CN102404305A - Method for identity authentication of Internet user - Google Patents

Method for identity authentication of Internet user Download PDF

Info

Publication number
CN102404305A
CN102404305A CN2010102882997A CN201010288299A CN102404305A CN 102404305 A CN102404305 A CN 102404305A CN 2010102882997 A CN2010102882997 A CN 2010102882997A CN 201010288299 A CN201010288299 A CN 201010288299A CN 102404305 A CN102404305 A CN 102404305A
Authority
CN
China
Prior art keywords
user
data processing
communications device
processing equipment
mobile communications
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Pending
Application number
CN2010102882997A
Other languages
Chinese (zh)
Inventor
王国荣
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Chunghwa Telecom Co Ltd
Original Assignee
Chunghwa Telecom Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Chunghwa Telecom Co Ltd filed Critical Chunghwa Telecom Co Ltd
Priority to CN2010102882997A priority Critical patent/CN102404305A/en
Publication of CN102404305A publication Critical patent/CN102404305A/en
Pending legal-status Critical Current

Links

Images

Landscapes

  • Telephone Function (AREA)
  • Telephonic Communication Services (AREA)

Abstract

A method for the identity authentication of an Internet user is disclosed, for performing identity authentication on a user via a data processing device connected with a service platform and a mobile communication device connected with a verification platform. The method for the identity authentication of an Internet user comprises the following steps of: firstly ordering the service platform to receive and verify a user account and a user password input in the data processing device by a user; after the verification is passed, ordering the verification platform to verify the mobile communication device according to the pre-stored mobile communication data, and providing a dynamic password for the verified mobile communication device; then ordering the verification platform to receive the dynamic password input by the user from the data processing device, and verifying the received dynamic password according to the dynamic password provided for the mobile communication device; and after the verification is passed, approving user login operation performed by the user. Via the method for the identity authentication of an Internet user, the security of user login operation and Internet use is further improved.

