CN101098232A - Dynamic password and multiple biological characteristics combined identification authenticating method - Google Patents

Dynamic password and multiple biological characteristics combined identification authenticating method Download PDF

Info

Publication number
CN101098232A
CN101098232A CNA2007101374295A CN200710137429A CN101098232A CN 101098232 A CN101098232 A CN 101098232A CN A2007101374295 A CNA2007101374295 A CN A2007101374295A CN 200710137429 A CN200710137429 A CN 200710137429A CN 101098232 A CN101098232 A CN 101098232A
Authority
CN
China
Prior art keywords
user
biological characteristic
client
value
server
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Granted
Application number
CNA2007101374295A
Other languages
Chinese (zh)
Other versions
CN101098232B (en
Inventor
申永军
徐华龙
陈文江
张冬冬
张晓炜
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
GANSU ZHONGHUI ELECTRONIC ENGINEERING Co Ltd
Lanzhou University
Original Assignee
GANSU ZHONGHUI ELECTRONIC ENGINEERING Co Ltd
Lanzhou University
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by GANSU ZHONGHUI ELECTRONIC ENGINEERING Co Ltd, Lanzhou University filed Critical GANSU ZHONGHUI ELECTRONIC ENGINEERING Co Ltd
Priority to CN2007101374295A priority Critical patent/CN101098232B/en
Publication of CN101098232A publication Critical patent/CN101098232A/en
Application granted granted Critical
Publication of CN101098232B publication Critical patent/CN101098232B/en
Expired - Fee Related legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Images

Landscapes

  • Collating Specific Patterns (AREA)

Abstract

The invention relates to an identification method with combined dynamic password and multiple biologic characters, which comprises that in user identification check, a client via a dynamic password realizes the identification on server, and uses the generated dynamic password to encrypt extracted user biologic characters (fingerprint, iris, and face character or the like)as the identification message to be sent to the server, the server decrypts each user biologic character to match the biological characters of relative template to obtain match similarity, and fuse all biological character match results to obtain an integral similarity, to be compared with a threshold value to judge if the user legally completes the identification of server on the client.

