CN109831304A - A kind of more application methods and system of ID authentication device - Google Patents

A kind of more application methods and system of ID authentication device Download PDF

Info

Publication number
CN109831304A
CN109831304A CN201811601237.XA CN201811601237A CN109831304A CN 109831304 A CN109831304 A CN 109831304A CN 201811601237 A CN201811601237 A CN 201811601237A CN 109831304 A CN109831304 A CN 109831304A
Authority
CN
China
Prior art keywords
application
authenticating device
communication protocol
user
authentication
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Granted
Application number
CN201811601237.XA
Other languages
Chinese (zh)
Other versions
CN109831304B (en
Inventor
陈锋
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Beijing WatchSmart Technologies Co Ltd
Original Assignee
Beijing WatchSmart Technologies Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Beijing WatchSmart Technologies Co Ltd filed Critical Beijing WatchSmart Technologies Co Ltd
Priority to CN201811601237.XA priority Critical patent/CN109831304B/en
Publication of CN109831304A publication Critical patent/CN109831304A/en
Application granted granted Critical
Publication of CN109831304B publication Critical patent/CN109831304B/en
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Landscapes

  • Computer And Data Communications (AREA)

Abstract

The present invention provides the more application methods and system of a kind of ID authentication device, the described method comprises the following steps: (1) after setting default communication protocol for the communication protocol of authenticating device, authenticating device being connect by interface module with certification terminal;(2) certification terminal enumerates all applications that the authenticating device is supported according to default communication protocol using user management tool;(3) application needed for user selects in the certification terminal, authenticating device judgement it is described using communication protocol whether be consistent with preset communication protocol;(4) if be consistent, the authenticating device is switched under the application by application management module, and user operates in the application.Method and system provided by the invention can not only greatly reduce personal or enterprise and hold the quantity of ID authentication device, reduce people to the complexity of the authentication management of product, various communications protocols can also be switched fast, reducing the complexity of user's operation, the user experience is improved.

