subjected to is paid the mode that the people can visit described information and is provided,
By receiving the information relevant with described payment with payer's electronic equipment that described payer is associated, and
Use the described electronic equipment that is associated with described payer to provide the instruction of paying.
2, method according to claim 1, the wherein said information relevant with payment comprises payment information, and described method also comprises the step of the payment information that described payer's electronic equipment identification is associated with described payment.
3, method according to claim 2, the described step that wherein provides instruction comprises that described payer's electronic equipment generates message that comprises payment information and the step that this message is sent to transaction processing system.
4, according to claim 2 or the described method of claim 3, wherein said payment information comprises the price of product.
5, according to claim 2,3 or 4 described methods, wherein said payment information comprises the sign of product.
6, according to any described method in the claim 2 to 5, wherein said payment information comprises that the described payment that is subjected to pay the people identifies, thereby described transaction processing system can be paid by the account who pays the people to described.
7, according to any described method in the claim 2 to 6, wherein said payer's electronic equipment comprises display, and described method comprises that also described payer's electronic equipment is set to show the step of payment information on described display.
8, according to any described method in the above claim, the wherein said information relevant with payment comprises payment, and wherein said method comprises that also described payer's electronic equipment changes the step of described payment.
9, method according to claim 8, wherein said payer's electronic equipment comprises user input apparatus, and the described step that changes described payment comprises the step of user by described input media input payment after changing.
10, according to any described method in the above claim, the wherein said information relevant with payment comprises the product information of tabular form, described tabulation comprises at least one product identifiers, and described method comprises that described payer's electronic equipment selects the step of at least one product identifiers, and the described information that is associated with the payer comprises selected product identifiers.
11, method according to claim 10, wherein said tabulation comprises a plurality of described product identifiers, these product identifiers comprise the described menu that is subjected to pay the product that the people provides, thereby described payer's electronic equipment can be selected in the described product one or more, makes describedly to be subjected to pay a people described product can be provided.
12, according to claim 10 or the described method of claim 11, wherein the payer can obtain described tabulation by network, it is uploaded to described payer's electronic equipment.
13, method according to claim 12, wherein said network are the wide area networks such as the internet.
14, according to any described method in the above claim, wherein the described step that receives the information relevant with described payment by described payer's electronic equipment comprises the step that receives the information relevant with described payment from inactive component.
15, method according to claim 14, but the equipment that wherein said inactive component is a light to be read.
16, method according to claim 15, but the equipment that wherein said light reads is bar code.
17, according to claim 14,15 or 16 described methods, wherein the part as invoice provides described inactive component.
18, according to claim 14,15 or 16 described methods, wherein said inactive component provides with the product of sale.
19, according to any described method in the claim 14 to 18, wherein saidly comprise following instruction with the relevant information of payment, described instruction is used to utilize and should be used for controlling described payer's electronic equipment so that the instruction of carrying out described payment to be provided.
20, method according to claim 19 wherein saidly comprises positional information with the relevant information of payment, and this positional information has identified the position that payer's electronic equipment can obtain to upload to the described application of described payer's electronic equipment.
21, according to any described method in the above claim, the step that wherein receives the information relevant with described payment comprises from receiving described information with the described pair people's electronic equipment that is subjected to that be associated by pair people.
22, method according to claim 21, the wherein said information that is associated with the payer comprise makes the described payer's electronic device information that people's electronic equipment can communicate with described payer's electronic equipment that is subjected to pay.
23, method according to claim 22, wherein said payer's electronic device information is provided by the access means that is associated with described payer's electronic equipment.
24, method according to claim 23, wherein said access means is a smart card.
25, according to claim 23 or the described method of claim 24, wherein said access means and described payer's electronic equipment are integrated.
26,, wherein saidly be subjected to pay communicating by letter between people's electronic equipment and the described payer's electronic equipment and undertaken by local area wireless network according to any described method in the claim 22 to 25.
27, according to any described method in the claim 22 to 26, wherein said payer's electronic equipment is undertaken by communicating by letter between pair people's electronic equipment by telephone network with described.
28, method according to claim 27, wherein said telephone network comprises mobile telephone network.
29, according to any described method in the above claim, the described step that wherein provides the instruction of paying comprises that described payer's electronic equipment provides and comprises payment and the described instruction that is subjected to pay people's payment sign, and described instruction is sent to transaction processing system.
30, method according to claim 29 wherein directly is sent to described transaction processing system with described instruction from described payer's electronic equipment.
