CN101127603A - A method for single point login of portal website and IMS client - Google Patents

A method for single point login of portal website and IMS client Download PDF

Info

Publication number
CN101127603A
CN101127603A CN 200710143965 CN200710143965A CN101127603A CN 101127603 A CN101127603 A CN 101127603A CN 200710143965 CN200710143965 CN 200710143965 CN 200710143965 A CN200710143965 A CN 200710143965A CN 101127603 A CN101127603 A CN 101127603A
Authority
CN
China
Prior art keywords
authentication
portal
ims client
user
cookie
Prior art date
Application number
CN 200710143965
Other languages
Chinese (zh)
Other versions
CN101127603B (en
Inventor
恺 赵
Original Assignee
中兴通讯股份有限公司
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by 中兴通讯股份有限公司 filed Critical 中兴通讯股份有限公司
Priority to CN 200710143965 priority Critical patent/CN101127603B/en
Publication of CN101127603A publication Critical patent/CN101127603A/en
Application granted granted Critical
Publication of CN101127603B publication Critical patent/CN101127603B/en

Links

Abstract

The utility model discloses a method of realizing single sign on for portal website and an IMS client side, which adopts the technical proposal that: after a user signs on the IMS client side, the authentication request of the user is sent to a authentication portal of portals which is the same as of the IMS client side in authentication information using a portal website address and an access branch which are pre-configured in own configuration file by the IMS client side; after the returned authentication response of the authentication portal is received, the user password is encrypted before sent to the authentication portal for authenticating; if the authentication passes, the returned authentication of the portals is written into the cookie area of a web browser through the cookie information; the IMS client side comprises a firstly authenticating module and an encrypt module. The utility model solves the problem that the authentication information needs to be written into again when the portal website is the same as the IMS client side in the authentication information is needed to be signed on after the IMS client side is signed on. The utility model also decreases the possibility of the user information leakage at the same time.

