CN102043937A - Card reader capable of generating dynamic passwords as well as dynamic password authentication system and method - Google Patents

Card reader capable of generating dynamic passwords as well as dynamic password authentication system and method Download PDF

Info

Publication number
CN102043937A
CN102043937A CN2010106185728A CN201010618572A CN102043937A CN 102043937 A CN102043937 A CN 102043937A CN 2010106185728 A CN2010106185728 A CN 2010106185728A CN 201010618572 A CN201010618572 A CN 201010618572A CN 102043937 A CN102043937 A CN 102043937A
Authority
CN
China
Prior art keywords
card reader
dynamic password
card
dynamic
authentication
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Pending
Application number
CN2010106185728A
Other languages
Chinese (zh)
Inventor
谈剑锋
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Shanghai Peoplenet Security Technology Co Ltd
Original Assignee
Shanghai Peoplenet Security Technology Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Shanghai Peoplenet Security Technology Co Ltd filed Critical Shanghai Peoplenet Security Technology Co Ltd
Priority to CN2010106185728A priority Critical patent/CN102043937A/en
Publication of CN102043937A publication Critical patent/CN102043937A/en
Pending legal-status Critical Current

Links

Images

Abstract

The invention discloses a card reader capable of generating dynamic passwords as well as a dynamic password authentication system and method for the field of information safety. The invention aims to solve the defect of one account and one token in the existing dynamic authentication technology. The card reader comprises a card reading module, a dynamic password generation module and a synchronous clock, wherein the card reading module is used for reading effective information of a card inserted in the card reader; the dynamic password generation module is used for generating a group of dynamic passwords according to the effective information; and the synchronous clock is used for providing time information or clock synchronization. The dynamic password authentication system comprises the card reader and a far-end service, wherein the card reader is used for generating a group of dynamic passwords when the card of a user is inserted in the card reader; and the far-end service is used for synchronously generating a random password and receiving the dynamic passwords for identity authentication. In the embodiment of the invention, the built-in dynamic password generation module in the card reader is used for dynamic password generation and identity authentication when reading the card, so that the situation of one token and one account is avoided, which is beneficial to being convenient for a card-holding user and reducing the cost of the card-holding user.

