TWI729535B - System for using financial account to confirm identity and method thereof - Google Patents
System for using financial account to confirm identity and method thereof Download PDFInfo
- Publication number
- TWI729535B TWI729535B TW108137757A TW108137757A TWI729535B TW I729535 B TWI729535 B TW I729535B TW 108137757 A TW108137757 A TW 108137757A TW 108137757 A TW108137757 A TW 108137757A TW I729535 B TWI729535 B TW I729535B
- Authority
- TW
- Taiwan
- Prior art keywords
- data
- account
- financial
- server
- client
- Prior art date
Links
- 238000000034 method Methods 0.000 title claims abstract description 31
- 238000012795 verification Methods 0.000 claims abstract description 99
- 238000012790 confirmation Methods 0.000 claims description 100
- 230000004044 response Effects 0.000 claims description 12
- 230000000694 effects Effects 0.000 abstract description 4
- 230000002093 peripheral effect Effects 0.000 description 14
- 238000004891 communication Methods 0.000 description 8
- 238000010295 mobile communication Methods 0.000 description 5
- 238000012545 processing Methods 0.000 description 4
- 230000006870 function Effects 0.000 description 3
- 239000007787 solid Substances 0.000 description 3
- 238000010586 diagram Methods 0.000 description 2
- 238000005516 engineering process Methods 0.000 description 2
- 230000003068 static effect Effects 0.000 description 2
- 238000011161 development Methods 0.000 description 1
- 239000000463 material Substances 0.000 description 1
- 238000012986 modification Methods 0.000 description 1
- 230000004048 modification Effects 0.000 description 1
- 230000003287 optical effect Effects 0.000 description 1
- 238000012546 transfer Methods 0.000 description 1
Images
Landscapes
- Financial Or Insurance-Related Operations Such As Payment And Settlement (AREA)
Abstract
Description
一種身分確認系統及其方法,特別係指一種透過金融帳戶資料確認使用者身分之系統及其方法。An identity confirmation system and method, in particular, a system and method for confirming user identity through financial account data.
近年來,由於通訊及網路相關產業的高度發展,人們對各種服務電子化與行動化的需求日益升高,過去許多需要到場辦理的業務與服務都已以能夠透過網路完成。不過,由於某些服務受到法令的限制,在進行服務的申請時需要確認身分,因此一直只能臨櫃辦理,例如在金融機構開戶或在電信機構辦理新門號或攜碼服務等。In recent years, due to the rapid development of communications and network-related industries, people's demand for electronic and mobile services has increased. In the past, many businesses and services that needed to be on-site have been completed through the Internet. However, because some services are restricted by laws and regulations, you need to confirm your identity when applying for services, so you can only handle it at the counter, such as opening an account at a financial institution or applying for a new door number or porting service at a telecommunications institution.
近來,隨著法令的鬆綁,開戶作業與辦理新門號與攜碼等申請作業在能夠透過網路確認申請人身分的情況下,也被允許能夠在線上完成。目前透過網路進行的身分確認方式,大多是使用如自然人憑證或金融交易憑證等數位憑證完成。由於申請數位憑證需要付費,因此,對於沒有經常使用數位憑證的大多數人而言,並不會特別申請數位憑證,導致這些人無法享受透過網路完成開戶或新辦門號或攜碼等需要確認身分的申請作業。Recently, with the loosening of laws and regulations, application tasks such as account opening and new door number and code portability are allowed to be completed online when the identity of the applicant can be confirmed through the Internet. At present, most of the methods of identity verification through the Internet are completed by using digital certificates such as natural person certificates or financial transaction certificates. Because there is a fee to apply for a digital certificate, most people who do not use a digital certificate often do not apply for a digital certificate. As a result, these people cannot enjoy the needs of completing an account or opening a new door number or carrying a code through the Internet. Confirmation of identity application work.
綜上所述,可知先前技術中長期以來一直存在線上確認身分方式大多使用數位憑證進行導致多數人無法在線上確認身分的問題,因此有必要提出改進的技術手段,來解決此一問題。In summary, it can be seen that in the prior art, there has been a long-standing problem in the prior art that most people are unable to confirm their identities online by using digital certificates. Therefore, it is necessary to propose improved technical means to solve this problem.
有鑒於先前技術存在多數人沒有數位憑證導致無法在線上完成身分確認的問題,本發明遂揭露一種透過金融帳戶資料確認使用者身分之系統及其方法,其中:In view of the problem in the prior art that most people cannot complete identity verification online because they do not have a digital certificate, the present invention discloses a system and method for confirming user identity through financial account data, in which:
本發明所揭露之透過金融帳戶資料確認使用者身分之系統,至少包含:服務伺服器;客戶端,用以產生申請資料,及用以傳送申請資料至服務伺服器,其中,申請資料包含帳戶確認資料及作業資料;金融伺服器,用以由服務伺服器接收帳戶確認資料,及用以驗證帳戶確認資料,並產生驗證結果,及傳送驗證結果至服務伺服器,使服務伺服器於驗證結果表示帳戶確認資料通過驗證時,依據作業資料進行對應申請作業。The system for confirming user identity through financial account data disclosed in the present invention at least includes: a service server; a client terminal, used to generate application data, and used to send application data to the service server, where the application data includes account confirmation Data and operation data; financial server, used to receive account confirmation data from the service server, and used to verify the account confirmation data, and generate the verification result, and send the verification result to the service server, so that the service server can display the verification result When the account confirmation information is verified, the corresponding application is performed based on the work information.