Description

一种实现门户网站单点登录的方法及IMS客户端技术领域本发明涉及计算机网络技术,尤其涉及一种实现门户网站单点登录的方法及IMS客户端。 A method for implementing single sign-on portal and IMS client technology present invention relates to computer network technology, particularly to a method to achieve single sign-on portal and IMS clients. 背景技术IMS (IP Multimedia Subsystem, IP多媒体子系统)是一个规模和应用范围都相当广的系统,从用户用度来看,涉及IMS的应用中不仅包含PC、 pocketPC (掌上电脑)客户端及个人手机侧的应用,同时也包含门户网站系统等的应用。 BACKGROUND IMS (IP Multimedia Subsystem, IP Multimedia Subsystem) is a scale and scope of application are quite wide systems, from the user point of view expense involved IMS application includes not only PC, pocketPC (PDAs) and personal client application side of the phone, but also includes application portal system and so on. 总之,似乎只要是现在人们能接触到的电子信息环境,都有IMS的可应用之地。 In short, it seems that as long as people now have access to electronic information environment, there can be applied IMS land. 现有技术中各个领域的IMS应用之间的关系是密不可分的,不同领域的IMS应用之间有时具有密切的关联性,因此对于这些具有密切关联性的系统, 用户可以使用同样的认证信息进入。 The prior art relationship between the IMS application fields are inextricably linked, different fields between IMS application may have a close correlation, so for a close association of these systems, the user can use the same authentication information into the . 正因为如此,会带来一个让用户感到不便的地方:即如果一个用户的权限或需求比较多,他很可能既要登录IMS客户端, 又要登录某个门户网站(如企业门户网站)系统进行操作,在这种情况下,用户在登录IMS客户端时需要输入认证信息,在登录门户网站系统时又需要再次输入同样的认证信息,从而导致用户在同一个终端上需要频繁的输入同样的认证信息来登录不同的IMS应用系统。 Because of this, it will bring a make users feel inconvenient place: that is, if a user's permission or demand more, he is likely not only to log on IMS client, but also to log in to a portal (such as enterprise portals) system operation, in this case, the user will need to enter in the login authentication information when IMS customer end, you need to enter the same information again certified in time and log into the portal system, causing frequent user needs to enter the same on the same terminal authentication information to log into different IMS applications. 更严重的是,若IMS客户端中已经集成了部分门户网站的接口,在这种情况下,在IMS客户端里点击该门户网站的链接按钮时,同样需要再输入一次认证信息,从而严重降低了用户的使用体验。 More seriously, if the IMS client has integrated portal interface part, in this case, when you click the link button in the portal IMS client, the same need to re-enter the authentication information, thereby severely reducing the user experience. 发明内容本发明提供了一种实现门户网站单点登录的方法及IMS客户端,用以解决现有技术中用户在登录IMS客户端后若需要登录与该IMS客户端认证信息相同的门户网站时,需要再次输入认证信息的问题。 SUMMARY OF THE INVENTION The present invention provides a method for implementing the portal and single sign IMS clients, the prior art to solve the IMS client login user to log if the same IMS client authentication information to the portal , you need to enter authentication information problem again. 一种实现门户网站单点登录的方法,包括步骤:A、 用户登录IMS客户端后,IMS客户端利用自身配置文件中预先配置的门户网站地址和访问分支,向与IMS客户端认证信息相同的门户网站的认证门户发送该用户的iU正^清求;B、 IMS客户端收到认证门户返回的认证响应后,将用户密码加密后发往认证门户进4亍iU正;C、 若认证通过,则IMS客户端将门户网站返回的认证通过的cookie信息写入网页浏览器的cookie区。 A method for single sign portal implemented, comprising the steps of: A, IMS client user login, an IMS client address using the portal itself preconfigured profile and access branch, the same information to the IMS client authentication portal portal sends the user authentication iU ^ n clear request; B, after the IMS authentication client receives the authentication response returned by the gateway, user authentication password sent encrypted to the portal into the right foot 4 iU n; C, if the authentication , the IMS client will return the cookie information portal authentication cookie is written by your web browser. 所述步骤C后还包括步骤:D、 当用户通过IMS客户端登录所述门户网站或所述门户网站下的子门户网站时,网页浏览器将cookie区中记录的认证通过的cookie信息发送到网站服务器侧;E、 网站服务器将所述cookie信息重定向到所述认证门户,认证门户确定该用户已通过所述门户网站的认证,则将页面重定向到用户请求登录的网站上。 Step C comprises the further step of: D, when a user at the sub-portal IMS client logging in the portal or portals, web browser will send the cookie information in the cookie authentication area recorded to the server side; E, the web server will be redirected to the authentication cookie information portal, portal authentication determines that the user has been authenticated by the portal, will be redirected to the page on your site user login request. 所述步骤C中,IMS客户端在将门户网站返回的认证通过的cookie信息写入网页浏览器的cookie区的同时记录认证门户要求的最大认证间隔时长。 The step C, IMS client in the long interval maximum certification will record certification requirements at the same cookie information portal portal authentication returned by writing web browser cookie area. 所述IMS客户端根据最大认证间隔时长设置认证间隔时长,定时将用户密码发送到认证门户侧进行认证,获取更新了的认证通过的cookie信息,将其写入网页浏览器的cookie区,其中,所述认证间隔时长小于或等于最大认证间隔时长。 The IMS client length according to the maximum authentication interval length setting authentication interval timing transmitting user password to the authentication portal side authentication, acquires the updated cookie information authentication is passed, the write cookie region web browser, wherein long duration equal to or less than the maximum interval authentication the authentication interval. 所述步骤B中,将用户密码先经SHA1 ( Secure Hash Algorithm 1 ,安全哈希算法)加密,再经MD5 (Message-DigestAlgorithm 5,信息-摘要算法)加密。 The step B, the first user's password by SHA1 (Secure Hash Algorithm 1, Secure Hash Algorithm) encryption, then by MD5 - encrypted (Message-DigestAlgorithm 5, message digest algorithm). 一种IMS客户端,包括首次认证模块和加密模块,其中, An IMS client, including the first authentication module and the encryption module,

