CN105791262B - APP real-name authentication safe login system and method based on mobile phone IMSI - Google Patents

APP real-name authentication safe login system and method based on mobile phone IMSI Download PDF

Info

Publication number
CN105791262B
CN105791262B CN201511030706.3A CN201511030706A CN105791262B CN 105791262 B CN105791262 B CN 105791262B CN 201511030706 A CN201511030706 A CN 201511030706A CN 105791262 B CN105791262 B CN 105791262B
Authority
CN
China
Prior art keywords
imsi
app
user
party
mobile phone
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Active
Application number
CN201511030706.3A
Other languages
Chinese (zh)
Other versions
CN105791262A (en
Inventor
王嵩伟
王茂华
梁礼雪
陈章卓
江荣智
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Guangdong Eshore Technology Co Ltd
Original Assignee
Guangdong Eshore Technology Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Guangdong Eshore Technology Co Ltd filed Critical Guangdong Eshore Technology Co Ltd
Priority to CN201511030706.3A priority Critical patent/CN105791262B/en
Publication of CN105791262A publication Critical patent/CN105791262A/en
Application granted granted Critical
Publication of CN105791262B publication Critical patent/CN105791262B/en
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/08Network architectures or network communication protocols for network security for authentication of entities
    • H04L63/0815Network architectures or network communication protocols for network security for authentication of entities providing single-sign-on or federations
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W12/00Security arrangements; Authentication; Protecting privacy or anonymity
    • H04W12/06Authentication

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Security & Cryptography (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Signal Processing (AREA)
  • Computer Hardware Design (AREA)
  • Computing Systems (AREA)
  • General Engineering & Computer Science (AREA)
  • Telephonic Communication Services (AREA)
  • Mobile Radio Communication Systems (AREA)
  • Telephone Function (AREA)

Abstract

The APP real-name authentication safe login system based on mobile phone IMSI that the invention discloses a kind of, the system include IMSI certification APP exploitation SDK, IMSI certificate server, IMSI conversation server.Wherein, IMSI authenticates APP and develops SDK, is supplied to third party APP exploitation producer by IMSI Verification System, third party APP uses the SDK in the process of development.IMSI certificate server receives the certification logging request that third party APP is initiated and return authentication result.IMSI conversation server, registration third party APP authenticate login record, management and record user APP online information.In addition, the invention also discloses a kind of APP real-name authentication safe login method based on mobile phone IMSI.The experience that user uses APP is improved by the invention, simplifies login process, reduces exploitation complexity and the development time of third party APP producer's login authentication part.