Description

A kind of more application methods and system of ID authentication device
Technical field
The invention belongs to field of information security technology, and in particular to a kind of more application methods of ID authentication device and be System.
Background technique
ID authentication device (Internetbank shield) is used as personal identification and digital signature device, by Internetbank, electronics political affairs Business etc. is widely used in terminal authentication product.Central Bank repeatedly puts into effect policy document requirement and reinforces Internetbank Security Construction, including uses net Terminal of the hardware such as silver-colored shield as network bank business safety guarantee.In recent years, with the booming authentication in Internetbank market Equipment is not only widely used in each big bank, also uses this one after another in view of the various enterprises of safety of authentication product The tool that product is authenticated as internal identity.
Current existing implementation is that each apply corresponds to a equipment as each bank is directed to personal Internetbank application, Even the same person is also required in the different Internetbank accounts that the same bank possesses using unused Internetbank shield product, therefore makes Possess much at everyone the status of Internetbank shield.This phenomenon also increases individual to Internetbank shield pipe while waste of resource The complexity of reason.
Therefore, it is necessary to invent a kind of more application methods of ID authentication device to solve the above problems.
Summary of the invention
In view of the deficiencies in the prior art, the object of the present invention is to provide a kind of ID authentication devices mostly using side Method can allow same authenticating device to be suitable for different internet banking systems or different authentication terminal, can not only greatly reduce it is personal or Enterprise holds the quantity of ID authentication device, reduces people to the complexity of the authentication management of product, moreover it is possible to eventually by certification End is switched fast various communications protocols, and reducing the complexity of user's operation, the user experience is improved.
To achieve the above objectives, the technical solution adopted by the present invention is that:
A kind of more application methods of ID authentication device, the described method comprises the following steps:
(1) after setting default communication protocol for the communication protocol of authenticating device, by authenticating device by interface module with Authenticate terminal connection;
(2) certification terminal enumerates the institute that the authenticating device is supported according to default communication protocol using user management tool There is application;
(3) application needed for user selects in the certification terminal, authenticating device judgement it is described using communication protocols Whether view is consistent with preset communication protocol;
(4) if be consistent, the authenticating device is switched under the application by application management module, and user is in the application Middle operation.
Further, step (4) specifically includes:
The Apply Names are sent to application management module, the application management mould by communication interface modules in authenticating device Processing response is sent to the communication interface modules by block, and the last communication interface modules, which returns to implementing result, described to be recognized Demonstrate,prove terminal.
Further, the method also includes: if not being consistent, authenticating device is according to the corresponding communication protocol of the application Mark resets main control chip, repeats step (2) and step (4).
Further, in the authenticating device using relatively independent, the authentication key and card of oneself are supported in each application Book possesses independent safe condition under different application.
Further, the method also includes: when user need to meet application create and cancel permission when can be by answering With the new application of management module addition or delete old application.
To achieve the above objectives, the another technical solution that the present invention uses is: a kind of ID authentication device is applied more System, the system comprises at least one certification terminal and authenticating devices;
It include user management tool in the certification terminal, the user management tool is used for when certification terminal connection certification When equipment, enumerate authenticating device support all applications and by various applications show certification terminal user use interface on;
Authenticating device includes: communication interface modules, application management module and at least one applying unit;
The communication interface modules includes the interface that all applying units need;
The application management module is used to be selected the authenticating device switching to corresponding applying unit according to user;
The applying unit is relatively independent, supports oneself authentication key and certificate, possesses independence under different application Safe condition.
Further, the communication interface modules includes: wireline interface and wireless interface.
Further, the application management module is also used to manage the applying unit in the authenticating device, such as application Creation and the selection and use cancelled, applied.
Further, the authenticating device supports a variety of usb protocols, authenticating device whole using preset protocol connection certification End, the user management tool enumerate all applications that the authenticating device is supported using preset communication protocol.
Further, if user selection using communication protocol be not inconsistent with preset communication protocol, certification is set Standby to be resetted main control chip according to the corresponding communication protocol mark of the application, the certification terminal, which re-recognizes, to be enumerated certification and sets Application in standby.
Effect of the invention is that method and system of the present invention, can allow same authenticating device to be suitable for different Internet banking system or different authentication terminal can not only greatly reduce personal or enterprise and hold the quantity of ID authentication device, reduce Complexity of the people to the authentication management of product, moreover it is possible to various communications protocols is switched fast by certification terminal, reduce and use The user experience is improved for the complexity of family operation.