Description

A kind of card reader and dynamic cipher authentication system and method that generates dynamic password
Technical field
The present invention relates to information security field, relate in particular to a kind of card reader and dynamic cipher authentication system and method that generates dynamic password.
Background technology
Along with E-Government; ecommerce; the develop rapidly of network traffic such as online finance and business administration; demand to Information Security is urgent day by day; because the virtual property and the anonymity of the network and communications; ensure the security that operational line is carried out; what at first must solve is the Verify Your Identity questions of communicating pair in the network application system; therefore; authentication is the important component part of information security system; it is the gate, first road of protection information system security; its task is the legitimacy and the authenticity of checking information system user identity; and, unauthorized access person is kept outside of the door by the authority access system resources that system authorizes.
In order to solve the safety problem of information application system, the identity identifying technology that tradition adopts is that conventional password authentication is " user name+password " authentication mode, conventional " user name+password " password authentication is the early stage authentication product of computer system, static characteristics and reusability because of its authentication, there is safety defects such as easily stealing, easily guess, easily crack, be a kind of weak identity identifying method, can only be used for safe class and require lower infosystem.Along with government, financial industry affairs are carried out expansion energetically on network, the digital certificate (CA) of biotechnology authentication as authentication modes such as fingerprint, iris, face have occurred, providing by the third party authenticates etc., biotechnology authentication and digital certificate authentication are the strong identity authentication systems, realized the safety certification of important information system, but the complicacy of system information collection, storage and processing that these technology realize is higher, have significant limitation, be not suitable for the huge situation of number of users.
In applications such as Net silver, network game, telecom operation, security exchange, enterprises, number of users is huge, the user may be frequent generation login and transaction operation, and all in store vital data message of each information application system wherein, for avoiding illegal intrusion and operation, having occurred dynamic password authentication now is the mode of dynamic cipher verification, promptly at the defective of static password authentication, the thought of the generation disposal password that proposes, employed password is different when being the each login system of user, and once effective.
In the dynamic cipher verification mode, the card because the user holds pin, and have only the PIN code of oneself knowing; Because the new password that the password card produces is unpredictable, and can only use once, can effectively prevent Replay Attack, eavesdropping, guessing attack etc., has the convenience of higher security and use.In recent years, along with the rising significantly of network safety event, dynamic password identification authenticating system is more and more favored.At present, the existing dynamic password card that uses the business card size above 10,000,000 people: enterprise staff, affiliate, client visit intranet safely; The stock invester carries out the online consignment trade of security relievedly; Bank-user carries out internet bank trade easily.Just because of the user need use dynamic cipher verification, therefore cause the deficiency of this dynamic cipher verification to be, a user account number can only once be bound a dynamic password token, when the user holds many numbers of the account, then need many pieces of dynamic password tokens, like this, the data volume of maintenance and management dynamic password token is huge, and then influences the efficient of system.
Summary of the invention
Deficiency based on existing dynamic cipher verification technology, the invention provides a kind of card reader and dynamic cipher authentication system and method that produces dynamic password, solve in the existing dynamic cipher verification technology, the authentication of user's account identity must each account all has the shortcoming of dynamic password token, to make things convenient for the user to carry and to use card, reduce the complicacy and the cost of card and Verification System.
In order to realize above goal of the invention, a kind of card reader that produces dynamic password that the embodiment of the invention provided is to realize by following technical scheme:
A kind of card reader that produces dynamic password, described card reader comprises:
Card reading module is used for reading the effective information of the card that inserts card reader;
Dynamic password generation modules one is used for generating one group of dynamic password according to described effective information;
Synchronous clock is used to provide temporal information or clock synchronization.
Further, described effective information comprises user's PIN (Personal Identification Number) PIN and temporal information.
Further, described Digital Signature Algorithm comprises RSA Algorithm or EIGamal public key algorithm.
Further preferably, described PIN (Personal Identification Number) comprises dealing money or exchange hour.
Further preferably, described card reader also comprises a counter, and the counts of described counter is as the change factor.
Further preferably, described card reader also comprises a keyboard, is used to provide the user and imports PIN (Personal Identification Number).
Further preferably, described card reader also comprises a display module, and described display module comprises a display screen, is used for showing described dynamic password.
Further preferably, described display screen also is used for showing the result that reads to card data.
In order to realize the foregoing invention purpose, the embodiment of the invention also provides a kind of dynamic cipher authentication system, and described system comprises:
Card reader is used for generating one group of dynamic password when user's card inserts wherein;
Far-end server is used for generating synchronously random cipher, and receives described dynamic password, carries out authentication.
Further preferably, described card reader comprises:
Card reading module, the effective information that is used for reading the card that inserts card reader carries out;
Dynamic password generation modules one is used for generating one group of dynamic password according to described effective information;
Synchronous clock is used to provide the clock synchronization of described card reader and far-end server;
Further, described effective information comprises user's PIN (Personal Identification Number) PIN and temporal information
Further preferably, described far-end server comprises:
Dynamic password generation modules two is used for generating synchronously random cipher;
Authentication module is used for receiving and whether the random cipher of verifying described dynamic password and described synchronous generation one is shown and carried out authentication and return authentication result.
Further, described Digital Signature Algorithm comprises RSA Algorithm or EIGamal public key algorithm.
Further preferably, described card reader adopts identical dynamic password generating algorithm with far-end server.
Further preferably, described card reader also comprises receiver module, is used for receiving described authentication result, and according to the read operation of authentication result judgement to card data.
Further preferably, described card reader is communicated by letter by phone or network communication interface with far-end server.
In order to realize aforementioned goal of the invention, the embodiment of the invention also provides a kind of dynamic cipher authentication method, and described method comprises:
When user's card insert was gone in the card reader, card reader generated one group of dynamic password according to the effective information in the card;
Far-end server generates random cipher synchronously, and receives described dynamic password, carries out authentication.
Further, described effective information comprises user's PIN (Personal Identification Number) PIN and temporal information.
Further, described Digital Signature Algorithm comprises RSA Algorithm or EIGamal public key algorithm.
Further preferably, described PIN (Personal Identification Number) comprises dealing money or exchange hour.
Further preferably, described card reader and far-end server adopt a synchronous clock to carry out the synchronous of time.
Further preferably, described card reader adopts identical dynamic password generating algorithm with far-end server, and whether described authentication is specially the described dynamic password of checking consistent with the random cipher of described synchronous generation.
Further preferably, described card reader is communicated by letter by phone or network communication interface with far-end server.
The card reader of the generated dynamic password that the embodiment of the invention provides and dynamic cipher authentication system and method, utilize dynamic password generation modules built-in in the card reader, according to Digital Signature Algorithm, carrying out dynamic password in the Card Reader process generates and authentication, avoid an account one dynamic password to generate the situation of token, help making things convenient for card user's use, reduce card user's cost, simultaneously, used the mode that dynamic password carries out authentication, further increase the information application system mutual authentication process of holder and card correspondence, increased the security of system.
 