首次认证模块,在用户登录IMS客户端后,用于利用IMS客户端配置文件中预先配置的门户网站地址和访问分支,向与IMS客户端认证信息相同的门户网站的认证门户发送该用户的认证请求,并在收到认证响应后将加密后的用户密码发往认证门户进行认证,以及将门户网站返回的认证通过的cookie信息写入网页浏览器的cookie区;加密模块,用于对用户密码进行加密处理。 Authentication module for the first time, after the user logs IMS client to configure portal branch address and access files pre-configured using the IMS client sends the user authentication to the authentication portal with IMS client authentication the same information portal user password request and response encryption upon receipt of certification after the certification sent to portal authentication, and cookie cookie information portals zone will return certified by writing web browser; encryption module for user passwords encrypted. 还包括:定时认证模块,在认证通过后,用于以小于或等于门户网站的最大认证间隔时长为认证间隔时长,定时将用户密码发送到认证门户侧进行认证,以获取更新了的认证通过的cookie信息,并将其写入网页浏览器的cookie区。 Further comprising: a timing authentication module after the authentication, a long length of the authentication interval to the maximum authentication of less than or equal to the portal interval timing transmitting user password to the authentication portal side authentication, to obtain the updated authentication of cookie information, and write it in your web browser's cookie. 本发明所述技术方案中,用户登录IMS客户端后,IMS客户端向与IMS 客户端认证信息相同的门户网站的认证门户发送该用户的认证请求,在收到认证门户返回的认证响应后,将用户密码加密后发往认证门户进行认证,若认证通过,则将门户网站返回的认证通过的cookie信息写入网页浏览器的cookie 区,从而解决了用户在登录IMS客户端后若需要登录与该IMS客户端认证信息相同的门户网站时,需要再次输入认证信息的问题,减少了用户信息泄露的可能,让IMS客户端集成门户网站访问真正成为一种便利。 The aspect of the present invention, after the user logs in an IMS client, IMS client sends a user authentication request to the authentication client the same gateway to the IMS terminal authentication information portal, after receiving the authentication response returned by the authentication portal, the user password is encrypted sent to the authentication portal for authentication, if the authentication, cookie information portal will be returned by the authentication cookie is written by your web browser, so as to solve the user after logging IMS client and log in if necessary when the same IMS client authentication information portal, you need to enter authentication information problem again, reducing the possible disclosure of user information, so that IMS client integrated portal access to truly become a convenient. 进一步,IMS客户端在将门户网站返回的认证通过的cookie信息写入网页浏览器的cookie区的同时会记录认证门户要求的最大认证间隔时长,从而使得IMS客户端能够根据最大认证间隔时长设置认证间隔时长,定时将用户密码发送到认证门户侧进行认证,以获取更新了的认证通过的cookie信息,保证只要用户在线,便不会导致认证超时的情况发生,而若IMS客户端发生异常,也能在较短的时间内让认证信息失效以保护用户信息的安全。 Further, IMS client at the same time the cookie information portal returns certified by writing web browser cookie district will record a long time certification portal requirements of the largest certification intervals, so that the IMS client to long set the authentication according to the maximum certification interval when the interval length, the timing of sending the user's password to the authentication portal side authentication to get cookie information updated authentication to ensure that as long as the user is online, it will not lead to certification time-out occurs, and if abnormal IMS client occurs, let authentication information can be disabled to protect the security of user information in a short period of time. 附图说明图1为本发明实现门户网站单点登录的方法的流程图; 1 shows a flowchart of a method of single sign-portal implementation of the present invention;

