CN104301285A - Method for logging in web system - Google Patents

Method for logging in web system Download PDF

Info

Publication number
CN104301285A
CN104301285A CN201310295288.5A CN201310295288A CN104301285A CN 104301285 A CN104301285 A CN 104301285A CN 201310295288 A CN201310295288 A CN 201310295288A CN 104301285 A CN104301285 A CN 104301285A
Authority
CN
China
Prior art keywords
login
message
url
log
user
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Granted
Application number
CN201310295288.5A
Other languages
Chinese (zh)
Other versions
CN104301285B (en
Inventor
董鹏举
尹亚伟
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
China Unionpay Co Ltd
Original Assignee
China Unionpay Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by China Unionpay Co Ltd filed Critical China Unionpay Co Ltd
Priority to CN201310295288.5A priority Critical patent/CN104301285B/en
Publication of CN104301285A publication Critical patent/CN104301285A/en
Application granted granted Critical
Publication of CN104301285B publication Critical patent/CN104301285B/en
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L67/00Network arrangements or protocols for supporting network services or applications
    • H04L67/01Protocols
    • H04L67/02Protocols based on web technology, e.g. hypertext transfer protocol [HTTP]
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L51/00User-to-user messaging in packet-switching networks, transmitted according to store-and-forward or real-time protocols, e.g. e-mail
    • H04L51/04Real-time or near real-time messaging, e.g. instant messaging [IM]
    • H04L51/046Interoperability with other network applications or services
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L67/00Network arrangements or protocols for supporting network services or applications
    • H04L67/01Protocols
    • H04L67/08Protocols specially adapted for terminal emulation, e.g. Telnet

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Signal Processing (AREA)
  • Information Transfer Between Computers (AREA)

Abstract

The invention provides a method for logging in a web system. The method includes: a user terminal constructs a log-in initialing message based on log-in information of a user, and transmits the log-in initialing message to a log-in server; and the log-in server completes subsequent log-in procedures based on the received log-in request and via a mail server and a mail client terminal. The method for logging in a web system disclosed is high in security and convenient in operation.