Description of drawings
The present invention is further described below in conjunction with drawings and Examples:
Fig. 1 is 1 one kinds of synoptic diagram that can generate the card reader of dynamic password of the embodiment of the invention;
Fig. 2 can generate the synoptic diagram of the card reader of dynamic password for the embodiment of the invention 2 another kinds;
Fig. 3 can generate the synoptic diagram of the card reader of dynamic password for the embodiment of the invention 3 another kinds;
Fig. 4 can generate the synoptic diagram of the card reader of dynamic password for the embodiment of the invention 4 another kinds;
Fig. 5 is the synoptic diagram of the embodiment of the invention 5 dynamic cipher authentication systems;
Fig. 6 is the synoptic diagram of the embodiment of the invention 6 another kind of dynamic cipher authentication systems;
Fig. 7 is the synoptic diagram of the embodiment of the invention 7 dynamic cipher verification processes.
 
Embodiment
As a kind of synoptic diagram that generate the card reader of dynamic password of Fig. 1 for the embodiment of the invention 1.
As shown in Figure 1, a kind of card reader that generates dynamic password of the embodiment of the invention 1, described card reader comprises:
Card reading module is used for reading the effective information of the card that inserts card reader;
Dynamic password generation modules one is used for generating one group of dynamic password according to described effective information;
Synchronous clock is used to provide temporal information or clock synchronization.
Further, described effective information comprises user's PIN (Personal Identification Number) PIN and temporal information, and described PIN (Personal Identification Number) is as private key, and described temporal information is as the change factor, and described dynamic password generating algorithm adopts Digital Signature Algorithm to carry out.
Dynamic password is the password of change, and its change derives from the operational factor that produces password and changes.The generation factor of dynamic password generally all adopts two operational factors (two factor): one, be user's private cipher key, and it is the identification code of representative of consumer identity, is changeless.Its two, for the change factor, change the continuous variation of the factor just, just produced the dynamic password of continuous change.
Because the card reader dynamic password generates the new password that token produces, have unpredictablely, and can only use once, can effectively prevent Replay Attack, eavesdropping, guessing attack etc., have the convenience of higher security and use.
Further preferably, described card reader also comprises a counter, with the counts of described counter as the change factor.Counter is used for calculating the number of times that card reader generates password, increases the randomness of password, and when authentication, further can play the synchronous correction with far-end server.
Public Key Infrastructure (PKI, Public Key Infrastructure) is a kind of key management platform of following standard, and it can use transparent necessary key of cryptographic service and the certificate managements such as adopting digital signature of providing for all-network.Public Key Infrastructure then is the safety problems such as confidentiality, information integrity and non repudiation of wishing to solve technically online identity authentication, information, for network application provides reliable security service.The basic technology of PKI comprises digital signature, data integrity mechanism, digital envelope, dual digital signature etc.Complete PKI system must have authenticating authority mechanism, digital certificate storehouse, key backup and recovery system, certificate calcellation system, application interface basic comprising parts such as (API), makes up PKI and also will set about making up round this five big systems.The embodiment of the invention is used the digital signature technology of public key cryptosyst, the Digital Signature Algorithm that is adopted comprises RSA, ElGamal, Fiat-Shamir, Guillou-Quisquarter, Schnorr, Ong-Schnorr-Shamir Digital Signature Algorithm, Des/DSA, ECDSA (Elliptic Curve Digital Signature Algorithm) or finte-state machine Digital Signature Algorithm etc., one of ordinary skill in the art can be known, adopt Digital Signature Algorithm to generate and authentication to carrying out dynamic password, numerous embodiments can be arranged, and which kind of implementation is the embodiment of the invention be not intended to limit.
Further preferably, as shown in Figure 2, the embodiment of the invention 2 described card reader also comprise a keyboard, are used to provide the user and import PIN (Personal Identification Number).
Further preferably, described PIN (Personal Identification Number) comprises dealing money or exchange hour, because the transaction card that the user held, each dealing money and exchange hour all have certain randomness, therefore can increase the randomness and the unpredictability of client's dynamic password, further increase security.