本發明所揭露之透過金融帳戶資料確認使用者身分之方法,其步驟至少包括:客戶端產生申請資料,申請資料包含帳戶確認資料及作業資料;客戶端傳送申請資料至服務伺服器;服務伺服器傳送帳戶確認資料至金融伺服器;金融伺服器驗證帳戶確認資料,並產生驗證結果,及傳送驗證結果至服務伺服器;服務伺服器於驗證結果表示帳戶確認資料通過驗證時,依據作業資料進行對應申請作業。The method for confirming user identity through financial account data disclosed in the present invention includes at least the following steps: the client generates application data, the application data includes account confirmation data and operation data; the client sends the application data to the service server; the service server Send the account confirmation data to the financial server; the financial server verifies the account confirmation data and generates the verification result, and sends the verification result to the service server; the service server responds according to the operation data when the verification result indicates that the account confirmation data is verified Apply for assignments.
本發明所揭露之系統與方法如上,與先前技術之間的差異在於本發明透過服務伺服器取得客戶端產生之申請資料後,將申請資料中之帳戶確認資料傳送給金融伺服器,使金融伺服器驗證帳戶確認資料以確認使用者身分,服務伺服器在帳戶確認資料通過金融伺服器驗證後,依據申請資料中的作業資料完成申請作業,藉以解決先前技術所存在的問題,並可以達成增加身分確認之方式的技術功效。The system and method disclosed in the present invention are as described above. The difference between the present invention and the prior art is that after obtaining the application data generated by the client through the service server, the present invention sends the account confirmation data in the application data to the financial server, so that the financial server The server verifies the account confirmation data to confirm the user's identity. After the account confirmation data is verified by the financial server, the service server completes the application based on the operation data in the application data, so as to solve the problems of the previous technology and achieve an increase in identity The technical effect of the method of confirmation.
以下將配合圖式及實施例來詳細說明本發明之特徵與實施方式,內容足以使任何熟習相關技藝者能夠輕易地充分理解本發明解決技術問題所應用的技術手段並據以實施,藉此實現本發明可達成的功效。In the following, the features and implementation of the present invention will be described in detail with the drawings and embodiments. The content is sufficient to enable any person familiar with the relevant art to easily and fully understand the technical means used by the present invention to solve the technical problems and implement them accordingly. The achievable effect of the present invention.
本發明可以讓使用者在線上辦理需要進行身分確認的特定作業時,透過預先留存在其他金融單位之使用者資料完成使用者身分的確認。上述之特定作業包含但不限於線上申辦新電話門號、攜碼服務、數位帳戶開戶等。The present invention allows the user to complete the confirmation of the user's identity by pre-existing user data stored in other financial units when the user performs a specific operation that needs to be confirmed online. The above-mentioned specific tasks include but are not limited to online application for new phone numbers, code portability services, and digital account opening, etc.
以下先以「第1圖」本發明所提之透過金融帳戶資料確認使用者身分之系統架構圖來說明本發明的系統運作。如「第1圖」所示,本發明之系統含有客戶端110、服務伺服器120、金融伺服器130,以及可附加的電信伺服器140。其中,客戶端110、服務伺服器120、金融伺服器130、與電信伺服器140都是計算設備。In the following, the system structure diagram of confirming the user's identity through financial account data mentioned in the "Figure 1" of the present invention is used to illustrate the operation of the system of the present invention. As shown in "Figure 1", the system of the present invention includes a
本發明所提之計算設備包含但不限於一個或多個處理器、一個或多個記憶體模組、以及連接不同元件(包括記憶體模組和處理器)的匯流排等元件。透過所包含之多個元件,計算設備可以載入並執行作業系統,使作業系統在計算設備上運行,也可以執行軟體或程式。另外,計算設備也包含一個外殼,上述之各個元件設置於外殼內。The computing device mentioned in the present invention includes, but is not limited to, one or more processors, one or more memory modules, and components such as buses connecting different components (including memory modules and processors). Through the included multiple components, the computing device can load and execute the operating system, make the operating system run on the computing device, and can also execute software or programs. In addition, the computing device also includes a housing, and the above-mentioned components are arranged in the housing.
本發明所提之計算設備的匯流排可以包含一種或多個類型,例如包含資料匯流排(data bus)、位址匯流排(address bus)、控制匯流排(control bus)、擴充功能匯流排(expansion bus)、及/或局域匯流排(local bus)等類型的匯流排。計算設備的匯流排包括但不限於並列的工業標準架構(ISA)匯流排、周邊元件互連(PCI)匯流排、視頻電子標準協會(VESA)局域匯流排、以及串列的通用序列匯流排(USB)、快速周邊元件互連(PCI-E)匯流排等。The bus of the computing device mentioned in the present invention may include one or more types, for example, including data bus, address bus, control bus, extended function bus ( expansion bus), and/or local bus (local bus). The bus of computing equipment includes, but is not limited to, parallel industry standard architecture (ISA) bus, peripheral component interconnect (PCI) bus, Video Electronics Standards Association (VESA) local bus, and serial universal serial bus (USB), PCI-E bus, etc.
本發明所提之計算設備的處理器與匯流排耦接。處理器包含暫存器(Register)組或暫存器空間,暫存器組或暫存器空間可以完全的被設置在處理晶片上,或全部或部分被設置在處理晶片外並經由專用電氣連接及/或經由匯流排耦接至處理器。處理器可為處理單元、微處理器或任何合適的處理元件。若計算設備為多處理器設備,也就是計算設備包含多個處理器,則計算設備所包含的處理器都相同或類似,且透過匯流排耦接與通訊。處理器可以解釋一連串的多個指令以進行特定的運算或操作,例如,數學運算、邏輯運算、資料比對、複製/移動資料等,藉以運行作業系統或執行各種程式、模組、及/或元件。The processor of the computing device provided by the present invention is coupled with the bus. The processor contains a register group or register space. The register group or register space can be completely set on the processing chip, or all or part of it can be set outside the processing chip and connected via a dedicated electrical connection. And/or coupled to the processor via the bus. The processor may be a processing unit, a microprocessor, or any suitable processing element. If the computing device is a multi-processor device, that is, the computing device includes multiple processors, the processors included in the computing device are all the same or similar, and they are coupled and communicated through a bus. The processor can interpret a series of multiple instructions to perform specific operations or operations, such as mathematical operations, logical operations, data comparison, copy/move data, etc., to run the operating system or execute various programs, modules, and/or element.
