CN107135201A - A kind of webserver login authentication method and device - Google Patents

A kind of webserver login authentication method and device Download PDF

Info

Publication number
CN107135201A
CN107135201A CN201710214703.8A CN201710214703A CN107135201A CN 107135201 A CN107135201 A CN 107135201A CN 201710214703 A CN201710214703 A CN 201710214703A CN 107135201 A CN107135201 A CN 107135201A
Authority
CN
China
Prior art keywords
user
device identification
user equipment
account number
user account
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Granted
Application number
CN201710214703.8A
Other languages
Chinese (zh)
Other versions
CN107135201B (en
Inventor
曾杰
曾一杰
汪源
陈刚
陈李平
颜中冠
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Netease Hangzhou Network Co Ltd
Original Assignee
Netease Hangzhou Network Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Netease Hangzhou Network Co Ltd filed Critical Netease Hangzhou Network Co Ltd
Priority to CN201710214703.8A priority Critical patent/CN107135201B/en
Publication of CN107135201A publication Critical patent/CN107135201A/en
Application granted granted Critical
Publication of CN107135201B publication Critical patent/CN107135201B/en
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/10Network architectures or network communication protocols for network security for controlling access to devices or network resources
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/08Network architectures or network communication protocols for network security for authentication of entities
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/08Network architectures or network communication protocols for network security for authentication of entities
    • H04L63/0876Network architectures or network communication protocols for network security for authentication of entities based on the identity of the terminal or configuration, e.g. MAC address, hardware or software configuration or device fingerprint
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/18Network architectures or network communication protocols for network security using different networks or channels, e.g. using out of band channels
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/10Network architectures or network communication protocols for network security for controlling access to devices or network resources
    • H04L63/101Access control lists [ACL]
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/10Network architectures or network communication protocols for network security for controlling access to devices or network resources
    • H04L63/102Entity profiles

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Hardware Design (AREA)
  • Computer Security & Cryptography (AREA)
  • Computing Systems (AREA)
  • General Engineering & Computer Science (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Signal Processing (AREA)
  • Power Engineering (AREA)
  • Telephonic Communication Services (AREA)
  • Information Transfer Between Computers (AREA)
  • Lock And Its Accessories (AREA)

Abstract

Embodiments of the present invention provide a kind of webserver login authentication method.The webserver login authentication method includes:Receive the first device identification that authentication information and first user equipment are carried in the certification request of the first user equipment transmission, the certification request;If it is judged that the corresponding user account number of the authentication information is locked, then checking is unlocked to the user account number according to first device identification;After unblock is verified, the response message passed through to the first user equipment return authentication.When receiving the certification request of user equipment transmission, if it is judged that corresponding user account number is frozen, automatic unlocking certification is then carried out to user according to the device identification of user equipment, enter unblock flow without guiding user, so as to simplify unblock flow operations, user's loss of vital data is avoided, is that user brings more preferable experience.In addition, embodiments of the present invention provide a kind of webserver login authentication device.