The card reader of the embodiment of the invention and certificate server carry out the communication of dynamic password, the card or the account that do not need the user and held have dynamic token, but when card insert is gone into card reader, according to user's PIN (Personal Identification Number) input or that card is built-in and current time, generate dynamic password by card reader, user or card are carried out authentication, saved the dynamic password token, make things convenient for the user, and be beneficial to the popularization and application of dynamic cipher verification mode.
Further preferably, as shown in Figure 3, the embodiment of the invention 3 described card reader also comprise a display module, and described display module comprises a display screen, is used for showing described dynamic password.After dynamic password generated, the user can see the dynamic password that is generated by display screen, and waits for follow-up verification process, after authentication is passed through, can be relieved carry out data manipulation.
Further, as shown in Figure 4, the embodiment of the invention 4 described card reader also comprise receiver module, are used for receiving the authentication result of described dynamic password, and according to the read operation of authentication result judgement to card data.Further preferably, described display screen also is used for showing the result that reads to card data.
On the other hand, when authentication is not passed through, card reader or application server will be judged described card or hold artificial illegal card or disabled user, and refusal is avoided the illegal operation to infosystem to the further data manipulation of card.
In order to realize aforementioned goal of the invention, as shown in Figure 5, the embodiment of the invention 5 also provides a kind of dynamic cipher authentication system, and described system comprises:
Card reader is used for generating one group of dynamic password when user's card inserts wherein;
Far-end server is used for generating synchronously random cipher, and receives described dynamic password, carries out authentication.
Further preferably, described card reader comprises:
Card reading module, the effective information that is used for reading the card that inserts card reader carries out;
Dynamic password generation modules one is used for generating one group of dynamic password according to described effective information;
Synchronous clock is used to provide the clock synchronization of described card reader and far-end server;
Described far-end server comprises:
Dynamic password generation modules two is used for generating synchronously random cipher;
Authentication module is used for receiving and whether the random cipher of verifying described dynamic password and described synchronous generation one is shown and carried out authentication and return authentication result.
Further, described effective information comprises user's PIN (Personal Identification Number) PIN and temporal information, and described PIN (Personal Identification Number) is as private key, and described temporal information is as the change factor, and described dynamic password generating algorithm adopts Digital Signature Algorithm to carry out.
Further preferably, described PIN (Personal Identification Number) comprises dealing money or exchange hour, because the transaction card that the user held, each dealing money and exchange hour all have certain randomness, therefore can increase the randomness and the unpredictability of client's dynamic password, further increase security.
Correspondingly, as shown in Figure 6, in the embodiment of the invention 6, described card reader also comprises a keyboard, is used to provide the user and imports PIN (Personal Identification Number).
The embodiment of the invention 6 described card reader also comprise a display module, and described display module comprises a display screen, is used for showing described dynamic password.After dynamic password generated, the user can see the dynamic password that is generated by display screen, and waits for follow-up verification process, after authentication is passed through, can be relieved carry out data manipulation.
Further, described card reader also comprises receiver module, is used for receiving described authentication result, and according to the read operation of authentication result judgement to card data.
Further preferably, described far-end server comprises:
Described far-end server comprises:
Dynamic password generation modules two is used for generating synchronously random cipher;
Authentication module is used for receiving and whether the random cipher of verifying described dynamic password and described synchronous generation one is shown and carried out authentication and return authentication result.
Further, described Digital Signature Algorithm comprises RSA Algorithm or EIGamal public key algorithm.
Further preferably, described card reader adopts identical dynamic password generating algorithm with far-end server.
Further preferably, described card reader also comprises receiver module, is used for receiving described authentication result, and according to the read operation of authentication result judgement to card data, further preferably, described display screen also is used for showing the result that reads to card data.
