CN110417719B - Login state renewal method, login method, device, server and terminal - Google Patents

Login state renewal method, login method, device, server and terminal Download PDF

Info

Publication number
CN110417719B
CN110417719B CN201910141216.2A CN201910141216A CN110417719B CN 110417719 B CN110417719 B CN 110417719B CN 201910141216 A CN201910141216 A CN 201910141216A CN 110417719 B CN110417719 B CN 110417719B
Authority
CN
China
Prior art keywords
mailbox
server
communication
login
communication client
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Active
Application number
CN201910141216.2A
Other languages
Chinese (zh)
Other versions
CN110417719A (en
Inventor
王春晖
楼宏微
赵东
李斌
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Tencent Technology Shenzhen Co Ltd
Original Assignee
Tencent Technology Shenzhen Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Tencent Technology Shenzhen Co Ltd filed Critical Tencent Technology Shenzhen Co Ltd
Priority to CN201910141216.2A priority Critical patent/CN110417719B/en
Publication of CN110417719A publication Critical patent/CN110417719A/en
Application granted granted Critical
Publication of CN110417719B publication Critical patent/CN110417719B/en
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Images

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/08Network architectures or network communication protocols for network security for authentication of entities
    • H04L63/0815Network architectures or network communication protocols for network security for authentication of entities providing single-sign-on or federations
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/08Network architectures or network communication protocols for network security for authentication of entities
    • H04L63/083Network architectures or network communication protocols for network security for authentication of entities using passwords
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L67/00Network arrangements or protocols for supporting network services or applications
    • H04L67/14Session management
    • H04L67/143Termination or inactivation of sessions, e.g. event-controlled end of session
    • H04L67/145Termination or inactivation of sessions, e.g. event-controlled end of session avoiding end of session, e.g. keep-alive, heartbeats, resumption message or wake-up for inactive or interrupted session
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L67/00Network arrangements or protocols for supporting network services or applications
    • H04L67/50Network services
    • H04L67/60Scheduling or organising the servicing of application requests, e.g. requests for application data transmissions using the analysis and optimisation of the required network resources
    • H04L67/63Routing a service request depending on the request content or context
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L51/00User-to-user messaging in packet-switching networks, transmitted according to store-and-forward or real-time protocols, e.g. e-mail
    • H04L51/42Mailbox-related aspects, e.g. synchronisation of mailboxes

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Signal Processing (AREA)
  • Computer Hardware Design (AREA)
  • Computer Security & Cryptography (AREA)
  • Computing Systems (AREA)
  • General Engineering & Computer Science (AREA)
  • Health & Medical Sciences (AREA)
  • Cardiology (AREA)
  • General Health & Medical Sciences (AREA)
  • Information Transfer Between Computers (AREA)
  • Data Exchanges In Wide-Area Networks (AREA)

Abstract

The embodiment of the invention discloses a login state renewal method, a login device, a server and a terminal. One of the login state renewal methods may include: if the login state of the target mailbox account bound in the first communication client is detected to be expired, sending a renewal prompt message to the first communication client; receiving a renewal request sent by the first communication client, wherein the renewal request carries the mailbox service authorization bill; sending the mailbox service authorization ticket carried in the renewal request to the communication server so that the communication server can verify whether the mailbox service authorization ticket is valid; and when receiving notification information that the authorization ticket sent by the communication server is valid, determining that the login state renewal of the target mailbox account bound in the first communication client is successful. By adopting the embodiment of the invention, the safety of the mailbox service can be improved.