31, method according to claim 29 wherein is sent to described transaction processing system via being subjected to pay people's electronic equipment with described instruction.
32, according to any described method in the above claim, the described instruction that wherein is used to pay comprises that the expression that is sent to transaction processing system should carry out the affirmation of described payment.
33, method according to claim 32, this method comprise the step that is generated described affirmation by described payer's electronic equipment.
34, method according to claim 33, wherein said payer's electronic equipment comprises input media, and the described step that generation is confirmed comprises that the requirement user makes it possible to generate the step of described affirmation by described input media input.
35, method according to claim 34, the wherein said step that requires is carried out by should being used for of being provided of described payer's electronic equipment.
36, method according to claim 35 realizes in the wherein said firmware that is applied in described payer's electronic equipment.
37, according to claim 34,35 or 36 described methods, wherein said payer's electronic equipment comprises display, and the described step that requires requires described user to approve the information relevant with described payment that appears on the described display by described input media.
38, according to any described method in the claim 32 to 37, wherein said affirmation comprises coded message.
39, according to the described method of claim 38, wherein said coded message is a digital signature.
40, according to any described method in the above claim, the wherein said information that is associated with the payer comprises described payer's account's account identifier.
41, according to the described method of claim 40, wherein said account identifier is by providing the described payer such as the card of credit card to provide.
42, according to the described method of claim 40, wherein said account identifier is a part of account 10, and wherein transaction processing system stores other parts of account 10.
43, according to the described method of claim 42, wherein said part account 10 is provided with encrypted form by described payer's electronic equipment.
44, according to any described method in the above claim, the wherein said information relevant with payment comprises one or more application, described one or more application comprises instruction, and described instruction is used to control described payer's electronic equipment provides the instruction of carrying out described payment.
45, according to the described method of claim 44, described method also comprises the step that described one or more application is uploaded to described payer's electronic equipment from network.
46, according to any described method in the above claim, the wherein said information that is associated with the payer is the affirmation that payment has been taken place.
47, according to any described method in the above claim, the wherein said information that is associated with the payer comprises described payer's sign.
48, according to any described method in the above claim, the described step that wherein provides the instruction of carrying out described payment comprises that described payer's electronic equipment carried out pre-approval to described payment by the pre-approval instruction is provided to transaction processing system before described payment transaction takes place.
49, according to any described method in the above claim, wherein said payer's electronic equipment is a portable set.
50, according to the described method of claim 49, wherein said portable set is a palmtop computer.
51, according to claim 49 or 50 described methods, wherein said portable set is a mobile phone.
52, a kind of method of handling payment transaction, this method may further comprise the steps: transaction processing system receives the instruction of paying from the payer's electronic equipment that is associated with the payer; Described transaction processing system authority to pay; And described transaction processing system provides the payment affirmation that account transfer has been authorized to.
53, according to the described method of claim 52, the described step that wherein receives instruction comprises the step that receives message from payer's electronic equipment, and described message comprises payment information.
54, according to the described method of claim 53, wherein said payment information comprises that payment and the described payment that is subjected to pay the people identify.
55,, wherein provide the described step of payment affirmation to comprise that described transaction processing system is sent to described payment affirmation the step that is subjected to pay people's electronic equipment according to claim 52,53 or 54 described methods.
56,, wherein provide the described step of payment affirmation to comprise that described transaction processing system is sent to described payment affirmation the step of payer's electronic equipment according to any described method in the claim 52 to 55.
57, according to the described method of claim 56, wherein said payer's electronic equipment comprises display, and provides the described step of payment affirmation to comprise described affirmation to be provided, to make it to appear on the described display of described payer's electronic equipment.
58, according to the described method of claim 57, the described payment affirmation that wherein appears on the described display is a machine-readable form, and can read by being subjected to pay people's electronic equipment.
59, according to the described method of claim 58, wherein said machine-readable form is a bar code.
60, according to any described method in the claim 52 to 59, this method also comprises the step that receives product information from described payer's electronic equipment, and described product information has identified at least one product that is subjected to pay the people that will be paid.
61,,, this method is subjected to pay that people's electronic equipment is described is subjected to pay the step that the people can offer described product described payer thereby comprising that described transaction processing system is sent to described product information according to the described method of claim 60.
62, according to claim 60 or the described method of claim 61, this method comprises the step that the product tabulation is uploaded to described payer's electronic equipment, and described product tabulation comprises can be by at least one product that is subjected to pay the people of described payer's electronic equipment selection.
