CN101582216B - Method for inputting and authenticating passwords and device for inputting and authenticating passwords - Google Patents

Method for inputting and authenticating passwords and device for inputting and authenticating passwords Download PDF

Info

Publication number
CN101582216B
CN101582216B CN200910086723.7A CN200910086723A CN101582216B CN 101582216 B CN101582216 B CN 101582216B CN 200910086723 A CN200910086723 A CN 200910086723A CN 101582216 B CN101582216 B CN 101582216B
Authority
CN
China
Prior art keywords
password
array
symbol
relative position
input
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Expired - Fee Related
Application number
CN200910086723.7A
Other languages
Chinese (zh)
Other versions
CN101582216A (en
Inventor
不公告发明人
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Individual
Original Assignee
Individual
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Individual filed Critical Individual
Priority to CN200910086723.7A priority Critical patent/CN101582216B/en
Publication of CN101582216A publication Critical patent/CN101582216A/en
Application granted granted Critical
Publication of CN101582216B publication Critical patent/CN101582216B/en
Expired - Fee Related legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Images

Abstract

The invention provides a method for inputting and authenticating passwords and a device for inputting and authenticating passwords. The method for inputting passwords comprises the following steps of:displaying a password array comprising a plurality of password signs; receiving move instructions input by a user; changing the position of the password signs in the password array according to the m ove instructions; receiving confirmation instruction input by the user and determining the password array, the position of which is changed; sending the confirmed password array. By using the method and the device provided by the invention, when inputting the passwords, the user sets the password signals in the password array into a correct arrangement relation according to the provision of a system; but the password array comprises many signs, in every moment, multiunit signs always exist and have the same arrangement relation, a spectator can not judge which unit comprises real passwords to be input; and simultaneously when the passwords are input, selection approaches such as keyboards, mouse, fingers and the like are not needed to touch the passwords, thus reducing the opportunity of the password leakage.

