[go: up one dir, main page]

HK1221565B - Method, device and system for payment authentication - Google Patents

Method, device and system for payment authentication Download PDF

Info

Publication number
HK1221565B
HK1221565B HK16109495.3A HK16109495A HK1221565B HK 1221565 B HK1221565 B HK 1221565B HK 16109495 A HK16109495 A HK 16109495A HK 1221565 B HK1221565 B HK 1221565B
Authority
HK
Hong Kong
Prior art keywords
payment
receiving
verification
information
verified
Prior art date
Application number
HK16109495.3A
Other languages
Chinese (zh)
Other versions
HK1221565A1 (en
Inventor
於洋
吴柯
Original Assignee
阿里巴巴集团控股有限公司
Filing date
Publication date
Priority claimed from CN201410495962.9A external-priority patent/CN105450617B/en
Application filed by 阿里巴巴集团控股有限公司 filed Critical 阿里巴巴集团控股有限公司
Publication of HK1221565A1 publication Critical patent/HK1221565A1/en
Publication of HK1221565B publication Critical patent/HK1221565B/en

Links

Description

一种支付验证方法、装置及系统Payment verification method, device and system

技术领域Technical Field

本申请涉及支付方终端身份信息及其地理位置信息验证领域,具体涉及一种支付验证方法、装置及系统。The present application relates to the field of verification of payer terminal identity information and its geographic location information, and specifically to a payment verification method, device and system.

背景技术Background Art

随着互联网的发展,移动支付已成为人们日常生活中广泛使用的支付方式。移动支付是使用移动设备通过无线方式完成支付行为的一种新型的支付方式。移动支付所使用的支付方终端可以是手机、PDA、移动PC等。移动支付方式更加方便快捷,人们在购物、用餐等消费后,多会选择用移动支付方式完成支付行为。为了便于对用户进行管理和保障用户的安全,大部分的支付平台都要求用户在支付之前先进行登录,即:在手机或者移动PC显示的登录界面上,输入用户的账户名和对应的密码,通过服务器端的验证后,才能够进入支付操作。With the development of the internet, mobile payment has become a widely used payment method in daily life. Mobile payment is a new payment method that uses mobile devices to complete payments wirelessly. The payment terminal used for mobile payment can be a mobile phone, PDA, mobile PC, etc. Mobile payment is more convenient and fast, and people often choose to complete payments after shopping, dining, and other consumption. To facilitate user management and ensure user security, most payment platforms require users to log in before making a payment. Specifically, users enter their account name and corresponding password on the login screen displayed on their mobile phone or mobile PC. Only after passing server-side verification can they proceed with the payment process.

但是仅仅采用“账户+密码”的验证方式验证支付过程,支付过程的安全性还是很难保障。一旦出现账户和密码被盗用的情况,会给用户带来不便,甚至是经济上的损失。为了避免发生这种情况,一些支付平台采用将用户的账户和密码与用户的手机号码进行绑定,在“账户+密码”验证方式的基础上,通过向预先绑定的手机号码发送短信校验码,进行进一步的支付验证,增加支付的安全性。但在实际应用过程中,这种方式仍然存在比较严重的安全隐患。由于目前网络环境下的短信校验码泄露问题比较严重,即使用户已经将账户与自己的手机号码绑定,如果盗用者盗用了用户的账户和密码后,又通过诈骗手段或者利用移动通讯设备上的木马程序实现短信转移从而获取短信校验码,那么盗用者就可以冒用合法用户的身份完成支付操作。However, relying solely on the "account + password" verification method to verify the payment process remains difficult to ensure. Once an account and password are stolen, it can cause inconvenience to users, and even financial losses. To prevent this, some payment platforms link the user's account and password to their mobile phone number. In addition to the "account + password" verification method, payment security is further enhanced by sending a text message verification code to the pre-linked mobile phone number for verification. However, in practice, this method still presents significant security risks. Due to the significant vulnerability of SMS verification code leaks in current network environments, even if a user has linked their account to their mobile phone number, if an unauthorized user steals the user's account and password and then obtains the SMS verification code through fraudulent means or by exploiting a Trojan horse on a mobile device to transfer SMS messages, the unauthorized user can then complete payment transactions under the identity of the legitimate user.

现有技术还不能很好的保障支付过程的安全性,因此可能会给合法用户带来经济上的损失以及不必要的麻烦。Existing technologies cannot effectively guarantee the security of the payment process, and therefore may cause financial losses and unnecessary troubles to legitimate users.

发明内容Summary of the Invention

本申请提供一种支付验证方法、装置及系统,以解决现有技术不能很好的保障支付过程的安全性的问题。The present application provides a payment verification method, device and system to solve the problem that the existing technology cannot well guarantee the security of the payment process.

本申请提供一种支付验证方法,包括:This application provides a payment verification method, including:

接收待验证支付方终端请求连接接收方AP的验证请求和接收方AP的地理位置信息,所述验证请求包括待验证支付方的账户信息;Receiving a verification request from a terminal of a payer to be verified requesting connection to a receiver AP and geographic location information of the receiver AP, wherein the verification request includes account information of the payer to be verified;

根据所述验证请求对所述待验证支付方的账户信息进行验证,判断所述待验证支付方的账户信息与预存的支付账户信息是否匹配;Verifying the account information of the payee to be verified according to the verification request, and determining whether the account information of the payee to be verified matches the pre-stored payment account information;

向所述接收方AP反馈所述验证请求的验证结果;Feedback the verification result of the verification request to the receiving AP;

若所述验证请求的验证结果为匹配,接收支付服务器端发送的支付方终端地理位置信息验证请求;If the verification result of the verification request is a match, receiving a payment server-side request for verification of the payer's terminal geographic location information;

根据所述接收方AP的地理位置信息对待验证支付方终端地理位置信息进行验证,判断所述接收方AP的地理位置信息与预存的已注册的接收方AP的地理位置信息是否匹配;Verify the geographic location information of the payer terminal to be verified based on the geographic location information of the receiver AP, and determine whether the geographic location information of the receiver AP matches the pre-stored registered geographic location information of the receiver AP;

向所述支付服务器端反馈所述支付方终端地理位置信息验证请求的验证结果。Feedback the payment server with the verification result of the geographic location information verification request of the payer terminal.

优选的,还包括:Preferably, it also includes:

接收所述接收方AP发送的待验证支付方终端识别信息;Receiving the payer terminal identification information to be verified sent by the receiving AP;

若所述验证请求的验证结果为匹配,接收所述支付服务器端发送的支付方终端身份信息验证请求;If the verification result of the verification request is a match, receiving the payer terminal identity information verification request sent by the payment server;

判断所述待验证支付方终端识别信息与所述预存的支付账户信息预先绑定的支付方终端识别信息是否匹配;Determining whether the payer terminal identification information to be verified matches the payer terminal identification information pre-bound to the pre-stored payment account information;

向所述支付服务器端反馈所述支付方终端身份信息验证请求的验证结果。Feedback the verification result of the payer terminal identity information verification request to the payment server.

优选的,所述待验证支付方终端识别信息为待验证支付方终端网卡MAC地址、待验证支付方终端蓝牙MAC地址或待验证支付方终端IMEI号码中的一种或几种。Preferably, the identification information of the payer terminal to be verified is one or more of the network card MAC address of the payer terminal to be verified, the Bluetooth MAC address of the payer terminal to be verified, or the IMEI number of the payer terminal to be verified.

优选的,所述待验证支付方的账户信息包括待验证支付账号和所述待验证支付账号的密码。Preferably, the account information of the payer to be verified includes the payment account to be verified and the password of the payment account to be verified.

优选的,所述接收待验证支付方终端请求连接接收方AP的验证请求和接收方AP的地理位置信息之前,还包括:Preferably, before receiving the verification request from the payer terminal to be verified requesting connection to the receiver AP and the geographic location information of the receiver AP, the method further includes:

接收并存储支付方终端发送的支付账户信息和支付方终端识别信息;Receive and store payment account information and payer terminal identification information sent by the payer terminal;

建立所述支付账户信息与所述支付方终端识别信息的绑定关系。Establishing a binding relationship between the payment account information and the payer terminal identification information.

优选的,所述支付方终端识别信息为支付方终端网卡MAC地址、支付方终端蓝牙MAC地址或支付方终端IMEI号码中的一种或几种。Preferably, the payer terminal identification information is one or more of the payer terminal network card MAC address, the payer terminal Bluetooth MAC address or the payer terminal IMEI number.

优选的,所述支付账户信息包括支付账号和所述支付账号的密码。Preferably, the payment account information includes a payment account number and a password for the payment account number.

优选的,所述接收待验证支付方终端请求连接接收方AP的验证请求和接收方AP的地理位置信息之前,还包括:Preferably, before receiving the verification request from the payer terminal to be verified requesting connection to the receiver AP and the geographic location information of the receiver AP, the method further includes:

接收并存储已注册的接收方AP的地理位置信息。Receive and store the geographical location information of the registered recipient AP.

优选的,还包括:Preferably, it also includes:

接收所述接收方AP发送的接收方AP识别信息;Receiving the receiving AP identification information sent by the receiving AP;

判断所述接收方AP识别信息与预存的已注册的接收方AP的识别信息是否匹配;Determining whether the receiving AP identification information matches the pre-stored registered receiving AP identification information;

向所述支付服务器端发送所述接收方AP识别信息的匹配结果。Send the matching result of the recipient AP identification information to the payment server.

优选的,所述接收待验证支付方终端请求连接接收方AP的验证请求和接收方AP的地理位置信息之前还包括:Preferably, before receiving the verification request from the payer terminal to be verified requesting connection to the receiver AP and the geographic location information of the receiver AP, the method further includes:

接收并存储已注册的接收方AP的识别信息;Receive and store identification information of registered receiver APs;

建立所述已注册的接收方AP的识别信息与所述预存的已注册的接收方AP的地理位置信息的对应关系。A correspondence between the identification information of the registered receiver AP and the pre-stored geographical location information of the registered receiver AP is established.

优选的,所述已注册的接收方AP的识别信息为所述已注册的接收方AP的MAC地址。Preferably, the identification information of the registered receiver AP is the MAC address of the registered receiver AP.

优选的,所述接收待验证支付方终端请求连接接收方AP的验证请求和接收方AP的地理位置信息之前,还包括:Preferably, before receiving the verification request from the payer terminal to be verified requesting connection to the receiver AP and the geographic location information of the receiver AP, the method further includes:

接收并存储所述已注册的接收方AP所属接收方的名称信息及其其它信息;Receive and store the name information and other information of the receiver to which the registered receiver AP belongs;

建立所述已注册的接收方AP的识别信息与所述已注册的接收方AP所属接收方的名称信息及其其它信息的对应关系。A correspondence between the identification information of the registered receiver AP and the name information and other information of the receiver to which the registered receiver AP belongs is established.

相应的,本申请还提供一种支付验证装置,包括:Accordingly, the present application also provides a payment verification device, comprising:

验证请求接收单元,用于接收待验证支付方终端请求连接接收方AP的验证请求和接收方AP的地理位置信息,所述验证请求包括待验证支付方的账户信息;a verification request receiving unit, configured to receive a verification request from a terminal of a payer to be verified requesting connection to a receiver AP and geographic location information of the receiver AP, wherein the verification request includes account information of the payer to be verified;

验证请求验证单元,用于根据所述验证请求对所述待验证支付方的账户信息进行验证,判断所述待验证支付方的账户信息与预存的支付账户信息是否匹配;a verification request verification unit, configured to verify the account information of the payee to be verified according to the verification request, and determine whether the account information of the payee to be verified matches the pre-stored payment account information;

验证结果发送单元,用于向所述接收方AP反馈所述验证请求的验证结果;A verification result sending unit, configured to feed back the verification result of the verification request to the receiving AP;

支付方终端地理位置信息验证请求接收单元,用于若所述验证请求的验证结果为匹配,接收支付服务器端发送的支付方终端地理位置信息验证请求;a payer terminal geographic location information verification request receiving unit, configured to receive the payer terminal geographic location information verification request sent by the payment server if the verification result of the verification request is a match;

支付方终端地理位置信息验证单元,用于根据所述接收方AP的地理位置信息对待验证支付方终端地理位置信息进行验证,判断所述接收方AP的地理位置信息与预存的已注册的接收方AP的地理位置信息是否匹配;The payer terminal geographical location information verification unit is used to verify the geographical location information of the payer terminal to be verified based on the geographical location information of the receiver AP, and determine whether the geographical location information of the receiver AP matches the pre-stored registered geographical location information of the receiver AP;

支付方终端地理位置信息验证结果发送单元,用于向所述支付服务器端反馈所述支付方终端地理位置信息验证请求的验证结果。The payer terminal geographic location information verification result sending unit is used to feed back the verification result of the payer terminal geographic location information verification request to the payment server.

