[go: up one dir, main page]
More Web Proxy on the site http://driver.im/

CN201583970U - Signing device supporting endorsement signature - Google Patents

Signing device supporting endorsement signature Download PDF

Info

Publication number
CN201583970U
CN201583970U CN2009202465949U CN200920246594U CN201583970U CN 201583970 U CN201583970 U CN 201583970U CN 2009202465949 U CN2009202465949 U CN 2009202465949U CN 200920246594 U CN200920246594 U CN 200920246594U CN 201583970 U CN201583970 U CN 201583970U
Authority
CN
China
Prior art keywords
information
module
signature
cipher
signing messages
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Expired - Lifetime
Application number
CN2009202465949U
Other languages
Chinese (zh)
Inventor
须清
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Beijing Paragon Technology Co Ltd
Original Assignee
Beijing Paragon Technology Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Beijing Paragon Technology Co Ltd filed Critical Beijing Paragon Technology Co Ltd
Priority to CN2009202465949U priority Critical patent/CN201583970U/en
Application granted granted Critical
Publication of CN201583970U publication Critical patent/CN201583970U/en
Anticipated expiration legal-status Critical
Expired - Lifetime legal-status Critical Current

Links

Images

Landscapes

  • Storage Device Security (AREA)

Abstract

The utility model provides a signing device supporting endorsement signature, which sign names on media. The signing device supporting endorsement signature comprises an information processing part and a printing module, wherein the information processing part comprises an encryption algorithm module and stores signature information, private key information of an endorser and public key information of an endorsee, and the printing module can print information on the media. The encryption algorithm module can carry out encryption calculation to the signature information to obtain the cryptograph information by employing the private key information of the endorser and the public key information of the endorsee as passwords, and the information processing part converts the cryptograph information into signature data for the printing module to print. The signing device supporting endorsement signature can improve the uniqueness and uncloneability of the signature information, and the use of electronic bills can be safer. As an easily recognized and used mode is adopted for realizing effective signature of the electronic bills, the risk in electronic bill use can be prominently reduced, and development of modern financial industry can be prompted.