Description

A kind of password input, authentication method and password input, authenticate device
Technical field
The invention belongs to areas of information technology, particularly relate to a kind of password input, authentication method and password input, authenticate device that is applied to password input and authentication.
Background technology
Along with the development of modern society's networking, informationization, electronization, utilize the application such as information technology is handled official business, concluded the business, shopping, amusement to present flourish trend, information technology has been goed deep into people's life.Information technology application adopts password to carry out identifying user identity mostly, and various virus, wooden horse, Network Sniffing, camera such as peep at the means, to conventional password input and the mode of checking, bring very large safety problem, also actually caused very large economic loss, when this makes user use information technology, password security has been had to very large misgivings.Can say, the safety problem of password input and checking has hindered the process of Informatization Development.
Under traditional password input mode, by knock the button that password is corresponding on keyboard, input password, at this moment hacker can monitor keyboard by trojan horse program and steal password.Someone proposed to adopt the mode of soft keyboard input afterwards, at this moment have again trojan horse program can pass through intercepting internal memory, or intercept network package was stolen password.The improved form of soft keyboard is to insert an intermediate layer mapping table, by reverse conversion, at server end, calculates original password, at this moment occurs again the wooden horse of capture screen snapshot, and the safety of password still can not be guaranteed.Health near peeping, is peeped by the mode of camera video recording in addition, with telescope, peep etc., and be also the common means of stealing password.Some technical scheme provides Anti-peeping device, and such as covering, and thief can use the means of pad pasting on keyboard, records the vestige of finger touch with pad pasting, or pastes false keyboard on original keyboard.Trace it to its cause, password can be stolen, and is because in the process of password input, password itself has the approach of exposure: pointer touching when finger touches, mouse are clicked when knocking keyboard, thus allow thief have an opportunity to steal.
Also there are at present the dual factors secure authentication technologies such as dynamic password card, dynamic password token, by the basis of static password authentication, increase each dynamic password authentication changing, to improve fail safe.On the basis of state password authentication, increase each dynamic password authentication changing, to improve fail safe.The fail safe of dynamic password technology increases than static password really, but increased the input of terminal equipment, implementation cost is higher, user need to use different terminal equipments in different application scenarios in addition, such as there is different tokens in different banks, this must cause user to have the skinny devices such as a lot of password cards or token, carries inconvenience, not manageability.And, although dynamic password changes frequently, but still to input with keyboard while using, the means of stealing for static password can be stolen dynamic password completely, therefore dynamic password still has the chance being stolen in input process, dynamic password is generally effective within one minute at present, steals and uses dynamic password, or user identity has been caused to threat within this minute.
Also have a kind of technology with eyes input password abroad, by eye gaze password, input, but implementation cost is too high.
summary of the invention
The invention provides a kind of password input method, described method comprises: show password array, described password array is comprised of a plurality of password symbol; Receive the move of user's input, according to described move, change the relative position of described these password symbol in described password array, described relative position comprises angular dependence, neighbouring or left and right is adjacent; Receive the confirmation instruction of user's input, confirm to change the password array after relative position; Send the password array after confirming.
The present invention also provides a kind of command identifying method, and described method comprises: receive password array; Check that whether the password symbol of mating with preset password in described password array is in correct position.
The present invention also provides a kind of password input apparatus, and described device comprises: array display unit, and for showing password array, described password array is comprised of a plurality of password symbol; Array mobile unit, for receiving the move of input, changes the relative position of described these password symbol in described password array according to described move, and described relative position comprises angular dependence, neighbouring or left and right is adjacent; Array confirmation unit, for receiving the confirmation instruction of input, confirms to change the password array after relative position; Array transmitting element, for sending the password array after confirmation.
The present invention also provides a kind of password authentication device, and described device comprises: array received unit, and for receiving password array, described password array is comprised of a plurality of password symbol; Array authentication ' unit, checks that whether the password symbol of mating with preset password in described password array is in correct position.
Beneficial effect of the present invention is: use method of the present invention and device, when operator inputs password, by the password symbol in the regulation password array of system, be set to correct Rankine-Hugoniot relations, and password array comprises many symbols, at each constantly, always there are many group codes to have identical Rankine-Hugoniot relations, onlooker can know that how to arrange is correct arrangement, but the symbol that meets correct arrangement in the password array that he sees has many groups, onlooker cannot judge and in which group, comprised the password that really will input, and during due to input password, do not need to pass through keyboard, mouse, the selection approaches such as finger are removed " touching " password, thereby reduced the chance that password leaks.
accompanying drawing explanation
In order to be illustrated more clearly in the embodiment of the present invention or technical scheme of the prior art, to the accompanying drawing of required use in embodiment or description of the Prior Art be briefly described below, apparently, accompanying drawing in the following describes is only some embodiments of the present invention, for those of ordinary skills, do not paying under the prerequisite of creative work, can also obtain according to these accompanying drawings other accompanying drawing.
Fig. 1 is the flow chart of password input method in the embodiment of the present invention;
Fig. 2 is the password array input schematic diagram in the embodiment of the present invention;
Fig. 3 is the flow chart of password input method in the embodiment of the present invention;
Fig. 4 is the flow chart of password input method in the embodiment of the present invention;
Fig. 5 is the flow chart of password input method in the embodiment of the present invention;
Fig. 6 is the flow chart of password input method in the embodiment of the present invention;
Fig. 7 is the flow chart of command identifying method in the embodiment of the present invention;
Fig. 8 is the flow chart of command identifying method in the embodiment of the present invention;
Fig. 9 is the flow chart of command identifying method in the embodiment of the present invention;
Figure 10 is the structure chart of password input apparatus in the embodiment of the present invention;