Detailed description of the invention
Fig. 1 is the flow diagram of an embodiment of the method for the invention;
Fig. 2 is the flow diagram of an embodiment of system of the present invention.
Specific embodiment
To keep the technical problems solved, the adopted technical scheme and the technical effect achieved by the invention clearer, below It will the technical scheme of the embodiment of the invention will be described in further detail in conjunction with attached drawing.Obviously, described embodiment is only It is a part of the embodiment of the present invention, instead of all the embodiments.Based on the embodiments of the present invention, ordinary skill people Member's every other embodiment obtained without making creative work, belongs to the scope of protection of the invention.
Refering to fig. 1, Fig. 1 is the flow diagram of one embodiment of the method for the invention.
A kind of more application methods of ID authentication device, comprising the following steps:
Step 101: after setting default communication protocol for the communication protocol of authenticating device, authenticating device being passed through into interface mould Block is connect with certification terminal.
Firstly the need of, it is noted that in order to allow same authenticating device to be suitable for different internet banking systems or different authentication end End, same authenticating device includes at least one application.The corresponding use environment of each application, such as when authenticating device is Internetbank When shield, the Internetbank for allowing to possess Construction Bank on an Internetbank shield is applied and the Internetbank application of middle row, it is also possible to which there are work computers Domain log in application.Each application is relatively independent, can support using identical or different communication protocol, while each application branch The authentication key and certificate for holding oneself, possess independent safe condition under different application.
It may also be noted that when existing in more in authenticating device in application, multiple communication protocols may be related to, such as MSC, CCID and HID etc..Switch between different communication protocol to realize, before authenticating device connect with certification terminal, first general The communication protocol of authenticating device is set as default communication protocol, and presetting communication protocol is one of above-mentioned communication protocol.It is preferred that , presetting communication protocol is highest one kind of supporting rate in all applications.As for specially any communication protocol, do not do herein It limits.
Step 102: certification terminal enumerates the authenticating device branch according to default communication protocol using user management tool All applications held.
When authenticating terminal connection authenticating device, the user management tool for authenticating terminal starts to enumerate authenticating device support It is all application and by various applications show certification terminal user use interface on.
Step 103: application needed for user selects in the certification terminal, authenticating device judgement it is described using it is logical Whether letter agreement is consistent with preset communication protocol.
Step 104: if be consistent, the authenticating device is switched under the application by application management module, and user is in institute It states and is operated in application.
If be consistent, the authenticating device is switched under the application by application management module, and user's subsequent use will It will limit under the application, if user needs to need to reselect using other application.
Specifically, the Apply Names are sent to application management module by communication interface modules in authenticating device, it is described to answer Processing response is sent to the communication interface modules with management module, the last communication interface modules returns to implementing result To the certification terminal.
If not being consistent, authenticating device resets main control chip according to the corresponding communication protocol mark of the application, then weighs Multiple step 102 and step 104.
It is not consistent even, then the corresponding communication protocol of selected application and application identities are recorded in master control core by authenticating device In piece, while main control chip being resetted.Authenticating device is indicated according to the communication of record first and application is marked after main control chip resets Show and authenticating device is switched in corresponding communication protocol and application, then authenticates terminal and enumerated again using user management tool All applications that the authenticating device is supported out.It should be noted that above-mentioned about the communication protocol realized inside authenticating device Process user of switching itself will not have perception, so user does not need to select required application again, will not influence user experience.
User can also be according to use demand management application.Specifically, when user need to meet application creation and cancel power New application can be added by application management module in limited time or deletes old application.
It is different from the prior art, a kind of more application methods of ID authentication device provided by the invention, can allow same certification Equipment is suitable for different internet banking systems or different authentication terminal, can not only greatly reduce personal or enterprise and hold authentication The quantity of equipment reduces people to the complexity of the authentication management of product, moreover it is possible to a variety of by being switched fast for certification terminal Communication protocol, reducing the complexity of user's operation, the user experience is improved.
Referring to Fig.2, Fig. 2 is the flow diagram of an embodiment of system of the present invention.