图2为本发明IMS客户端的结构框图。 IMS client block diagram of FIG. 2 of the present invention.

具体实施方式 Detailed ways

下面将结合各个附图对本发明的具体实施过程做进一步详细的说明。 The various figures in conjunction with the following further detailed description of the specific embodiment of the process of the present invention. 请参阅图1,该图为本发明实现门户网站单点登录的方法的流程图,其主要实现过程为:步骤10、用户登录IMS客户端后,IMS客户端在IMS中的HSS (Home Subscriber Server,归属用户服务器)和GM ( Group Management,群组管理) 服务器中注册。 Please refer to FIG. 1, the picture shows a flowchart of the present invention achieves the portal single sign method, the main implementation process is: Step 10, after the user logs on an IMS client, an IMS client in the IMS HSS (Home Subscriber Server , Home Subscriber server) and GM (group management, group management) registered in the server. 步骤11、 IMS客户端利用在自身配置文件中预先配置的门户网站地址和访问分支,向与IMS客户端认证信息相同的门户网站的认证门户发送该用户的认证请求,所述认证请求中包含用户的URI (Uniform Resource Identifier,统一资源标识)和Nounce (随机数)获取请求,认证请求中的"UE"字段取1000 的值,表示本http流为开始认证的请求。 Step. 11, utilizing IMS client address and an access portal itself branches preconfigured profile, sending an authentication request to the user authentication with the IMS gateway same client authentication information portal, the user authentication request contains the URI (uniform resource identifier, uniform resource identifier) ​​and Nounce (random number) acquisition request, the authentication request "UE" field 1000 takes a value signifying the authentication http stream start request. 步骤12、 IMS客户端从认证门户返回的状态码为401的http流中取得认证门户分配的Nonce。 Step 12, IMS client returned from the gateway to the authentication http status code stream 401 acquires authentication portal Nonce allocated. 步骤13、 IMS客户端将用户密码先用SHA1加密算法加密后再经MD5加密算法加密,将加密后的用户密码与步骤12获得的Nonce —并发往认证门户进行认证,此时"UE"字段取1001的值,表示本http流已带上真正的认证信息。 Step 13, IMS client Nonce user password and the user password after the step of first with SHA1 encryption algorithm and then encrypted by the encryption algorithm MD5, the obtained encrypted 12 - and sent to the authentication portal authentication, this time "UE" field takes a value of 1001, this represents a real band http stream has the authentication information. 步骤14、若认证通过,则认证门户向IMS客户端返回状态码为200的http流。 Step 14, if the authentication is passed, the authentication portal to the IMS client return a status code stream 200 with http. 步骤15、 IMS客户端从认证门户返回的状态码为200的http流中取得认证通过的cookie信息并写入网页浏览器的cookie区中,所述cookie信息的内容中包括用户的URI及令牌Token等。 cookie region step 15, IMS client returns the status code from the authentication portal authentication cookie information acquired by the http stream 200 and writes the web browser, the cookie content information includes the user's URI and token Token and so on. 此后在Cookie有效期内用户可以直接访问中心门户而不用输入用户名和密码。 After that period in the Cookie user can enter a user name and password without direct access to the central portal. 本步骤中,IMS客户端在将门户网站返回的认证通过的cookie信息写入网 In this step, IMS client in the cookie information portal authentication returned by writing network