Figure 11 is the structure chart of password input apparatus in the embodiment of the present invention;
Figure 12 is the structure chart of password authentication device in the embodiment of the present invention;
Figure 13 is the structure chart of password authentication device in the embodiment of the present invention.
embodiment
Below in conjunction with the accompanying drawing in the embodiment of the present invention, the technical scheme in the embodiment of the present invention is clearly and completely described, obviously, described embodiment is only the present invention's part embodiment, rather than whole embodiment.Embodiment based in the present invention, those of ordinary skills, not making the every other embodiment obtaining under creative work prerequisite, belong to the scope of protection of the invention.
Embodiment mono-:
As shown in Figure 1, the embodiment of the present invention provides a kind of password input method, and described method comprises:
Step S101: show password array, described password array is comprised of a plurality of password symbol;
Step S103: receive the move of user's input, change the position of described these password symbol in described password array according to described move;
Step S105: receive the confirmation instruction of user's input, confirm to change the password array behind position;
Step S107: send the password array after confirming.
When in above-mentioned steps S101, user starts to input password, password input apparatus generates password array and is presented on its display unit, and described password array is comprised of a plurality of password symbol, comprising the symbol of composition user password.Password symbol password symbol collection up to specification in described password array, be the password symbol set that user that the password symbol that shows in described password array belongs to regulation can select when password is set, this set can be wherein one or more the combination of letter, numeral, Chinese character, picture.The display format of password array can be matrix, annular, and various 2 dimensions such as ball array and 3 dimension arrays, can carry out random alignment by password symbol during demonstration.For ease of understanding, following examples be take the password array of two-dimensional matrix form and are described as example.
In step S103, user watches the password array of demonstration, input move, the position of the password symbol in change password array.Each password symbol in password array can be moved to change its position, and user moves to suitable position according to the position relationship of expection by password symbol.Here " position relationship of expection " refers to the relative position relation between password symbol in password array, sees intuitively, can be preferably as " to angular dependence ", " neighbouring ", " left and right is adjacent " etc.As shown in Figure 2, 201 is rectangle password array, array comprises character 1 to 9, 2021 to 2026 is corresponding to each row of matrix or the displacement button of each row, above-mentioned displacement button can be the virtual push button in entity button or display, user inputs corresponding move by pressing or click above-mentioned displacement button, the password symbol of controlling in password array changes position, for example click displacement button 2024, password symbol " 8 in the first row in array, 6, 4 " position will move to right successively, last password symbol " 4 " will recycle first of present this row, the first row of described password array will become " 4, 8, 6 ".Suppose that user password is " 12 ", the position relationship of expection is " 1 and 2 is neighbouring ", so the character in password array " 1 " and character " 2 " are moved to neighbouring state, can confirm and send this password array to password authentication device, complete password input, concrete operations are for example: press displacement button 2026 once or 2025 and by load button 2027, can confirm and send the password array after movement after twice, complete the input of password.While sending input results, send whole password array, rather than certain character of user's input, password authentication device receives after the password array of user's input, according to the position relationship of expection and default user password, can carry out password authentication.
Password array in the present embodiment and displacement button and load button are not in order to limit the present invention, and the form of password array and the displacement shift function of button and the confirmation function of load button can be carried out different settings as required.
The beneficial effect of the present embodiment is: when operator inputs password, by the password symbol in the regulation password array of system, be set to correct Rankine-Hugoniot relations, and password array comprises many symbols, at each constantly, always there are many group codes to have identical Rankine-Hugoniot relations, onlooker can know that how to arrange is correct arrangement, but the symbol that meets correct arrangement in the password array that he sees has many groups, onlooker cannot judge and in which group, comprised the password that really will input, and during due to input password, do not need to pass through keyboard, mouse, the selection approaches such as finger are removed " touching " password, thereby reduced the chance that password leaks.
Embodiment bis-:
A upper embodiment can realize with password array input multidigit password, therefore can be with the symbol that forms password the position cross-reference in password array, to meet the position relationship of expection.As shown in Figure 3, in further embodiment of this invention, the difference of step S105 ' and step S105 is, in step S105 ', except receiving the confirmation instruction of user's input, confirms that the password array changing behind position also comprises outward: receive that user arranges with reference to password symbol.The difference of step S107 ' and step S107 is, also sends described with reference to password symbol when sending the password array after confirming in step S107 '.The present embodiment is only inputted a password with a password array, after confirming password array, select one with reference to password symbol and by confirming with reference to password symbol load button 2029, can by mouse click or the mode such as finger presses touch-screen select in password array with reference to password symbol.As Fig. 2, suppose that user password is " 1 ", the position relationship of supposing expection is " neighbouring ", when hope input " 1 ", can after confirming password array, click " 4 " and press again load button 2029, thereby selected " 4 " conduct with reference to password symbol, because " 4 " and " 1 " position relationship in confirmed password array meets " neighbouring " relation of expection.When sending password array, need to send selected with reference to password symbol simultaneously.
Embodiment tri-:
Refer to Fig. 4 and Fig. 5, further in further embodiment of this invention, step S105 or step S105 ' comprise step S106 afterwards: judge whether to receive and inputted instruction, if not returning to step S103, if it is carry out step S107 or step S107 ', a plurality of to confirm " password arrays " or " password array and with reference to password symbol ", these " password arrays " of confirming or " password array and with reference to password symbol " have precedence, " the password array " of each confirmation or " password array and with reference to password symbol " have a section of same order for inputting password.Step S107 or step S107 ' further comprise: described a plurality of " the password arrays " after send confirming or " password array and with reference to password symbol ".When password is long, can on the basis of above-described embodiment, password be divided into multistage, input successively in order each section.
