CN105791262A - APP real name authentication secure login system and method based on mobile phone IMSI - Google Patents

APP real name authentication secure login system and method based on mobile phone IMSI Download PDF

Info

Publication number
CN105791262A
CN105791262A CN201511030706.3A CN201511030706A CN105791262A CN 105791262 A CN105791262 A CN 105791262A CN 201511030706 A CN201511030706 A CN 201511030706A CN 105791262 A CN105791262 A CN 105791262A
Authority
CN
China
Prior art keywords
imsi
app
user
party
mobile phone
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Granted
Application number
CN201511030706.3A
Other languages
Chinese (zh)
Other versions
CN105791262B (en
Inventor
王嵩伟
王茂华
梁礼雪
陈章卓
江荣智
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Guangdong Eshore Technology Co Ltd
Original Assignee
Guangdong Eshore Technology Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Guangdong Eshore Technology Co Ltd filed Critical Guangdong Eshore Technology Co Ltd
Priority to CN201511030706.3A priority Critical patent/CN105791262B/en
Publication of CN105791262A publication Critical patent/CN105791262A/en
Application granted granted Critical
Publication of CN105791262B publication Critical patent/CN105791262B/en
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/08Network architectures or network communication protocols for network security for authentication of entities
    • H04L63/0815Network architectures or network communication protocols for network security for authentication of entities providing single-sign-on or federations
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W12/00Security arrangements; Authentication; Protecting privacy or anonymity
    • H04W12/06Authentication

Abstract

The invention discloses an APP real name authentication secure login system based on a mobile phone IMSI. The system comprises an IMSI authentication APP development SDK, an IMSI authentication server and an IMSI session server. Wherein, the IMSI authentication APP development SDK is provided for a third party APP development manufacturer by an IMSI authentication system, and a third party APP uses the SDK in a development process. The IMSI authentication server receives an authentication login request initiated by the third party APP and returns an authentication result. The IMSI session server registers an authentication login record of the third party APP and manages and records online information of a user APP. In addition, the invention further discloses an APP real name authentication secure login method based on the mobile phone IMSI. By adopting the system and the method disclosed by the invention, the APP application experience of the user is perfected, the login procedure is simplified, the development complexity of the login authentication part of the third party APP manufacturer is reduced, and the development time is shortened.