Description

The network user identity identifying method
Technical field
The present invention relates to a kind of network user identity identifying method, refer to a kind of network user identity identifying method of realizing through the synthetic operation of data processing equipment and mobile communications device especially.
Background technology
The public order incident that the network number of the account is falsely used emerges in an endless stream in society now, wherein again with unworthy hacker behind number of the account of having stolen the injured party and password, further assume another's name to transact on the net or the open injured party's the facts such as private data the most common.
In order to reduce the risk that the network number of the account is falsely used, the dealer all does one's utmost to carry out the rank authentication mode of advancing miscellaneous, similarly is the second common road proving program.For instance, dynamic puzzle-lock service request user buys specific dynamic password generator in advance, and after having imported traditional number of the account and password, can further import the dynamic password that is produced by the dynamic password generator, verifies as second road thus.In addition; Also there is the dealer to provide the user to bid to host so-called natural person's voucher, and after bidding to host completion, authorizes corresponding identity chip card and give the user; In the future; After the user had inputed traditional number of the account and password, relevant card reader promptly capable of using read the data of chip card, carried out the second road proving program thus.
Yet,,,, often also increased user's cost burden though promoted the fail safe of identity identification like dynamic password generator, chip card, card reader etc. because the second existing road proving program needs the user to buy additional apparatus mostly.In addition, the user need carry out extra application operation when application dynamic password generator or chip card, so as far as the user, very inconvenient yet.Certainly,, apply for dynamic password generator or chip card, increased operating cost also unavoidablely, and then lowered income for the user is provided as far as the dealer.
But and along with the universalness of the mobile communications device (like the 3G/4G mobile phone) of view Internet network; How mobile communications device is combined with traditional authentication mode; With the safety in utilization of further lifting internet, also become the emphasis that many tame dealers do one's utmost to research and develop.
Summary of the invention
Because the many disadvantages of above-mentioned prior art; And in order to adapt to the universalness of mobile communications device; Main purpose of the present invention is to provide a kind of cost burden that not only can not increase the user, and can promote the network user identity identifying method of the safety in utilization of internet.
Other purpose of the present invention is to provide a kind of operating cost that not only can not increase the dealer, and can promote the network user identity identifying method of the safety in utilization of internet.
Network user identity identifying method of the present invention; Supply the user to carry out user's authentication through data processing equipment that is connected with service platform and the mobile communications device that is connected with verification platform, this network user identity identifying method may further comprise the steps: make this service platform receives and the checking user imports in this data processing equipment user's number of the account and user's password; In the checking through after make this authentication platform in receive this mobile communications device obtain dynamic password webpage connection request the time; Mobile data according to storing is in advance verified this mobile communications device; And after checking is passed through, provide at least one group of dynamic password to this mobile communications device; And make verification platform receive the dynamic password of importing through data processing equipment from data processing equipment; And offer the dynamic password of this mobile communications device according to this verification platform; Dynamic password to being received from this data processing equipment is verified; And after checking is passed through, check and approve this user's login
In an example; Network user identity identifying method of the present invention also comprises makes this verification platform reception and checking user in this user's number of the account and user's password of this data processing equipment and/or the input of this mobile communications device; And after checking is passed through, receive and store the step of this user in the mobile data of this data processing equipment and/or the input of this mobile communications device.
Than prior art; Network user identity identifying method of the present invention; Through data processing equipment, mobile communications device, and the mutual collocation of service platform, can effectively promote the safety in utilization of internet, and than prior art; Network user identity identifying method of the present invention has the cost burden that lowers the user more simultaneously, and the effect that reduces dealer's operating cost.
Description of drawings
Fig. 1 is the flow chart of steps of network user identity identifying method of the present invention.
Fig. 2 is the more concrete sequential chart of network user identity identifying method of the present invention.
Fig. 3 is that network user identity identifying method of the present invention is in the more concrete sequential chart of obtaining dynamic password through device for mobile communication.
The main element symbol description
S1~S3 step
T10~T22 sequential
T20~T24 sequential
Embodiment
Below through particular specific embodiment execution mode of the present invention is described; Those skilled in the art can understand other advantages of the present invention and effect easily by the content that this specification disclosed, and also can implement or use through other different specific embodiments.
See also Fig. 1, illustrated the flow chart of steps of network user identity identifying method of the present invention.What this proposed explanation earlier be; Network user identity identifying method of the present invention; Be to supply the data processing equipment (not shown) of user, and the mobile communications device (not shown) that is connected with authentication platform carry out user's register through being connected with service platform (not shown).During practical application, service platform can be in order to provide the user through the data processing equipment utilization or obtain the server like networks such as audio/video file, application program services; Authentication platform then can be the member authentication platform or the identity that are arranged at internet service supplier (ISP) end and detects server; Data processing equipment can be PC, personal digital assistant or the notebook computer that is arranged at user's end; Mobile communications device can be 3G, 3.5G or the 4G cell phone with network connection and function of browse; And service platform and authentication platform can be through Ethernet system and/or Wi-fi network system etc. wired and/or wireless network be connected with data processing equipment, authentication platform then can be connected with mobile communications device through wireless communication networks systems such as 3G, 3.5G or 4G.Described service platform and authentication platform also can be integrated into single platform.
As shown in Figure 1, in step S1, make verification platform receives and the checking user imports in data processing equipment user's number of the account and user's password, and get into step S2 through the back in checking.During actual enforcement; The user on can first turn-on data processing unit like application programs such as network browsings; And obtain with service platform through network and to be connected; Make service platform with being connected to the login page that verification platform provides like application programs such as network browsings on the data processing equipment again, with through the specific user's number of the account of this data processing equipment input and user's password in this login page, receive and verify for verification platform.