If the length of each section is more than or equal to two, can confirm a plurality of password arrays with the method circulation of embodiment mono-.The password of supposing user is " 123456 ", can use the method for above-described embodiment one, divide three inputs, input successively " 12 ", " 34 ", " 56 ", confirm 3 password arrays, each mobile good password array is by a load button 2027 (as shown in Figure 2), when password input apparatus receives by the confirmation instruction of 2027 generations by the password array being identified buffer memory sequentially.Input rear password input apparatus and received and press input and complete the confirmation instruction that button 2028 (as shown in Figure 2) produces, sent described a plurality of password arrays.If the result of segmentation is that other password sections of Length Ratio of final stage are little, other symbols in available password replace, concrete replacement method can be: the first place that user password is considered as in logic joins, with the first password, be connected on after the password of end position, final stage password is supplied identical with other password segment length, for example user's password is " 12345 ", by two segmentations of each input, be " 12 ", " 34 ", " 5 ", two of final stage less thaies, are regarded as " 51 " and input while inputting.It should be noted that, if the password array shown in employing Fig. 2, cannot input one section of password with identical characters with a password array, because in the password array shown in Fig. 2, each password symbol only occurs once, while having the symbol of repetition in one section of password will inputting, cannot carry out position reference.This is the restriction of the example password array generation of the present embodiment, but not restriction of the present invention, password symbol identical in password array repeats, it is one section of password with replicator of available password array input, such as each symbol occurs twice in password array, while having the password symbol of two repetitions in one section of password, also can input.
If only have one to carry out segmentation according to the length of each section of password, can adopt the method circulation of embodiment bis-to confirm a plurality of " password arrays and with reference to password symbol ".The password of supposing user is " 1234 ", can use the method for above-described embodiment two, divide four inputs, confirm 4 password arrays and with reference to password symbol, each mobile good password array is by a load button 2027 (as shown in Figure 2), when password input apparatus receives by the confirmation instruction of 2027 generations by the password array being identified buffer memory sequentially, then select with reference to password symbol and by 2029, when password input apparatus receives by the confirmation instruction of 2029 generations by be identified with reference to password symbol also buffer memory sequentially, having inputted rear password input apparatus receives and presses input and complete the confirmation instruction that button 2028 (as shown in Figure 2) produces, send described a plurality of " password array and with reference to password symbol ".
Embodiment tetra-:
The password array that shows in above-described embodiment and send is identical, in another embodiment of the present invention, in order further to improve safe class, on above-described embodiment basis, can before step S101, comprise step S100: the password symbol mapping table that receives password array and described password array.The method of embodiment mono-of take is example, as shown in Figure 6, comprises step S100 before step S101: the password symbol mapping table that receives password array and described password array.Described step S107 further comprises: the password array after confirming is shone upon with described password symbol mapping table, send the password array after mapping.
The present embodiment is shown to user by the password array receiving from password authentication device, described password symbol mapping table has been stipulated the password symbol of demonstration and the corresponding relation between the password symbol of transmission, such as " 1 " correspondence " a ", be shown as so the password symbol of " 1 ", when sending password array, with " a ", replace.
The method that the method for the present embodiment also can embodiment bis-, three provides, for basis, repeats no more herein.
Embodiment five:
As shown in Figure 7, the present embodiment provides a kind of command identifying method, and described method comprises:
Step S201: receive password array, described password array is comprised of a plurality of password symbol;
Step S203: check that whether the password symbol of mating with preset password in described password array is in correct position.
The beneficial effect of the present embodiment is: the method for application the present embodiment, utilize the whole password array receiving to carry out password authentication, when user input port is made, do not need to remove " touching " password by selection approaches such as keyboard, mouse, fingers, thereby reduced the chance that password leaks.Password array comprises many symbols, comprising the symbol in user password, also comprise the not symbol in user password, at each constantly, always there are many group codes to have identical Rankine-Hugoniot relations, onlooker can know that how to arrange is correct arrangement, but the symbol that meets correct arrangement in the password array that he sees has many groups, and onlooker cannot judge and in which group, comprised the password that really will input.
Concrete example is taken a step and is checked that the password symbol of mating with preset password in described password array is whether in the method for correct position in rapid S203 below.Here " correct position " refers to the relative position relation between password symbol, sees intuitively, can be preferably as " to angular dependence ", " neighbouring ", and " left and right is adjacent " etc., can be also " line number adds 1, and row number add 2 " such coordinate relation.
(1). check that whether the relative position between the password symbol of mating with preset password in password array is correct: the relative position relation of having preset regulation in password authentication device; While authenticating in step S203, check the position of preset password symbol in password array relative position relation whether up to specification, with this, judge whether authentication is passed through.The relative position relation of supposing regulation is " neighbouring ", user password is " 13 ", and after receiving password array, whether judgement " 1 " and " 3 " meets the position relationship of " neighbouring " in the password array of receiving, if met, authentication is passed through, and does not meet authentification failure.Concrete determination methods can be: each symbol in password array has a coordinate that represents its position, with line number and the row number at its place, represents; " neighbouring " requires the row of two symbols number identical, and line number differs 1.As shown in Figure 2, the coordinate of " 1 " is wherein (2,3), the coordinate of " 3 " is (3,3), and both row are number identical, the line number of " 1 " is less by 1 than the line number of " 3 ", can judge " 1 " and " 3 " neighbouring in this password array, and " 1 " is on " 3 ".The symbol of relative position relation up to specification in password array can also be enumerated out, whether judgement has wherein comprised default user password, as Fig. 2, the password symbol that meets " neighbouring " has a lot of groups such as " 89 ", " 67 ", " 72 ", " 13 ", comprising " 13 ", therefore authentication is passed through.