Further preferably, described card reader is communicated by letter by phone or network communication interface with far-end server.
Further preferably, described system comprises a synchronous clock, and described synchronous clock is in far-end server or the card reader, or is in the system outside card reader and the far-end server, in application server, be used to provide the time synchronized of described card reader and far-end server.Based on the time synchronized authentication techniques is that a time of passage is as the change factor, generally with 60 seconds as changing unit, so-called " synchronously " is meant that the password that far-end server produced of card reader and responsible authentication in time must be synchronously, the method for synchronizing time here can adopt " time system " technology, or with " moving window " technology.
Stable, reliable for the far-end server clock that guarantees to authenticate not by people's malicious modification, guarantees the safety of dynamic password generating algorithm, the embodiment of the invention 4 and 5 dynamic cipher authentication system, adopt clock/password to generate token,, and the PIN code of oneself knowing is arranged because the user holds card; Because the new password that dynamic password generation modules produces is unpredictable, and can only use once; Because key leaves in respectively in server and the password card, and does not transmit in network, so dynamic password is difficult for by network interception or attack, difficult quilt guesses or cracks to have the feature of strong identity authentication, has the convenience of higher security and use.Persons skilled in the art can be known, the distortion of above embodiment, combination or equivalent variations are all in protection scope of the present invention.
In order to realize goal of the invention of the present invention, as shown in Figure 7, the embodiment of the invention 7 also provides a kind of dynamic cipher authentication method, and described method comprises:
When user's card insert was gone in the card reader, card reader generated one group of dynamic password according to the effective information in the card;
Far-end server generates random cipher synchronously, and receives described dynamic password, carries out authentication.
Further, described effective information comprises user's PIN (Personal Identification Number) PIN and temporal information, and described PIN (Personal Identification Number) is as private key, and described temporal information is as the change factor, and described dynamic password generating algorithm adopts Digital Signature Algorithm to carry out.
Further, described Digital Signature Algorithm comprises RSA Algorithm or EIGamal public key algorithm.
Further preferably, described PIN (Personal Identification Number) comprises dealing money or exchange hour.
Further preferably, described card reader and far-end server adopt a synchronous clock to carry out the synchronous of time.
Further preferably, described card reader adopts identical dynamic password generating algorithm with far-end server, and whether described authentication is specially the described dynamic password of checking consistent with the random cipher of described synchronous generation.
Further preferably, described card reader is communicated by letter by phone or network communication interface with far-end server.
The dynamic cipher verification process of the embodiment of the invention 7 comprises as follows:
(1) card user goes into card insert in the card reader, request access information system applies server;
(2) the application server request far-end server being responsible for authenticating authenticates the legitimacy and the authenticity of client identity authentication;
(3) key in PIN code or startup password on user's card reader keyboard, the dynamic password generation modules that activates on the card reader generates one group of dynamic password, and is presented in the display screen of card reader;
(4) user keys in card reader with account number and dynamic password or authentication is carried out in the user application terminal;
(5) give far-end server with account number and password by network or phone transmission;
(6) far-end server calls family information, the random cipher of generation and user profile and time correlation, and compare with the password of user input, differentiate the legitimacy and the authenticity of user identity.
(7) far-end server reports to application server or card reader with authentication result;
(8) application server feeds back to user application terminal or card reader according to the legitimacy and the authenticity of user identity, and decision can provide service or denial of service.
Those skilled in the art will recognize that; above-mentioned embodiment is exemplary; be in order to make those skilled in the art can better understand this patent content; should not be construed as is restriction to this patent protection domain; change or modify so long as disclose spiritual any being equal to of being done, all fall into this patent protection domain according to this patent.