优选的,还包括:Preferably, it also includes:

待验证支付方终端识别信息接收单元,用于接收所述接收方AP发送的待验证支付方终端识别信息;The payer terminal identification information receiving unit to be verified is used to receive the payer terminal identification information to be verified sent by the receiving AP;

支付方终端身份信息验证请求接收单元,用于若所述验证请求的验证结果为匹配,接收所述支付服务器端发送的支付方终端身份信息验证请求;a payer terminal identity information verification request receiving unit, configured to receive the payer terminal identity information verification request sent by the payment server if the verification result of the verification request is a match;

支付方终端身份信息验证请求验证单元,用于判断所述待验证支付方终端识别信息与所述预存的支付账户信息预先绑定的支付方终端识别信息是否匹配;a payer terminal identity information verification request verification unit, configured to determine whether the payer terminal identification information to be verified matches the payer terminal identification information pre-bound to the pre-stored payment account information;

支付方终端身份信息验证结果发送单元,用于向所述支付服务器端反馈所述支付方终端身份信息验证请求的验证结果。The payer terminal identity information verification result sending unit is used to feed back the verification result of the payer terminal identity information verification request to the payment server.

优选的,所述待验证支付方终端识别信息为待验证支付方终端网卡MAC地址、待验证支付方终端蓝牙MAC地址或待验证支付方终端IMEI号码中的一种或几种。Preferably, the identification information of the payer terminal to be verified is one or more of the network card MAC address of the payer terminal to be verified, the Bluetooth MAC address of the payer terminal to be verified, or the IMEI number of the payer terminal to be verified.

优选的,所述待验证支付方的账户信息包括待验证支付账号和所述待验证支付账号的密码。Preferably, the account information of the payer to be verified includes the payment account to be verified and the password of the payment account to be verified.

优选的,所述接收待验证支付方终端请求连接接收方AP的验证请求和接收方AP的地理位置信息之前,还包括:Preferably, before receiving the verification request from the payer terminal to be verified requesting connection to the receiver AP and the geographic location information of the receiver AP, the method further includes:

支付方终端信息预存单元,用于接收并存储支付方终端发送的支付账户信息和支付方终端识别信息;The payer terminal information pre-storage unit is used to receive and store the payment account information and payer terminal identification information sent by the payer terminal;

支付方终端信息绑定单元,用于建立所述支付账户信息与所述支付方终端识别信息的绑定关系。The payer terminal information binding unit is used to establish a binding relationship between the payment account information and the payer terminal identification information.

优选的,所述支付方终端识别信息为支付方终端网卡MAC地址、支付方终端蓝牙MAC地址或支付方终端IMEI号码中的一种或几种。Preferably, the payer terminal identification information is one or more of the payer terminal network card MAC address, the payer terminal Bluetooth MAC address or the payer terminal IMEI number.

优选的,所述支付账户信息包括支付账号和所述支付账号的密码。Preferably, the payment account information includes a payment account number and a password for the payment account number.

优选的,所述接收待验证支付方终端请求连接接收方AP的验证请求和接收方AP的地理位置信息之前,还包括:Preferably, before receiving the verification request from the payer terminal to be verified requesting connection to the receiver AP and the geographic location information of the receiver AP, the method further includes:

地理位置信息预存单元,用于接收并存储已注册的接收方AP的地理位置信息。The geographical location information pre-storage unit is used to receive and store the geographical location information of the registered receiver AP.

优选的,还包括:Preferably, it also includes:

接收方AP识别信息接收单元,用于接收所述接收方AP发送的接收方AP识别信息;A receiving AP identification information receiving unit, configured to receive the receiving AP identification information sent by the receiving AP;

接收方AP识别信息验证单元,用于判断所述接收方AP识别信息与预存的已注册的接收方AP的识别信息是否匹配;a receiving AP identification information verification unit, configured to determine whether the receiving AP identification information matches the pre-stored registered receiving AP identification information;

接收方AP识别信息验证结果发送单元,用于向所述支付服务器端发送所述接收方AP识别信息的匹配结果。The receiver AP identification information verification result sending unit is used to send the matching result of the receiver AP identification information to the payment server.

优选的,所述接收待验证支付方终端请求连接接收方AP的验证请求和接收方AP的地理位置信息之前还包括:Preferably, before receiving the verification request from the payer terminal to be verified requesting connection to the receiver AP and the geographic location information of the receiver AP, the method further includes:

已注册的接收方AP识别信息预存单元,用于接收并存储已注册的接收方AP的识别信息;A registered receiver AP identification information pre-storage unit, configured to receive and store the identification information of the registered receiver AP;

已注册的接收方AP识别信息匹配单元,用于建立所述已注册的接收方AP的识别信息与所述预存的已注册的接收方AP的地理位置信息的对应关系。The registered receiver AP identification information matching unit is configured to establish a corresponding relationship between the identification information of the registered receiver AP and the pre-stored geographical location information of the registered receiver AP.

优选的,所述已注册的接收方AP的识别信息为所述已注册的接收方AP的MAC地址。Preferably, the identification information of the registered receiver AP is the MAC address of the registered receiver AP.

优选的,所述接收待验证支付方终端请求连接接收方AP的验证请求和接收方AP的地理位置信息之前,还包括:Preferably, before receiving the verification request from the payer terminal to be verified requesting connection to the receiver AP and the geographic location information of the receiver AP, the method further includes:

已注册的接收方AP相关信息接收单元,用于接收并存储所述已注册的接收方AP所属接收方的名称信息及其其它信息;A registered receiver AP related information receiving unit, configured to receive and store the name information and other information of the receiver to which the registered receiver AP belongs;

已注册的接收方AP相关信息匹配单元,用于建立所述已注册的接收方AP的识别信息与所述已注册的接收方AP所属接收方的名称信息及其其它信息的对应关系。The registered receiver AP related information matching unit is used to establish a corresponding relationship between the identification information of the registered receiver AP and the name information and other information of the receiver to which the registered receiver AP belongs.

本申请提供一种支付方法,包括:This application provides a payment method, including:

向接收方AP发送请求连接接收方AP的验证请求,所述验证请求包括待验证支付方的账户信息;Sending a verification request to the receiving AP requesting connection to the receiving AP, wherein the verification request includes the account information of the payer to be verified;

接收所述接收方AP发送的所述验证请求的验证结果;receiving a verification result of the verification request sent by the receiving AP;

若所述验证请求的验证结果为连接成功,向支付服务器端发送支付请求;If the verification result of the verification request is that the connection is successful, sending a payment request to the payment server;

接收所述支付服务器端发送的所述支付请求的支付结果。Receive the payment result of the payment request sent by the payment server.

相应的,本申请还提供一种支付装置,包括:Accordingly, the present application also provides a payment device, comprising:

验证请求发送单元,用于向接收方AP发送请求连接接收方AP的验证请求,所述验证请求包括待验证支付方的账户信息;a verification request sending unit, configured to send a verification request to the receiving AP requesting connection to the receiving AP, wherein the verification request includes account information of the payer to be verified;

验证请求结果接收单元,用于接收所述接收方AP发送的所述验证请求的验证结果;a verification request result receiving unit, configured to receive the verification result of the verification request sent by the receiving AP;

支付请求发送单元,用于若所述验证请求的验证结果为连接成功,向支付服务器端发送支付请求;a payment request sending unit, configured to send a payment request to a payment server if the verification result of the verification request is that the connection is successful;

支付请求结果接收单元,用于接收所述支付服务器端发送的所述支付请求的支付结果。The payment request result receiving unit is used to receive the payment result of the payment request sent by the payment server.

本申请提供一种支付结算方法,包括:This application provides a payment settlement method, including:

接收待验证支付方终端发送的请求连接的验证请求,所述验证请求包括待验证支付方的账户信息;Receiving a connection verification request sent by a terminal of the payer to be verified, wherein the verification request includes account information of the payer to be verified;

向服务器端发送所述验证请求和接收方AP的地理位置信息;Sending the verification request and the geographic location information of the recipient AP to the server;

接收所述服务器端发送的所述验证请求的验证结果;receiving a verification result of the verification request sent by the server;

若所述验证请求的验证结果为验证成功,通过网络连接所述待验证支付方终端,并向所述待验证支付方终端发送所述验证请求的验证结果。If the verification result of the verification request is successful, the terminal of the payer to be verified is connected via a network, and the verification result of the verification request is sent to the terminal of the payer to be verified.

相应的,本申请还提供一种支付结算装置,包括:Accordingly, the present application also provides a payment settlement device, comprising:

请求连接验证请求接收单元,用于接收待验证支付方终端发送的请求连接的验证请求,所述验证请求包括待验证支付方的账户信息;a connection verification request receiving unit, configured to receive a connection verification request sent by a terminal of a payer to be verified, wherein the verification request includes account information of the payer to be verified;

请求连接验证请求发送单元,用于向服务器端发送所述验证请求和接收方AP的地理位置信息;A connection verification request sending unit is used to send the verification request and the geographical location information of the receiving AP to the server;

请求连接验证结果接收单元,用于接收所述服务器端发送的所述验证请求的验证结果;a connection request verification result receiving unit, configured to receive the verification result of the verification request sent by the server;

请求连接验证结果发送单元,用于若所述验证请求的验证结果为验证成功,通过网络连接所述待验证支付方终端,并向所述待验证支付方终端发送所述验证请求的验证结果。The connection request verification result sending unit is used to connect to the payee terminal to be verified through the network and send the verification result of the verification request to the payee terminal to be verified if the verification result of the verification request is successful.

本申请提供一种支付执行方法,包括:This application provides a payment execution method, including:

接收待验证支付方终端发送的支付请求;Receive a payment request sent by a payer terminal to be verified;

向服务器端发送支付方终端地理位置信息验证请求;Send a request to the server for verification of the payer's terminal's geographic location information;

接收所述服务器端发送的所述支付方终端地理位置信息验证请求的验证结果;Receiving a verification result of the payer terminal geographic location information verification request sent by the server;

向所述待验证支付方终端发送所述支付请求的支付结果。Sending the payment result of the payment request to the payer terminal to be verified.

相应的本申请还提供一种支付执行装置,包括:Accordingly, the present application also provides a payment execution device, comprising:

支付请求接收单元,用于接收待验证支付方终端发送的支付请求;A payment request receiving unit, configured to receive a payment request sent by a payer terminal to be verified;

支付方终端地理位置信息验证请求发送单元,用于向服务器端发送支付方终端地理位置信息验证请求;The payer terminal geographic location information verification request sending unit is used to send the payer terminal geographic location information verification request to the server;

支付方终端地理位置信息验证结果接收单元,用于接收所述服务器端发送的所述支付方终端地理位置信息验证请求的验证结果;a payer terminal geographic location information verification result receiving unit, configured to receive the verification result of the payer terminal geographic location information verification request sent by the server;

支付请求结果发送单元,用于向所述待验证支付方终端发送所述支付请求的支付结果。The payment request result sending unit is used to send the payment result of the payment request to the payer terminal to be verified.

相应的本申请还提供一种支付验证系统,包括:根据上述权利要求所述的支付验证装置、根据上述权利要求所述的支付装置、根据上述权利要求所述的支付结算装置和根据上述权利要求所述的支付执行装置。Correspondingly, the present application also provides a payment verification system, comprising: a payment verification device according to the above claims, a payment device according to the above claims, a payment settlement device according to the above claims, and a payment execution device according to the above claims.