If the password array shown in employing Fig. 2, with two above passwords of an array checking, require the password symbol in each password section of default password not repeat, because in the password array shown in Fig. 2, each password symbol only occurs once, while having the symbol of repetition in one section of password, cannot carry out position reference.While generating password array, identical password symbol repeats in password array, can solve the problem that preset password symbol can not repeat, such as each password symbol occurs twice in password array, while having the symbol of two repetitions in one section of password, also can verify.And if each password symbol occurs twice in password array, when one section of checking does not comprise the password of repetition password symbol, as long as (each occurs twice two repetition password symbol corresponding in password array, totally four symbols) there is one group of relative position that meets regulation, checking can be passed through, the password of still take is example as " 13 ", in password array, " 1 " and " 3 " respectively occurs twice, for " 1 " is conveniently divided in statement, " 3 ", " 1 ' ", " 3 ' ", " as long as 13 ", " 1 ' 3 ", " 13 ' ", in " 1 ' 3 ' " four combinations, there is one to meet " neighbouring " relation, authentication can be passed through.
(2). check in password array with the password symbol of preset password coupling with corresponding whether correct with reference to the relative position between password symbol: in password authentication device, preset the relative position relation of stipulating; In step S201, when receiving password array, also received corresponding to password symbol; In step S203, check the password symbol of mating with preset password in password array and with reference to the relative position relation whether up to specification of the relative position between password symbol.Be with the difference of method (1), method (1) is the mutual reference in position in password array by the password symbol in preset password, therefore requires password to have two at least.If password only has one, need to utilize password input apparatus for password array provide with reference to password symbol, one that receives that password array receives simultaneously with reference to password symbol.For example, when receiving password array as shown in Figure 2 201, receive the reference marks " 4 " of this password array 201, because " 4 " and " 1 " position relationship in password array position relationship up to specification, for example " neighbouring " relation, can judge password symbol " 1 " input correct.
(3). check the password symbol of mate with preset password in password array and one default whether correct with reference to the relative position between password symbol: in password authentication device, preset the relative position relation of stipulating, also preset one with reference to password symbol simultaneously; While authenticating in step S203, judge the password symbol of mating with preset password in password array and above-mentioned default with reference to the position relationship whether up to specification of the relative position between password symbol.With respect to method (2), in this method, password authentication device has been preset one with reference to password symbol, thereby need to not receive with reference to password symbol from password input apparatus.
If the password array shown in employing Fig. 2, require default not occurring with reference to password symbol in default password, because each password symbol only occurs once in the password array shown in Fig. 2, if default occurs in default password with reference to password symbol, while verifying this password, cannot carry out position reference.
Embodiment six:
As shown in Figure 8, the difference of step S201 ' and step S201 is, step S201 ' further comprises: receive a plurality of password arrays, between described these password arrays, have precedence.Step S203 ' is with the difference of step S203, step S203 ' further comprises: described preset password is divided into multistage, between these preset password sections, there is the identical precedence of password array receiving with step S201 ', check in each password array that whether the password symbol of preset password section that has same order with this password array is in correct position.The segmentation of described preset password can be determined by the number of the password array receiving, and receives several password arrays, just preset password is equally divided into several sections, and is every segment identification order.
The concrete verification method of step S203 ' can be based in embodiment five authentication method.For example, based on (1):
The password of supposing user is " 123456 ", the password array receiving is 3, each password array is used for verifying 2 passwords, use the method for the present embodiment can divide three checkings, by the precedence of three password arrays that receive, whether checking " 12 ", " 34 ", " 56 " meet correct position relationship in three password arrays successively.If the length that the result of segmentation is final stage only has 1, by the length of the regulation method of supplying, not enough part is supplied, such as regulation is supplied the length of final stage with the first symbol of password.For example user's password is " 12345 ", by the segmentation of two of each checkings, is " 12 ", " 34 ", " 5 ", and two of final stage less thaies, are regarded as " 51 " and verify while verifying.Password also can be divided into 1 every section and authenticate according to the authentication method in embodiment five (2) or (3).
Receive a plurality of password arrays, in the situation of password segmentation checking, can also have following several verification method:
(4). step 203 ' with each password array, verify a password: according to a plurality of password arrays that receive, check whether there is a password symbol, identical with the relative position of this password symbol with the password symbol of preset password coupling in each password array.Such as password is " 1234 ", receive four password arrays, if password symbol " 1 " in four password arrays (in first password array), " 2 " (in second password array), " 3 " (in the 3rd password array), " 4 " (in the 4th password array), the upper left corner is all " 9 ", is verified.In four password arrays, can find a password symbol " 6 " for another example, in first password array, its upper left corner is " 1 ", in second password array, its upper left corner is " 2 ", in the 3rd password array, its upper left corner is " 3 ", in the 4th password array, its upper left corner is " 4 ", and checking is also passed through.Compare with the method (3) of embodiment five, difference is: use in the situation of a plurality of password arrays, can not need the relative position relation of default regulation, also can not need default with reference to password symbol.
(5). step 203 ' with two passwords of each password array checking: whether the relative position between the password symbol that judgement is mated with preset password successively has in the password array of same order identical at each.Such as password is " 1234 ", receive two password arrays, if the relative position of password symbol " 1 " and " 2 " is that " 1 " is in the upper left corner of " 2 " in first password array, in second password array the relative position of password symbol " 3 " and " 4 " be " 3 " in the upper left corner of " 4 ", be verified.Compare with the method (1) of embodiment five, difference is: use in the situation of a plurality of password arrays, can not need the relative position relation of default regulation.
(6). step 201 ' also received when receiving password array a plurality of with reference to password symbol, these are corresponding one by one with received password array with reference to password symbol, step 203 ' with each password array and corresponding to a password of password symbol checking: whether the password symbol that judgement is mated with preset password successively has in the password array of same order identical with the corresponding relative position with reference to password symbol at each.Such as password is " 1234 ", received four password arrays and corresponding four with reference to password symbol " 5678 ", if " 1 " is in the upper left corner of " 5 " in first password array, in second password array, " 2 " are in the upper left corner of " 6 ", in the 3rd password array, " 3 " are in the upper left corner of " 7 ", in the 4th password array, " 4 ", in the upper left corner of " 8 ", are verified.Compare with the method (2) of embodiment five, difference is: use in the situation of a plurality of password arrays, can not need the relative position relation of default regulation.