Claims (17)

1. the card reader that can generate dynamic password is characterized in that, described card reader comprises:
Card reading module is used for reading the effective information of the card that inserts card reader;
Dynamic password generation modules one is used for generating one group of dynamic password according to described effective information;
Synchronous clock is used to provide temporal information or clock synchronization.
2. card reader according to claim 1 is characterized in that, described effective information comprises user's PIN (Personal Identification Number) PIN and temporal information.
3. card reader according to claim 2 is characterized in that described PIN (Personal Identification Number) comprises dealing money or exchange hour.
4. card reader according to claim 3 is characterized in that described card reader also comprises a keyboard, is used to provide the user and imports PIN (Personal Identification Number).
5. according to any described card reader of claim 1 to 4, it is characterized in that described card reader also comprises a display module, described display module comprises a display screen, is used for showing described dynamic password.
6. according to any described card reader of claim 1 to 5, it is characterized in that described card reader also comprises a receiver module, be used for receiving the authentication result of described dynamic password, and according to the read operation of authentication result judgement to card data.
7. card reader according to claim 6 is characterized in that, described display screen also is used for showing the result that reads to card data.
8. a dynamic cipher authentication system is characterized in that, described system comprises:
Card reader is used for generating one group of dynamic password when user's card inserts wherein;
Far-end server is used for generating synchronously random cipher, and receives described dynamic password, carries out authentication.
9. dynamic cipher authentication system according to claim 8 is characterized in that, described card reader comprises:
Card reading module, the effective information that is used for reading the card that inserts card reader carries out;
Dynamic password generation modules one is used for generating one group of dynamic password according to described effective information;
Synchronous clock is used to provide the clock synchronization of described card reader and far-end server;
Described far-end server comprises:
Dynamic password generation modules two is used for generating synchronously random cipher;
Authentication module is used for receiving and whether the random cipher of verifying described dynamic password and described synchronous generation one is shown and carried out authentication and return authentication result.
10. dynamic cipher authentication system according to claim 9 is characterized in that, described card reader adopts identical dynamic password generating algorithm with far-end server.
11., it is characterized in that described card reader also comprises receiver module according to any described dynamic cipher authentication system of claim 9 to 10, be used for receiving described authentication result, and according to the read operation of authentication result judgement to card data.
12. a dynamic cipher authentication method is characterized in that, described method comprises:
When user's card insert was gone in the card reader, card reader generated one group of dynamic password according to the effective information in the card;
Far-end server generates random cipher synchronously, and receives described dynamic password, carries out authentication.
13. dynamic cipher authentication method according to claim 12 is characterized in that, described effective information comprises user's PIN (Personal Identification Number) PIN and temporal information.
14. dynamic cipher authentication method according to claim 13 is characterized in that, described PIN (Personal Identification Number) comprises dealing money or the exchange hour that the user keys in.
15., it is characterized in that described card reader and far-end server adopt a synchronous clock to carry out the synchronous of time according to any described dynamic cipher authentication method of claim 12 to 14.
16. dynamic cipher authentication method according to claim 15, it is characterized in that, described card reader adopts identical dynamic password generating algorithm with far-end server, and whether described authentication is specially the described dynamic password of checking consistent with the random cipher of described synchronous generation.
17., it is characterized in that described card reader is communicated by letter by phone or network communication interface with far-end server according to any described dynamic cipher authentication method of claim 12 to 16.
CN2010106185728A 2010-12-31 2010-12-31 Card reader capable of generating dynamic passwords as well as dynamic password authentication system and method Pending CN102043937A (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN2010106185728A CN102043937A (en) 2010-12-31 2010-12-31 Card reader capable of generating dynamic passwords as well as dynamic password authentication system and method