Description

The signature apparatus of dorsal support bookmark name
Technical field
The utility model relates to the signature apparatus of dorsal support bookmark name, particularly relates to the signature apparatus that is used for bill identification that is printed on information medium on after encrypting the endorsement signing messages and passes to the electronic unit that is embedded in the medium.
Background technology
Along with the development of modern economy, the health of financial circles, orderly, safe development are significant for current economic development.In the financial circles development, popularize to the comprehensive of various financial documents gradually from money transaction, become the main means of payment that miscellaneous service is carried out in the modern economy as the letter of credit, cashier's cheque, check etc.But because the value of financial document itself and circulation are subjected to very big challenge for the security of financial document.Report is arranged when forging case that the letter of credit, cashier's cheque, check carry out financial swindling all over the world.And owing to the circulation of the letter of credit, cashier's cheque, check can repeatedly be transferred the possession of, and wherein any once transfer appearance forgery all may bring massive losses to the related side.
With regard to the antifalsification of the present employed letter of credit, cashier's cheque, check normally based on some anti-false signs on concession manufacturing and the ticket; The validation of the letter of credit, cashier's cheque, check is based on the person's that provides the bill signature or endorsement.And based on the reason of cost and technology, the anti-false sign of the letter of credit, cashier's cheque, check is also uncomplicated, is easy to be copied by the fake producer.And there are two problems in the signature or the endorsement that are used for the validation of the letter of credit, cashier's cheque, check: be that signature or the endorsement that same individual carries out in decentraction situation attitude, different time points can not guarantee in full accord on the one hand, cause effective signature or endorsement to be rejected acceptance, be because signature that requires to carry out or endorsement must be basic identical at every turn on the other hand, for the fake producer provides the chance of faking.Signer or endorsement person's signature or endorsement information is no matter how unique, in case seen signature or endorsement information by illegal person, the exercise by certain hour can realize the imitation for signature or endorsement information fully.And be to compare by human eye to judge for the validation of the letter of credit, cashier's cheque, check now.The safety technique that obvious existing ticket adopted can not provide safeguard for the Secure Transaction function that realizes bill.
Use the replacement that carves a seal for many years to sign in China, though guaranteed the consistance of each signature, owing to carve a seal too easily by imitated, so and dangerous.Even by the administrative intervention of government, take the administrative authorization mode to specify and have only professional could carry out the business of carving a seal, but can not stop illegal person's imitated behavior owing to the technical not high of itself through authorizing.Though extensively popularizing of the development of modern network technology and internet is for the development of financial circles brings new opportunity.As Internet-based banking services and for the electronic key authentication techniques that guarantee Internet-based banking services safety are just becoming the important directions that modern finance already develops, but the safety that also greatly threatening Web bank such as network hacker, virus, fishing program simultaneously.Be still the major transaction instrument of modern finance industry based on the business transaction of financial document.
Summary of the invention
Technical matters to be solved by this invention is how to strengthen the safety of electronic bill and how to guarantee the signing messages of electronic bill and/or the security and the validity of endorsement information, and realize effective circulation of electronic bill in the mode of a kind of easy identification and use, to reduce the risk in the electronic bill use, promote the development of modern finance industry.
Term explanation: during technical solution of the present invention is described, " Electronic Paper " be meant comprise have that bistable state or multistable electronic material constitute can display message equipment or parts or flexible display material, can change its displaying contents by electronization.The electrodeless Electronic Paper of Beijing Pai Ruigen scientific and technological invention, the electric wetting Electronic Paper of Beijing Pai Ruigen scientific and technological invention, the electric ink of E-ink company, the electrophoresis cartridge of SIPIX company etc. are typically arranged.
The term explanation: during technical solution of the present invention was described, financial document was to be used to carry out the voucher relevant with financial business in the financial business field.Write down at least one information relevant on the bill with financial business.
The term explanation: during technical solution of the present invention was described, electronic bill was to be applied to every field and professional relevant voucher.Write down at least one information relevant on the bill with business.Comprise passenger ticket in financial document, the communications and transportation and shipping ticket, film ticket, food and drink ticket, coupons, lottery ticket etc.
Term explanation: among the present invention, endorsement is meant that the owner of bill transfers other people with bill and the behavior confirmed.Show as and on bill, stay at least one and prove information or the sign of bill owner in order to confirm.
The term explanation: during technical solution of the present invention was described, radio electronic label, RFID, RF Tag, RFID tag, electronic tag etc. had identical implication.
The term explanation: during technical solution of the present invention was described, the implication of " endorsement " was meant in industries such as financial field, and electronic bill is expressed the proof information that realizes relevant proprietorial transfer of electronic bill or payment respective value fund by information specific.The implication of " remote holder endorsement " is to show that the bill that the electronic bill holder is obtained is that its bill supplier transfers the bill holder by " endorsement ", and the information of " remote holder endorsement " is that the validity of this transfer proves.
For addressing the above problem, the technical solution that proposes is at first to design a kind of Electronic Signature, employing presents the information of Electronic Signature in a kind of visible mode, even be that the information of Electronic Signature is not easy imitated or has imitated the thinking of dealing with problems that can not effectively use simultaneously.At first, the electronic bill that technical solution of the present invention adopted and the electronic bill of prior art have difference, and the present invention is adopted as the special technology scheme of the present invention that realizes.
1, a kind of electronic bill comprises information medium, sets a particular signature zone at the front and/or the reverse side of described information medium, signing messages is encrypted the cipher-text information that obtains be printed on described particular signature zone.
2, a kind of electronic bill, comprise information medium, in described information medium, embedded electronic unit and in the front of described information medium and/or reverse side set a particular signature zone, signing messages is encrypted the cipher-text information that obtains is printed on described particular signature zone and/or signing messages is encrypted the cipher-text information that obtains and write in the described electronic unit; Perhaps with signing messages with encrypt the cipher-text information that obtains from the data message that described electronic unit reads and be printed on described particular signature zone and/or will comprise signing messages and encrypt the cipher-text information that obtains and write the described electronic unit from the data message that described electronic unit reads.
3, a kind of electronic bill, comprise information medium, in described information medium, embedded electronic unit and in the front of described information medium and/or reverse side set a particular signature zone, with signing messages encrypt the cipher-text information that obtains all or first's whole or second portion of being printed on described particular signature zone and/or signing messages being encrypted the cipher-text information that obtains write in the described electronic unit; Perhaps be printed on described particular signature zone and/or write the described electronic unit with signing messages with from the whole or second portion that the data message that described electronic unit reads is encrypted the cipher-text information that obtains with signing messages with from the whole or first that the data message that described electronic unit reads is encrypted the cipher-text information that obtains.
4, to comprise the private key with the electronic bill supplier be that key adopts asymmetric enciphering and deciphering algorithm result calculated to described signing messages to preferably described cipher-text information.
5, preferably described cipher-text information comprise the private key with the electronic bill supplier be after key adopts first algoritic module of asymmetric enciphering and deciphering algorithm to calculate to described signing messages again the PKI with the electronic bill recipient be the second algoritic module result calculated that password adopts asymmetric enciphering and deciphering algorithm.
6, preferably described cipher-text information comprise the PKI with the electronic bill recipient be after key adopts first algoritic module of asymmetric enciphering and deciphering algorithm to calculate to described signing messages again the private key with the electronic bill supplier be the second algoritic module result calculated that password adopts asymmetric enciphering and deciphering algorithm.
7, preferably described cipher-text information first result of calculation that to comprise the private key with the electronic bill supplier be key calculates first algoritic module of the asymmetric enciphering and deciphering algorithm of part or all of employing of described signing messages and be second result of calculation that password adopts second algoritic module of asymmetric enciphering and deciphering algorithm to calculate partly or entirely with electronic bill recipient's PKI to described signing messages.
8, preferably one of following information or several combinations have been write down with the plaintext form in the surface of described information medium: the amount of money, the term of validity, the date of making out an invoice, the date of payment, drawer, payer, accepter, income people, whether negotiable.
9, preferably described signing messages comprises endorsement information, and described endorsement information comprises endorsement person's information and by endorsement person's information.Described endorsement information can further comprise one of following information or several combinations: date of endorsement, the term of validity, whether negotiable.Perhaps described signing messages comprises one of following information of electronic bill or several combinations: the amount of money, the term of validity, the date of making out an invoice, the date of payment, drawer, payer, accepter, income people, whether negotiable.Perhaps described signing messages can further comprise remote holder endorsement person signing messages partly or entirely.
Signature apparatus of the present invention has multiple scheme, is respectively:
1, a kind of signature apparatus of dorsal support bookmark name is signed on medium, comprises:
Information processing apparatus, described information processing apparatus comprise enciphering algorithm module and have stored signing messages, endorsement person's private key information and by endorsement person's public key information; Print module, described print module is connected with described information processing apparatus, and described print module can print information on medium; To be password carry out cryptographic calculation to described signing messages handles and obtain cipher-text information with described endorsement person's private key information with by endorsement person's public key information by described enciphering algorithm module, by described information processing apparatus described cipher-text information is converted to the signed data that described print module prints.
2, a kind of signature apparatus of dorsal support bookmark name is signed comprising on the medium of electronic unit, comprises:
Information processing apparatus, described information processing apparatus comprise enciphering algorithm module and have stored signing messages, endorsement person's private key information and by endorsement person's public key information; Print module, described print module is connected with described information processing apparatus, and described print module can print information on medium; Module for reading and writing, described module for reading and writing is connected with described information processing apparatus, and described module for reading and writing writes data in electronic unit; To be password carry out cryptographic calculation to described signing messages handles and obtain cipher-text information with described endorsement person's private key information with by endorsement person's public key information by described enciphering algorithm module, by described information processing apparatus described cipher-text information is converted to the signed data that described module for reading and writing writes in electronic unit; And/or described cipher-text information is converted to the signed data that described print module prints by described information processing apparatus.
3, a kind of signature apparatus of dorsal support bookmark name is signed comprising on the medium of electronic unit, comprises:
Information processing apparatus, described information processing apparatus comprise enciphering algorithm module and have stored signing messages, endorsement person's private key information and by endorsement person's public key information; Print module, described print module is connected with described information processing apparatus, and described print module can print information on medium; Module for reading and writing, described module for reading and writing is connected with described information processing apparatus, and described module for reading and writing writes data in electronic unit;
To be password carry out cryptographic calculation to described signing messages handles and obtain cipher-text information with described endorsement person's private key information with by endorsement person's public key information by described enciphering algorithm module, by described information processing apparatus the whole or first of described cipher-text information is converted to the signed data that described module for reading and writing writes in electronic unit; And/or the whole or second portion of described cipher-text information is converted to the signed data that described print module prints by described information processing apparatus.
4, a kind of signature apparatus of dorsal support bookmark name is signed comprising on the medium of electronic unit, comprises:
Information processing apparatus, described information processing apparatus comprise enciphering algorithm module and have stored signing messages, endorsement person's private key information and by endorsement person's public key information; Print module, described print module is connected with described information processing apparatus, and described print module can print information on medium; Module for reading and writing, described module for reading and writing is connected with described information processing apparatus, and described module for reading and writing writes data and/or reading of data from electronic unit in electronic unit;
To be password carry out cryptographic calculation to the data that read, described signing messages from electronic unit handle and obtain cipher-text information with described endorsement person's private key information with by endorsement person's public key information by described enciphering algorithm module, by described information processing apparatus described cipher-text information is converted to the signed data that described module for reading and writing writes in electronic unit; And/or described cipher-text information is converted to the signed data that described print module prints by described information processing apparatus.
5, a kind of signature apparatus of dorsal support bookmark name is signed comprising on the medium of electronic unit, comprises:
Information processing apparatus, described information processing apparatus comprise enciphering algorithm module and have stored signing messages, endorsement person's private key information and by endorsement person's public key information; Print module, described print module is connected with described information processing apparatus, and described print module can print information on medium; Module for reading and writing, described module for reading and writing is connected with described information processing apparatus, and described module for reading and writing writes data and/or reading of data from electronic unit in electronic unit;
To be password carry out cryptographic calculation to the data that read, described signing messages from electronic unit handle and obtain cipher-text information with described endorsement person's private key information with by endorsement person's public key information by described enciphering algorithm module, by described information processing apparatus the whole or first of described cipher-text information is converted to the signed data that described module for reading and writing writes in electronic unit; And/or the whole or second portion of described cipher-text information is converted to the signed data that described print module prints by described information processing apparatus.
6, preferably described enciphering algorithm module is supported rivest, shamir, adelman;
It is to be that password adopts first computing module of rivest, shamir, adelman to carry out calculation process to obtain first operation result with signing messages with quilt endorsement person's PKI that described cryptographic calculation is handled, and is that password adopts second computing module of rivest, shamir, adelman to carry out calculation process to obtain encrypt data to described first operation result with endorsement person's private key; Perhaps
It is to be that password adopts first computing module of rivest, shamir, adelman to carry out calculation process to obtain first operation result with signing messages with endorsement person's private key that described cryptographic calculation is handled, and is that password adopts second computing module of rivest, shamir, adelman to carry out calculation process to obtain encrypt data to described first operation result with quilt endorsement person's PKI; Perhaps
With signing messages is that password adopts first computing module of rivest, shamir, adelman to carry out calculation process to obtain first operation result with endorsement person's private key partly or entirely, with signing messages is that password adopts second computing module of rivest, shamir, adelman to carry out calculation process to obtain second operation result, described first operation result and described second operation result are combined in certain sequence as encrypt data with quilt endorsement person's PKI partly or entirely.
7, the preferably described first computing mould comprises one of algorithm as described below in the rivest, shamir, adelman or combination: cryptographic calculation, signature computing, decrypt operation.
8, the preferably described second computing mould comprises one of algorithm as described below in the rivest, shamir, adelman or combination: cryptographic calculation, signature computing, decrypt operation.
9, preferably such scheme further comprises:
Keyboard device, described information processing apparatus is handled the input information of described keyboard device.Can in signing messages, comprise the information that signer is imported by this keyboard device, as information such as the amount of money, date, signer names.
10, preferably such scheme further comprises:
Radio receiving transmitting module, described information processing apparatus are handled the information from the information of described radio receiving transmitting module and the described radio receiving transmitting module transmission of control.Can in signing messages, comprise the information that signer is imported by this radio receiving transmitting module, as the information such as password of the amount of money, date, signer name, use Electronic Signature.
11, preferably in the such scheme:
Described keyboard device comprises one at least and confirms button; Perhaps
Described keyboard device comprises button and affirmation button of input 0 to 9 at least; Perhaps
Described keyboard device comprises the button of input 0 to 9, an affirmation button, a cancellation button at least; Perhaps
Described keyboard device comprises the button of input 0 to 9, an affirmation button, a rollback button at least; Perhaps
Described keyboard device comprises the button of input 0 to 9, an affirmation button, a cancellation button, a rollback button at least.
12, preferably such scheme further comprises:
Display unit, described information processing apparatus is controlled the displaying contents of described display unit.Display unit can be used for the information of display keyboard input block input or information that radio receiving transmitting module receives or the raw information of preparing signature.Preferably the information of signature demonstration can be used alternatives.Replace with " * " character during such as the password of, input Electronic Signature.
13, preferably such scheme further comprises the fixedly support of Electronic Signature.Increase support and be convenient to printed signature information or carry out electronization or carry out communication, play fixing, balance and stabilization with electronic unit for Electronic Paper.
14, preferably the described print module of such scheme comprises abundant print needle or fine ink-jet pipe, and described print needle or fine ink-jet pipe cover the scope that stamped signature needs print What at least.
15, preferably in the such scheme:
The described signed data that prints is the data symbol of cipher-text information; Perhaps
The described signed data that prints is the bar code information of cipher-text information correspondence; Perhaps
The bar code figure that the described signed data that prints is the cipher-text information correspondence; Perhaps
The two-dimensional bar code figure that the described signed data that prints is the cipher-text information correspondence.
16, preferably the described raw data of such scheme comprises the identification information of described signature owner and described medium recipient's identification information; Perhaps described raw data comprises the identification information of described signature owner, described medium recipient's identification information and timestamp.
17, preferably described rivest, shamir, adelman module is supported the commercial cipher algorithm and/or the dedicated asymmetric cryptographic algorithm of RSA Algorithm and/or China national approval;
18, preferably described medium is a paper medium or to comprise the medium of fibrous material.
Adopt the endorse method of signature of the signature apparatus of above-mentioned dorsal support bookmark name as follows:
1, a kind of method that endorsement is signed on information medium comprises following steps:
Is that password adopts first computing module of rivest, shamir, adelman to carry out calculation process to obtain first operation result with signing messages with endorsement person's private key, is that password adopts second computing module of rivest, shamir, adelman to carry out calculation process to obtain encrypt data to described first operation result with quilt endorsement person's PKI; Perhaps
Is that password adopts first computing module of rivest, shamir, adelman to carry out calculation process to obtain first operation result with signing messages with quilt endorsement person's PKI, is that password adopts second computing module of rivest, shamir, adelman to carry out calculation process to obtain encrypt data to described first operation result with endorsement person's private key; Perhaps
With signing messages is that password adopts first computing module of rivest, shamir, adelman to carry out calculation process to obtain first operation result with the private key of signer partly or entirely, with signing messages is that password adopts second computing module of rivest, shamir, adelman to carry out calculation process to obtain second operation result, described first operation result and described second operation result are combined in certain sequence as encrypt data with quilt endorsement person's PKI partly or entirely;
Described encrypt data is converted to printed signature information; Described printed signature information is printed on the information medium.
2, the method for endorsement signature on information medium, described information medium has embedded electronic unit, and signature comprises following steps:
Is that password adopts first computing module of rivest, shamir, adelman to carry out calculation process to obtain first operation result with signing messages with endorsement person's private key, is that password adopts second computing module of rivest, shamir, adelman to carry out calculation process to obtain encrypt data to described first operation result with quilt endorsement person's PKI; Perhaps
Is that password adopts first computing module of rivest, shamir, adelman to carry out calculation process to obtain first operation result with signing messages with quilt endorsement person's PKI, is that password adopts second computing module of rivest, shamir, adelman to carry out calculation process to obtain encrypt data to described first operation result with endorsement person's private key; Perhaps
With signing messages is that password adopts first computing module of rivest, shamir, adelman to carry out calculation process to obtain first operation result with the private key of signer partly or entirely, with signing messages is that password adopts second computing module of rivest, shamir, adelman to carry out calculation process to obtain second operation result, described first operation result and described second operation result are combined in certain sequence as encrypt data with quilt endorsement person's PKI partly or entirely;
Described encrypt data is converted to the signed data that writes to described electronic unit, and described encrypt data is converted to printed signature information;
Described signed data is write described electronic unit, and described printed signature information is printed on the information medium.
3, the method for endorsement signature on information medium, described information medium has embedded electronic unit, and signature comprises following steps: read data information from electronic unit;
Is that password adopts first computing module of rivest, shamir, adelman to carry out calculation process to obtain first operation result with signing messages and described data message with endorsement person's private key, is that password adopts second computing module of rivest, shamir, adelman to carry out calculation process to obtain encrypt data to described first operation result with quilt endorsement person's PKI; Perhaps
Is that password adopts first computing module of rivest, shamir, adelman to carry out calculation process to obtain first operation result with signing messages and described data message with quilt endorsement person's PKI, is that password adopts second computing module of rivest, shamir, adelman to carry out calculation process to obtain encrypt data to described first operation result with endorsement person's private key; Perhaps
With signing messages and described data message is that password adopts first computing module of rivest, shamir, adelman to carry out calculation process to obtain first operation result with the private key of signer partly or entirely, with signing messages and described data message is that password adopts second computing module of rivest, shamir, adelman to carry out calculation process to obtain second operation result, described first operation result and described second operation result are combined in certain sequence as encrypt data with quilt endorsement person's PKI partly or entirely;
Described encrypt data is converted to the signed data that writes to described electronic unit, and described encrypt data is converted to printed signature information;
Described signed data is write described electronic unit, and described printed signature information is printed on the information medium.
4, the method for endorsement signature on information medium, described information medium has embedded electronic unit, and signature comprises following steps:
Is that password adopts first computing module of rivest, shamir, adelman to carry out calculation process to obtain first operation result with signing messages with endorsement person's private key, is that password adopts second computing module of rivest, shamir, adelman to carry out calculation process to obtain encrypt data to described first operation result with quilt endorsement person's PKI; Perhaps
Is that password adopts first computing module of rivest, shamir, adelman to carry out calculation process to obtain first operation result with signing messages with quilt endorsement person's PKI, is that password adopts second computing module of rivest, shamir, adelman to carry out calculation process to obtain encrypt data to described first operation result with endorsement person's private key; Perhaps
With signing messages is that password adopts first computing module of rivest, shamir, adelman to carry out calculation process to obtain first operation result with the private key of signer partly or entirely, with signing messages is that password adopts second computing module of rivest, shamir, adelman to carry out calculation process to obtain second operation result, described first operation result and described second operation result are combined in certain sequence as encrypt data with quilt endorsement person's PKI partly or entirely;
With the first of described encrypt data or all be converted to the signed data that writes to described electronic unit, and with the second portion of described encrypt data or all be converted to printed signature information;
Described signed data is write described electronic unit, and described printed signature information is printed on the information medium.
5, the method for endorsement signature on information medium, described information medium has embedded electronic unit, and signature comprises following steps: read data information from electronic unit;
Is that password adopts first computing module of rivest, shamir, adelman to carry out calculation process to obtain first operation result with signing messages and described data message with endorsement person's private key, is that password adopts second computing module of rivest, shamir, adelman to carry out calculation process to obtain encrypt data to described first operation result with quilt endorsement person's PKI; Perhaps