Description

The identity identifying method that a kind of dynamic password combines with multi-biological characteristic
Technical field
The present invention relates to the method for authentication in a kind of network safety filed, particularly discern the identity identifying method that combines based on dynamic password and multi-biological characteristic.
Background technology
In the network environment of complexity, user's authentication is a matter of utmost importance.Authentication is the first line of defence of network safety system, in case identity authorization system is broken, all safety measures of system will perform practically no function.At present the most traditional and the most generally based on the identity identifying method of user name and static password, there are many shortcomings in this authentication, at first the user must remember some complicated passwords, secondly static password is many transmits on the net and immobilizes with the plaintext form, even transmit with the ciphertext form through encrypting the back, used encryption key also is constant, and this makes that the assailant can be by eavesdropping to such an extent that password reaches the purpose of intrusion system.Safer identity identifying method is to adopt dynamic password authentication method to carry out authentication at present, perhaps adopts the living things feature recognition method to carry out authentication.
The applicant of present patent application once proposed a kind of identity identifying method based on the S/Key system in Chinese patent application 200710089999.1.This method may further comprise the steps: the user submits user name ID by safe lane to certificate server by client when registering first A, secret current password, and the iterative value N that the one-time password sequence is set provides registered user's biological characteristic value T ' simultaneously, server generates the seed S corresponding with this user, and first password P of calculating password sequence 0=H N(W+S).The user at first inputs user name ID by client browser in the authentication process A, Query Database after server submits to authentication request, server to receive authentication request is found out and user name ID ACorresponding seed S and current iteration value N-i, and be used to decipher the one-time password P of biological characteristic value when authenticating last time I-1, and these values are sent to client browser as response message, client calculates current one-time password P according to secret pass phrases W, the current iteration value N-i and the seed S that server sends over of user's input i=H N-i(W+S), and to current password P iCarry out a Hash operation again and obtain P ' I-1=H (P i), client is with P ' I-1Be used to decipher the one-time password P of biological characteristic value when authenticating with last time I-1Relatively, if unanimity as a result thinks that then iterative value is errorless, client is by the checking to server.Simultaneously client is gathered user biological information, extracts characteristic value T, and client is with the one-time password P of this authentication iAs key user biological characteristic value T is encrypted, the information after transmission is encrypted is to server, and server by utilizing and client same procedure calculate the one-time password P ' of this authentication i, with this one-time password P ' iThe enciphered message that receives is decrypted, user biological characteristic value T after the deciphering and the biological characteristic value T ' that is kept at active user in the server biological characteristic storehouse mate, the match is successful then server and preserve this one-time password P ' by to the checking of client i, not matching illustrates that then the user is illegal, refuses this logging request.As seen this patent is to add that with dynamic password checking to the biological characteristic value realizes the identification to login user.Thisly add the fail safe that method that biological characteristic discerns has improved authentication with dynamic password.
But because each living things feature recognition mode all has its advantage, all obtained success in various degree, its intrinsic shortcoming that is difficult to overcome has also been arranged in different field.For example, in the fingerprint recognition owing to there being reasons such as scar, elongated cocoon, dry skin, ill skin, skin aging, transducer be contaminated may be difficult to extract appropriate information in practice; Though obtaining of iris image is comparatively strict, in general the Black Eyes iris difficulty read; Facial image can be along with change of age, and discrimination is subjected to factor affecting such as cosmetic, expression, posture, illumination variation easily; Change when sound can change in people's health status, and same individual's recording also can be cheated speech recognition system.Because the noise of transducer and the defective of feature extraction and coupling, can not guarantee to draw correct recognition result at every turn, a jactitator might be by the acceptance of a living creature characteristic recognition system mistake, and false acceptance rate and false rejection rate can not be low simultaneously.Other biological characteristic value also has similar situation.Therefore cause the accuracy rate of single creature feature identification limited.Particularly extract and normally to login fully when wrong when the biological characteristic value.
On the other hand, because the biological characteristic value that biological characteristic value of extracting in login authentication and system store in advance is difficult to realize coupling fully, the phenomenon that this problem also can cause the user to login smoothly.
Because biological characteristic is an individual privacy, and be unique, irrevocable.If in a single day biological attribute data leaks in the network transport process, just can cause catastrophic effect.And by illegally obtaining other people biological characteristic and duplicated, also happen occasionally with the false biological characteristic that the duplicates example that computer system assumes another's name to authenticate of out-tricking.Therefore in today that the security requirement to identity authorization system is increased day by day, can not satisfy the demands based on the authentication of single creature feature.Enter more and also need a kind of more reliable and safe identity identifying method in the sophisticated system.
Summary of the invention
The invention provides a kind of identity identifying method that can solve the prior art deficiency.The present invention relates to following three kinds of situations exactly:
1, provide a kind of can the solution in the prior art because of the problem of a kind of biological characteristic value in extracting to cause a kind of dynamic password of the deficiency that system can not be by authentication and the identity identifying method that multi-biological characteristic identification combines.This is first purpose of the present invention.
Single biological characteristic can't be fully and the prior problem that the biological characteristic value is mated fully, accuracy rate is limited of storing of system when 2, solving login, can realize the purpose of logining when making the biological characteristic value of extracting certain matching degree smoothly.This is second purpose of the present invention.
3,, provide a kind of more senior and safe identity identifying method at the requirement of special system.This is the 3rd purpose of the present invention.
First purpose of the present invention realizes: set user name ID in advance by the user in Verification System A, secret pass phrases W, one-time password sequence iterative value N, registered user's biological characteristic value is provided simultaneously, it is characterized in that the biological characteristic value that the user provides is at least two kinds of different biological characteristic values, the user name ID that the user is provided by client browser the user by server in the authentication process in Verification System AInquire about, find and user name ID ACorresponding seed S, current iteration value N-i, be used to decipher the one-time password P of each biological characteristic value when authenticated last time I-1, and with the hashed value K of these three values with W wEncrypt the back and send to client browser as response message, client is according to the hashed value K ' of the W of user's input wDecrypt current iteration value N-i, seed S that server sends over and the one-time password P of authentication last time I-1, calculate current one-time password P i=H N-i(W+S), and to P iCarry out a Hash operation again and obtain P ' I-1=H (P i), client is P ' relatively I-1With P I-1If unanimity then think that iterative value is errorless, client be by the checking to server, the similar user biological characteristic value T ' of biological characteristic that client collection simultaneously and user provide in advance x, client is with the one-time password P of this authentication iAs key to every kind of biological characteristic value of user T ' xEncrypt, enciphered message is sent to server.Server by utilizing and client same procedure calculate the one-time password P ' of this authentication i, use P ' iThe enciphered message that receives is decrypted every kind of biological characteristic value of user T ' that deciphering obtains xBiological characteristic value T with active user in the corresponding biometric templates storehouse that is kept at server xMate, as any biological characteristic value T ' xBiological characteristic value T with active user in the biometric templates storehouse that is kept at server in advance xWhen being complementary, think that then the user is legal, server end passes through the authentication to client, and preserves this one-time password P ' i, so far authentification of user is finished; If any biological characteristic value T ' xWith the user biological characteristic value T in the biometric templates storehouse that is kept at server in advance xWhen all misfitting, then the user is illegal, the refusal logging request.