Description

Login state renewal method, login method, device, server and terminal
Technical Field
The invention relates to the technical field of electronics, in particular to a login state renewal method, a login device, a server and a terminal.
Background
The mailbox is one of important tools for communication among enterprise users, so that the users can receive and send mails at any time conveniently, mailbox applications are integrated when part of clients are developed, and the users can log in mailbox accounts in the clients to realize services related to the mailbox accounts. When the client logs in the mailbox account for the first time, the mailbox account and the mailbox password or the authorization code need to be input, the mailbox account and the mailbox password or the authorization code are verified by the mailbox server, and after the verification is passed, a login state is allocated to the client, so that the client can access data in the mailbox server, and mailbox service is realized.
Because the login state allocated to the client by the mailbox server has a certain validity period, if the validity period arrives, the client needs to continue the login state to continue accessing the data in the mailbox server. The common login state renewal method comprises the following steps: after the mailbox account and the mailbox password or the authorization code are verified for the first time, the client stores the mailbox password or the authorization code locally, and if the login state of the mailbox account in the client is detected to be expired, the login state is continued according to the stored mailbox password or the authorization code. The login state renewal method increases the risk of mailbox password leakage, so that the mailbox service security is lower. Therefore, when the client is used to implement the mailbox service, an effective login state renewal method is urgently needed to ensure the security of the mailbox service.
Disclosure of Invention
The embodiment of the invention provides a login state renewal method, a login device, a server and a terminal, which can improve the safety of mailbox service.
In a first aspect, an embodiment of the present invention provides a login state renewal method, where the method is applied to a mailbox server, the mailbox server provides a mailbox service for a first communication client through a communication server, the first communication client implements the communication service through the communication server, and implements the mailbox service in the mailbox server through a mailbox service authorization ticket acquired from the communication server, and the method includes:
if the login state of the target mailbox account bound in the first communication client is detected to be expired, sending a renewal prompt message to the first communication client;
receiving a renewal request sent by the first communication client, wherein the renewal request carries the mailbox service authorization bill;
sending the mailbox service authorization ticket carried in the renewal request to the communication server so that the communication server can verify whether the mailbox service authorization ticket is valid;
and when receiving notification information that the authorization ticket sent by the communication server is valid, determining that the login state renewal of the target mailbox account bound in the first communication client is successful.
In a second aspect, an embodiment of the present invention provides another login state renewal method, including:
receiving a mailbox service authorization bill sent by a mailbox server, wherein the mailbox service authorization bill is sent to the mailbox server by the first communication client when the first communication client receives the renewal prompt message aiming at the target mailbox account sent by the mailbox server;
verifying the received mailbox service authorization bill based on the mailbox service authorization bill distributed for the mailbox service in the first communication client;
if the received mailbox service authorization ticket is verified to be valid, notification information that the authorization ticket is valid is sent to the mailbox server, so that the mailbox server can determine that the login state renewal of the target mailbox account bound in the first communication client is successful according to the notification information that the authorization ticket is valid.
In a third aspect, an embodiment of the present invention provides a login method, where the method is applied to a first communication client, where the first communication client implements a communication service through a communication server, a mailbox application is embedded in the first communication client, and the first communication client implements a mailbox service through the communication server and a mailbox server, and the method includes:
if connection information is received on a user interface, generating a connection request carrying the connection information, and sending the connection request to the communication server, wherein the connection request is used for indicating the communication server to send the connection information to the mailbox server for verification, and the connection information comprises a target mailbox account and a mailbox password;
receiving a login verification code at a user interface, wherein the login verification code is sent after the mailbox server verifies the target mailbox account and the mailbox password;
and sending the login verification code to the communication server to instruct the communication server to send the login verification code to the mailbox server for verification.
In a fourth aspect, an embodiment of the present invention provides a login state duration device, where the login state duration device may be configured in a mailbox server, the mailbox server provides a mailbox service for a first communication client through a communication server, the first communication client implements the communication service through the communication server, and implements the mailbox service of the mailbox server through a mailbox service authorization ticket acquired from the communication server, and the device includes a sending unit, a receiving unit, and a processing unit:
a sending unit, configured to send a renewal prompt message to the first communication client if it is detected that a login state of a target mailbox account bound in the first communication client is expired;
a receiving unit, configured to receive a renewal request sent by the first communication client, where the renewal request carries the mailbox service authorization ticket;
the sending unit is further configured to send the mailbox service authorization ticket carried in the renewal request to the communication server, so that the communication server verifies whether the mailbox service authorization ticket is valid;
and the processing unit is used for determining that the login state renewal of the target mailbox account bound in the first communication client is successful when receiving the notification information that the authorization ticket sent by the communication server is valid.
In a fifth aspect, an embodiment of the present invention further provides another login state renewal apparatus, including a receiving unit, a sending unit, and a processing unit:
the receiving unit is used for receiving a mailbox service authorization bill sent by a mailbox server, wherein the mailbox service authorization bill is sent to the mailbox server after the first communication client receives the renewal prompt message aiming at the target mailbox account sent by the mailbox server;
the processing unit is used for verifying the received mailbox service authorization bill based on the mailbox service authorization bill distributed for the mailbox service in the first communication client;
and the sending unit is used for sending notification information that the authorization ticket is valid to the mailbox server if the processing unit verifies that the received mailbox service authorization ticket is valid, so that the mailbox server can determine that the login state renewal of the target mailbox account bound in the first communication client is successful according to the notification information that the authorization ticket is valid.
In a sixth aspect, an embodiment of the present invention provides a login device, where the login device may be configured in a first communication client, the first communication client implements a communication service through a communication server, a mailbox application is embedded in the first communication client, and the first communication client implements a mailbox service through the communication server and a mailbox server. The login device comprises a sending unit, a receiving unit and a processing unit:
the processing unit is used for generating a connection request carrying the connection information if the receiving unit receives the connection information on the user interface;
the sending unit is configured to send the connection request to the communication server, where the connection request is used to instruct the communication server to send the connection information to the mailbox server for verification, where the connection information includes a target mailbox account and a mailbox password;
the receiving unit is used for receiving a login verification code on a user interface, wherein the login verification code is sent after the mailbox server verifies the target mailbox account and the mailbox password;
the sending unit is further configured to send the login verification code to the communication server to instruct the communication server to send the login verification code to the mailbox server for verification.
In a seventh aspect, an embodiment of the present invention provides a mailbox server, including: a processor and a memory, the memory for storing a computer program comprising program instructions, the processor being configured to invoke the program instructions to perform the login state renewal method of the first aspect described above.
In an eighth aspect, an embodiment of the present invention provides a communication server, including a processor and a memory, where the memory is used for storing a computer program, and the computer program includes program instructions, and the processor is configured to call the program instructions to execute the login state renewal method of the second aspect.
In a ninth aspect, an embodiment of the present invention provides a terminal, including a receiving device, a sending device, a processor, and a memory, where the receiving device, the sending device, the processor, and the memory are connected through a bus, and the memory is used to store a computer program, where the computer program includes program instructions, and the processor is configured to call the program instructions and execute the login method of the third aspect.
Accordingly, an embodiment of the present invention further provides a computer storage medium, in which a first computer program instruction is stored, and when being executed by a processor, the first computer program instruction is configured to execute the login state renewal method of the first aspect; the computer storage medium further having stored therein second computer program instructions for, when executed by the processor, performing the login state renewal method of the second aspect; the computer storage medium has stored therein third computer program instructions for performing the login method of the third aspect when executed by the processor.
In the embodiment of the invention, if a mailbox server detects that the login state of a target mailbox account bound in a first communication client is expired, a renewal prompt message is sent to the first communication client; receiving a renewal request which is sent by the first communication client and carries an email service authorization bill; sending the mailbox service authorization ticket carried in the renewal request to a communication server, and verifying the received mailbox service authorization ticket by the communication server based on the mailbox service authorization ticket distributed for the mailbox service in the first communication client; and when receiving notification information that an authorization bill sent by a communication server is valid, determining that the login state renewal of the target mailbox account bound in the first communication client is successful. In the login state duration process, the mailbox service authorization ticket distributed to the mailbox service in the first communication client side is used for performing login state duration on the target mailbox account number bound in the first communication client side through the communication server, so that the mailbox password of the target mailbox account number does not need to be stored in the first communication client side, and the safety of the mailbox service is improved.
Drawings
In order to more clearly illustrate the embodiments of the present invention or the technical solutions in the prior art, the drawings used in the description of the embodiments or the prior art will be briefly described below, it is obvious that the drawings in the following description are only some embodiments of the present invention, and for those skilled in the art, other drawings can be obtained according to the drawings without creative efforts.
Fig. 1 is an architecture diagram of a communication system according to an embodiment of the present invention;
fig. 2a is a schematic flowchart of a login method according to an embodiment of the present invention;
FIG. 2b is a diagram of a login interaction provided by an embodiment of the present invention;
fig. 3a is a schematic diagram of an access to an enterprise mailbox provided by an embodiment of the present invention;
fig. 3b is a schematic diagram of an enterprise mailbox login interface according to an embodiment of the present invention;
FIG. 3c is a diagram of another enterprise mailbox login interface provided by an embodiment of the present invention;
FIG. 3d is a diagram illustrating an embodiment of obtaining a login authentication code;
fig. 4 is a flowchart illustrating a login state renewal method according to an embodiment of the present invention;
FIG. 5 is a flowchart illustrating another exemplary method for resuming login status according to the present invention;
FIG. 6 is a flowchart illustrating a further method for resuming login status according to an embodiment of the present invention;
fig. 7 is a schematic structural diagram of a login state renewal apparatus according to an embodiment of the present invention;
FIG. 8 is a schematic structural diagram of another login duration device according to an embodiment of the present invention;
fig. 9 is a schematic structural diagram of a login apparatus according to an embodiment of the present invention;
fig. 10 is a schematic structural diagram of a mailbox server according to an embodiment of the present invention;
fig. 11 is a schematic structural diagram of a communication server according to an embodiment of the present invention;
fig. 12 is a schematic structural diagram of a terminal according to an embodiment of the present invention.
Detailed Description
The technical solutions in the embodiments of the present invention will be clearly and completely described below with reference to the drawings in the embodiments of the present invention, and it is obvious that the described embodiments are only a part of the embodiments of the present invention, and not all of the embodiments. All other embodiments, which can be derived by a person skilled in the art from the embodiments given herein without making any creative effort, shall fall within the protection scope of the present invention.
With the development of the times, communication clients become one of important tools for users to communicate with each other, for example, friends can chat through WeChat or QQ, and colleagues can communicate with each other through WeChat of enterprises. In addition, considering that the mailbox is also one of the essential tools for communication between users or enterprise users, in order to conveniently realize mailbox service, mailbox application is developed in the communication client, that is, the communication client can realize mailbox service, so that a user can receive and send mails at any time through the communication client only by logging in the communication client and logging in a mailbox account in the communication client.
In an embodiment, an embodiment of the present invention provides a login method for logging in a mailbox account in a communication client, and in particular, the login method provided in the embodiment of the present invention may be applied to a first communication client, where the first communication client implements a communication service through a communication server, a mailbox application is embedded in the first communication client, and the first communication client implements a mailbox service through the communication server and a mailbox server, and the login method may include: if connection information is received on a user interface, generating a connection request carrying the connection information, and sending the connection request to the communication server, wherein the connection request is used for indicating the communication server to send the connection information to the mailbox server for verification, and the connection information comprises a target mailbox account and a mailbox password; receiving a login verification code at a user interface, wherein the login verification code is sent after the mailbox server verifies the target mailbox account and the mailbox password; and sending the login verification code to the communication server to instruct the communication server to send the login verification code to the mailbox server for verification.
In the login process, the first communication client needs to provide the mailbox password and the login verification code for the mailbox server, so that the mailbox server performs double login verification, the risk of mailbox data leakage caused by mailbox password leakage can be avoided by adopting double verification, and the safety of mailbox data is improved.
After a target mailbox account is logged in a first communication client, if a mailbox server detects that a new mail arrives in the target mailbox account, new mail notification information is sent to the first communication client, the first communication client prompts in a session window mode, and when the first communication client receives a viewing operation aiming at the new mail prompt, the first communication client accesses the mailbox server to obtain the content of the new mail. For example, if the user a logs in the enterprise WeChat client through the enterprise mailbox account B, when the mailbox server detects that the B receives a new mail, the user a receives a chat window of the enterprise mailbox through the enterprise WeChat client, and if the communication client detects that the user a checks the new mail in the chat window, the communication client accesses the mailbox server to obtain the content of the new mail.
In one embodiment, logging in the target mailbox account in the first communication client is equivalent to the first communication client obtaining the login state of the target mailbox account, the login state of the target mailbox account is allocated to the target mailbox account by the mailbox server, and the login state allocated to the target mailbox account by the mailbox server refers to a credential allocated to the target mailbox account after the mailbox server passes verification on the target mailbox account and the mailbox password, and the credential can be repeatedly used within the valid time of the credential, so that the first communication client logging in the target mailbox account can access data of the mailbox server. Therefore, after the target mailbox account is logged in the first communication client, when the first communication client accesses mailbox data related to the mailbox account in the mailbox server, the mailbox server verifies the login state of the target mailbox account in the first communication client, and if the login state is verified to be valid or not expired, corresponding mailbox data is sent to the first communication client; and if the login state is verified to be invalid or expired, the mailbox server prompts the first communication client to carry out the persistent login state.
In an embodiment, a common method for resuming the login state may be that after the mailbox server verifies the target mailbox account and the mailbox password logged in the first communication client for the first time, the first communication client stores the mailbox password locally, and when receiving a login state resume prompt message sent by the mailbox server, the stored mailbox password is sent to the mailbox server, and the mailbox server performs verification to implement the login state resume of the target mailbox account logged in the first communication client.
In view of the above, in the method for resuming a login state, when a first communication client locally stores a mailbox password, which may increase a risk of mailbox password leakage and cause an unsafe mailbox service, in an embodiment of the present invention, based on that the first communication client implements the mailbox service of a mailbox server through a mailbox service authorization ticket acquired from a communication server, a login state resumption method is provided, where the login state resumption method is applied to the mailbox server, the mailbox server provides the mailbox service for the first communication client through the communication server, the first communication client implements the communication service through the communication server, and implements the mailbox service of the mailbox server through the mailbox service authorization ticket acquired from the communication server, and in particular, the login state resumption method provided in the embodiment of the present invention may include: if the mailbox server detects that the login state of the target mailbox account bound in the first communication client is expired, sending a renewal prompt message to the first communication client; when a renewal request carrying an email service authorization bill sent by a first communication client is received, sending the email service authorization bill to a communication server, and verifying the email service authorization bill by the communication server based on a verification bill of the email service distributed to the first communication client; and when the communication information that the authorization ticket sent by the communication server is valid is received, determining that the login state of the target mailbox account in the first communication client is successfully renewed.
