Wireless transmission security solutions for the financial industry
[ad_1]
1. Project background
Commercial point-of-sale real-time service system (POS) networking is an important foundation for realizing commercial automation. At present, all commercial banking systems in our country have established their own traditional POS systems with wired access. However, with the increasing volume of customer funds transfer, settlement, and payment and the increasing diversification of demand, the shortcomings of wired access for POS systems have further increased. Show up. At present, many small merchants and consumer places cannot use POS terminals due to communication line problems, which makes the use of bank cards concentrated in some large shopping malls and high-end consumer places, thus losing a lot of opportunities to consume with bank cards. At present, POS machines using wired access are mainly deployed in large hotels, shopping malls and supermarkets, while in other small hotels, supermarkets, restaurants, exhibitions and other places, due to the restrictions of venues and wired communication lines, wired access POS machines cannot be deployed, and card consumption is difficult to achieve.
Due to the limitation of wired access methods, POS machines cannot be configured in large quantities as needed, and the consumption of bank cards is limited to a certain range. Especially in places where wired communication is inconvenient, the POS system cannot be used, which severely restricts the need for cardholders to provide real-time services, and cannot guarantee cardholders’ rapid, accurate, and timely account transfer and settlement processing.
Shenzhen Hongdian Technology Co., Ltd., in response to the current problems and shortcomings of the wired communication POS system, launched a solution to realize POS machine access with the help of GPRS mobile data communication public network platform. The wireless access method of POS machine based on GPRS can solve the problem that traditional POS can only be used in fixed occasions, so that the POS terminal is no longer restricted by the limited communication network. In addition, mobile payment technology that combines GPRS wireless access with various payment devices is the current development direction. For example, a mobile POS machine with a built-in GPRS wireless access module can be applied to various mobile charges, such as door-to-door collection of public utility fees, taxi payments, traffic police fines, etc. Mobile POS is especially suitable for occasions such as distribution centers, passenger ticketing centers, taxation departments, express companies, mobile vending halls, restaurants, takeaways, and e-commerce transactions.
2. Existing wired access methods
POS is currently an auxiliary tool for credit card consumption business widely provided by shopping malls, restaurants, gas stations, etc. POS machines located in shopping malls, gas stations, etc. will transmit the user’s credit card data (card number, business information, etc.) obtained through communication lines to the bank On the card service processing system, the processed information is returned to the POS machine to complete the user’s credit card consumption business. In order to realize the above-mentioned data exchange process, data communication must be carried out between the POS machine and the bank host. At present, the most widely used POS machine access method is wired access, and there are mainly two wired access methods: one is the point-to-point dial-up access method based on the telephone network and the dedicated line access method based on DDN.
1. Telephone dial-up mode: After the user swipes the card, the POS machine connects to the bank’s data center through dial-up, and transmits transaction data after being connected. The biggest problem of this method is that there are great hidden dangers in security. Due to the poor confidentiality of telephone dialing, the telephone dial tone may reveal the user’s password. In addition, when using the telephone dialing method, the POS machine will dial once every time the customer swipes the card, and it takes 10-20 seconds to establish a connection, so each transaction takes a long time. At the same time, because the POS machine uses the business phone of the mall, it is easy to drop the line, the security performance is poor, and it is often difficult to dial an outside line, which affects the quality of the transaction.
2. Dedicated line method: Many POS machines in large and medium-sized supermarkets are often connected to the bank data center through a dedicated line after the RS232 interface is networked. The advantage of the dedicated line method is that the quality of the line transmission is higher, but its disadvantage is that the monthly lease fee of the DDN dedicated line is more expensive, and the data transmission volume is lower, which reduces the resource utilization rate. The initial installation fee of the DDN dedicated line is about 5000.00-10000.00 yuan, and the monthly operating fee is about 800.00-1200.00 yuan. (DDN dedicated line fee depends on the specific standards of telecommunications).
3. Features of GPRS wireless access scheme
GPRS wireless data transmission has the characteristics of low equipment cost, safe and reliable data transmission, and flexible and convenient use, which is very suitable for applications on POS machines. At present, China Mobile’s GPRS commercial service has begun to fully start, and China Unicom will soon launch CDMA2000-1X data service. Mobile data communication uses IPOverPPP to achieve high-speed, remote access to data terminals, and can provide wide-area wireless IP connections, suitable for industry and enterprise-level users to develop wireless data applications, and provide high-performance wireless access for scattered remote access points .
1. Configure POS equipment more flexibly and expand the scope of credit card services. The biggest advantage of GPRS wireless access is to free the existing POS system from the restriction of the wired communication network. Due to the wide coverage of GPRS, the wireless access POS machine can be applied where the mobile phone can be used, and it can be used in a variety of mobile applications. occasion.
2. High transmission rate. At present, the actual data transmission rate of GPRS is about 40KBPS, and it can reach 171Kbps in the future. Generally, the data transmission volume of each card swiping service is between several K to 10Kbps.
3. The transmission capacity of the system meets the requirements. GPRS technology is particularly suitable for occasions such as POS systems that need to transmit a large amount of bursty data.
4. Competitive price-performance ratio. Since GPRS services are charged according to data flow, GPRS-based POS machines have very low data transmission costs, and operating costs are lower than wired communication POS systems. For example, using China Mobile’s GPRS service, every time a message is sent , Its transaction data fee only needs 0.01-0.05 yuan (monthly usage fee not included).
5. Increase the connection rate and shorten the transaction time. After the POS terminal is connected to the GPRS network, it is in a state of online at any time, and the transaction is very convenient and fast, which ensures the time and quality of the transaction. Can well solve the problem of high redial rate.
6. Reduce network construction costs. Adopting GPRS wireless access technology, because there is no need to lay wired lines, the construction period can be shortened.
Four, specific solutions
The mobile POS machine with GPRS wireless data transmission function uses China Mobile’s GPRS/GMS network for information exchange. The mobile POS machine communicates with the GSM base station. The “POS transaction request packet” sent by the POS is sent from the base station to the SGSN node. The SGSN communicates with the gateway support node GGSN. The GGSN processes the packet data accordingly and sends it to the router on the bank side. The firewall is then sent to the bank host. The data packets processed by the bank host are returned through the original route and sent back to the mobile POS machine to complete the data exchange from bank to mobile and mobile to bank, realizing the wireless data transmission of the POS system. At the same time, use the second layer tunneling protocol L2TP to establish an enterprise virtual private network on the GSMGPRS network. The GPRS wireless access method has good scalability and flexibility, and can complete POS transactions in a wireless (/dial) mode.
In the above-mentioned networking, the bank end uses lines and interfaces provided by mobile. Each mobile POS machine uses the unified STK card of the mobile communication company. At the same time, the bank system center registers each point and saves relevant information for identification, maintenance and processing. The STK card used by the POS machine can only be used for data communication with the banking system. Each POS machine runs the original system software and application software, supports 24-hour real-time online, and realizes that the POS machine provides customers with credit card services 24 hours a day.
V. Security system in data transmission With years of R&D and innovation experience, Hongdian has developed a security system for wireless transmission in the financial industry and public security industry, opening up a broader space for GPRS/CDMA wireless data transmission. The encryption method for secure transmission is as follows:
In this way, after data related to personal privacy and trade secrets is encrypted by the corresponding software system, it becomes relatively safe in the entire network transmission, which provides security for wireless transmission such as the development of the financial industry and the login and query of identity information in the public security industry. Sexual protection.
[ad_2]