Description

APP real-name authentication safe login system and method based on mobile phone IMSI
Technical field
The present invention relates to technical field of security authentication, particularly relate to a kind of APP real-name authentication safe login system and method based on mobile phone IMSI.
Background technology
International mobile subscriber identity (IMSI, InternationalMobileSubscriberIdentity), for distinguishing different user in cellular network, unduplicated identification code in all cellular networks.
Mobile applications (MobileApplication, be called for short MobileApp, apps), or application program of mobile phone, mobile applications, mobile phone app etc., refer to design to smart mobile phone, panel computer and other move the application program run on equipment.
The mobile device operation system of current main flow: Google Android, Fructus Mali pumilae iOS, blackberry, Microsoft WindowsPhone.
OpenID is the online identity Verification System of a decentration.For supporting the website of OpenID, user need not remember as the such conventional authentication labelling of username and password.The substitute is, they have only to register as on the website of OpenID Identity Provider (identityprovider, IDP) at one in advance.OpenID is decentration, and any website can use OpenID to be used as a kind of mode that user logs in, and any website also can serve as OpenID Identity Provider.OpenID had both solved problem and don't need to rely on central website to confirm digital identity.
OpenID is adopted by increasing big website, for example as AOL and the Orange of Identity Provider.OpenID can use together with the WindowsCardSpace of .NETFramework.
Using in scene at existing Mobile solution, user uses different Mobile solution to be required for registering a set of log-on message respectively, or uses the third-party application such as wechat, QQ to log in, it is impossible to provide the safe real-name authentication of enterprise level.
Summary of the invention
The invention aims to overcome the defect of prior art, it is provided that a kind of APP real-name authentication safe login system and method based on mobile phone IMSI, it is possible to use the real name information that phone number is registered, it is achieved the safety certification of real name in telecom operators.
For achieving the above object, the invention provides a kind of APP real-name authentication safe login system based on mobile phone IMSI, this system includes IMSI certification APP and develops SDK, IMSI certificate server, IMSI conversation server.
Wherein, IMSI certification APP develops SDK, is supplied to third party APP for IMSI Verification System and develops producer, and third party APP uses this SDK to complete the exploitation of certification login part on stream, and SDK encapsulates calling IMSI Verification System.
IMSI certificate server, for receiving the third party APP certification logging request initiated return authentication result.
IMSI conversation server, is used for registering third party's APP certification login record, management and record user's APP online information.
Further, this system user when using first needs third party APP and mobile phone to bind.
In addition, present invention also offers a kind of APP real-name authentication safe login method based on mobile phone IMSI, the flow process of the method is: user uses the binding Activated Phone with third party APP during mobile APP first, APP calls the API in the SDK that IMSI Verification System provides and sends mobile phone IMSI, third party APP logs in Token and third party APP and identifies to IMSI certificate server, IMSI certificate server checking user profile, IMSI, APP mark and login Token legitimacy, after completing user log-in authentication flow process, IMSI conversation server record user conversation and user's APP log-on message.
Further, user uses the flow process of the binding with third party APP that Activates Phone during mobile APP to be first:
1) user uses APP first, and Activate Phone the binding with third party APP, and third party APP sends mobile phone IMSI and APP and is identified to IMSI certificate server;
2), after IMSI certificate server obtains and confirm user identity and phone number according to the mobile phone IMSI obtained from mobile communication operator, transmission identifying code is to user mobile phone;
3) user confirms binding after inputting the short message verification code received in APP application server;
4) IMSI certificate server is verified short message verification code and generates login Token;
5) mapping relations of IMSI, APP mark of IMSI certificate server record user mobile phone, login Token and user profile;
6) IMSI certificate server returns and logs in Token to third party APP;
7) IMSI certificate server sends APP information and user identity and registers third party's APP information to IMSI conversation server.
The beneficial effect that technical solution of the present invention is brought:
Whole cellphone subscriber can be covered by the present invention, and realize the OpenID real-name authentication of IMSI based on the data of business hall service handling, effectively reduce the development cost of enterprise-level application safety certification part, improve development efficiency.In addition the present invention is adopted can also to realize the single-sign-on of mobile phone application.
Accompanying drawing explanation
In order to be illustrated more clearly that the embodiment of the present invention or technical scheme of the prior art, the accompanying drawing used required in embodiment or description of the prior art will be briefly described below, apparently, accompanying drawing in the following describes is only some embodiments of the present invention, for those of ordinary skill in the art, under the premise not paying creative work, it is also possible to obtain other accompanying drawing according to these accompanying drawings.
Fig. 1 is the system embodiment schematic diagram of the present invention.
Detailed description of the invention
Below in conjunction with the accompanying drawing in the embodiment of the present invention, the technical scheme in the embodiment of the present invention is clearly and completely described, it is clear that described embodiment is only a part of embodiment of the present invention, rather than whole embodiments.Based on the embodiment in the present invention, the every other embodiment that those of ordinary skill in the art obtain under not making creative work premise, broadly fall into the scope of protection of the invention.
The invention provides a kind of APP real-name authentication safe login system based on mobile phone IMSI (being stored in SIM cards of mobile phones), third party APP producer exploitation APP process uses IMSI certification APP to develop SDK and realizes certification secure log part, this SDK can read the IMSI of storage in mobile phone and send to IMSI certificate server, carries out APP login authentication.User can be improved by this invention and use the experience of APP, simplify login process, exploitation complexity and the development time of third party APP producer login authentication part can be reduced simultaneously.
A kind of APP real-name authentication safe login system based on mobile phone IMSI of the present invention, develops SDK, IMSI certificate server, IMSI conversation server including IMSI certification APP.
Wherein, IMSI certification APP develops SDK, IMSI Verification System be supplied to third party APP and develop producer, and third party APP uses this SDK to complete the exploitation of certification login part on stream, and SDK encapsulates calling IMSI Verification System.
IMSI certificate server, receives the third party APP certification logging request initiated return authentication result.
IMSI conversation server, registers third party's APP certification login record, management and record user's APP online information.
It is illustrated in figure 1 embodiments of the invention schematic diagram.When user uses third party APP first, it is necessary to third party APP is bound with mobile phone, specific as follows:
1, user uses APP first, and Activate Phone the binding with third party APP, and third party APP sends mobile phone IMSI and APP and is identified to IMSI certificate server.
2, after IMSI certificate server obtains and confirm user identity and phone number according to the mobile phone IMSI obtained from mobile communication operator, transmission identifying code is to user mobile phone.
3, user confirms binding after inputting the short message verification code received in APP application server.
4, IMSI certificate server is verified short message verification code and generates login Token.
5, the mapping relations of IMSI, APP mark of IMSI certificate server record user mobile phone, login Token and user profile.
6, IMSI certificate server returns and logs in Token to third party APP.
7, IMSI certificate server sends APP information and user identity and registers third party's APP information to IMSI conversation server.
In addition, a kind of method that present invention also offers APP real-name authentication safe login based on mobile phone IMSI, the idiographic flow of the method is: user uses the binding Activated Phone with third party APP during mobile APP first, APP calls the API in the SDK that IMSI Verification System provides and sends mobile phone IMSI, third party APP logs in Token and third party APP and identifies to IMSI certificate server, IMSI certificate server checking user profile, IMSI, APP mark and login Token legitimacy, after completing user log-in authentication flow process, IMSI conversation server record user conversation and user's APP log-on message.
Above the embodiment of the present invention being described in detail, principles of the invention and embodiment are set forth by specific case used herein, and the explanation of above example is only intended to help to understand method and the core concept thereof of the present invention;Simultaneously for one of ordinary skill in the art, according to the thought of the present invention, all will change in specific embodiments and applications, in sum, this specification content should not be construed as limitation of the present invention.