与现有技术相比,本申请具有以下优点:Compared with the prior art, this application has the following advantages:

本申请提供的一种支付验证方法、装置及系统,通过接收待验证支付方终端请求连接接收方AP(无线访问节点)的验证请求和接收方AP的地理位置信息,所述验证请求包括待验证支付方的账户信息;根据所述验证请求对所述待验证支付方的账户信息进行验证,判断所述待验证支付方的账户信息与预存的支付账户信息是否匹配;向所述接收方AP反馈所述验证请求的验证结果;若所述验证请求的验证结果为匹配,接收支付服务器端发送的支付方终端地理位置信息验证请求;根据所述接收方AP的地理位置信息对待验证支付方终端地理位置信息进行验证,判断所述接收方AP的地理位置信息与预存的已注册的接收方AP的地理位置信息是否匹配;向所述支付服务器端反馈所述支付方终端地理位置信息验证请求的验证结果,从而能够实现在对支付方的账户和密码进行验证的基础上,增加对支付方终端地理位置信息的验证,使得支付平台可以确认要与某个账户进行的支付操作是合法用户的操作,进而增加支付过程的安全性,避免给合法用户带来经济上的损失以及不必要的麻烦。同时也可以通过对支付方终端地理位置信息的验证,实现对非法用户的位置进行定位,从而便于对非法用户进行追踪。The present application provides a payment verification method, device, and system. The method comprises receiving a verification request from a payee terminal to be verified requesting connection to a receiver AP (wireless access point) and geographic location information of the receiver AP, the verification request including the account information of the payee to be verified; verifying the account information of the payee to be verified based on the verification request to determine whether the account information of the payee to be verified matches pre-stored payment account information; and feeding back a verification result of the verification request to the receiver AP. If the verification result of the verification request is a match, the method receives a payee terminal geographic location information verification request from a payment server; verifying the geographic location information of the payee terminal to be verified based on the geographic location information of the receiver AP to determine whether the geographic location information of the receiver AP matches pre-stored geographic location information of registered receiver APs; and feeding back a verification result of the payee terminal geographic location information verification request to the payment server. In this way, verification of the payee terminal's geographic location information is added to the verification of the payee's account and password, enabling the payment platform to confirm that a payment operation to be performed with a certain account is an operation by a legitimate user, thereby increasing the security of the payment process and avoiding financial losses and unnecessary trouble for legitimate users. At the same time, the location of illegal users can be located by verifying the geographic location information of the payer's terminal, making it easier to track illegal users.

附图说明BRIEF DESCRIPTION OF THE DRAWINGS

为了更清楚地说明本申请实施例或现有技术中的技术方案,下面将对实施例或现有技术描述中所需要使用的附图作简单地介绍,显而易见地,下面描述中的附图仅仅是本申请中记载的一些实施例,对于本领域普通技术人员来讲,还可以根据这些附图获得其他的附图。In order to more clearly illustrate the embodiments of the present application or the technical solutions in the prior art, the following briefly introduces the drawings required for use in the embodiments or the description of the prior art. Obviously, the drawings described below are only some embodiments recorded in this application. For ordinary technicians in this field, other drawings can also be obtained based on these drawings.

图1为本申请的支付验证方法实施例的流程图;FIG1 is a flow chart of an embodiment of a payment verification method of the present application;

图2为本申请的支付验证装置实施例示意图;FIG2 is a schematic diagram of an embodiment of a payment verification device of the present application;

图3为本申请的支付验证系统实施例示意图。FIG3 is a schematic diagram of an embodiment of the payment verification system of the present application.

具体实施方式DETAILED DESCRIPTION

本申请分别提供一种支付验证方法和装置、一种支付方法和装置、一种支付结算方法和装置、一种支付执行方法和装置及一种支付验证系统,以下为具体实施例:The present application provides a payment verification method and apparatus, a payment method and apparatus, a payment settlement method and apparatus, a payment execution method and apparatus, and a payment verification system. The following are specific embodiments:

其中以下所有实施例中所述的AP为“Access Point”的缩写,又称无线访问节点、会话点或存取桥接器。所述的AP包括单纯性无线接入点(无线AP),也包括无线路由器(含无线网关、无线网桥)等类设备。The term "AP" in all of the following embodiments is short for "Access Point," also known as a wireless access point, session point, or access bridge. The AP includes both simple wireless access points (wireless APs) and wireless routers (including wireless gateways and wireless bridges).

其中以下所有实施例中所述的MAC为“Media Access Control”的缩写,又称介质访问控制,是识别LAN(局域网)节点的标识。The MAC mentioned in all the following embodiments is the abbreviation of “Media Access Control”, also known as media access control, which is an identifier for identifying LAN (local area network) nodes.

如图1所示,其为本申请的支付验证方法实施例的流程图。所述方法包括如下步骤:As shown in Figure 1, it is a flow chart of an embodiment of the payment verification method of the present application. The method comprises the following steps:

步骤S101:接收待验证支付方终端请求连接接收方AP的验证请求和接收方AP的地理位置信息,所述验证请求包括待验证支付方的账户信息。Step S101: receiving a verification request from a terminal of a payer to be verified requesting to connect to a receiver AP and geographic location information of the receiver AP, wherein the verification request includes account information of the payer to be verified.

在待验证支付方终端的WiFi功能模块请求连接接收方AP时,待验证支付方终端会向接收方AP发送连接接收方AP的WiFi设备的验证请求。所述验证请求包括待验证支付方的账户信息。接收方AP再将接收到的所述验证请求发送给服务器端,服务器端接收所述验证请求。从而实现利用待验证支付方终端的WiFi功能模块连接接收方AP时发送的验证请求,使得服务器端最终可以获取到待验证支付方的账户信息,进而可以在后续步骤中实现在服务器端对待验证支付方的账户信息进行验证,最终实现通过WiFi对支付方的支付账户进行验证。同时又可以将对待验证支付方的账户信息进行验证的结果作为连接WiFi验证请求的结果,减少用户在通过连接WiFi上网进行支付过程中需多次输入账户信息的操作,即:连接WiFi时需输入WiFi密码,支付时需输入支付账户及其密码。When the WiFi function module of the payee terminal to be verified requests to connect to the receiving AP, the payee terminal to be verified will send a verification request to the receiving AP's WiFi device to the receiving AP. The verification request includes the account information of the payee to be verified. The receiving AP then sends the received verification request to the server, which receives the verification request. This allows the server to ultimately obtain the account information of the payee to be verified by utilizing the verification request sent when the WiFi function module of the payee terminal to be verified connects to the receiving AP. This allows the server to verify the account information of the payee to be verified on the server in subsequent steps, ultimately verifying the payee's payment account via WiFi. At the same time, the result of verifying the account information of the payee to be verified can be used as the result of the WiFi connection verification request, reducing the need for users to enter account information multiple times when making payments by connecting to the WiFi Internet, i.e., entering the WiFi password when connecting to WiFi and entering the payment account and its password when making payments.

接收方AP在将接收到的验证请求发送给服务器端时,接收方AP可以将接收方AP的地理位置信息作为待验证支付方终端的地理位置信息,同时发送给服务器端。从而实现为后续步骤中服务器端对支付方终端的地理位置信息的验证提供相关信息,最终达到通过WiFi对支付方终端的地理位置信息进行验证。When the receiving AP sends the received verification request to the server, it can use its own geographic location information as the geographic location information of the payer's terminal to be verified and send it to the server at the same time. This provides relevant information for the server to verify the payer's terminal's geographic location information in subsequent steps, ultimately achieving verification of the payer's terminal's geographic location information via WiFi.

步骤S102:根据所述验证请求对所述待验证支付方的账户信息进行验证,判断所述待验证支付方的账户信息与预存的支付账户信息是否匹配。Step S102: Verify the account information of the payee to be verified according to the verification request, and determine whether the account information of the payee to be verified matches the pre-stored payment account information.

服务器端会将数据库中预存的支付账户信息与上述步骤接收到的所述待验证支付方的账户信息进行对比,若支付方输入的待验证账户信息为在支付平台注册申请过的账户信息,服务器端会在数据库中搜索到与所述待验证支付方的账户信息相匹配的预存的支付账户信息,则判断结果为匹配;若支付方输入的待验证支付账户信息不是在支付平台注册申请过的账户信息,服务器端不会在数据库中搜索到与所述待验证支付方的账户信息相匹配的预存的支付账户信息,则判断结果为不匹配。通过本步骤可以实现对支付方输入的待验证支付账户信息进行验证,保障合法用户账户的安全,进而保障支付过程的安全性,避免给合法用户带来经济上的损失及不必要的麻烦。The server side will compare the payment account information pre-stored in the database with the account information of the payee to be verified received in the above step. If the account information to be verified entered by the payee is the account information registered and applied for on the payment platform, the server side will search the database for the pre-stored payment account information that matches the account information of the payee to be verified, and the judgment result is a match; if the payment account information to be verified entered by the payee is not the account information registered and applied for on the payment platform, the server side will not search the database for the pre-stored payment account information that matches the account information of the payee to be verified, and the judgment result is a mismatch. This step can be used to verify the payment account information to be verified entered by the payee, ensure the security of the legitimate user account, and then ensure the security of the payment process, avoiding economic losses and unnecessary troubles for legitimate users.

步骤S103:向所述接收方AP反馈所述验证请求的验证结果。Step S103: Feedback the verification result of the verification request to the receiving AP.

将所述待验证支付方的账户信息与预存的支付账户信息的匹配结果作为所述验证请求的验证结果发送给接收方AP。所述接收方AP根据接收到的所述验证请求的验证结果,进行相关操作。即若所述验证请求的验证结果为所述待验证支付方的账户信息与预存的支付账户信息匹配,则可以判断待验证支付方的账户信息为真实的支付账户信息,所述接收方AP会允许待验证支付方终端通过WiFi连接接收方AP,且接收方AP会将连接成功信息作为待验证支付方终端请求连接接收方AP的验证请求的验证结果发送给待验证支付方终端,以便于支付方进行后续的支付操作。否则,可以判断待验证支付方的账户信息为虚假的支付账户信息,不允许待验证支付方终端连接接收方AP,且接收方AP会将连接失败信息作为待验证支付方终端请求连接接收方AP的验证请求的验证结果发送给待验证支付方终端,终止支付操作。从而防止非法用户进行支付操作,保障合法用户账户的安全,增加支付过程的安全性。The matching result of the account information of the payee to be verified and the pre-stored payment account information is sent to the receiving AP as the verification result of the verification request. The receiving AP performs relevant operations based on the verification result of the received verification request. That is, if the verification result of the verification request is that the account information of the payee to be verified matches the pre-stored payment account information, it can be determined that the account information of the payee to be verified is real payment account information, and the receiving AP will allow the payee to be verified terminal to connect to the receiving AP via WiFi, and the receiving AP will send the connection success information as the verification result of the verification request of the payee to be verified terminal requesting to connect to the receiving AP to facilitate the payee to perform subsequent payment operations. Otherwise, it can be determined that the account information of the payee to be verified is false payment account information, and the payee to be verified terminal is not allowed to connect to the receiving AP, and the receiving AP will send the connection failure information as the verification result of the verification request of the payee to be verified terminal requesting to connect to the receiving AP to terminate the payment operation. This prevents illegal users from performing payment operations, protects the security of legitimate user accounts, and increases the security of the payment process.

步骤S104:若所述验证请求的验证结果为匹配,接收支付服务器端发送的支付方终端地理位置信息验证请求。Step S104: If the verification result of the verification request is a match, a payment server receives a payment server-side request for verifying the geographic location information of the payer terminal.

若所述验证请求的验证结果为所述待验证支付方的账户信息与预存的支付账户信息匹配,接收方AP会允许待验证支付方终端通过WiFi连接接收方AP,待验证支付方终端可以通过网络向支付服务器端发送支付请求。为了增加支付过程的安全性,在支付服务器端接收到支付请求后,支付服务器端需向服务器端发送支付方终端地理位置信息验证请求,请求服务器端验证支付方终端地理位置信息。接着支付服务器会等待接收到支付方终端地理位置信息的验证结果后,再进行相关支付操作。服务器端则会接收支付服务器端发送的支付方终端地理位置信息验证请求,以便于及时启动对支付服务器端发送的支付方终端地理位置信息的验证操作。If the verification result of the verification request is that the account information of the payee to be verified matches the pre-stored payment account information, the receiving AP will allow the payee terminal to be verified to connect to the receiving AP via WiFi, and the payee terminal to be verified can send a payment request to the payment server through the network. In order to increase the security of the payment process, after the payment server receives the payment request, the payment server needs to send a payee terminal geographic location information verification request to the server, requesting the server to verify the payee terminal geographic location information. The payment server will then wait for the verification result of the payee terminal geographic location information before performing relevant payment operations. The server will receive the payee terminal geographic location information verification request sent by the payment server, so as to promptly start the verification operation of the payee terminal geographic location information sent by the payment server.