Description

A kind of webserver login authentication method and device
Technical field
Embodiments of the present invention are related to Internet technical field, more specifically, embodiments of the present invention are related to one kind Webserver login authentication method and device.
Background technology
This part is it is intended that the embodiments of the present invention stated in claims provide background or context.Herein Description recognizes it is prior art not because not being included in this part.
With continuing to develop for Internet technology, the service that network can be provided is also more and more, is such as used to provide information The social network sites shared, propagate and obtained or application (App) are carried there is provided the online shopping site of Convenient shopping mode or application The services such as the Net silver for convenient bank-user Account Administration, and first step that user obtains these services is exactly by input Authentication information, logs in the webserver for providing respective service.
Wherein, user registers access authentication by the applications client installed on website or terminal device to the webserver Information, authentication information can include user account number and user cipher two, and the webserver stores use after user registration success The user cipher that family account number and user are set is as authentication information, when subsequent user logs on the webserver, network clothes Device be engaged in applications client return login page, user (uses in the login page input authentication information that applications client is shown Family account number and user cipher) and submit to the webserver, the webserver compare the authentication information of user's submission with from Whether the authentication information stored during user's registration one is shown and determines whether User logs in.
The content of the invention
But, for the reason for protecting user data access security, such as in order to avoid stream after the cell-phone number pin number of registration It is given to new user when others uses and the problem of correspondence account number etc. is likely to occur still can be used, if user exists in the prior art It is not logged in a period of time, the webserver will lock user account number.User's request logging in network clothes after account number is locked , it is necessary to which account number releasing process is first carried out during business device, after unlocking successfully, user can just continue access network services device.
It can generally be verified, be tested using the password protection mailbox or other recognizable personal information reserved before user Card unlocks corresponding user account number after.And if user does not reserve password protection mailbox or other recognizable personal letters Breath, or have forgotten the personal information of registration and such as unlock the answer of problem, due to None- identified, whether the user is legal use Family, therefore, the user be will be unable to use registered successful user account number access network services device, and account can not be opened again With if being stored with user's significant data under the user account number, user data loss can be caused.
Therefore, in the prior art, when access network services device after user account number is locked, if being reserved with password protection When mailbox or available personal information, account number releasing process is cumbersome, and if not reserving password protection mailbox or available individual Information, then may cause user data loss;And in most cases, not the problems such as phone number circulation user is not occurred, But due to problem present in unlocked step, easily cause user it is inconvenient for use or lose account number, cause corresponding network service use The loss at family, this is very bothersome process.
Therefore, a kind of improved account number unlocking method is highly desirable to, to simplify user account number unblock operating process, it is to avoid use User data is lost.
In the present context, embodiments of the present invention are expected to provide a kind of webserver login authentication method and dress Put.
There is provided a kind of webserver login authentication method in the first aspect of embodiment of the present invention, including:
Receive in the certification request of the first user equipment transmission, the certification request and carry authentication information and described first First device identification of user equipment;
If it is judged that the corresponding user account number of the authentication information is locked, then according to first device identification to institute State user account number and be unlocked checking;And
After unblock is verified, the response message passed through to the first user equipment return authentication.
Preferably, first device identification be according to the characteristic information of first user equipment generate, for First user equipment described in unique mark in network.
Preferably, checking is unlocked to the user account number according to first device identification, specifically included:
Judge that first device identification whether there is in the corresponding safety means identification list of the user account number;
If it is present determining to be verified user account number unblock;
If it does not exist, then determining not pass through user account number unblock checking.
Preferably, the safety means identification list is obtained according to below scheme:
When receiving the registration request of second user equipment transmission, the second user is extracted from the registration request In the corresponding safety means identification list of the user account number that second device identification of equipment is generated added to registration;Or Person
Data are accessed according to the corresponding history of the record, user account number, accessing extracting data from the history expires The device identification for being enough down at least one condition is added in the safety means identification list:The time is logined successfully by closely to remote K user equipment going out of sequential selection device identification, login successfully N number of user that number of times is gone out by sequential selection more at least The corresponding device identification of equipment, the corresponding equipment mark of M user equipment that the sequential selection of single login time from long to short goes out Know, or the corresponding device identification of L user equipment that the sequential selection of login time total length from long to short goes out, wherein, K, M, N It is the positive integer more than or equal to 1 with L.
Alternatively, before any appliance mark is added in safety means list, in addition to:
It is determined that meeting default risk control condition to be added to the device identification in safety means list.
Preferably, judge whether meet default to be added to the device identification in safety means list according to below scheme Risk control condition:
Data are accessed according to the history, the statistics corresponding user equipment of device identification to be added is in preset duration Login times, are no more than predetermined threshold value, it is determined that device identification to be added meets default risk control if logged on number of times Condition;Or
Data are accessed according to the history, if the position that the corresponding user equipment of device identification to be added is logined successfully Information is matched with the conventional positional information that accesses, it is determined that device identification to be added meets default risk control condition, wherein, The conventional access position is to access the access positional information statistics recorded in data according to the history to obtain.
Preferably, the geographical location information of first user equipment is also carried in the certification request;And
If the first device identification list is present in the corresponding safety means identification list of the user account number, true Before determining to be verified user account number unblock, in addition to:
Determine that the geographical location information is present in the geographical list of locations of the corresponding safety of the user account number.
Preferably, the geographical station location marker list of the safety is obtained according to below scheme:
The each device identification included in data is accessed for the corresponding history of the record, user account number, according to institute That states that history accesses the corresponding each geographical location information of the data statistics device identification logins successfully number of times;
It is geographical added to the safety according to logining successfully number of times by sequential selection more at least and going out P geographical location information In station location marker list, wherein, P is the positive integer more than or equal to 1.
There is provided a kind of webserver login authentication device in the second aspect of embodiment of the present invention, including:
Receiving unit, certification is carried for receiving in the certification request that the first user equipment is sent, the certification request First device identification of information and first user equipment;
Authentication unit is unlocked, for if it is judged that the corresponding user account number of the authentication information is locked, then according to institute State the first device identification and checking is unlocked to the user account number;
Response unit, for after the unblock authentication unit unblock is verified, being returned to first user equipment The response message that certification passes through.
Preferably, first device identification be according to the characteristic information of first user equipment generate, for First user equipment described in unique mark in network.
Preferably, the unblock authentication unit, is used specifically for judging that first device identification whether there is in described In the corresponding safety means identification list of family account number;If it is present determining to be verified user account number unblock;If It is not present, it is determined that user account number unblock checking is not passed through.
Alternatively, webserver login authentication device provided in an embodiment of the present invention, in addition to:
Extraction unit, for when receiving the registration request of second user equipment transmission, being carried from the registration request The corresponding safety of the user account number of the second device identification added to the registration generation of the second user equipment is taken to set In standby identification list;Or data are accessed according to the corresponding history of the record, user account number, access data from the history The middle device identification for extracting at least one following condition of satisfaction is added in the safety means identification list:Login successfully the time By the device identification of the K user equipment closely gone out to remote sequential selection, login successfully number of times and gone out by sequential selection more at least The corresponding device identification of N number of user equipment, M user equipment that the sequential selection of single login time from long to short goes out correspondence Device identification, or the corresponding device identification of L user equipment that the sequential selection of login time total length from long to short goes out, its In, K, M, N and L are the positive integer more than or equal to 1.
Alternatively, webserver login authentication device provided in an embodiment of the present invention, in addition to:
First determining unit, for any appliance mark to be added into it in safety means list in the extraction unit Before, it is determined that meeting default risk control condition to be added to the device identification in safety means list.
Preferably, first determining unit, specifically for accessing data according to the history, counts equipment to be added Login times of the corresponding user equipment in preset duration are identified, predetermined threshold value are no more than if logged on number of times, it is determined that treat The device identification of addition meets default risk control condition;Or data are accessed according to the history, if to be added sets Matched for the positional information that the corresponding user equipment of mark is logined successfully with the conventional positional information that accesses, it is determined that to be added sets Standby mark meets default risk control condition, wherein, the conventional access position is to be accessed in data to remember according to the history What the access positional information statistics of record was obtained.
Preferably, the geographical location information of first user equipment is also carried in the certification request;And
Described device, in addition to:
Second determining unit, if it is described to judge that the first device identification list is present in for the unblock authentication unit In the corresponding safety means identification list of user account number, it is determined that before being verified to user account number unblock, it is determined that described Geographical location information is present in the geographical list of locations of the corresponding safety of the user account number.
Alternatively, webserver login authentication device provided in an embodiment of the present invention, in addition to:
Statistic unit, what is included for being accessed for the corresponding history of the record, user account number in data each sets Standby mark, logining successfully time for the corresponding each geographical location information of the data statistics device identification is accessed according to the history Number;
Adding device, for going out the addition of P geographical location information according to logining successfully number of times by sequential selection more at least Into the geographical station location marker list of the safety, wherein, P is the positive integer more than or equal to 1.
There is provided a kind of webserver login authentication device in the third aspect of embodiment of the present invention, for example, can With including memory and processor, wherein, processor can be used for reading the program in memory, perform following process:Receive The certification request that first user equipment is sent, the of authentication information and first user equipment is carried in the certification request One device identification;If it is judged that the corresponding user account number of the authentication information is locked, then according to first device identification Checking is unlocked to the user account number;And after unblock is verified, it is logical to the first user equipment return authentication The response message crossed.
There is provided a kind of program product in the fourth aspect of embodiment of the present invention, it includes program code, when described When program product is run, described program code is used to perform procedure below:Receive the certification request of the first user equipment transmission, institute State the first device identification that authentication information and first user equipment are carried in certification request;If it is judged that the certification The corresponding user account number of information is locked, then is unlocked checking to the user account number according to first device identification;With And after unblock is verified, the response message passed through to the first user equipment return authentication.
According to the webserver login authentication method and device of embodiment of the present invention, sent receiving user equipment Certification request when, if it is judged that corresponding user account number is frozen, then user is entered according to the device identification of user equipment Row automatic unlocking certification, enters unblock flow, so as to simplify unblock flow operations without guiding user, it is to avoid user's weight Loss of data is wanted, user's viscosity that user is used network service is added, is that user brings more preferable experience.
Brief description of the drawings
Detailed description below, above-mentioned and other mesh of exemplary embodiment of the invention are read by reference to accompanying drawing , feature and advantage will become prone to understand.In the accompanying drawings, if showing the present invention's by way of example, and not by way of limitation Dry embodiment, wherein:
Fig. 1 schematically shows the application scenarios schematic diagram according to embodiment of the present invention;
Fig. 2 schematically shows a kind of possible storage knot of safety means identification list according to embodiment of the present invention Structure schematic diagram;
Fig. 3 schematically shows the implementing procedure of the webserver login authentication method according to embodiment of the present invention Schematic diagram;
Fig. 4 is schematically shown to be solved according to embodiment of the present invention according to customer equipment identification to user account number Lock the schematic flow sheet of checking;
Fig. 5 schematically shows the structural representation of the webserver login authentication device according to embodiment of the present invention Figure;
The structure that Fig. 6 schematically shows webserver login authentication device according to another embodiment of the present invention is shown It is intended to;
The program for webserver login authentication that Fig. 7 schematically shows according to yet another embodiment of the invention is produced Product schematic diagram.
In the accompanying drawings, identical or corresponding label represents identical or corresponding part.
Embodiment
The principle and spirit of the present invention is described below with reference to some illustrative embodiments.It should be appreciated that providing this A little embodiments are used for the purpose of better understood when those skilled in the art and then realizing the present invention, and not with any Mode limits the scope of the present invention.On the contrary, these embodiments are provided so that the disclosure is more thorough and complete, and energy It is enough that the scope of the present disclosure is intactly conveyed into those skilled in the art.
One skilled in the art will appreciate that embodiments of the present invention can be implemented as a kind of system, device, equipment, method Or computer program product.Therefore, the disclosure can be implemented as following form, i.e.,:Complete hardware, complete software (including firmware, resident software, microcode etc.), or the form that hardware and software is combined.
According to the embodiment of the present invention, it is proposed that a kind of webserver login authentication method and device.
Herein, it is to be understood that any number of elements in accompanying drawing is used to example and unrestricted and any Name is only used for distinguishing, without any limitation.
Below with reference to the principle and spirit of some representative embodiments of the present invention, in detail the explaination present invention.
Summary of the invention
The inventors discovered that, user after account number is locked when logging on server, if user is reserved with password protection Mailbox or other recognizable personal information, then server will guide user enter account number unlock flow, be reserved with user Exemplified by other recognizable personal information, server will return to the unblock checking page to user, and user is by unlocking the checking page Fill in and server is submitted to after reserved personal information, server compares the individual that the personal information of user's submission is reserved with user Information, if unanimously, it is determined that unblock is verified, the login authentication page will be returned to user, user rewrites user account number With login service device after password, if user forgets reserved information or the not reserved personal information of user, user will be unable to By relative users account number access network services device, this is by all users under the user account number for causing webserver storage Loss of data.
In view of this, in the embodiment of the present invention, the webserver is after judging that user account number is locked, according to itself The user's history of storage accesses data, and peace is set up in the device identification for searching user equipment used in being logined successfully in user's history Full device identification list, if this User logs in uses the device identification of user equipment in safety means identification list, It can then perform user account number unblock flow with the corresponding user account number of automatic unlocking without extra, simplify user account number solution Lock flow, it is to avoid user data loss, improve Consumer's Experience, improve user's viscosity.
After the general principle of the present invention is described, lower mask body introduces the various non-limiting embodiment party of the present invention Formula.
Application scenarios overview
With reference first to Fig. 1, it is the application scenarios schematic diagram of the embodiment of the present invention.User 10 in user equipment 11 by pacifying The client logging in network server 12 of dress, wherein, client can be the browser of webpage, or be installed on mobile use Applications client in family equipment, such as mobile phone, tablet personal computer etc..