Is that password adopts first computing module of rivest, shamir, adelman to carry out calculation process to obtain first operation result with signing messages and described data message with quilt endorsement person's PKI, is that password adopts second computing module of rivest, shamir, adelman to carry out calculation process to obtain encrypt data to described first operation result with endorsement person's private key; Perhaps
With signing messages and data message is that password adopts first computing module of rivest, shamir, adelman to carry out calculation process to obtain first operation result with the private key of signer partly or entirely, with signing messages and data message is that password adopts second computing module of rivest, shamir, adelman to carry out calculation process to obtain second operation result, first operation result and described second operation result are combined in certain sequence as encrypt data with quilt endorsement person's PKI partly or entirely;
With the first of described encrypt data or all be converted to the signed data that writes to described electronic unit, and with the second portion of described encrypt data or all be converted to printed signature information;
Described signed data is write described electronic unit, and described printed signature information is printed on the information medium.
6, preferably before described each step, safety component is carried out the information communication of information connection and foundation and electronic signature body by the interface unit of electronic signature body.
As follows to the system schema that the endorsement signing messages authenticates:
1, a kind of system that endorsement signature on the information medium is authenticated comprises:
Certificate server, described certificate server comprise information acquisition parts, data back, safety feature interface unit;
Information medium, described information medium surface has pair signing messages to encrypt the cipher-text information that obtains; Safety feature, described safety feature comprise by endorsement person's key and decipherment algorithm realizes module;
Described certificate server is undertaken by described safety feature interface unit and described safety feature that wire signal is connected or wireless signal connects; Stored described information medium owner's approval signing messages in the described data back; Described information acquisition parts are gathered described cipher-text information and described cipher-text information are converted to the cipher-text information data of being handled by described certificate server; Certificate server is given described safety feature with the cipher-text information data transfer, by described safety feature described cipher-text information data is decrypted the plaintext that obtains signing messages and the plaintext of signing messages is passed to described certificate server;
The whether consistent authentication that realizes information medium of the approval signing messages of storage in advance in the plaintext of described certificate server by more described signing messages and the described data back.
2, a kind of system that endorsement signature on the information medium is authenticated comprises:
Certificate server, described certificate server comprise information acquisition parts, data back, safety feature interface unit;
Information medium has embedded electronic unit in the described information medium, has write in described electronic unit signing messages is encrypted the cipher-text information that obtains; Safety feature, described safety feature comprise by endorsement person's key and decipherment algorithm realizes module; Described certificate server is undertaken by described safety feature interface unit and described safety feature that wire signal is connected or wireless signal connects; Stored described information medium owner's approval signing messages in the described data back;
The information acquisition parts are gathered described cipher-text information and described cipher-text information are converted to the cipher-text information data of being handled by described certificate server; Certificate server is given described safety feature with the cipher-text information data transfer, by described safety feature described cipher-text information data is decrypted the plaintext that obtains signing messages and the plaintext of signing messages is passed to described certificate server; The whether consistent authentication that realizes information medium of the approval signing messages of storage in advance in the plaintext of described certificate server by more described signing messages and the described data back.
3, a kind of system that endorsement signature on the information medium is authenticated comprises:
Certificate server, described certificate server comprise information acquisition parts, data back, safety feature interface unit;
Information medium, described information medium comprises Electronic Paper, has in the described Electronic Paper signing messages is encrypted the cipher-text information that obtains; Safety feature, described safety feature comprise by endorsement person's key and decipherment algorithm realizes module;
Described certificate server is undertaken by described safety feature interface unit and described safety feature that wire signal is connected or wireless signal connects; Stored described information medium owner's approval signing messages in the described data back;
Described information acquisition parts are gathered described cipher-text information and described cipher-text information are converted to the cipher-text information data of being handled by described certificate server; Described certificate server is given described safety feature with the cipher-text information data transfer, by described safety feature described cipher-text information data is decrypted the plaintext that obtains signing messages and the plaintext of signing messages is passed to described certificate server; The whether consistent authentication that realizes information medium of the approval signing messages of storage in advance in the plaintext of described certificate server by more described signing messages and the described data back.
4, a kind of system that endorsement signature on the information medium is authenticated comprises:
Certificate server, described certificate server comprise information acquisition parts, data back, safety feature interface unit;
Information medium, embedded electronic unit in the described information medium, write the first of signing messages being encrypted the cipher-text information that obtains in described electronic unit, described information medium surface has pair signing messages to encrypt the second portion of the cipher-text information that obtains; Safety feature, safety feature comprise by endorsement person's key and decipherment algorithm realizes module;
Described certificate server is undertaken by described safety feature interface unit and described safety feature that wire signal is connected or wireless signal connects; Stored described information medium owner's approval signing messages in the described data back;
Described information acquisition parts are gathered the second portion of the first of described cipher-text information and cipher-text information and the first of described cipher-text information and the second portion of cipher-text information are converted to the cipher-text information data of being handled by described certificate server; Described certificate server is given described safety feature with the cipher-text information data transfer, by described safety feature described cipher-text information data is decrypted the plaintext that obtains signing messages and the plaintext of signing messages is passed to described certificate server;
The whether consistent authentication that realizes information medium of the approval signing messages of storage in advance in the plaintext of described certificate server by more described signing messages and the described data back.
5, a kind of system that endorsement signature on the information medium is authenticated comprises:
Certificate server, described certificate server comprise information acquisition parts, data back, safety feature interface unit;
Information medium, embedded electronic unit in the described information medium, in described electronic unit, write the first of signing messages being encrypted the cipher-text information that obtains, described information medium comprises Electronic Paper, has the second portion of signing messages being encrypted the cipher-text information that obtains in the described Electronic Paper; Safety feature, described safety feature comprise by endorsement person's key and decipherment algorithm realizes module; Described certificate server is undertaken by described safety feature interface unit and described safety feature that wire signal is connected or wireless signal connects; Stored described information medium owner's approval signing messages in the described data back; Described information acquisition parts are gathered the second portion of the first of described cipher-text information and cipher-text information and the first of described cipher-text information and the second portion of cipher-text information are converted to the cipher-text information data of being handled by described certificate server; Described certificate server is given described safety feature with the cipher-text information data transfer, by described safety feature described cipher-text information data is decrypted the plaintext that obtains signing messages and the plaintext of signing messages is passed to described certificate server; The whether consistent authentication that realizes information medium of the approval signing messages of storage in advance in the plaintext of described certificate server by more described signing messages and the described data back.
6, a kind of system that endorsement signature on the information medium is authenticated comprises:
Certificate server, described certificate server comprise information acquisition parts, data back, safety feature interface unit;
Information medium, embedded electronic unit in the described information medium, in described electronic unit, write the first of signing messages being encrypted the cipher-text information that obtains, described information medium comprises Electronic Paper, have the second portion of signing messages being encrypted the cipher-text information that obtains in the described Electronic Paper, described information medium surface has pair signing messages to encrypt the third part of the cipher-text information that obtains; Safety feature, described safety feature comprise by endorsement person's key and decipherment algorithm realizes module; Described certificate server is undertaken by described safety feature interface unit and described safety feature that wire signal is connected or wireless signal connects; Stored described information medium owner's approval signing messages in the data back;
Described information acquisition parts are gathered the third part of the second portion of first, cipher-text information of described cipher-text information and cipher-text information and the first of described cipher-text information, the second portion of cipher-text information and the third part of cipher-text information are converted to the cipher-text information data of being handled by described certificate server;
Described certificate server is given described safety feature with the cipher-text information data transfer, by described safety feature described cipher-text information data is decrypted the plaintext that obtains signing messages and the plaintext of signing messages is passed to described certificate server;
The whether consistent authentication that realizes information medium of the approval signing messages of storage in advance in the plaintext of described certificate server by more described signing messages and the described data back.
7, preferably described data back stores endorsement person's public key information or the public key information that described secure device stores has endorsement person.
8, preferably described secure device stores has endorsement person's public key information and by endorsement person's private key information.
9, preferably described safety feature is a contact intelligent card, and described safety feature interface unit is supported intelligent card interface; Or described safety feature is the usb key card, and described safety feature interface unit is supported USB (universal serial bus); Or described safety feature is the Wireless USB key card, and described safety feature interface unit is supported the radio universal serial line interface; Or described safety feature is contact type intelligent card, and described safety feature interface unit is supported wireless radio interface; Or described safety feature is the contact safe memory card, and described safety feature interface unit is supported pcmcia interface or MicroSD interface or SF interface or memory stick (Memory Stick) interface.
As follows to the system schema that the endorsement signing messages authenticates:
7, a kind of method that endorsement signature on the information medium is authenticated comprises following steps:
The cipher-text information of the conduct signature on the Information Monitoring medium; Certificate server passes to safety feature with described cipher-text information by wire communication mode and/or wireless communication mode, by described safety feature described cipher-text information data is decrypted the plaintext that obtains signing messages and the plaintext of signing messages is passed to described authentification of message system;
Whether the plaintext of judging described signing messages mates with the approval signing messages of described authentication server stores;
If mate then authentication success; If do not match then authentification failure.
8, a kind of method that endorsement signature on the information medium is authenticated comprises following steps:
Collection is presented on the cipher-text information of the conduct signature on the Electronic Paper of information medium; Certificate server passes to safety feature with described cipher-text information by wire communication mode and/or wireless communication mode, by described safety feature described cipher-text information data is decrypted the plaintext that obtains signing messages and the plaintext of signing messages is passed to described authentification of message system;
Whether the plaintext of judging described signing messages mates with the approval signing messages of described authentication server stores;
If mate then authentication success; If do not match then authentification failure.
9, a kind of method that endorsement signature on the information medium is authenticated comprises following steps:
Collection is embedded in the cipher-text information of the conduct signature that the electronic unit in the information medium stores; Certificate server passes to safety feature with described cipher-text information by wire communication mode and/or wireless communication mode, by described safety feature described cipher-text information data is decrypted the plaintext that obtains signing messages and the plaintext of signing messages is passed to described authentification of message system; Whether the plaintext of judging described signing messages mates with the approval signing messages of described authentication server stores;
If mate then authentication success; If do not match then authentification failure.
10, a kind of method that endorsement signature on the information medium is authenticated comprises following steps:
Collection be embedded in the conduct signature that the electronic unit in the information medium stores cipher-text information first and gather the second portion of the cipher-text information of the conduct signature that is printed on the information medium; Certificate server passes to safety feature with the first of described cipher-text information and the second portion of cipher-text information by wire communication mode and/or wireless communication mode, by described safety feature the second portion of the first of described cipher-text information and cipher-text information is decrypted the plaintext that obtains signing messages and the plaintext of signing messages is passed to described authentification of message system;
Whether the plaintext of judging described signing messages mates with the approval signing messages of described authentication server stores;
If mate then authentication success; If do not match then authentification failure.
11, a kind of method that endorsement signature on the information medium is authenticated comprises following steps:
Collection be embedded in the conduct signature that the electronic unit in the information medium stores cipher-text information first and gather the second portion of the cipher-text information of the conduct signature on the Electronic Paper that is presented on information medium;
Certificate server passes to safety feature with the first of described cipher-text information and the second portion of cipher-text information by wire communication mode and/or wireless communication mode, by described safety feature the second portion of the first of described cipher-text information and cipher-text information is decrypted the plaintext that obtains signing messages and the plaintext of signing messages is passed to described authentification of message system; Whether the plaintext of judging described signing messages mates with the approval signing messages of described authentication server stores;
If mate then authentication success; If do not match then authentification failure.
12, a kind of method that endorsement signature on the information medium is authenticated comprises following steps:
Collection is embedded in the first of the cipher-text information of the conduct signature that the electronic unit in the information medium stores, gather the conduct signature on the Electronic Paper that is presented on information medium cipher-text information second portion and gather the third part of the cipher-text information of the conduct signature that is printed on the information medium;
Certificate server passes to safety feature with the first of described cipher-text information, the second portion of cipher-text information and the third part of cipher-text information by wire communication mode and/or wireless communication mode, by described safety feature the third part of the second portion of the first of described cipher-text information, cipher-text information and cipher-text information is decrypted the plaintext that obtains signing messages and the plaintext of signing messages is passed to described authentification of message system;
Whether the plaintext of judging described signing messages mates with the approval signing messages of described authentication server stores;
If mate then authentication success; If do not match then authentification failure.
Beneficial effect of the present invention: the present invention improved signing messages uniqueness, can not copying property, make the use of electronic bill safer.Owing to adopt the mode of a kind of easy identification and use to realize effective signature of electronic bill, can significantly reduce the risk in the electronic bill use, promote the development of modern finance industry.
Description of drawings:
Fig. 1 is that Electronic Signature of the present invention is realized synoptic diagram for first kind.
Fig. 2 is that Electronic Signature of the present invention is realized synoptic diagram for second kind.
Fig. 3 is first kind of implementation principle of work of Electronic Signature of the present invention synoptic diagram.
Fig. 4 is second kind of implementation principle of work of Electronic Signature of the present invention synoptic diagram.
Fig. 5 is the third implementation principle of work synoptic diagram of Electronic Signature of the present invention.
Fig. 6 is the third realization synoptic diagram of Electronic Signature of the present invention.
Fig. 7 is that Electronic Signature of the present invention is realized synoptic diagram for the 4th kind.
Fig. 8 is the 4th kind of implementation principle of work synoptic diagram of Electronic Signature of the present invention.
Fig. 9 is the 5th kind of implementation principle of work synoptic diagram of Electronic Signature of the present invention.
Figure 10 is the 6th kind of implementation principle of work synoptic diagram of Electronic Signature of the present invention.
Figure 11 is authentification of message system of the present invention first kind of realization synoptic diagram.
Figure 12 is authentification of message system of the present invention second kind of realization synoptic diagram.
Figure 13 is the first method synoptic diagram that signs electronically.
Figure 14 is the second method synoptic diagram that signs electronically.
Figure 15 is the third method synoptic diagram that signs electronically.
Figure 16 is the 4th kind of method synoptic diagram that signs electronically.
Figure 17 is the first method synoptic diagram that carries out electronics endorsement signature.
Figure 18 is the second method synoptic diagram that carries out electronics endorsement signature.
Figure 19 is the first method synoptic diagram that carries out electronics reendorse signature.
Figure 20 is the second method synoptic diagram that carries out electronics reendorse signature.
Figure 21 is the first method synoptic diagram that carries out electron underwriting authentication.
Figure 22 is the second method synoptic diagram that carries out electron underwriting authentication.
Figure 23 is an electronic bill synoptic diagram of the present invention.
Embodiment:
Further describe specific embodiments of the present invention below in conjunction with accompanying drawing.
Fig. 1 is that Electronic Signature of the present invention is realized synoptic diagram for first kind.Electronic Signature 100 comprises information processing apparatus 101 and print module 102, and print module 102 is connected with described information processing apparatus 101, and print module 102 can print information on medium.Print module 102 has a printing surface of contact 110 to contact with medium or is close.Medium described herein refers generally to electronic bill, referring to Figure 23.Figure 23 is an electronic bill synoptic diagram of the present invention, sets a specific region 2302 at the information medium 2301 of electronic bill 2300 and is used for electronic signature.When signing electronically, the printing surface of contact 110 of print module 102 contacts with specific region 2302, and signing messages is printed on specific region 2302.Described information processing apparatus 101 comprises the rivest, shamir, adelman module and has stored the private key information of signing messages, signature owner; By described rivest, shamir, adelman module described signing messages, described private key information are carried out calculation process and obtain output information, described output information is converted to the signed data that described print module 102 prints by described information processing apparatus 101.The signed data of printing can be rendered as a string data usually and be convenient to the human eye perception.But the automatic identification of the inconvenient machine of a string data, therefore the signed data of printing preferably is in modes such as bar code or two-dimensional bar codes and can adopts now corresponding bar code scanner or two-dimensional bar code reader to carry out automatic reading easily, can realize the automatic identification of signing messages.In this scheme, the public key information of signer is a public information, and can decipher this information with the public key information of signer and obtain raw information.Therefore can differentiate the true and false of the signing messages that Electronic Signature signs automatically by machinery and equipment.
Fig. 2 is that Electronic Signature of the present invention is realized synoptic diagram for second kind.Implementation than Fig. 1, in the implementation of Fig. 2, Electronic Signature 200 has increased by first fixed support 202 and second fixed support 203, and the Electronic Signature main body that comprises information processing apparatus 101 and print module 102 can be slided on first fixed support 202 and second fixed support 203.When not only printing the Electronic Signature main body, described first fixed support 202 and second fixed support 203, but also be convenient to aiming at and the location of print module 102 and specific region 2302 as the supporting ﹠ stablizing effect.Such as, on electronic bill, set a position reference point, by determining the relative position of reference point and first fixed support 202 and/or second fixed support 203, signing messages can both be printed to specific region 2302 in the time of just can guaranteeing to sign at every turn.
With the multiple implementation of being combined with of signing messages and electronic bill, Fig. 3, Fig. 4, Fig. 5 have provided the principle of work of three kinds of implementations respectively.Fig. 3 is first kind of implementation principle of work of Electronic Signature of the present invention synoptic diagram.Electronic Signature comprises information processing apparatus 302 and print module 303, and print module 303 is connected with described information processing apparatus 302, and it is the module signal of the principle of work of Fig. 1.
Fig. 4 is second kind of implementation principle of work of Electronic Signature of the present invention synoptic diagram.Electronic Signature comprises information processing apparatus 402 and radio frequency module for reading and writing 403, and radio frequency module for reading and writing 403 and described information processing apparatus 402 are connected by radiofrequency signal.This scheme requires to embed radio electronic label in electronic bill, signing messages is encrypted the back write radio electronic label by radio frequency module for reading and writing 403.After adopting radio electronic label, though its information human eye is invisible, the characteristics of its contactless identification more help the use of Electronic Signature.If people wish to have the effect that seeing is believing simultaneously or carry out double authentication, the scheme of Fig. 3 and Fig. 4 can be carried out combination, referring to Fig. 5.
Fig. 5 is the third implementation principle of work synoptic diagram of Electronic Signature of the present invention.Electronic Signature comprises information processing apparatus 502, radio frequency module for reading and writing 503, MIM message input module 505 and print module 501.In order to comprise more information in the information that makes electronic signature, as information such as the date of signing, the bill term of validity, payer, beneficiary, increased MIM message input module 505 in this programme, these information can be input to information processing apparatus 502 by MIM message input module 505, as the part of signing messages.And will both write in the radio electronic label of electronic bill by radio frequency module for reading and writing 503 after the signing messages encryption, again signing messages is encrypted the back is printed on electronic bill by print module 501 specific region.
Fig. 6 is the third realization synoptic diagram of Electronic Signature of the present invention.Electronic Signature 600 comprise information processing apparatus 601, interface unit 603 and print module 602 and with external safety component (not drawing in the drawings), print module 602 is connected with described information processing apparatus 601, and print module 102 can print information on medium; Interface unit 603 is connected with described information processing apparatus 601, simultaneously interface unit 603 comprises connector and is connected with external safety component, to carry out encrypted secret key information and cryptographic algorithm focuses on external safety component, and can make the use of Electronic Signature more flexible.Print module 602 has a printing surface of contact 610 to contact with medium or is close.Compare with the realization of Fig. 1, the realization of Fig. 6 is that the security-related part of Electronic Signature is realized by external safety component.Described safety component comprises security information processing module, rivest, shamir, adelman module and has stored the private key information of signing messages, signature owner.
Fig. 7 is that Electronic Signature of the present invention is realized synoptic diagram for the 4th kind.This programme is at the situation that comprises Electronic Paper in the electronic bill.Realize because the information of Electronic Paper presents by Electronic Paper being carried out electronization, thus its realization and Fig. 1 some is different.Electronic Signature 700 comprises first electrode surface 710 and second electrode surface 703 of information processing apparatus 701 and Electronic Paper electronization module 702 and Electronic Paper electronization, Electronic Paper electronization module 702 is connected with described information processing apparatus 701, and Electronic Paper electronization module 702 can present information in the Electronic Paper on medium by first electrode surface 710 and second electrode surface 703.First electrode surface 710 and second electrode surface 703 by one slidably web member 705 be connected; Place electronic bill between first electrode surface 710 and second electrode surface 703, and the Electronic Paper part of electronic bill is just in time placed the surface of contact of first electrode surface 710 and second electrode surface 703.Described information processing apparatus 701 comprises the rivest, shamir, adelman module and has stored the private key information of signing messages, signature owner; By described rivest, shamir, adelman module described signing messages, described private key information are carried out calculation process and obtain output information, described output information is converted to the signed data that described Electronic Paper electronization module 702 is carried out electronization by described information processing apparatus 701.The signed data of electronization can be rendered as a string data usually and be convenient to the human eye perception.But the automatic identification of the inconvenient machine of a string data, therefore the signed data of printing preferably is in modes such as bar code or two-dimensional bar codes and can adopts now corresponding bar code scanner or two-dimensional bar code reader to carry out automatic reading easily, can realize the automatic identification of signing messages.In this scheme, the public key information of signer is a public information, and can decipher this information with the public key information of signer and obtain raw information.Therefore can differentiate the true and false of the signing messages that Electronic Signature signs automatically by machinery and equipment.
Fig. 8 is the 4th kind of implementation principle of work synoptic diagram of Electronic Signature of the present invention.The smart card 804 that Electronic Signature comprises information processing apparatus 802 and print module 803 and is connected by intelligent card interface 801, it is the module signal of the principle of work of Fig. 6.Described safety component adopts intelligent card interface 801 with smart card 804, interface unit.Because smart card is popularized very wide, easy to carry, wieldy characteristics now, therefore also adopt the mode of smart card in the preferred implementation of the present invention.