步骤S105:根据所述接收方AP的地理位置信息对待验证支付方终端地理位置信息进行验证,判断所述接收方AP的地理位置信息与预存的已注册的接收方AP的地理位置信息是否匹配。Step S105: Verify the geographic location information of the payer terminal to be verified based on the geographic location information of the receiver AP, and determine whether the geographic location information of the receiver AP matches the pre-stored registered geographic location information of the receiver AP.

上述步骤中,接收方AP在将从待验证支付方终端接收到的待验证支付方终端请求连接接收方AP的验证请求发送给服务器端时,接收方AP已将接收方AP的地理位置信息作为待验证支付方终端的地理位置信息,同时发送给了服务器端。从而可以根据接收到的所述接收方AP的地理位置信息对待验证支付方终端地理位置信息进行验证,判断所述接收方AP的地理位置信息与预存的已注册的接收方AP的地理位置信息是否匹配。In the above steps, when the receiving AP sends the verification request received from the payee terminal to the server requesting the payee terminal to connect to the receiving AP, the receiving AP has already sent the receiving AP's geographic location information as the geographic location information of the payee terminal to the server. This allows the receiving AP to verify the geographic location information of the payee terminal to be verified based on the received geographic location information of the receiving AP, and determine whether the geographic location information of the receiving AP matches the pre-stored geographic location information of the registered receiving AP.

在判断所述接收方AP的地理位置信息与预存的已注册的接收方AP的地理位置信息是否匹配时,服务器端会将数据库中预存的已注册的接收方AP的地理位置信息与支付时接收到的接收方AP地理位置信息进行对比,从而确认支付方是否处于经支付平台认证过的支付场所。若支付方处于经支付平台认证过的支付场所,则判断结果为匹配;否则,判断结果为不匹配。从而实现在支付过程中判断支付方终端是否在经支付平台认证过的支付场所,即实现对支付方终端地理位置信息的验证,使得支付平台可以确认要与某个账户进行的支付操作是合法用户的操作,进而增加支付过程的安全性,避免给合法用户带来经济上的损失以及不必要的麻烦。同时也可以通过对支付方终端地理位置信息的验证,实现对非法用户的位置进行定位,从而便于对非法用户进行追踪。When judging whether the geographic location information of the receiver AP matches the pre-stored geographic location information of the registered receiver AP, the server side will compare the geographic location information of the registered receiver AP pre-stored in the database with the geographic location information of the receiver AP received at the time of payment, so as to confirm whether the payer is in a payment place authenticated by the payment platform. If the payer is in a payment place authenticated by the payment platform, the judgment result is a match; otherwise, the judgment result is a mismatch. This makes it possible to judge whether the payer terminal is in a payment place authenticated by the payment platform during the payment process, that is, to verify the geographic location information of the payer terminal, so that the payment platform can confirm that the payment operation to be performed with a certain account is the operation of a legitimate user, thereby increasing the security of the payment process and avoiding economic losses and unnecessary troubles for legitimate users. At the same time, the location of illegal users can be located by verifying the geographic location information of the payer terminal, thereby facilitating the tracking of illegal users.

步骤S106:向所述支付服务器端反馈所述支付方终端地理位置信息验证请求的验证结果。Step S106: Feedback the verification result of the payer terminal's geographical location information verification request to the payment server.

服务器端在对支付方终端地理位置信息验证后,需向支付服务器端发送支付方终端地理位置信息验证结果,以便于支付服务器端进行相关操作。具体的,若支付方终端地理位置信息验证结果为匹配,使得支付服务器端可以确认与待验证支付账户进行的支付操作是合法用户的操作,支付服务器端执行相关的支付操作,并将支付成功信息作为支付结果发送给待验证支付方终端;否则,支付服务器端可以确认与待验证支付账户进行的支付操作是非法用户的操作,拒绝执行相关的支付操作,并将支付失败信息作为支付结果发送给待验证支付方终端。从而能够实现通过WiFi在对支付方的账户和密码进行验证的基础上,增加对支付方终端地理位置信息的验证,使得支付平台可以确认要与某个账户进行的支付操作是合法用户的操作,进而增加支付过程的安全性,避免给合法用户带来经济上的损失以及不必要的麻烦。同时也可以通过对支付方终端地理位置信息的验证,实现对非法用户的位置进行定位,从而便于对非法用户进行追踪。After verifying the payee's terminal's geographic location information, the server must send the payee's terminal's geographic location information verification result to the payment server to facilitate the payment server's related operations. Specifically, if the payee's terminal's geographic location information verification result is a match, the payment server can confirm that the payment operation performed with the payment account to be verified is an operation by a legitimate user. The payment server then executes the relevant payment operation and sends the payment success information as the payment result to the payee's terminal to be verified. Otherwise, the payment server can confirm that the payment operation performed with the payment account to be verified is an operation by an illegal user, refuse to execute the relevant payment operation, and send the payment failure information as the payment result to the payee's terminal to be verified. This allows the payee's terminal's geographic location information to be verified over WiFi, in addition to verifying the payee's account and password. This allows the payment platform to confirm that the payment operation to be performed with a certain account is an operation by a legitimate user, thereby increasing the security of the payment process and avoiding financial losses and unnecessary trouble for legitimate users. At the same time, by verifying the payee's terminal's geographic location information, the location of the illegal user can be located, making it easier to track illegal users.

在本实施例中,还包括:接收所述接收方AP发送的待验证支付方终端识别信息;若所述验证请求的验证结果为匹配,接收所述支付服务器端发送的支付方终端身份信息验证请求;判断所述待验证支付方终端识别信息与所述预存的支付账户信息预先绑定的支付方终端识别信息是否匹配;向所述支付服务器端反馈所述支付方终端身份信息验证请求的验证结果。为了进一步增加支付过程的安全性,在支付服务器端接收到支付请求后,支付服务器端需向服务器端发送支付方终端身份信息验证请求,请求服务器端验证支付方终端身份信息。In this embodiment, the method further includes: receiving the payer terminal identification information to be verified sent by the receiving AP; if the verification result of the verification request is a match, receiving a payer terminal identity information verification request sent by the payment server; determining whether the payer terminal identification information to be verified matches the payer terminal identification information pre-bound to the pre-stored payment account information; and feeding back the verification result of the payer terminal identity information verification request to the payment server. To further increase the security of the payment process, after the payment server receives the payment request, the payment server needs to send a payer terminal identity information verification request to the server, requesting the server to verify the payer terminal identity information.

服务器端会根据验证通过的待验证支付账户信息搜索预先与其绑定的支付方终端识别信息,即根据所述预存的支付账户信息搜索预先与其绑定的支付方终端识别信息。搜索到与所述预存的支付账户信息预先绑定的支付方终端识别信息后,判断所述待验证支付方终端识别信息与所述预存的支付账户信息预先绑定的支付方终端识别信息是否匹配。由于终端识别信息能够唯一地标识每一部终端设备,在合法用户事先已经将其账户信息与其自己的终端设备识别信息进行绑定的情况下,服务器端可以通过将支付时接收到的待验证支付方终端识别信息与合法用户的账户预先绑定的支付方终端识别信息进行对比,判断支付方终端是否为合法用户账户绑定的终端设备。若待验证支付方终端为合法用户账户绑定的终端设备,则所述待验证支付方终端识别信息与所述预存的支付账户信息预先绑定的支付方终端识别信息匹配;否则,判断结果为不匹配。从而实现在支付过程中辨识支付方终端是否为账户所有者自己的设备,即实现对支付方终端身份信息进行验证,使得支付平台可以进一步确认要与某个账户进行的支付操作是合法用户的操作,进而进一步增加支付过程的安全性,避免给合法用户带来经济上的损失以及不必要的麻烦。The server side will search for the payer terminal identification information pre-bound to the payment account information to be verified based on the verified payment account information, that is, search for the payer terminal identification information pre-bound to the payment account information according to the pre-stored payment account information. After searching for the payer terminal identification information pre-bound to the pre-stored payment account information, it is determined whether the payer terminal identification information to be verified matches the payer terminal identification information pre-bound to the pre-stored payment account information. Since the terminal identification information can uniquely identify each terminal device, in the case that the legal user has bound his account information to his own terminal device identification information in advance, the server side can compare the payer terminal identification information to be verified received during payment with the payer terminal identification information pre-bound to the legal user's account to determine whether the payer terminal is the terminal device bound to the legal user's account. If the payer terminal to be verified is the terminal device bound to the legal user's account, the payer terminal identification information to be verified matches the payer terminal identification information pre-bound to the pre-stored payment account information; otherwise, the judgment result is mismatch. This makes it possible to identify whether the payee terminal is the account owner's own device during the payment process, that is, to verify the identity information of the payee terminal, so that the payment platform can further confirm that the payment operation to be performed with a certain account is the operation of a legitimate user, thereby further increasing the security of the payment process and avoiding economic losses and unnecessary troubles for legitimate users.

在本实施例中,所述待验证支付方终端识别信息为待验证支付方终端网卡MAC地址、待验证支付方终端蓝牙MAC地址或待验证支付方终端IMEI号码(International MobileEquipment Identity,移动设备国际身份码)中的一种或几种。这些信息都可以唯一地标识每一部终端设备,服务器端可以通过验证这些支付方终端识别信息,来辨识待验证支付方终端是否为账户所有者自己的设备。In this embodiment, the identification information of the payee terminal to be verified is one or more of the following: the MAC address of the network card of the payee terminal to be verified, the Bluetooth MAC address of the payee terminal to be verified, or the IMEI number (International Mobile Equipment Identity) of the payee terminal to be verified. These information can uniquely identify each terminal device, and the server can verify these identification information of the payee terminal to determine whether the payee terminal to be verified is the account owner's own device.

在本实施例中,所述待验证支付账户信息包括待验证支付账号和所述待验证支付账号的密码。In this embodiment, the payment account information to be verified includes the payment account number to be verified and the password of the payment account number to be verified.

在本实施例中,所述接收待验证支付方终端请求连接接收方AP的验证请求和接收方AP的地理位置信息之前,还包括:接收并存储支付方终端发送的支付账户信息和支付方终端识别信息;建立所述支付账户信息与所述支付方终端识别信息的绑定关系。合法用户需事先将自己的账户信息与自己的终端设备识别信息通过自己的终端设备发送给服务器,服务器端将合法用户的账户信息与其终端设备识别信息进行绑定,以便在之后支付时对支付方终端进行识别。In this embodiment, before receiving the verification request from the payee terminal to be verified requesting connection to the receiving AP and the geographic location information of the receiving AP, the process further includes: receiving and storing the payment account information and payee terminal identification information sent by the payee terminal; and establishing a binding relationship between the payment account information and the payee terminal identification information. A legitimate user must first send their account information and their terminal device identification information to the server via their terminal device. The server then binds the legitimate user's account information to their terminal device identification information so that the payee terminal can be identified during subsequent payments.

在本实施例中,所述支付方终端识别信息为支付方终端网卡MAC地址、支付方终端蓝牙MAC地址或支付方终端IMEI号码中的一种或几种。In this embodiment, the payer terminal identification information is one or more of the payer terminal network card MAC address, the payer terminal Bluetooth MAC address or the payer terminal IMEI number.

在本实施例中,所述支付账户信息包括支付账号和所述支付账号的密码。In this embodiment, the payment account information includes the payment account number and the password of the payment account number.

在本实施例中,所述接收待验证支付方终端请求连接接收方AP的验证请求和接收方AP的地理位置信息之前,还包括:接收并存储已注册的接收方AP的地理位置信息。服务器端需预存已注册的接收方AP的地理位置信息,以便于在支付时对支付方终端所在的支付场所进行验证。In this embodiment, before receiving the verification request from the payee terminal to be verified requesting connection to the receiving AP and the geographic location information of the receiving AP, the process further includes: receiving and storing the geographic location information of the registered receiving AP. The server side needs to pre-store the geographic location information of the registered receiving AP to facilitate verification of the payment location where the payee terminal is located during payment.