Embodiment seven:
As shown in Figure 9, in order further to improve safe class, on the basis of above-mentioned authentication method embodiment, before step S201, also comprise step S200: the password symbol mapping table that generates and sends password array and described password array.Step S201 further comprises: receive the password array being shone upon by described password symbol mapping table, according to described password symbol mapping table, parse described password array.Equally, at step S201 ', also can comprise step 200 before.
The password array that step S200 generates and sends is comprised of a plurality of password symbol, and the symbol that forms user password is a part wherein.Password symbol password symbol collection up to specification in described password array, that is to say, the password symbol set that the user that password symbol in described password array belongs to regulation can select when password is set, this set can be wherein one or more the combination of letter, numeral, Chinese character, picture.
Password symbol mapping table can generate at random, and this password symbol mapping table has been stipulated the conversion value of each password symbol in password array, requires password input apparatus to carry out Mapping and Converting to the password array of input.Described password symbol mapping table is provided for password input apparatus, and this mapping table has stipulated that password symbol that password input apparatus shows and corresponding relation between the password symbol of transmission disclose as embodiment five.On this basis, the password array of reception is according to the password array after the conversion of password symbol mapping table, after receiving password array, first according to password symbol mapping table, carries out reverse transformation, restores conversion password array before.Such as mapping table has been stipulated " 1 " and is mapped as " a ", so " a " in the password array receiving is converted to " 1 " again.After reverse transformation obtains original password array, continue to authenticate by the authentication method described in above-described embodiment.
Embodiment eight:
As shown in figure 10, the invention process row also provide a kind of password input apparatus 300, comprising: array display unit 301, and for showing password array, described password array is comprised of a plurality of password symbol; Array mobile unit 302, for receiving the move of input, changes the position of described these password symbol in described password array according to described move; Array confirmation unit 303, for receiving the confirmation instruction of input, confirms to change the password array behind position; Array transmitting element 304, for sending the password array after confirmation.The password array that array display unit 301 shows is comprised of the password symbol collection of stipulating.
As shown in figure 11, password input apparatus 300 also can comprise array received unit 305, for receiving the password array of password authenticate device transmission and the password symbol mapping table of described password array.Array display unit 301 can comprise memory, the password array that preservation receives and the password symbol mapping table of described password array, and show described password array.Array transmitting element 304 carries out Mapping and Converting by the password array after confirming with described password symbol mapping table, sends the password array after mapping.
Array confirmation unit 303 also can receive that user arranges with reference to password symbol, in the time of password array that array transmitting element 304 sends after confirming, also to send described with reference to password symbol.
Array confirmation unit 303 can receive the repeatedly confirmation instruction of user input, confirms the password array after a plurality of change internal password character positions, or the password array after a plurality of change internal password character position and each password array corresponding with reference to password symbol.Above-mentioned password array or the password array that array confirmation unit 303 is confirmed and can be temporary in array display unit 301 with reference to password symbol.Array transmitting element 304 can send the temporary above-mentioned password array of array of display display unit 301 or password array after having inputted instruction and with reference to password symbol receiving.
Embodiment nine:
As shown in figure 12, the invention process row also provide a kind of password authentication device 400, comprising: array received unit 401, and for receiving password array, described password array is comprised of a plurality of password symbol; Array authentication ' unit 402, checks that whether the password symbol of mating with preset password in described password array is in correct position.
As shown in figure 13, described password authentication device 400 also comprises array transmitting element 403, for generating and sending the password symbol mapping table of password array and described password array, described password array is comprised of the password symbol collection of stipulating, the password array that 402 receptions of array authentication ' unit were shone upon by described password symbol mapping table, parses described password array according to described password symbol mapping table.
Array received unit 401 can receive a plurality of password arrays, between described these password arrays, there is precedence, array authentication ' unit 402 is divided into multistage by the user's of password authentication device storage preset password, between these preset password sections, there is the precedence identical with a plurality of password arrays of 401 receptions, check in each password array that whether the password symbol of preset password section that has same order with this password array is in correct position.
When whether array authentication ' unit 402 authenticate password arrays correct can: check whether the relative position between the password symbol of mating with preset password in password array meets default position relationship; Or check whether the password symbol of mating with preset password in password array and one default meet default position relationship with reference to the relative position between password symbol; Or in the situation that receiving a plurality of password array, check whether there is a password symbol, identical with the relative position relation of this password symbol with the password symbol of preset password coupling in each password array.
Array received unit 401 when receiving password array, also can receive password array with reference to password symbol, array authentication ' unit 402 can check the password symbol of mating with preset password in password array and whether meet default position relationship with reference to the relative position between password symbol, or receiving a plurality of password arrays and with reference to password symbol in the situation that, whether identically with the corresponding relative position relation with reference to password symbol with the password symbol of preset password coupling in each password array checking.
Above-described embodiment; object of the present invention, technical scheme and beneficial effect are further described; institute is understood that; the foregoing is only the specific embodiment of the present invention; the protection range being not intended to limit the present invention; within the spirit and principles in the present invention all, any modification of making, be equal to replacement, improvement etc., within all should being included in protection scope of the present invention.Method and apparatus of the present invention also can be used for input and checking is not wished the information of being peeped as account, user name etc.