Claims (4)

1. based on the APP real-name authentication safe login system of mobile phone IMSI, it is characterised in that this system includes IMSI certification APP and develops SDK, IMSI certificate server, IMSI conversation server;
Wherein, IMSI certification APP develops SDK, is supplied to third party APP for IMSI Verification System and develops producer, and third party APP uses this SDK to complete the exploitation of certification login part on stream, and SDK encapsulates calling IMSI Verification System;
IMSI certificate server, for receiving the third party APP certification logging request initiated return authentication result;
IMSI conversation server, is used for registering third party's APP certification login record, management and record user's APP online information.
2. system according to claim 1, it is characterised in that this system user when using first needs third party APP and mobile phone to bind.
3. based on the APP real-name authentication safe login method of mobile phone IMSI, it is characterized in that, the flow process of the method is: user uses the binding Activated Phone with third party APP during mobile APP first, API transmission mobile phone IMSI, the third party APP login Token and third party APP that APP calls in the SDK that IMSI Verification System provides identifies to IMSI certificate server, IMSI certificate server checking user profile, IMSI, APP mark and login Token legitimacy, after completing user log-in authentication flow process, IMSI conversation server record user conversation and user's APP log-on message.
4. method according to claim 3, it is characterised in that user uses the flow process of the binding with third party APP that Activates Phone during mobile APP to be first:
1) user uses APP first, and Activate Phone the binding with third party APP, and third party APP sends mobile phone IMSI and APP and is identified to IMSI certificate server;
2), after IMSI certificate server obtains and confirm user identity and phone number according to the mobile phone IMSI obtained from mobile communication operator, transmission identifying code is to user mobile phone;
3) user confirms binding after inputting the short message verification code received in APP application server;
4) IMSI certificate server is verified short message verification code and generates login Token;
5) mapping relations of IMSI, APP mark of IMSI certificate server record user mobile phone, login Token and user profile;
6) IMSI certificate server returns and logs in Token to third party APP;
7) IMSI certificate server sends APP information and user identity and registers third party's APP information to IMSI conversation server.
CN201511030706.3A 2015-12-30 2015-12-30 APP real-name authentication safe login system and method based on mobile phone IMSI Active CN105791262B (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201511030706.3A CN105791262B (en) 2015-12-30 2015-12-30 APP real-name authentication safe login system and method based on mobile phone IMSI