在本实施例中,还包括:接收所述接收方AP发送的接收方AP识别信息;判断所述接收方AP识别信息与预存的已注册的接收方AP的识别信息是否匹配;向所述支付服务器端发送所述接收方AP识别信息的匹配结果。为了进一步增加支付过程的安全性,可以增加对接收方AP身份的验证。在支付过程中,服务器端可以在接收待验证支付方终端请求连接接收方AP的验证请求后,从接收方AP获取接收方AP识别信息,并在后续步骤中判断所述接收方AP识别信息与预存的已注册的接收方AP的识别信息是否匹配。若匹配,则可以确认接收方AP为经支付平台认证过的AP,进而进一步增加支付过程的安全性,避免给合法用户带来经济上的损失以及不必要的麻烦。若不匹配,则可以确认接收方AP不是经支付平台认证过的AP,支付过程可能存在危险。In this embodiment, the method further includes: receiving the receiver AP identification information sent by the receiver AP; determining whether the receiver AP identification information matches the pre-stored registered receiver AP identification information; and sending the matching result of the receiver AP identification information to the payment server. In order to further increase the security of the payment process, verification of the identity of the receiver AP can be added. During the payment process, after receiving a verification request from the payee terminal to be verified requesting to connect to the receiver AP, the server can obtain the receiver AP identification information from the receiver AP, and determine in subsequent steps whether the receiver AP identification information matches the pre-stored registered receiver AP identification information. If they match, it can be confirmed that the receiver AP is an AP authenticated by the payment platform, thereby further increasing the security of the payment process and avoiding economic losses and unnecessary troubles for legitimate users. If they do not match, it can be confirmed that the receiver AP is not an AP authenticated by the payment platform, and the payment process may be dangerous.

在本实施例中,所述接收待验证支付方终端请求连接接收方AP的验证请求和接收方AP的地理位置信息之前还包括:接收并存储已注册的接收方AP的识别信息;建立所述已注册的接收方AP的识别信息与所述预存的已注册的接收方AP的地理位置信息的对应关系。服务器端需预存经支付平台认证的AP的识别信息,支付平台可以将经过其认证的AP布置在经过其认证的接收方,服务器端需将已注册的接收方AP的识别信息与预存的已注册的接收方AP的地理位置信息建立对应关系,以便于了解到已注册的接收方AP所属的已注册的接收方的位置信息。进而便于在支付时对接收方AP的验证。In this embodiment, the receiving of the verification request of the payer terminal to be verified requesting connection to the receiver AP and the geographic location information of the receiver AP also includes: receiving and storing the identification information of the registered receiver AP; establishing a correspondence between the identification information of the registered receiver AP and the pre-stored geographic location information of the registered receiver AP. The server side needs to pre-store the identification information of the AP authenticated by the payment platform. The payment platform can place the authenticated AP at the authenticated receiver. The server side needs to establish a correspondence between the identification information of the registered receiver AP and the pre-stored geographic location information of the registered receiver AP, so as to understand the location information of the registered receiver to which the registered receiver AP belongs. This facilitates the verification of the receiver AP during payment.

在本实施例中,所述接收方AP识别信息为所述接收方AP的MAC地址。AP的MAC地址可以唯一地标识每一部AP,服务器端可以通过验证接收方AP的MAC地址,来判断接收方AP是否为经过支付平台认证过的AP,进而增加支付过程的安全性。In this embodiment, the receiving AP identification information is the MAC address of the receiving AP. The MAC address of an AP uniquely identifies each AP. The server can verify the MAC address of the receiving AP to determine whether the receiving AP is an AP authenticated by the payment platform, thereby increasing the security of the payment process.

在本实施例中,所述接收待验证支付方终端请求连接接收方AP的验证请求和接收方AP的地理位置信息之前,还包括:接收并存储所述已注册的接收方AP所属接收方的名称信息及其其它信息;建立所述已注册的接收方AP的识别信息与所述已注册的接收方AP所属接收方的名称信息及其其它信息的对应关系。服务器端也可以预先存储经支付平台认证过的接收方的名称等其它信息,以便于支付平台更加详细的了解支付信息,便于管理,保障合法用户的安全。In this embodiment, before receiving the verification request from the payee terminal to be verified requesting connection to the receiving AP and the geographic location information of the receiving AP, the process further includes: receiving and storing the name information and other information of the receiving party to which the registered receiving AP belongs; and establishing a correspondence between the identification information of the registered receiving AP and the name information and other information of the receiving party to which the registered receiving AP belongs. The server may also pre-store other information such as the name of the receiving party authenticated by the payment platform to facilitate the payment platform's more detailed understanding of payment information, facilitate management, and ensure the safety of legitimate users.

在本实施例中,上述待验证支付方终端为移动终端设备,具体的可以为支付方所持有的手机;上述接收方可以为商家店铺;上述已注册的接收方AP具体的可以为布置在商家店铺内且经过支付平台验证的无线路由器。In this embodiment, the above-mentioned payer terminal to be verified is a mobile terminal device, specifically a mobile phone held by the payer; the above-mentioned recipient can be a merchant store; the above-mentioned registered recipient AP can be specifically a wireless router arranged in the merchant store and verified by the payment platform.

在上述的实施例中,提供了一种支付验证方法,与之相对应的,本申请还提供一种支付验证装置。请参看图2,其为本申请的一种支付验证装置实施例示意图。由于装置实施例基本相似于方法实施例,所以描述得比较简单,相关之处参见方法实施例的部分说明即可。下述描述的装置实施例仅仅是示意性的。In the above-mentioned embodiment, a payment verification method is provided. Accordingly, the present application also provides a payment verification device. Please refer to Figure 2, which is a schematic diagram of an embodiment of a payment verification device of the present application. Since the device embodiment is substantially similar to the method embodiment, the description is relatively brief. For relevant details, please refer to the description of the method embodiment. The device embodiment described below is merely illustrative.

本实施例的一种支付验证装置,包括:A payment verification device according to this embodiment includes:

验证请求接收单元,用于接收待验证支付方终端请求连接接收方AP的验证请求和接收方AP的地理位置信息,所述验证请求包括待验证支付方的账户信息;a verification request receiving unit, configured to receive a verification request from a terminal of a payer to be verified requesting connection to a receiver AP and geographic location information of the receiver AP, wherein the verification request includes account information of the payer to be verified;

验证请求验证单元,用于根据所述验证请求对所述待验证支付方的账户信息进行验证,判断所述待验证支付方的账户信息与预存的支付账户信息是否匹配;a verification request verification unit, configured to verify the account information of the payee to be verified according to the verification request, and determine whether the account information of the payee to be verified matches the pre-stored payment account information;

验证结果发送单元,用于向所述接收方AP反馈所述验证请求的验证结果;A verification result sending unit, configured to feed back the verification result of the verification request to the receiving AP;

支付方终端地理位置信息验证请求接收单元,用于若所述验证请求的验证结果为匹配,接收支付服务器端发送的支付方终端地理位置信息验证请求;a payer terminal geographic location information verification request receiving unit, configured to receive the payer terminal geographic location information verification request sent by the payment server if the verification result of the verification request is a match;

支付方终端地理位置信息验证单元,用于根据所述接收方AP的地理位置信息对待验证支付方终端地理位置信息进行验证,判断所述接收方AP的地理位置信息与预存的已注册的接收方AP的地理位置信息是否匹配;The payer terminal geographical location information verification unit is used to verify the geographical location information of the payer terminal to be verified based on the geographical location information of the receiver AP, and determine whether the geographical location information of the receiver AP matches the pre-stored registered geographical location information of the receiver AP;

支付方终端地理位置信息验证结果发送单元,用于向所述支付服务器端反馈所述支付方终端地理位置信息验证请求的验证结果。The payer terminal geographic location information verification result sending unit is used to feed back the verification result of the payer terminal geographic location information verification request to the payment server.

优选的,还包括:Preferably, it also includes:

待验证支付方终端识别信息接收单元,用于接收所述接收方AP发送的待验证支付方终端识别信息;The payer terminal identification information receiving unit to be verified is used to receive the payer terminal identification information to be verified sent by the receiving AP;

支付方终端身份信息验证请求接收单元,用于若所述验证请求的验证结果为匹配,接收所述支付服务器端发送的支付方终端身份信息验证请求;a payer terminal identity information verification request receiving unit, configured to receive the payer terminal identity information verification request sent by the payment server if the verification result of the verification request is a match;

支付方终端身份信息验证请求验证单元,用于判断所述待验证支付方终端识别信息与所述预存的支付账户信息预先绑定的支付方终端识别信息是否匹配;a payer terminal identity information verification request verification unit, configured to determine whether the payer terminal identification information to be verified matches the payer terminal identification information pre-bound to the pre-stored payment account information;

支付方终端身份信息验证结果发送单元,用于向所述支付服务器端反馈所述支付方终端身份信息验证请求的验证结果。The payer terminal identity information verification result sending unit is used to feed back the verification result of the payer terminal identity information verification request to the payment server.

优选的,所述待验证支付方终端识别信息为待验证支付方终端网卡MAC地址、待验证支付方终端蓝牙MAC地址或待验证支付方终端IMEI号码中的一种或几种。Preferably, the identification information of the payer terminal to be verified is one or more of the network card MAC address of the payer terminal to be verified, the Bluetooth MAC address of the payer terminal to be verified, or the IMEI number of the payer terminal to be verified.

优选的,所述待验证支付方的账户信息包括待验证支付账号和所述待验证支付账号的密码。Preferably, the account information of the payer to be verified includes the payment account to be verified and the password of the payment account to be verified.

优选的,所述接收待验证支付方终端请求连接接收方AP的验证请求和接收方AP的地理位置信息之前,还包括:Preferably, before receiving the verification request from the payer terminal to be verified requesting connection to the receiver AP and the geographic location information of the receiver AP, the method further includes:

支付方终端信息预存单元,用于接收并存储支付方终端发送的支付账户信息和支付方终端识别信息;The payer terminal information pre-storage unit is used to receive and store the payment account information and payer terminal identification information sent by the payer terminal;

支付方终端信息绑定单元,用于建立所述支付账户信息与所述支付方终端识别信息的绑定关系。The payer terminal information binding unit is used to establish a binding relationship between the payment account information and the payer terminal identification information.

优选的,所述支付方终端识别信息为支付方终端网卡MAC地址、支付方终端蓝牙MAC地址或支付方终端IMEI号码中的一种或几种。Preferably, the payer terminal identification information is one or more of the payer terminal network card MAC address, the payer terminal Bluetooth MAC address or the payer terminal IMEI number.

优选的,所述支付账户信息包括支付账号和所述支付账号的密码。Preferably, the payment account information includes a payment account number and a password for the payment account number.

优选的,所述接收待验证支付方终端请求连接接收方AP的验证请求和接收方AP的地理位置信息之前,还包括:Preferably, before receiving the verification request from the payer terminal to be verified requesting connection to the receiver AP and the geographic location information of the receiver AP, the method further includes:

地理位置信息预存单元,用于接收并存储已注册的接收方AP的地理位置信息。The geographical location information pre-storage unit is used to receive and store the geographical location information of the registered receiver AP.

优选的,还包括:Preferably, it also includes:

接收方AP识别信息接收单元,用于接收所述接收方AP发送的接收方AP识别信息;A receiving AP identification information receiving unit, configured to receive the receiving AP identification information sent by the receiving AP;

接收方AP识别信息验证单元,用于判断所述接收方AP识别信息与预存的已注册的接收方AP的识别信息是否匹配;a receiving AP identification information verification unit, configured to determine whether the receiving AP identification information matches the pre-stored registered receiving AP identification information;

接收方AP识别信息验证结果发送单元,用于向所述支付服务器端发送所述接收方AP识别信息的匹配结果。The receiver AP identification information verification result sending unit is used to send the matching result of the receiver AP identification information to the payment server.

优选的,所述接收待验证支付方终端请求连接接收方AP的验证请求和接收方AP的地理位置信息之前还包括:Preferably, before receiving the verification request from the payer terminal to be verified requesting connection to the receiver AP and the geographic location information of the receiver AP, the method further includes:

已注册的接收方AP识别信息预存单元,用于接收并存储已注册的接收方AP的识别信息;A registered receiver AP identification information pre-storage unit, configured to receive and store the identification information of the registered receiver AP;

已注册的接收方AP识别信息匹配单元,用于建立所述已注册的接收方AP的识别信息与所述预存的已注册的接收方AP的地理位置信息的对应关系。The registered receiver AP identification information matching unit is configured to establish a corresponding relationship between the identification information of the registered receiver AP and the pre-stored geographical location information of the registered receiver AP.