页浏览器的cookie区的同时需要记录认证门户要求的最大认证间隔时长。 Meanwhile cookie area of ​​the browser page requires long record authentication portal largest certification required interval. 本发明所述方法中,所述IMS客户端以认证门户要求的最大认证间隔时长为参考,将认证间隔时长设置为小于或等于最大认证间隔时长的值,IMS客户端按照该认证间隔时长的要求定时将用户密码发送到认证门户侧进行认证,认证的具体过程如上述步骤11至步骤15所述,IMS客户端在获取了更新的认证通过的cookie信息后,将其写入网页浏览器的cookie区,此过程在IMS客户端在线的情况下会以定时器的形式重复运行,以保证cookie的有效性也即IMS 客户端在在线的情况下认证的持续有效性,此过程中发送时的"UE"字段取值为1002,表示为定时^4'J发出的认证请求。 The method of the invention, when the IMS client to authenticate the gateway to the required maximum certified interval length as a reference, the authentication interval length is set to be longer value less than or equal to the maximum certified interval required IMS client duration in accordance with the authentication interval timing transmission side user password to the authentication portal authentication, authentication cookie specific process as the above-described steps 11 to 15, IMS client after acquiring the updated authentication cookie information, and writes the web browser District, this process will run repeatedly in the case of IMS clients online in the form of a timer, in order to ensure the effectiveness of cookie that is IMS client continued validity of the certificate in the case of online, sending this process. " UE "field value of 1002, expressed as the authentication request sent by a timing ^ 4'J. 步骤16、当用户通过IMS客户端登录所述门户网站或所述门户网站下的子门户网站时,网页浏览器将cookie区中记录的认证通过的cookie信息发送到网站服务器侧。 Step 16, when a user logs in the sub Portal Portal Portal or by the IMS client, a web browser will send the cookie information in the cookie authentication area recorded by the web server side. 步骤17、网站服务器将所述cookie信息重定向到所述认证门户,认证门户根据cookie信息的内容对该用户进行认证,若认证通过,执行步骤18,否则,执行步骤19。 Step 17, the web server will be redirected to the authentication cookie information portal, portal authentication to authenticate the user based on the contents of the cookie information, if authenticated, step 18, otherwise, step 19. 步骤18、认证门户将页面重定向到用户请求登录的网站页面上。 Step 18, the authentication portal page redirects users to a Web site page requests logged. 步骤19、认证门户将页面重定向到登录页面上,用户在登录页面中输入登录信息后,网站服务器再次将页面重定向到认证门户进行认证,若认证通过, 执行步骤18,否则重复执行本步骤。 Step 19, the authentication portal page will be redirected to the login page, after the user enters login information in the login page, the web server again redirected to the authentication portal page for authentication, if the authentication through, step 18, otherwise Repeat this step . 相应于本发明上述方法,本发明进而公开了一种IMS客户端,请参阅图2, 该图为本发明IMS客户端的结构框图,其主要包括首次认证模块、加密模块和定时认证模块,其中各个模块的主要作用如下:首次认证模块,在用户登录IMS客户端后,用于利用IMS客户端配置文件中预先配置的门户网站地址和访问分支,向与IMS客户端认证信息相同的门户网站的认证门户发送该用户的认证请求,并在收到认证响应后将加密后的用户密码发往认证门户进行认证,以及将门户网站返回的iU正通过的cookie信息写入网页浏览器的cookie区;加密模块,用于对用户密码进行加密处理,将用户密码先用SHA1加密算法加密后再经MD5加密算法加密;定时认证模块,在认证通过后,用于以小于或等于门户网站的最大认证间隔时长为认证间隔时长,定时将用户密码发送到认证门户侧进行认证, Corresponding to the above method of the present invention, the present invention further discloses an IMS client, refer to FIG. 2, a block diagram of the present invention, the IMS client of the graph, which includes the first authentication module, authentication encryption module and a timing module, wherein each the main role of the module are as follows: first authentication module, after the user logs IMS client for use IMS client configuration file pre-configured portal branch address and access to the same IMS client authentication information portal authentication portal sends an authentication request to the user, and the user password encrypted authentication portal will be sent to authenticate the authentication response is received, and will return the cookie information portal iU being written by the cookie district web browser; encryption means for encrypting the user password, the user password with the first encryption algorithm back via SHA1 encryption algorithm MD5; time authentication module after the authentication, the authentication is used for less than or equal to the maximum interval length portal when the authentication interval is long, the timing to send the user authentication password authentication portal side, 获取更新了的认证通过的cookie信息,并将其写入网页浏览器的cookie区。 Get updated certification through the cookie information, and write it in your Web browser's cookie. 明的精神和范围。 The spirit and scope of the Ming. 这样,倘若本发明的这些修改和变型属于本发明权利要求及其等同技术的范围之内,则本发明也意图包含这些改动和变型在内。 Thus, if these modifications and variations of the present invention fall within the claims of the invention and the scope of equivalents thereof, the present invention intends to include these modifications and variations.