In the login state renewal process, the mailbox authorization ticket is verified to determine whether the first communication client can realize the mailbox service in the login state valid time of the first communication client, and the login state of the first communication client is renewed in a relatively safe mode, so that the successful login state renewal of the target mailbox account number in the first communication client can be determined as long as the mailbox service authorization ticket sent by the first communication client is distributed by the communication server for the mailbox service in the first communication client to realize the mailbox service. In the login state duration process, the mailbox service authorization ticket distributed to the mailbox service in the first communication client side is used for performing login state duration on the target mailbox account number bound in the first communication client side through the communication server, so that the mailbox password of the target mailbox account number does not need to be stored in the first communication client side, and the safety of the mailbox service is improved.
The login state renewal method and the login method according to the embodiments of the present invention may be applied to the communication system shown in fig. 1, and the communication system shown in fig. 1 may include a first communication client 101, a communication server 102, and a mailbox server 103. Assuming that a mailbox application is embedded in the first communication client 101, the first communication client 101 implements a mailbox service in the mailbox server 103 through a mailbox service authorization ticket acquired from the communication server 102, and the mailbox server 103 provides the mailbox service for the first communication client 101 through the communication server 102.
In an embodiment, the communication server 102 may store a plurality of corresponding relationships between client accounts of the first communication client 101 and mailbox accounts, and when detecting that a target client account is logged in the first communication client, output a prompt message to prompt a user of the first communication client 101 to log in a target mailbox account corresponding to the target client account in the first communication client 101. The specific login process may be: the first communication client 102 may present a user interface related to mailbox login to the user, and the user inputs connection information in the user interface, where the connection information includes a target mailbox account and a mailbox password; if the first communication client 101 receives the connection information on the user interface, a connection request carrying the connection information is generated, and the connection request is sent to the communication server 102; after receiving the connection request, the communication server 102 sends the connection information carried in the connection request to the mailbox server 103, and the mailbox server 103 verifies the target mailbox account and the mailbox password in the connection information. Optionally, the verifying the target mailbox account and the mailbox password by the mailbox server 103 may include verifying whether the target mailbox account and the mailbox password are matched, and if so, determining that the verification is passed; and if not, determining that the verification is not passed. Alternatively, the verification of the target mailbox account and the mailbox password by the mailbox server 103 also includes other embodiments, which are not specifically limited in the embodiment of the present invention.
If the mailbox server 103 verifies the target mailbox account and the mailbox password, the mailbox server 103 may send a login verification code to the first communication client 101. In one embodiment, the way for the mailbox server to send the login verification code to the first communication client 101 may be: the mailbox server 103 directly sends the login verification code to the user interface of the first communication client 101, wherein the user interface of the first communication client 101 for receiving the login verification code may be the same as or different from the user interface for receiving the connection information.
In other embodiments, the communication system shown in fig. 1 may further include a second communication client 104, and the manner for the mailbox server to send the login verification code to the first communication client 101 may be as follows: after the target mailbox account and the mailbox password are verified, the mailbox server 103 sends the login verification code to the second communication client 104, and the user acquires the login verification code from the second communication client 104 and inputs the login verification code into the user interface of the first communication client 101.
After receiving the login verification code, the first communication client 101 sends the login verification code to the communication server 102, and the communication server 102 sends the login verification code to the mailbox server 103, so that the mailbox server 103 verifies the login verification code.
It should be understood that, logging in the target mailbox account in the first communication client 101 is equivalent to the first communication client 101 obtaining the login state of the target mailbox account logged in the first communication client, the first communication client 101 may access mailbox data related to the target mailbox account in the mailbox server 103, so as to implement mailbox services related to the target mailbox account, such as viewing a new mail prompt, forwarding a mail, sending a mail, and the like. In addition, if the target mailbox account is successfully logged in the first communication client 101, the communication server 102 may further establish a binding relationship between the client account of the first communication client and the target mailbox account, so that the mail push may be implemented, specifically, if the mailbox server 103 detects that a new mail is received in the target mailbox account, the mailbox server 103 may send a new mail prompt message to the communication server 102, where the new mail prompt message may include the target mailbox account; the communication server 102 sends new mail notification information to the first communication client according to the preset binding relationship between the client account of the first communication client and the target mailbox account, so that the user can know that a new mail arrives in the mailbox through the first communication client 101.
In an embodiment, after the first communication client 101 logs in the target mailbox account, the mailbox server may periodically detect whether the login status of the target mailbox account is expired, or when the mailbox server receives the mailbox service request sent by the first communication client, detect whether the login status of the target mailbox account is expired. If the mailbox server detects that the login state of the target mailbox account in the first pass client is expired, the mailbox server 103 prompts the first communication client 101 to perform login state renewal for the target mailbox account.
The embodiment of the invention mainly utilizes the mailbox service authorization ticket distributed by the communication server 102 to the first communication client 101 as the target mailbox account to realize login state renewal in the first communication client 101. The authorization ticket distributed by the communication server 102 to the first communication client 101 includes a big ticket and a small ticket, the big ticket refers to a root certificate distributed by the communication server 102 to the first communication client after the first communication client logs in a target client account, and the small ticket is a service electronic certificate distributed by the communication server 102 to each service in the first communication client 101, for example, the small ticket distributed by the communication server 102 to a mailbox service in the first communication client 101 is a mailbox service authorization ticket; the ticket assigned by the communication server 102 for the shopping service in the first communication client 101 is a shopping authorization ticket.
Specifically, the login state renewal method provided by the embodiment of the present invention includes: after detecting that the login status of the target mailbox account in the first communication client 101 is expired, the mailbox server 103 may send a renewal prompt message to the first communication client 101; the first communication client 101 responds to the renewal prompt message and sends the mailbox service authorization ticket carried in the renewal request to the mailbox server 103; then, the mailbox server 103 sends the received mailbox service authorization ticket to the communication server 102, the communication server 102 verifies the received mailbox service authorization code according to the mailbox service authorization code allocated by the communication server for the mailbox service in the first communication client 101, and sends a notification message that the authorization ticket is valid to the mailbox server 103 after the verification is passed; after receiving the notification information, the mailbox server 103 determines that the login state renewal of the target mailbox account in the first communication client 101 is successful.
Therefore, when the mailbox service related to the target mailbox account is to be realized through the first communication client, the target mailbox account needs to be logged in the first communication client, or the login state of the target mailbox account logged in the first communication client is obtained, and when the login state of the target mailbox account in the first communication client is expired, the login state of the target mailbox account in the first communication client is resumed through the login state resumption method.
Referring to fig. 2a, which is a flowchart illustrating a login method according to an embodiment of the present invention, the login method shown in fig. 2a is applied to a first communication client, where the first communication client implements a communication service through a communication server, a mailbox application is embedded in the first communication client, and the first communication client implements a mailbox service through the communication server and a mailbox server. The login method illustrated in fig. 2a may be executed by a terminal, and may specifically be executed by a processor of the terminal, where the terminal runs a first communication client and a second communication client. The login method of fig. 2a may comprise the following steps:
s201, if connection information is received on a user interface, a connection request carrying the connection information is generated, and the connection request is sent to the communication server.
The connection information comprises a target mailbox account and a mailbox password, and the mailbox password corresponding to the target mailbox account is preset for the target mailbox account by a user. In one embodiment, the implementation of receiving the connection information in the user interface may be: and if the fact that the user inputs the login operation about the target mailbox account in the user interface is detected, determining that the connection information is received in the user interface. In one embodiment, the login operation on the target mailbox account may refer to that the user inputs the target mailbox account and the mailbox password in a user interface for logging in the mailbox of the first communication client, and performs a touch operation at a preset position of the user interface, where the touch operation may include one or more of clicking, sliding, long pressing and the like.
In other embodiments, with the rapid development of artificial intelligence, the login operation on the target mailbox account may further refer to voice information input by the user into the first communication client, and the first communication client identifies the target mailbox account and the mailbox password included in the voice information. For example, if a piece of voice information input to the first communication client by the user is "please log in the mailbox a, the account is weihdng, and the password is 123456", the first communication client first identifies the voice information, and then identifies that the target mailbox account is weihdng and the mailbox password is 123456, and then the first communication client opens the user interface of the mailbox a, and automatically fills the mailbox account and the mailbox password in the user interface.
In one embodiment, the connection request is used to instruct the communication server to send the connection information to the mailbox server for verification, that is, the connection request instructs the communication server to send the connection information to the mailbox server so that the mailbox server verifies the target mailbox account and the mailbox password in the connection information. It should be understood that the first communication client implements the communication service through the communication server, and the mailbox server provides the mailbox service for the first communication client through the communication server, so that the communication between the first communication client and the mailbox server needs to be completed through the communication server, and therefore the connection information of the first communication client is sent to the communication server first and then sent to the mailbox server by the communication server.
In an example, a mailbox server may store a plurality of sets of corresponding relations between registered mailbox accounts and mailbox passwords, where the corresponding relations between the mailbox accounts and the mailbox passwords are preset by a user, for example, the mailbox account is wangxiaobing @ xs.com, the corresponding mailbox password is nihao1234, or the mailbox account is niganmaa @123.com, and the corresponding mailbox password is hai 5678.
And after receiving the connection request sent by the communication server, the mailbox server acquires the connection information included in the connection request and verifies the connection information. In one embodiment, the way for the mailbox server to verify the connection information may be as follows: verifying whether a target mailbox account included in the connection information belongs to a registered mailbox account, if so, further verifying whether a mailbox password included in the connection information is a mailbox password corresponding to the target mailbox account according to the corresponding relation between a plurality of groups of registered mailbox accounts and mailbox passwords, and if so, determining that the target mailbox account and the mailbox password are verified; if not, the verification is determined to be not passed. Optionally, if the mailbox server verifies that the target mailbox account does not belong to the registered mailbox account, a prompt message may be sent to the first communication client through the communication server to prompt the user to re-input the mailbox account or perform mailbox account registration.
For example, assuming that a target mailbox account number sent by the communication server and received by the mailbox server is wangxiaobing @ xs.com, and a mailbox password is nihao1234, the mailbox server determines that the target mailbox account number and the mailbox password pass verification according to the preset corresponding relationship; assuming that a target mailbox account number sent by the communication server and received by the mailbox server is wangxiaobing @ xs.com and a mailbox password is niha 1234, the mailbox server can know that the received mailbox password is not matched with a mailbox password corresponding to a preset target mailbox account number according to the preset corresponding relation, and the target mailbox account number and the mailbox password are determined not to be verified.
S202, receiving a login verification code on a user interface, wherein the login verification code is sent after the mailbox server verifies the target mailbox account and the mailbox password.
In one embodiment, the mailbox server verifies the target mailbox secret account and the mailbox code, which indicates that the first communication client knows the login information of the target mailbox account, and the existing method for logging in the mailbox client is that if the mailbox server determines that the mailbox client knows the login information of the target mailbox account, the login state of the target mailbox account is allocated to the mailbox client. However, once the mailbox account and the mailbox password of the target mailbox account are revealed, the mailbox account can be logged in any form anywhere to operate the related mailbox data, so that the security of the mailbox data is low.
Therefore, when logging in the target mailbox account, the embodiment of the invention also increases login verification code verification to avoid the situation that mailbox data is unsafe due to the fact that the login information of the target mailbox account is stolen.
Specifically, after the mailbox server verifies the target mailbox account and the mailbox password in the connection information, a login verification code can be generated and sent, and the login verification code can be dynamic and has a certain validity period. In one embodiment, the mailbox server may directly send the generated dynamic authentication code to a user interface of the first communication client, where the user interface may be the same as or different from the user interface receiving the connection information; alternatively, the user interface described herein may belong to a different interface element in the same user interface than the user interface that receives the connection information.
The mailbox server directly sends the login verification code to the first communication client so as to facilitate subsequent login verification, the process that a user checks the login verification code and inputs the verification code in a user interface is omitted, and the login verification time is saved.
In other embodiments, if the target mailbox account is bound to the second communication client before, after the mailbox server verifies the target mailbox account and the mailbox password in the connection information, a login verification code can be generated and sent to the second communication client; sending an acquisition request for acquiring the verification code to the first communication client; and the first communication client outputs prompt information in response to the acquisition request so that a user can conveniently acquire the login verification code from the second communication client according to the prompt information and input the login verification code into a user interface of the first communication client.
In the process, the acquisition and the use of the login verification code are respectively completed in the second communication client and the first communication client, if the login verification code is required to be successfully used for verification, the first communication client and the second communication client must have access rights, so that the difficulty of stealing the login verification code is undoubtedly increased, and the safety of mailbox service is improved.
S203, sending the login verification code to the communication server to indicate the communication server to send the login verification code to the mailbox server for verification.
In one embodiment, the first communication client sends the login verification code to the communication server after receiving the login verification code, the communication server sends the login verification code to the mailbox server, and the mailbox server verifies the login verification code after receiving the login verification code. Optionally, the verification of the login verification code by the mailbox server may be: verifying whether the received login verification code is matched with the login verification code sent to the second communication client side, and if so, determining that the verification is passed; if not, the verification is determined to be failed.
And if the mailbox server passes the verification of the login verification code, the mailbox server determines that the target mailbox account is successfully logged in the first communication client. Optionally, the mailbox server may send a login success notification to the first communication client, and in response to the login success notification, the first communication client may output a prompt interface indicating that the mailbox login is successful. Or, the first communication client may also directly enter the mailbox interface of the target mailbox account.
As a feasible implementation manner, after the mailbox server verifies the login verification code, the mailbox server can also send a binding notification to the communication server, and the communication server establishes a binding relationship between the client account of the first communication client and the target mailbox account, so that once a new mail of the target mailbox account is received in the mailbox server, the mailbox server sends the new mail notification to the communication server; the communication server may send new mail prompt information to the first communication client according to the binding relationship and the new mail notification.