Second purpose of the present invention realizes: set user name ID in advance by the user in Verification System A, secret pass phrases W, one-time password sequence iterative value N, registered user's biological characteristic value is provided simultaneously, it is characterized in that the biological characteristic value that the user provides in Verification System is at least two kinds of different biological characteristic values, the discrimination to variant biological characteristic in the system is set different weight Q respectively xX wherein is a positive integer, its span is 1 number to used biological characteristic, the arithmetic mean of the weights that use biological characteristic simultaneously and the biological characteristic number of being gathered is as threshold value, the user name ID that the user is provided by client browser the user by server in the authentication process AInquire about, find and user name ID ACorresponding seed S, current iteration value N-i, be used to decipher the secret pass phrases P of each biological characteristic value when authenticated last time I-1, and with the hashed value K of these three values with W wEncrypt the back and send to client browser as response message, client is according to the hashed value K ' of the W of user's input wDecrypt current iteration value N-i, seed S that server sends over and the one-time password P of authentication last time I-1, calculate current one-time password P i=H N-i(W+S), and to P iCarry out a Hash operation again and obtain P ' I-1=H (P i), client is P ' relatively I-1With P I-1If unanimity then think that iterative value is errorless, client be by the checking to server, client collection simultaneously is similar with the biological characteristic that the user provides in advance respectively verifies user biological characteristic value T ' x, client is with the one-time password P of this authentication iAs key to every kind of biological characteristic value of user T ' xEncrypt, enciphered message is sent to server, server by utilizing and client same procedure calculate the one-time password P ' of this authentication i, use P ' iThe enciphered message that receives is decrypted every kind of biological characteristic value of user T ' that deciphering obtains xWith the corresponding biological characteristic value T that is kept at active user in the server biometric templates storehouse xMate, obtain the matching similarity r of every kind of biological characteristic x, and the matching result of every kind of biological characteristic is carried out fusion treatment obtain comprehensive similarity R, relatively adjudicate by R and threshold value V at last, if R>V thinks that then the user is legal, server end is by the authentication to client, and preserves this one-time password P ' i, so far authentification of user is finished; If R≤V, then the user is illegal, the refusal logging request.
The 3rd purpose of the present invention realizes: set user name ID in advance by the user in Verification System A, secret pass phrases W, one-time password sequence iterative value N, registered user's biological characteristic value is provided simultaneously, it is characterized in that the biological characteristic value T ' that the user provides in Verification System xBe at least two kinds of different biological characteristic values, the user name ID that the user is provided by client browser the user by server in the authentication process AInquire about, find and user name ID ACorresponding seed S, current iteration value N-i, be used to decipher the one-time password P of each biological characteristic value when authenticated last time I-1, and with the hashed value K of these three values with W wEncrypt the back and send to client browser as response message, client is according to the hashed value K ' of the W of user's input wDecrypt current iteration value N-i, seed S that server sends over and the one-time password P of authentication last time I-1, calculate current one-time password P i=H N-i(W+S), and to P iCarry out a Hash operation again and obtain P ' I-1=H (P i), client is P ' relatively I-1With P I-1If unanimity then think that iterative value is errorless, client be by the checking to server, client collection simultaneously is similar with the biological characteristic that the user provides in advance respectively verifies user biological characteristic value T ' x, client is with the one-time password P of this authentication iAs key to every kind of biological characteristic value of user T ' xEncrypt, enciphered message is sent to server, server by utilizing and client same procedure calculate the one-time password P ' of this authentication i, use P ' iThe enciphered message that receives is decrypted every kind of biological characteristic value of user T ' that deciphering obtains xWith the corresponding biological characteristic value T that is kept at active user in the server biometric templates storehouse xMate, if all T ' xAll with corresponding T xBe complementary, think that then the user is legal, server end passes through the authentication to client, and preserves this one-time password P ' i, so far authentification of user is finished; If any T ' is arranged xWith corresponding T xBe not complementary, then the user is illegal, the refusal logging request.
From the above mentioned, in fact the present invention has adopted multi-biological characteristic identification, to solve the deficiencies in the prior art.
In fact multi-biological characteristic identification be exactly the multi-biological characteristic information fusion, and by the method for multi-biological characteristic information fusion, different authentication is the result complement one another, and can improve the accuracy of living creature characteristic recognition system.The multi-biological characteristic recognition technology makes the identity authorization system of design high-performance practicality become possibility.
The present invention is directed to the importance of secret pass phrases in the dynamic password S/Key system, and can't prevent leaks such as decimal attack, and single-factor biometrics identification technology existence leakage biological attribute data and the limited shortcoming of accuracy rate, a kind of identity identifying method that combines with multi-biological characteristic identification based on dynamic password is proposed.
In the method that the present invention proposes, one-time password mainly is the fail safe that utilizes one-way hash function, the characteristics that promptly calculating is easy to forward, backwards calculation but is difficult to, the secret pass phrases of seed and user input coupled together carry out repeatedly hash, the hash number of times is the iterations in the server acknowledge information, and iteration result is as user's one-time password.Each is that iterations is as uncertain factor with different numerical value; And the multi-biological characteristic in the identification is meant two or more biological characteristic is gathered, made up, pass through fusion treatment again, to improve identification, overcome in the prior art and can not pass through the deficiency of authentication because of the problem in a kind of biological characteristic value extraction causes system to the biological characteristic value.
Can also directly obtain another kind of method by above method of the present invention, i.e. the condition that is identification with multiple biological characteristic value, and then realization further improves the purpose of identification authentication security.
Advantage of the present invention has following several respects at least:
1, in the authentication method of the present invention, the authentication information that client passes to server is not single dynamic password or single biological information, but with each all at the dynamic password that changes to every kind of biological characteristic value encrypted ciphertext.It all is invalid that any playback or eavesdropping are attacked, and has effectively prevented the leakage problem of secret pass phrases and biological attribute data, has higher fail safe.
2, in the authentication method of the present invention, increased the authentication of client, realized the two-way authentication between the client and server, improved the fail safe of system server.
3, in the authentication method of the present invention, the matching result of multiple biological characteristic authentication is carried out certain fusion, further improved the accuracy of Verification System.
4, authentication method of the present invention has wide practical use, and can be applied in the industry that finance, public security etc. have higher requirements to the fail safe of own service.
Description of drawings
The identity authorization system flow chart that Fig. 1 dynamic password combines with multi-biological characteristic
The frame diagram that Fig. 2 multi-biological characteristic merges
Embodiment