Claims (6)

1、一种实现门户网站单点登录的方法,其特征在于,包括步骤: A、用户登录IMS即IP多媒体子系统客户端后,IMS客户端利用自身配置文件中预先配置的门户网站地址和访问分支,向与IMS客户端认证信息相同的门户网站的认证门户发送该用户的认证请求; B、IMS客户端收到认证门户返回的认证响应后,将用户密码加密后发往认证门户进行认证; C、若认证通过,则IMS客户端将门户网站返回的认证通过的cookie信息写入网页浏览器的cookie区。 1. A method for single sign portal implemented, characterized by comprising the step of: A, i.e. after the user logs IMS client IP Multimedia Subsystem, IMS client configuration file using its pre-configured address and an access portal branch sends an authentication request to the user authentication with the IMS gateway same client authentication information portal; B, IMS client after receiving an authentication response returned by the portal authentication, encrypting the user password sent to the authentication portal authentication; C, if authenticated, the IMS client will return the cookie information portal authentication cookie is written by your web browser.
2、 如权利要求l所述的方法,其特征在于,所述步骤C后还包括步骤:D、 当用户通过IMS客户端登录所述门户网站或所述门户网站下的子门户网站时,网页浏览器将cookie区中记录的认证通过的cookie信息发送到网站服务器侧;E、 网站服务器将所述cookie信息重定向到所述认证门户,认证门户确定该用户已通过所述门户网站的认证,则将页面重定向到用户请求登录的网站上。 2. The method of claim l, wherein said step C further comprising the step of: D, when a user at the sub-portal IMS client logging in the portal or portals, web send the cookie to the browser cookie information recorded in the authentication region to the web server side; E, the web server to be redirected to the authentication cookie information portal, the portal determines that the user authentication has been authenticated by the portal, You will be redirected to the page requested by the user to log on the website.
3、 如权利要求1或2所述的方法,其特征在于,所述步骤C中,IMS客户端在将门户网站返回的认证通过的cookie信息写入网页浏览器的cookie区的同时记录认证门户要求的最大认证间隔时长。 3. A method as claimed in claim 1 or claim 2, wherein the step C, while the IMS client returned cookie information portal authentication writing web browser cookie authentication gateway area is recorded long time interval required maximum certification.
4、 如权利要求3所述的方法,其特征在于,所述IMS客户端根据最大认证间隔时长设置认证间隔时长,定时将用户密码发送到认证门户侧进行认证, 获取更新了的认证通过的cookie信息,将其写入网页浏览器的cookie区,其中,所述认证间隔时长小于或等于最大认证间隔时长。 4. The method as claimed in claim 3, wherein said IMS client length according to the duration to set the authentication interval maximum authentication interval, timing transmitting user password to the authentication portal side authentication, acquires cookie updated authentication of information, writes the web browser's cookie, wherein the length is less than or equal to the maximum length of the interval when the authentication of the authentication interval.
5、 如权利要求l所述的方法,其特征在于,所述步骤B中,将用户密码先经SHA1即安全哈希算法加密,再经MD5即信息-摘要算法加密。 5. The method of claim l, wherein the step B, via the user password to secure i.e. SHA1 hash algorithm, i.e., MD5 and then by information - digest encryption algorithm.
6、 一种IMS客户端,其特征在于,包括首次认证模块和加密模块,其中, 首次认证模块,在用户登录IMS客户端后,用于利用IMS客户端配置文件中预先配置的门户网站地址和访问分支,向与IMS客户端认证信息相同的门户网站的认证门户发送该用户的认证请求,并在收到认证响应后将加密后的用户密码发往认证门户进行认证,以及将门户网站返回的认证通过的cookie信息写入网页浏览器的cookie区;加密模块,用于对用户密码进行加密处理。 6, an IMS client, characterized by, comprising a first authentication module and an encryption module, wherein the first authentication module, the user logs in an IMS client, for utilizing the address portal profile IMS client and preconfigured access branch, sent to the authentication portal with IMS client authentication the same information portal authentication request of the user, and the user after receipt of the encrypted password authentication response will be sent to the authentication portal authentication, as well as the return of the portal cookie information written certification by a web browser cookie zone; an encryption module for encrypting user passwords. 7、如权利要求6所述的IMS客户端,其特征在于,还包括: 定时认证模块,在认证通过后,用于以小于或等于门户网站的最大认证间隔时长为认证间隔时长,定时将用户密码发送到认证门户侧进行认证,以获取更新了的认证通过的cookie信息,并将其写入网页浏览器的cookie区。 7, as claimed in IMS client in claim 6, characterized in that, further comprising: a timing authentication module after the authentication, is used at the maximum authentication of less than or equal to the portal long interval length of the authentication interval, the timing of the user password to the authentication portal side authentication to obtain updated information on authentication cookie, the cookie and write it to your web browser.
CN 200710143965 2007-08-16 2007-08-16 A method for single point login of portal website and IMS client CN101127603B (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN 200710143965 CN101127603B (en) 2007-08-16 2007-08-16 A method for single point login of portal website and IMS client

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN 200710143965 CN101127603B (en) 2007-08-16 2007-08-16 A method for single point login of portal website and IMS client

Publications (2)

Publication Number Publication Date
CN101127603A true CN101127603A (en) 2008-02-20
CN101127603B CN101127603B (en) 2010-08-04

Family

ID=39095540

Family Applications (1)

Application Number Title Priority Date Filing Date
CN 200710143965 CN101127603B (en) 2007-08-16 2007-08-16 A method for single point login of portal website and IMS client

Country Status (1)

Country Link
CN (1) CN101127603B (en)