In an embodiment, after the first communication client successfully logs in the target mailbox account, the user may execute the mailbox service related to the target mailbox account through the first communication client, and in order to ensure the safety of the mailbox service, if the mailbox server detects that the login state of the target mailbox account in the first communication client is expired in the process that the user executes the mailbox service related to the target mailbox account, the user may continue to execute the corresponding mailbox service only after the login state of the target mailbox account by the first communication client is continued.
Specifically, a prompt message of login state duration sent by the mailbox server is received, where the prompt message of login state duration is sent by the mailbox server after the mailbox server detects that the login state of the target mailbox account in the first communication client has expired; and sending a mailbox service authorization bill to the mailbox server so that the mailbox server can carry out login state renewal for the target mailbox account in the first communication client based on the mailbox service authorization bill.
In an embodiment, a specific implementation process of the mailbox server performing login state renewal for the target mailbox account in the first communication client based on the mailbox service authorization ticket may refer to description of relevant contents in the embodiment of fig. 4, which is not described herein again.
As a possible implementation manner, fig. 2b provides a login interaction diagram for logging in a target mailbox account in a first communication client by using the login method shown in fig. 2a, and for some optional implementation manners related to fig. 2b, description is already given in relevant steps of fig. 2a, and details are not repeated here.
The login method described in fig. 2a according to the embodiment of the present invention is described below with reference to the login interaction diagram shown in fig. 2b and the application scenarios shown in fig. 3a to 3 d. In fig. 3a to 3d, it is assumed that the first communication client is an enterprise WeChat, the second communication client is a WeChat, the communication server is an enterprise WeChat server, and if the enterprise WeChat has a mailbox application with an enterprise mailbox, an enterprise member can execute a mailbox service through the enterprise WeChat at any time by logging in the enterprise mailbox in the enterprise WeChat.
When adding enterprise members, the enterprise administrator may assign a corresponding mailbox account to each enterprise member, and when the enterprise members successfully log in the enterprise WeChat, the enterprise mailbox may be found through a workbench menu of the enterprise WeChat, as shown in FIG. 3 a; when a selection operation for the enterprise mailbox is received, the enterprise WeChat displays a user interface of an enterprise mailbox login interface, as shown in FIG. 3b, so that the enterprise member can input mailbox login related operations on the user interface of the enterprise mailbox login interface. If the enterprise wechat obtains the input mailbox password in the user interface shown in fig. 3b, that is, the enterprise wechat receives the connection information in the user interface, the mailbox password and the target mailbox account are sent to the enterprise wechat server, and the enterprise wechat server sends the mailbox password and the target mailbox account to the mailbox server, so that the mailbox server verifies the target mailbox account and the login password.
If the verification is passed, the mailbox server sends a login verification code to the WeChat and sends an acquisition request for acquiring the login verification code to the enterprise WeChat, and the enterprise WeChat can output prompt information in response to the acquisition request, as shown in FIG. 3c, so as to prompt a user to acquire the login verification code from the WeChat bound with the target mailbox account. The login verification code sent by the mailbox server to the WeChat is dynamic, and referring to FIG. 3d, the way for the mailbox server to send the login verification code to the WeChat may be: the mailbox server sends a piece of notification information to the WeChat, the notification information comprises a login verification code or a link for acquiring the login verification code, and the enterprise member acquires the login verification code from the notification information and inputs the login verification code to a corresponding position in the WeChat of the enterprise.
After the enterprise wechat acquires the login verification code input by the enterprise member, the enterprise wechat sends the login verification code to the enterprise wechat server, the enterprise wechat server sends the received login verification code to the mailbox server, the mailbox server verifies the login verification code, if the verification is passed, a login success notification is sent to the enterprise wechat client, and the enterprise wechat client can output a login success interface. The method for verifying the login verification code by the mailbox server can be as follows: comparing the received login verification code sent by the enterprise WeChat server with the login verification code sent to the WeChat, and if the login verification code and the login verification code are the same, determining that the verification is passed; if the two are different, the verification is determined to be failed.
In summary, in the embodiment of the present invention, when logging in the mailbox account bound to the second communication client in the first communication client, dual login verification is performed by using the mailbox password and the login verification code, so that the login security of the mailbox account is improved. And the login verification code is not directly acquired from the first communication client, but is acquired from the second communication client by the user, input into the first communication client and then sent to the mailbox server by the first communication client, so that the generation and the use of the login verification code are separated, and the login safety of the mailbox account is further improved.
After the target mailbox account is logged in the enterprise WeChat, if the mailbox server detects that a new mail is received in the target mailbox account, the new mail is displayed in the enterprise WeChat in a chat window mode, so that a user can conveniently view the content of the new mail.
In the embodiment of the invention, if connection information is received on a user interface, a connection request carrying the connection information is generated and sent to the communication server, the connection request is used for indicating the communication server to send the connection information to the mailbox server for verification, and the connection information comprises a target mailbox account and a mailbox password; receiving a login verification code at a user interface, wherein the login verification code is sent after the mailbox server verifies the target mailbox account and the mailbox password; and sending the login verification code to the communication server to instruct the communication server to send the login verification code to the mailbox server for verification.
In the login process, when the target mailbox account is logged in the first communication client, the risk of unsafe mailbox data caused by leakage of the mailbox password and the target mailbox account is reduced through double verification of the mailbox password and the login verification code, and the safety of mailbox service is improved.
Referring to fig. 4, a flowchart of a login state renewal method according to an embodiment of the present invention is shown, where the method is applied to a mailbox server, the mailbox server provides a mailbox service for a first communication client through a communication server, the first communication client implements the communication service through the communication server, and implements the mailbox service of the mailbox server through a mailbox service authorization ticket acquired from the communication server. The login state renewal method illustrated in fig. 4 may be executed by the mailbox server, and specifically may be executed by a processor of the mailbox server, where the login state renewal method may include the following steps:
s401, if the fact that the login state of the target mailbox account bound in the first communication client is expired is detected, sending a renewal prompt message to the first communication client.
The first communication client may include one or more of an enterprise WeChat, QQ and other communication clients, and the communication server is a server corresponding to the first communication client, for example, assuming that the first communication client is an enterprise WeChat, the communication server may be an enterprise WeChat server; assuming that the first communication client is a QQ, the pass-through server may be a QQ server. The communication server supports the first communication client to realize the communication service, and can distribute the mailbox authorization ticket to the first communication client so that the first communication client realizes the mailbox service of the mailbox server.
In one embodiment, the target mailbox account bound by the first communication client is that the target mailbox account is logged in the first communication client. The login state of the target mailbox account refers to a certificate distributed by the mailbox server after the login verification of the target mailbox account logged in the first communication client is passed, and the first communication client can access mailbox data related to the target mailbox account in the mailbox server within the validity time of the certificate through the certificate. The valid time of the voucher is generally 2 hours, and if the mailbox server detects that the voucher distribution time for the first communication client exceeds 2 hours, the login state of the target mailbox account bound in the first communication client is determined to be expired.
In one embodiment, the mailbox server may perform an operation of detecting whether the login state of the target mailbox account bound in the first communication client is expired when receiving a trigger instruction about detecting whether the login state of the target mailbox account bound in the first communication client is expired. In one embodiment, the trigger instruction may include a mailbox service request related to the target mailbox account sent by the first communication client, where the mailbox service request may include any one or more of a view request for viewing a new email, a forwarding request for forwarding an email, a sending request for sending a new email, and a deleting request for deleting an email.
Optionally, the manner for the mailbox server to detect whether the login status of the target mailbox account bound to the first communication client is expired may be as follows: when the mailbox server receives the mailbox service request, whether the login state of the target mailbox account bound in the first communication client is expired is detected according to the identification information of the first communication client and the target mailbox account in the mailbox service request. Specifically, the mailbox server searches for initial time of login state of login target mailbox account number in the first communication client for the first communication client in a history allocation login state record according to the identification information of the first communication client; judging whether the time difference between the initial time and the current time is greater than a preset time difference value or not; if the login state of the target mailbox account number bound in the first communication client is more than the preset time difference value, determining that the login state of the target mailbox account number bound in the first communication client is expired; and if the login state of the target mailbox account bound in the first communication client is not more than the preset time difference, determining that the login state of the target mailbox account bound in the first communication client is not expired.
After receiving a mailbox service request related to a target mailbox account, a mailbox server detects a login state of the target mailbox account bound in a first communication client before executing the mailbox service request, and executes the mailbox service request under the condition of ensuring that the login state of the target mailbox account is not expired, so that the safety of mailbox data related to the target mailbox account can be ensured.
In another embodiment, the trigger instruction may further include a timing detection task set by the mailbox server, where the timing detection task is to set that the mailbox server is triggered every predetermined time to detect whether a login state allocated by the mailbox server to each client bound to the mailbox account is expired, and when it is detected that the login state of the target mailbox account bound in the first communication client is expired, a duration prompt message may be sent to the first communication client, which is helpful for the first communication client to ensure that the login state of the target mailbox account bound in the first communication client is valid before executing mailbox service related to the target mailbox account, and thus time for executing mailbox service related to the target mailbox account is saved.
Because the mailbox server needs a certain time to detect whether the target mailbox account bound in the first communication client is expired, and if the login state is detected to be expired, a certain time is also needed for login state renewal, if the mailbox server receives the mailbox service request, the detection process and the renewal process are executed again, which may cause the mailbox server to respond to the mailbox service request slowly, and affect user experience. If the mailbox server regularly detects whether the login state allocated by the mailbox server for each client bound with the mailbox account is expired or not, the corresponding mailbox service request can be executed more quickly, and the user experience is improved.
In one embodiment, if the mailbox server detects that the login state of the target mailbox account bound in the first communication client is expired, which indicates that the first communication client cannot continuously access mailbox data related to the target mailbox account in the mailbox server, the mailbox server sends a renewal prompt message to the first communication client to indicate that the first communication client is in the target mailbox account renewal login state.
S402, the mailbox server receives a renewal request sent by the first communication client, wherein the renewal request carries a mailbox service authorization bill.
S403, the mailbox server sends the mailbox service authorization ticket carried in the renewal request to the communication server, so that the communication server can verify whether the mailbox service authorization ticket is valid.
In one embodiment, the duration request sent by the first communication client and received by the mailbox server is generated and sent by the first communication client in response to the duration prompt message sent by the mailbox server, and the manner in which the first communication client generates the duration request may be: when receiving the renewal prompt message sent by the mailbox server, acquiring a mailbox service authorization bill distributed for the mailbox service authorization bill from the local communication server, and generating a renewal request according to the mailbox service authorization bill. The mailbox service ticket locally stored by the first communication client is distributed by the communication server after the client account of the first communication client successfully logs in.
In one embodiment, the renewal request may carry a mailbox service authorization ticket, which is assigned by the communication server to the first communication client and used for indicating a credential that the first communication client can execute the mailbox service.
In another embodiment, the continuation request may further carry identification information of the first communication client, where the identification information is used to uniquely identify the first communication client. The mailbox server may send the mailbox service authorization ticket to the communication server in step S403, and at the same time, send the identification information of the first communication client to the communication server, so that the communication server finds the mailbox service authorization ticket allocated by the communication server to the first communication client based on the identification information of the first communication client, and then verifies the mailbox service authorization ticket received and sent by the mailbox server based on the mailbox service authorization ticket allocated to the mailbox service in the first communication client.
In other embodiments, after the first communication client logs in the target mailbox account, the communication server may establish a binding relationship between the client account of the first communication client and the target mailbox account, and how to establish the binding relationship between the client account of the first communication client and the target mailbox account is described in detail later.
Optionally, the renewal request may further carry a target mailbox account, and when the mailbox server sends the mailbox service authorization ticket to the communication server in step 403, the mailbox server may also send the target mailbox account to the communication server, so that the communication server finds the target client account bound to the target mailbox account based on the target mailbox account, further finds the first communication client logged in the target client account, then finds the mailbox service authorization ticket allocated by the communication server to the first communication client, and verifies the mailbox service authorization ticket received and sent by the mailbox server by using the found mailbox service authorization ticket.
S404, when the notification information that the authorization bill sent by the communication server is valid is received, the mailbox server determines that the login state renewal of the target mailbox account bound in the first communication client is successful.
The mailbox service authorization ticket is distributed by the communication server after the client account of the first communication client successfully logs in, if the communication server successfully verifies the mailbox service authorization ticket, the successful login of the client account in the first communication client is indicated, and the successful login of the client account in the first communication client indicates that the target mailbox account bound in the first communication client is also in a login state.
In the embodiment of the invention, if a mailbox server detects that the login state of a target mailbox account bound in a first communication client is expired, a renewal prompt message is sent to the first communication client; receiving a renewal request which is sent by the first communication client and carries an email service authorization bill; sending the mailbox service authorization ticket carried in the renewal request to a communication server, and verifying the received mailbox service authorization ticket by the communication server based on the mailbox service authorization ticket distributed for the mailbox service in the first communication client; and when receiving notification information that an authorization bill sent by a communication server is valid, determining that the login state renewal of the target mailbox account bound in the first communication client is successful. In the login state renewal process, the mailbox service authorization ticket distributed to the first communication client by the communication server is used for renewing the target mailbox account, a target mailbox password does not need to be stored in the first communication client, and the safety of the mailbox service is improved.
Referring to fig. 5, which is a flowchart illustrating another login state renewal method according to an embodiment of the present invention, the login state renewal method shown in fig. 5 may be applied to a communication server, where the communication server supports a first communication client to implement a communication service, and the communication server enables the first communication client to implement a mailbox service in a mailbox server by allocating a mailbox service authorization ticket to the first communication client. The login state renewal method shown in fig. 5 may be executed by the communication server, and may specifically be executed by a processor of the communication server, where the login state renewal method may include:
s501, the communication server receives the mailbox service authorization bill sent by the mailbox server.
In one embodiment, a target mailbox account is bound in the first communication client, the mailbox service authorization ticket is sent to the mailbox server after the first communication client receives the renewal prompt message for the target mailbox account sent by the mailbox server, and the mailbox service authorization ticket in the first communication client is distributed to the first communication client by the communication server after the client account of the first communication client successfully logs in.