优选的,所述已注册的接收方AP的识别信息为所述已注册的接收方AP的MAC地址。Preferably, the identification information of the registered receiver AP is the MAC address of the registered receiver AP.

优选的,所述接收待验证支付方终端请求连接接收方AP的验证请求和接收方AP的地理位置信息之前,还包括:Preferably, before receiving the verification request from the payer terminal to be verified requesting connection to the receiver AP and the geographic location information of the receiver AP, the method further includes:

已注册的接收方AP相关信息接收单元,用于接收并存储所述已注册的接收方AP所属接收方的名称信息及其其它信息;A registered receiver AP related information receiving unit, configured to receive and store the name information and other information of the receiver to which the registered receiver AP belongs;

已注册的接收方AP相关信息匹配单元,用于建立所述已注册的接收方AP的识别信息与所述已注册的接收方AP所属接收方的名称信息及其其它信息的对应关系。The registered receiver AP related information matching unit is used to establish a corresponding relationship between the identification information of the registered receiver AP and the name information and other information of the receiver to which the registered receiver AP belongs.

与上述的一种支付验证方法相对应,本申请还提供一种支付方法。本实施例与支付验证方法实施例内容相同的部分不再赘述,请参见支付验证方法实施例中的相应部分。本申请提供的一种支付方法,包括:Corresponding to the above-mentioned payment verification method, the present application also provides a payment method. The parts of this embodiment that are the same as the payment verification method embodiment will not be repeated here. Please refer to the corresponding parts in the payment verification method embodiment. The payment method provided by the present application includes:

向接收方AP发送请求连接接收方AP的验证请求,所述验证请求包括待验证支付方的账户信息;Sending a verification request to the receiving AP requesting connection to the receiving AP, wherein the verification request includes the account information of the payer to be verified;

接收所述接收方AP发送的所述验证请求的验证结果;receiving a verification result of the verification request sent by the receiving AP;

若所述验证请求的验证结果为连接成功,向支付服务器端发送支付请求;If the verification result of the verification request is that the connection is successful, sending a payment request to the payment server;

接收所述支付服务器端发送的所述支付请求的支付结果。Receive the payment result of the payment request sent by the payment server.

在上述的实施例中,提供了一种支付方法,与之相对应的,本申请还提供一种支付装置。由于装置实施例基本相似于方法实施例,所以描述得比较简单,相关之处参见方法实施例的部分说明即可。下述描述的装置实施例仅仅是示意性的。In the above embodiment, a payment method is provided. Accordingly, this application also provides a payment device. Since the device embodiment is substantially similar to the method embodiment, the description is relatively brief. For relevant details, please refer to the description of the method embodiment. The device embodiment described below is merely illustrative.

本实施例的一种支付装置,包括:A payment device according to this embodiment includes:

验证请求发送单元,用于向接收方AP发送请求连接接收方AP的验证请求,所述验证请求包括待验证支付方的账户信息;a verification request sending unit, configured to send a verification request to the receiving AP requesting connection to the receiving AP, wherein the verification request includes account information of the payer to be verified;

验证请求结果接收单元,用于接收所述接收方AP发送的所述验证请求的验证结果;a verification request result receiving unit, configured to receive the verification result of the verification request sent by the receiving AP;

支付请求发送单元,用于若所述验证请求的验证结果为连接成功,向支付服务器端发送支付请求;a payment request sending unit, configured to send a payment request to a payment server if the verification result of the verification request is that the connection is successful;

支付请求结果接收单元,用于接收所述支付服务器端发送的所述支付请求的支付结果。The payment request result receiving unit is used to receive the payment result of the payment request sent by the payment server.

与上述的一种支付验证方法相对应,本申请还提供一种支付结算方法。本实施例与支付验证方法实施例内容相同的部分不再赘述,请参见支付验证方法实施例中的相应部分。本申请提供的一种支付结算方法,包括:Corresponding to the above-mentioned payment verification method, the present application also provides a payment settlement method. The parts of this embodiment that are identical to the payment verification method embodiment will not be repeated here. Please refer to the corresponding parts in the payment verification method embodiment. The payment settlement method provided in the present application includes:

接收待验证支付方终端发送的请求连接的验证请求,所述验证请求包括待验证支付方的账户信息;Receiving a connection verification request sent by a terminal of the payer to be verified, wherein the verification request includes account information of the payer to be verified;

向服务器端发送所述验证请求和接收方AP的地理位置信息;Sending the verification request and the geographic location information of the recipient AP to the server;

接收所述服务器端发送的所述验证请求的验证结果;receiving a verification result of the verification request sent by the server;

若所述验证请求的验证结果为验证成功,通过网络连接所述待验证支付方终端,并向所述待验证支付方终端发送所述验证请求的验证结果。If the verification result of the verification request is successful, the terminal of the payer to be verified is connected via a network, and the verification result of the verification request is sent to the terminal of the payer to be verified.

在上述的实施例中,提供了一种支付结算方法,与之相对应的,本申请还提供一种支付结算装置。由于装置实施例基本相似于方法实施例,所以描述得比较简单,相关之处参见方法实施例的部分说明即可。下述描述的装置实施例仅仅是示意性的。In the above-mentioned embodiments, a payment settlement method is provided. Accordingly, this application also provides a payment settlement device. Since the device embodiments are substantially similar to the method embodiments, the description is relatively brief. For relevant details, please refer to the description of the method embodiments. The device embodiments described below are merely illustrative.

本实施例的一种支付结算装置,包括:A payment settlement device according to this embodiment includes:

请求连接验证请求接收单元,用于接收待验证支付方终端发送的请求连接的验证请求,所述验证请求包括待验证支付方的账户信息;a connection verification request receiving unit, configured to receive a connection verification request sent by a terminal of a payer to be verified, wherein the verification request includes account information of the payer to be verified;

请求连接验证请求发送单元,用于向服务器端发送所述验证请求和接收方AP的地理位置信息;A connection verification request sending unit is used to send the verification request and the geographical location information of the receiving AP to the server;

请求连接验证结果接收单元,用于接收所述服务器端发送的所述验证请求的验证结果;a connection request verification result receiving unit, configured to receive the verification result of the verification request sent by the server;

请求连接验证结果发送单元,用于若所述验证请求的验证结果为验证成功,通过网络连接所述待验证支付方终端,并向所述待验证支付方终端发送所述验证请求的验证结果。The connection request verification result sending unit is used to connect to the payee terminal to be verified through the network and send the verification result of the verification request to the payee terminal to be verified if the verification result of the verification request is successful.

与上述的一种支付验证方法相对应,本申请还提供一种支付执行方法。本实施例与支付验证方法实施例内容相同的部分不再赘述,请参见支付验证方法实施例中的相应部分。本申请提供的一种支付执行方法,包括:Corresponding to the above-mentioned payment verification method, the present application also provides a payment execution method. The parts of this embodiment that are the same as the payment verification method embodiment will not be repeated here. Please refer to the corresponding parts in the payment verification method embodiment. The payment execution method provided in the present application includes:

接收待验证支付方终端发送的支付请求;Receive a payment request sent by a payer terminal to be verified;

向服务器端发送支付方终端地理位置信息验证请求;Send a request to the server to verify the payer's terminal's geographic location information;

接收所述服务器端发送的所述支付方终端地理位置信息验证请求的验证结果;Receiving a verification result of the payer terminal geographic location information verification request sent by the server;

向所述待验证支付方终端发送所述支付请求的支付结果。Sending the payment result of the payment request to the payer terminal to be verified.

在上述的实施例中,提供了一种支付执行方法,与之相对应的,本申请还提供一种支付执行装置。由于装置实施例基本相似于方法实施例,所以描述得比较简单,相关之处参见方法实施例的部分说明即可。下述描述的装置实施例仅仅是示意性的。In the above-mentioned embodiment, a payment execution method is provided. Accordingly, this application also provides a payment execution device. Since the device embodiment is substantially similar to the method embodiment, the description is relatively simple. For relevant details, please refer to the description of the method embodiment. The device embodiment described below is merely illustrative.

本实施例的一种支付执行装置,包括:A payment execution device according to this embodiment includes:

支付请求接收单元,用于接收待验证支付方终端发送的支付请求;A payment request receiving unit, configured to receive a payment request sent by a payer terminal to be verified;

支付方终端地理位置信息验证请求发送单元,用于向服务器端发送支付方终端地理位置信息验证请求;A payer terminal geographic location information verification request sending unit, configured to send a payer terminal geographic location information verification request to a server;

支付方终端地理位置信息验证结果接收单元,用于接收所述服务器端发送的所述支付方终端地理位置信息验证请求的验证结果;a payer terminal geographic location information verification result receiving unit, configured to receive the verification result of the payer terminal geographic location information verification request sent by the server;

支付请求结果发送单元,用于向所述待验证支付方终端发送所述支付请求的支付结果。The payment request result sending unit is used to send the payment result of the payment request to the payer terminal to be verified.

如图3所示,其为本申请提供的支付验证系统实施例示意图。一种支付验证系统,包括:上述的支付验证装置、上述的支付装置、上述的支付结算装置和上述的支付执行装置。As shown in Figure 3, which is a schematic diagram of an embodiment of the payment verification system provided by this application, a payment verification system includes: the above-mentioned payment verification device, the above-mentioned payment device, the above-mentioned payment settlement device, and the above-mentioned payment execution device.

以上对本申请提供的一种支付验证方法、装置及系统的实施例进行了详细介绍,本文中应用了具体个例对本申请的原理及实施方式进行了阐述,以上实施例的说明只是用于帮助理解本申请的方法及其核心思想;同时,对于本领域的一般技术人员,依据本申请的思想,在具体实施方式及应用范围上均会有改变之处。综上所述,本说明书内容不应理解为对本申请的限制。The above describes in detail the embodiments of a payment verification method, device, and system provided by this application. Specific examples are used herein to illustrate the principles and implementation methods of this application. The description of the above embodiments is intended only to help understand the method and core concept of this application. At the same time, those skilled in the art will appreciate that the specific implementation methods and scope of application may vary based on the concepts of this application. In summary, the contents of this specification should not be construed as limiting this application.

在一个典型的配置中,计算设备包括一个或多个处理器(CPU)、输入/输出接口、网络接口和内存。In a typical configuration, a computing device includes one or more processors (CPUs), input/output interfaces, network interfaces, and memory.

内存可能包括计算机可读介质中的非永久性存储器,随机存取存储器(RAM)和/或非易失性内存等形式,如只读存储器(ROM)或闪存(flash RAM)。内存是计算机可读介质的示例。Memory may include non-permanent storage in a computer-readable medium, random access memory (RAM) and/or non-volatile memory in the form of read-only memory (ROM) or flash RAM. Memory is an example of a computer-readable medium.

1、计算机可读介质包括永久性和非永久性、可移动和非可移动媒体可以由任何方法或技术来实现信息存储。信息可以是计算机可读指令、数据结构、程序的模块或其他数据。计算机的存储介质的例子包括,但不限于相变内存(PRAM)、静态随机存取存储器(SRAM)、动态随机存取存储器(DRAM)、其他类型的随机存取存储器(RAM)、只读存储器(ROM)、电可擦除可编程只读存储器(EEPROM)、快闪记忆体或其他内存技术、只读光盘只读存储器(CD-ROM)、数字多功能光盘(DVD)或其他光学存储、磁盒式磁带,磁带磁磁盘存储或其他磁性存储设备或任何其他非传输介质,可用于存储可以被计算设备访问的信息。按照本文中的界定,计算机可读介质不包括非暂存电脑可读媒体(transitory media),如调制的数据信号和载波。1. Computer-readable media includes permanent and non-permanent, removable and non-removable media that can be implemented by any method or technology to store information. Information can be computer-readable instructions, data structures, program modules, or other data. Examples of computer storage media include, but are not limited to, phase-change memory (PRAM), static random access memory (SRAM), dynamic random access memory (DRAM), other types of random access memory (RAM), read-only memory (ROM), electrically erasable programmable read-only memory (EEPROM), flash memory or other memory technologies, compact disc read-only memory (CD-ROM), digital versatile disc (DVD) or other optical storage, magnetic cassettes, magnetic tape, magnetic disk storage or other magnetic storage devices, or any other non-transmission media that can be used to store information that can be accessed by a computing device. As defined herein, computer-readable media does not include non-transitory media such as modulated data signals and carrier waves.