Cited By (23)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
WO2009155765A1 (en) * 2008-06-23 2009-12-30 中兴通讯股份有限公司 Method, system and device for forking authentication
CN101827112A (en) * 2010-05-25 2010-09-08 中兴通讯股份有限公司 Method and system for recognizing client software through network authentication server
WO2011035579A1 (en) * 2009-09-24 2011-03-31 中兴通讯股份有限公司 Authentication method, system and terminal for wireless local area network authentication and privacy infrastructure (wapi) terminal accessing ip multimedia subsystem (ims) network
WO2011063612A1 (en) * 2009-11-26 2011-06-03 中国移动通信集团公司 Authentication system, method and device
CN101262350B (en) 2008-04-23 2012-02-08 杭州华三通信技术有限公司 Portal method for implementing a hot backup, system and equipment
CN102347964A (en) * 2010-07-27 2012-02-08 腾讯科技(深圳)有限公司 Method of logging in website, system, information gathering platform and website
CN102404392A (en) * 2011-11-10 2012-04-04 山东浪潮齐鲁软件产业股份有限公司 Integration type registering method for web application or website
CN102447670A (en) * 2010-09-30 2012-05-09 鸿富锦精密工业(深圳)有限公司 Account verification method
CN102591889A (en) * 2011-01-17 2012-07-18 腾讯科技(深圳)有限公司 Method and device for assisting user input based on browser of mobile terminal
WO2012129985A1 (en) * 2011-03-29 2012-10-04 中兴通讯股份有限公司 Method and system for single sign-on
CN102739678A (en) * 2012-06-28 2012-10-17 用友软件股份有限公司 Single sign-on processing system and single sign-on processing method
CN101741817B (en) 2008-11-21 2013-02-13 中国移动通信集团安徽有限公司 System, device and method for multi-network integration
CN103179134A (en) * 2013-04-19 2013-06-26 中国建设银行股份有限公司 Single sign on method and system based on Cookie and application server thereof
CN103200159A (en) * 2012-01-04 2013-07-10 中国移动通信集团公司 Network access method and equipment
CN103379105A (en) * 2012-04-23 2013-10-30 金蝶软件(中国)有限公司 Access method and system for enterprise information system in application platform
CN103491062A (en) * 2012-06-13 2014-01-01 北京新媒传信科技有限公司 Method and device for generating password
CN103647746A (en) * 2013-11-01 2014-03-19 北京奇虎科技有限公司 User login method, device and system
CN104065674A (en) * 2013-03-18 2014-09-24 联想(北京)有限公司 Terminal device and information processing method
CN104270391A (en) * 2014-10-24 2015-01-07 中国建设银行股份有限公司 Method and device for processing access request
CN104917728A (en) * 2014-03-13 2015-09-16 盈止道明(北京)科技发展有限公司 Implementation method of cross-terminal single sign-on system
CN105812314A (en) * 2014-12-29 2016-07-27 北京新媒传信科技有限公司 Method for logging in Internet application program by user and unified authentication platform
CN106254325A (en) * 2013-03-25 2016-12-21 北京奇虎科技有限公司 The display packing of website authentication information and browser
CN106716960A (en) * 2014-08-08 2017-05-24 艾丹迪商贸公司 Method and system for authenticating a user

Family Cites Families (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US7376740B1 (en) 2000-06-13 2008-05-20 Microsoft Corporation Phone application state management mechanism
CA2327078C (en) 2000-11-30 2005-01-11 Ibm Canada Limited-Ibm Canada Limitee Secure session management and authentication for web sites
CN1152333C (en) 2002-07-31 2004-06-02 华为技术有限公司 Method for realizing portal authentication based on protocols of authentication, charging and authorization
CN1314251C (en) 2004-01-05 2007-05-02 中兴通讯股份有限公司 Comprehensive business platform and its business flow path control method
CN100574193C (en) 2006-10-31 2009-12-23 华为技术有限公司 Method and system for switching third party landing and third party website and service server