Description

APP real-name authentication safe login system and method based on mobile phone IMSI
Technical field
The present invention relates to technical field of security authentication more particularly to a kind of APP real-name authentication safety based on mobile phone IMSI Login system and method.
Background technique
International mobile subscriber identity (IMSI, International Mobile Subscriber Identity) is For distinguishing different user, the unduplicated identification code in all cellular networks in cellular network.
Mobile applications (Mobile Application, abbreviation Mobile App, apps) or application program of mobile phone, Mobile applications, mobile phone app etc. refer to design to the application run in smart phone, tablet computer and other mobile devices Program.
The mobile device operation system of mainstream at present: Google Android, apple iOS, blackberry, Microsoft Windows Phone。
OpenID is the online identity Verification System an of decentralization.For supporting the website of OpenID, user is not required to Remember that the conventional authentication as username and password marks.Instead they only need in advance in a conduct It is registered on the website of OpenID Identity Provider (identity provider, IDP).OpenID is decentralization, any net A kind of mode that log in as user of OpenID can be used by standing, and any website also all can serve as OpenID identity and provide Person.OpenID is both solved the problems, such as and is not need to rely on central website to confirm digital identity.
OpenID is used by more and more big websites, for example as the AOL and Orange of Identity Provider. OpenID can be used together with the Windows CardSpace of .NET Framework.
In existing mobile application usage scenario, user requires to register a set of step on respectively using different mobile applications Information is recorded, or is logged in using the third-party applications such as wechat, QQ, the safe real-name authentication of enterprise level can not be provided.
Summary of the invention
The purpose of the invention is to overcome the deficiencies of existing technologies, a kind of APP real name based on mobile phone IMSI is provided and is recognized Security Login System and method are demonstrate,proved, the real name information that phone number is registered in telecom operators is can use, realizes the peace of real name Full certification.
To achieve the above object, the APP real-name authentication safe login system based on mobile phone IMSI that the present invention provides a kind of, The system includes IMSI certification APP exploitation SDK, IMSI certificate server, IMSI conversation server.
Wherein, IMSI authenticates APP and develops SDK, is supplied to third party APP exploitation producer, third for IMSI Verification System Square APP uses the SDK to complete the exploitation that certification logs in part in the process of development, and SDK encapsulates the tune to IMSI Verification System With.
IMSI certificate server, for receiving the certification logging request and return authentication result of third party APP initiation.
IMSI conversation server, for registering third party APP certification login record, management and record user APP believe online Breath.
Further, system user when using for the first time needs third party APP to bind with mobile phone.
In addition, the present invention also provides a kind of APP real-name authentication safe login method based on mobile phone IMSI, this method Process are as follows: for user for the first time using the binding to Activate Phone when moving APP with third party APP, APP calls IMSI Verification System to provide SDK in API send mobile phone IMSI, third party APP log in Token and third party APP identify to IMSI certificate server, IMSI certificate server verifies user information, IMSI, APP mark and logs in Token legitimacy, completes user log-in authentication process Afterwards, IMSI conversation server record user conversation and user's APP log-on message.
Further, user is for the first time using the process to Activate Phone when moving APP with the binding of third party APP are as follows:
1) user uses APP for the first time, the binding to Activate Phone with third party APP, third party APP send mobile phone IMSI and APP is identified to IMSI certificate server;
2) IMSI certificate server obtains from mobile communication operator according to the mobile phone IMSI of acquisition and confirms user's body After part and phone number, identifying code is sent to user mobile phone;
3) user confirms binding after inputting the short message verification code received in APP application server;
4) IMSI certificate server, which is verified short message verification code and generated, logs in Token;
5) mapping of IMSI, APP mark, login Token and user information of IMSI certificate server record user mobile phone Relationship;
6) IMSI certificate server returns to login Token and gives third party APP;
7) IMSI certificate server sends APP information and user identity to IMSI conversation server registration third party APP letter Breath.
Technical solution of the present invention bring the utility model has the advantages that
Whole mobile phone users can be covered through the invention, and realize IMSI's based on the data of business hall service handling OpenID real-name authentication effectively reduces the development cost of enterprise-level application safety certification part, improves development efficiency.Furthermore it adopts The single-sign-on of mobile phone application can also be realized with the present invention.
Detailed description of the invention
In order to more clearly explain the embodiment of the invention or the technical proposal in the existing technology, to embodiment or will show below There is attached drawing needed in technical description to be briefly described, it should be apparent that, the accompanying drawings in the following description is only this Some embodiments of invention for those of ordinary skill in the art without creative efforts, can be with Other attached drawings are obtained according to these attached drawings.
Fig. 1 is system embodiment schematic diagram of the invention.
Specific embodiment
Following will be combined with the drawings in the embodiments of the present invention, and technical solution in the embodiment of the present invention carries out clear, complete Site preparation description, it is clear that described embodiments are only a part of the embodiments of the present invention, instead of all the embodiments.It is based on Embodiment in the present invention, it is obtained by those of ordinary skill in the art without making creative efforts every other Embodiment shall fall within the protection scope of the present invention.
The present invention provides a kind of APP real-name authentication safe login systems for being based on mobile phone IMSI (being stored in SIM cards of mobile phones) System, third party APP producer exploitation APP use IMSI certification APP exploitation SDK to realize certification secure log part, the SDK in the process It can read the IMSI stored in mobile phone and be sent to IMSI certificate server, carry out APP login authentication.It can be changed by the invention Kind user uses the experience of APP, simplifies login process, while can reduce the exploitation of third party APP producer's login authentication part Complexity and development time.
A kind of APP real-name authentication safe login system based on mobile phone IMSI of the invention, including IMSI certification APP exploitation SDK, IMSI certificate server, IMSI conversation server.
Wherein, IMSI authenticates APP and develops SDK, is supplied to third party APP exploitation producer, third party by IMSI Verification System APP uses the SDK to complete the exploitation that certification logs in part in the process of development, and SDK encapsulates the calling to IMSI Verification System.
IMSI certificate server receives the certification logging request that third party APP is initiated and return authentication result.
IMSI conversation server, registration third party APP authenticate login record, management and record user APP online information.
It is as shown in Figure 1 the embodiment of the present invention schematic diagram.When user uses third party APP for the first time, need to third party APP is bound with mobile phone, specific as follows:
1, user uses APP for the first time, the binding to Activate Phone with third party APP, third party APP send mobile phone IMSI and APP is identified to IMSI certificate server.
2, IMSI certificate server obtains from mobile communication operator according to the mobile phone IMSI of acquisition and confirms user's body After part and phone number, identifying code is sent to user mobile phone.
3, user confirms binding after inputting the short message verification code received in APP application server.
4, IMSI certificate server, which is verified short message verification code and generated, logs in Token.
5, the mapping of IMSI, APP mark, login Token and user information of IMSI certificate server record user mobile phone Relationship.
6, IMSI certificate server returns to login Token and gives third party APP.
7, IMSI certificate server sends APP information and user identity to IMSI conversation server registration third party APP letter Breath.
In addition, the present invention also provides a kind of method of APP real-name authentication safe login based on mobile phone IMSI, this method Detailed process are as follows: user for the first time using mobile APP when the binding that Activates Phone with third party APP, APP calls IMSI certification system The API in SDK that system provides sends mobile phone IMSI, third party APP login Token and third party APP and identifies to IMSI certification clothes Business device, IMSI certificate server verify user information, IMSI, APP mark and log in Token legitimacy, complete user's login and recognizes After demonstrate,proving process, IMSI conversation server records user conversation and user's APP log-on message.
The embodiment of the present invention has been described in detail above, specific case used herein to the principle of the present invention and Embodiment is expounded, and the above description of the embodiment is only used to help understand the method for the present invention and its core ideas; At the same time, for those skilled in the art can in specific embodiments and applications according to the thought of the present invention There is change place, in conclusion the contents of this specification are not to be construed as limiting the invention.