Claims (14)

1. a password input method, is characterized in that, described method comprises:
A. show password array, described password array is comprised of a plurality of password symbol random alignment;
B. receive the move of input, according to described move, change the relative position of described these password symbol in described password array, described relative position comprises angular dependence, neighbouring or left and right is adjacent;
C. receive the confirmation instruction of input, confirm to change the password array after relative position;
D. the whole password array after send confirming, the relative position that the whole password array after described confirmation has comprised multiple password symbol, wherein comprises the relative position of the password symbol of described move indication.
2. password input method as claimed in claim 1, is characterized in that, before described step a, also comprises: the password symbol mapping table that receives password array and described password array;
Described steps d further comprises: the password array after confirming is shone upon with described password symbol mapping table, send the password array after mapping.
3. password input method as claimed in claim 1, is characterized in that, described step c also comprises:
Receive to arrange with reference to password symbol;
Described steps d further comprises: also send described with reference to password symbol simultaneously.
4. the password input method as described in claim 1 or 2 or 3, is characterized in that, after described step c, comprises:
E. judge whether to receive and inputted instruction, if it is carry out steps d, if not returning to step b, a plurality of to confirm " password arrays " or " password array and with reference to password symbol ", these " password arrays " of confirming or " password array and with reference to password symbol " have precedence, and " the password array " of each confirmation or " password array and with reference to password symbol " are for inputting successively one section of password symbol of password;
Steps d further comprises: described a plurality of " the password arrays " after send confirming or " password array and with reference to password symbol ".
5. password input method as claimed in claim 1, is characterized in that, described password symbol is wherein one or more the combination of letter, numeral, Chinese character, picture.
6. a command identifying method corresponding with password input method claimed in claim 1, is characterized in that, described method comprises:
Receive password array, described password array is comprised of a plurality of password symbol, and the relative position that has comprised multiple password symbol;
Check that whether the password symbol of mating with preset password in described password array is in correct position.
7. command identifying method as claimed in claim 6, is characterized in that, before described reception password array, also comprises:
Generate and send the password symbol mapping table of password array and described password array;
Described reception password array further comprises: receive the password array being shone upon by described password symbol mapping table, according to described password symbol mapping table, parse described password array.
8. command identifying method as claimed in claim 6, is characterized in that, described reception password array also comprises: receive a plurality of password arrays, between described these password arrays, have precedence;
Whether the password symbol of mating with preset password in the described password array of described inspection comprises in correct position: described preset password is divided into multistage, between these preset password sections, there is precedence, check in each password array that whether the password symbol of preset password section that has same order with this password array is in correct position.
9. the command identifying method as described in claim 6 or 8, it is characterized in that, whether the password symbol of mating with preset password in the described password array of described inspection comprises in correct position: check that whether the relative position between the password symbol of mating with preset password in password array is correct.
10. the command identifying method as described in claim 6 or 8, it is characterized in that, whether the password symbol of mating with preset password in the described password array of described inspection comprises in correct position: check the password symbol of mating with preset password in password array and one default whether correct with reference to the relative position between password symbol.
11. command identifying methods as described in claim 6 or 8, it is characterized in that, whether the password symbol of mating with preset password in the described password array of described inspection comprises in correct position: according to a plurality of password arrays that receive, check whether there is a password symbol, identical with the relative position of this password symbol with the password symbol of preset password coupling in each password array.
12. command identifying methods as described in claim 6 or 8, is characterized in that, described reception password array also comprises:
Receive with described password array one to one with reference to password symbol simultaneously;
In the described password array of described inspection, whether in correct position, comprise with the password symbol of preset password coupling: check that whether the password symbol of mating with preset password in password array is with corresponding correct with reference to the relative position between password symbol.
13. 1 kinds of password input apparatus, is characterized in that, shown device comprises:
Array display unit, for showing password array, described password array is comprised of a plurality of password symbol random alignment;
Array mobile unit, for receiving the move of input, changes the relative position of described these password symbol in described password array according to described move, and described relative position comprises angular dependence, neighbouring or left and right is adjacent;
Array confirmation unit, for receiving the confirmation instruction of input, confirms to change the password array after relative position;
Array transmitting element, for sending the whole password array after confirmation, the relative position that the whole password array after described confirmation has comprised multiple password symbol, wherein comprises the relative position of the password symbol of described move indication.
14. 1 kinds of password authentication devices corresponding with password input apparatus described in claim 13, is characterized in that, described device comprises:
Array received unit, for receiving password array, described password array is comprised of a plurality of password symbol, and the relative position that has comprised multiple password symbol;
Array authentication ' unit, checks that whether the password symbol of mating with preset password in described password array is in correct position.
CN200910086723.7A 2009-06-24 2009-06-24 Method for inputting and authenticating passwords and device for inputting and authenticating passwords Expired - Fee Related CN101582216B (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN200910086723.7A CN101582216B (en) 2009-06-24 2009-06-24 Method for inputting and authenticating passwords and device for inputting and authenticating passwords