Cited By (32)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101262350B (en) 2008-04-23 2012-02-08 杭州华三通信技术有限公司 Portal method for implementing a hot backup, system and equipment
US8914861B2 (en) 2008-06-23 2014-12-16 Zte Corporation Authentication method and authentication system based on forking, and forking authentication device
WO2009155765A1 (en) * 2008-06-23 2009-12-30 中兴通讯股份有限公司 Method, system and device for forking authentication
CN101296085B (en) 2008-06-23 2011-07-13 中兴通讯股份有限公司 Authentication method and system based on bifurcation, and bifurcation authentication system
CN101741817B (en) 2008-11-21 2013-02-13 中国移动通信集团安徽有限公司 System, device and method for multi-network integration
WO2011035579A1 (en) * 2009-09-24 2011-03-31 中兴通讯股份有限公司 Authentication method, system and terminal for wireless local area network authentication and privacy infrastructure (wapi) terminal accessing ip multimedia subsystem (ims) network
WO2011063612A1 (en) * 2009-11-26 2011-06-03 中国移动通信集团公司 Authentication system, method and device
US8959343B2 (en) 2009-11-26 2015-02-17 China Mobile Communications Corporation Authentication system, method and device
CN101827112B (en) * 2010-05-25 2016-05-11 中兴通讯股份有限公司 The method and system of recognizing client software through network authentication server
CN101827112A (en) * 2010-05-25 2010-09-08 中兴通讯股份有限公司 Method and system for recognizing client software through network authentication server
CN102347964A (en) * 2010-07-27 2012-02-08 腾讯科技(深圳)有限公司 Method of logging in website, system, information gathering platform and website
CN102447670A (en) * 2010-09-30 2012-05-09 鸿富锦精密工业(深圳)有限公司 Account verification method
CN102591889A (en) * 2011-01-17 2012-07-18 腾讯科技(深圳)有限公司 Method and device for assisting user input based on browser of mobile terminal
WO2012097658A1 (en) * 2011-01-17 2012-07-26 腾讯科技(深圳)有限公司 Method and apparatus for assisting user input based on mobile terminal browser
WO2012129985A1 (en) * 2011-03-29 2012-10-04 中兴通讯股份有限公司 Method and system for single sign-on
CN102404392A (en) * 2011-11-10 2012-04-04 山东浪潮齐鲁软件产业股份有限公司 Integration type registering method for web application or website
CN103200159B (en) * 2012-01-04 2016-06-22 中国移动通信集团公司 A kind of Network Access Method and equipment
CN103200159A (en) * 2012-01-04 2013-07-10 中国移动通信集团公司 Network access method and equipment
CN103379105A (en) * 2012-04-23 2013-10-30 金蝶软件(中国)有限公司 Access method and system for enterprise information system in application platform
CN103491062A (en) * 2012-06-13 2014-01-01 北京新媒传信科技有限公司 Method and device for generating password
CN102739678B (en) * 2012-06-28 2015-09-02 用友软件股份有限公司 Single-sign-on treatment system and single-sign-on processing method
CN102739678A (en) * 2012-06-28 2012-10-17 用友软件股份有限公司 Single sign-on processing system and single sign-on processing method
CN104065674A (en) * 2013-03-18 2014-09-24 联想(北京)有限公司 Terminal device and information processing method
CN106254325B (en) * 2013-03-25 2019-08-02 北京奇虎科技有限公司 The display methods and browser of website authentication information
CN106254325A (en) * 2013-03-25 2016-12-21 北京奇虎科技有限公司 The display packing of website authentication information and browser
CN103179134A (en) * 2013-04-19 2013-06-26 中国建设银行股份有限公司 Single sign on method and system based on Cookie and application server thereof
CN103647746A (en) * 2013-11-01 2014-03-19 北京奇虎科技有限公司 User login method, device and system
CN104917728A (en) * 2014-03-13 2015-09-16 盈止道明(北京)科技发展有限公司 Implementation method of cross-terminal single sign-on system
CN106716960A (en) * 2014-08-08 2017-05-24 艾丹迪商贸公司 Method and system for authenticating a user
CN104270391A (en) * 2014-10-24 2015-01-07 中国建设银行股份有限公司 Method and device for processing access request
CN105812314A (en) * 2014-12-29 2016-07-27 北京新媒传信科技有限公司 Method for logging in Internet application program by user and unified authentication platform
CN105812314B (en) * 2014-12-29 2019-11-29 北京新媒传信科技有限公司 A kind of user logs in the method and unification authentication platform of internet application

Also Published As

Publication number Publication date
CN101127603B (en) 2010-08-04

Similar Documents

Publication Publication Date Title
Tootoonchian et al. Lockr: better privacy for social networks
EP1703694B1 (en) Trusted third party authentication for web services
AU2009215815B2 (en) Systems and methods for secure workgroup management and communication
CA2619420C (en) Distributed single sign-on service
US8826021B2 (en) System for providing session-based network privacy, private, persistent storage, and discretionary access control for sharing private data
CA2475216C (en) Method and system for providing third party authentification of authorization
CN100581103C (en) Securely processing of client credentials used for WEB-based access to resources
CN101764803B (en) Efficient and secure authentication of computing systems
CN101027676B (en) A personal token and a method for controlled authentication
US6993596B2 (en) System and method for user enrollment in an e-community
CN1697367B (en) A method and system for recovering password protected private data via a communication network without exposing the private data
CN101421968B (en) Authentication system for networked computer applications
JP5635133B2 (en) Secure dynamic privilege delegation
JP4867663B2 (en) Network communication system
US7100054B2 (en) Computer network security system
CN101103630B (en) Method and system for authorizing multimedia multicasting
CN1323508C (en) A Single Sign On method based on digital certificate
US8532620B2 (en) Trusted mobile device based security
US8825999B2 (en) Extending encrypting web service
JP5694344B2 (en) Authentication using cloud authentication
US9191394B2 (en) Protecting user credentials from a computing device
US20020144119A1 (en) Method and system for network single sign-on using a public key certificate and an associated attribute certificate
US20030177351A1 (en) System and method for single session sign-on with cryptography
TWI380663B (en) Method and system for secure binding register name identifier profile
US7752443B2 (en) Method and system for a single-sign-on operation providing grid access and network access

Legal Events

Date Code Title Description
C06 Publication
C10 Request of examination as to substance
C14 Granted