In one embodiment, after a client account in a first communication client successfully logs in, a communication server allocates an authorization bill to the first communication client, where the authorization bill includes a large bill and a small bill, the large bill is a root certificate allocated to the first communication client by the communication server after the client account in the first communication client successfully logs in, the small bill is a service electronic certificate allocated to each service in the first communication client in which the client account successfully logs in by the communication server, and the small bill can be obtained by adding a service identifier to the large bill. For example, the mailbox service authorization ticket is a service electronic certificate for the mailbox service allocated by the communication server to the first communication client, and the mailbox service authorization ticket may be obtained by the communication server according to a large ticket allocated to the first communication client and a mailbox service identifier. In summary, it can be known that the mailbox service authorization ticket allocated by the communication server to the first communication client is allocated when the client account in the first communication client is in the login state.
In one embodiment, if the client account in the first communication client fails to log in, the mailbox service authorization ticket previously assigned by the communication server for the mailbox service in the first communication client is invalid. Or the communication server marks the previously assigned mailbox service authorization ticket in the first communication client as invalid. The first communication client stores the large tickets and the small tickets distributed by the communication server, and when the renewal prompt information sent by the mailbox server is received, the related small tickets are sent to the mailbox server, and the mailbox server sends the small tickets to the communication server for verification.
S502, the communication server verifies the received mailbox service authorization bill based on the mailbox service authorization bill distributed for the mailbox service in the first communication client.
In an embodiment, in step S502, the way that the communication server verifies the mailbox service authorization ticket based on the mailbox service authorization ticket allocated to the mailbox service in the first communication client may be: the communication server firstly verifies whether the mailbox service authorization ticket distributed to the first communication client by the communication server is valid, and if so, can further verify whether the received mailbox service authorization ticket is matched with the mailbox service authorization ticket distributed to the first communication client by the communication server: if so, determining that the mailbox service authorization bill sent by the mailbox server is valid; and if not, determining that the mailbox service authorization ticket sent by the mailbox server is invalid.
S503, if the received mailbox service authorization ticket is verified to be valid, the communication server sends notification information that the authorization ticket is valid to the mailbox server.
In one embodiment, when the communication server verifies that the mailbox service authorization ticket sent by the mailbox server is valid, notification information that the authorization ticket is valid can be generated and sent to the mailbox server, so that the mailbox server determines that the login state renewal of the target mailbox account bound in the first communication client is successful according to the notification information that the authorization ticket is valid.
In the embodiment of the invention, after receiving the mailbox service authorization ticket in the first communication client sent by the mailbox server, the communication server verifies the received mailbox service authorization ticket based on the mailbox service authorization ticket distributed for the mailbox service in the first communication client, and sends the notification information that the authorization ticket is valid to the mailbox server after the verification is passed, so that the mailbox server can determine whether the login state of the target mailbox account bound in the first communication client is successful or not according to the notification information that the authorization ticket is valid. In the login state duration process, the mailbox service authorization ticket distributed to the first communication client by the communication server is used as the login state duration of the target mailbox account in the first communication client, the first communication client does not need to store the mailbox password of the target mailbox account, and the safety of the mailbox service is improved.
Referring to fig. 6, a flowchart of another login status renewal method according to an embodiment of the present invention is shown, where the flowchart shown in fig. 6 may include the following steps:
s601, when receiving a mailbox service request aiming at a target mailbox account sent by a first communication client, a mailbox server detects whether the login state of the target mailbox account bound in the first communication client is expired.
In one embodiment, after logging in a target mailbox account in a first communication client, a user can realize mailbox services such as sending, receiving, reading, writing and the like related to the target mailbox account through the first communication client. The mailbox service request can comprise any one or more of a viewing request for viewing the new mail, a forwarding request for forwarding the mail, a deleting request for deleting the mail or a sending request for sending the new mail. Taking a mailbox service request as an example of a viewing request, when a first communication client receives a viewing operation of a user for a new mail in a target mailbox account, the first communication client sends the viewing request to a mailbox server, the viewing request can carry a target mailbox account and a client identifier, the mailbox server detects whether a login state of the target mailbox account bound in the first communication client is overdue or not according to the client identifier and the target mailbox account in the viewing request, and if the login state is not overdue, the mailbox server sends content corresponding to the new mail to the first communication client; and if the first communication client is expired, the mailbox server sends a renewal prompt message to the first communication client.
In one embodiment, the logging in the target mailbox account in the first communication client may be understood as a login state in which the mailbox server allocates the target mailbox account to the first communication client, and in an embodiment, the method for the mailbox server to allocate the login state of the target mailbox account to the first communication client may include: when a first communication client acquires a login operation aiming at a target mailbox account, the first communication client sends the target mailbox account and a mailbox password to a communication server; the communication server generates a login request for logging in a target mailbox account in a first communication client according to the mailbox account and the mailbox password, and sends the login request to the mailbox server; a mailbox server receives a login request sent by a communication client for logging in a target mailbox account in a first communication client; if the login request passes the verification, a login verification code is sent to the second communication client; the communication server acquires a login verification code and sends the login verification code to the mailbox server; and if the mailbox server passes the verification of the login verification code, allocating the login state of the target mailbox account to the first communication client.
With the frequent use of mailboxes among enterprise users, the security of mailbox services is more and more emphasized, when a mailbox account is logged in a client to Access mailbox data in a mailbox server in the prior art, public mailbox protocols such as Internet Mail Access Protocol (IMAP), Post Office Protocol Version 3 (POP 3) or Exchange Protocol are usually used, once a third party obtains the mailbox account and a mailbox password, the third party can log in the mailbox server in any form to steal the mailbox data, and the mailbox service is unsafe. In the embodiment of the invention, in order to improve the Security of the mailbox service, the first communication client logs in the mailbox account by adopting a private encryption protocol, and transmits data communicated with the mailbox server by using a Transport Layer Security (TLS) protocol.
The private encryption protocol is determined by mutual negotiation between the communication server and the mailbox server and is special for mailbox service communication between the communication server and the mailbox server, and because the private encryption protocol is negotiated between the communication server and the mailbox, the security of encryption of communication information between the communication server and the mailbox is ensured, and mailbox passwords and mail contents are not easy to leak. In addition, the private protocol only comprises fields required for communication between the private protocol and the public mail protocol, and compared with the public mail protocol, unnecessary fields are omitted, so that the transmission quantity is small, and the transmission speed is high.
In one embodiment, on the basis of a private encryption Protocol and a TLS transport Protocol, a login request sent by a communication server to a mailbox server is transmitted in a hypertext Transfer Protocol over Secure Socket Layer (HTTPS) form, the login request is generated by a first communication client when a login operation for a target mailbox account input by a user is received, and the login request includes the target mailbox account and a mailbox password. The mailbox server verifies the login request after receiving the login request, and specifically, the verification of the login request by the mailbox server may include: verifying whether the target mailbox account is a legal mailbox account in a mailbox server or not; if the target mailbox account is a legal mailbox account, further verifying whether the mailbox password is a password corresponding to the target mailbox account; if the target mailbox account is not a legitimate mailbox account, verification may be determined to be passed.
Under the condition that the target mailbox account is verified to be a legal mailbox account, if the mailbox password included in the login request verified by the mailbox server is the same as the mailbox password corresponding to the target mailbox account stored in the mailbox server, the login request is determined to be verified to be passed; and if the mailbox password included in the login request is different from the mailbox password corresponding to the target mailbox account stored in the mailbox server, determining that the login request is not verified.
If the login request is verified, the mailbox server further receives a login verification code sent by the communication server, the login verification code is sent to the second communication client after the mailbox server verifies the login request, and a user can check the login verification code in the second communication client and input the login verification code into the first communication client. And the first communication client sends the login verification code to the communication server after receiving the login verification code, and the communication server sends the login verification code to the mailbox server.
The mailbox server verifies whether the received login verification code is the same as the login verification code sent to the second communication client: if the login verification codes are the same, the login verification codes are determined to pass the verification; if not, the verification of the login verification code is determined to be failed. After the mailbox server verifies the login verification code, the mailbox server determines that the target mailbox account can log in the first communication client, namely the mailbox server and the first communication client allocates the login state of the target mailbox account.
In one embodiment, after the mailbox server verifies the login verification code, the mailbox server may further send a binding notification to the communication server, where the binding notification is used to instruct the communication server to establish a binding relationship between the client account of the first communication client and the target mailbox account; the communication server receives a binding notification sent by the mailbox server; and the communication server establishes a binding relationship between the target mailbox account and the client account of the first communication client.
In this way, when it is detected that a new mail is received in the target mailbox account, the mailbox server sends new mail prompt information to the communication server, wherein the new mail prompt information includes the target mailbox account, and the new mail prompt information is used for instructing the communication server to send new mail notification information to the first communication client corresponding to the client account bound to the target mailbox account.
The communication server receives new mail prompt information sent by the mailbox server; and sending new mail notification information to the first communication client corresponding to the client account bound to the target mailbox account so that the user can check the new mail through the first client.
S602, if the login state of the target mailbox account bound in the first communication client is detected to be expired, the mailbox server sends a renewal prompt message to the first communication client.
S603, after receiving the renewal prompt message, the first communication client generates a renewal request carrying an authorization bill of the mailbox service and sends the renewal request to the mailbox server.
S604, the mailbox server receives the renewal request sent by the first communication client, and sends the mailbox service authorization bill carried in the renewal request to the communication server.
In one embodiment, some possible implementations included in steps S602 to S604 may refer to descriptions of corresponding parts in fig. 4, which are not described herein again.
S605, the communication server receives a mail box service authorization bill in the first communication client sent by the mail box server, and verifies the received mail box service authorization bill based on the mail box service authorization bill distributed for the mail box service in the first communication client.
And S606, if the received mailbox service authorization ticket is verified to be valid, the communication server sends a notification message that the authorization ticket is valid to the mailbox server.
In an embodiment, some possible implementations included in steps S605 to S606 can be referred to the description of the corresponding parts in fig. 5, which is not described herein again.
S607, the mailbox server executes the mailbox service corresponding to the mailbox service request when receiving the notification information that the authorization ticket sent by the communication server is valid.
In an embodiment, if the mailbox server receives the communication information that the authorization ticket of the communication server is valid, which indicates that the login state of the target mailbox account in the first communication client is successfully renewed, the first communication client may access the mailbox data in the mailbox server, that is, the mailbox server may execute the mailbox service corresponding to the mailbox service request sent by the first communication client. For example, assuming that the mailbox service request is to view a new mail, the mailbox server sends the mail content corresponding to the new mail to the first communication client, and assuming that the mailbox service request is to forward the mail, the mailbox service executes a forwarding operation according to a forwarding account in the mailbox service request.
In the embodiment of the invention, when a mailbox service request aiming at a target mailbox account sent by a first communication client is received, a mailbox server detects whether the login state of the target mailbox account bound in the first communication client is expired; if the login state of the target mailbox account bound in the first communication client is detected to be expired, the mailbox server sends a renewal prompt message to the first communication client; after receiving the renewal prompt message, the first communication client generates a renewal request carrying an authorization bill of the mailbox service and sends the renewal request to the mailbox server; the method comprises the steps that a mailbox server receives a renewal request sent by a first communication client and sends a mailbox service authorization bill carried in the renewal request to a communication server; after receiving the mailbox authorization bill, the communication server verifies the received mailbox service authorization bill based on the mailbox service authorization bill distributed for the mailbox service in the first communication client, and if the received mailbox authorization bill is verified to be valid, the communication server sends notification information that the authorization bill is valid to the mailbox server; and when the mailbox server receives the notification information that the authorization ticket sent by the communication server is valid, the mailbox server executes the mailbox service corresponding to the mailbox service request.
In the process that the first communication client side realizes the mailbox service in the mailbox server through the mailbox service authorization ticket acquired from the communication server, if the mailbox server detects that the login state of the target mailbox account bound in the first communication client side is expired, the mailbox service authorization ticket distributed to the first communication client side through the communication server is used for renewing the target mailbox account, a target mailbox password does not need to be saved in the first communication client side, and the safety of the mailbox service is improved.
Based on the description of the foregoing method embodiment, in an embodiment, an embodiment of the present invention further provides a schematic structural diagram of a login state renewal apparatus as shown in fig. 7. As shown in fig. 7, the login state duration device in the embodiment of the present invention may be configured in a mailbox server, where the mailbox server provides a mailbox service for a first communication client through a communication server, the first communication client implements the communication service through the communication server, and implements the mailbox service of the mailbox server through a mailbox service authorization ticket acquired from the communication server, and the login state duration device may include a sending unit 701, a receiving unit 702, and a processing unit 703.
In one embodiment, the sending unit 701 is configured to send a renewal prompt message to the first communication client if it is detected that the login status of the target mailbox account bound in the first communication client has expired; the receiving unit 702 is configured to receive a renewal request sent by the first communication client, where the renewal request carries the mailbox service authorization ticket; the sending unit 701 is further configured to send the mailbox service authorization ticket carried in the renewal request to the communication server, so that the communication server verifies whether the mailbox service authorization ticket is valid; the processing unit 703 is configured to determine that the login status renewal of the target mailbox account in the first communication client is successful when receiving notification information that the authorization ticket sent by the communication server is valid.
In one embodiment, the receiving unit 702 is further configured to receive a login request sent by the communication server to log in the target mailbox account in the first communication client, where the login request includes the target mailbox account and a mailbox password; the receiving unit 702 is further configured to receive a login verification code sent by the communication server if the login request is verified to be passed, where the login verification code is sent to the second communication client after the mailbox server verifies that the login request is passed; the processing unit 703 is further configured to assign a login state of a target mailbox account to the first communication client if the login verification code passes verification.
In an embodiment, the sending unit 701 is further configured to send a binding notification to the communication server if the login verification code passes verification, where the binding notification includes the target mailbox account, and the binding notification is used to instruct the communication server to establish a binding relationship between the client account of the first communication client and the target mailbox account.
In an embodiment, the sending unit 701 is further configured to send a new mail prompt message to the communication server when it is detected that a new mail is received in the target mailbox account; the new mail prompt message comprises the target mailbox account, and is used for prompting the communication server to send new mail notification information to the first communication client.
In this embodiment of the present invention, if it is detected that the login status of the target mailbox account bound in the first communication client is expired, the sending unit 701 sends a renewal prompt message to the first communication client; a receiving unit 702 receives a renewal request carrying an email service authorization ticket sent by the first communication client; the sending unit 701 sends the mailbox service authorization ticket carried in the renewal request to a communication server, and the communication server verifies the received mailbox service authorization ticket based on the mailbox service authorization ticket allocated to the mailbox service in the first communication client; when the receiving unit 702 receives notification information that the authorization ticket sent by the communication server is valid, the processing unit 703 determines that the login status renewal of the target mailbox account bound in the first communication client is successful. In the login state renewal process, the mailbox service authorization ticket distributed to the first communication client by the communication server is used for renewing the target mailbox account, a target mailbox password does not need to be stored in the first communication client, and the safety of the mailbox service is improved.