Fig. 9 is the 5th kind of implementation principle of work synoptic diagram of Electronic Signature of the present invention.The smart card 904 that Electronic Signature comprises information processing apparatus 902 and radio frequency module for reading and writing 903 and is connected by intelligent card interface 901.Described safety component adopts intelligent card interface 901 with smart card 904, interface unit.Because smart card is popularized very wide, easy to carry, wieldy characteristics now, therefore also adopt the mode of smart card in the preferred implementation of the present invention.Radio frequency module for reading and writing 903 and described information processing apparatus 902 are connected by radiofrequency signal.This scheme requires to embed radio electronic label in electronic bill, signing messages is encrypted the back write radio electronic label by radio frequency module for reading and writing 903.After adopting radio electronic label, though its information human eye is invisible, the characteristics of its contactless identification more help the use of Electronic Signature.If people wish to have the effect that seeing is believing simultaneously or carry out double authentication, the scheme of Fig. 8 and Fig. 9 can be carried out combination.
Figure 10 is the 6th kind of implementation principle of work synoptic diagram of Electronic Signature of the present invention.Than Fig. 9, this specific implementation has also increased MIM message input module 1005 except that the smart card 904 that comprises information processing apparatus 902 and radio frequency module for reading and writing 903 and be connected by intelligent card interface 901.These information can be input to information processing apparatus 902 by MIM message input module 1005, as the part of signing messages.
Figure 11 is authentification of message system of the present invention first kind of realization synoptic diagram.The authentification of message system comprises certificate server 1101, information medium 1103, and described certificate server comprises information acquisition parts 1102, enciphering and deciphering algorithm calculating unit, data back.Described information medium 1103 refers generally to electronic bill, also can be other media that need sign, and the surface comprises the cipher-text information of visible signing messages; Described enciphering and deciphering algorithm calculating unit comprises the computing module of enciphering and deciphering algorithm; Stored described information medium owner's approval signing messages in the described data back; Described information acquisition parts 1102 are gathered the cipher-text information on described information medium 1103 surfaces and described cipher-text information are converted to by the cipher-text information data of described certificate server 1101 processing; Described asymmetric enciphering and deciphering algorithm calculating unit is decrypted described cipher-text information data and obtains signing messages; Described certificate server 1101 is by the whether consistent authentication that realizes information medium of the approval signing messages of storage in advance in more described signing messages and the described data back.
Figure 12 is authentification of message system of the present invention second kind of realization synoptic diagram.The authentification of message system comprises certificate server 1201, information medium 1203, safety feature 1204.Described certificate server 1201 comprises information acquisition parts 1202, data back, safety feature interface unit; Described information medium surface comprises the cipher-text information of visible signing messages; Described safety feature 1204 comprise endorsement person PKI, realized module by endorsement person's private key and decipherment algorithm; Described certificate server 1201 is undertaken by described safety feature interface unit and described safety feature 1204 that wire signal is connected or wireless signal connects; Stored described information medium 1203 owners' approval signing messages in the described data back; Described information acquisition parts 1202 are gathered the cipher-text information on described information medium surface and described cipher-text information are converted to the cipher-text information data of being handled by described certificate server; Described certificate server 1201 is given described safety feature 1204 with the cipher-text information data transfer, is decrypted by 1204 pairs of described cipher-text information data of described safety feature to obtain signing messages and signing messages is passed to described certificate server 1201; Described certificate server 1201 is by the whether consistent authentication that realizes information medium of the approval signing messages of storage in advance in more described signing messages and the described data back.
Figure 13 is the first method synoptic diagram that signs electronically.In step 1301, be that password adopts the algoritic module of rivest, shamir, adelman to carry out calculation process to obtain encrypt data with the private key of signer at first with signing messages, in step 1302, described encrypt data is converted to printed signature information then, when step 1303, described printed signature information is printed on the information medium at last.The method of this electronic signature is that the implementation with Fig. 1 is the description that Electronic Signature carries out electric endorsement method.
Figure 14 is the second method synoptic diagram that signs electronically.For electronic signature and the electronic bill that has embedded radio electronic label are bound, can be when signing electronically with the identifying information of the information of radio electronic label such as electronic tag part as signing messages.Therefore the endorsement method step is as follows: at first in step 1400 from radio electronic label read data information, entering step 1401 is that password adopts the algoritic module of rivest, shamir, adelman to carry out calculation process to obtain encrypt data with described signing messages and described data message with the private key of signer, in step 1402, described encrypt data is converted to printed signature information then, when step 1403, described printed signature information is printed on the information medium at last.
Figure 15 is the third method synoptic diagram that signs electronically.Corresponding with the Electronic Signature implementation of Fig. 6, because Electronic Signature is divided into separable safety component and electronic signature body, therefore its electric endorsement method step is as follows: the information communication of at first safety component being carried out information connection and foundation and electronic signature body in step 1500 by the interface unit of electronic signature body, entering in the step 1301 signing messages is that password adopts the algoritic module of rivest, shamir, adelman to carry out calculation process to obtain encrypt data with the private key of signer, in step 1302, described encrypt data is converted to printed signature information then, when step 1303, described printed signature information is printed on the information medium at last.
Figure 16 is the 4th kind of method synoptic diagram that signs electronically.For electronic signature and the electronic bill that has embedded radio electronic label are bound, can be when signing electronically with the identifying information of the information of radio electronic label such as electronic tag part as signing messages.Therefore the endorsement method step is as follows: the information communication of at first safety component being carried out information connection and foundation and electronic signature body in step 1600 by the interface unit of electronic signature body, and in step 1400 from radio electronic label read data information, entering step 1401 is that password adopts the algoritic module of rivest, shamir, adelman to carry out calculation process to obtain encrypt data with described signing messages and described data message with the private key of signer, in step 1402, described encrypt data is converted to printed signature information then, when step 1403, described printed signature information is printed on the information medium at last.
Figure 17 is the first method synoptic diagram that carries out electronics endorsement signature.In step 1701, be that password adopts first computing module of rivest, shamir, adelman to carry out calculation process to obtain first operation result with endorsement person's private key at first with signing messages, in step 1702, be that password adopts second computing module of rivest, shamir, adelman to carry out calculation process to obtain encrypt data with quilt endorsement person's PKI then to described first operation result, enter step 1703 described encrypt data is converted to printed signature information, in step 1704, described printed signature information is printed on the information medium at last.The signing messages in when signature of generally endorsing comprises endorsement person's information, by endorsement person's information, disburser's information, the person's of honouring information, signature date, the term of validity etc., a plurality of endorsements signatures can be coupled together the continuity that forms the endorsement signature by signing messages.
Figure 18 is the second method synoptic diagram that carries out electronics endorsement signature.For electronic signature and the electronic bill that has embedded radio electronic label are bound, can be when signing electronically with the identifying information of the information of radio electronic label such as electronic tag part as signing messages.Therefore the endorsement method step of endorsing is as follows: at first in step 1800 from radio electronic label read data information, and in step 1801, be that password adopts first computing module of rivest, shamir, adelman to carry out calculation process to obtain first operation result with endorsement person's private key with described signing messages and described data message; In step 1802, be that password adopts second computing module of rivest, shamir, adelman to carry out calculation process to obtain encrypt data with quilt endorsement person's PKI then to described first operation result, enter step 1803 described encrypt data is converted to printed signature information, in step 1804, described printed signature information is printed on the information medium at last.The signing messages in when signature of generally endorsing comprises endorsement person's information, by endorsement person's information, disburser's information, the person's of honouring information, signature date, the term of validity etc., a plurality of endorsements signatures can be coupled together the continuity that forms the endorsement signature by signing messages.
Figure 19 is the first method synoptic diagram that carries out electronics reendorse signature.Carrying out reendorse when signature, needing to obtain the information of remote holder signature, with the consistance that guarantees signing messages and prevent that the unauthorized person from carrying out the interests loss of the electronic bill that reendorse causes.Concrete grammar is described below: at first in step 1901 described remote holder signed data being decrypted and obtaining the remote holder signing messages, is that password adopts first computing module of rivest, shamir, adelman to carry out calculation process to obtain first operation result with described remote holder signing messages, reendorse signing messages with quilt endorsement person's PKI in step 1902; In step 1903, be that password adopts second computing module of rivest, shamir, adelman to carry out calculation process to obtain encrypt data with the private key of signer then to described first operation result; Enter step 1904 described encrypt data is converted to printed signature information, in step 1905, described printed signature information is printed on the information medium at last.
Figure 20 is the second method synoptic diagram that carries out electronics reendorse signature.When being divided into safety component and electronic signature body in the realization of Electronic Signature, when it carries out the reendorse signature, need earlier safety component and electronic body to be set up being connected of information.Concrete grammar is described below: the information communication of at first safety component being carried out information connection and foundation and electronic signature body in step 2000 by the interface unit of electronic signature body, and in step 1901, described remote holder signed data is decrypted and obtains the remote holder signing messages, in step 1902, be that password adopts first computing module of rivest, shamir, adelman to carry out calculation process to obtain first operation result with quilt endorsement person's PKI with described remote holder signing messages, reendorse signing messages; In step 1903, be that password adopts second computing module of rivest, shamir, adelman to carry out calculation process to obtain encrypt data with the private key of signer then to described first operation result; Enter step 1904 described encrypt data is converted to printed signature information, in step 1905, described printed signature information is printed on the information medium at last.
Figure 21 is the first method synoptic diagram that carries out electron underwriting authentication.Electronic Signature of the present invention is after signing on the electronic bill, when the authentification of message system among employing the present invention authenticates signing messages, its implementation is as follows: at first gather the cipher-text information of the conduct signature that is printed on the electronic bill in step 2101, in step 2102 described cipher-text information deciphering is obtained signing messages then; Then judge in step 2103 whether the approval signing messages that described signing messages and described authentification of message system store mates; If coupling enters step 2104 and shows authentication success; Enter step 2105 if do not match and show authentification failure.
Figure 22 is the second method synoptic diagram that carries out electron underwriting authentication.The public key information that the invention allows for employing signer when signing messages is carried out asymmetric encryption need use by endorsement person's private key information when therefore deciphering, and private key information belongs to endorsement person's security information as key.Proposed in the present invention and will have been made independently safety feature by endorsement person's private key information and decipherment algorithm, when carrying out authentification of message, safety feature is connected with the authentification of message system, and the deciphering of information is finished by safety feature, can guarantee can not leaked by endorsement person's security information.Concrete authentication method is: the cipher-text information of at first gathering the conduct signature that is printed on the electronic bill in step 2201, in the system of authentification of message described in the step 2202 cipher-text information is passed to safety feature by wire communication mode and/or wireless communication mode then, by described safety feature described cipher-text information data are decrypted and obtain signing messages and signing messages is passed to described authentification of message system; Then judge in step 2203 whether the approval signing messages that described signing messages and described authentification of message system store mates; If coupling enters step 2204 and shows authentication success; Enter step 2205 if do not match and show authentification failure.