Claims (2)

1. the APP real-name authentication safe login system based on mobile phone IMSI, which is characterized in that the system includes IMSI certification APP Develop SDK, IMSI certificate server, IMSI conversation server;
Wherein, IMSI authenticates APP and develops SDK, is supplied to third party APP exploitation producer, third party APP for IMSI Verification System The exploitation that certification logs in part is completed using the SDK in the process of development, SDK encapsulates the calling to IMSI Verification System;
IMSI certificate server, for receiving the certification logging request and return authentication result of third party APP initiation;
IMSI conversation server, for registering third party APP certification login record, management and record user APP online information;
For user for the first time using the binding for needing to Activate Phone with third party APP when third party APP, third party APP sends mobile phone IMSI and APP is identified to IMSI certificate server;IMSI certificate server is according to the mobile phone IMSI of acquisition from mobile communication operation After obtaining at quotient and confirming user identity and phone number, identifying code is sent to user mobile phone;User is in APP application server Binding is confirmed after inputting the short message verification code received.
2. the APP real-name authentication safe login method based on mobile phone IMSI, which is characterized in that the process of this method are as follows: user is first The binding to Activate Phone when the secondary APP using third party with third party APP, APP are called in the SDK of IMSI Verification System offer API sends mobile phone IMSI, third party APP login Token and third party APP and identifies to IMSI certificate server, IMSI certification clothes Being engaged in, device verifies user information, IMSI, APP are identified and login Token legitimacy, after completing user log-in authentication process, IMSI meeting Talk about server record user conversation and user's APP log-on message;
Wherein, user for the first time using third party APP when the process that Activates Phone with the binding of third party APP are as follows:
1) user uses third party APP for the first time, the binding to Activate Phone with third party APP, third party APP send mobile phone IMSI and APP is identified to IMSI certificate server;
2) IMSI certificate server obtained and confirmed from mobile communication operator according to the mobile phone IMSI of acquisition user identity and After phone number, identifying code is sent to user mobile phone;
3) user confirms binding after inputting the short message verification code received in APP application server;
4) IMSI certificate server, which is verified short message verification code and generated, logs in Token;
5) IMSI, APP mark of IMSI certificate server record user mobile phone, the mapping relations of login Token and user information;
6) IMSI certificate server returns to login Token and gives third party APP;
7) IMSI certificate server sends APP information and user identity and registers third party APP information to IMSI conversation server.
CN201511030706.3A 2015-12-30 2015-12-30 APP real-name authentication safe login system and method based on mobile phone IMSI Active CN105791262B (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201511030706.3A CN105791262B (en) 2015-12-30 2015-12-30 APP real-name authentication safe login system and method based on mobile phone IMSI