63, according to the described method of claim 62, this method comprises the database that the product tabulation is provided so that upload to the step of payer's electronic equipment, and each product tabulation all comprises can be by corresponding at least one product that is subjected to pay the people of payer's electronic equipment selection.
64, according to any described method in the claim 52 to 63, this method comprises the step that application is uploaded to described payer's electronic equipment, described application comprises instruction, and described instruction is used to control described payer's electronic equipment provides the instruction of carrying out described payment.
65, according to the described method of claim 64, this method comprises provides the database that comprises application so that upload to the step of described payer's electronic equipment, described application has instruction, and described instruction is used to control payer's electronic equipment provides the instruction of paying.
66, according to any described method in the claim 52 to 65, the described instruction that wherein is used to pay comprises the affirmation that should carry out described payment from the expression of described payer's electronic equipment.
67, according to the described method of claim 66, the wherein said coded message that is confirmed to be.
68, according to the described method of claim 67, wherein said coded message is a digital signature.
69, according to claim 66,67 or 68 described methods, wherein said payer's electronic equipment generates described affirmation needs the user to start the input media of described payer's electronic equipment.
70, according to any described method in the claim 66 to 69, this method comprises that described transaction processing system sends the step of the request of confirming to described payer's electronic equipment.
71, according to any described method in the claim 52 to 70, the described instruction that wherein is used to pay comprises payer's account information.
72, according to the described method of claim 71, wherein said payer's account information comprises the part of account identifier, and wherein said transaction processing system stores the remainder of this account identifier, thereby can discern described payer account when described transaction processing system when described payer's electronic equipment receives described part.
73, according to any described method in the claim 52 to 72, the described instruction that wherein is used to pay comprises the pre-approval instruction that is used for the payment that will take place is subsequently carried out pre-approval, and described method comprises that described transaction processing system stores the step of described pre-approval instruction.
74, according to any described method in the claim 52 to 73, the described instruction that wherein is used to pay is from from the transmission of payer's electronic equipment and directly receive.
75, according to any described method in the claim 52 to 73, the described instruction that wherein is used to pay is via being subjected to pay people's electronic equipment from being subjected to pay the transmission of people's electronic equipment and receiving indirectly to described by described payer's electronic equipment.
76, according to any described method in the claim 52 to 74, wherein said payer's electronic equipment is a portable set.
77, according to the described method of claim 76, wherein said portable set is a palmtop computer.
78, according to claim 76 or 77 described methods, wherein said portable set is a mobile phone.
79, a kind of being convenient to from the payer to being subjected to pay the equipment that the people pays transaction, this equipment comprises the payer's electronic equipment that is associated with described payer, and described payer's electronic equipment comprises the payment instruction issue device that is used to receive the payment information receiving trap of the information relevant with described payment and is used to provide the instruction of carrying out described payment.
80, according to the described equipment of claim 79, wherein said payer's electronic equipment comprises the payment processes device that is used to discern payment information.
81,0 described equipment according to Claim 8, wherein said payer's electronic equipment comprise the message issue device that is used to generate the message that comprises payment information and are used for described message is sent to the dispensing device of transaction processing system.
82,1 described equipment according to Claim 8, wherein said payment information comprises payment.
83, according to Claim 81 or the described equipment of claim 82, wherein said payment information comprises the sign of product.
84,1,82 or 83 described equipment according to Claim 8, wherein said payment information comprise that the described payment that is subjected to pay the people identifies, and handles the payment that is subjected to pay people account for described thereby be convenient to described transaction processing system.
85, according to any described equipment in the claim 79 to 84, wherein said payer's electronic equipment comprises display, and is used to show payment information.
86, according to any described equipment in the claim 79 to 85, the wherein said information relevant with payment comprises payment, and wherein said payer's electronic equipment comprises the input media that makes described user can change described payment.
87, according to any described equipment in the claim 79 to 86, the wherein said information relevant with payment comprises product information, described product information comprises at least one product identifiers, and described payer's electronic equipment comprises and is used to select at least one product identifiers to be sent to the selecting arrangement that is subjected to pay the people.
88,7 described equipment according to Claim 8, wherein said product information is a tabular form, described tabulation comprises a plurality of product identifiers that described payer's electronic equipment can therefrom be selected.
89, according to Claim 87 or the described equipment of claim 88, wherein said payer's electronic equipment is used for uploading described product information from the database that can obtain described product information.
90, according to any described equipment in the claim 79 to 89, wherein said payer's electronic equipment comprises the reading device that is used for reading from inactive component the information relevant with described payment.
91, according to the described equipment of claim 90, but the equipment that wherein said inactive component is a light to be read, and described reading device comprises optical pickup.
92, according to the described equipment of claim 91, but the equipment that wherein said light reads is bar code.
