Method for binding card, terminal device, authentication server and storage medium
Embodiments of the present application provide a method for binding card, a terminal device, an authentication server and a storage medium. The method is applicable to terminal device including security element, and includes: obtaining a user identifier for logging in target application by a user and a secure element identifier of the secure element; sending the user identifier to an authentication server, wherein the user identifier is for the authentication server to search at least one first card bound to the user identifier; receiving card information of at least one first card sent by the authentication server; and sending a binding request to a card issuing server corresponding to card information, wherein the binding request comprises the card information, the user identifier and the secure element identifier, and the binding request is for the card issuing server to bind card information to the user identifier and the secure element identifier.
1 . A method for binding card, applicable to a terminal device comprising a security element, the method comprising:
obtaining a user identifier for logging in a target application by a user and a secure element identifier of the secure element, wherein the terminal device is a user terminal used by the user for a first time for binding card and contains no card information for the user, and the target application is on the user terminal of the user;
sending the user identifier without any card information to an authentication server, wherein the user identifier is for the authentication server to search at least one first card bound to the user identifier based on a preset binding relationship between at least one user identifier and cards stored on the authentication server;
after sending the user identifier to the authentication server and in responsive to a real-name authentication on the user based on the user identifier being determined by the authentication server to be not passed, receiving an identity information obtaining request sent by the authentication server;
in responsive to the identity information obtaining request, obtaining identity information of the user, wherein the identity information of the user includes at least an identification card number of the user and a biometric feature of the user;
sending the identity information to the authentication server for the authentication server to perform a real-name authentication on the user based on the identity information to confirm that the user of the terminal device is a real user as the user presented by the user identifier by matching the biometric feature of the user with biometric features stored in a database and to store, under a condition that the real-name authentication on the user based on the identity information is passed, a binding relationship between the user identifier and a result of the passed real-name authentication;
in responsive to the real-name authentication on the user being passed, receiving card information of the at least one first card sent by the authentication server; and
sending a binding request to a card issuing server corresponding to the card information, wherein the binding request comprises the card information without the user entering any card information, the user identifier and the secure element identifier, and the binding request is for the card issuing server to bind the card information to the user identifier and the secure element identifier uniquely representing the terminal device such that the card information is bound to the terminal device being used by the user,
wherein the receiving card information of the at least one first card sent by the authentication server further includes:
in responsive to the real-name authentication on the user being passed, the authentication server firstly finding at least one second card corresponding to the identity information of the user just passed the real-name authentication from the cards stored on the authentication server and then determining the at least one first card bound to the user identifier from the at least one second card under a condition that the real-name authentication on the user is determined to be passed based on the user identifier.
2 . The method according to claim 1 , wherein the biometric feature of the user is a face image of the user captured by the terminal device in real time.
3 . The method according to claim 2 , further comprising:
sending the secure element identifier to the authentication server, so that the authentication server is to store and bind a result of the passed real-name authentication, the user identifier and the secure element identifier with one another.
4 . The method according to claim 1 , wherein responsive to the identity information obtaining request, obtaining identity information of the user comprises:
displaying an identity information acquisition interface on a screen of the terminal device in response to the identity information obtaining request; and
receiving the identity information input by the user.
5 . The method according to claim 1 , wherein sending the binding request to the card issuing server corresponding to the card information comprises:
displaying each of pieces of the card information;
receiving an input for selecting the card information by the user; and
sending, in response to the input, binding requests to card issuing servers corresponding to selected pieces of the card information respectively.
6 . The method according to claim 1 , wherein sending the binding request to the card issuing server corresponding to the card information comprises:
sending the binding request corresponding to the card information to a trusted service management (TSM) server, so that the TSM server is to send the binding request to the card issuing server corresponding to the card information.
7 . A method for binding card, applicable to an authentication server, the method comprising:
receiving a user identifier sent by a terminal device and for logging in a target application by a user of the terminal device without any card information, wherein the terminal device is a user terminal used by the user for a first time for binding card and contains no card information for the user, and the target application is on the user terminal of the user;
in responsive to a real-name authentication on the user based on the user identifier being determined to be not passed, generating an identity information obtaining request;
sending the identity information obtaining request to the terminal device, so that the terminal device is to obtain identity information of the user, wherein the identity information of the user includes at least an identification card number of the user and a biometric feature of the user;
receiving the identity information sent by the terminal device;
performing a real-name authentication on the user based on the identity information to confirm that the user of the terminal device is a real user as the user presented by the user identifier by matching the biometric feature of the user with biometric features stored in a database;
in responsive to the real-name authentication on the user based on the identity information being determined to be passed, storing a binding relationship between the user identifier and a result of the passed real-name authentication;
in responsive to the real-name authentication on the user is passed, searching at least one first card bound to the user identifier; and
sending card information of the at least one first card to the terminal device, wherein the card information is for the terminal device to send a binding request to a card issuing server corresponding to the card information, wherein the binding request comprises the card information without the user entering any card information, the user identifier and a secure element identifier of a secure element of the terminal device, and the binding request is for the card issuing server to bind the card information to the user identifier and the secure element identifier uniquely representing the terminal device such that the card information is bound to the terminal device being used by the user,
wherein the searching at least one first card bound to the user identifier further includes:
in responsive to the real-name authentication on the user being passed, firstly finding at least one second card corresponding to the identity information of the user just passed the real-name authentication from cards stored on the authentication server; and
then determining the at least one first card bound to the user identifier from the at least one second card under a condition that the real-name authentication on the user is determined to be passed based on the user identifier.