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201511030706.3A CN105791262B (en) 2015-12-30 2015-12-30 APP real-name authentication safe login system and method based on mobile phone IMSI

Publications (2)

Publication Number Publication Date
CN105791262A true CN105791262A (en) 2016-07-20
CN105791262B CN105791262B (en) 2019-05-17

Family

ID=56390302

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201511030706.3A Active CN105791262B (en) 2015-12-30 2015-12-30 APP real-name authentication safe login system and method based on mobile phone IMSI

Country Status (1)

Country Link
CN (1) CN105791262B (en)

Cited By (20)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN106203021A (en) * 2016-07-26 2016-12-07 中卓信(北京)科技有限公司 The application login method of a kind of many certification modes integration and system
CN106304074A (en) * 2016-08-31 2017-01-04 尹子栋 Auth method and system towards mobile subscriber
CN106993289A (en) * 2017-06-02 2017-07-28 安徽建工集团有限公司 A kind of authentication registration method
CN107370665A (en) * 2017-07-18 2017-11-21 福州大学 A kind of instant text communications method of low-power consumption suitable for LoRa networks
CN107948970A (en) * 2017-11-15 2018-04-20 中国联合网络通信集团有限公司 System of real name method of network entry, system and the mobile terminal of subordinate terminal
CN108123918A (en) * 2016-11-29 2018-06-05 中兴通讯股份有限公司 A kind of account authentication login method and device
CN108322430A (en) * 2017-03-02 2018-07-24 黄策 The real-name authentication method of anonymous formula
CN108990059A (en) * 2017-06-02 2018-12-11 阿里巴巴集团控股有限公司 A kind of verification method and device
CN109067551A (en) * 2018-09-26 2018-12-21 深圳壹账通智能科技有限公司 A kind of real name identification method, computer readable storage medium and terminal device
CN109089264A (en) * 2018-08-02 2018-12-25 江苏满运软件科技有限公司 A kind of mobile terminal exempts from the method and system of close login
CN110098933A (en) * 2018-01-29 2019-08-06 卓望数码技术(深圳)有限公司 A kind of mobile phone application automatic identity authentication method and system
CN110149629A (en) * 2019-05-22 2019-08-20 中国联合网络通信集团有限公司 A kind of method and system of fast registration and login application program based on mobile phone
CN111010363A (en) * 2019-09-20 2020-04-14 中国银联股份有限公司 Information authentication method and system, authentication module and user terminal
CN111163083A (en) * 2019-12-27 2020-05-15 杭州数梦工场科技有限公司 Login session control method and device based on application granularity and computer equipment
CN111259358A (en) * 2020-01-07 2020-06-09 数字广东网络建设有限公司 Login method, login device, computer equipment and storage medium
CN111935709A (en) * 2020-09-23 2020-11-13 广州市玄武无线科技股份有限公司 Application program login method and device of terminal and electronic equipment
CN112154634A (en) * 2018-05-18 2020-12-29 瑞典爱立信有限公司 Application access control
CN112165458A (en) * 2020-09-07 2021-01-01 中国联合网络通信集团有限公司 Real-name authentication method, device and terminal
CN114973471A (en) * 2021-05-12 2022-08-30 中移互联网有限公司 Access control authentication method and device, electronic equipment and storage medium
CN115037486A (en) * 2021-02-20 2022-09-09 中国电信股份有限公司 User authentication method, system, server, terminal, network device and storage medium