93, according to claim 91 or the described equipment of claim 92, wherein said reading device comprises camera.
94, according to any described equipment in the claim 91 to 93, wherein said reading device is used to discern the inactive component of the information that provides relevant with described payment.
95, according to any described equipment in the claim 79 to 94, described payer's electronic equipment also comprises the communicator that is used for and communicated by pair people's electronic equipment.
96, according to the described equipment of claim 95, wherein said communicator comprises and makes it possible to the device that communicates by local area wireless network.
97, according to claim 95 or the described equipment of claim 96, described payer's electronic equipment comprises and is used for being subjected to pay to described that people's electronic equipment provides information so that can be subjected to pay the access means that communicates between people's electronic equipment and the described payer's electronic equipment described.
98, according to the described equipment of claim 97, wherein said access means is a smart card.
99, according to claim 97 or the described equipment of claim 98, wherein said access means and described payer's electronic equipment are integrated.
100, according to any described equipment in the claim 95 to 99, wherein said payer's electronic equipment comprises the dispensing device that is used for sending to transaction processing system the instruction of carrying out described payment, and described dispensing device is used for sending described instruction via the described pair people's electronic equipment that is subjected to.
101, according to any described equipment in the claim 79 to 100, described payer's electronic equipment comprises remote transmitting device, and the instruction that this remote transmitting device is used for carrying out described payment is sent to transaction processing system.
102, according to the described equipment of claim 101, wherein said remote transmitting device is the transmitter that is used for sending via mobile telephone network signal.
103, according to any described equipment in the claim 79 to 102, the instruction that wherein is used to carry out described payment comprises that the expression that sends to transaction processing system should carry out the affirmation of described payment, and described payment instruction issue device comprises and is used to generate described affirmation apparatus for converting shy with strangers really.
104, according to the described equipment of claim 103, wherein said payer's electronic equipment comprises input media, and will make described affirmation generating apparatus generate user's input that described affirmation need be passed through described input media.
105, according to the described equipment of claim 104, wherein said affirmation generating apparatus is partly or wholly realized by firmware.
106, according to claim 104 or the described equipment of claim 105, wherein said payer's electronic equipment comprises display, and described affirmation generating apparatus requires described user to approve the information relevant with described payment that appears on the described display by described input media, so that be that it generates affirmation.
107, according to claim 104,105 or 106 described equipment, wherein said affirmation generating apparatus is used to generate the affirmation of coded message form.
108, according to the described equipment of claim 107, wherein said coded message is a digital signature.
109, according to any described equipment in the claim 79 to 108, described payer's electronic equipment comprises the memory storage that is used to store at least one application, described application comprises instruction, and described instruction is used to control described payment instruction issue device and provides the instruction of carrying out described payment.
110, according to the described equipment of claim 109, described payer's electronic equipment is used for uploading described at least one application from database.
111, according to any described equipment in the claim 74 to 110, the instruction that wherein is used to carry out described payment comprises the account's who has identified described payer account identifier.
112, according to the described equipment of claim 111, wherein said account identifier comprises the part of account number, and wherein transaction processing system stores other parts of account.
113, according to any described equipment in the claim 79 to 112, the instruction that wherein is used to carry out described payment comprises pre-approval, and this pre-approval is used to authorize the payment for follow-up payment transaction.
114, a kind of transaction processing system that is used to handle payment transaction, this system comprises: the payment instruction receiving trap is used for being used for from described payer to being subjected to pay the instruction that the people pays from the payer's electronic equipment reception that is associated with the payer; And the payment processes device, be used to authorize from payer account to the funds transfer that is subjected to pay people account.
115, according to the described transaction processing system of claim 114, this transaction processing system also comprises and is used to confirm to pay the payment affirmation device that has taken place.
116, according to the described system of claim 115, wherein said payment affirmation device is used for payment affirmation is sent to described and is subjected to pay that the people is associated is subjected to pay people's electronic equipment.
117, according to claim 115 or the described system of claim 116, wherein said payment affirmation device is used for payment affirmation is sent to described payer's electronic equipment.
118, according to the described system of claim 117, wherein said payer's electronic equipment comprises display, and described payment affirmation device provides described payment affirmation, makes it to appear on the described display of described payer's electronic equipment.
119, according to the described system of claim 118, the described payment affirmation that wherein appears on the described display is a machine-readable form, and can read by being subjected to pay people's electronic equipment.
120, according to the described system of claim 119, wherein said machine-readable form is a bar code.
121, according to any described system in the claim 114 to 120, this system also comprises the product information receiving trap that is used for receiving from described payer's electronic equipment product information, and described product information has identified at least one product that is subjected to pay the people that will be paid.