8 . The method according to claim 7 , wherein the biometric feature of the user is a face image of the user captured by the terminal device in real time.
9 . The method according to claim 8 , further comprising:
receiving the secure element identifier sent by the terminal device; and
storing and binding a result of the passed real-name authentication, the user identifier and the secure element identifier with one another.
10 . A terminal device comprising a secure element, comprising:
an obtaining module configured to obtain a user identifier for logging in a target application by a user and a secure element identifier of the secure element, wherein the terminal device is a user terminal used by the user for a first time for binding card and contains no card information for the user, and the target application is on the user terminal of the user;
a sending module configured to send the user identifier without any card information to an authentication server, wherein the user identifier is for the authentication server to search at least one first card bound to the user identifier based on a preset binding relationship between at least one user identifier and cards stored on the authentication server; and
a receiving module configured to, in responsive to a real-name authentication on the user based on the user identifier being determined by the authentication server to be not passed, receive an identity information obtaining request sent by the authentication server;
wherein the obtaining module is further configured to, in responsive to the identity information obtaining request, obtain identity information of the user, wherein the identity information of the user includes at least an identification card number of the user and a biometric feature of the user;
the sending module is further configured to send the identity information to the authentication server for the authentication server to perform a real-name authentication on the user based on the identity information to confirm that the user of the terminal device is a real user as the user presented by the user identifier by matching the biometric feature of the user with biometric features stored in a database; to store, under a condition that the real-name authentication on the user based on the identity information is passed, a binding relationship between the user identifier and a result of the passed real-name authentication; to firstly find at least one second card corresponding to the identity information of the user just passed the real-name authentication from the cards stored on the authentication server; and to then determine the at least one first card bound to the user identifier from the at least one second card under a condition that the real-name authentication on the user is determined to be passed based on the user identifier;
the receiving module is further configured to, in responsive to the real-name authentication on the user being passed, receive card information of the at least one first card sent by the authentication server,
the sending module is further configured to send a binding request to a card issuing server corresponding to the card information without the user entering any card information, wherein the binding request comprises the card information, the user identifier and the secure element identifier, and the binding request is for the card issuing server to bind the card information to the user identifier and the secure element identifier uniquely representing the terminal device such that the card information is bound to the terminal device being used by the user.
11 . The terminal device according to claim 10 , wherein the biometric feature of the user is a face image of the user captured by the terminal device in real time.
12 . The terminal device according to claim 11 , wherein the sending module is further configured to send the secure element identifier to the authentication server, so that the authentication server is to store and bind a result of the passed real-name authentication, the user identifier and the secure element identifier with one another.
13 . The terminal device according to claim 11 , wherein the obtaining module particularly comprises:
a first display unit configured to display an identity information acquisition interface on a screen of the terminal device in response to the identity information obtaining request; and
a first receiving unit configured to receive the identity information input by the user.
14 . The terminal device according to claim 10 , wherein the sending module particularly comprises:
a second display unit configured to display each of pieces of the card information;
a second receiving unit configured to receive an input for selecting the card information by the user; and
a first sending unit configured to send, in response to the input, binding requests to card issuing servers corresponding to selected pieces of the card information respectively.
15 . The terminal device according to claim 10 , wherein the sending module particularly comprises:
a second sending unit configured to send the binding request corresponding to the card information to a trusted service management TSM server, so that the TSM server is to send the binding request to the card issuing server corresponding to the card information.
16 . The method according to claim 1 , wherein the target application is an application for payment transaction.
17 . The method according to claim 9 , further comprising:
receiving the secure element identifier sent by the terminal device; and
storing and binding a result of the passed real-name authentication, the user identifier and the secure element identifier with one another.
18 . The method according to claim 8 , wherein the target application is an application for payment transaction.
19 . The terminal device according to claim 10 , wherein the target application is an application for payment transaction.