2、本领域技术人员应明白,本申请的实施例可提供为方法、系统或计算机程序产品。因此,本申请可采用完全硬件实施例、完全软件实施例或结合软件和硬件方面的实施例的形式。而且,本申请可采用在一个或多个其中包含有计算机可用程序代码的计算机可用存储介质(包括但不限于磁盘存储器、CD-ROM、光学存储器等)上实施的计算机程序产品的形式。2. Those skilled in the art will appreciate that the embodiments of the present application may be provided as methods, systems, or computer program products. Therefore, the present application may take the form of an entirely hardware embodiment, an entirely software embodiment, or an embodiment combining software and hardware. Furthermore, the present application may take the form of a computer program product implemented on one or more computer-usable storage media (including but not limited to magnetic disk storage, CD-ROM, optical storage, etc.) containing computer-usable program code.

Claims (29)

1.一种支付验证方法,其特征在于,包括:1. A payment verification method, characterized in that it includes: 接收待验证支付方终端请求连接接收方AP的验证请求和接收方AP上报的接收方AP的地理位置信息,所述验证请求包括待验证支付方的账户信息;The system receives a verification request from the payment terminal to be verified, requesting to connect to the receiving AP, and the geographical location information of the receiving AP reported by the receiving AP. The verification request includes the account information of the payment terminal to be verified. 根据所述验证请求对所述待验证支付方的账户信息进行验证,判断所述待验证支付方的账户信息与预存的支付账户信息是否匹配;The account information of the payer to be verified is verified according to the verification request, and it is determined whether the account information of the payer to be verified matches the pre-stored payment account information. 向所述接收方AP反馈所述验证请求的验证结果;The verification result of the verification request is fed back to the receiving AP; 若所述验证请求的验证结果为匹配,接收支付服务器端发送的支付方终端地理位置信息验证请求;If the verification result of the verification request is a match, receive the payment server's verification request for the payer's terminal geographical location information; 根据所述接收方AP的地理位置信息对待验证支付方终端地理位置信息进行验证,判断所述接收方AP的地理位置信息与预存的已注册的接收方AP的地理位置信息是否匹配;The geographical location information of the receiving AP is used to verify the geographical location information of the payment terminal to be verified, and it is determined whether the geographical location information of the receiving AP matches the geographical location information of the pre-stored registered receiving APs. 向所述支付服务器端反馈所述支付方终端地理位置信息验证请求的验证结果。The verification result of the payment server's request to verify the geographical location information of the payment terminal is sent back to the payment server. 2.根据权利要求1所述的支付验证方法,其特征在于,还包括:2. The payment verification method according to claim 1, characterized in that it further comprises: 接收所述接收方AP发送的待验证支付方终端识别信息;Receive the payment terminal identification information to be verified sent by the receiving AP; 若所述验证请求的验证结果为匹配,接收所述支付服务器端发送的支付方终端身份信息验证请求;If the verification result of the verification request is a match, the payment server sends a verification request for the identity information of the payment party's terminal. 判断所述待验证支付方终端识别信息与所述预存的支付账户信息预先绑定的支付方终端识别信息是否匹配;Determine whether the payment terminal identification information to be verified matches the payment terminal identification information pre-bound to the pre-stored payment account information; 向所述支付服务器端反馈所述支付方终端身份信息验证请求的验证结果。The verification result of the payment terminal's identity information verification request is sent back to the payment server. 3.根据权利要求2所述的支付验证方法,其特征在于,所述待验证支付方终端识别信息为待验证支付方终端网卡MAC地址、待验证支付方终端蓝牙MAC地址或待验证支付方终端IMEI号码中的一种或几种。3. The payment verification method according to claim 2, wherein the identification information of the payment terminal to be verified is one or more of the following: the MAC address of the payment terminal's network card, the Bluetooth MAC address of the payment terminal to be verified, or the IMEI number of the payment terminal to be verified. 4.根据权利要求1所述的支付验证方法,其特征在于,所述待验证支付方的账户信息包括待验证支付账号和所述待验证支付账号的密码。4. The payment verification method according to claim 1, wherein the account information of the payer to be verified includes the payment account to be verified and the password of the payment account to be verified. 5.根据权利要求1所述的支付验证方法,其特征在于,所述接收待验证支付方终端请求连接接收方AP的验证请求和接收方AP的地理位置信息之前,还包括:5. The payment verification method according to claim 1, characterized in that, before receiving the verification request from the payment terminal to be verified requesting connection to the receiving AP and the geographical location information of the receiving AP, it further includes: 接收并存储支付方终端发送的支付账户信息和支付方终端识别信息;Receive and store payment account information and payment terminal identification information sent by the payment terminal; 建立所述支付账户信息与所述支付方终端识别信息的绑定关系。Establish a binding relationship between the payment account information and the payment terminal identification information. 6.根据权利要求5所述的支付验证方法,其特征在于,所述支付方终端识别信息为支付方终端网卡MAC地址、支付方终端蓝牙MAC地址或支付方终端IMEI号码中的一种或几种。6. The payment verification method according to claim 5, wherein the payment terminal identification information is one or more of the following: the payment terminal network card MAC address, the payment terminal Bluetooth MAC address, or the payment terminal IMEI number. 7.根据权利要求5所述的支付验证方法,其特征在于,所述支付账户信息包括支付账号和所述支付账号的密码。7. The payment verification method according to claim 5, wherein the payment account information includes a payment account number and a password for the payment account number. 8.根据权利要求1所述的支付验证方法,其特征在于,所述接收待验证支付方终端请求连接接收方AP的验证请求和接收方AP的地理位置信息之前,还包括:8. The payment verification method according to claim 1, characterized in that, before receiving the verification request from the payment terminal to be verified requesting connection to the receiving AP and the geographical location information of the receiving AP, it further includes: 接收并存储已注册的接收方AP的地理位置信息。Receive and store the geographical location information of registered receiving APs. 9.根据权利要求1所述的支付验证方法,其特征在于,还包括:9. The payment verification method according to claim 1, characterized in that it further comprises: 接收所述接收方AP发送的接收方AP识别信息;Receive the receiver AP identification information sent by the receiver AP; 判断所述接收方AP识别信息与预存的已注册的接收方AP的识别信息是否匹配;Determine whether the identification information of the receiving AP matches the identification information of the pre-stored registered receiving APs; 向所述支付服务器端发送所述接收方AP识别信息的匹配结果。The matching result of the recipient's AP identification information is sent to the payment server. 10.根据权利要求9所述的支付验证方法,其特征在于,所述接收待验证支付方终端请求连接接收方AP的验证请求和接收方AP的地理位置信息之前还包括:10. The payment verification method according to claim 9, characterized in that, before receiving the verification request from the payment terminal to be verified requesting connection to the receiving AP and the geographical location information of the receiving AP, it further includes: 接收并存储已注册的接收方AP的识别信息;Receive and store the identification information of registered receiving APs; 建立所述已注册的接收方AP的识别信息与所述预存的已注册的接收方AP的地理位置信息的对应关系。Establish a correspondence between the identification information of the registered receiving AP and the pre-stored geographical location information of the registered receiving AP. 11.根据权利要求10所述的支付验证方法,其特征在于,所述已注册的接收方AP的识别信息为所述已注册的接收方AP的MAC地址。11. The payment verification method according to claim 10, wherein the identification information of the registered receiving AP is the MAC address of the registered receiving AP. 12.根据权利要求10所述的支付验证方法,其特征在于,所述接收待验证支付方终端请求连接接收方AP的验证请求和接收方AP的地理位置信息之前,还包括:12. The payment verification method according to claim 10, characterized in that, before receiving the verification request from the payment terminal to be verified requesting connection to the receiving AP and the geographical location information of the receiving AP, it further includes: 接收并存储所述已注册的接收方AP所属接收方的名称信息及其其它信息;Receive and store the name information and other information of the registered receiver AP; 建立所述已注册的接收方AP的识别信息与所述已注册的接收方AP所属接收方的名称信息及其其它信息的对应关系。Establish a correspondence between the identification information of the registered receiving AP and the name information and other information of the receiving party to which the registered receiving AP belongs. 13.一种支付验证装置,其特征在于,包括:13. A payment verification device, characterized in that it comprises: 验证请求接收单元,用于接收待验证支付方终端请求连接接收方AP的验证请求和接收方AP上报的接收方AP的地理位置信息,所述验证请求包括待验证支付方的账户信息;The verification request receiving unit is used to receive the verification request from the payment terminal to be verified requesting to connect to the receiving AP and the geographical location information of the receiving AP reported by the receiving AP. The verification request includes the account information of the payment terminal to be verified. 验证请求验证单元,用于根据所述验证请求对所述待验证支付方的账户信息进行验证,判断所述待验证支付方的账户信息与预存的支付账户信息是否匹配;The verification request verification unit is used to verify the account information of the payer to be verified according to the verification request, and to determine whether the account information of the payer to be verified matches the pre-stored payment account information. 验证结果发送单元,用于向所述接收方AP反馈所述验证请求的验证结果;The verification result sending unit is used to send the verification result of the verification request back to the receiving AP; 支付方终端地理位置信息验证请求接收单元,用于若所述验证请求的验证结果为匹配,接收支付服务器端发送的支付方终端地理位置信息验证请求;The payment terminal geolocation information verification request receiving unit is used to receive the payment terminal geolocation information verification request sent by the payment server if the verification result of the verification request is a match. 支付方终端地理位置信息验证单元,用于根据所述接收方AP的地理位置信息对待验证支付方终端地理位置信息进行验证,判断所述接收方AP的地理位置信息与预存的已注册的接收方AP的地理位置信息是否匹配;The payment terminal geolocation information verification unit is used to verify the geolocation information of the payment terminal to be verified based on the geolocation information of the receiving AP, and to determine whether the geolocation information of the receiving AP matches the geolocation information of the pre-stored registered receiving APs. 支付方终端地理位置信息验证结果发送单元,用于向所述支付服务器端反馈所述支付方终端地理位置信息验证请求的验证结果。The payment terminal geolocation information verification result sending unit is used to send the verification result of the payment terminal geolocation information verification request back to the payment server. 14.根据权利要求13所述的支付验证装置,其特征在于,还包括:14. The payment verification device according to claim 13, characterized in that it further comprises: 待验证支付方终端识别信息接收单元,用于接收所述接收方AP发送的待验证支付方终端识别信息;The payment terminal identification information receiving unit is used to receive the payment terminal identification information to be verified sent by the receiving AP. 支付方终端身份信息验证请求接收单元,用于若所述验证请求的验证结果为匹配,接收所述支付服务器端发送的支付方终端身份信息验证请求;A payment terminal identity information verification request receiving unit is used to receive a payment terminal identity information verification request sent by the payment server if the verification result of the verification request is a match. 支付方终端身份信息验证请求验证单元,用于判断所述待验证支付方终端识别信息与所述预存的支付账户信息预先绑定的支付方终端识别信息是否匹配;The payment terminal identity information verification request verification unit is used to determine whether the payment terminal identification information to be verified matches the payment terminal identification information pre-bound to the pre-stored payment account information; 支付方终端身份信息验证结果发送单元,用于向所述支付服务器端反馈所述支付方终端身份信息验证请求的验证结果。The payment terminal identity information verification result sending unit is used to send the verification result of the payment terminal identity information verification request back to the payment server. 15.根据权利要求14所述的支付验证装置,其特征在于,所述待验证支付方终端识别信息为待验证支付方终端网卡MAC地址、待验证支付方终端蓝牙MAC地址或待验证支付方终端IMEI号码中的一种或几种。15. The payment verification device according to claim 14, wherein the identification information of the payment terminal to be verified is one or more of the following: the MAC address of the payment terminal network card, the Bluetooth MAC address of the payment terminal to be verified, or the IMEI number of the payment terminal to be verified. 16.根据权利要求13所述的支付验证装置,其特征在于,所述待验证支付方的账户信息包括待验证支付账号和所述待验证支付账号的密码。16. The payment verification device according to claim 13, wherein the account information of the payer to be verified includes the payment account to be verified and the password of the payment account to be verified. 17.根据权利要求13所述的支付验证装置,其特征在于,所述接收待验证支付方终端请求连接接收方AP的验证请求和接收方AP的地理位置信息之前,还包括:17. The payment verification device according to claim 13, characterized in that, before receiving the verification request from the payment terminal to be verified requesting connection to the receiving AP and the geographical location information of the receiving AP, it further includes: 支付方终端信息预存单元,用于接收并存储支付方终端发送的支付账户信息和支付方终端识别信息;The payment terminal information pre-storage unit is used to receive and store payment account information and payment terminal identification information sent by the payment terminal; 支付方终端信息绑定单元,用于建立所述支付账户信息与所述支付方终端识别信息的绑定关系。The payment terminal information binding unit is used to establish a binding relationship between the payment account information and the payment terminal identification information. 18.根据权利要求17所述的支付验证装置,其特征在于,所述支付方终端识别信息为支付方终端网卡MAC地址、支付方终端蓝牙MAC地址或支付方终端IMEI号码中的一种或几种。18. The payment verification device according to claim 17, wherein the payment terminal identification information is one or more of the following: the payment terminal network card MAC address, the payment terminal Bluetooth MAC address, or the payment terminal IMEI number. 19.根据权利要求17所述的支付验证装置,其特征在于,所述支付账户信息包括支付账号和所述支付账号的密码。19. The payment verification device according to claim 17, wherein the payment account information includes a payment account number and a password for the payment account number. 20.根据权利要求13所述的支付验证装置,其特征在于,所述接收待验证支付方终端请求连接接收方AP的验证请求和接收方AP的地理位置信息之前,还包括:20. The payment verification device according to claim 13, characterized in that, before receiving the verification request from the payment terminal to be verified requesting connection to the receiving AP and the geographical location information of the receiving AP, it further includes: 地理位置信息预存单元,用于接收并存储已注册的接收方AP的地理位置信息。The geolocation information pre-storage unit is used to receive and store the geolocation information of registered receiving APs. 21.根据权利要求13所述的支付验证装置,其特征在于,还包括:21. The payment verification device according to claim 13, characterized in that it further comprises: 接收方AP识别信息接收单元,用于接收所述接收方AP发送的接收方AP识别信息;The receiving AP identification information receiving unit is used to receive the receiving AP identification information sent by the receiving AP; 接收方AP识别信息验证单元,用于判断所述接收方AP识别信息与预存的已注册的接收方AP的识别信息是否匹配;The receiver AP identification information verification unit is used to determine whether the receiver AP identification information matches the pre-stored identification information of registered receiver APs. 接收方AP识别信息验证结果发送单元,用于向所述支付服务器端发送所述接收方AP识别信息的匹配结果。The receiving AP identification information verification result sending unit is used to send the matching result of the receiving AP identification information to the payment server. 22.根据权利要求21所述的支付验证装置,其特征在于,所述接收待验证支付方终端请求连接接收方AP的验证请求和接收方AP的地理位置信息之前还包括:22. The payment verification device according to claim 21, characterized in that, before receiving the verification request from the payment terminal to be verified requesting connection to the receiving AP and the geographical location information of the receiving AP, it further includes: 已注册的接收方AP识别信息预存单元,用于接收并存储已注册的接收方AP的识别信息;The pre-storage unit for registered receiver AP identification information is used to receive and store the identification information of registered receiver APs. 已注册的接收方AP识别信息匹配单元,用于建立所述已注册的接收方AP的识别信息与所述预存的已注册的接收方AP的地理位置信息的对应关系。The registered receiver AP identification information matching unit is used to establish the correspondence between the identification information of the registered receiver AP and the pre-stored geographical location information of the registered receiver AP. 23.根据权利要求22所述的支付验证装置,其特征在于,所述已注册的接收方AP的识别信息为所述已注册的接收方AP的MAC地址。23. The payment verification device according to claim 22, wherein the identification information of the registered receiving AP is the MAC address of the registered receiving AP. 24.根据权利要求22所述的支付验证装置,其特征在于,所述接收待验证支付方终端请求连接接收方AP的验证请求和接收方AP的地理位置信息之前,还包括:24. The payment verification device according to claim 22, characterized in that, before receiving the verification request from the payment terminal to be verified requesting connection to the receiving AP and the geographical location information of the receiving AP, it further includes: 已注册的接收方AP相关信息接收单元,用于接收并存储所述已注册的接收方AP所属接收方的名称信息及其其它信息;The registered receiver AP related information receiving unit is used to receive and store the name information and other information of the receiver to which the registered receiver AP belongs; 已注册的接收方AP相关信息匹配单元,用于建立所述已注册的接收方AP的识别信息与所述已注册的接收方AP所属接收方的名称信息及其其它信息的对应关系。The registered receiver AP related information matching unit is used to establish the correspondence between the identification information of the registered receiver AP and the name information and other information of the receiver to which the registered receiver AP belongs. 25.一种支付结算方法,其特征在于,包括:25. A payment settlement method, characterized in that it includes: 接收待验证支付方终端发送的请求连接的验证请求,所述验证请求包括待验证支付方的账户信息;Receive a verification request for a connection sent by the terminal of the payment party to be verified, the verification request including the account information of the payment party to be verified; 向服务器端发送所述验证请求和上报接收方AP的地理位置信息;Send the verification request to the server and report the geographical location information of the receiving AP; 接收所述服务器端发送的所述验证请求的验证结果;Receive the verification result of the verification request sent by the server; 若所述验证请求的验证结果为验证成功,通过网络连接所述待验证支付方终端,并向所述待验证支付方终端发送所述验证请求的验证结果。If the verification request results in successful verification, the system connects to the payment terminal to be verified via the network and sends the verification result of the verification request to the payment terminal to be verified. 26.一种支付结算装置,其特征在于,包括:26. A payment settlement device, characterized in that it comprises: 请求连接验证请求接收单元,用于接收待验证支付方终端发送的请求连接的验证请求,所述验证请求包括待验证支付方的账户信息;A connection verification request receiving unit is used to receive a connection verification request sent by the payment terminal to be verified, wherein the verification request includes the account information of the payment terminal to be verified. 请求连接验证请求发送单元,用于向服务器端发送所述验证请求和上报接收方AP的地理位置信息;The connection verification request sending unit is used to send the verification request to the server and report the geographical location information of the receiving AP; 请求连接验证结果接收单元,用于接收所述服务器端发送的所述验证请求的验证结果;A connection verification result receiving unit is used to receive the verification result of the verification request sent by the server. 请求连接验证结果发送单元,用于若所述验证请求的验证结果为验证成功,通过网络连接所述待验证支付方终端,并向所述待验证支付方终端发送所述验证请求的验证结果。The request connection verification result sending unit is used to connect to the payment terminal to be verified via the network and send the verification result of the verification request to the payment terminal to be verified if the verification result of the verification request is successful. 27.一种支付执行方法,其特征在于,包括:27. A payment execution method, characterized in that it includes: 接收待验证支付方终端发送的支付请求;Receive payment requests sent by the payment terminal to be verified; 向服务器端发送支付方终端地理位置信息验证请求;Send a request to the server to verify the geographical location information of the payer's terminal; 接收所述服务器端发送的所述支付方终端地理位置信息验证请求的验证结果,所述验证结果由服务器端根据接收到的接收方AP的地理位置信息对待验证支付方终端地理位置信息进行验证得到,所述待验证支付方终端地理位置信息为所述接收方AP上报的接收方AP的地理位置信息;The server receives the verification result of the payment terminal's geolocation information verification request sent by the server. The verification result is obtained by the server verifying the geolocation information of the payment terminal to be verified based on the received geolocation information of the receiving AP. The geolocation information of the payment terminal to be verified is the geolocation information of the receiving AP reported by the receiving AP. 向所述待验证支付方终端发送所述支付请求的支付结果。The payment result of the payment request is sent to the terminal of the payer to be verified. 28.一种支付执行装置,其特征在于,包括:28. A payment execution device, characterized in that it comprises: 支付请求接收单元,用于接收待验证支付方终端发送的支付请求;The payment request receiving unit is used to receive payment requests sent by the payment terminal to be verified. 支付方终端地理位置信息验证请求发送单元,用于向服务器端发送支付方终端地理位置信息验证请求;The payment terminal geolocation information verification request sending unit is used to send a payment terminal geolocation information verification request to the server. 支付方终端地理位置信息验证结果接收单元,用于接收所述服务器端发送的所述支付方终端地理位置信息验证请求的验证结果,所述验证结果由服务器端根据接收到的接收方AP的地理位置信息对待验证支付方终端地理位置信息进行验证得到,所述待验证支付方终端地理位置信息为所述接收方AP上报的接收方AP的地理位置信息;The payment terminal geolocation information verification result receiving unit is used to receive the verification result of the payment terminal geolocation information verification request sent by the server. The verification result is obtained by the server verifying the payment terminal geolocation information to be verified based on the received location information of the receiving AP. The payment terminal geolocation information to be verified is the location information of the receiving AP reported by the receiving AP. 支付请求结果发送单元,用于向所述待验证支付方终端发送所述支付请求的支付结果。The payment request result sending unit is used to send the payment result of the payment request to the terminal of the payer to be verified. 29.一种支付验证系统,其特征在于,包括:根据上述权利要求13至24任意一项所述的支付验证装置、根据上述权利要求26所述的支付结算装置、根据上述权利要求28所述的支付执行装置和支付装置;其中,所述支付装置包括:29. A payment verification system, characterized in that it comprises: a payment verification device according to any one of claims 13 to 24, a payment settlement device according to claim 26, a payment execution device according to claim 28, and a payment device; wherein the payment device comprises: 验证请求发送单元,用于向接收方AP发送请求连接接收方AP的验证请求,所述验证请求包括待验证支付方的账户信息;The verification request sending unit is used to send a verification request to the receiving AP to request a connection to the receiving AP. The verification request includes the account information of the payer to be verified. 验证请求结果接收单元,用于接收所述接收方AP发送的所述验证请求的验证结果;A verification request result receiving unit is used to receive the verification result of the verification request sent by the receiving AP; 支付请求发送单元,用于若所述验证请求的验证结果为连接成功,向支付服务器端发送支付请求;A payment request sending unit is used to send a payment request to the payment server if the verification result of the verification request is a successful connection. 支付请求结果接收单元,用于接收所述支付服务器端发送的所述支付请求的支付结果。The payment request result receiving unit is used to receive the payment result of the payment request sent by the payment server.
HK16109495.3A 2016-08-10 Method, device and system for payment authentication HK1221565B (en)