Referring to fig. 8, which is a schematic structural diagram of another login state duration device according to an embodiment of the present invention, the login state duration device shown in fig. 8 may be configured in a communication server, the communication server supports a first communication client to implement a communication service, and the communication server enables the first communication client to implement a mailbox service in a mailbox server by allocating a mailbox account service ticket to the first communication client. The login state renewal apparatus provided by the embodiment of the present invention may include a receiving unit 801, a processing unit 802, and a sending unit 803.
In one embodiment, the receiving unit 801 is configured to receive a mailbox service authorization ticket sent by a mailbox server, where the mailbox service authorization ticket is sent by a first communication client to the mailbox server when receiving a renewal prompt message for a target mailbox account sent by the mailbox server; a processing unit 802, configured to verify a received mailbox service authorization ticket based on a mailbox service authorization ticket allocated for a mailbox service in the first communication client; a sending unit 803, configured to send, if the processing unit verifies that the received mailbox service authorization ticket is valid, notification information that the authorization ticket is valid to the mailbox server, so that the mailbox server determines that the login status renewal of the target mailbox account bound in the first communication client is successful according to the notification information that the authorization ticket is valid.
In an embodiment, the sending unit 803 is further configured to send, to the mailbox server, a login request for logging in a target mailbox account in a first communication client, where the login request includes the target mailbox account and a mailbox password, and the login request is used to instruct the mailbox server to verify the login request; the processing unit 802 is further configured to obtain a login verification code, where the login verification code is sent to the second communication client by the mailbox server after the mailbox server verifies that the login request passes; the sending unit 803 is further configured to send the login verification code to the mailbox server, so that the mailbox server determines whether to assign a login state of a target mailbox account to the first communication client according to the login verification code.
In an embodiment, the receiving unit 801 is further configured to receive a binding notification sent by the mailbox server, where the binding notification includes the target mailbox account, and the binding notification is sent after the mailbox server verifies that the login verification code is valid; the processing unit 802 is further configured to establish a binding relationship between the target mailbox account and the client account of the first communication client.
In an embodiment, the receiving unit 801 is further configured to receive new mail notification information sent by the mailbox server when detecting that a new mail is received in the target mailbox account, where the new mail notification information includes the target mailbox account; the sending unit 803 is further configured to send new mail notification information to the first communication client corresponding to the client account bound to the target mailbox account.
In the embodiment of the present invention, after the receiving unit 801 receives the mailbox service authorization ticket in the first communication client sent by the mailbox server, the processing unit 802 verifies the received mailbox service authorization ticket based on the mailbox service authorization ticket allocated to the mailbox service in the first communication client, and after the verification is passed, the sending unit 803 sends the notification information that the authorization ticket is valid to the mailbox server, so that the mailbox server determines whether the login status of the target mailbox account bound in the first communication client is successful according to the notification information that the authorization ticket is valid. In the login state duration process, the mailbox service authorization ticket distributed to the first communication client by the communication server is used as the login state duration of the target mailbox account in the first communication client, the first communication client does not need to store the mailbox password of the target mailbox account, and the safety of the mailbox service is improved.
Please refer to fig. 9, which is a schematic structural diagram of a login device according to an embodiment of the present invention, where the login device may be configured in a first communication client, the first communication client implements a communication service through a communication server, a mailbox application is embedded in the first communication client, and the first communication client implements a mailbox service through the communication server and a mailbox server. The login device comprises a sending unit 901, a receiving unit 902 and a processing unit 903.
In an embodiment, the processing unit 903 is configured to generate a connection request carrying the connection information if the receiving unit 902 receives the connection information on a user interface; the sending unit 901 is configured to send the connection request to the communication server, where the connection request is used to instruct the communication server to send the connection information to the mailbox server for verification, where the connection information includes a target mailbox account and a mailbox password; the receiving unit 902 is configured to receive a login verification code on a user interface, where the login verification code is sent by the mailbox server after the mailbox server verifies the target mailbox account and the mailbox password; the sending unit 901 is further configured to send the login verification code to the communication server, so as to instruct the communication server to send the login verification code to the mailbox server for verification.
In an embodiment, the first communication client implements the mailbox service of the mailbox server through the mailbox service authorization ticket acquired from the communication server, and the receiving unit 902 is further configured to: receiving prompt information of login state duration sent by the mailbox server, wherein the prompt information of login state duration is sent by the mailbox server after the mailbox server detects that the login state of the target mailbox account in the first communication client is expired; the sending unit 901 is further configured to: and sending a mailbox service authorization bill to the mailbox server so that the mailbox server can carry out login state renewal for the target mailbox account in the first communication client based on the mailbox service authorization bill.
In one embodiment, the login verification code is sent to the second communication client bound with the target mailbox account after the mailbox server verifies the target mailbox account and the mailbox password.
In the embodiment of the present invention, if the receiving unit 902 receives the connection information, the processing unit 903 generates a connection request carrying the connection information, and the sending unit 901 sends the connection request to the communication server to instruct the communication server to send the connection information to the mailbox server for verification; the receiving unit 902 is further configured to receive a login verification code, and the sending unit 901 sends the login verification code to the communication server to instruct the communication server to send the login verification code to the mailbox server for verification, in the login process, the first communication client sends the mailbox password and the login verification code to the mailbox server, so that the mailbox server performs dual verification on the login process, insecurity of mailbox data due to leakage of the mailbox account and the mailbox password is avoided, and safety of mailbox services is improved.
Fig. 10 is a schematic structural diagram of a mailbox server according to an embodiment of the present invention. The mailbox server shown in fig. 10 provides a mailbox service for a first communication client through a communication server, the first communication client implements the communication service through the communication server, and implements the mailbox service of the mailbox server through a mailbox service authorization ticket acquired from the communication server. The mailbox server shown in fig. 10 may include: one or more processors 1001 and one or more memories 1002, said processors 1001 and said memories 1002 being connected via a bus 1003, the memories 1002 being adapted to store computer programs comprising program instructions, the processors 1001 being adapted to execute the program instructions stored by said memories 1002.
The memory 1002 may include volatile memory (volatile memory), such as random-access memory (RAM); the memory 1002 may also include a non-volatile memory (non-volatile memory), such as a flash memory (flash memory), a solid-state drive (SSD), etc.; the memory 1002 may also comprise a combination of the above-described types of memory.
The processor 1001 may be a Central Processing Unit (CPU). The processor 1001 may further include a hardware chip. The hardware chip may be an application-specific integrated circuit (ASIC), a Programmable Logic Device (PLD), or the like. The PLD may be a field-programmable gate array (FPGA), a General Array Logic (GAL), or the like. The processor 1001 may also be a combination of the above structures.
In the embodiment of the present invention, the memory 1002 is configured to store a computer program, the computer program includes program instructions, and the processor 1001 is configured to execute the program instructions stored in the memory 1002, so as to implement the steps of the corresponding method in the login state renewal method embodiment shown in fig. 4.
In one embodiment, the processor 1001 is configured to call the program instructions for: if the login state of the target mailbox account bound in the first communication client is detected to be expired, sending a renewal prompt message to the first communication client; receiving a renewal request sent by the first communication client, wherein the renewal request carries the mailbox service authorization bill; sending the mailbox service authorization ticket carried in the renewal request to the communication server so that the communication server can verify whether the mailbox service authorization ticket is valid; and when receiving notification information that the authorization ticket sent by the communication server is valid, determining that the login state renewal of the target mailbox account bound in the first communication client is successful.
In one embodiment, the processor 1001 is configured to call the program instructions to further: receiving a login request sent by the communication server for logging in the target mailbox account in the first communication client, wherein the login request comprises the target mailbox account and a mailbox password; if the login request passes the verification, receiving a login verification code sent by the communication server, wherein the login verification code is sent to the second communication client after the mailbox server passes the verification of the login request; and if the login verification code passes verification, allocating a login state of a target mailbox account for the first communication client.
In one embodiment, the processor 1001 is configured to call the program instructions to further: and if the login verification code passes verification, sending a binding notification to the communication server, wherein the binding notification comprises the target mailbox account, and the binding notification is used for indicating the communication server to establish a binding relationship between the client account of the first communication client and the target mailbox account.
In one embodiment, the processor 1001 is configured to call the program instructions to further: when detecting that a new mail is received in the target mailbox account, sending new mail prompt information to the communication server; the new mail prompt message comprises the target mailbox account, and is used for prompting the communication server to send new mail notification information to the first communication client.
Referring to fig. 11, which is a schematic structural diagram of a communication server according to an embodiment of the present invention, the communication server shown in fig. 11 supports a first communication client to implement a communication service, and enables the first communication client to implement a mailbox service in a mailbox server by allocating a mailbox service authorization ticket to the first communication client. The communication server shown in fig. 11 may include: one or more processors 1101 and one or more memories 1102, the processors 1101 and the processors 1102 being connected by a bus 1103, the memories 1102 being adapted to store computer programs comprising program instructions, the processors 1101 being adapted to execute the program instructions stored by the memories 1102.
The memory 1102 may include a volatile memory (volatile memory), such as a Random Access Memory (RAM), and the memory 902 may also include a non-volatile memory, such as a flash memory (flash memory), a Solid State Disk (SSD); memory 1102 may also comprise a combination of memories of the type described above.
The processor 1101 may be a central processing unit CPU. The processor 1101 may further include a hardware chip. The hardware chip can be an Application Specific Integrated Circuit (ASIC), a Programmable Logic Device (PLD) and the like. The PLD may be a Field Programmable Gate Array (FPGA), a general array logic GAL, or the like. The processor 1101 may also be a combination of the above structures.
In an embodiment of the present invention, the memory 1102 is configured to store a computer program, the computer program includes program instructions, and the processor 1101 is configured to execute the program instructions stored in the memory 1102 to implement the steps of the corresponding method in the login state renewal method embodiment shown in fig. 5.
In one embodiment, the processor 1101 is configured to invoke the program instructions for: receiving a mailbox service authorization bill sent by a mailbox server, wherein the mailbox service authorization bill is sent to the mailbox server by the first communication client when the first communication client receives the renewal prompt message aiming at the target mailbox account sent by the mailbox server; verifying the received mailbox service authorization bill based on the mailbox service authorization bill distributed for the mailbox service in the first communication client; if the received mailbox service authorization ticket is verified to be valid, notification information that the authorization ticket is valid is sent to the mailbox server, so that the mailbox server can determine that the login state renewal of the target mailbox account bound in the first communication client is successful according to the notification information that the authorization ticket is valid.
In one embodiment, the processor 1101 is configured to invoke the program instructions to further: sending a login request for logging in a target mailbox account in a first communication client to the mailbox server, wherein the login request comprises the target mailbox account and a mailbox password, and the login request is used for indicating the mailbox server to verify the login request; acquiring a login verification code, wherein the login verification code is sent to a second communication client by the mailbox server after the login request is verified; and sending the login verification code to the mailbox server so that the mailbox server can determine whether to allocate the login state of the target mailbox account to the first communication client according to the login verification code.
In one embodiment, the processor 1101 is configured to invoke the program instructions to further: receiving a binding notification sent by the mailbox server, wherein the binding notification comprises the target mailbox account number and is sent after the mailbox server verifies that the login verification code is valid; and establishing a binding relationship between the target mailbox account and the client account of the first communication client.
In one embodiment, the processor 1101 is configured to invoke the program instructions to further: receiving new mail prompt information sent by the mailbox server when detecting that a new mail is received in the target mailbox account, wherein the new mail prompt information comprises the target mailbox account; and sending new mail notification information to the first communication client corresponding to the client account bound to the target mailbox account.
Referring to fig. 12, which is a schematic structural diagram of a terminal according to an embodiment of the present invention, a first communication client is run in the terminal shown in fig. 12, the first communication client implements a communication service through a communication server, a mailbox application is embedded in the first communication client, and the first communication client implements a mailbox service through the communication server and a mailbox server. The mailbox server shown in fig. 12 may include: one or more receiving devices 1201, one or more sending devices 1202, one or more processors 1203, one or more memories 1204, the processor 120 and the memory 1204 being connected by a bus 1205, the memory 1204 being adapted to store computer programs comprising program instructions, the processor 1203 being adapted to execute the program instructions stored by the memory 1204.
The memory 1204 may include volatile memory (volatile memory), such as random-access memory (RAM); the memory 1204 may also include a non-volatile memory (non-volatile memory), such as a flash memory (flash memory), a solid-state drive (SSD), etc.; the memory 1204 may also comprise a combination of memories of the types described above.
The processor 1203 may be a Central Processing Unit (CPU). The processor 1203 may further include a hardware chip. The hardware chip may be an application-specific integrated circuit (ASIC), a Programmable Logic Device (PLD), or the like. The PLD may be a field-programmable gate array (FPGA), a General Array Logic (GAL), or the like. The processor 1001 may also be a combination of the above structures.
In this embodiment of the present invention, the memory 1204 is configured to store a computer program, the computer program includes program instructions, and the processor 1203 is configured to execute the program instructions stored in the memory 1204, so as to implement the steps of the corresponding method in the login method embodiment shown in fig. 2 a.
In one embodiment, the processor 1203 is configured to call the program instructions to: if connection information is received on a user interface, generating a connection request carrying the connection information, and sending the connection request to the communication server, wherein the connection request is used for indicating the communication server to send the connection information to the mailbox server for verification, and the connection information comprises a target mailbox account and a mailbox password; receiving a login verification code at a user interface, wherein the login verification code is sent after the mailbox server verifies the target mailbox account and the mailbox password; and sending the login verification code to the communication server to instruct the communication server to send the login verification code to the mailbox server for verification.
In one embodiment, the first communication client implements the mailbox service of the mailbox server through the mailbox service authorization ticket acquired from the communication server, and the processor 1203 is configured to invoke the program instructions and is further configured to: receiving prompt information of login state duration sent by the mailbox server, wherein the prompt information of login state duration is sent by the mailbox server after the mailbox server detects that the login state of the target mailbox account in the first communication client is expired; and sending a mailbox service authorization bill to the mailbox server so that the mailbox server can carry out login state renewal for the target mailbox account in the first communication client based on the mailbox service authorization bill.
In one embodiment, the login verification code is sent to the second communication client bound with the target mailbox account after the mailbox server verifies the target mailbox account and the mailbox password.
It will be understood by those skilled in the art that all or part of the processes of the methods of the embodiments described above can be implemented by a computer program, which can be stored in a computer-readable storage medium, and when executed, can include the processes of the embodiments of the methods described above. The storage medium may be a magnetic disk, an optical disk, a Read-Only Memory (ROM), a Random Access Memory (RAM), or the like.
The above disclosure is intended to be illustrative of only some embodiments of the invention, and is not intended to limit the scope of the invention.