計算設備的處理器可以與晶片組耦接或透過匯流排與晶片組電性連接。晶片組是由一個或多個積體電路(IC)組成,包含記憶體控制器以及周邊輸出入(I/O)控制器,也就是說,記憶體控制器以及周邊輸出入控制器可以包含在一個積體電路內,也可以使用兩個或更多的積體電路實現。晶片組通常提供了輸出入和記憶體管理功能、以及提供多個通用及/或專用暫存器、計時器等,其中,上述之通用及/或專用暫存器與計時器可以讓耦接或電性連接至晶片組的一個或多個處理器存取或使用。The processor of the computing device can be coupled to the chipset or electrically connected to the chipset through a bus. The chipset is composed of one or more integrated circuits (IC), including a memory controller and a peripheral input/output (I/O) controller, that is to say, the memory controller and the peripheral input/output controller can be included in In an integrated circuit, two or more integrated circuits can also be used. Chipsets usually provide I/O and memory management functions, as well as multiple general-purpose and/or special-purpose registers, timers, etc., among which the aforementioned general-purpose and/or special-purpose registers and timers can be coupled or One or more processors electrically connected to the chipset are accessed or used.
計算設備的處理器也可以透過記憶體控制器存取安裝於計算設備上的記憶體模組和大容量儲存區中的資料。上述之記憶體模組包含任何類型的揮發性記憶體(volatile memory)及/或非揮發性(non-volatile memory, NVRAM)記憶體,例如靜態隨機存取記憶體(SRAM)、動態隨機存取記憶體(DRAM)、快閃記憶體(Flash)、唯讀記憶體(ROM)等。上述之大容量儲存區可以包含任何類型的儲存裝置或儲存媒體,例如,硬碟機、光碟片、隨身碟(快閃記憶體)、記憶卡(memory card)、固態硬碟(Solid State Disk, SSD)、或任何其他儲存裝置等。也就是說,記憶體控制器可以存取靜態隨機存取記憶體、動態隨機存取記憶體、快閃記憶體、硬碟機、固態硬碟中的資料。The processor of the computing device can also access the data in the memory module and the mass storage area installed on the computing device through the memory controller. The above-mentioned memory modules include any type of volatile memory (volatile memory) and/or non-volatile memory (NVRAM), such as static random access memory (SRAM), dynamic random access Memory (DRAM), flash memory (Flash), read-only memory (ROM), etc. The above-mentioned large-capacity storage area can include any type of storage device or storage medium, such as hard disk drives, optical discs, flash drives (flash memory), memory cards, and solid state disks (Solid State Disk, SSD), or any other storage device, etc. In other words, the memory controller can access data in static random access memory, dynamic random access memory, flash memory, hard disk drives, and solid state drives.
計算設備的處理器也可以透過周邊輸出入控制器經由周邊輸出入匯流排與周邊輸出裝置、周邊輸入裝置、通訊介面、以及GPS接收器等周邊裝置或介面連接並通訊。周邊輸入裝置可以是任何類型的輸入裝置,例如鍵盤、滑鼠、軌跡球、觸控板、搖桿等,周邊輸出裝置可以是任何類型的輸出裝置,例如顯示器、印表機等,周邊輸入裝置與周邊輸出裝置也可以是同一裝置,例如觸控螢幕等。通訊介面可以包含無線通訊介面及/或有線通訊介面,無線通訊介面可以包含支援Wi-Fi、Zigbee等無線區域網路、藍牙、紅外線、近場通訊(NFC)、3G/4G/5G等行動通訊網路或其他無線資料傳輸協定的介面,有線通訊介面可為乙太網路裝置、非同步傳輸模式(ATM)裝置、DSL數據機、纜線(Cable)數據機等。處理器可以週期性地輪詢(polling)各種周邊裝置與介面,使得計算設備能夠透過各種周邊裝置與介面進行資料的輸入與輸出,也能夠與具有上面描述之元件的另一個計算設備進行通訊。The processor of the computing device can also connect and communicate with peripheral output devices, peripheral input devices, communication interfaces, and GPS receivers and other peripheral devices or interfaces through the peripheral I/O bus through the peripheral I/O controller. The peripheral input device can be any type of input device, such as a keyboard, mouse, trackball, touchpad, joystick, etc. The peripheral output device can be any type of output device, such as a display, a printer, etc., a peripheral input device It can also be the same device as the peripheral output device, such as a touch screen. The communication interface can include a wireless communication interface and/or a wired communication interface. The wireless communication interface can include a mobile communication network that supports Wi-Fi, Zigbee and other wireless local area networks, Bluetooth, infrared, near field communication (NFC), 3G/4G/5G, etc. The wired communication interface can be an Ethernet device, Asynchronous Transfer Mode (ATM) device, DSL modem, cable modem, etc. The processor can periodically poll various peripheral devices and interfaces, so that the computing device can input and output data through various peripheral devices and interfaces, and can also communicate with another computing device having the above-described components.