The system 100 includes that at least one authenticates terminal 101 and authenticating device 102, in this way can be by same authenticating device 102 are applied in different certification terminals 101, thus greatly reduce personal or enterprise hold ID authentication device quantity, People are reduced to the complexity of the authentication management of product.
It include user management tool 1011 in the certification terminal 101, the user management tool 1011 is used for when certification When terminal 101 connects authenticating device 102, all applications and show various applications for enumerating the support of authenticating device 102 are being authenticated The user of terminal 101 uses on interface.
Specifically, the authenticating device 102 supports a variety of usb protocols, authenticating device 102 to use preset protocol connection certification Terminal 101, the user management tool 1011 enumerate all of the support of authenticating device 102 using preset communication protocol Using.
Authenticating device 102 includes: communication interface modules 1021, application management module 1022 and at least one applying unit 1023。
The communication interface modules 1021 includes the interface that all applying units need.The communication interface modules 1021 wraps It includes: wireline interface and wireless interface.Specifically, a part of communication interface modules 1021 as authenticating device 102, for connecting Authenticating device 102 and certification terminal 101 are the channels of data transmission between the two.The communication interface modules 1021 includes common Wireline interface (such as USB, 7816, serial ports, SPI) and wireless interface (such as bluetooth, audio, infrared, WIFI, sound wave).
The applying unit 1023 is relatively independent, supports oneself authentication key and certificate, possesses under different application Independent safe condition.
It should be pointed out that in order to allow same authenticating device 102 to be suitable for different internet banking systems or different authentication end End 101, same authenticating device 102 include that at least one applies 1023.The corresponding use environment of each application 1023, such as when When authenticating device 102 is Internetbank shield, the Internetbank for allowing to possess Construction Bank on an Internetbank shield is applied and the Internetbank application of middle row, can also The domain that can have work computer logs in application.Each application 1023 is relatively independent, can support to lead to using identical or different Believe agreement, for example, the CCID protocol of A application standard, B is using HID protocol.Each application simultaneously supports the certification of oneself close Key and certificate, possess independent safe condition under different application.
Switch between different communication protocol to realize, before authenticating device 102 connect with certification terminal 101, will first authenticate The communication protocol of equipment 102 is set as default communication protocol, and presetting communication protocol is one of above-mentioned communication protocol.It is preferred that , presetting communication protocol is highest one kind of supporting rate in all applications.As for specially any communication protocol, do not do herein It limits.
User needs to select required application according to all applications enumerated in certification terminal 101.It is selected in user After selecting corresponding application, authenticating device 102 judge it is described using communication protocol whether be consistent with preset communication protocol.
If user selection using communication protocol be consistent with preset communication protocol, the application management module 1022 select to switch to authenticating device 102 into corresponding applying unit 1023 according to user, and subsequent user operation will be in the application Middle execution.
If user selection using communication protocol be not inconsistent with preset communication protocol, 102 basis of authenticating device Described that corresponding communication protocol mark is applied to reset main control chip, the needs of certification terminal 101, which re-recognize, enumerates certification Application in equipment 102.Specifically, authenticating device 102 applies corresponding communication protocol and application for selected if not being consistent Identification record resets in main control chip, while by main control chip.Authenticating device 102 first is according to record after main control chip resets Communication mark and application mark by authenticating device 102 be switched to corresponding communication protocol and application in, then authenticate terminal 101 All applications that the authenticating device 102 is supported are enumerated again using user management tool.It should be noted that it is above-mentioned about The process user for the communication protocol switching realized inside authenticating device 102 itself will not have perception, so user does not need again Application, will not influence user experience needed for selection.
The application management module 1022 is also used to manage the applying unit 1023 in the authenticating device 102, such as applies Creation and calcellation, application selection and use.It should be noted that when user meets application and creates and cancel permission, New application can be added or delete old application.
It is different from the prior art, a kind of multi-application system of ID authentication device provided by the invention, can allow same certification Equipment is suitable for different internet banking systems or different authentication terminal, can not only greatly reduce personal or enterprise and hold authentication The quantity of equipment reduces people to the complexity of the authentication management of product, moreover it is possible to a variety of by being switched fast for certification terminal Communication protocol, reducing the complexity of user's operation, the user experience is improved.
It will be understood by those skilled in the art that method of the present invention is not limited to reality described in specific embodiment Example is applied, specific descriptions above are intended merely to explain the purpose of the present invention, are not intended to limit the present invention.Those skilled in the art It can derive other implementation manners according to the technical scheme of the present invention, also belong to the scope of the technical innovation of the present invention, it is of the invention Protection scope is defined by the claims and their equivalents.