Be communicatively coupled between user equipment 11 and the webserver 12 by network, the network can for LAN, Wide area network etc..User equipment 11 can be for portable equipment (for example:Mobile phone, flat board, notebook computer etc.), or personal electricity Brain (PC, Personal Computer), the webserver 12 can be any equipment that can provide Internet service.
Wherein, user 10 obtains user name, the webserver using user equipment 11 by being registered to the webserver 12 12 store user name and the user cipher set with user 10 as authentication information after user is succeeded in registration, follow-up to use When family 10 logs on the webserver 12 using user equipment 11, the webserver 12 returns to login page to client, uses Login page input authentication information (i.e. user name and user cipher) that family is shown in client simultaneously submits to the webserver 12, The webserver 12 compares when user submits authentication information with from user's registration whether the authentication information that stores one is shown really It is fixed whether to allow User logs in.
In the embodiment of the present invention, in order to simplify user account number it is locked after unblock identifying procedure, the webserver can be with Realized by setting up safety means identification list, the user account number that is stored with safety means identification list is identified with safety means Between corresponding relation, as shown in Fig. 2 its for the present invention implement in a kind of possible storage organization of safety means identification list show It is intended to.
If user's request logging in network server after account number is locked, the webserver please according to login authentication Ask after the user account number of carrying judges that user account number is locked, can determine whether what is carried in login authentication request Whether customer equipment identification is in the corresponding safety means identification list of the user account number, if in automatic unlocking user's account Number, without guiding user to be unlocked flow, user's unaware unblock account number is realized, Consumer's Experience is improved.
Customer equipment identification can be used for the corresponding user equipment of unique mark in a network.By customer equipment identification, The webserver can uniquely identify corresponding user equipment in a network, when it is implemented, customer equipment identification can be with For the MAC Address of user equipment, or client is advised using some characteristic informations of user equipment using certain calculating Then calculate and obtain, as long as ensure that the device identification is unique in a network.
Wherein, the device identification in safety means identification list can be accessed according to the history of user for the webserver and remembered Record addition.For example, in user's request registration process, the webserver 12 is receiving the registration request of user equipment transmission When, extracted from the registration request received the device identification of the user equipment added to generation user account number it is corresponding can Believe in list of devices, that is, determine that user accesses the mark of user equipment used in server and identified as safety means first.
Subsequently, in user's access network services device 12 each time, the webserver 12 can record User logs in success When the device identification of used user equipment, login time, nullify the relevant informations such as login time and be used to update safety means Identification list.
When it is implemented, when needing to be unlocked certification to user account number, the webserver can according to record, should The corresponding history of user account number accesses data, and the device identification that extracting data meets at least one following condition is accessed from history Added in the safety means identification list:According to the time is logined successfully, according to the time that logins successfully by closely to remote order The device identification for the K user equipment selected;For each customer equipment identification logined successfully, each user equipment is counted The number of times that logins successfully is identified, N number of user equipment that number of times goes out by sequential selection more at least is corresponding to be set according to logining successfully Standby mark;The corresponding device identification of M user equipment that the sequential selection of single login time from long to short goes out, or login time The corresponding device identification of L user equipment that the sequential selection of total length from long to short goes out, wherein, K, M, N and L be more than etc. In 1 positive integer.Wherein, the single login time can according between the login of user login services device and nullify login time it Between time difference determine, login time total length, can be directed to each customer equipment identification, count the customer equipment identification and exist Single login time sum in the current statistic cycle.The current statistic cycle can be since the user registration success time up to sentencing Break untill the user account number locked time.
Illustrative methods
With reference to Fig. 1 application scenarios, the net according to exemplary embodiment of the invention is described with reference to Fig. 3 and Fig. 4 Network server log authentication method.It should be noted that above-mentioned application scenarios be for only for ease of understand the present invention spirit and Principle and show, embodiments of the present invention are unrestricted in this regard.On the contrary, embodiments of the present invention can be applied In applicable any scene.
As shown in figure 3, it illustrates for the implementing procedure of webserver login authentication method provided in an embodiment of the present invention Figure, may comprise steps of:
S31, the certification request for receiving the transmission of the first user equipment.
When it is implemented, user is when needing access network services device, it is possible to use the first user equipment is to network service Send the first device identification that authentication information and the first user equipment are carried in certification request, transmitted certification request.Its In, authentication information can include user by registering the user account number and user cipher that obtain to the webserver.
S32, if it is judged that the corresponding user account number of the authentication information is locked, then according to first device identification Checking is unlocked to the user account number.
The webserver judges the user account number after certification request is received according to the user account number wherein carried When being in the lock state, then solved automatically for the user account number according to the first customer equipment identification carried in certification request Lock certification.For example, the webserver can access data according to record, user account number history, judge whether user makes Logined successfully with the first user equipment, i.e., the webserver judges that the history of record is accessed in data with the presence or absence of the first user The historical data that device identification is logined successfully, if so, can then determine that unblock is verified.
S33, after unblock is verified, the response message passed through to the first user equipment return authentication.
The result is unlocked according in step S32, if it is determined that unblock is verified, then return and recognize to the first user equipment The response message passed through is demonstrate,proved, thus, it is possible to complete unblock checking in the case of user's unaware, is entered without guiding user Flow is unlocked, unblock verification operation is simplified, has heightened Consumer's Experience.
It is preferred that the security of the user data in order to further improve webserver storage, the webserver is in root When being unlocked certification to user account number according to the first device identification, it can perform, specifically include following according to the flow shown in Fig. 4 Step:
S41, judge the first device identification whether there is in the corresponding safety means identification list of the user account number, such as Fruit is then to perform step S42, otherwise, performs step S43.
When it is implemented, the webserver can extract the user account number according to the user account number included in authentication information It is corresponding for setting up the user account number that history during the user account number is locked from succeeding in registration to judging accesses data Safety means identification list.
Preferably, the webserver can extract the second device identification of second user equipment from registration request and be added to In the corresponding safety means identification list of the user account number.
In addition, the webserver can also access data by analyzing the corresponding history of the user account number, visited from the history Ask that the device identification that extracting data meets at least one following condition is added in safety means identification list:
Condition one, the device identification for going out according to the sequential selection of the time that logins successfully from the close-by examples to those far off K user equipment.
When it is implemented, the webserver can access data according to the corresponding history of the user account number of record, according to The user account number of record logins successfully the time, according to the time that logins successfully by closely to remote sequential selection, the user account number is logged in When the device identification of K user equipment that uses be added in safety means identification list.
Condition two, according to logining successfully the corresponding equipment mark of N number of user equipment that number of times is gone out by sequential selection more at least Know.
When it is implemented, the webserver can access data according to the corresponding history of the user account number of record, for Each customer equipment identification, counts that the customer equipment identification is corresponding to login successfully number of times, according to logining successfully number of times by up to The corresponding device identification of N number of user equipment that few sequential selection goes out is added in safety means identification list.
Condition three, the corresponding equipment mark of M user equipment gone out according to the sequential selection of single login time from long to short Know.
When it is implemented, the webserver accesses data according to the corresponding history of the user account number of record, the use is counted The log duration that family is logined successfully each time, and go out M user according to the sequential selection of corresponding log duration from long to short and set Standby corresponding device identification is added in safety means identification list.