客戶端110可以是電腦、手機、平板等,但本發明並不以此為限。客戶端110可以透過無線網路與服務伺服器120連接,並可以傳送資料或訊號給服務伺服器120,也可以接收服務伺服器120所傳送的資料或訊號。其中,本發明所提之無線網路包含但不限於WiFi等無線區域網路、3G/4G等行動通訊網路。The
客戶端110負責產生申請資料,也負責將所產生的申請資料傳送給服務伺服器120。客戶端110所產生的申請資料包含帳戶確認資料以及作業資料。其中,作業資料可以提供給服務伺服器120完成線上申請作業的資料,包含使用者的個人資料等,一般而言,作業資料隨著客戶端110向服務伺服器120所請求之線上申請作業不同而不同。其中,本發明所提之個人資料包含但不限於姓名、生日、身分證號、手機號碼、地址、電子郵件地址、身分證明文件的影像等。The
帳戶確認資料可以包含其他金融單位之帳戶的帳號資料與確認資料。例如,客戶端110可以提供使用者輸入在其他金融單位開戶時所提供的申請人資料,並可以先提供使用者連接同一金融單位所核發的金融卡(圖中未示)並可以提供使用者輸入金融卡密碼,再將金融卡密碼提供給金融卡驗證後,接收金融卡所提供之帳號資料及押碼訊息,藉以產生包含申請人資料、帳號資料、及押碼訊息之帳戶確認資料,此時,申請人資料與押碼訊息為確認資料;客戶端110也可以取得帳號資料及識別資料,並產生包含帳號資料及識別資料之帳戶確認資料,此時,識別資料為確認資料;客戶端110也可以取得帳號資料、識別資料、及許可信物(token),並產生包含帳號資料、識別資料、及許可信物之帳戶確認資料,此時,識別資料與許可信物為確認資料。其中,上述之申請人資料為姓名、生日、畢業學校等資料項目;上述之識別資料為身分證號、護照號碼等足以辨識使用者的資料。The account confirmation data may include the account information and confirmation data of the accounts of other financial institutions. For example, the
服務伺服器120可以透過無線網路提供客戶端110連接,也可以透過有線或無線網路與金融伺服器130連接。如此,服務伺服器120可以傳送資料或訊號給客戶端110/金融伺服器130,也可以接收客戶端110/金融伺服器130所傳送的資料或訊號。例如,服務伺服器120可以接收客戶端110所傳送的申請資料,並可以傳送申請資料所包含之帳戶確認資料至金融伺服器130,也可以接收金融伺服器130所傳回的驗證結果。The
服務伺服器120可以提供服務給客戶端110使用。在部分的實施例中,服務伺服器120可以包含兩個或更多個電性連接的計算裝置。服務伺服器120所包含之每一個計算裝置具有一個或多個服務伺服器120所提供的功能;各計算裝置間可以透過有線或無線網路相互傳遞資料或訊號,但並不一定設置在同一地點。The
服務伺服器120也負責在接收自金融伺服器130的驗證結果表示帳戶確認資料通過驗證時,依據接收自客戶端110之申請資料中的作業資料進行對應申請作業。而若驗證結果表示帳戶確認資料沒有通過驗證,則服務伺服器120可以產生錯誤訊息,並可以將所產生的錯誤訊息傳回客戶端110。The
金融伺服器130可以透過有線或無線網路與服務伺服器120連接,也可以透過無線網路提供客戶端110連接。如此,金融伺服器130可以傳送資料或訊號給服務伺服器120/客戶端110,也可以接收服務伺服器120/客戶端110所傳送的資料或訊號。例如,金融伺服器130可以由服務伺服器120接收帳戶確認資料,也可以將所產生的驗證結果傳送給服務伺服器120。The
金融伺服器130也負責驗證所接收到的帳戶確認資料。更詳細的,當帳戶確認資料包含申請人資料、帳號資料、及押碼訊息時,金融伺服器130可以依據帳號資料檢核押碼訊息,並可以在押碼訊息通過檢核時,依據帳號資料讀取相對應之帳戶的持有人在開戶時所提供的持有人資料,並比對申請人資料與持有人資料中之對應資料項目是否相同,藉以驗證帳戶確認資料;而當帳戶驗證資料包含帳號資料、識別資料、及許可信物時,金融伺服器130可以先依據帳號資料讀取相對應之帳戶的持有人在開戶時所提供的身分證號,再比對識別資料與所讀出之身分證號是否相同以確認帳號資料及識別資料是否對應,並在確認帳號資料與識別資料對應時,依據帳號資料或識別資料讀取與帳號資料相對應之帳戶的持有人所留存的門號資料,並傳送識別資料、許可信物及所讀出之門號資料至電信伺服器140,藉以透過電信伺服器140驗證帳戶確認資料;而若帳戶驗證資料包含帳號資料與識別資料,則金融伺服器130同樣可以先依上述確認帳號資料及識別資料是否對應,並在確認帳號資料與識別資料對應時,依據帳號資料或識別資料讀取與帳號資料相對應之帳戶的持有人所留存的門號資料,並依據所讀出之門號資料傳送驗證資料至客戶端110,及接收客戶端110傳送之回應資料,並比對驗證資料及回應資料是否相同,藉以驗證帳戶確認資料。其中,金融伺服器130所傳送之驗證資料通常為任意數量的字母或數字任意排列產生,且具有時效性,例如一次性密碼等,但本發明並不以此為限。The
金融伺服器130也負責產生帳戶驗證資料的驗證結果。也就是說金融伺服器130可以在帳戶確認資料沒有通過驗證時,產生表示帳戶確認資料沒有通過驗證的驗證結果,也可以在帳戶確認資料通過驗證時,產生表示帳戶確認資料通過驗證的驗證結果。The
電信伺服器140可以透過有線或無線網路與金融伺服器130連接,也可以透過行動通訊網路與客戶端110連接。如此,電信伺服器140可以傳送資料或訊號給金融伺服器130/客戶端110,也可以接收金融伺服器130/客戶端110所傳送的資料或訊號。例如,電信伺服器140可以接收金融伺服器130所傳送的識別資料及門號資料。The
電信伺服器140可以對所接收到的識別資料及門號資料進行驗證,藉以產生驗證結果。更詳細的,電信伺服器140可以判斷預先儲存的資料中,是否存在一筆資料包含所接收到的識別資料與門號資料。若電信伺服器140所儲存的資料中存在一筆包含識別資料與門號資料的資料,則電信伺服器140可以產生通過驗證的驗證結果,反之,若電信伺服器140所儲存的資料中不存在一筆同時包含識別資料與門號資料的資料,則電信伺服器140可以產生未通過驗證的驗證結果。The