Claims (14)

1. A login state renewal method is applied to a mailbox server, the mailbox server provides mailbox services for a first communication client through a communication server, the first communication client realizes the communication services through the communication server, and realizes the mailbox services of the mailbox server through a mailbox service authorization ticket acquired from the communication server, and the method comprises the following steps:
if the login state of the target mailbox account bound in the first communication client is detected to be expired, sending a renewal prompt message to the first communication client;
receiving a renewal request sent by the first communication client, wherein the renewal request carries the mailbox service authorization bill;
sending the mailbox service authorization ticket carried in the renewal request to the communication server so that the communication server can verify whether the mailbox service authorization ticket is valid;
and when receiving notification information that the authorization ticket sent by the communication server is valid, determining that the login state renewal of the target mailbox account bound in the first communication client is successful.
2. The method of claim 1, wherein the method further comprises:
receiving a login request sent by the communication server for logging in the target mailbox account in the first communication client, wherein the login request comprises the target mailbox account and a mailbox password;
if the login request passes the verification, receiving a login verification code sent by the communication server, wherein the login verification code is sent to a second communication client after the mailbox server passes the verification of the login request;
and if the login verification code passes verification, allocating a login state of a target mailbox account for the first communication client.
3. The method of claim 2, wherein the method further comprises:
and if the login verification code passes verification, sending a binding notification to the communication server, wherein the binding notification comprises the target mailbox account, and the binding notification is used for indicating the communication server to establish a binding relationship between the client account of the first communication client and the target mailbox account.
4. The method of claim 2 or 3, wherein the method further comprises:
when detecting that a new mail is received in the target mailbox account, sending new mail prompt information to the communication server;
the new mail prompt message comprises the target mailbox account, and is used for prompting the communication server to send new mail notification information to the first communication client.
5. A login state renewal method is applied to a communication server, a mailbox server provides mailbox service for a first communication client through the communication server, the first communication client realizes the communication service through the communication server, and realizes the mailbox service of the mailbox server through a mailbox service authorization ticket acquired from the communication server, and the method comprises the following steps:
receiving a mailbox service authorization bill sent by a mailbox server, wherein the mailbox service authorization bill is sent to the mailbox server by a first communication client when receiving renewal prompt information aiming at a target mailbox account sent by the mailbox server;
verifying the received mailbox service authorization bill based on the mailbox service authorization bill distributed for the mailbox service in the first communication client;
if the received mailbox service authorization ticket is verified to be valid, notification information that the authorization ticket is valid is sent to the mailbox server, so that the mailbox server can determine that the login state renewal of the target mailbox account bound in the first communication client is successful according to the notification information that the authorization ticket is valid.
6. The method of claim 5, wherein the method further comprises:
sending a login request for logging in a target mailbox account in a first communication client to the mailbox server, wherein the login request comprises the target mailbox account and a mailbox password, and the login request is used for indicating the mailbox server to verify the login request;
acquiring a login verification code, wherein the login verification code is sent to a second communication client by the mailbox server after the login request is verified;
and sending the login verification code to the mailbox server so that the mailbox server can determine whether to allocate the login state of the target mailbox account to the first communication client according to the login verification code.
7. The method of claim 6, wherein the method further comprises:
receiving a binding notification sent by the mailbox server, wherein the binding notification comprises the target mailbox account number and is sent after the mailbox server verifies that the login verification code is valid;
and establishing a binding relationship between the target mailbox account and the client account of the first communication client.
8. The method of claim 6 or 7, wherein the method further comprises:
receiving new mail prompt information sent by the mailbox server when detecting that a new mail is received in the target mailbox account, wherein the new mail prompt information comprises the target mailbox account;
and sending new mail notification information to the first communication client corresponding to the client account bound to the target mailbox account.
9. A login method is applied to a first communication client, the first communication client realizes communication service through a communication server, a mailbox application is embedded in the first communication client, and a mailbox service authorization ticket acquired by the first communication client from the communication server realizes the mailbox service of the mailbox server, and the method comprises the following steps:
if connection information is received on a user interface, generating a connection request carrying the connection information, and sending the connection request to the communication server, wherein the connection request is used for indicating the communication server to send the connection information to the mailbox server for verification, and the connection information comprises a target mailbox account and a mailbox password;
receiving a login verification code at a user interface, wherein the login verification code is sent after the mailbox server verifies the target mailbox account and the mailbox password;
sending the login verification code to the communication server to indicate the communication server to send the login verification code to the mailbox server for verification, and after the verification is passed, the mailbox server determines that the first communication client obtains a login state of the target mailbox account registered in the first communication client;
receiving a renewal prompt message sent by the mailbox server, wherein the renewal prompt message is sent when the mailbox server detects that the login state of the target mailbox account bound in the first communication client is expired;
sending a renewal request to the mailbox server, wherein the renewal request carries the mailbox service authorization ticket, so that the mailbox server can perform login state renewal for the target mailbox account in the first communication client through the communication server based on the mailbox service authorization ticket.
10. The method of claim 9, wherein the login authentication code is sent to the second communication client bound to the target mailbox account after the mailbox server authenticates the target mailbox account and the mailbox password.
11. A mailbox server characterised by comprising a processor and a memory for storing a computer program comprising program instructions, the processor being configured to invoke the program instructions to perform the login state renewal method of any one of claims 1 to 4.
12. A communications server comprising a processor and a memory, the memory for storing a computer program comprising program instructions, the processor being configured to invoke the program instructions to perform the login state renewal method of any of claims 5 to 8.
13. A terminal, characterized in that it comprises a receiving device, a transmitting device, a processor and a memory, said receiving device, said transmitting device, said processor and said memory being interconnected, said memory being adapted to store a computer program, said computer program comprising program instructions, said processor being configured to invoke said program instructions to perform a login method according to any one of claims 9-10.
14. A computer storage medium having first computer program instructions stored therein, which when executed by a processor, is configured to perform the login state renewal method of any one of claims 1-4; the computer storage medium further having stored therein second computer program instructions for execution by the processor for performing the logon state renewal method according to any one of claims 5-8; the computer storage medium further has stored therein third computer program instructions for performing the login method of any one of claims 9-10 when executed by the processor.
CN201910141216.2A 2019-02-26 2019-02-26 Login state renewal method, login method, device, server and terminal Active CN110417719B (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201910141216.2A CN110417719B (en) 2019-02-26 2019-02-26 Login state renewal method, login method, device, server and terminal