Identity identifying method of the present invention may further comprise the steps:
(1) client user sends ID authentication request to server:
User identity ID A
(2) server sends response message according to the user name that client sends to client:
Server sends hashed value K with secret pass phrases W to client wIterative value N-i, the seed S that encrypts and be used to decipher the various biological characteristic values dynamic password P of (comprising fingerprint characteristic value, iris feature value, face characteristic value etc.) when authenticating last time I-1
(3) client is with the hashed value K ' of the secret pass phrases W of user input wDeciphering obtains the dynamic password P of current iteration value N-i, seed S, authentication last time I-1Be calculated as follows:
P i=H N-i(W+S);
Client storage current password P i, and to current password P iCarry out Hash operation again one time, be calculated as follows:
P’ i-1=H(P i);
Client is with P ' I-1Be used to decipher every kind of biological characteristic value dynamic password P of (comprising fingerprint characteristic value, iris feature value, face characteristic value etc.) when authenticating with last time I-1Relatively, if unanimity as a result thinks that then iterative value is errorless, client is by the checking to server.If difference thinks that then iterative value is wrong as a result, authentication this time stops.
Client is extracted this user's associated biomolecule characteristic value T ' by various physical characteristics collecting instrument x, these associated biomolecule features comprise: fingerprint characteristic value T 1', iris feature value T 2', face characteristic value T 3' etc., can choose as required.Use P iAs encryption key to T ' x(x ∈ Z wherein +) encrypt, encrypt as follows:
M x=E(T’ x,P i);
Then with ciphertext M xSend to server as authentication information.
(4) server is according to this user's current iteration value N-i, seed S, secret pass phrases W, use with the client mutually
Calculate dynamic password P ' with hash function i, be calculated as follows:
P’ i=H N-i(W+S);
With dynamic password P ' iAs the ciphertext M of decruption key to receiving xBe decrypted, decipher as follows:
T’ x=D(M x,P’ i);
The every kind of biological characteristic value T ' that obtains after the deciphering xBe kept at template characteristic value T in the biometric templates storehouse of server end with the active user respectively x(comprise fingerprint characteristic value T 1, iris feature value T 2, face characteristic value T 3Deng) mate, obtain the matching result of every kind of biological characteristic.
Be identical in each step more than in three purpose implementation procedures of the present invention.
A. when adopting first purpose of the present invention, only need find the solution the various biological characteristic value T ' that obtain after close xIn any can be kept at corresponding template characteristic value T in the biometric templates storehouse of server end with the active user xCoupling can be by authentication.
B. when adopting second purpose of the present invention, need to consider earlier the every kind of biological characteristic value T ' that obtains after the deciphering xBe kept at template characteristic value T in the biometric templates storehouse of server end with the active user respectively x(comprise fingerprint characteristic value T 1, iris feature value T 2, face characteristic value T 3Deng) match condition, and then obtain the matching result of every kind of biological characteristic.This matching result can be used corresponding matching similarity r xExpression.Server merges the matching result of every kind of biological characteristic and obtains comprehensive similarity R, is calculated as follows (Q wherein xRepresenting the weights of every kind of biological characteristics such as fingerprint, iris, people's face respectively, is the constant between 0 to 1, is obtained by experiment; X ∈ Z +):
R=∑r xQ x/∑Q x
At last, R and threshold value V=∑ Q x/ n (n is the biological characteristic number, is any positive integer in theory) relatively adjudicates, if R>V thinks that then this user is legal, server is by the authentication to client, and preservation dynamic password P ' i, so far this authentification of user is finished.If R≤V, then this user is illegal, the refusal logging request.
C. similar to some extent with the situation of first purpose when adopting the 3rd purpose of the present invention, but require each biological characteristic value all to mate with the biological characteristic value of template stores, could pass through like this to authenticate.
Obviously, when adopting the 3rd purpose of the present invention, also can use and second technical measures that purpose is similar of the present invention, suitably reduce server and the matching result of every kind of biological characteristic is merged obtain comprehensive similarity R, suitably improve threshold value simultaneously, to improve the reliability of authentication.
On the other hand, in above-mentioned three purposes of the present invention realized, at every turn successfully after the login, iterative value was successively decreased, and when iterative value is kept to 0 or after secret pass phrases W divulges a secret, must reinitialize iterative value and revise secret pass phrases.
As seen from the above, the realization of three purposes of the present invention is to make corresponding authority restriction by software in system to finish the not special difficulty of its mutual realization.
Can be about concrete condition of the present invention referring to the content of accompanying drawing 1 to accompanying drawing 2.
The example that is applied as that realizes with the present invention's second purpose in the concrete information management system illustrates process of the present invention below:
1. authentication process:
(1) user inputs user name hualong06 by client browser, submits authentication request to server.
(2) server lookup database is found out seed S=z812h103wj corresponding with user name hualong06 and current iteration value N-i=10, finds out the dynamic password P that was used for decruption key when authenticating last time simultaneously I-1,
P i-1=e172155aca3780552e49b34d0cef86a9
And with the hashed value K of these three values with secret pass phrases W wEncrypt the back and send to client browser as response message.If the record corresponding then refuse this logging request not in the database with this user name.
(3) after client is received the response message of server transmission, prompting hualong06 imports secret pass phrases W=cominf505, gather the hand thumb fingerprint image of hualong06 simultaneously by fingerprint acquisition instrument, by iris camera collection iris of left eye image, by people's face camera collection facial image, the corresponding Fingerprint Processing Module of client call, iris processing module and people's face processing module extract fingerprint characteristic value T ' respectively 1, iris feature value T ' 2With face characteristic value T ' 3, and call corresponding computing module and do following computing:
Calculate the hashed value K ' of secret pass phrases W w, and deciphering obtains S, N-i, P I-1
Calculate the dynamic password of this authentication as encryption key:
P i=H N-i(W+S)=87f25293e1ab871e91d59049ec7fb40b
Calculate the dynamic password of authentication last time as decruption key:
P’ i-1=H(P i)=e172155aca3780552e49b34d0cef86a9
Compare P I-1With P ' I-1Value (, then stopping login this time) if inequality.Come to the same thing, use P iEncrypt as every kind of biological characteristic value that secret key pair extracts:
M x=E(T x,P i)
With each enciphered message M xSend to server as authentication information.
(4) after server is received the authentication information of client, do following computing:
P’ i=H N-i(W+S)=87f25293e1ab871e91d59049ec7fb40b
Use P ' iBe decrypted as deciphering secret key pair enciphered message:
T’ x=D(M x,P’ i)
With each the biological characteristic value T ' that obtains after the deciphering xCorresponding biological characteristic value T with this user who preserves in the server biometric templates storehouse xMate, obtain the matching result of every kind of biological characteristic, matching result matching similarity r xExpression, wherein fingerprint matching similarity are r 1, the iris matching similarity is r 2, people's face matching similarity is r 3
Server merges the matching result of every kind of biological characteristic and obtains comprehensive similarity R, is calculated as follows:
R=∑r xQ x/∑Q x
Threshold value V=∑ Q x/ n, n wherein are the number of used biological characteristic.R and V are relatively adjudicated, if R>V thinks that then this user is legal, server end is by the authentication to client, and preservation dynamic password P ' iIf, R≤V, then this user is illegal, the refusal logging request.
Get Q in this example 1=60%, Q 2=80%, Q 3=40%, ∑ Q then x=180%, n=3, V=60%.
If r1=92%, r2=98%, r3=81%, R=92.2% then, R>V, this user is legal;
If r1=92%, r2=98%, r3=10%, R=76.4% then, R>V, this user is legal;
If r1=60%, r2=80%, r3=50%, R=66.7% then, R>V, this user is legal;
If r1=40%, r2=50%, r3=30%, R=40.0% then, R<V, this user is illegal, the refusal login.
Need the practical application of the present invention of explanation to be not limited to the above embodiment that provides, employed biological characteristic can be the combination of two or more biological characteristic arbitrarily such as fingerprint, iris, people's face, palmmprint, retina, people's ear, cheilogramma, voice, person's handwriting, gait, gesture.