電信伺服器140也可以接收客戶端110所傳送的行動通訊訊號並產生許可信物,也可以將所產生的許可信物傳回客戶端110。電信伺服器140所產生的許可信物具有時間性,通常是由一定數量的字母、數字、符號任意排列而成為,例如,對特定資料進行雜湊運算等特定編碼方式所產生的資料,其中,上述之特定資料包含但不限於客戶端110的裝置識別資料、依據客戶端110的裝置識別資料所讀出之客戶端110之使用者的生日、電信伺服器140的伺服器識別資料、及/或時間戳等項目,本發明並沒有特別的限制。當特定資料包含兩種或多種項目時,各種項目之間可以預定的順序或位置排列。另外,本發明所提之裝置識別資料包含但不限於客戶端110所使用的門號、安裝於客戶端110中之SIM卡的卡號、客戶端110的序號等;伺服器識別資料包含但不限於電信伺服器140的序號、網路位址、網路卡號、電信伺服器140所包含之某個硬體元件的序號等。The
電信伺服器140也可以接收金融伺服器130所傳送的許可信物,並可以判斷所接收到的許可信物是否由電信伺服器140自身所產生。當許可信物不是由電信伺服器140所發出,或許可信物不是發送給客戶端110,則電信伺服器140可以產生未通過驗證的驗證結果。反之,電信伺服器140可以在所儲存的資料中存在一筆包含識別資料與門號資料的資料,且許可信物是由電信伺服器140發送給客戶端110時,才產生通過驗證的驗證結果。The
接著以第一實施例來解說本發明的運作系統與方法,並請參照「第2A圖」本發明所提之透過金融帳戶資料確認使用者身分之方法流程圖。Next, the first embodiment is used to explain the operating system and method of the present invention, and please refer to "Figure 2A" for the flow chart of the method of confirming the user's identity through financial account data in the present invention.
當使用者操作客戶端110連線到服務伺服器120後,使用者可以操作客戶端110執行服務伺服器120所提供的申請作業。當使用者操作客戶端110所執行的申請作業時,服務伺服器120可以要求客戶端110提供申請資料。在本實施例中,假設申請作業可以是線上申辦門號、線上申請攜碼、或是線上開戶等。After the user operates the
客戶端110可以在服務伺服器120要求提供申請資料時,產生與服務伺服器120所要求之申請資料(步驟210)。在本實施例中,若客戶端110為電腦等可以透過USB等連接介面與讀卡機連接的計算設備,則如「第2B圖」之流程所示,客戶端110可以提供使用者輸入姓名、生日等申請人資料(步驟2121),也可以提供使用者使用讀卡機連接客戶端110與金融卡,並提供使用者輸入金融卡密碼,藉以驅動金融卡傳回使用者的帳號資料與押碼訊息(步驟2123),再產生包含使用者所輸入之申請人資料、及金融卡傳回之帳號資料與押碼訊息的帳戶確認資料(步驟2127);而若客戶端110為智慧型手機等行動裝置,則如「第2C圖」或「第2D圖」所示,客戶端110也可以提供使用者輸入帳號資料及身分證號(識別資料)(步驟2133),並產生包含帳號資料及識別資料之帳戶確認資料(步驟2137)。另外,客戶端110除了產生帳戶確認資料之外,也可以提供使用者輸入作業資料,藉以產生包含帳戶確認資料與作業資料的申請資料。The
在客戶端110產生申請資料後,可以將所產生的申請資料傳送給服務伺服器120,服務伺服器120在接收到客戶端110所傳送的申請資料後,可以將申請資料中所包含的帳戶確認資料傳送給金融伺服器130(步驟220)。在本實施例中,服務伺服器120在接收到客戶端110所傳送的申請資料後,服務伺服器120可以由所接收到的申請資料中讀出帳戶確認資料與作業資料,並可以依據所讀出之帳號確認資料中的確認資料是申請人資料及押碼訊息或是識別資料選擇對應的連線方式,並依據所選擇的連線方式使用金融伺服器130所提供之對應的連接介面將帳戶確認資料傳送到金融伺服器130。After the
在金融伺服器130接收到服務伺服器120所傳送的帳戶確認資料後,金融伺服器130可以驗證所接收到的帳戶確認資料(步驟230),並可以在驗證後產生對應的驗證結果。After the
在本實施例中,若金融伺服器130所接收到的帳戶確認資料包含申請人資料、帳號資料與押碼訊息,則金融伺服器130可以如「第2B圖」之流程所示,依據帳號資料檢核押碼訊息(步驟2321),並在判斷押碼訊息通過檢核(步驟2325)後,依據帳號資料讀取持有人資料,並比對持有人資料與申請人資料是否相同(步驟2327),藉以驗證帳號確認資料。當持有人資料與申請人資料一致,例如持有人資料與申請人資料中的姓名與生日等資料項目都一致時,金融伺服器130可以產生表示帳號確認資料通過驗證的驗證結果,反之,當持有人資料與申請人資料中的有任何一項資料不同,則金融伺服器130可以產生帳號確認資料沒有通過驗證的驗證結果。In this embodiment, if the account confirmation data received by the
而若金融伺服器130所接收到的帳戶確認資料包含帳號資料與身分證號(識別資料),則金融伺服器130可以如「第2C圖」之流程所示,先確認帳號資料與識別資料是否對應(步驟2331),也就是確認依據帳號資料所讀出之持有人的身分證號與所接收到的身分證號是否相同,若否,則金融伺服器130可以產生帳號確認資料沒有通過驗證的驗證結果。而當帳號資料與識別資料對應時,金融伺服器130可以依據帳號資料或識別資料讀出持有人的門號資料(步驟2333),並可以產生作為驗證資料的一次性密碼,再依據所讀出之門號資料將驗證資料傳送給客戶端110(步驟2335),之後,金融伺服器130可以等待接收客戶端110所傳回的回應資料,在金融伺服器130接收到客戶端110所傳送的回應資料(步驟2337)後,金融伺服器130可以比對所接收到的回應資料是否與驗證資料相同,藉以驗證帳號確認資料(步驟2339)。當回應資料與驗證資料相同,金融伺服器130可以產生帳號確認資料通過驗證的驗證結果,反之,金融伺服器130可以產生帳號確認資料沒有通過驗證的驗證結果。If the account confirmation data received by the