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201511030706.3A CN105791262B (en) 2015-12-30 2015-12-30 APP real-name authentication safe login system and method based on mobile phone IMSI

Publications (2)

Publication Number Publication Date
CN105791262A CN105791262A (en) 2016-07-20
CN105791262B true CN105791262B (en) 2019-05-17

Family

ID=56390302

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201511030706.3A Active CN105791262B (en) 2015-12-30 2015-12-30 APP real-name authentication safe login system and method based on mobile phone IMSI

Country Status (1)

Country Link
CN (1) CN105791262B (en)

Families Citing this family (20)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN106203021B (en) * 2016-07-26 2018-05-29 中卓信(北京)科技有限公司 A kind of more certification modes are integrated to apply login method and system
CN106304074B (en) * 2016-08-31 2019-08-16 尹子栋 Auth method and system towards mobile subscriber
CN108123918A (en) * 2016-11-29 2018-06-05 中兴通讯股份有限公司 A kind of account authentication login method and device
CN108322430B (en) * 2017-03-02 2020-08-28 黄策 Anonymous real name authentication method
CN108990059B (en) * 2017-06-02 2021-06-29 创新先进技术有限公司 Verification method and device
CN106993289A (en) * 2017-06-02 2017-07-28 安徽建工集团有限公司 A kind of authentication registration method
CN107370665A (en) * 2017-07-18 2017-11-21 福州大学 A kind of instant text communications method of low-power consumption suitable for LoRa networks
CN107948970B (en) * 2017-11-15 2020-12-08 中国联合网络通信集团有限公司 Real-name system network access method and system of auxiliary terminal and mobile terminal
CN110098933B (en) * 2018-01-29 2021-09-14 卓望数码技术(深圳)有限公司 Automatic identity authentication method and system for mobile phone application
WO2019219205A1 (en) 2018-05-18 2019-11-21 Telefonaktiebolaget Lm Ericsson (Publ) Application program access control
CN109089264A (en) * 2018-08-02 2018-12-25 江苏满运软件科技有限公司 A kind of mobile terminal exempts from the method and system of close login
CN109067551A (en) * 2018-09-26 2018-12-21 深圳壹账通智能科技有限公司 A kind of real name identification method, computer readable storage medium and terminal device
CN110149629A (en) * 2019-05-22 2019-08-20 中国联合网络通信集团有限公司 A kind of method and system of fast registration and login application program based on mobile phone
CN111010363B (en) * 2019-09-20 2022-04-05 中国银联股份有限公司 Information authentication method and system, authentication module and user terminal
CN111163083A (en) * 2019-12-27 2020-05-15 杭州数梦工场科技有限公司 Login session control method and device based on application granularity and computer equipment
CN111259358B (en) * 2020-01-07 2022-09-06 数字广东网络建设有限公司 Login method, login device, computer equipment and storage medium
CN112165458B (en) * 2020-09-07 2023-04-18 中国联合网络通信集团有限公司 Real-name authentication method, device and terminal
CN111935709B (en) * 2020-09-23 2021-02-05 广州市玄武无线科技股份有限公司 Application program login method and device of terminal and electronic equipment
CN115037486A (en) * 2021-02-20 2022-09-09 中国电信股份有限公司 User authentication method, system, server, terminal, network device and storage medium
CN114973471A (en) * 2021-05-12 2022-08-30 中移互联网有限公司 Access control authentication method and device, electronic equipment and storage medium