Claims (3)

1, a kind of dynamic password is discerned the identity identifying method that combines with multi-biological characteristic, sets user name ID in advance by the user in Verification System A, secret pass phrases W, one-time password sequence iterative value N, registered user's biological characteristic value is provided simultaneously, it is characterized in that the biological characteristic value T ' that the user provides in Verification System xBe at least two kinds of different biological characteristic values, the user name ID that the user is provided by client browser the user by server in the authentication process AInquire about, find and user name ID ACorresponding seed S, current iteration value N-i, be used to decipher the one-time password P of each biological characteristic value when authenticated last time I-1, and with the hashed value K of these three values with W wEncrypt the back and send to client browser as response message, client is according to the hashed value K ' of the W of user's input wDecrypt current iteration value N-i, seed S that server sends over and the one-time password P of authentication last time I-1, calculate current one-time password P i=H N-1(W+S), and to P iCarry out a Hash operation again and obtain P ' I-1=H (P i), client is P ' relatively I-1With P I-1If unanimity then think that iterative value is errorless, client be by the checking to server, the similar user biological characteristic value T ' of biological characteristic that client collection simultaneously and user provide in advance x, client is with the one-time password P of this authentication iAs key to every kind of biological characteristic value of user T ' xEncrypt, enciphered message is sent to server.Server by utilizing and client same procedure calculate the one-time password P ' of this authentication i, use P ' iThe enciphered message that receives is decrypted every kind of biological characteristic value of user T ' that deciphering obtains xBiological characteristic value T with active user in the corresponding biometric templates storehouse that is kept at server xMate, as any biological characteristic value T ' xBiological characteristic value T with active user in the biometric templates storehouse that is kept at server in advance xDuring coupling, think that then the user is legal, server end passes through the authentication to client, and preserves this one-time password P ' i, so far authentification of user is finished; If any biological characteristic value T ' xWith the user biological characteristic value T in the biometric templates storehouse that is kept at server in advance xWhen all misfitting, then the user is illegal, the refusal logging request.
2, a kind of dynamic password is discerned the identity identifying method that combines with multi-biological characteristic, sets user name ID in advance by the user in Verification System A, secret pass phrases W, one-time password sequence iterative value N, registered user's biological characteristic value is provided simultaneously, it is characterized in that the biological characteristic value that the user provides in Verification System is at least two kinds of different biological characteristic values, the discrimination to variant biological characteristic in the system is set different weight Q respectively xX wherein is a positive integer, its span is 1 number to used biological characteristic, the arithmetic mean of the weights that use biological characteristic simultaneously and the biological characteristic number of being gathered is as threshold value, the user name ID that the user is provided by client browser the user by server in the authentication process AInquire about, find and user name ID ACorresponding seed S, current iteration value N-i, be used to decipher the secret pass phrases P of each biological characteristic value when authenticated last time I-1, and with the hashed value K of these three values with W wEncrypt the back and send to client browser as response message, client is according to the hashed value K ' of the W of user's input wDecrypt current iteration value N-i, seed S that server sends over and the one-time password P of authentication last time I-1, calculate current one-time password P i=H N-i(W+S), and to P iCarry out a Hash operation again and obtain P ' I-1=H (P i), client is P ' relatively I-1With P I-1If unanimity then think that iterative value is errorless, client be by the checking to server, client collection simultaneously is similar with the biological characteristic that the user provides in advance respectively verifies user biological characteristic value T ' x, client is with the one-time password P of this authentication iAs key to every kind of biological characteristic value of user T ' xEncrypt, enciphered message is sent to server, server by utilizing and client same procedure calculate the one-time password P ' of this authentication i, use P ' iThe enciphered message that receives is decrypted every kind of biological characteristic value of user T ' that deciphering obtains xWith the corresponding biological characteristic value T that is kept at active user in the server biometric templates storehouse xMate, obtain the matching similarity r of every kind of biological characteristic x, and the matching result of every kind of biological characteristic is carried out fusion treatment obtain comprehensive similarity R, relatively adjudicate by R and threshold value V at last, if R>V thinks that then the user is legal, server end is by the authentication to client, and preserves this one-time password P ' i, so far authentification of user is finished; If R≤V, then the user is illegal, the refusal logging request.
3, a kind of dynamic password is discerned the identity identifying method that combines with multi-biological characteristic, sets user name ID in advance by the user in Verification System A, secret pass phrases W, one-time password sequence iterative value N, registered user's biological characteristic value is provided simultaneously, it is characterized in that the biological characteristic value that the user provides is at least two kinds of different biological characteristic values, the user name ID that the user is provided by client browser the user by server in the authentication process in Verification System AInquire about, find and user name ID ACorresponding seed S, current iteration value N-i, be used to decipher the one-time password P of each biological characteristic value when authenticated last time I-1, and with the hashed value K of these three values with W wEncrypt the back and send to client browser as response message, client is according to the hashed value K ' of the W of user's input wDecrypt current iteration value N-i, seed S that server sends over and the one-time password P of authentication last time I-1, calculate current one-time password P i=H N-i(W+S), and to P iCarry out a Hash operation again and obtain P ' I-1=H (P i), client is P ' relatively I-1With P I-1If unanimity then think that iterative value is errorless, client be by the checking to server, client collection simultaneously is similar with the biological characteristic that the user provides in advance respectively verifies user biological characteristic value T ' x, client is with the one-time password P of this authentication iAs key to every kind of biological characteristic value of user T ' xEncrypt, enciphered message is sent to server, server by utilizing and client same procedure calculate the one-time password P ' of this authentication i, use P ' iThe enciphered message that receives is decrypted every kind of biological characteristic value of user T ' that deciphering obtains xWith the corresponding biological characteristic value T that is kept at active user in the server biometric templates storehouse xMate, if all T ' xAll with corresponding T xBe complementary, think that then the user is legal, server end passes through the authentication to client, and preserves this one-time password P ' i, so far authentification of user is finished; If any T ' is arranged xWith corresponding T xBe not complementary, then the user is illegal, the refusal logging request.
CN2007101374295A 2007-07-12 2007-07-12 Dynamic password and multiple biological characteristics combined identification authenticating method Expired - Fee Related CN101098232B (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN2007101374295A CN101098232B (en) 2007-07-12 2007-07-12 Dynamic password and multiple biological characteristics combined identification authenticating method

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN2007101374295A CN101098232B (en) 2007-07-12 2007-07-12 Dynamic password and multiple biological characteristics combined identification authenticating method

Publications (2)

Publication Number Publication Date
CN101098232A true CN101098232A (en) 2008-01-02
CN101098232B CN101098232B (en) 2012-05-09

Family

ID=39011774

Family Applications (1)

Application Number Title Priority Date Filing Date
CN2007101374295A Expired - Fee Related CN101098232B (en) 2007-07-12 2007-07-12 Dynamic password and multiple biological characteristics combined identification authenticating method

Country Status (1)

Country Link
CN (1) CN101098232B (en)