回到「第2A圖」,在金融伺服器130產生驗證結果後,可以將所產生的驗證結果傳送到服務伺服器120(步驟240)。服務伺服器120在接收到金融伺服器130所傳送的驗證結果後,可以判斷所接收到的驗證結果是否表示帳戶確認資料通過驗證。若否,則服務伺服器120可以拒絕執行客戶端110所請求的申請作業,並可以產生錯誤訊息,以及將所產生的錯誤訊息傳回客戶端110顯示;若驗證結果表示帳戶確認資料通過驗證,則服務伺服器120可以依據接收自客戶端110之申請資料中的作業資料執行客戶端110所請求的申請作業(步驟250)。在本實施例中,也就是執行線上申辦門號、線上申請攜碼、或是線上開戶等申請作業。Returning to "Figure 2A", after the
如此,透過本發明,服務伺服器120可以透過第三方的金融伺服器130驗證客戶端110所提供的帳戶確認資料,藉以在客戶端110所提供的資料經過驗證的前提下執行客戶端110所請求的申請作業。In this way, through the present invention, the
上述實施例中,在客戶端110產生申請資料(步驟210)時,可以如「第2D圖」之流程所示,客戶端110可以先透過行動通訊網路連線至電信伺服器140,並取得電信伺服器140所發出的許可信物,並可以如上述實施例所描述的方式取得帳號資料與識別資料(步驟2143),藉以產生包含帳號資料、識別資料與許可信物的帳戶確認資料(步驟2147),進而產生申請資料,之後,客戶端110可以將所產生的申請資料傳送給服務伺服器120,服務伺服器120可以將申請資料中的帳戶確認資料傳送給金融伺服器130(步驟220)。In the above-mentioned embodiment, when the
在金融伺服器130驗證帳戶確認資料(步驟230)時,可以如「第2D圖」之流程所示,金融伺服器130可以先確認帳號資料與識別資料是否對應(步驟2341),也就是確認依據帳號資料所讀出之持有人的身分證號與所接收到的身分證號是否相同,若否,則金融伺服器130可以產生帳號確認資料沒有通過驗證的驗證結果。而若帳號資料與識別資料對應時,金融伺服器130可以依據帳號資料或識別資料讀出持有人的門號資料(步驟2343),並可以將識別資料、許可信物、及門號資料傳送給電信伺服器140,藉以透過電信伺服器140進行驗證(步驟2347),並可以將電信伺服器140所傳回的驗證結果傳回服務伺服器120。When the
其中,在電信伺服器140接收到識別資料、許可信物與門號資料後,電信伺服器140可以判斷所儲存的資料中,是否存在一筆資料包含所接收到的識別資料與門號資料,並可以判斷許可信物是否由電信伺服器140自身所發出。若電信伺服器140所儲存的資料中存在包含識別資料與門號資料的資料,且許可信物是由電信伺服器140所發出,則電信伺服器140可以產生通過驗證的驗證結果,反之,若電信伺服器140所儲存的資料中不存在同時包含識別資料與門號資料的資料,或者許可信物不是由電信伺服器140所發出,則電信伺服器140可以產生未通過驗證的驗證結果。Among them, after the
綜上所述,可知本發明與先前技術之間的差異在於具有服務伺服器取得客戶端產生之申請資料後,將申請資料中之帳戶確認資料傳送給金融伺服器,使金融伺服器驗證帳戶確認資料以確認使用者身分,服務伺服器在帳戶確認資料通過金融伺服器驗證後,依據申請資料中的作業資料完成申請作業之技術手段,藉由此一技術手段可以來解決先前技術所存在線上確認身分方式大多使用數位憑證進行導致多數人無法在線上確認身分的問題,進而達成增加確認身分之方式的技術功效。In summary, it can be seen that the difference between the present invention and the prior art is that after the service server obtains the application data generated by the client, the account confirmation data in the application data is sent to the financial server, so that the financial server can verify the account confirmation The data is used to confirm the identity of the user. After the account confirmation data is verified by the financial server, the service server completes the technical means of the application based on the operation data in the application data. This technical means can solve the online confirmation of the previous technology Most of the identity methods use digital certificates to solve the problem that most people cannot confirm their identities online, thereby achieving the technical effect of increasing the ways of confirming their identities.