Wherein, single login duration can be for record User logs in success time and this corresponding LoginLogout of login Time difference between time.
Condition four, the corresponding equipment of L user equipment gone out according to the sequential selection of login time total length from long to short Mark.
When it is implemented, the webserver accesses data according to the corresponding history of the user account number of record, the use is counted The log duration that family is logined successfully each time, for each customer equipment identification, counts the corresponding login of the customer equipment identification The corresponding log duration sum logined successfully each time of duration total length, the i.e. customer equipment identification, it is total according to login time The corresponding device identification of L user equipment that the sequential selection of length from long to short goes out.
Wherein, K, M, N and L are the positive integer more than or equal to 1.
It is preferred that each customer equipment identification logined successfully in data can also be accessed for the history of record, according to The customer equipment identification is corresponding to login successfully the time, calculates the corresponding the last login of the customer equipment identification and earliest one Time span between the login time of secondary login, several device identifications are gone out according to the sequential selection of time span from long to short Added in safety means identification list.
More preferably, when it is implemented, it is also conceivable to when logining successfully different user devices positional information, will be corresponding Login successfully the more geographical position of number of times to be added in the geographical list of locations of safety, for example, for each customer equipment identification Corresponding different geographical position, can be according to the corresponding number of times that logins successfully by P geographical position of sequential selection more at least Added to the geographical list of locations of safety, P is the positive integer more than or equal to 1.When being unlocked checking to user account number, Ke Yitong When consider the geographical location information of the first user equipment, if it is judged that the first customer equipment identification is present in safety means mark In list, then it can determine whether that the geographical location information of the first user equipment whether there is in the geographical list of locations of safety In, if if determine unblock be verified.
When it is implemented, can also be according to logining successfully the use that time, LoginLogout time and the when of logining successfully obtain Family device location information etc., will not enumerate here.
S42, determination are verified to user account number unblock, and flow terminates.
S43, determination do not pass through to user account number unblock checking.
In order to avoid the user data that the webserver is caused by rogue attacks is revealed, when it is implemented, network service Device is when setting up safety means identification list, before each customer equipment identification is added in safety means identification list, It can also determine that device identification to be added meets the risk control condition set according to the risk control condition of storage.
Preferably, in the embodiment of the present invention, it can judge according to below scheme to be added to setting in safety means list It is standby to identify whether to meet default risk control condition:Data, system are accessed according to the corresponding history of the user account number of record Login times of the meter corresponding user equipment of device identification to be added in preset duration, if logged on number of times no more than default Threshold value, it is determined that device identification to be added meets default risk control condition;Or data are accessed according to the history, such as The positional information that the corresponding user equipment of device identification really to be added is logined successfully is matched with the conventional positional information that accesses, then really Fixed device identification to be added meets default risk control condition, wherein, the conventional access position is according to the history Access what the access positional information statistics recorded in data was obtained.
For example, for each customer equipment identification, if the customer equipment identification exceedes in advance in intraday login times If threshold value, it is determined that the customer equipment identification is unsatisfactory for default risk control condition, and for example, according to the customer equipment identification pair The geographical location information when user equipment answered is logined successfully, if the corresponding geographical position accesses location matches with conventional, Then determine that device identification to be added meets default risk control condition.Wherein, commonly using under access position can be positioned at upper State the geographical position in the geographical list of locations of safety.
It should be noted that the first user equipment and second user equipment that are related in the embodiment of the present invention and the first use Family device identification and second user device identification only to facilitate description, its do not have particular meaning, the first user equipment and Second user equipment can be identical user equipment, or different user equipmenies.
Webserver login authentication method provided in an embodiment of the present invention, please in the certification for receiving user equipment transmission When asking, if it is judged that corresponding user account number is frozen, then user is solved automatically according to the device identification of user equipment Certification is locked, enters unblock flow without guiding user, so as to simplify unblock flow operations, it is to avoid user's significant data is lost Lose, be that user brings more preferable experience.
Example devices
After the method for exemplary embodiment of the invention is described, next, with reference to Fig. 5 to exemplary reality of the invention Apply the webserver login authentication device of mode.
As shown in figure 5, it is the structural representation of webserver login authentication device provided in an embodiment of the present invention, can With including:
Receiving unit 51, recognizes for receiving to carry in the certification request that the first user equipment is sent, the certification request Demonstrate,prove the first device identification of information and first user equipment;
Authentication unit 52 is unlocked, for if it is judged that the corresponding user account number of the authentication information is locked, then basis First device identification is unlocked checking;
Response unit 53, for after the unblock authentication unit unblock is verified, being returned to first user equipment Return the response message that certification passes through.
Preferably, first device identification be according to the characteristic information of first user equipment generate, for First user equipment described in unique mark in network.
Preferably, the unblock authentication unit 52, specifically for judging that first device identification whether there is in described In the corresponding safety means identification list of user account number;If it is present determining to be verified user account number unblock;Such as Fruit is not present, it is determined that user account number unblock checking is not passed through.
Alternatively, webserver login authentication device provided in an embodiment of the present invention, can also include:
Extraction unit, for when receiving the registration request of second user equipment transmission, being carried from the registration request The second device identification of the second user equipment is taken added to the corresponding peace of the user account number account number of registration generation In full device identification list;Or data are accessed according to the corresponding history of the record, user account number, accessed from the history The device identification that extracting data meets at least one following condition is added in the safety means identification list:Login successfully Time by the K user equipment closely gone out to remote sequential selection device identification, login successfully number of times by more at least order select The corresponding device identification of N number of user equipment selected out, the M user equipment that the sequential selection of single login time from long to short goes out Corresponding device identification, or the corresponding equipment mark of L user equipment that the sequential selection of login time total length from long to short goes out Know, wherein, K, M, N and L are the positive integer more than or equal to 1.
Alternatively, webserver login authentication device provided in an embodiment of the present invention, can also include:
First determining unit, for any appliance mark to be added into it in safety means list in the extraction unit Before, it is determined that meeting default risk control condition to be added to the device identification in safety means list.
Preferably, first determining unit, specifically for accessing data according to the history, counts equipment to be added Login times of the corresponding user equipment in preset duration are identified, predetermined threshold value are no more than if logged on number of times, it is determined that treat The device identification of addition meets default risk control condition;Or data are accessed according to the history, if to be added sets Matched for the positional information that the corresponding user equipment of mark is logined successfully with the conventional positional information that accesses, it is determined that to be added sets Standby mark meets default risk control condition, wherein, the conventional access position is to be accessed in data to remember according to the history What the access positional information statistics of record was obtained.
Alternatively, the geographical location information of first user equipment is also carried in the certification request.
Alternatively, webserver login authentication device provided in an embodiment of the present invention, can also include:
Second determining unit, if it is described to judge that the first device identification list is present in for the unblock authentication unit In the corresponding safety means identification list of user account number, it is determined that before being verified to user account number unblock, it is determined that described Geographical location information is present in the geographical list of locations of the corresponding safety of the user account number.