Description

For the login method of web system
Technical field
The present invention relates to login method, more specifically, relate to the login method for web system.
Background technology
At present, along with the becoming increasingly abundant of class of business of the increasingly extensive of network application and different field, the register that user performs for web system becomes more and more important and frequent.
In existing technical scheme, user is logged in by the mode of username and password usually after registration.
But, there are the following problems for existing technical scheme: because user needs to fill in various personal information when performing registration operation, such as need input for activate account mailbox number and for cell-phone number obtaining identifying code etc., therefore complex operation and personal information are easy to be illegally used, in addition, because needs input username and password continually, therefore fail safe is lower.
Therefore, there is following demand: provide the login method for web system with high fail safe and ease-to-operate.
Summary of the invention
In order to solve the problem existing for above-mentioned prior art, the present invention proposes the login method for web system with high fail safe and ease-to-operate.
The object of the invention is to be achieved through the following technical solutions:
For a login method for web system, described method comprises the following steps:
(A1) user terminal logs in based on the log-on message structure from user and starts message, and described login startup message is sent to logon server;
(A2) described logon server completes follow-up login process via mail server and Mail Clients based on the described logging request received.
In scheme disclosed above, preferably, described step (A1) comprises further:
(1) described user terminal accesses the login page of described web system based on user instruction by web browser;
(2) user inputs described log-on message by described login page, and wherein, described log-on message comprises the account number of effective mailbox of described user;
(3) described user terminal starts message based on the described login of user instruction structure and described login startup message is sent to described logon server, and wherein, described login starts message and comprises described log-on message.
In scheme disclosed above, preferably, described step (A2) comprises the following steps: further
(B1) after receiving described login startup message, described logon server verification is described logs in the validity starting the log-on message that message comprises;
(B2) if the validation verification success of described log-on message, then dynamically generate the login URL for described user and described login URL is sent to described mail server in the mode of encryption, wherein, described login URL comprises at least one parameter, and at least one parameter described comprises present system time;
(B3) user is arranged in described effective mailbox of described mail server to check described login URL by described Mail Clients login.
In scheme disclosed above, preferably, described step (A2) comprises further: after user views described login URL via described Mail Clients, described Mail Clients constructs logging request based on user instruction, and described logging request is sent to described logon server, wherein, described logging request comprises described login URL.
In scheme disclosed above, preferably, described step (A2) comprises further: after receiving described logging request, at least one parameter described that described logon server extracts the login URL in described logging request with obtain present system time when generating described login URL and subsequently by described to present system time and generation log in URL time present system time compared with, if present system time and the time difference generated between described present system time when logging in URL are less than or equal to predetermined value, then directly jump to described web system homepage and prompting login successfully, if present system time and the time difference generated between described present system time when logging in URL are greater than described predetermined value, then return login page and point out user again to obtain and log in URL.
In scheme disclosed above, preferably, described Mail Clients is to carry out data communication based on the cipher mode of certificate and described logon server.
In scheme disclosed above, preferably, described web browser and described Mail Clients are arranged in same user terminal.
Login method for web system disclosed in this invention has the following advantages: have high fail safe and easy and simple to handle.
Accompanying drawing explanation
By reference to the accompanying drawings, technical characteristic of the present invention and advantage will be understood better by those skilled in the art, wherein:
Fig. 1 is according to an embodiment of the invention for the flow chart of the login method of web system.
Embodiment
Fig. 1 is according to an embodiment of the invention for the flow chart of the login method of web system.As shown in Figure 1, the login method for web system disclosed in this invention comprises the following steps: that (A1) user terminal logs in based on the log-on message structure from user and starts message, and described login startup message is sent to logon server; (A2) described logon server completes follow-up login process via mail server and Mail Clients based on the described logging request received.
Preferably, disclosed in this invention in the login method of web system, described step (A1) comprises further: (1) described user terminal is based on user instruction and accessed the login page of described web system by web browser; (2) user inputs described log-on message by described login page, and wherein, described log-on message comprises the account number (namely this mailbox account number is that user has applied for and the account number that can normally use) of effective mailbox of described user; (3) described user terminal constructs described login startup message based on user instruction (such as user clicks " transmission " button) and described login is started message and is sent to described logon server, and wherein, described login starts message and comprises described log-on message.
Preferably, disclosed in this invention in the login method of web system, described step (A2) comprises the following steps: that (B1) is after receiving described login startup message further, and described logon server verification is described logs in the validity (i.e. the validity of the account number of effective mailbox of verified users) starting the log-on message that message comprises; (B2) if the validation verification success of described log-on message, then dynamically generate the login URL(URL(uniform resource locator) for described user) and described login URL is sent to described mail server in the mode of encryption, wherein, described login URL comprises at least one parameter, and at least one parameter described comprises present system time; (B3) user is arranged in described effective mailbox of described mail server to check described login URL by described Mail Clients login.
Preferably, disclosed in this invention in the login method of web system, described step (A2) comprises further: after user views described login URL via described Mail Clients, described Mail Clients constructs logging request based on user instruction (such as described user clicks the link indicated by described login URL), and described logging request is sent to described logon server, wherein, described logging request comprises described login URL.
Preferably, disclosed in this invention in the login method of web system, described step (A2) comprises further: after receiving described logging request, at least one parameter described that described logon server extracts the login URL in described logging request with obtain present system time when generating described login URL and subsequently by described to present system time and generation log in URL time present system time compared with, if present system time and the time difference generated between described present system time when logging in URL are less than or equal to predetermined value (such as 100 seconds), then directly jump to described web system homepage and prompting login successfully, if present system time and the time difference generated between described present system time when logging in URL are greater than described predetermined value, then return login page and point out user again to obtain and log in URL.
Exemplarily, disclosed in this invention in the login method of web system, described Mail Clients is to carry out data communication based on the cipher mode of certificate and described logon server.
Exemplarily, disclosed in this invention in the login method of web system, described web browser and described Mail Clients are arranged in same user terminal.
Exemplarily, disclosed in this invention in the login method of web system, described user terminal is personal computer or mobile terminal (such as mobile phone).
Therefore the login method for web system disclosed in this invention has following advantages: there is high fail safe and easy and simple to handle.
Although the present invention is described by above-mentioned preferred implementation, its way of realization is not limited to above-mentioned execution mode.Should be realized that: when not departing from purport of the present invention and scope, those skilled in the art can make different changes and amendment to the present invention.

Claims (7)

1., for a login method for web system, described method comprises the following steps:
(A1) user terminal logs in based on the log-on message structure from user and starts message, and described login startup message is sent to logon server;
(A2) described logon server completes follow-up login process via mail server and Mail Clients based on the described logging request received.
2. the login method for web system according to claim 1, is characterized in that, described step (A1) comprises further:
(1) described user terminal accesses the login page of described web system based on user instruction by web browser;
(2) user inputs described log-on message by described login page, and wherein, described log-on message comprises the account number of effective mailbox of described user;
(3) described user terminal starts message based on the described login of user instruction structure and described login startup message is sent to described logon server, and wherein, described login starts message and comprises described log-on message.
3. the login method for web system according to claim 2, is characterized in that, described step (A2) comprises the following steps: further
(B1) after receiving described login startup message, described logon server verification is described logs in the validity starting the log-on message that message comprises;
(B2) if the validation verification success of described log-on message, then dynamically generate the login URL for described user and described login URL is sent to described mail server in the mode of encryption, wherein, described login URL comprises at least one parameter, and at least one parameter described comprises present system time;
(B3) user is arranged in described effective mailbox of described mail server to check described login URL by described Mail Clients login.
4. the login method for web system according to claim 3, it is characterized in that, described step (A2) comprises further: after user views described login URL via described Mail Clients, described Mail Clients constructs logging request based on user instruction, and described logging request is sent to described logon server, wherein, described logging request comprises described login URL.
5. the login method for web system according to claim 4, it is characterized in that, described step (A2) comprises further: after receiving described logging request, at least one parameter described that described logon server extracts the login URL in described logging request with obtain present system time when generating described login URL and subsequently by described to present system time and generation log in URL time present system time compared with, if present system time and the time difference generated between described present system time when logging in URL are less than or equal to predetermined value, then directly jump to described web system homepage and prompting login successfully, if present system time and the time difference generated between described present system time when logging in URL are greater than described predetermined value, then return login page and point out user again to obtain and log in URL.
6. the login method for web system according to claim 5, is characterized in that, described Mail Clients is to carry out data communication based on the cipher mode of certificate and described logon server.
7. the login method for web system according to claim 6, is characterized in that, described web browser and described Mail Clients are arranged in same user terminal.
CN201310295288.5A 2013-07-15 2013-07-15 Login method for web system Active CN104301285B (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201310295288.5A CN104301285B (en) 2013-07-15 2013-07-15 Login method for web system