再者,本發明之透過金融帳戶資料確認使用者身分之方法,可實現於硬體、軟體或硬體與軟體之組合中,亦可在電腦系統中以集中方式實現或以不同元件散佈於若干互連之電腦系統的分散方式實現。Furthermore, the method of confirming user identity through financial account data of the present invention can be implemented in hardware, software, or a combination of hardware and software, and can also be implemented in a centralized manner in a computer system or distributed in a number of different components. Realization of a decentralized way of interconnected computer systems.
雖然本發明所揭露之實施方式如上,惟所述之內容並非用以直接限定本發明之專利保護範圍。任何本發明所屬技術領域中具有通常知識者,在不脫離本發明所揭露之精神和範圍的前提下,對本發明之實施的形式上及細節上作些許之更動潤飾,均屬於本發明之專利保護範圍。本發明之專利保護範圍,仍須以所附之申請專利範圍所界定者為準。Although the embodiments of the present invention are disclosed as above, the content described is not intended to directly limit the scope of patent protection of the present invention. Any person with ordinary knowledge in the technical field to which the present invention belongs, without departing from the spirit and scope of the present invention, makes slight modifications to the form and details of the implementation of the present invention, all belong to the patent protection of the present invention. range. The scope of patent protection of the present invention shall still be determined by the scope of the attached patent application.
110 客戶端 120 服務伺服器 130 金融伺服器 140 電信伺服器 步驟210 客戶端產生申請資料,申請資料包含帳戶確認資料及作業資料 步驟2121 客戶端提供輸入申請人資料 步驟2123 客戶端連接金融卡並接收金融卡所提供之帳號資料及押碼訊息 步驟2127 客戶端產生包含申請人資料、帳號資料、及押碼訊息之帳戶確認資料 步驟2133 客戶端取得帳號資料及識別資料 步驟2137 客戶端產生包含帳號資料及識別資料之帳戶確認資料 步驟2143 客戶端取得帳號資料、識別資料、及許可信物 步驟2147 客戶端產生包含帳號資料、識別資料、及許可信物之帳戶確認資料 步驟220 客戶端傳送申請資料至服務伺服器,服務伺服器傳送帳戶確認資料至金融伺服器 步驟230 金融伺服器驗證帳戶確認資料 步驟2321 金融伺服器依據帳號資料檢核押碼訊息 步驟2325 金融伺服器判斷押碼訊息是否通過檢核 步驟2327 金融伺服器依據金融帳號讀取持有人資料,並比對持有人資料及申請人資料 步驟2331 金融伺服器確認帳號資料及識別資料是否對應 步驟2333 金融伺服器依據帳號資料或識別資料讀取門號資料 步驟2335 金融伺服器依據門號資料傳送驗證資料至客戶端 步驟2337 金融伺服器接收客戶端傳送之回應資料 步驟2339 金融伺服器比對驗證資料及回應資料以驗證帳戶確認資料 步驟2341 金融伺服器確認帳號資料及識別資料是否對應 步驟2343 金融伺服器依據帳號資料或識別資料讀取門號資料 步驟2347 金融伺服器傳送識別資料、許可信物及門號資料至驗證伺服器進行驗證 步驟240 金融伺服器產生驗證結果及傳送驗證結果至服務伺服器 步驟250 服務伺服器於驗證結果表示帳戶確認資料通過驗證時,依據作業資料進行對應申請作業 110 Client 120 Service server 130 Financial server 140 Telecom server Step 210 The client generates application data, which includes account confirmation data and operation data Step 2121 The client provides input of applicant information Step 2123 The client connects to the financial card and receives the account information and code information provided by the financial card Step 2127 The client generates account confirmation information including applicant information, account information, and code information Step 2133 The client obtains account information and identification information Step 2137 The client generates account confirmation data containing account data and identification data Step 2143 The client obtains account information, identification information, and license tokens Step 2147 The client generates account confirmation data including account data, identification data, and license tokens Step 220 The client sends the application data to the service server, and the service server sends the account confirmation data to the financial server Step 230 The financial server verifies the account confirmation data Step 2321 The financial server checks the coded message based on the account data Step 2325 The financial server judges whether the coded message has passed the check Step 2327 The financial server reads the holder's information based on the financial account number, and compares the holder's information with the applicant's information Step 2331 The financial server confirms whether the account data and identification data correspond Step 2333 The financial server reads the house number data based on the account data or identification data Step 2335 The financial server sends the verification data to the client according to the door number data Step 2337 The financial server receives the response data sent by the client Step 2339 The financial server compares the verification data and the response data to verify the account confirmation data Step 2341 The financial server confirms whether the account data and identification data correspond Step 2343 The financial server reads the house number data based on the account data or identification data Step 2347 The financial server sends identification data, license tokens, and door number data to the verification server for verification Step 240 The financial server generates the verification result and sends the verification result to the service server Step 250 When the verification result indicates that the account confirmation data has passed the verification, the service server performs the corresponding application based on the operation data
第1圖為本發明所提之透過金融帳戶資料確認使用者身分之系統架構圖。 第2A圖為本發明所提之透過金融帳戶資料確認使用者身分之方法流程圖。 第2B圖為本發明實施例所提之使用金融卡確認申請人身分之方法流程圖。 第2C圖為本發明實施例所提之使用一次性簡訊密碼確認申請人身分之方法流程圖。 第2D圖為本發明實施例所提之使用行動裝置確認申請人身分之方法流程圖。 Figure 1 is a diagram of the system architecture for confirming user identity through financial account data according to the present invention. Figure 2A is a flow chart of the method for confirming user identity through financial account data according to the present invention. Figure 2B is a flowchart of the method for using a financial card to confirm the identity of an applicant according to an embodiment of the present invention. Figure 2C is a flow chart of a method for confirming the identity of an applicant using a one-time SMS password according to an embodiment of the present invention. Figure 2D is a flowchart of a method for using a mobile device to confirm the identity of an applicant according to an embodiment of the present invention.