122, according to the described system of claim 121, this system also comprises being used for described product information is sent to and is subjected to pay people's electronic equipment, thereby describedly is subjected to pay the product information dispensing device that the people can offer described product described payer.
123, according to claim 121 or 122 described systems, this system also comprises the database of product tabulation, and make it possible to the product tabulation is uploaded to payer's electronic equipment, each product tabulation all comprises can be by corresponding at least one product that is subjected to pay the people of payer's electronic equipment selection.
124, according to any described system in the claim 114 to 123, this system also comprises database, described database comprises the one or more application that are used to upload to described payer's electronic equipment, described one or more application comprises instruction, and described instruction is used to control described payer's electronic equipment provides the instruction of paying.
125, according to any described system in the claim 114 to 124, the instruction that wherein is used to carry out described payment comprises the affirmation that should carry out described payment from the expression of described payer's electronic equipment.
126, according to the described system of claim 125, the wherein said coding form of confirming as, and described system comprises and is used for device that described instruction is decoded.
127, according to the described system of claim 126, wherein said coding form is a digital signature.
128, according to any described system in the claim 114 to 127, the instruction that wherein is used to carry out described payment comprises payer's account information, this payer's account information comprises the part of account identifier, and described system also comprises the database of the remainder that stores described account identifier, thereby can discern described payer account.
129, according to any described system in the claim 114 to 128, this system also comprises the pre-approval database that stores the pre-approval instruction, and described pre-approval instruction is used for pre-approval is carried out in the payment that takes place subsequently.
130, a kind of equipment of being convenient to handle transaction, this equipment comprise and are used for and are subjected to pay people's electronic equipment according to what any described transaction processing system of claim 114 to 129 communicated.
131, according to the described equipment of claim 130, this equipment is used to receive the product information that has identified at least one product.
132, according to the described equipment of claim 131, this equipment comprises the device that is used to print described product tabulation.
133, a kind of system, this system comprises: according to any described equipment in the claim 79 to 99; According to any described system in the claim 115 to 129; And according to any described equipment in the claim 130 to 132.
134, a kind of database, this database comprise the available a plurality of product tabulations of payer's electronic equipment, thereby described payer's electronic equipment can be selected one or more product from described product tabulation, send to be subjected to pay the people, to satisfy product demand.
135, a kind of inactive component, this inactive component can be read by payer's electronic equipment, so that the transaction of paying.
136, according to the described equipment of claim 135, wherein said inactive component is a bar code.
137, according to claim 135 or the described equipment of claim 136, wherein said inactive component comprises makes described payer's electronic equipment can handle the payment information of payment.
138, according to any described equipment in the claim 135 to 137, wherein said inactive component comprises the product tabulation, and this product has been listed at least one product of selecting for described payer's electronic equipment.
139, according to claim 135 or 136 described equipment, wherein said inactive component is associated with product, and provides following information, this information to make payer's electronic equipment can make the transaction of the described product of payment convenient more.
140, according to the described equipment of claim 139, wherein said inactive component sticks on the described product or in the packing of product.
141, according to any described equipment in the claim 135 to 138, wherein said inactive component is the part of the menu in restaurant or the restaurant.
142, according to any described equipment in the claim 135 to 140, wherein said inactive component comprises the information of using that identified, and described payer's electronic equipment utilizes the described payment transaction facility more that should be used for making.
143, a kind of inactive component, this inactive component comprise the information that has identified application, and electronic equipment utilizes the described information that is associated with described inactive component that should be used for handling.
144, according to the described equipment of claim 143, wherein said inactive component is a bar code.
145, a kind of computer program, this computer program comprise and are used for controlling computing equipment to implement the instruction according to any described method of claim 1 to 51.
146, a kind of computer-readable medium that provides according to the described computer program of claim 145.
147, a kind of computer program, this computer program comprise and are used for controlling computing equipment to implement the instruction according to any described method of claim 52 to 78.
148, a kind of computer-readable medium that provides according to the described computer program of claim 147.
149, a kind of method that starts software application, this method may further comprise the steps: the inactive component that utilizes the information that comprises the position that has identified software application; Described information is uploaded to subscriber equipment; And utilize described subscriber equipment to obtain described application from remote location.
150, a kind of method of organizing formation, this method may further comprise the steps: provide information to user's mobile phone, this information representation the position of user in described formation; And along with described user moving of position and upgrade described information in described formation.
CNA2005800251668A 2004-06-25 2005-06-24 Transaction processing method, device and system Pending CN1989520A (en)