Alternatively, webserver login authentication device provided in an embodiment of the present invention, can also include:
Statistic unit, what is included for being accessed for the corresponding history of the record, user account number in data each sets Standby mark, logining successfully time for the corresponding each geographical location information of the data statistics device identification is accessed according to the history Number;
Adding device, for going out the addition of P geographical location information according to logining successfully number of times by sequential selection more at least Into the geographical station location marker list of the safety, wherein, P is the positive integer more than or equal to 1.
After the webserver login authentication method and device of exemplary embodiment of the invention is described, connect down Come, introduce the webserver login authentication device of the another exemplary embodiment according to the present invention.
Person of ordinary skill in the field it is understood that various aspects of the invention can be implemented as system, method or Program product.Therefore, various aspects of the invention can be implemented as following form, i.e.,:It is complete hardware embodiment, complete Complete Software Implementation (including firmware, microcode etc.), or the embodiment combined in terms of hardware and software, it can unite here Referred to as " circuit ", " module " or " system ".
In some possible embodiments, the network according to the invention server log authentication device can be included at least One processing unit and at least one memory cell.Wherein, the memory cell has program stored therein code, works as described program When code is performed by the processing unit so that the processing unit is performed to be retouched in above-mentioned " illustrative methods " part of this specification Various steps in the webserver login authentication method according to various illustrative embodiments of the invention stated.For example, institute Step S31 as shown in Figure 3 can be performed by stating processing unit, receive the certification request that the first user equipment is sent, step S32, if it is judged that the corresponding user account number of the authentication information is locked, is then used described according to first device identification Family account number is unlocked checking;And step S33, after unblock is verified, pass through to the first user equipment return authentication Response message.
Webserver login authentication device 60 according to the embodiment of the invention is described referring to Fig. 6. The webserver login authentication device that Fig. 6 is shown is only an example, to the function of the embodiment of the present invention and should not be used Range band carrys out any limitation.
As shown in fig. 6, webserver login authentication device 60 can be showed in the form of universal computing device, for example its It can be terminal device.The component of webserver login authentication device 60 can include but is not limited to:It is above-mentioned at least one Manage unit 61, at least one above-mentioned memory cell 62, connection different system component (including memory cell 62 and processing unit 61) Bus 63.
Bus 63 represents the one or more in a few class bus structures, including memory bus or Memory Controller, Peripheral bus, processor or the local bus using any bus structures in a variety of bus structures.
Memory cell 62 can include the computer-readable recording medium of form of volatile memory, such as random access memory (RAM) 621 and/or cache memory 622, it can further include read-only storage (ROM) 623.
Memory cell 62 can also include program/utility 625 with one group of (at least one) program module 624, Such program module 624 includes but is not limited to:Operating system, one or more application program, other program modules and The realization of network environment is potentially included in each or certain combination in routine data, these examples.
Webserver login authentication device 60 can also (such as keyboard, sensing be set with one or more external equipments 64 It is standby etc.) communication, the equipment interacted with the webserver login authentication device 60 can be also enabled a user to one or more Communication, and/or with enabling the webserver login authentication device 60 to be communicated with one or more of the other computing device Any equipment (such as router, modem etc.) communication.This communication can pass through input/output (I/O) interface 65 are carried out.Also, webserver login authentication device 60 can also pass through network adapter 66 and one or more network (such as LAN (LAN), wide area network (WAN) and/or public network, such as internet) communicates.As illustrated, network adapter 66 are communicated by bus 63 with other modules of webserver login authentication device 60.It should be understood that although not shown in the drawings, Webserver login authentication device 60 can be combined and use other hardware and/or software module, included but is not limited to:Micro- generation Code, device driver, redundant processing unit, external disk drive array, RAID system, tape drive and data backup are deposited Storage system etc..
Exemplary process product
In some possible embodiments, various aspects of the invention are also implemented as a kind of shape of program product Formula, it includes program code, when described program product is run on the terminal device, and described program code is used to make the terminal Equipment performs the net according to various illustrative embodiments of the invention described in above-mentioned " illustrative methods " part of this specification Step in network server log authentication method, for example, the terminal device can perform step S31 as shown in Figure 3, connects Receive the certification request of the first user equipment transmission, step S32, if it is judged that the corresponding user account number of the authentication information is locked It is fixed, then checking is unlocked to the user account number according to first device identification;And step S33, it is logical in unblock checking Later, the response message passed through to the first user equipment return authentication.
Described program product can use any combination of one or more computer-readable recording mediums.Computer-readable recording medium can be readable letter Number medium or readable storage medium storing program for executing.Readable storage medium storing program for executing for example may be-but not limited to-electricity, magnetic, optical, electromagnetic, red System, device or the device of outside line or semiconductor, or any combination above.The more specifically example of readable storage medium storing program for executing (non exhaustive list) includes:Electrical connection, portable disc with one or more wires, hard disk, random access memory (RAM), read-only storage (ROM), erasable programmable read only memory (EPROM or flash memory), optical fiber, portable compact disc Read memory (CD-ROM), light storage device, magnetic memory device or above-mentioned any appropriate combination.
As shown in fig. 7, the program for webserver login authentication described according to the embodiment of the present invention is produced Product 70, it can be using portable compact disc read only memory (CD-ROM) and including program code, it is possible in terminal device, For example on PC run.However, the program product not limited to this of the present invention, in this document, readable storage medium storing program for executing can be with Be it is any include or storage program tangible medium, the program can be commanded execution system, device or device use or It is in connection.
Readable signal medium can be included in a base band or as the data-signal of carrier wave part propagation, wherein carrying Readable program code.The data-signal of this propagation can take various forms, including --- but being not limited to --- electromagnetism letter Number, optical signal or above-mentioned any appropriate combination.Readable signal medium can also be beyond readable storage medium storing program for executing it is any can Read medium, the computer-readable recording medium can send, propagate or transmit for by instruction execution system, device or device use or Program in connection.
The program code included on computer-readable recording medium can be transmitted with any appropriate medium, including --- but being not limited to --- Wirelessly, wired, optical cable, RF etc., or above-mentioned any appropriate combination.
It can be write with any combination of one or more programming languages for performing the program that the present invention is operated Code, described program design language includes object oriented program language-Java, C++ etc., in addition to conventional Procedural programming language-such as " C " language or similar programming language.Program code can be fully in user Perform, partly perform on a user device on computing device, being performed as an independent software kit, partly in user's calculating Its upper side point is performed or performed completely in remote computing device or server on a remote computing.It is remote being related to In the situation of journey computing device, remote computing device can be by the network of any kind --- including LAN (LAN) or wide Domain net (WAN)-be connected to user calculating equipment, or, it may be connected to external computing device (for example utilizes Internet service Provider comes by Internet connection).
Although it should be noted that being referred to some units or subelement of device, this stroke in above-detailed What is point be merely exemplary is not enforceable.In fact, according to the embodiment of the present invention, it is above-described two or more The feature and function of unit can embody in a unit.Conversely, the feature and function of an above-described unit can To be further divided into being embodied by multiple units.
In addition, although the operation of the inventive method is described with particular order in the accompanying drawings, this do not require that or Hint must be performed according to the particular order these operation, or the operation having to carry out shown in whole could realize it is desired As a result.Additionally or alternatively, it is convenient to omit some steps, multiple steps are merged into a step execution, and/or by one Step is decomposed into execution of multiple steps.
Although describing spirit and principles of the present invention by reference to some embodiments, it should be appreciated that, this Invention is not limited to disclosed embodiment, and the division to each side does not mean that the feature in these aspects can not yet Combination is this to divide merely to the convenience of statement to be benefited.It is contemplated that cover appended claims spirit and In the range of included various modifications and equivalent arrangements.