步驟210 客戶端產生申請資料,申請資料包含帳戶確認資料及作業資料
步驟220 客戶端傳送申請資料至服務伺服器,服務伺服器傳送帳戶確認資料至金融伺服器
步驟230 金融伺服器驗證帳戶確認資料
步驟240 金融伺服器產生驗證結果及傳送驗證結果至服務伺服器
步驟250 服務伺服器於驗證結果表示帳戶確認資料通過驗證時,依據作業資料進行對應申請作業
Step 210 The client generates application data, which includes account confirmation data and
Claims (10)
Priority Applications (1)
| Application Number | Priority Date | Filing Date | Title |
|---|---|---|---|
| TW108137757A TWI729535B (en) | 2019-10-18 | 2019-10-18 | System for using financial account to confirm identity and method thereof |
Applications Claiming Priority (1)
| Application Number | Priority Date | Filing Date | Title |
|---|---|---|---|
| TW108137757A TWI729535B (en) | 2019-10-18 | 2019-10-18 | System for using financial account to confirm identity and method thereof |
Publications (2)
| Publication Number | Publication Date |
|---|---|
| TW202117628A TW202117628A (en) | 2021-05-01 |
| TWI729535B true TWI729535B (en) | 2021-06-01 |
Family
ID=77020625
Family Applications (1)
| Application Number | Title | Priority Date | Filing Date |
|---|---|---|---|
| TW108137757A TWI729535B (en) | 2019-10-18 | 2019-10-18 | System for using financial account to confirm identity and method thereof |
Country Status (1)
| Country | Link |
|---|---|
| TW (1) | TWI729535B (en) |
Citations (3)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| TWM518372U (en) * | 2015-11-05 | 2016-03-01 | 精誠隨想行動科技股份有限公司 | Remote account opening system |
| TW201810160A (en) * | 2016-09-02 | 2018-03-16 | 台新綜合證券股份有限公司 | Methods and systems for effecting online opening of securities account |
| TWM588313U (en) * | 2019-10-18 | 2019-12-21 | 臺灣網路認證股份有限公司 | System for confirming user identity through financial account information |
-
2019
- 2019-10-18 TW TW108137757A patent/TWI729535B/en active
Patent Citations (3)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| TWM518372U (en) * | 2015-11-05 | 2016-03-01 | 精誠隨想行動科技股份有限公司 | Remote account opening system |
| TW201810160A (en) * | 2016-09-02 | 2018-03-16 | 台新綜合證券股份有限公司 | Methods and systems for effecting online opening of securities account |
| TWM588313U (en) * | 2019-10-18 | 2019-12-21 | 臺灣網路認證股份有限公司 | System for confirming user identity through financial account information |
Also Published As
| Publication number | Publication date |
|---|---|
| TW202117628A (en) | 2021-05-01 |
Similar Documents
| Publication | Publication Date | Title |
|---|---|---|
| TWI644276B (en) | System for opening account and applying mobile banking account online and method thereof | |
| TWI754811B (en) | System for using device identification to identify via telecommunication server and method thereof | |
| TWM539667U (en) | System of online credentials application for network transaction via carrier | |
| TWI720738B (en) | System for combining architectures of fido and pki to identity user and method thereof | |
| TWM539668U (en) | System for opening account online and applying for mobile banking | |
| TWM601411U (en) | System for digital account application by using ATM to obtain authentication | |
| TWM594186U (en) | Device and system combining online rapid authentication and public key infrastructure to identify identity | |
| TWM592629U (en) | System to obtain appended data and execute corresponding operation when identity is confirmed | |
| TWI730549B (en) | System for checking key pair generating algorithm during certificate applying process and method thereof | |
| TWI729535B (en) | System for using financial account to confirm identity and method thereof | |
| TWI803907B (en) | System for confirming identity on different devices by verifying valid certification and method thereof | |
| TWM588313U (en) | System for confirming user identity through financial account information | |
| TWM641468U (en) | Electronic certificate and digital certificate verification system through third-party platform | |
| TWM580206U (en) | System for identifying identity through telecommunication server by identification data device | |
| TWM620550U (en) | System for verifying identity on different devices by verifying valid certificates | |
| TWM586390U (en) | A system for performing identity verification according to the service instruction to execute the corresponding service | |
| TWI754812B (en) | System for using a device identification to log in via telecommunication server and method thereof | |
| TWI691859B (en) | System and method for performing identity confirmation according to service instruction to execute corresponding service | |
| TWM603573U (en) | System generating authorization content during identity verification before transaction | |
| TWI777105B (en) | System for obtaining additional data when identifying to execute operation and method thereof | |
| TWM618726U (en) | System for verifying identity on different devices based on certificates and verification data | |
| TWI792010B (en) | System for using automation machine to scan barcode and verify identity for applying account and method thereof | |
| TWI745015B (en) | System and method for providing authorized content generated during identity authentication for verifying transaction data before transaction | |
| TWI898244B (en) | System for controlling signature sequence according to sequence codes to complete the online insurance application and method thereof | |
| TWI704796B (en) | System for using network identification to sign in service server via telecommunication server and method thereof |