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201310295288.5A CN104301285B (en) 2013-07-15 2013-07-15 Login method for web system

Publications (2)

Publication Number Publication Date
CN104301285A true CN104301285A (en) 2015-01-21
CN104301285B CN104301285B (en) 2018-04-27

Family

ID=52320857

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201310295288.5A Active CN104301285B (en) 2013-07-15 2013-07-15 Login method for web system

Country Status (1)

Country Link
CN (1) CN104301285B (en)

Cited By (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN107196893A (en) * 2016-03-15 2017-09-22 百度在线网络技术(北京)有限公司 Login method, login service device and login client
CN107295024A (en) * 2017-08-24 2017-10-24 四川长虹电器股份有限公司 It is a kind of to realize the method that web front end is landed safely and accessed
CN107395622A (en) * 2017-08-18 2017-11-24 四川长虹电器股份有限公司 Method without cipher safety authentication

Citations (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US20030163819A1 (en) * 2002-02-22 2003-08-28 Ching-Sung Lee Video-audio multimedia web-mail system and send-receive method thereof
CN101540674A (en) * 2008-03-17 2009-09-23 北京亿企通信息技术有限公司 Method for logging on Web end in instant communication device
CN102801687A (en) * 2011-05-24 2012-11-28 鸿富锦精密工业(深圳)有限公司 Single sign-on system and method

Patent Citations (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US20030163819A1 (en) * 2002-02-22 2003-08-28 Ching-Sung Lee Video-audio multimedia web-mail system and send-receive method thereof
CN101540674A (en) * 2008-03-17 2009-09-23 北京亿企通信息技术有限公司 Method for logging on Web end in instant communication device
CN102801687A (en) * 2011-05-24 2012-11-28 鸿富锦精密工业(深圳)有限公司 Single sign-on system and method

Cited By (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN107196893A (en) * 2016-03-15 2017-09-22 百度在线网络技术(北京)有限公司 Login method, login service device and login client
CN107395622A (en) * 2017-08-18 2017-11-24 四川长虹电器股份有限公司 Method without cipher safety authentication
CN107295024A (en) * 2017-08-24 2017-10-24 四川长虹电器股份有限公司 It is a kind of to realize the method that web front end is landed safely and accessed

Also Published As

Publication number Publication date
CN104301285B (en) 2018-04-27

Similar Documents

Publication Publication Date Title
US9641513B2 (en) Methods and systems for controlling mobile terminal access to a third-party server
CN103139200B (en) A kind of method of Web service single-sign-on
JP6355742B2 (en) Signature verification method, apparatus, and system
US8869254B2 (en) User verification using voice based password
WO2017076214A1 (en) A sms-based website login method and login system thereof
CN111062023B (en) Method and device for realizing single sign-on of multi-application system
US9544317B2 (en) Identification of potential fraudulent website activity
CN104378376A (en) SOA-based single-point login method, authentication server and browser
CN103024740B (en) Method and system for accessing internet by mobile terminal
CN102682009A (en) Method and system for logging in webpage
CN105337949A (en) SSO (Single Sign On) authentication method, web server, authentication center and token check center
CN105025041A (en) File upload method, file upload apparatus and system
CN115022047B (en) Account login method and device based on multi-cloud gateway, computer equipment and medium
DK2695410T3 (en) Methods and devices to avoid network attack damage
CN107241306B (en) Man-machine identification method, server, client and man-machine identification system
CN102624687A (en) Networking program user authentication method based on mobile terminal
CN112261011A (en) Cloud desktop authentication method based on two-dimensional code recognition
JP2020515941A (en) Passing credentials via parameters
CN105162774A (en) Virtual machine login method and device used for terminal
Feng et al. New anti-phishing method with two types of passwords in OpenID system
CN103368831A (en) Anonymous instant messaging system based on frequent visitor recognition
CN104301285A (en) Method for logging in web system
CN105429934B (en) Method and apparatus, readable storage medium storing program for executing, the terminal of HTTPS connectivity verification
CN109495458A (en) A kind of method, system and the associated component of data transmission
CN102946397B (en) User authen method and system

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
GR01 Patent grant
GR01 Patent grant