Applications Claiming Priority (5)

Application Number Priority Date Filing Date Title
AU2004903470 2004-06-25
AU2004903470A AU2004903470A0 (en) 2004-06-25 A system and method of making a payment
AU2004903997 2004-07-19
AU2004904941 2004-08-30
AU2005901230 2005-03-14

Publications (1)

Publication Number Publication Date
CN1989520A true CN1989520A (en) 2007-06-27

Family

ID=38185459

Family Applications (1)

Application Number Title Priority Date Filing Date
CNA2005800251668A Pending CN1989520A (en) 2004-06-25 2005-06-24 Transaction processing method, device and system

Country Status (2)

Country Link
CN (1) CN1989520A (en)
ZA (1) ZA200700671B (en)

Cited By (11)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101685512A (en) * 2008-09-28 2010-03-31 中国银联股份有限公司 Computer, payment system and method thereof for realizing on-line payment
CN101853342A (en) * 2009-03-30 2010-10-06 宋煜燊 The anti identity theft and the payment network of protection privacy
CN101939963A (en) * 2007-12-07 2011-01-05 法国电信公司 Method of controlling applications installed on a security module associated with a mobile terminal, associated security module, mobile terminal and server
CN101123454B (en) * 2007-09-21 2011-04-20 北京交通大学 Data transmission method and system for mobile phone bank union card based on Bluetooth technology
CN102298758A (en) * 2010-06-22 2011-12-28 安智金融与工业公司 Method for assisting to inspect transaction record as well as relevant equipment and computer program thereof
CN103679458A (en) * 2013-12-04 2014-03-26 天地融科技股份有限公司 Transaction data handling method and smart card
CN105187448A (en) * 2015-09-30 2015-12-23 宇龙计算机通信科技(深圳)有限公司 Service processing method and service equipment
CN105678527A (en) * 2016-02-05 2016-06-15 胡金钱 Banking business remote identity verification system and method based on fingerprint and human face
CN103679458B (en) * 2013-12-04 2016-11-30 天地融科技股份有限公司 Process method and the smart card of transaction data
CN107004196A (en) * 2014-12-19 2017-08-01 脸谱公司 Facilitate and send and receive individual to corporate payments
CN108369671A (en) * 2015-10-27 2018-08-03 万事达卡国际公司 The system and method for cardholder account data for updating storage