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN200910086723.7A CN101582216B (en) 2009-06-24 2009-06-24 Method for inputting and authenticating passwords and device for inputting and authenticating passwords

Publications (2)

Publication Number Publication Date
CN101582216A CN101582216A (en) 2009-11-18
CN101582216B true CN101582216B (en) 2014-02-19

Family

ID=41364349

Family Applications (1)

Application Number Title Priority Date Filing Date
CN200910086723.7A Expired - Fee Related CN101582216B (en) 2009-06-24 2009-06-24 Method for inputting and authenticating passwords and device for inputting and authenticating passwords

Country Status (1)

Country Link
CN (1) CN101582216B (en)

Families Citing this family (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
GB201209241D0 (en) * 2012-05-25 2012-07-04 Becrypt Ltd Computer implemented security system and method

Also Published As

Publication number Publication date
CN101582216A (en) 2009-11-18

Similar Documents

Publication Publication Date Title
US10218506B1 (en) Cross-device authentication
CN102968602B (en) A kind of method to set up of keyboard and device
AU2006307996B2 (en) Method and system for secure password/PIN input via mouse scroll wheel
CN109891418A (en) Method for protecting the transaction executed from non-security terminal
US9507928B2 (en) Preventing the discovery of access codes
CN103200011B (en) A kind of cipher authentication method and device
CN104021323A (en) Password authentication method and device
KR102055625B1 (en) Authentication server device, program, and authentication method
CN103870744A (en) Method and electronic device for verifying password
CN102982272B (en) keyboard layout method and device
CN108868367B (en) Intelligent lock device
CN101655768A (en) Anti-peep password input method
WO2016206398A1 (en) Method and apparatus for controlling electronic device, and method and apparatus for unlocking hand-held terminal
CN103136462B (en) A kind of method and system of password authentification
Anwar et al. A Comparative Study of Graphical and Alphanumeric Passwords for Mobile Device Authentication.
CN105354458B (en) Password Input verification method and system
Kwon et al. SteganoPIN: Two-faced human–machine interface for practical enforcement of PIN entry security
CN103116718A (en) Password setting and verification method based on spatial position code log-in computer system
CN107657187A (en) A kind of keyboard and input method and system applied to android system
KR101122197B1 (en) Method of displaying virtual keypad for preventing the leaking of information
KR20150000634A (en) Key input method and apparatus
Guerar et al. Color wheel pin: Usable and resilient ATM authentication
CN101582216B (en) Method for inputting and authenticating passwords and device for inputting and authenticating passwords
Farmand et al. Improving graphical password resistant to shoulder-surfing using 4-way recognition-based sequence reproduction (RBSR4)
CN105933499A (en) Verification method and system

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
C14 Grant of patent or utility model
GR01 Patent grant
CF01 Termination of patent right due to non-payment of annual fee

Granted publication date: 20140219

Termination date: 20140624

EXPY Termination of patent right or utility model