Claims (10)

1. a kind of more application methods of ID authentication device, which is characterized in that the described method comprises the following steps:
(1) after setting default communication protocol for the communication protocol of authenticating device, authenticating device is passed through into interface module and certification Terminal connection;
(2) certification terminal enumerates all answering of the authenticating device support using user management tool according to default communication protocol With;
(3) application needed for user selects in the certification terminal, authenticating device judgement it is described using communication protocol with Whether preset communication protocol is consistent;
(4) if be consistent, the authenticating device is switched under the application by application management module, and user grasps in the application Make.
2. more application methods of a kind of ID authentication device according to claim 1, which is characterized in that step (4) is specifically wrapped It includes:
The Apply Names are sent to application management module by communication interface modules in authenticating device, and the application management module will Processing response is sent to the communication interface modules, and implementing result is returned to the certification eventually by the last communication interface modules End.
3. more application methods of a kind of ID authentication device according to claim 1, which is characterized in that the method is also wrapped Include: if not being consistent, authenticating device resets main control chip according to the corresponding communication protocol mark of the application, repeats step (2) and step (4).
4. more application methods of a kind of ID authentication device according to claim 1, which is characterized in that in the authenticating device Using relatively independent, the authentication key and certificate of oneself are supported in each application, and independent safety is possessed under different application State.
5. more application methods of a kind of ID authentication device according to claim 1, which is characterized in that the method is also wrapped It includes: new application can be added by application management module when user need to create meeting application and cancel permission or deleted Old application.
6. a kind of multi-application system of ID authentication device, which is characterized in that the system comprises at least one certification terminal and Authenticating device;
It include user management tool in the certification terminal, the user management tool is used to connect authenticating device when certification terminal When, enumerate authenticating device support all applications and by various applications show certification terminal user use interface on;
Authenticating device includes: communication interface modules, application management module and at least one applying unit;
The communication interface modules includes the interface that all applying units need;
The application management module is used to be selected the authenticating device switching to corresponding applying unit according to user;
The applying unit is relatively independent, supports oneself authentication key and certificate, independent peace is possessed under different application Total state.
7. a kind of multi-application system of ID authentication device according to claim 6, which is characterized in that the communication interface Module includes: wireline interface and wireless interface.
8. a kind of multi-application system of ID authentication device according to claim 6, which is characterized in that the application management Module is also used to manage the applying unit in the authenticating device, such as the selection and use of the creation of application and calcellation, application.
9. a kind of multi-application system of ID authentication device according to claim 6, which is characterized in that the authenticating device Support a variety of usb protocols, using preset protocol connection certification terminal, the user management tool uses preset logical authenticating device Letter agreement enumerates all applications that the authenticating device is supported.
10. a kind of multi-application system of ID authentication device according to claim 6, which is characterized in that if user selects Select using communication protocol be not inconsistent with preset communication protocol, authenticating device is according to the corresponding communication protocol of the application Mark resets main control chip, and the certification terminal re-recognizes the application enumerated in authenticating device.
CN201811601237.XA 2018-12-26 2018-12-26 Multi-application method and system of identity authentication equipment Active CN109831304B (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201811601237.XA CN109831304B (en) 2018-12-26 2018-12-26 Multi-application method and system of identity authentication equipment

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201811601237.XA CN109831304B (en) 2018-12-26 2018-12-26 Multi-application method and system of identity authentication equipment

Publications (2)

Publication Number Publication Date
CN109831304A true CN109831304A (en) 2019-05-31
CN109831304B CN109831304B (en) 2024-04-02

Family

ID=66861191

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201811601237.XA Active CN109831304B (en) 2018-12-26 2018-12-26 Multi-application method and system of identity authentication equipment

Country Status (1)

Country Link
CN (1) CN109831304B (en)

Cited By (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN110769009A (en) * 2019-12-29 2020-02-07 深圳竹云科技有限公司 User identity authentication method and system
WO2023279959A1 (en) * 2021-07-08 2023-01-12 飞天诚信科技股份有限公司 Implementation method and apparatus for increasing number of certificates supported by piv application

Citations (8)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102523090A (en) * 2011-12-01 2012-06-27 深圳市文鼎创数据科技有限公司 Method and device for achieving multifunctional manual switching of intelligent secret key device
CN102567769A (en) * 2010-12-31 2012-07-11 上海格尔软件股份有限公司 USBKEY with certificate selection
CN104468116A (en) * 2014-11-06 2015-03-25 飞天诚信科技股份有限公司 Method for achieving multi-application of intelligent secret key equipment
WO2015127842A1 (en) * 2014-02-28 2015-09-03 天地融科技股份有限公司 Method for information security equipment to realize multiple applications, information security equipment and system
CN106211122A (en) * 2015-05-27 2016-12-07 意法半导体股份有限公司 For managing method and corresponding sim module and the computer program of the multiple profiles in sim module
CN107016274A (en) * 2016-01-28 2017-08-04 昆明我行科技有限公司 Wireless U shield with fingerprint identification function and use method thereof
CN107066894A (en) * 2017-03-09 2017-08-18 天地融科技股份有限公司 A kind of multifunction intelligent key equipment and its method for executing operating instructions and device
CN108810002A (en) * 2018-06-21 2018-11-13 北京智芯微电子科技有限公司 The more CA application systems and method of safety chip