Claims (10)

1. the signature apparatus of a dorsal support bookmark name is characterized in that signing on medium, comprises:
Information processing apparatus, described information processing apparatus comprise enciphering algorithm module and have stored signing messages, endorsement person's private key information and by endorsement person's public key information;
Print module, described print module is connected with described information processing apparatus, and described print module can print information on medium;
To be password carry out cryptographic calculation to described signing messages handles and obtain cipher-text information with described endorsement person's private key information with by endorsement person's public key information by described enciphering algorithm module, by described information processing apparatus described cipher-text information is converted to the signed data that described print module prints.
2. signature apparatus according to claim 1 is characterized in that further comprising module for reading and writing;
Described module for reading and writing is connected with described information processing apparatus, and described module for reading and writing writes data in electronic unit;
By described information processing apparatus described cipher-text information is converted to the signed data that described module for reading and writing writes in electronic unit; And/or described cipher-text information is converted to the signed data that described print module prints by described information processing apparatus.
3. signature apparatus according to claim 2 is characterized in that:
By described information processing apparatus the whole or first of described cipher-text information is converted to the signed data that described module for reading and writing writes in electronic unit; And/or the whole or second portion of described cipher-text information is converted to the signed data that described print module prints by described information processing apparatus.
4. signature apparatus according to claim 2 is characterized in that:
Described module for reading and writing writes data and/or reading of data from electronic unit in electronic unit;
To be password carry out cryptographic calculation to the data that read, described signing messages from electronic unit handle and obtain cipher-text information with described endorsement person's private key information with by endorsement person's public key information by described enciphering algorithm module, by described information processing apparatus described cipher-text information is converted to the signed data that described module for reading and writing writes in electronic unit; And/or described cipher-text information is converted to the signed data that described print module prints by described information processing apparatus.
5. signature apparatus according to claim 4 is characterized in that:
By described information processing apparatus the whole or first of described cipher-text information is converted to the signed data that described module for reading and writing writes in electronic unit; And/or the whole or second portion of described cipher-text information is converted to the signed data that described print module prints by described information processing apparatus.
6. according to each described signature apparatus in the claim 1 to 5, it is characterized in that further comprising:
Keyboard device, described information processing apparatus is handled the input information of described keyboard device.
7. according to each described signature apparatus in the claim 1 to 5, it is characterized in that further comprising radio receiving transmitting module, described information processing apparatus is handled the information from the information of described radio receiving transmitting module and the described radio receiving transmitting module transmission of control.
8. according to each described signature apparatus in the claim 1 to 5, it is characterized in that further comprising the support of fixing described signature apparatus.
9. according to each described signature apparatus in the claim 1 to 5, it is characterized in that further comprising display unit, described information processing apparatus is controlled the displaying contents of described display unit.
10. according to each described signature apparatus in the claim 2 to 5, it is characterized in that described module for reading and writing comprises the parts of reading and writing to radio electronic label; Perhaps described module for reading and writing comprises the parts of reading and writing to contact intelligent card; Perhaps described module for reading and writing comprises the parts of reading and writing to contact type intelligent card.
CN2009202465949U 2009-11-04 2009-11-04 Signing device supporting endorsement signature Expired - Lifetime CN201583970U (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN2009202465949U CN201583970U (en) 2009-11-04 2009-11-04 Signing device supporting endorsement signature