Cited By (51)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101309183B (en) * 2008-05-04 2011-04-13 北京深思洛克软件技术股份有限公司 Method for remote test and developing software protecting apparatus
CN102064935A (en) * 2010-11-04 2011-05-18 珠海艾派克微电子有限公司 Decryption display method and system and related equipment
CN102314478A (en) * 2011-07-05 2012-01-11 万达信息股份有限公司 Method for identifying and matching patient identities
CN101477621B (en) * 2009-02-20 2012-07-04 华为终端有限公司 Image updating process and apparatus based on human face recognition
CN102750529A (en) * 2012-07-24 2012-10-24 南京邮电大学 Biometric fingerprint authentication method based on quantum fuzzy commitment
CN102810154A (en) * 2011-06-02 2012-12-05 国民技术股份有限公司 Method and system for biological characteristic acquisition and fusion based on trusted module
CN102916968A (en) * 2012-10-29 2013-02-06 北京天诚盛业科技有限公司 Identity authentication method, identity authentication server and identity authentication device
CN102984152A (en) * 2012-11-27 2013-03-20 江苏乐买到网络科技有限公司 Password authentication method based on online shopping
CN103152318A (en) * 2011-12-07 2013-06-12 中国移动通信集团天津有限公司 Identity authentication method, device and system thereof
CN103297237A (en) * 2013-05-14 2013-09-11 成都天钥科技有限公司 Identity registration method, identity authentication method, identity registration system, identity authentication system, personal authentication equipment and authentication server
CN103368954A (en) * 2013-07-02 2013-10-23 山东科技大学 Smart card registration entry method based on password and biological characteristics
CN103380591A (en) * 2011-02-22 2013-10-30 三菱电机株式会社 Similarity calculation system, similarity calculation device, computer program, and similarity calculation method
CN103548298A (en) * 2011-04-15 2014-01-29 汉索知识产权私人有限公司 System and method for remote biometric operations
CN103607280A (en) * 2013-05-14 2014-02-26 成都天钥科技有限公司 Personal authentication device
CN101286846B (en) * 2008-05-19 2014-04-16 郑宽永 Interactive identity authentication method
CN103841108A (en) * 2014-03-12 2014-06-04 北京天诚盛业科技有限公司 Authentication method and system of biological characteristics of user
CN103929425A (en) * 2014-04-21 2014-07-16 华为技术有限公司 Identity registration and identity authentication method, device and system
CN103927469A (en) * 2014-04-23 2014-07-16 无锡北斗星通信息科技有限公司 Dynamic password generation method based on iris information
CN103986578A (en) * 2014-05-07 2014-08-13 无锡北斗星通信息科技有限公司 Identity authentication method based on fingerprint information
CN104079577A (en) * 2014-07-07 2014-10-01 北京智谷睿拓技术服务有限公司 Authentication method and authentication device
CN104426836A (en) * 2013-08-20 2015-03-18 深圳市腾讯计算机系统有限公司 Invasion detection method and device
CN104657649A (en) * 2014-05-23 2015-05-27 北京集联网络技术有限公司 Token for starting up by biological feature identification
CN104702414A (en) * 2014-05-07 2015-06-10 任红霞 Identity authentication method based on fingerprint information
CN105227302A (en) * 2015-10-28 2016-01-06 广东欧珀移动通信有限公司 The shared method of password and the shared system of password
CN105787324A (en) * 2016-02-03 2016-07-20 周口师范学院 Computer information security system
CN105827571A (en) * 2015-01-06 2016-08-03 华为技术有限公司 UAF (Universal Authentication Framework) protocol based multi-modal biological characteristic authentication method and equipment
CN106533895A (en) * 2015-09-11 2017-03-22 北大方正集团有限公司 Password-based instant communication method and system
CN106560006A (en) * 2014-03-27 2017-04-05 陈锦夫 Token key infrastructure and method
CN106850532A (en) * 2016-11-24 2017-06-13 比奥香港有限公司 A kind of method of payment and system based on biological token
CN107437996A (en) * 2016-05-27 2017-12-05 宇龙计算机通信科技(深圳)有限公司 A kind of identity authentication method, device and terminal
CN107516070A (en) * 2017-07-28 2017-12-26 广东欧珀移动通信有限公司 Biometric discrimination method and Related product
CN107533636A (en) * 2015-02-27 2018-01-02 爱德克斯公司 Pre-matching prediction for pattern test
CN103748829B (en) * 2011-07-15 2018-08-24 虹膜技术公司 Use the authentication method and device of the disposal password comprising biometric image information
CN109035519A (en) * 2018-07-26 2018-12-18 杭州晟元数据安全技术股份有限公司 A kind of biometric devices and method
CN109101828A (en) * 2018-08-24 2018-12-28 浙江苍润信息科技有限公司 A kind of network is made house calls platform customer information stocking system
CN109328348A (en) * 2016-09-30 2019-02-12 华为技术有限公司 A kind of service authentication method, system and relevant device
CN109525555A (en) * 2014-03-27 2019-03-26 阿里巴巴集团控股有限公司 A kind of method and device of online registration and certification
CN109547503A (en) * 2018-05-17 2019-03-29 北京岸思信息科技有限公司 Biological feather recognition method
CN109657442A (en) * 2018-12-03 2019-04-19 浙江万里学院 A kind of computer user's identification system
CN109995780A (en) * 2019-03-29 2019-07-09 华中师范大学 Education services transaction agent personal identification method and system based on block chain
CN110048993A (en) * 2017-11-22 2019-07-23 佳能株式会社 Methods and procedures storage medium used in information processing equipment, information processing equipment
CN110084013A (en) * 2013-09-16 2019-08-02 眼验股份有限公司 Biometric templates safety and key generate
CN110084019A (en) * 2019-05-10 2019-08-02 浙江臻享网络科技有限公司 Algorithm and device are veritified using the identity that multi-biological characteristic information similarity compares
CN110717164A (en) * 2019-12-16 2020-01-21 国网电子商务有限公司 Intelligent multidimensional weighting identity authentication and risk control method and system
CN111160195A (en) * 2019-12-23 2020-05-15 哈尔滨工程大学 Ship personnel management system based on multi-biometric feature recognition technology
CN111182003A (en) * 2020-02-28 2020-05-19 北京帕斯沃得科技有限公司 Identity authentication method based on authentication terminal
CN111539365A (en) * 2020-04-29 2020-08-14 兰州大学 Animal behavior analysis method and device and electronic equipment
CN112311794A (en) * 2020-10-30 2021-02-02 中电万维信息技术有限责任公司 Bidirectional identity authentication method based on MFA algorithm
CN114124539A (en) * 2021-11-25 2022-03-01 中国银行股份有限公司 Identity authentication method, system, electronic equipment and storage medium for bank vault
CN114338146A (en) * 2021-12-27 2022-04-12 中国民航信息网络股份有限公司 Dynamic code-based crawler-resistant method, system, client and server
CN114915486A (en) * 2022-06-02 2022-08-16 北京天融信网络安全技术有限公司 Identity authentication method, device, system, electronic equipment and medium

Family Cites Families (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN1403940A (en) * 2001-08-27 2003-03-19 无敌科技股份有限公司 Language learning method with palm information processing device
JP2003296280A (en) * 2002-03-29 2003-10-17 Hitachi Koukiyou Syst Eng Kk Security mediating method
CN1224925C (en) * 2003-06-20 2005-10-26 林建春 Method of digit identity authentication based on features of non-biophysics