Cited By (15)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101123454B (en) * 2007-09-21 2011-04-20 北京交通大学 Data transmission method and system for mobile phone bank union card based on Bluetooth technology
CN101939963A (en) * 2007-12-07 2011-01-05 法国电信公司 Method of controlling applications installed on a security module associated with a mobile terminal, associated security module, mobile terminal and server
CN101685512A (en) * 2008-09-28 2010-03-31 中国银联股份有限公司 Computer, payment system and method thereof for realizing on-line payment
CN101853342A (en) * 2009-03-30 2010-10-06 宋煜燊 The anti identity theft and the payment network of protection privacy
CN102298758A (en) * 2010-06-22 2011-12-28 安智金融与工业公司 Method for assisting to inspect transaction record as well as relevant equipment and computer program thereof
CN103679458B (en) * 2013-12-04 2016-11-30 天地融科技股份有限公司 Process method and the smart card of transaction data
CN103679458A (en) * 2013-12-04 2014-03-26 天地融科技股份有限公司 Transaction data handling method and smart card
CN107004196A (en) * 2014-12-19 2017-08-01 脸谱公司 Facilitate and send and receive individual to corporate payments
CN105187448A (en) * 2015-09-30 2015-12-23 宇龙计算机通信科技(深圳)有限公司 Service processing method and service equipment
WO2017054287A1 (en) * 2015-09-30 2017-04-06 宇龙计算机通信科技(深圳)有限公司 Service processing method and service device
CN108369671A (en) * 2015-10-27 2018-08-03 万事达卡国际公司 The system and method for cardholder account data for updating storage
US11687893B2 (en) 2015-10-27 2023-06-27 Mastercard International Incorporated Systems and methods for updating stored cardholder account data
CN108369671B (en) * 2015-10-27 2024-01-05 万事达卡国际公司 System and method for updating stored cardholder account data
US12099979B2 (en) 2015-10-27 2024-09-24 Mastercard International Incorporated Systems and methods for updating stored cardholder account data
CN105678527A (en) * 2016-02-05 2016-06-15 胡金钱 Banking business remote identity verification system and method based on fingerprint and human face

Also Published As

Publication number Publication date
ZA200700671B (en) 2008-10-29

Similar Documents

Publication Publication Date Title
US20200193440A1 (en) Transaction processing method, apparatus and system
US11922429B2 (en) Transaction security apparatus and method
US20200226568A1 (en) Marketing messages in mobile commerce
US9292870B2 (en) System and method for point of service payment acceptance via wireless communication
US20190073678A1 (en) Systems, methods, and computer program products providing payment in cooperation with emv card readers
US10102518B2 (en) Enrollment and registration of a device in a mobile commerce system
US9235841B2 (en) Transaction security apparatus and method
JP2020030848A (en) Authority to issue transaction token
CN108027925B (en) Card-free payment method and system using two-dimensional code
US20020120582A1 (en) Method for establishing an electronic commerce account
CN101990676A (en) Mobile phone transaction system and method
WO2005106722A1 (en) Rfid-based system and method of conducting financial transactions
WO2008103871A1 (en) Transfer of value between mobile devices in a mobile commerce system
WO2008112402A1 (en) Account information lookup systems and methods in mobile commerce
WO2014013071A1 (en) Method of performing a mobile transaction and system for performing a mobile transaction
CN1989520A (en) Transaction processing method, device and system
CN103548047A (en) Terminal authenticity verification
AU2011253607B2 (en) A transaction processing method, apparatus and system
AU2013203552A1 (en) A transaction processing method, apparatus and system
AU2017276353A1 (en) A transaction processing method, apparatus and system
AU2005256142A1 (en) A transaction processing method, apparatus and system
WO2008090568A2 (en) Methods and system for secure data processing using mobile devices
HK1199131B (en) Payment device with integrated chip

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
C12 Rejection of a patent application after its publication
RJ01 Rejection of invention patent application after publication

Application publication date: 20070627