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201410495962.9A CN105450617B (en) 2014-09-24 2014-09-24 A kind of payment verification method, apparatus and system

Publications (2)

Publication Number Publication Date
HK1221565A1 HK1221565A1 (en) 2017-06-02
HK1221565B true HK1221565B (en) 2020-08-21

Family

ID=

Similar Documents

Publication Publication Date Title
US10460309B2 (en) Payment verification method, apparatus and system
US10848564B2 (en) Device specific remote disabling of applications
US11700529B2 (en) Methods and systems for validating mobile devices of customers via third parties
JP5231433B2 (en) System and method for authenticating remote server access
TWI756200B (en) Method and device for account binding and business processing
CN109905875B (en) Communication method and device based on virtual number
CN106779716B (en) Authentication method, device and system based on block chain account address
US20170302451A1 (en) Method and device for identifying user identity
CN104348792B (en) Data processing method, device and system
US20140279523A1 (en) System and Method for Authenticating Payment Transactions
US20150047003A1 (en) Verification authority and method therefor
US20180077573A1 (en) Untrusted device access to services over a cellular network
CN108197913A (en) Method of payment, system and computer readable storage medium based on block chain
CN103905194B (en) Identity traceability authentication method and system
CN113095816A (en) Mobile payment method, device and system
CN108513267A (en) Safe verification method, authentication server and the service terminal of communication service
CN105338000B (en) A kind of verification method, verification system
US20220360662A1 (en) Methods for acquiring an internet user's consent to be located and for authenticating the location information
CN106559470B (en) Account information pushing method and device
CN106204025A (en) A payment method and device based on a SIM card
HK1221565B (en) Method, device and system for payment authentication
KR20130005635A (en) System for providing secure card payment system using mobile terminal and method thereof
CN109639435A (en) It is a kind of based on terminal card to the authentication method and system of APP
KR101267489B1 (en) Method and system for preventing phishing fraud using call authentication
JP2016057682A (en) Authentication system and authentication method