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN2009202465949U CN201583970U (en) 2009-11-04 2009-11-04 Signing device supporting endorsement signature

Publications (1)

Publication Number Publication Date
CN201583970U true CN201583970U (en) 2010-09-15

Family

ID=42725978

Family Applications (1)

Application Number Title Priority Date Filing Date
CN2009202465949U Expired - Lifetime CN201583970U (en) 2009-11-04 2009-11-04 Signing device supporting endorsement signature

Country Status (1)

Country Link
CN (1) CN201583970U (en)

Similar Documents

Publication Publication Date Title
CN201583960U (en) Signature device of external safety component for endorsing and signing electronic component
CN101697202B (en) Electronic seal supporting endorsement of external safety component
CN101699472B (en) Electronic signature supporting continuous endorsement
CN101697190A (en) Electronic signature for signing on electronic paper
CN201583970U (en) Signing device supporting endorsement signature
CN101699471B (en) Electronic signature supporting endorsement
CN201583971U (en) Signature device of external safety component supporting endorsing and signing
CN201522708U (en) Signature device for signing information medium endorsement containing electronic component
CN201583977U (en) Multifunctional signing device supporting endorsement signature
CN201583958U (en) Signature device for endorsing electronic paper
CN201583968U (en) Signing device
CN201607738U (en) Signing device of external safety component for signing electronic paper endorsement
CN201583972U (en) Signature device supporting continuous endorsement signature
CN101699466B (en) Electronic signature for endorsing electronic paper through external security part
CN101697208B (en) Multifunctional electronic signature supporting endorsement of external safety component
CN201583978U (en) Multifunctional signature device of external safety component supporting endorsing and signing
CN101697209B (en) Multifunction electronic signature
CN201583961U (en) Signature device with external safety component supporting continuous endorsing and signing on electronic component
CN201583975U (en) Multifunctional signature device
CN201583957U (en) Signature device for signing information medium including electronic unit
CN201583963U (en) Signing device supporting medium continuous endorsement signature containing electronic parts
CN101699464B (en) Electronic signature supporting continuous endorsement on media including electronic components
CN101763614B (en) Method for endorsing and signing on mixed electronic bill
CN201583979U (en) Multifunctional signature device of external safety component supporting continuous endorsing and signing
CN101697203B (en) Electronic signature supporting continuous endorsement of external safety component

Legal Events

Date Code Title Description
C14 Grant of patent or utility model
GR01 Patent grant
AV01 Patent right actively abandoned

Granted publication date: 20100915

Effective date of abandoning: 20091104