In step S2; Make authentication platform in receive mobile communications device obtain dynamic password webpage connection request the time; Mobile data according to storing is in advance verified mobile communications device; And after checking is passed through, provide at least one group of dynamic password to mobile communications device, then get into step S3.In this example, described mobile data is the mobile communication number that is specific to mobile communications device, the equipment application testimony of a witness number and/or user's identity module (Subscriber Identity Module, SIM) card numbers.During actual enforcement; Authentication platform can be prior to showing the page of " input dynamic password " on the data processing equipment; At this moment, what the user can use that mobile communications device connect to go up authentication platform obtains the dynamic password webpage, and authentication platform then can utilize the mobile data that is stored in advance in inside or the external data base (not shown); The employed mobile communications device of user is verified; For example, back four yards of user's identity module card numbers are verified, and after checking is passed through; Dynamic password webpage platform then produces at least one group of dynamic password and gives the mobile communications device through checking, for the user it is used for being input into the service platform login page of aforementioned requirement input dynamic password.And authentication platform can also webpage form dynamic password is offered this mobile communications device, saving short-message fee, and this dynamic password, more can have ageing and/or the access times restriction, so that preferable safety in utilization to be provided.
In step S3; Make verification platform receive the dynamic password of importing through data processing equipment from data processing equipment; And according to the dynamic password that offers mobile communications device among the step S2; Dynamic password to being received from data processing equipment is verified, and after checking was passed through, the authorized user logined.During actual enforcement; The user can be with the dynamic password of learning through web page browsing or note from mobile communications device; In the page of " input dynamic password " that the input validation platform shows on data processing equipment, verify for the verification platform reception and to it.And described authorized user's login refers to that then the authorized user uses specific audio/video file or application program with user's identity in data processing equipment.Perhaps; Authorized user's register is meant that the authorized user comes in the log-in service platform through data processing equipment and/or mobile communications device; And in service platform, carry out the information specific handling procedure with user's identity, for example carry out online value-added service etc.
What deserves to be mentioned is; Before carrying out abovementioned steps S1; Also can receive and verify user number of the account and the user password of user by shilling verification platform in data processing equipment and/or mobile communications device input; And after checking is passed through, receive and store the mobile data of user in data processing equipment and/or mobile communications device input.During actual enforcement; This step promptly can be considered so-called service request program; For example; The user can get in the dynamic password service request page that verification platform provides through data processing equipment and/or mobile communications device, and input user's number of the account and user's password receive for verification platform and verify, and after checking is passed through; Verification platform can show the page of " input mobile communication number, the equipment application testimony of a witness number and user's identity module card numbers " on data processing equipment and/or mobile communications device, import these data to require the user.And the user is after input is accomplished; Verification platform can receive the user and import mobile datas such as mobile communication number, the equipment application testimony of a witness number and user's identity module card numbers; And give to store corresponding to user's number of the account of user and user's password; And then accomplish so-called service request program, thereby supply the comparison foundation of the authentication of follow-up user when the device for mobile communication request dynamic password.
What need replenish is; After accomplishing the service request program again during execution in step S1, verification platform can be after verify user's number of the account and user's password, and further whether this user's number of the account of detection has the mobile data of correspondence earlier; That is; Can detect this user's number of the account and whether accomplish so-called service request program, and if the user has accomplished so-called service request program, when follow-up execution in step S2; The mobile data that verification platform can then utilize the user in the service request program, to import is verified the coupled mobile communications device that connects.
See also Fig. 2, it is the more concrete sequential chart of network user identity identifying method of the present invention.As shown in the figure, in sequential T10, be connected to service platform like application programs such as network browsing (hereinafter to be referred as data processing equipment) through network through data processing equipment is performed by the user.In sequential T11, by service platform response data processing unit.In sequential T12, service platform is connected to verification platform with data processing equipment.In sequential T13, verification platform provides the data processing equipment login page.In sequential T14, data processing equipment is in specific user's number of the account and the user's password of this login page input.In sequential T15, data processing equipment is sent to verification platform through network with user's number of the account and user's password.In sequential T16, verification platform checking user's number of the account and user's password.In sequential T17, verification platform judges whether this number of the account has the application dynamic password.In sequential T18, application is arranged during dynamic password in judging this number of the account, transmit dynamic cipher verification through network and require to data processing equipment.In sequential T19, import the dynamic password of obtaining by verification platform through described mobile communications device through data processing equipment.In sequential T20, data processing equipment transmits the dynamic password of being imported through network and gives verification platform.In sequential T21, whether the dynamic password that verification platform checking is received corresponding described user's number of the account.In sequential T22, verification platform transmits the login information of successful in checking through the back and gives data processing equipment, uses or obtain aforesaid service thereby check and approve the data processing equipment log-in service platform.
See also Fig. 3, it is that network user identity identifying method of the present invention is in the more concrete sequential chart of obtaining dynamic password through device for mobile communication.As shown in the figure, in sequential T20, the user obtains the dynamic password webpage through device for mobile communication via what network was connected to verification platform.In sequential T21, verification platform is obtained the mobile data of said device for mobile communication.In sequential T22, verification platform is verified mobile communications device according to the mobile data that is stored in inside or the external data base in advance, and when checking is passed through, is produced corresponding dynamic password.In sequential T23, verification platform with mobile data and user's number of the account corresponding record in inside or external data base.In sequential T24, on device for mobile communication, show this dynamic password through network.
In sum; Through data processing equipment, mobile communications device, the mutual collocation that reaches service platform and abundant utilization; Network user identity identifying method of the present invention not only can supply the user to carry out register easily, more can promote the safety in utilization of internet effectively.And than prior art, network user identity identifying method of the present invention has also further reached the cost burden that lowers the user simultaneously, and the effect that reduces dealer's operating cost.
The foregoing description is illustrative principle of the present invention and effect only, but not is used to limit the present invention.Any those skilled in the art all can be under spirit of the present invention and category, and the foregoing description is modified and changed.Therefore, rights protection scope of the present invention should be listed like claims.