Citations (7)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101795196A (en) * 2010-03-10 2010-08-04 宇龙计算机通信科技(深圳)有限公司 Authentication method and authentication system for logging in to online banks
CN102413466A (en) * 2011-11-24 2012-04-11 广东高新兴通信股份有限公司 Logging-in authentication method for cell phone
CN103269270A (en) * 2013-04-25 2013-08-28 安徽杨凌科技有限公司 Real-name authentication safe login method and system based on cell phone number
CN103701758A (en) * 2012-09-27 2014-04-02 中国电信股份有限公司 Method and system for using various businesses through mobile terminal client, and user authentication gateway
CN104796255A (en) * 2014-01-21 2015-07-22 中国移动通信集团安徽有限公司 A safety certification method, device and system for a client end
CN105100415A (en) * 2015-05-28 2015-11-25 努比亚技术有限公司 Login method and mobile terminal
WO2015195180A1 (en) * 2014-06-16 2015-12-23 Ebay Inc. Systems and methods for authenticating a user based on a computing device

Patent Citations (7)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101795196A (en) * 2010-03-10 2010-08-04 宇龙计算机通信科技(深圳)有限公司 Authentication method and authentication system for logging in to online banks
CN102413466A (en) * 2011-11-24 2012-04-11 广东高新兴通信股份有限公司 Logging-in authentication method for cell phone
CN103701758A (en) * 2012-09-27 2014-04-02 中国电信股份有限公司 Method and system for using various businesses through mobile terminal client, and user authentication gateway
CN103269270A (en) * 2013-04-25 2013-08-28 安徽杨凌科技有限公司 Real-name authentication safe login method and system based on cell phone number
CN104796255A (en) * 2014-01-21 2015-07-22 中国移动通信集团安徽有限公司 A safety certification method, device and system for a client end
WO2015195180A1 (en) * 2014-06-16 2015-12-23 Ebay Inc. Systems and methods for authenticating a user based on a computing device
CN105100415A (en) * 2015-05-28 2015-11-25 努比亚技术有限公司 Login method and mobile terminal