Claims (10)

1. a kind of webserver login authentication method, including:
Receive in the certification request of the first user equipment transmission, the certification request and carry authentication information and first user First device identification of equipment;
If it is judged that the corresponding user account number of the authentication information is locked, then used according to first device identification described Family account number is unlocked checking;And
After unblock is verified, the response message passed through to the first user equipment return authentication.
2. according to the method described in claim 1, first device identification is to be believed according to the feature of first user equipment Breath generation, for the first user equipment described in unique mark in a network.
3. checking according to the method described in claim 1, is unlocked to the user account number according to first device identification, Specifically include:
Judge that first device identification whether there is in the corresponding safety means identification list of the user account number;
If it is present determining to be verified user account number unblock;
If it does not exist, then determining not pass through user account number unblock checking.
4. method according to claim 3, the safety means identification list is obtained according to below scheme:
When receiving the registration request of second user equipment transmission, the second user equipment is extracted from the registration request The second device identification added to registration generation the corresponding safety means identification list of the user account number in;Or
Data are accessed according to the corresponding history of the record, user account number, from the history access extracting data meet with The device identification of at least one lower condition is added in the safety means identification list:The time is logined successfully by closely to remote suitable The device identification for the K user equipment that sequence is selected, login successfully N number of user equipment that number of times is gone out by sequential selection more at least Corresponding device identification, the corresponding device identification of M user equipment that the sequential selection of single login time from long to short goes out, or The corresponding device identification of L user equipment that the sequential selection of login time total length from long to short goes out, wherein, K, M, N and L are equal For the positive integer more than or equal to 1.
5. method according to claim 4, before any appliance mark is added in safety means list, is also wrapped Include:
It is determined that meeting default risk control condition to be added to the device identification in safety means list.
6. method according to claim 5, judges to be added to the equipment mark in safety means list according to below scheme Whether knowledge meets default risk control condition:
Data, login of the statistics corresponding user equipment of device identification to be added in preset duration are accessed according to the history Number of times, is no more than predetermined threshold value, it is determined that device identification to be added meets default risk control condition if logged on number of times; Or
Data are accessed according to the history, if the positional information that the corresponding user equipment of device identification to be added is logined successfully Matched with conventional access positional information, it is determined that device identification to be added meets default risk control condition, wherein, it is described The conventional position that accesses is to access the access positional information statistics recorded in data according to the history to obtain.
7. the geographical position of first user equipment is also carried in the method according to power requires 3, the certification request Information;And
If the first device identification list is present in the corresponding safety means identification list of the user account number, it is determined that pair Before the user account number unblock is verified, in addition to:
Determine that the geographical location information is present in the geographical list of locations of the corresponding safety of the user account number.
8. method according to claim 7, the geographical station location marker list of the safety is obtained according to below scheme:
The each device identification included in data is accessed for the corresponding history of the record, user account number, is gone through according to described What history accessed the corresponding each geographical location information of the data statistics device identification logins successfully number of times;
Go out P geographical location information added to the safe geographical position according to number of times is logined successfully by sequential selection more at least In identification list, wherein, P is the positive integer more than or equal to 1.
9. a kind of webserver login authentication device, including:
Receiving unit, authentication information is carried for receiving in the certification request that the first user equipment is sent, the certification request With the first device identification of first user equipment;
Authentication unit is unlocked, for if it is judged that the corresponding user account number of the authentication information is locked, then according to described the One device identification is unlocked checking;
Response unit, for after the unblock authentication unit unblock is verified, to the first user equipment return authentication The response message passed through.
10. device according to claim 9, first device identification is to be believed according to the feature of first user equipment Breath generation, for the first user equipment described in unique mark in a network.
CN201710214703.8A 2017-04-01 2017-04-01 Network server login authentication method, device and storage medium Active CN107135201B (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201710214703.8A CN107135201B (en) 2017-04-01 2017-04-01 Network server login authentication method, device and storage medium