Cited By (80)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101309183B (en) * 2008-05-04 2011-04-13 北京深思洛克软件技术股份有限公司 Method for remote test and developing software protecting apparatus
CN101286846B (en) * 2008-05-19 2014-04-16 郑宽永 Interactive identity authentication method
CN101477621B (en) * 2009-02-20 2012-07-04 华为终端有限公司 Image updating process and apparatus based on human face recognition
CN102064935A (en) * 2010-11-04 2011-05-18 珠海艾派克微电子有限公司 Decryption display method and system and related equipment
CN102064935B (en) * 2010-11-04 2012-08-22 珠海艾派克微电子有限公司 Decryption display method and system and related equipment
CN103380591B (en) * 2011-02-22 2016-03-30 三菱电机株式会社 Similar degree computing system, similar degree calculation element and similar degree computational methods
CN103380591A (en) * 2011-02-22 2013-10-30 三菱电机株式会社 Similarity calculation system, similarity calculation device, computer program, and similarity calculation method
CN103548298A (en) * 2011-04-15 2014-01-29 汉索知识产权私人有限公司 System and method for remote biometric operations
CN102810154A (en) * 2011-06-02 2012-12-05 国民技术股份有限公司 Method and system for biological characteristic acquisition and fusion based on trusted module
CN102810154B (en) * 2011-06-02 2016-05-11 国民技术股份有限公司 A kind of physical characteristics collecting fusion method and system based on trusted module
CN102314478A (en) * 2011-07-05 2012-01-11 万达信息股份有限公司 Method for identifying and matching patient identities
CN103748829B (en) * 2011-07-15 2018-08-24 虹膜技术公司 Use the authentication method and device of the disposal password comprising biometric image information
CN103152318B (en) * 2011-12-07 2016-12-07 中国移动通信集团天津有限公司 A kind of identity identifying method, device and system thereof
CN103152318A (en) * 2011-12-07 2013-06-12 中国移动通信集团天津有限公司 Identity authentication method, device and system thereof
CN102750529A (en) * 2012-07-24 2012-10-24 南京邮电大学 Biometric fingerprint authentication method based on quantum fuzzy commitment
CN102750529B (en) * 2012-07-24 2014-04-16 南京邮电大学 Biometric fingerprint authentication method based on quantum fuzzy commitment
CN102916968A (en) * 2012-10-29 2013-02-06 北京天诚盛业科技有限公司 Identity authentication method, identity authentication server and identity authentication device
CN102916968B (en) * 2012-10-29 2016-01-27 北京天诚盛业科技有限公司 Identity identifying method, authentication server and identification authentication system
CN102984152A (en) * 2012-11-27 2013-03-20 江苏乐买到网络科技有限公司 Password authentication method based on online shopping
CN103297237A (en) * 2013-05-14 2013-09-11 成都天钥科技有限公司 Identity registration method, identity authentication method, identity registration system, identity authentication system, personal authentication equipment and authentication server
CN103607280B (en) * 2013-05-14 2016-08-24 成都天钥科技有限公司 Personal authentication apparatus
CN103297237B (en) * 2013-05-14 2015-10-28 成都天钥科技有限公司 Identity registration and authentication method, system, personal authentication apparatus and certificate server
CN103607280A (en) * 2013-05-14 2014-02-26 成都天钥科技有限公司 Personal authentication device
CN103368954B (en) * 2013-07-02 2016-06-08 山东科技大学 A kind of smart card registration entry based on password and biological characteristic
CN103368954A (en) * 2013-07-02 2013-10-23 山东科技大学 Smart card registration entry method based on password and biological characteristics
CN104426836A (en) * 2013-08-20 2015-03-18 深圳市腾讯计算机系统有限公司 Invasion detection method and device
CN110084013A (en) * 2013-09-16 2019-08-02 眼验股份有限公司 Biometric templates safety and key generate
CN110084013B (en) * 2013-09-16 2020-08-11 眼验股份有限公司 Biometric template security and key generation
CN103841108B (en) * 2014-03-12 2018-04-27 北京天诚盛业科技有限公司 The authentication method and system of user biological feature
CN103841108A (en) * 2014-03-12 2014-06-04 北京天诚盛业科技有限公司 Authentication method and system of biological characteristics of user
CN109525555A (en) * 2014-03-27 2019-03-26 阿里巴巴集团控股有限公司 A kind of method and device of online registration and certification
CN106560006A (en) * 2014-03-27 2017-04-05 陈锦夫 Token key infrastructure and method
CN109525555B (en) * 2014-03-27 2022-04-08 创新先进技术有限公司 Online registration and authentication method and device
CN103929425A (en) * 2014-04-21 2014-07-16 华为技术有限公司 Identity registration and identity authentication method, device and system
CN103929425B (en) * 2014-04-21 2017-12-01 华为技术有限公司 A kind of identity registration, identity authentication method, equipment and system
CN103927469B (en) * 2014-04-23 2015-09-09 无锡北斗星通信息科技有限公司 Based on the dynamic password formation method of iris information
CN104700015A (en) * 2014-04-23 2015-06-10 张玉奇 Dynamic password generating method based on iris information
CN103927469A (en) * 2014-04-23 2014-07-16 无锡北斗星通信息科技有限公司 Dynamic password generation method based on iris information
CN103986578A (en) * 2014-05-07 2014-08-13 无锡北斗星通信息科技有限公司 Identity authentication method based on fingerprint information
CN103986578B (en) * 2014-05-07 2015-10-28 无锡北斗星通信息科技有限公司 Based on the identity identifying method of finger print information
CN104683114A (en) * 2014-05-07 2015-06-03 孙烨 Identity authentication method based on fingerprint information
CN104702414A (en) * 2014-05-07 2015-06-10 任红霞 Identity authentication method based on fingerprint information
CN104657649A (en) * 2014-05-23 2015-05-27 北京集联网络技术有限公司 Token for starting up by biological feature identification
CN104657649B (en) * 2014-05-23 2018-02-23 北京集联网络技术有限公司 A kind of token device of living things feature recognition start
CN104079577A (en) * 2014-07-07 2014-10-01 北京智谷睿拓技术服务有限公司 Authentication method and authentication device
WO2016004804A1 (en) * 2014-07-07 2016-01-14 Beijing Zhigu Rui Tuo Tech Co., Ltd. Authentication methods and authentication apparatuses
US10397217B2 (en) 2014-07-07 2019-08-27 Beijing Zhigu Rui Tuo Tech Co., Ltd Authentication methods and authentication apparatuses
CN105827571A (en) * 2015-01-06 2016-08-03 华为技术有限公司 UAF (Universal Authentication Framework) protocol based multi-modal biological characteristic authentication method and equipment
CN105827571B (en) * 2015-01-06 2019-09-13 华为技术有限公司 Multi-modal biological characteristic authentication method and equipment based on UAF agreement
CN107533636A (en) * 2015-02-27 2018-01-02 爱德克斯公司 Pre-matching prediction for pattern test
CN106533895A (en) * 2015-09-11 2017-03-22 北大方正集团有限公司 Password-based instant communication method and system
CN106533895B (en) * 2015-09-11 2019-04-30 北大方正集团有限公司 Instant communicating method and system based on password
CN105227302B (en) * 2015-10-28 2019-06-14 Oppo广东移动通信有限公司 The sharing method of password and the shared system of password
CN105227302A (en) * 2015-10-28 2016-01-06 广东欧珀移动通信有限公司 The shared method of password and the shared system of password
CN105787324A (en) * 2016-02-03 2016-07-20 周口师范学院 Computer information security system
CN107437996B (en) * 2016-05-27 2020-02-21 宇龙计算机通信科技(深圳)有限公司 Identity authentication method, device and terminal
CN107437996A (en) * 2016-05-27 2017-12-05 宇龙计算机通信科技(深圳)有限公司 A kind of identity authentication method, device and terminal
CN109328348B (en) * 2016-09-30 2023-03-03 华为技术有限公司 Service authentication method, system and related equipment
CN109328348A (en) * 2016-09-30 2019-02-12 华为技术有限公司 A kind of service authentication method, system and relevant device
CN106850532A (en) * 2016-11-24 2017-06-13 比奥香港有限公司 A kind of method of payment and system based on biological token
CN107516070A (en) * 2017-07-28 2017-12-26 广东欧珀移动通信有限公司 Biometric discrimination method and Related product
CN110048993A (en) * 2017-11-22 2019-07-23 佳能株式会社 Methods and procedures storage medium used in information processing equipment, information processing equipment
CN109547503A (en) * 2018-05-17 2019-03-29 北京岸思信息科技有限公司 Biological feather recognition method
CN109035519A (en) * 2018-07-26 2018-12-18 杭州晟元数据安全技术股份有限公司 A kind of biometric devices and method
CN109101828A (en) * 2018-08-24 2018-12-28 浙江苍润信息科技有限公司 A kind of network is made house calls platform customer information stocking system
CN109657442A (en) * 2018-12-03 2019-04-19 浙江万里学院 A kind of computer user's identification system
CN109995780A (en) * 2019-03-29 2019-07-09 华中师范大学 Education services transaction agent personal identification method and system based on block chain
CN110084019A (en) * 2019-05-10 2019-08-02 浙江臻享网络科技有限公司 Algorithm and device are veritified using the identity that multi-biological characteristic information similarity compares
CN110084019B (en) * 2019-05-10 2021-04-20 浙江臻享网络科技有限公司 Identity verification method and device adopting multi-biological characteristic information similarity comparison
CN110717164A (en) * 2019-12-16 2020-01-21 国网电子商务有限公司 Intelligent multidimensional weighting identity authentication and risk control method and system
CN111160195A (en) * 2019-12-23 2020-05-15 哈尔滨工程大学 Ship personnel management system based on multi-biometric feature recognition technology
CN111182003A (en) * 2020-02-28 2020-05-19 北京帕斯沃得科技有限公司 Identity authentication method based on authentication terminal
CN111539365B (en) * 2020-04-29 2022-08-23 兰州大学 Animal behavior analysis method and device and electronic equipment
CN111539365A (en) * 2020-04-29 2020-08-14 兰州大学 Animal behavior analysis method and device and electronic equipment
CN112311794A (en) * 2020-10-30 2021-02-02 中电万维信息技术有限责任公司 Bidirectional identity authentication method based on MFA algorithm
CN114124539A (en) * 2021-11-25 2022-03-01 中国银行股份有限公司 Identity authentication method, system, electronic equipment and storage medium for bank vault
CN114124539B (en) * 2021-11-25 2023-09-22 中国银行股份有限公司 Identity authentication method, system, electronic equipment and storage medium of bank vault
CN114338146A (en) * 2021-12-27 2022-04-12 中国民航信息网络股份有限公司 Dynamic code-based crawler-resistant method, system, client and server
CN114338146B (en) * 2021-12-27 2023-08-15 中国民航信息网络股份有限公司 Anti-crawler method, system, client and server based on dynamic code
CN114915486A (en) * 2022-06-02 2022-08-16 北京天融信网络安全技术有限公司 Identity authentication method, device, system, electronic equipment and medium