Cited By (28)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN106203021A (en) * 2016-07-26 2016-12-07 中卓信(北京)科技有限公司 The application login method of a kind of many certification modes integration and system
CN106203021B (en) * 2016-07-26 2018-05-29 中卓信(北京)科技有限公司 A kind of more certification modes are integrated to apply login method and system
CN106304074A (en) * 2016-08-31 2017-01-04 尹子栋 Auth method and system towards mobile subscriber
CN106304074B (en) * 2016-08-31 2019-08-16 尹子栋 Auth method and system towards mobile subscriber
CN108123918A (en) * 2016-11-29 2018-06-05 中兴通讯股份有限公司 A kind of account authentication login method and device
CN108322430A (en) * 2017-03-02 2018-07-24 黄策 The real-name authentication method of anonymous formula
CN108990059A (en) * 2017-06-02 2018-12-11 阿里巴巴集团控股有限公司 A kind of verification method and device
CN106993289A (en) * 2017-06-02 2017-07-28 安徽建工集团有限公司 A kind of authentication registration method
CN107370665A (en) * 2017-07-18 2017-11-21 福州大学 A kind of instant text communications method of low-power consumption suitable for LoRa networks
CN107948970A (en) * 2017-11-15 2018-04-20 中国联合网络通信集团有限公司 System of real name method of network entry, system and the mobile terminal of subordinate terminal
CN107948970B (en) * 2017-11-15 2020-12-08 中国联合网络通信集团有限公司 Real-name system network access method and system of auxiliary terminal and mobile terminal
CN110098933A (en) * 2018-01-29 2019-08-06 卓望数码技术(深圳)有限公司 A kind of mobile phone application automatic identity authentication method and system
CN110098933B (en) * 2018-01-29 2021-09-14 卓望数码技术(深圳)有限公司 Automatic identity authentication method and system for mobile phone application
US11785013B2 (en) 2018-05-18 2023-10-10 Telefonaktiebolaget Lm Ericsson (Publ) Application program access control
CN112154634A (en) * 2018-05-18 2020-12-29 瑞典爱立信有限公司 Application access control
CN109089264A (en) * 2018-08-02 2018-12-25 江苏满运软件科技有限公司 A kind of mobile terminal exempts from the method and system of close login
CN109067551A (en) * 2018-09-26 2018-12-21 深圳壹账通智能科技有限公司 A kind of real name identification method, computer readable storage medium and terminal device
CN110149629A (en) * 2019-05-22 2019-08-20 中国联合网络通信集团有限公司 A kind of method and system of fast registration and login application program based on mobile phone
CN111010363A (en) * 2019-09-20 2020-04-14 中国银联股份有限公司 Information authentication method and system, authentication module and user terminal
CN111163083A (en) * 2019-12-27 2020-05-15 杭州数梦工场科技有限公司 Login session control method and device based on application granularity and computer equipment
CN111259358A (en) * 2020-01-07 2020-06-09 数字广东网络建设有限公司 Login method, login device, computer equipment and storage medium
CN111259358B (en) * 2020-01-07 2022-09-06 数字广东网络建设有限公司 Login method, login device, computer equipment and storage medium
CN112165458A (en) * 2020-09-07 2021-01-01 中国联合网络通信集团有限公司 Real-name authentication method, device and terminal
CN112165458B (en) * 2020-09-07 2023-04-18 中国联合网络通信集团有限公司 Real-name authentication method, device and terminal
CN111935709A (en) * 2020-09-23 2020-11-13 广州市玄武无线科技股份有限公司 Application program login method and device of terminal and electronic equipment
CN111935709B (en) * 2020-09-23 2021-02-05 广州市玄武无线科技股份有限公司 Application program login method and device of terminal and electronic equipment
CN115037486A (en) * 2021-02-20 2022-09-09 中国电信股份有限公司 User authentication method, system, server, terminal, network device and storage medium
CN114973471A (en) * 2021-05-12 2022-08-30 中移互联网有限公司 Access control authentication method and device, electronic equipment and storage medium

Also Published As

Publication number Publication date
CN105791262B (en) 2019-05-17

Similar Documents

Publication Publication Date Title
CN105791262A (en) APP real name authentication secure login system and method based on mobile phone IMSI
CN104113552B (en) A kind of platform authorization method, platform service end and applications client and system
CN104883259B (en) A kind of method that cell-phone number is registered automatically as network application account
CN104125062B (en) Login method and device, login authentication device, server, terminal and system
CN104158802B (en) A kind of platform authorization method, platform service end and applications client and system
US10218701B2 (en) System and method for securing account access by verifying account with email provider
CN104954383A (en) Application program login method and system
EP3162104B1 (en) A method to authenticate calls in a telecommunication system
CN103249045A (en) Identification method, device and system
CN109005159B (en) Data processing method for terminal access system server and authentication server
CN106817347A (en) Third-party application authentication method, certificate server, terminal and management server
CN105337997A (en) Log-in method of application client and relevant device
CN106060034A (en) Account login method and device
CN108055238A (en) A kind of account verification method and system
CN104767713A (en) Account binding method, server and account binding system
CN105813072A (en) Terminal authentication method, system and cloud server
CN103167498A (en) Ability control method and system
CN105681258A (en) Session method and session device based on third-party server
CN104022878A (en) Film-mounted SIM card and corresponding application authentication system and authentication method
CN104253787A (en) Service authentication method and system
CN107483477B (en) Account management method and account management system
CN113852639B (en) Data processing method, device, electronic equipment and computer readable storage medium
CN104918244A (en) Terminal and terminal communication method
CN104469772A (en) Website equipment authentication method and device and authentication system
KR102422719B1 (en) Method of user authentication uisng usim information and device for user authentication performing the same

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
GR01 Patent grant
GR01 Patent grant