Citations (7)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101795196A (en) * 2010-03-10 2010-08-04 宇龙计算机通信科技(深圳)有限公司 Authentication method and authentication system for logging in to online banks
CN102413466A (en) * 2011-11-24 2012-04-11 广东高新兴通信股份有限公司 Logging-in authentication method for cell phone
CN103269270A (en) * 2013-04-25 2013-08-28 安徽杨凌科技有限公司 Real-name authentication safe login method and system based on cell phone number
CN103701758A (en) * 2012-09-27 2014-04-02 中国电信股份有限公司 Method and system for using various businesses through mobile terminal client, and user authentication gateway
CN104796255A (en) * 2014-01-21 2015-07-22 中国移动通信集团安徽有限公司 A safety certification method, device and system for a client end
CN105100415A (en) * 2015-05-28 2015-11-25 努比亚技术有限公司 Login method and mobile terminal
WO2015195180A1 (en) * 2014-06-16 2015-12-23 Ebay Inc. Systems and methods for authenticating a user based on a computing device

Patent Citations (7)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101795196A (en) * 2010-03-10 2010-08-04 宇龙计算机通信科技(深圳)有限公司 Authentication method and authentication system for logging in to online banks
CN102413466A (en) * 2011-11-24 2012-04-11 广东高新兴通信股份有限公司 Logging-in authentication method for cell phone
CN103701758A (en) * 2012-09-27 2014-04-02 中国电信股份有限公司 Method and system for using various businesses through mobile terminal client, and user authentication gateway
CN103269270A (en) * 2013-04-25 2013-08-28 安徽杨凌科技有限公司 Real-name authentication safe login method and system based on cell phone number
CN104796255A (en) * 2014-01-21 2015-07-22 中国移动通信集团安徽有限公司 A safety certification method, device and system for a client end
WO2015195180A1 (en) * 2014-06-16 2015-12-23 Ebay Inc. Systems and methods for authenticating a user based on a computing device
CN105100415A (en) * 2015-05-28 2015-11-25 努比亚技术有限公司 Login method and mobile terminal

Also Published As

Publication number Publication date
CN105791262A (en) 2016-07-20

Similar Documents

Publication Publication Date Title
CN105791262B (en) APP real-name authentication safe login system and method based on mobile phone IMSI
CN104883259B (en) A kind of method that cell-phone number is registered automatically as network application account
CN108476223B (en) Method and apparatus for SIM-based authentication of non-SIM devices
CN103152400B (en) The method, system and the cloud server that log in is carried out by mobile terminal
CN104113551B (en) A kind of platform authorization method, platform service end and applications client and system
CN104158802B (en) A kind of platform authorization method, platform service end and applications client and system
CN103124267B (en) The method, system and the cloud server that log in/register is carried out by mobile terminal
US10218701B2 (en) System and method for securing account access by verifying account with email provider
CN103124266B (en) Mobile terminal and carry out the method, system and the cloud server that log in by it
CN104954383A (en) Application program login method and system
CN102904900B (en) A kind of method of subscriber identity authentication in registration and/or logging in online application
CN104618315B (en) A kind of method, apparatus and system of verification information push and Information Authentication
CN107086979B (en) User terminal verification login method and device
CN104995891B (en) The method, apparatus and gateway of processing business message
CN106790251B (en) User access method and user access system
CN107113613A (en) Server, mobile terminal, real-name network authentication system and method
US10390226B1 (en) Mobile identification method based on SIM card and device-related parameters
CN108055238A (en) A kind of account verification method and system
CN103886661A (en) Entrance guard management method and system
CN106817347A (en) Third-party application authentication method, certificate server, terminal and management server
CN105992204A (en) Access authentication method of applications of mobile intelligent terminal and device
CN105828329A (en) Authentication management method for mobile terminals
CN106203021B (en) A kind of more certification modes are integrated to apply login method and system
US20190281053A1 (en) Method and apparatus for facilitating frictionless two-factor authentication
CN104253787A (en) Service authentication method and system

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
GR01 Patent grant
GR01 Patent grant