Also Published As

Publication number Publication date
CN101098232B (en) 2012-05-09

Similar Documents

Publication Publication Date Title
CN101098232B (en) Dynamic password and multiple biological characteristics combined identification authenticating method
US11343099B2 (en) System and method for securing personal information via biometric public key
Uludag et al. Biometric cryptosystems: issues and challenges
CN107819587B (en) Authentication method based on fully homomorphic encryption, user equipment and authentication server
US20200396076A1 (en) Public/Private Key Biometric Authentication System
US9189612B2 (en) Biometric verification with improved privacy and network performance in client-server networks
Campisi Security and privacy in biometrics: towards a holistic approach
CN101174953A (en) Identity authentication method based on S/Key system
Matyáš et al. Security of biometric authentication systems
CN101420301A (en) Human face recognizing identity authentication system
US20240048555A1 (en) Privacy-Preserving Biometric Authentication
CN106936775A (en) A kind of authentication method and system based on fingerprint recognition
Yang et al. Biometrics for securing mobile payments: benefits, challenges and solutions
JP2006262333A (en) Living body authentication system
Gobi et al. A secured public key cryptosystem for biometric encryption
Habibu et al. Assessment of vulnerabilities of the biometric template protection mechanism
JP7391843B2 (en) Two-step intensive fingerprint matching
Saraswathi et al. Retinal biometrics based authentication and key exchange system
El-Yahyaoui et al. An improved framework for biometric Database's privacy
KR20090042143A (en) Biometric authentication method
Oluwadamilola et al. An improved authentication system using hybrid of biometrics and cryptography
Sharma et al. Multimodal biometric user authentication using improved decentralized fuzzy vault scheme based on Blockchain network
Rudrakshi et al. A model for secure information storage and retrieval on cloud using multimodal biometric cryptosystem
Failla Privacy-preserving processing of biometric templates by homomorphic encryption
Sukaitis Building a path towards responsible use of Biometrics

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
C14 Grant of patent or utility model
GR01 Patent grant
CF01 Termination of patent right due to non-payment of annual fee

Granted publication date: 20120509

Termination date: 20180712

CF01 Termination of patent right due to non-payment of annual fee