Claims (10)

1. network user identity identifying method; Supply the user to carry out user's authentication through data processing equipment that is connected with service platform and the mobile communications device that is connected with verification platform, this network user identity identifying method may further comprise the steps:
1) makes user's number of the account and the user's password that this service platform receives and the checking user imports in this data processing equipment, and get into step 2 through the back) in checking;
2) make this authentication platform in receive this mobile communications device obtain dynamic password webpage connection request the time; Mobile data according to storing is in advance verified this mobile communications device; And after checking is passed through, provide at least one group of dynamic password to this mobile communications device; And
3) make verification platform receive the dynamic password of importing through data processing equipment from data processing equipment; And offer the dynamic password of this mobile communications device according to this verification platform; Dynamic password to being received from this data processing equipment is verified; And after checking is passed through, check and approve this user's login.
2. network user identity identifying method according to claim 1; Before step 1); Also comprise and make this verification platform reception and checking user in this user's number of the account and user's password of this data processing equipment and/or the input of this mobile communications device; And after checking is passed through, receive and store the mobile data of this user in this data processing equipment and/or the input of this mobile communications device.
3. network user identity identifying method according to claim 2 is characterized in that, in step 2) described in the mobile data that stores in advance, be meant that this verification platform is in this stored mobile data.
4. according to claim 1,2 or 3 described network user identity identifying methods, it is characterized in that this mobile data is mobile communication number, the equipment application testimony of a witness number and/or user's identity module card numbers.
5. network user identity identifying method according to claim 4; It is characterized in that; In step 2) in, this verification platform is verified this mobile communications device according to this mobile communication number, this equipment application testimony of a witness number and/or this user's identity module card numbers.
6. network user identity identifying method according to claim 1 is characterized in that, in step 2) in, this verification platform offers this mobile communications device with the form of webpage or note with this dynamic password.
7. network user identity identifying method according to claim 1 is characterized in that, in step 3), checks and approves this user's login, is meant that checking and approving this user uses specific audio/video file or application program in this data processing equipment with user's identity.
8. network user identity identifying method according to claim 1; It is characterized in that; In step 3); Check and approve this user's login, be meant that the authorized user passes through to carry out the information specific handling procedure with user's identity in this data processing equipment and/or this service platform of this mobile communications device login.
9. network user identity identifying method according to claim 1 is characterized in that, this dynamic password is to have dynamic password ageing and/or the access times restriction.
10. network user identity identifying method according to claim 1; It is characterized in that; This service platform is connected with this data processing equipment through the wired and/or wireless network that comprises Ethernet system and/or Wi-fi network system with this authentication platform, and this authentication platform then is connected with this mobile communications device through 3G, 3.5G or 4G wireless communication networks system.
CN2010102882997A 2010-09-19 2010-09-19 Method for identity authentication of Internet user Pending CN102404305A (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN2010102882997A CN102404305A (en) 2010-09-19 2010-09-19 Method for identity authentication of Internet user

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN2010102882997A CN102404305A (en) 2010-09-19 2010-09-19 Method for identity authentication of Internet user

Publications (1)

Publication Number Publication Date
CN102404305A true CN102404305A (en) 2012-04-04

Family

ID=45886097

Family Applications (1)

Application Number Title Priority Date Filing Date
CN2010102882997A Pending CN102404305A (en) 2010-09-19 2010-09-19 Method for identity authentication of Internet user

Country Status (1)

Country Link
CN (1) CN102404305A (en)