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201710214703.8A CN107135201B (en) 2017-04-01 2017-04-01 Network server login authentication method, device and storage medium

Publications (2)

Publication Number Publication Date
CN107135201A true CN107135201A (en) 2017-09-05
CN107135201B CN107135201B (en) 2021-07-13

Family

ID=59715510

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201710214703.8A Active CN107135201B (en) 2017-04-01 2017-04-01 Network server login authentication method, device and storage medium

Country Status (1)

Country Link
CN (1) CN107135201B (en)

Cited By (8)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN107959683A (en) * 2017-12-07 2018-04-24 东软集团股份有限公司 A kind of user name locking means and server
CN108573065A (en) * 2018-04-27 2018-09-25 努比亚技术有限公司 A kind of method of information update, mobile terminal and computer readable storage medium
CN109684806A (en) * 2018-08-31 2019-04-26 深圳壹账通智能科技有限公司 Auth method, device, system and medium based on physiological characteristic information
CN109741067A (en) * 2018-12-19 2019-05-10 广州羊城通有限公司 A kind of data processing method and device based on IC card unlocking
CN110011992A (en) * 2019-03-25 2019-07-12 联想(北京)有限公司 System login method and electronic equipment
CN113660266A (en) * 2021-08-16 2021-11-16 平安科技(深圳)有限公司 Processing method, device, equipment and storage medium for login failure
CN114357420A (en) * 2022-01-14 2022-04-15 平安消费金融有限公司 Risk level login processing method and system, computer equipment and storage medium
CN114417276A (en) * 2021-12-30 2022-04-29 珠海大横琴科技发展有限公司 Security verification method and device

Citations (6)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN1916812A (en) * 2005-08-18 2007-02-21 大宇资讯股份有限公司 Method and system for executing data locking by using machine codes
CN103095659A (en) * 2011-11-03 2013-05-08 北京神州泰岳软件股份有限公司 Account login method and system in internet
EP2840796A1 (en) * 2013-08-22 2015-02-25 Top Victory Investments Ltd. Datum displaying method applied to smart television
CN105141594A (en) * 2015-08-11 2015-12-09 腾讯科技(深圳)有限公司 Password retrieving method and password retrieving device
CN105847245A (en) * 2016-03-21 2016-08-10 杭州朗和科技有限公司 Electronic mail box login authentication method and device
CN106452738A (en) * 2016-09-21 2017-02-22 北京神州绿盟信息安全科技股份有限公司 Authentication method, device and system for logging in equipment

Patent Citations (6)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN1916812A (en) * 2005-08-18 2007-02-21 大宇资讯股份有限公司 Method and system for executing data locking by using machine codes
CN103095659A (en) * 2011-11-03 2013-05-08 北京神州泰岳软件股份有限公司 Account login method and system in internet
EP2840796A1 (en) * 2013-08-22 2015-02-25 Top Victory Investments Ltd. Datum displaying method applied to smart television
CN105141594A (en) * 2015-08-11 2015-12-09 腾讯科技(深圳)有限公司 Password retrieving method and password retrieving device
CN105847245A (en) * 2016-03-21 2016-08-10 杭州朗和科技有限公司 Electronic mail box login authentication method and device
CN106452738A (en) * 2016-09-21 2017-02-22 北京神州绿盟信息安全科技股份有限公司 Authentication method, device and system for logging in equipment

Non-Patent Citations (1)

* Cited by examiner, † Cited by third party
Title
李飞: "《信息安全理论与技术》", 31 March 2016, 西安电子科技大学出版社 *

Cited By (11)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN107959683A (en) * 2017-12-07 2018-04-24 东软集团股份有限公司 A kind of user name locking means and server
CN107959683B (en) * 2017-12-07 2020-09-25 东软集团股份有限公司 User name locking method and server
CN108573065A (en) * 2018-04-27 2018-09-25 努比亚技术有限公司 A kind of method of information update, mobile terminal and computer readable storage medium
CN109684806A (en) * 2018-08-31 2019-04-26 深圳壹账通智能科技有限公司 Auth method, device, system and medium based on physiological characteristic information
CN109741067A (en) * 2018-12-19 2019-05-10 广州羊城通有限公司 A kind of data processing method and device based on IC card unlocking
CN110011992A (en) * 2019-03-25 2019-07-12 联想(北京)有限公司 System login method and electronic equipment
CN110011992B (en) * 2019-03-25 2022-07-26 联想(北京)有限公司 System login method and electronic equipment
CN113660266A (en) * 2021-08-16 2021-11-16 平安科技(深圳)有限公司 Processing method, device, equipment and storage medium for login failure
CN113660266B (en) * 2021-08-16 2022-11-15 平安科技(深圳)有限公司 Processing method, device, equipment and storage medium for login failure
CN114417276A (en) * 2021-12-30 2022-04-29 珠海大横琴科技发展有限公司 Security verification method and device
CN114357420A (en) * 2022-01-14 2022-04-15 平安消费金融有限公司 Risk level login processing method and system, computer equipment and storage medium

Also Published As

Publication number Publication date
CN107135201B (en) 2021-07-13

Similar Documents

Publication Publication Date Title
CN107135201A (en) A kind of webserver login authentication method and device
CN104113549B (en) A kind of platform authorization method, platform service end and applications client and system
US10305891B2 (en) Preventing unauthorized access to secured information systems using multi-device authentication techniques
US10182078B2 (en) Selectively enabling and disabling biometric authentication based on mobile device state information
CN109639740A (en) A kind of login state sharing method and device based on device id
EP3211825B1 (en) Trusted terminal verification method and apparatus
CN104618315B (en) A kind of method, apparatus and system of verification information push and Information Authentication
CN106453205B (en) identity verification method and device
CN107872433A (en) A kind of auth method and its equipment
CN105516133A (en) User identity verification method, server and client
CN104253818B (en) Server, terminal authentication method and server, terminal
CN106921636A (en) Identity identifying method and device
EP2897094A1 (en) Method for phone authentication in e-business transactions and computer-readable recording medium having program for phone authentication in e-business transactions recorded thereon
CN109831310A (en) A kind of auth method, system and relevant apparatus
CN105337739B (en) Safe login method, device, server and terminal
CN108513267A (en) Safe verification method, authentication server and the service terminal of communication service
CN106650490A (en) Cloud account number login method and device
CN104935548A (en) Identity verification method, device and system based on intelligent tattooing equipment
CN104486306B (en) Identity authentication method is carried out based on finger hand vein recognition and cloud service
CN109150852A (en) A kind of account number safe login method, apparatus and system
CN108093000A (en) A kind of information query method based on eID authentications, apparatus and system
CN106411811A (en) Authentication method, system and device of accessing customer service
CN108769059B (en) Verification method, device, medium and computing equipment
CN103684796A (en) SMI (subscriber identity module) card and personal identity authentication method
CN107294981B (en) Authentication method and equipment

Legal Events

Date Code Title Description
PB01 Publication
PB01 Publication
SE01 Entry into force of request for substantive examination
SE01 Entry into force of request for substantive examination
GR01 Patent grant
GR01 Patent grant