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN2010106185728A CN102043937A (en) 2010-12-31 2010-12-31 Card reader capable of generating dynamic passwords as well as dynamic password authentication system and method

Publications (1)

Publication Number Publication Date
CN102043937A true CN102043937A (en) 2011-05-04

Family

ID=43910067

Family Applications (1)

Application Number Title Priority Date Filing Date
CN2010106185728A Pending CN102043937A (en) 2010-12-31 2010-12-31 Card reader capable of generating dynamic passwords as well as dynamic password authentication system and method

Country Status (1)

Country Link
CN (1) CN102043937A (en)

Cited By (9)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102831369A (en) * 2012-09-13 2012-12-19 公安部第三研究所 Intelligent card reader with PIN (personal identification number) code inputting function and operating method of intelligent card
CN102938033A (en) * 2012-10-18 2013-02-20 张仁平 System for enhancing safety of U shield for bank and application method thereof
CN103391188A (en) * 2013-07-17 2013-11-13 成都卫士通信息产业股份有限公司 Secret key management method based on symmetric secret key mechanism
CN104123775A (en) * 2014-07-22 2014-10-29 杜明浩 Dynamic password lock
CN104156859A (en) * 2014-08-28 2014-11-19 上海众人科技有限公司 Network transaction system and method based on dynamic passwords
CN104253693A (en) * 2014-06-19 2014-12-31 于甫 Interactive dynamic password verification method
CN104468119A (en) * 2014-11-21 2015-03-25 上海瀚之友信息技术服务有限公司 One-time password authentication system and method
CN104616373A (en) * 2014-12-08 2015-05-13 杜明浩 Dynamic-password electronic password lock
TWI559165B (en) * 2014-10-13 2016-11-21 優仕達資訊股份有限公司 Wireless authentication system and wireless authentication method

Citations (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN1591458A (en) * 2000-09-09 2005-03-09 陆征军 Method for identifying ID card containing IC card
CN1614924A (en) * 2004-11-26 2005-05-11 王小矿 Identity certifying system based on intelligent card and dynamic coding
CN1614610A (en) * 2004-11-26 2005-05-11 王小矿 Petty paying method based on dynamic cipher
CN1617495A (en) * 2004-11-26 2005-05-18 王小矿 Anti-fake technology based on dynamic cipher
CN101593380A (en) * 2008-05-28 2009-12-02 北京飞天诚信科技有限公司 A kind of gate control system and authentication method that generates and verify based on dynamic password

Patent Citations (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN1591458A (en) * 2000-09-09 2005-03-09 陆征军 Method for identifying ID card containing IC card
CN1614924A (en) * 2004-11-26 2005-05-11 王小矿 Identity certifying system based on intelligent card and dynamic coding
CN1614610A (en) * 2004-11-26 2005-05-11 王小矿 Petty paying method based on dynamic cipher
CN1617495A (en) * 2004-11-26 2005-05-18 王小矿 Anti-fake technology based on dynamic cipher
CN101593380A (en) * 2008-05-28 2009-12-02 北京飞天诚信科技有限公司 A kind of gate control system and authentication method that generates and verify based on dynamic password