Cited By (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN105376208A (en) * 2014-08-08 2016-03-02 盖特资讯系统股份有限公司 Secure data verification method, system and computer readable storage medium
CN106657938A (en) * 2017-03-07 2017-05-10 北京宝兴达信息技术有限公司 Safety device for network video camera, and network video camera
CN106845186A (en) * 2017-03-07 2017-06-13 北京宝兴达信息技术有限公司 A kind of safety device for being integrated in network cameras
CN109587140A (en) * 2018-12-06 2019-04-05 四川长虹电器股份有限公司 Implementation method based on openresty dynamic password proxy gateway
CN110247914A (en) * 2019-06-19 2019-09-17 上海明我信息技术有限公司 A kind of network cipher management method and device

Citations (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101060403A (en) * 2006-04-18 2007-10-24 钟曦辰 Wireless communication terminal-based interactive dynamic password safety service system
CN101651541A (en) * 2008-08-14 2010-02-17 中华电信股份有限公司 System and method for authentication of network user
CN101729252A (en) * 2008-10-21 2010-06-09 中华电信股份有限公司 System and method of identity authentication of network service user

Patent Citations (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101060403A (en) * 2006-04-18 2007-10-24 钟曦辰 Wireless communication terminal-based interactive dynamic password safety service system
CN101651541A (en) * 2008-08-14 2010-02-17 中华电信股份有限公司 System and method for authentication of network user
CN101729252A (en) * 2008-10-21 2010-06-09 中华电信股份有限公司 System and method of identity authentication of network service user

Cited By (7)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN105376208A (en) * 2014-08-08 2016-03-02 盖特资讯系统股份有限公司 Secure data verification method, system and computer readable storage medium
CN105376208B (en) * 2014-08-08 2019-03-08 盖特资讯系统股份有限公司 Secure data verification method, system and computer readable storage medium
CN106657938A (en) * 2017-03-07 2017-05-10 北京宝兴达信息技术有限公司 Safety device for network video camera, and network video camera
CN106845186A (en) * 2017-03-07 2017-06-13 北京宝兴达信息技术有限公司 A kind of safety device for being integrated in network cameras
CN109587140A (en) * 2018-12-06 2019-04-05 四川长虹电器股份有限公司 Implementation method based on openresty dynamic password proxy gateway
CN109587140B (en) * 2018-12-06 2021-11-30 四川长虹电器股份有限公司 Implementation method of dynamic password proxy gateway based on openness
CN110247914A (en) * 2019-06-19 2019-09-17 上海明我信息技术有限公司 A kind of network cipher management method and device

Similar Documents

Publication Publication Date Title
KR102141836B1 (en) Two factor authentication
CN105306490B (en) Payment verifying system, method and device
JP5739008B2 (en) Method, apparatus, and system for verifying a communication session
CN105591744B (en) A kind of genuine cyber identification authentication method and system
CN102542453B (en) Mobile payment identity verification method
CN105323253B (en) Identity verification method and device
CN104618315B (en) A kind of method, apparatus and system of verification information push and Information Authentication
CN105741112A (en) Apparatus For Authentication And Payment Based On Web, Method For Authentication And Payment Based On Web, System For Authentication And Payment Based On Web And Non-Transitory Computer Readable Storage Medium Having Computer Program Recorded Thereon
CN107682336B (en) Geographic position-based identity authentication method and device
CN104008325A (en) Mobile phone Wi-Fi network-connecting real name identity authentication platform and method based on two-dimension codes
CN101316167A (en) Registration and login method of safety authentication, system and mobile terminal
KR101741917B1 (en) Apparatus and method for authenticating using speech recognition
CN101699892A (en) Method and device for generating dynamic passwords and network system
CN104639521A (en) Application safety verification method and system, application server and application client
CN105635168A (en) Off-line transaction device and security key using method thereof
CN102404305A (en) Method for identity authentication of Internet user
CN105306202B (en) Auth method, device and server
CN114491436A (en) Contract signing method and device, electronic equipment and storage medium
WO2009048191A1 (en) Security authentication method and system
KR20080036446A (en) Method and system for providing user authorization service using bio information and mobile communication terminal for transmitting authorization information using bio information
CN103684796A (en) SMI (subscriber identity module) card and personal identity authentication method
CN106851613A (en) Service request method, the verification method of business handling number and its terminal
WO2016086708A1 (en) Payment verification method, apparatus and system
CN105871840B (en) A kind of certificate management method and system
CN101931530A (en) Generation method, authentication method and device for dynamic password and network system

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
C02 Deemed withdrawal of patent application after publication (patent law 2001)
WD01 Invention patent application deemed withdrawn after publication

Application publication date: 20120404