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201910141216.2A CN110417719B (en) 2019-02-26 2019-02-26 Login state renewal method, login method, device, server and terminal

Publications (2)

Publication Number Publication Date
CN110417719A CN110417719A (en) 2019-11-05
CN110417719B true CN110417719B (en) 2021-10-15

Family

ID=68357510

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201910141216.2A Active CN110417719B (en) 2019-02-26 2019-02-26 Login state renewal method, login method, device, server and terminal

Country Status (1)

Country Link
CN (1) CN110417719B (en)

Families Citing this family (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN111464540A (en) * 2020-03-31 2020-07-28 广东奥园奥买家电子商务有限公司 User behavior and data authenticity verification method and device for e-commerce platform page
CN116680676A (en) * 2020-04-17 2023-09-01 支付宝(杭州)信息技术有限公司 Method and system for keeping login state
CN112506647A (en) * 2020-11-19 2021-03-16 杭州电魂网络科技股份有限公司 Method, system, device and storage medium for load balancing of stateful servers

Citations (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101008945A (en) * 2006-01-23 2007-08-01 腾讯科技(深圳)有限公司 Electronic mail box login method and system thereof
EP2747374A1 (en) * 2012-12-18 2014-06-25 Google, Inc. Token based account access
CN105577524A (en) * 2015-12-25 2016-05-11 北京奇虎科技有限公司 Mail client, configuration method and server for configuring mail client
US9639508B2 (en) * 2013-06-14 2017-05-02 Worldmate, Ltd. Systems and methods for providing a contextual user interface element
CN108965331A (en) * 2018-08-29 2018-12-07 腾讯科技(深圳)有限公司 Log in method of calibration, device and login system

Patent Citations (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101008945A (en) * 2006-01-23 2007-08-01 腾讯科技(深圳)有限公司 Electronic mail box login method and system thereof
EP2747374A1 (en) * 2012-12-18 2014-06-25 Google, Inc. Token based account access
US9639508B2 (en) * 2013-06-14 2017-05-02 Worldmate, Ltd. Systems and methods for providing a contextual user interface element
CN105577524A (en) * 2015-12-25 2016-05-11 北京奇虎科技有限公司 Mail client, configuration method and server for configuring mail client
CN108965331A (en) * 2018-08-29 2018-12-07 腾讯科技(深圳)有限公司 Log in method of calibration, device and login system

Non-Patent Citations (1)

* Cited by examiner, † Cited by third party
Title
"企业微信移动化办公的适用性研究";魏江来;《软件开发与应用》;20181201;全文 *

Also Published As

Publication number Publication date
CN110417719A (en) 2019-11-05

Similar Documents

Publication Publication Date Title
US9871791B2 (en) Multi factor user authentication on multiple devices
US20180295137A1 (en) Techniques for dynamic authentication in connection within applications and sessions
CN107332808B (en) Cloud desktop authentication method, server and terminal
US8505085B2 (en) Flexible authentication for online services with unreliable identity providers
US10136315B2 (en) Password-less authentication system, method and device
US8868909B2 (en) Method for authenticating a communication channel between a client and a server
EP2748983B1 (en) Multi-factor authentication
US10218701B2 (en) System and method for securing account access by verifying account with email provider
CN105847245B (en) Electronic mailbox login authentication method and device
US20050021975A1 (en) Proxy based adaptive two factor authentication having automated enrollment
CN109873805B (en) Cloud desktop login method, device, equipment and storage medium based on cloud security
CN109040070B (en) File transmission method, device and computer readable storage medium
CN110417719B (en) Login state renewal method, login method, device, server and terminal
CN105376216A (en) Remote access method, agent server and client end
KR20170041729A (en) System and method for establishing trust using secure transmission protocols
CN104639562A (en) Work method of authentication pushing system and equipment
CN110838010B (en) Service processing method, device, terminal, server and storage medium
US20120084844A1 (en) Federation credential reset
CN109308416B (en) Business service data processing method, device, system, storage medium and equipment
US11838421B2 (en) Systems and methods for enhanced mobile device authentication
KR102535312B1 (en) Information processing method, information processing device, program and information processing terminal
EP2775658A2 (en) A password based security method, systems and devices
CN117336092A (en) Client login method and device, electronic equipment and storage medium
EP4207682A1 (en) Device, method and system of handling access control
US20230396618A1 (en) Token based identity verification and consent management

Legal Events

Date Code Title Description
PB01 Publication
PB01 Publication
SE01 Entry into force of request for substantive examination
SE01 Entry into force of request for substantive examination
GR01 Patent grant
GR01 Patent grant