Patent Citations (8)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102567769A (en) * 2010-12-31 2012-07-11 上海格尔软件股份有限公司 USBKEY with certificate selection
CN102523090A (en) * 2011-12-01 2012-06-27 深圳市文鼎创数据科技有限公司 Method and device for achieving multifunctional manual switching of intelligent secret key device
WO2015127842A1 (en) * 2014-02-28 2015-09-03 天地融科技股份有限公司 Method for information security equipment to realize multiple applications, information security equipment and system
CN104468116A (en) * 2014-11-06 2015-03-25 飞天诚信科技股份有限公司 Method for achieving multi-application of intelligent secret key equipment
CN106211122A (en) * 2015-05-27 2016-12-07 意法半导体股份有限公司 For managing method and corresponding sim module and the computer program of the multiple profiles in sim module
CN107016274A (en) * 2016-01-28 2017-08-04 昆明我行科技有限公司 Wireless U shield with fingerprint identification function and use method thereof
CN107066894A (en) * 2017-03-09 2017-08-18 天地融科技股份有限公司 A kind of multifunction intelligent key equipment and its method for executing operating instructions and device
CN108810002A (en) * 2018-06-21 2018-11-13 北京智芯微电子科技有限公司 The more CA application systems and method of safety chip

Non-Patent Citations (2)

* Cited by examiner, † Cited by third party
Title
罗国海;梁佐泉;汪治;贾伟锋;: "多业务USBKey在劳动保障公共服务网络平台中的应用", 电子商务, no. 07 *
罗国海;梁佐泉;汪治;贾伟锋;: "多业务USBKey在劳动保障公共服务网络平台中的应用", 电子商务, no. 07, 15 July 2011 (2011-07-15) *

Cited By (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN110769009A (en) * 2019-12-29 2020-02-07 深圳竹云科技有限公司 User identity authentication method and system
WO2023279959A1 (en) * 2021-07-08 2023-01-12 飞天诚信科技股份有限公司 Implementation method and apparatus for increasing number of certificates supported by piv application

Also Published As

Publication number Publication date
CN109831304B (en) 2024-04-02

Similar Documents

Publication Publication Date Title
CA2923431C (en) Network connection automation
CN104364790B (en) System and method for implementing dual factor anthentication
CN106850201B (en) Intelligent terminal multiple-factor authentication method, intelligent terminal, certificate server and system
CN110138726B (en) Method and system for intelligently and optimally managing cloud information
US9497191B2 (en) Multiple user authentications on a communications device
WO2007027154A1 (en) Fortified authentication on multiple computers using collaborative agents
CN106209725A (en) Method, video conference central server and system for video conference certification
WO2013091196A1 (en) Method, device, and system for setting user's right to access virtual machine
CN101316167A (en) Registration and login method of safety authentication, system and mobile terminal
CN107113613A (en) Server, mobile terminal, real-name network authentication system and method
CN104468552B (en) A kind of connection control method and device
CN103152329A (en) Method and system for identity authentication by Bluetooth
CN109831304A (en) A kind of more application methods and system of ID authentication device
CN107819766B (en) Security authentication method, system and computer readable storage medium
CN104796383A (en) Method and device for preventing terminal information from being tempered
CN106778178A (en) The call method and device of fingerprint business card
CN104252676A (en) System and method for using real-time communication and digital certificate to authenticate Internet bank account identity
CN103348628A (en) Conference control method and device
CN106406838A (en) Screen shot sharing method, apparatus, and system
CN106161366A (en) The method and system that a kind of SSL of minimizing takes up room
CN103425936B (en) A kind of method realizing data confidentiality and electronic equipment
CN104023081B (en) The data processing method and IP hard disks of net association IP hard disks
CN108268796B (en) Offline management method and device based on offline password
CN111079109A (en) Local security authorization login method and system compatible with multiple browsers
CN107360123B (en) Mutual authentication method and system based on WIFI, wireless exchange board, terminal

Legal Events

Date Code Title Description
PB01 Publication
PB01 Publication
SE01 Entry into force of request for substantive examination
SE01 Entry into force of request for substantive examination
GR01 Patent grant
GR01 Patent grant