Cited By (13)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102831369A (en) * 2012-09-13 2012-12-19 公安部第三研究所 Intelligent card reader with PIN (personal identification number) code inputting function and operating method of intelligent card
CN102831369B (en) * 2012-09-13 2015-06-17 公安部第三研究所 Intelligent card reader with PIN (personal identification number) code inputting function and operating method of intelligent card
CN102938033A (en) * 2012-10-18 2013-02-20 张仁平 System for enhancing safety of U shield for bank and application method thereof
CN103391188A (en) * 2013-07-17 2013-11-13 成都卫士通信息产业股份有限公司 Secret key management method based on symmetric secret key mechanism
CN104253693A (en) * 2014-06-19 2014-12-31 于甫 Interactive dynamic password verification method
CN104123775A (en) * 2014-07-22 2014-10-29 杜明浩 Dynamic password lock
CN104123775B (en) * 2014-07-22 2017-10-20 南京多泰智能科技有限公司 A kind of dynamic puzzle-lock
CN104156859A (en) * 2014-08-28 2014-11-19 上海众人科技有限公司 Network transaction system and method based on dynamic passwords
CN104156859B (en) * 2014-08-28 2018-09-04 上海众人网络安全技术有限公司 A kind of internet trading system and method based on dynamic password
TWI559165B (en) * 2014-10-13 2016-11-21 優仕達資訊股份有限公司 Wireless authentication system and wireless authentication method
CN104468119B (en) * 2014-11-21 2017-06-27 上海瀚之友信息技术服务有限公司 A kind of disposal password Verification System and authentication method
CN104468119A (en) * 2014-11-21 2015-03-25 上海瀚之友信息技术服务有限公司 One-time password authentication system and method
CN104616373A (en) * 2014-12-08 2015-05-13 杜明浩 Dynamic-password electronic password lock

Similar Documents

Publication Publication Date Title
CN102043937A (en) Card reader capable of generating dynamic passwords as well as dynamic password authentication system and method
CN101350723B (en) USB Key equipment and method for implementing verification thereof
EP2220840B1 (en) Method of authentication of users in data processing systems
CA2649305C (en) Arrangement of and method for secure data transmission
JPH10336169A (en) Authenticating method, authenticating device, storage medium, authenticating server and authenticating terminal
CN102377573A (en) Double-factor authentication method capable of securely updating password
KR101202245B1 (en) System and Method For Transferring Money Using OTP Generated From Account Number
Chen et al. A new method for using hash functions to solve remote user authentication
CN112507300A (en) Electronic signature system based on eID and electronic signature verification method
CN108667801A (en) A kind of Internet of Things access identity safety certifying method and system
CN102170437A (en) System and method for realizing Phishing identification based on challenge password token
CN104657860A (en) Mobile banking security authentication method
CN110176989A (en) Quantum communications service station identity identifying method and system based on unsymmetrical key pond
CN113630421A (en) Method for preventing data migration of web system based on asymmetric encryption algorithm
Gulsezim et al. Two factor authentication using twofish encryption and visual cryptography algorithms for secure data communication
CN110505199A (en) Email safe login method based on the asymmetric identity of lightweight
CN102142963A (en) Multi-transaction factor-based challenge password authenticating system and method
Deswarte et al. A Proposal for a Privacy-preserving National Identity Card.
US20090210713A1 (en) Method and a system for securing and authenticating a message
Madhuravani et al. A comprehensive study on different authentication factors
Varshney et al. Personal secret information based authentication towards preventing phishing attacks
CN102868668A (en) Method for preventing phishing website from stealing sensitive information of user
Vandenwauver et al. Overview of authentication protocols
Jie et al. E-commerce security policy analysis
Piper et al. Identities and authentication

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
RJ01 Rejection of invention patent application after publication
RJ01 Rejection of invention patent application after publication

Application publication date: 20110504